Ir ao conteúdo
  • Comunicados

    • diego_moicano

      Gostaria de se tornar um analista em Remoção de Malware?   07-12-2015

      Gostaria de se tornar um analista em Remoção de Malware? O Fórum Clube do Hardware deu início a um programa de treinamento em análises de log. Os interessados deverão enviar um email para aprendizes (arroba) clubedohardware (ponto) com (ponto) br respondendo as seguintes perguntas: Por que você gostaria de aprender a analisar logs? Possui tempo hábil para o treinamento? Tem conhecimentos em informática? Se sim descreva-os. Possui inglês para leitura? Qual seu objetivo após completar o treinamento?   Não se esqueça de incluir no e-mail o seu nome de usuário (fornecer o link também), idade e cidade onde vive. Adicione também qualquer experiência e/ou razão sobre o porquê você seria um bom Analista. É digno de nota que apenas os que forem selecionados receberão resposta por MP (Mensagem Pessoal), não existe um padrão na escolha dos futuros aprendizes, todos os e-mails serão lidos e serão analisados de forma imparcial, portanto não será permitido reclamações neste aspecto. O treinamento é dado no próprio fórum. Quando um aprendiz é selecionado ele é movido para um novo grupo, onde terá acesso a fóruns fechados para os demais usuários onde poderá dar inicio ao seu treinamento. Importante: A cada 30 dias os e-mails não selecionados serão apagados, portanto você pode enviar um novo e-mail após 1 mês, e-mails enviados antes serão desconsiderados.  
    • Gabriel Torres

      Seja um moderador do Clube do Hardware!   12-02-2016

      Prezados membros do Clube do Hardware, Está aberto o processo de seleção de novos moderadores para diversos setores ou áreas do Clube do Hardware. Os requisitos são:   Pelo menos 500 posts e um ano de cadastro; Boa frequência de participação; Ser respeitoso, cordial e educado com os demais membros; Ter bom nível de português; Ter razoável conhecimento da área em que pretende atuar; Saber trabalhar em equipe (com os moderadores, coordenadores e administradores).   Os interessados deverão enviar uma mensagem privada para o usuário @Equipe Clube do Hardware com o título "Candidato a moderador". A mensagem deverá conter respostas às perguntas abaixo:   Qual o seu nome completo? Qual sua data de nascimento? Qual sua formação/profissão? Já atuou como moderador em algo outro fórum, se sim, qual? De forma sucinta, explique o porquê de querer ser moderador do fórum e conte-nos um pouco sobre você.   OBS: Não se trata de função remunerada. Todos que fazem parte do staff são voluntários.
jlobo

Vírus?

Recommended Posts

Boa tarde. 

O pc ta com vários programas instalando sozinhos, avast não funciona, páginas abrem sozinhas no navegador...

 

Obrigada pela ajuda desde já. :)

ZA-Scan.txt

Compartilhar este post


Link para o post
Compartilhar em outros sites

Cara @jlobo

 

Recomendo que salve este tópico em seus Favoritos para facilitar na hora de encontrá-lo.

 

Por favor, atente para o seguinte:

  • Caso fique sem resposta durante 3 dias, me envie uma Mensagem Privada (MP);
  • O que será passado aqui, somente será com relação ao problema do seu computador portanto, não faça mais em nenhum outro;
  • Siga, por favor, atentamente as instruções passadas e em caso de dúvidas não hesite em perguntá-las;
  • Sempre coloque suas respostas neste tópico... Não abra outro!
  • Procure sempre me manter informado, durante a remoção, sobre o que acontece com seu computador.
  • Respeite a ordem das instruções passadas.

Observação: Não tome outra medida além das passadas aqui; atente para que, caso peça ajuda em outro fórum, não deixe de nos informar, sob risco de desconfigurar seu computador!

 

# Etapa nº 1 #
 
Baixe o AdwCleaner e salve em sua Área de trabalho (Desktop)

Execute o arquivo adwcleaner.exe

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • Clique na aba Opções e deixe marcado apenas "Restaurar Políticas do IE" e "Restaurar Políticas do Chrome"
  • Clique no botão Verificar e aguarde o exame finalizar.
  • Clique no botão Limpar.
  • Abrirá um bloco de notas com o resultado.
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.
  • O log também será salvo em C:\AdwCleaner


NOTA: Se o AdwCleaner encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC. Faça isso imediatamente, ao ser perguntado se quer reiniciar.
 
# Etapa nº 2 #
 
Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Baixe o Junkware Removal Tool (JRT) e salve em sua Área de trabalho (Desktop)

 

Clique duas vezes para executar o jrt.exe.
 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • A ferramenta começará o exame do seu sistema.
  • Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar.
  • Ao final um log se abrirá. Será salvo no desktop com o nome de JRT.txt.
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

 
# Etapa nº 3 #
 
Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Faça o download do ZHPCleaner e salve em sua Área de trabalho (Desktop)

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png

  • Clique no botão Scanner.
  • A ferramenta começara o exame do seu sistema.
  • Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar.
  • Em seguida clique no botão Reparar.
  • Será gerado um log chamado ZHPCleaner.txt
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites
  • Autor do tópico
  • Bom dia. Obrigada pela ajuda. :)

    Segue em anexo os logs.

    Quando o adwcleaner reiniciou o pc deu um aviso de erro,png em anexo.

     

    Abraços.

     

    AdwCleaner[C2].txt

    JRT.txt

    erro1.png

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Pode deixar que depois cuido deste erro. ;)

     

    E log do ZHPCleaner?

     

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Bom dia.

    Desculpa, a etapa 3 passou despercebida.

    segue log:

     

    ~ ZHPCleaner v2017.4.4.59 by Nicolas Coolman (2017/04/04)
    ~ Run by Joana Lobo (Administrator)  (04/04/2017 10:33:46)
    ~ Web: https://www.nicolascoolman.com
    ~ Blog: https://nicolascoolman.eu/
    ~ Facebook : https://www.facebook.com/nicolascoolman1
    ~ State version : Version KO
    ~ Type : Reparo
    ~ Report : C:\Users\Joana Lobo\Desktop\ZHPCleaner.txt
    ~ Quarantine : C:\Users\Joana Lobo\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
    ~ UAC : Activate
    ~ Boot Mode : Normal (Normal boot)
    Windows 10 Pro, 64-bit  (Build 14393)


    ---\\  Serviços (0)
    ~ Nenhum ítem malicioso o desnecessários foi encontrado.


    ---\\  Navegadores de Internet (1)
    SUBSTITUIDO Edge Params: HomeButtonPage [http://www.startpageing123.com/?type=hp&ts=1490018298&z=a04895ad97481ab70f939a5g6z3t3ece0gfbboat5m&from=che0812&uid=SamsungXSSDX850XEVOX500GB_S2RANXAH322155R]  =>Hijacker.StartpageIng123


    ---\\  Arquivo hosts (1)
    ~ O arquivo hosts é legítimo (21)


    ---\\  Tarefas automáticas agendadas. (0)
    ~ Nenhum ítem malicioso o desnecessários foi encontrado.


    ---\\  Explorer ( Arquivos, Pastas) (339)
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\034712b03284install.rdf    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\amt3.log    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\bik5760.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\bik7096.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\bik941F.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\bikDD1D.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\bikE61.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\CFG5666.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\CFG6F6D.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\CFG9334.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\CFGD19.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\CFGDC33.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\chrome_installer.log    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw1156.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw13C0.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw1639.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw1669.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw1717.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw1850.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw1AC0.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw28DA.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw292E.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw2F03.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw34BA.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw394F.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw39A3.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw40A0.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw44B6.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw45ED.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw465D.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw4760.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw4A6B.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw4D7E.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw50C7.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw5396.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw53F5.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw550C.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw62C8.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw66A5.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw6B37.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw722B.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw72B9.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw7431.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw822D.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw84F7.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw8DC3.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw8E31.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw9046.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw90B4.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw960.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw99A6.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\csw9EE7.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswA428.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswA610.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswAF97.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswB137.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswB8E7.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswBDF9.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswBFA0.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswCB2E.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswD03A.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswD45F.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswD9A3.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswF848.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswFC2.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\cswFCE8.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\DeleteOnReboot.bat    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\ebb8d4374d2ainstall.rdf    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\HomePage.dat    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\iex64.reg    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\jawshtml.html    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\ProductInformation.pit    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg3537.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg3586.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg35A6.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg35E6.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg413C.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg41BA.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg41EA.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psg4229.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psgC0CF.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psgC12E.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psgC14E.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\psgC19D.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\sa.AD2F1837.HPPrinterControl_v10z8vjag6ke6_1__.Public.InstallAgent.dat    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\swtag.log    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\URL1F51.tmp    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wct3551.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wct3952.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wct7839.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wctAAD9.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wctC8AE.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wctE390.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\wctEC6C.tmp    =>.Superfluous.Temporary.Various
    MOVIDO pasta: C:\Users\Joana Lobo\AppData\Local\Temp\{63E517D4-AD2E-4EA8-84DC-777B99D75625}.png    =>.Superfluous.Temporary.Empty
    MOVIDO pasta: C:\Windows\Installer\{BB26F52E-34C5-4937-9240-471C59CC81E6}\_853F67D554F05449430E7E.exe    =>.Superfluous.WinSnare
    MOVIDO arquivo: C:\Program Files (x86)\Autodesk  =>.Superfluous.Empty
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Akamai  =>.Superfluous.AkamaiHD
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign025396c82ce941ff  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign02c3256933ba8598  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign03aa0b827dd197b9  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign05b5b887e5b3a5ee  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign07a5aa9c97c6d346  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign07aabf2dc10fd175  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign086fb54407063241  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign08b75dcc1df09f4d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign08e65b6583a625d5  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign097a006dd882b004  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0a8289c0cd9e3f7e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0b5c8e130edaea59  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0be8ab86965af3e3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0d73bda227e56054  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0d9f864a2b7107d3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0ecdad1f14746372  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0ee70b0dccc68353  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0f288be30ce1b0c4  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign0fea5f5c1c5d33ae  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign116cd5e530d7fc10  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign125eb419748d191f  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1260dc45102dd048  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign15c8d05b086cdda5  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign15f750db9110ade6  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign161bb2622a6a6ace  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign178e8ab954a8b450  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign184786be485cd735  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign189f3f9c310f2eec  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign19fd8c2f5d0f475e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1a0bf13384471940  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1a4a744149a989e9  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1a8e13031688df7b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1b0bb21937edbac3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1b246947f1198d60  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1b7ded80add783c8  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1c2cce34bb8d0b54  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1d0efeaee473ab02  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign1ec487c078c0c2f8  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2068154b520ef206  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign208009998cff3055  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2472324626d9b4a9  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign276d7b143069a6cf  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign27b1bae37c978fdc  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign29bedf9fc7d15608  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2a22b361c86019e4  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2af9ac2bd67252ba  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2b190bddc15a375d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2d63b9c9ad1ac23a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2dd304132431094e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign2f6d53d960feab74  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign300db27ec3a40d1d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign32b3b17bda70091a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign32cbf215e56d02ec  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign32e8fd41b6aa2e6e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign33e7919b321d1ab5  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign35491e29049db98c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign362492676eef6ea0  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign368df03dfb5555e4  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign3c38069962a94c90  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign3d39d58387ab2d18  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign3d900c6710472c35  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign405e07af5f01bb32  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign425bdecb0e85726e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign460a31654d10dc08  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign464e4b065ef732f1  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4793647ca98a827c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4813104eec731387  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign49de3e2b151f9291  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4b13751966f13e35  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4bce5bef2401c83e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4bdc7f5a2919c0f5  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4d8263e16e7bd1da  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4ec39676d1d82c6c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4f0601017d660a3c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign4f46399916152c18  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign503e500124cc01fd  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign50b35f0323882178  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign53aa1f70dcfac203  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign543b6bd03ebc7493  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign54a41b0d442cf65d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign556fa03058548bc0  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign57156456b88d8da2  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign5a61c98a0c3f6732  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign5bbb36f88d61838b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign5bd259566fd22143  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign5c90e1a3fdd23f99  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign5d6b74ec5a1ae35e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign5f2ad3e211aaae77  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign614a8d4f4004607a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6194f33b42b4d443  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign61ac471716684b11  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign62be8767ef61a87b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign644c3dc9aa7c9702  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign64590f677ca2b6c3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign683b3d70448e471c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign687b6859fdfed159  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6936f42c3c3e4733  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign697f228df8a83e00  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign69ad258c4c11dd4a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6a6b53d16dca5c5f  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6ae151d5f6ff417c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6b04970e39c34db2  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6bd73eb1675d00d4  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6ccb6fa3cf34b879  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6d91c604c99f22d7  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6e565f5271f43a04  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign6eb09a665eaccb1c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7081be64b5663491  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign760253fbeeaa134d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign782a8eb118234436  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7953f9b824c4e675  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7a7eb098df846527  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7b1fe9265ad06c8a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7bc61e12494f3035  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7bdb24ec1198f2de  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7be02843fa0b8fff  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7ced3635a1337a33  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7d02b39f7865581b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7d443dd5da65c0e7  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7dd366c1116b83dc  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign7e1a8ed0ef2077f1  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign80843479b87d3101  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign808e710b01f02865  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8206693ac4805df2  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign832092d5bcad5d0d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8423bf1f6d62c8cd  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign84523f9a50b80c48  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign85ed2215b062739b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign89b2e4c722e424aa  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8ad26a6e12684ceb  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8b2bfecd249bba4a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8b8c71538c9bb0ab  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8cd76145a3919b8b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8cff57b087ad2abf  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8d8810ef850e2453  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8e0342755e9a5041  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign8f736a96df89d2ac  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign91dd0b0b15194f25  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign9225eeef19c83fbe  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign93f728c31b3173fb  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign9494a6f9f4684b99  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign94f230cb8bce817b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign954ed78645df6b28  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign98c7200a447cae4b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign9b573c8903a22862  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign9c806291840c206a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign9ccf7e8f816a14aa  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsign9cd2d8dea9eb842b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigna08346441f64cecc  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigna0b47c11752f74cf  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigna419cb27d86b38bd  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigna48ea0d05cf787fc  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigna493a5aa44680da5  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigna54a56744f3652b1  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignaab15b722181c47c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignaaec79a3d8b23102  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignab71d108c4f9c2d7  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignabc58d37055ca4ae  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignad27a994b4790e2d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignae041e509be05c85  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignaee8a7a975307520  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb103dfc9603e76de  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb192eba9a145d428  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb21d1aafaf9af7a1  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb24b94e88c3a7672  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb2505bd57440db64  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb2e3b02f89f728d3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb301d2c763beeb95  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb3621a2fb44521bf  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb3eb23a2bdffb541  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb42084df34e2f4a0  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb5968beaad48d7d0  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb67f48fdbb1ddb12  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb7255fd0ac7fd69a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignb75193d6150ebd6e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignba44b35194aa2c8f  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignba54615b62acd60f  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignba612f1317668e51  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignbaf64453829bd4ce  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignbb2bdd96e16f2a84  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignbbdd113455dd97d3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignbe1ff3c82a5ae57b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignbe623ef65107f085  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignbf49f1bf1d7561a9  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc0d825f7f3e9c66f  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc1ea3706ef5e8a58  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc25d4e73224cc1d9  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc3ee83fbedbd9341  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc52b3e554389d4ff  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc5cc260fae403877  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc6057b9356df02a4  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc626452c7d3b533e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc62880666e26299c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc69639ce0b5afb0a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc6d4ab27803b45af  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc71fa4544c70c5fe  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc844d04bf6789d06  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc8555c2e26077bf1  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignc9e8e9c17fc66d0e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignca6f6450119424c6  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignca7cac4c376e6683  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncb4383cbecf1a01e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncb927e14a4230f2b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncbbfbb9fbd501ed3  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncc0298c07698aac2  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncc605c785f40c42e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignccc3e2c41ef197c8  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncd99586d1532cda7  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncf40cf65078f1846  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigncff855b8773afaf2  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignd0a610e80bca25e0  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignd1c0cba96438a917  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignd3d1cba1ca9ac019  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignd4f45990129d0519  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignd9bca41e59c5c908  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigne01fe8918b8a777a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigne18b29bb39992724  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigne19e842b5b8b0b01  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigne29dd46c1a091a3a  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigne50651baf01ffd5b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignea8ade88b8e47470  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigneab350f14abe2764  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigneade3a54295282b2  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsigneb12e702e510a1ee  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignecb82eec97e87812  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignece1aba57cce691e  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignee354cd735aa0c03  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignee5c27a8f0bb70bb  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf2b044e00e4a8122  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf34c41841630ad91  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf40bfd7d1ec4d598  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf4ef2989fe7e751d  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf5de96afb52acf50  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf5ee92d037d34c74  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf60c8ecc2c0bf08c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf6a0a6b424d664d6  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf84ae1c89fbf096b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignf8690e914d63c15b  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignfe048c14feeae45c  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignfe2ae100c11fe27f  =>.Superfluous.Temporary
    MOVIDO arquivo: C:\Users\Joana Lobo\AppData\Local\Tempzxpsignfe31afc1339167a8  =>.Superfluous.Temporary


    ---\\  Registro ( Chaves, Valores, Dados ) (16)
    SUPRIMIDO chave*: HKEY_USERS\S-1-5-21-2996735110-1512066444-4271885341-1000\SOFTWARE\Akamai []  =>.Superfluous.AkamaiHD
    SUPRIMIDO chave: HKCU\Software\Akamai []  =>.Superfluous.AkamaiHD
    SUPRIMIDO chave*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\chatango.com []  =>PUP.Optional.Chatango
    SUPRIMIDO chave*: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\chatango.com []  =>PUP.Optional.Chatango
    SUPRIMIDO chave*: HKLM\SOFTWARE\Wow6432Node\Firefox []  =>Adware.GhokswaBrowser
    SUPRIMIDO chave: HKLM\SOFTWARE\Firefox []  =>Adware.GhokswaBrowser
    SUPRIMIDO chave*: [X64] HKLM\Software\Classes\Installer\Products\461D8763BD4837F4FA6D1936241E7046 [BikaQ Rss]  =>.Superfluous.BikaQ
    SUPRIMIDO chave*: [X64] HKLM\Software\Classes\Installer\Products\E25F62BB5C437394290474C195CC186E [WinSnare]  =>.Superfluous.WinSnare
    SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43703D3EA4136911E813F1496D1AA8D8 [01:\Software\WinSnare\WinSnare\{E3D30734-314A-1196-8E31-1F94D6A18A8D}\AppDataFolder (Not File)]  =>.Superfluous.WinSnare
    SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{3678D164-84DB-4F73-AFD6-916342E10764} [BikaQ]  =>.Superfluous.BikaQ
    SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{BB26F52E-34C5-4937-9240-471C59CC81E6} [WinSnare]  =>.Superfluous.WinSnare
    SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BikaQ_RASAPI32 []  =>.Superfluous.BikaQ
    SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BikaQ_RASMANCS []  =>.Superfluous.BikaQ
    SUPRIMIDO chave*: [X64] HKLM\Software\Classes\Installer\Features\E25F62BB5C437394290474C195CC186E []  =>.Superfluous.WinSnare
    SUPRIMIDO chave*: HKCU\SOFTWARE\6D3B16D620DD27E3667005D46001D5BB []  =>Hijacker.Browser
    SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\6D3B16D620DD27E3667005D46001D5BB []  =>Hijacker.Browser


    ---\\  Resumo dos elementos encontrados na sua estação de trabalho (11)
    https://nicolascoolman.eu/2017/03/06/hijacker-startpageing123/ =>Hijacker.StartpageIng123
    https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary.Empty
    https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary.Various
    https://nicolascoolman.eu/2017/01/12/superfluous-winsnare/ =>.Superfluous.WinSnare
    https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Empty
    https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AkamaiHD
    https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Temporary
    https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Chatango
    https://nicolascoolman.eu/2017/02/19/adware-ghokswabrowser/ =>Adware.GhokswaBrowser
    https://nicolascoolman.eu/2017/02/17/superfluous-bikaq/ =>.Superfluous.BikaQ
    https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser


    ---\\  Dodatkowe oczyszczenie. (17)
    ~ Chave de registro Tracing Supprimido (15)
    ~ Remover os relatórios antigos ZHPCleaner. (2)


    ---\\ Resultado de reparação
    Reparação efectuada com sucesso
    ~ Este navegador está faltando ! (Mozilla Firefox)
    ~ Este navegador está faltando ! (Opera Software)


    ---\\ Estatísticas
    ~ Items scan : 409
    ~ Items encontrado : 0
    ~ items cancelados : 0
    ~ Items réparo : 356


    ~ End of clean in 00h00mn42s
    ~====================
    ZHPCleaner-[R]-04042017-10_34_28.txt
    ZHPCleaner-[R]-08112016-09_01_56.txt
    ZHPCleaner--04042017-10_31_41.txt

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Caro @jlobo

     

    Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

     

    Baixe o Farbar Recovery Scan Tool e salve-o na Área de Trabalho (Desktop).


    32 bit (x86) ou 64 bit (x64)

     

    • Clique duas vezes para executar a ferramenta.
      • Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png
    • Marque a caixa Arquivos 90 dias,  e clique no botão Examinar.
    • Aguarde e ao final os logs FRST.txt e Addition.txt serão salvos em sua Área de Trabalho (Desktop).
    • Selecione, copie e cole o conteúdo do log  FRST.txt em sua próxima resposta.
    • Anexe o log Addition.txt

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2017
    Ran by Joana Lobo (administrator) on JOANALOBO-PC (05-04-2017 12:15:23)
    Running from C:\Users\Joana Lobo\Desktop
    Loaded Profiles: Joana Lobo (Available Profiles: Joana Lobo)
    Platform: Windows 10 Pro Version 1607 (X64) Language: Português (Portugal)
    Internet Explorer Version 11 (Default browser: Edge)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
    (GAS Tecnologia) C:\Program Files (x86)\GbPlugin\GbpSv.exe
    (AMD) C:\Windows\System32\atiesrxx.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
    (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
    (Microsoft Corporation) C:\Windows\syswow64\svchost.exe
    (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe
    (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe
    (Microsoft Corporation) C:\Windows\syswow64\svchost.exe
    (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
    (AMD) C:\Windows\System32\atieclxx.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (Intel Corporation) C:\Windows\System32\igfxEM.exe
    (Intel Corporation) C:\Windows\System32\igfxHK.exe
    (GAS Tecnologia) C:\Program Files (x86)\GbPlugin\GbpSv.exe
    () C:\Windows\System32\igfxTray.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
    (Spotify Ltd) C:\Users\Joana Lobo\AppData\Roaming\Spotify\SpotifyWebHelper.exe
    (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
    (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
    (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
    () C:\Program Files (x86)\Dropbox\Client\QtWebEngineProcess.exe
    (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
    () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
    (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
    (Microsoft Corporation) C:\Windows\syswow64\rundll32.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe
    (Microsoft Corporation) C:\Windows\System32\smartscreen.exe

    ==================== Registry (Whitelisted) ====================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8811776 2016-05-10] (Realtek Semiconductor)
    HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1429248 2016-05-10] (Realtek Semiconductor)
    HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3952824 2016-07-15] (Synaptics Incorporated)
    HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-06] (AVAST Software)
    HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [28339400 2017-03-31] (Dropbox, Inc.)
    Winlogon\Notify\ GbPluginCef: C:\Program Files (x86)\GbPlugin\gbiehCef.dll [2016-08-10] (Caixa Economica Federal)
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\...\Run: [Spotify Web Helper] => C:\Users\Joana Lobo\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1446000 2017-04-04] (Spotify Ltd)
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3019552 2017-03-22] (Valve Corporation)
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd)
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\...\RunOnce: [Uninstall C:\Users\Joana Lobo\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Joana Lobo\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64"
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\...\RunOnce: [Uninstall C:\Users\Joana Lobo\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Joana Lobo\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64"
    HKLM\...\Providers\g5hicevy: C:\Program Files (x86)\Qucight Monitor\local64spl.dll [307712 2017-03-10] ()
    ShellExecuteHooks: No Name - {7161A4D0-0390-11E7-A094-64006A5CFC23} - C:\Users\Joana Lobo\AppData\Roaming\Bigatainanvack\Ghipoward.dll -> No File
    ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399003} - C:\Program Files (x86)\GbPlugin\gbiehcef.dll [1903328 2016-08-10] (Caixa Economica Federal)
    ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
    ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
    ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
    ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-06] (AVAST Software)
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-06] (AVAST Software)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll [2017-03-31] (Dropbox, Inc.)
    BootExecute: autocheck autochk * sdnclean64.exe

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
    Tcpip\..\Interfaces\{70c5b734-4af7-4045-8dc2-c47c60a7946c}: [DhcpNameServer] 192.168.1.1

    Internet Explorer:
    ==================
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = 
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = 
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp
    SearchScopes: HKU\S-1-5-21-2996735110-1512066444-4271885341-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
    BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540003} -> C:\Program Files (x86)\GbPlugin\gbiehcef.dll [2016-08-10] (Caixa Economica Federal)
    Toolbar: HKU\S-1-5-21-2996735110-1512066444-4271885341-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File

    Edge: 
    ======
    Edge HomeButtonPage: HKU\S-1-5-21-2996735110-1512066444-4271885341-1000 -> 

    FireFox:
    ========
    FF Plugin: @java.com/DTPlugin,version=1.6.0_45 -> C:\WINDOWS\system32\npdeployJava1.dll [2016-11-16] (Sun Microsystems, Inc.)
    FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-25] (Adobe Systems)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-24] (Google Inc.)
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2017-03-24] (Google Inc.)
    FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-25] (Adobe Systems)

    Chrome: 
    =======
    CHR DefaultProfile: ChromeDefaultData
    CHR HomePage: ChromeDefaultData -> hxxps://www.google.com/
    CHR DefaultSearchURL: ChromeDefaultData -> hxxp://www.startpageing123.com/search/?type=ds&ts=1490688776&z=cda0e9abed4dafe7f868a7fgazetfe4q7b9bbm5mfq&from=che0812&uid=SamsungXSSDX850XEVOX500GB_S2RANXAH322155R&q={searchTerms}
    CHR DefaultSearchKeyword: ChromeDefaultData -> startpageing123
    CHR Profile: C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-04-03] <==== ATTENTION
    CHR Extension: (Popup Blocker Pro) - C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\kiodaajmphnkcajieajajinghpejdjai [2016-12-17]
    CHR Extension: (livros de Lelivros) - C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\mcbnmbennmoimeaanoildjimlncknhok [2017-03-19]
    CHR Extension: (Mailtrack para Gmail e Inbox: Email tracking) - C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ndnaehgpjlnokgebbaldlmgkapkpjkkb [2017-03-27]
    CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09]
    CHR Extension: (Chrome Media Router) - C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-03-11]
    CHR HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [kpdmjodecdegfglgaapafjleomjjlpnh] - hxxps://clients2.google.com/service/update2/crx

    ==================== Services (Whitelisted) ====================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-25] (Adobe Systems Incorporated)
    R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-02-27] (Adobe Systems, Incorporated)
    S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-06] (AVAST Software s.r.o.)
    R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-06] (AVAST Software)
    S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-09] (Dropbox, Inc.)
    S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-09] (Dropbox, Inc.)
    R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [48944 2017-03-31] (Dropbox, Inc.)
    R2 GbpSv; C:\Program Files (x86)\GbPlugin\GbpSv.exe [631520 2016-08-10] (GAS Tecnologia)
    R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
    R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382448 2017-02-24] (Intel Corporation)
    S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
    S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312576 2016-05-10] (Realtek Semiconductor)
    S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-09-15] (Microsoft Corporation)
    S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
    S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-03-04] (Microsoft Corporation)
    R2 WPDTSrv; C:\ProgramData\Microsoft\Phone Tools\CoreCon\12.0\addons\SDKFilesVer.dll [106496 2017-03-21] () [File not signed]
    S3 NMIndexingService; "C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe" [X]

    ===================== Drivers (Whitelisted) ======================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

    S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [23240 2016-05-03] (Advanced Micro Devices, Inc.)
    R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [78064 2016-07-25] (Advanced Micro Devices, Inc.)
    R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [307736 2017-04-04] (AVAST Software s.r.o.)
    R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [189768 2017-04-04] (AVAST Software s.r.o.)
    R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [334088 2017-04-04] (AVAST Software s.r.o.)
    R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [48528 2017-04-04] (AVAST Software s.r.o.)
    S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [38296 2017-04-04] (AVAST Software)
    R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [127112 2017-04-04] (AVAST Software)
    R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [101152 2017-04-04] (AVAST Software)
    R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [75704 2017-04-04] (AVAST Software)
    R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1005048 2017-04-04] (AVAST Software)
    R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [556784 2017-04-04] (AVAST Software)
    S2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [164064 2017-04-04] (AVAST Software)
    R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [339696 2017-04-04] (AVAST Software)
    S3 bcmsmbsp; C:\WINDOWS\System32\drivers\bcmsmbsp.sys [54048 2015-09-10] (Broadcom Corporation.)
    R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
    S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
    R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2016-08-10] (GAS Tecnologia)
    S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-25] (Malwarebytes)
    S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
    R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [936192 2016-04-21] (Realtek                                            )
    R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [413912 2016-01-19] (Realsil Semiconductor Corporation)
    R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [3118848 2016-05-06] (Realtek Semiconductor Corp.)
    S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [50872 2016-07-15] (Synaptics Incorporated)
    R3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [51392 2016-07-15] (Synaptics Incorporated)
    S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
    S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [57648 2015-12-08] (QUALCOMM Incorporated)
    S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [214832 2015-12-08] (DEVGURU Co., LTD.(www.devguru.co.kr))
    R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2016-08-10] (GAS Tecnologia LTDA)
    S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
    S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
    S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
    S3 dbx; system32\DRIVERS\dbx.sys [X]
    S1 gbpddfac; system32\drivers\gbpddfac64.sys [X]
    S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]

    ==================== NetSvcs (Whitelisted) ===================

    (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


    ==================== Three Months Created files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2017-04-05 12:15 - 2017-04-05 12:15 - 00020434 _____ C:\Users\Joana Lobo\Desktop\FRST.txt
    2017-04-05 12:15 - 2017-04-05 12:15 - 00000000 ____D C:\FRST
    2017-04-05 12:13 - 2017-04-05 12:14 - 02424832 _____ (Farbar) C:\Users\Joana Lobo\Desktop\FRST64.exe
    2017-04-04 15:45 - 2017-04-04 15:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
    2017-04-04 15:23 - 2017-04-04 15:23 - 00002874 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
    2017-04-04 10:36 - 2017-04-04 10:36 - 00399944 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
    2017-04-04 10:31 - 2017-04-04 10:34 - 00040210 _____ C:\Users\Joana Lobo\Desktop\ZHPCleaner.txt
    2017-04-04 10:27 - 2017-04-04 10:27 - 00000880 _____ C:\Users\Joana Lobo\Desktop\ZHPCleaner.lnk
    2017-04-04 10:26 - 2017-04-04 10:28 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\ZHP
    2017-04-04 10:24 - 2017-04-04 10:26 - 02758656 _____ C:\Users\Joana Lobo\Desktop\ZHPCleaner.exe
    2017-04-03 23:17 - 2017-04-03 23:17 - 00163114 _____ C:\Users\Joana Lobo\Desktop\gas-marco.pdf
    2017-04-03 23:12 - 2017-04-03 23:13 - 00780307 _____ C:\Users\Joana Lobo\Downloads\fatura-7468174 (1).pdf
    2017-04-03 10:41 - 2017-04-03 10:41 - 00000605 _____ C:\Users\Joana Lobo\Desktop\JRT.txt
    2017-04-03 10:34 - 2017-04-03 10:38 - 01663904 _____ (Malwarebytes) C:\Users\Joana Lobo\Desktop\JRT.exe
    2017-04-03 10:34 - 2017-04-03 10:34 - 00000000 _____ C:\Users\Public\Documents\temp.dat
    2017-04-03 10:26 - 2017-04-03 10:27 - 04089296 _____ C:\Users\Joana Lobo\Desktop\adwcleaner_6.045.exe
    2017-04-01 10:05 - 2017-04-01 10:05 - 00780307 _____ C:\Users\Joana Lobo\Downloads\fatura-7468174.pdf
    2017-03-31 20:39 - 2017-03-31 20:39 - 00048944 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
    2017-03-31 10:11 - 2017-03-31 18:13 - 00003594 _____ C:\WINDOWS\System32\Tasks\Windows-PG
    2017-03-31 10:11 - 2017-03-31 10:11 - 00000000 ____D C:\Update
    2017-03-30 14:08 - 2017-03-30 14:11 - 00000000 ____D C:\Users\Joana Lobo\Documents\iniciando-um-porque-negocio
    2017-03-28 05:12 - 2017-03-31 18:12 - 00000000 ____D C:\Program Files (x86)\Remerspwaqing
    2017-03-24 19:20 - 2017-03-24 19:20 - 00000000 ____D C:\Program Files (x86)\{55B363AA-929E-4258-BD9D-F57FC86B9D95}
    2017-03-24 15:19 - 2017-03-24 15:19 - 00000000 ____D C:\Program Files (x86)\{A7B538DE-1854-4941-B32C-6A13BAEFE8FB}
    2017-03-24 12:57 - 2017-03-24 12:57 - 01129376 _____ (Google Inc.) C:\Users\Joana Lobo\Downloads\ChromeSetup.exe
    2017-03-24 12:57 - 2017-03-24 12:57 - 00003586 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
    2017-03-24 12:57 - 2017-03-24 12:57 - 00003462 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
    2017-03-24 12:55 - 2017-03-24 12:55 - 00000000 ____D C:\Program Files (x86)\temp
    2017-03-24 11:18 - 2017-03-24 11:18 - 00000000 ____D C:\Program Files (x86)\{6CCC898B-ECED-4FB9-8BEB-FCC275B4C54F}
    2017-03-23 20:23 - 2017-03-23 20:23 - 00000000 ____D C:\Program Files (x86)\{67F40314-B5A9-4C2D-9B30-F4DC803E87E9}
    2017-03-23 16:22 - 2017-03-23 16:22 - 00000000 ____D C:\Program Files (x86)\{196FDBB0-891D-42D7-9FCF-62DCD10BD953}
    2017-03-23 12:21 - 2017-03-23 12:21 - 00000000 ____D C:\Program Files (x86)\{3409321D-2A04-416B-A9EB-27110005236C}
    2017-03-23 10:06 - 2017-03-23 10:06 - 00000000 ____D C:\Program Files (x86)\{FCB34CD6-4FF6-470B-BA70-9D4A41330935}
    2017-03-22 20:34 - 2017-03-22 20:34 - 00000000 ____D C:\Program Files (x86)\{98576126-E807-4F2C-AE19-A7318B5ACE2F}
    2017-03-22 16:33 - 2017-03-22 16:33 - 00000000 ____D C:\Program Files (x86)\{AFD43D6E-9584-450E-B60D-D846914CBF83}
    2017-03-22 12:32 - 2017-03-22 12:32 - 00000000 ____D C:\Program Files (x86)\{851A7DE8-B5B1-4283-AB6E-DD1A027B2D4D}
    2017-03-22 08:34 - 2017-04-03 10:30 - 00001210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
    2017-03-22 08:34 - 2017-04-03 10:30 - 00000000 ____D C:\WINDOWS\system32\log
    2017-03-22 08:34 - 2017-03-22 08:34 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Boxfat
    2017-03-22 08:34 - 2017-03-22 08:34 - 00000000 ____D C:\Program Files (x86)\Boxfat
    2017-03-22 08:33 - 2017-03-31 18:52 - 00000000 ____D C:\Users\Joana Lobo\AppData\LocalLow\Mozilla
    2017-03-22 08:33 - 2017-03-22 08:33 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Mozilla
    2017-03-22 08:32 - 2017-04-01 09:59 - 00000000 _____ C:\WINDOWS\SysWOW64\4
    2017-03-22 08:32 - 2017-04-01 09:59 - 00000000 _____ C:\WINDOWS\SysWOW64\3
    2017-03-22 08:31 - 2017-03-22 08:31 - 00000000 ____D C:\Program Files (x86)\{6BA5B930-DA0B-42E5-B839-8DA4BA054049}
    2017-03-22 00:03 - 2017-03-22 00:03 - 00045672 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
    2017-03-22 00:03 - 2017-03-22 00:03 - 00045672 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
    2017-03-22 00:03 - 2017-03-22 00:03 - 00045672 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
    2017-03-21 20:30 - 2017-03-21 20:30 - 00000000 ____D C:\Program Files (x86)\{52CB57D8-B4C7-498B-A21F-A5CEFB377A7E}
    2017-03-21 16:30 - 2017-03-21 16:30 - 00000000 ____D C:\Program Files (x86)\{E674EC02-D12A-476C-9A18-1B2971BB19A0}
    2017-03-21 12:29 - 2017-03-21 12:29 - 00000000 ____D C:\Program Files (x86)\{2D2D220B-19C9-4A33-966E-67FECD4DCC55}
    2017-03-21 08:28 - 2017-03-21 08:28 - 00000000 ____D C:\Program Files (x86)\{084189E0-64B6-4482-99DF-8B270D8D7392}
    2017-03-20 10:58 - 2017-03-20 10:58 - 00000386 _____ C:\WINDOWS\SysWOW64\data.bin
    2017-03-19 18:49 - 2017-03-19 18:49 - 00000000 ____D C:\Program Files (x86)\{814D9598-B575-4823-AA6B-ACBAC5C4B695}
    2017-03-19 14:48 - 2017-03-19 14:48 - 00000000 ____D C:\Program Files (x86)\{C83D3BDB-E4C8-4AEB-A0B1-F5D17FE8358F}
    2017-03-19 11:32 - 2017-03-19 11:32 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Steam
    2017-03-19 11:30 - 2017-04-05 09:19 - 00000000 ____D C:\Program Files (x86)\Steam
    2017-03-19 11:30 - 2017-03-19 11:30 - 00001036 _____ C:\Users\Public\Desktop\Steam.lnk
    2017-03-19 11:30 - 2017-03-19 11:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
    2017-03-19 11:29 - 2017-03-19 11:30 - 01446792 _____ C:\Users\Joana Lobo\Downloads\SteamSetup.exe
    2017-03-19 10:48 - 2017-03-19 10:48 - 00000000 ____D C:\Program Files (x86)\{97F2F519-934E-4CEA-85F9-6356EA59B4DF}
    2017-03-19 06:47 - 2017-03-19 06:47 - 00000000 ____D C:\Program Files (x86)\{D41D68ED-9D2C-4602-834E-D5EBD9090697}
    2017-03-19 02:46 - 2017-03-19 02:46 - 00000000 ____D C:\Program Files (x86)\{2D958479-F705-45DC-9307-3DE69FAE6503}
    2017-03-18 22:45 - 2017-03-18 22:45 - 00000000 ____D C:\Program Files (x86)\{D7FF1744-0E3A-471C-8912-7D56D4913AC8}
    2017-03-18 18:44 - 2017-03-18 18:44 - 00000000 ____D C:\Program Files (x86)\{FAF02992-5060-4ED5-888A-8AC6CD5EDF1B}
    2017-03-18 18:18 - 2017-03-18 18:18 - 00000000 ____D C:\Program Files (x86)\{02E9AF89-B256-49FA-B87E-4F2EA30109AC}
    2017-03-18 14:16 - 2017-03-18 14:16 - 00000000 ____D C:\Program Files (x86)\{5DC26FAF-7E6E-406C-A6D6-3131A2A532F6}
    2017-03-18 10:49 - 2017-03-18 18:44 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
    2017-03-18 10:49 - 2017-03-18 15:14 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
    2017-03-18 10:49 - 2017-03-18 10:49 - 00000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
    2017-03-18 10:16 - 2017-03-18 18:44 - 00000000 ____D C:\Program Files (x86)\{D68B7E2A-8741-4D5A-81CC-8E8D881B558F}
    2017-03-17 20:54 - 2017-03-17 20:54 - 00000000 ____D C:\ProgramData\Comms
    2017-03-17 19:08 - 2017-03-17 19:08 - 00000000 ____D C:\Program Files (x86)\{4321D79F-6717-450B-998A-4693F5ADB075}
    2017-03-17 18:44 - 2017-03-17 18:44 - 00000176 _____ C:\WINDOWS\REC-NET.INI
    2017-03-17 18:44 - 2017-03-17 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programas RFB
    2017-03-17 18:44 - 2017-03-17 18:44 - 00000000 ____D C:\Program Files (x86)\Programas RFB
    2017-03-17 15:07 - 2017-03-17 15:07 - 00000000 ____D C:\Program Files (x86)\{A44F4CD2-BBFD-49A9-BF16-CC7CB5531D71}
    2017-03-17 07:15 - 2017-03-17 07:16 - 00000000 ____D C:\Program Files (x86)\MIO
    2017-03-17 07:06 - 2017-03-23 12:25 - 00000000 ____D C:\Program Files (x86)\MK
    2017-03-17 07:05 - 2017-03-23 12:21 - 00034328 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
    2017-03-17 07:05 - 2017-03-17 07:05 - 00000000 ____D C:\Program Files (x86)\{D25FD417-9325-4517-8187-7B7959D2F57C}
    2017-03-16 12:36 - 2017-03-04 04:57 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
    2017-03-16 12:36 - 2017-03-04 04:57 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
    2017-03-16 12:36 - 2017-03-04 04:44 - 01470816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
    2017-03-16 12:36 - 2017-03-04 04:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
    2017-03-16 12:36 - 2017-03-04 04:24 - 00090976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
    2017-03-16 12:36 - 2017-03-04 04:09 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
    2017-03-16 12:36 - 2017-03-04 04:09 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll
    2017-03-16 12:36 - 2017-03-04 04:09 - 00497416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
    2017-03-16 12:36 - 2017-03-04 04:08 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
    2017-03-16 12:36 - 2017-03-04 04:07 - 00557400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
    2017-03-16 12:36 - 2017-03-04 04:02 - 00184416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
    2017-03-16 12:36 - 2017-03-04 03:56 - 00248992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
    2017-03-16 12:36 - 2017-03-04 03:54 - 02277288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
    2017-03-16 12:36 - 2017-03-04 03:54 - 00524776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 02256080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 01431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 00781152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
    2017-03-16 12:36 - 2017-03-04 03:53 - 00493912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
    2017-03-16 12:36 - 2017-03-04 03:53 - 00313568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
    2017-03-16 12:36 - 2017-03-04 03:53 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll
    2017-03-16 12:36 - 2017-03-04 03:52 - 00549088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
    2017-03-16 12:36 - 2017-03-04 03:52 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
    2017-03-16 12:36 - 2017-03-04 03:51 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
    2017-03-16 12:36 - 2017-03-04 03:51 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
    2017-03-16 12:36 - 2017-03-04 03:50 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 06667528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 04023000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01853224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01202384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 01123912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00981376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00976184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00640976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00530480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00352760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
    2017-03-16 12:36 - 2017-03-04 03:47 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
    2017-03-16 12:36 - 2017-03-04 03:46 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
    2017-03-16 12:36 - 2017-03-04 03:46 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
    2017-03-16 12:36 - 2017-03-04 03:45 - 00173408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
    2017-03-16 12:36 - 2017-03-04 03:45 - 00112120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
    2017-03-16 12:36 - 2017-03-04 03:42 - 01415240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
    2017-03-16 12:36 - 2017-03-04 03:42 - 01260784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
    2017-03-16 12:36 - 2017-03-04 03:42 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
    2017-03-16 12:36 - 2017-03-04 03:40 - 00306800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
    2017-03-16 12:36 - 2017-03-04 03:36 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
    2017-03-16 12:36 - 2017-03-04 03:30 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
    2017-03-16 12:36 - 2017-03-04 03:30 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
    2017-03-16 12:36 - 2017-03-04 03:24 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
    2017-03-16 12:36 - 2017-03-04 03:23 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
    2017-03-16 12:36 - 2017-03-04 03:22 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
    2017-03-16 12:36 - 2017-03-04 03:21 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
    2017-03-16 12:36 - 2017-03-04 03:21 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
    2017-03-16 12:36 - 2017-03-04 03:21 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
    2017-03-16 12:36 - 2017-03-04 03:21 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
    2017-03-16 12:36 - 2017-03-04 03:20 - 13873664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
    2017-03-16 12:36 - 2017-03-04 03:20 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPTpm12.dll
    2017-03-16 12:36 - 2017-03-04 03:20 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
    2017-03-16 12:36 - 2017-03-04 03:19 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
    2017-03-16 12:36 - 2017-03-04 03:19 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
    2017-03-16 12:36 - 2017-03-04 03:19 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
    2017-03-16 12:36 - 2017-03-04 03:19 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
    2017-03-16 12:36 - 2017-03-04 03:18 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
    2017-03-16 12:36 - 2017-03-04 03:17 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
    2017-03-16 12:36 - 2017-03-04 03:16 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
    2017-03-16 12:36 - 2017-03-04 03:16 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
    2017-03-16 12:36 - 2017-03-04 03:16 - 00762880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
    2017-03-16 12:36 - 2017-03-04 03:16 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
    2017-03-16 12:36 - 2017-03-04 03:16 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
    2017-03-16 12:36 - 2017-03-04 03:15 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
    2017-03-16 12:36 - 2017-03-04 03:15 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
    2017-03-16 12:36 - 2017-03-04 03:14 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 04613120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
    2017-03-16 12:36 - 2017-03-04 03:13 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
    2017-03-16 12:36 - 2017-03-04 03:12 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
    2017-03-16 12:36 - 2017-03-04 03:12 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
    2017-03-16 12:36 - 2017-03-04 03:12 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
    2017-03-16 12:36 - 2017-03-04 03:11 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
    2017-03-16 12:36 - 2017-03-04 03:11 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
    2017-03-16 12:36 - 2017-03-04 03:11 - 01137152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
    2017-03-16 12:36 - 2017-03-04 03:11 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
    2017-03-16 12:36 - 2017-03-04 03:10 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
    2017-03-16 12:36 - 2017-03-04 03:10 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
    2017-03-16 12:36 - 2017-03-04 03:09 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
    2017-03-16 12:36 - 2017-03-04 03:09 - 00570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
    2017-03-16 12:36 - 2017-03-04 03:08 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
    2017-03-16 12:36 - 2017-03-04 03:07 - 02748928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
    2017-03-16 12:36 - 2017-03-04 03:07 - 02643456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
    2017-03-16 12:36 - 2017-03-04 03:07 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
    2017-03-16 12:36 - 2017-03-04 03:06 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
    2017-03-16 12:36 - 2017-03-04 03:06 - 05380608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
    2017-03-16 12:36 - 2017-03-04 03:06 - 03198464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
    2017-03-16 12:36 - 2017-03-04 03:06 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
    2017-03-16 12:36 - 2017-03-04 03:05 - 07468544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
    2017-03-16 12:36 - 2017-03-04 03:05 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
    2017-03-16 12:36 - 2017-03-04 03:05 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
    2017-03-16 12:36 - 2017-03-04 03:05 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
    2017-03-16 12:36 - 2017-03-04 03:04 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
    2017-03-16 12:36 - 2017-03-04 03:03 - 02363904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
    2017-03-16 12:36 - 2017-03-04 03:03 - 02109952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
    2017-03-16 12:36 - 2017-03-04 03:02 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
    2017-03-16 12:36 - 2017-03-04 03:02 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
    2017-03-16 12:36 - 2017-03-04 03:02 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
    2017-03-16 12:36 - 2017-03-04 03:02 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
    2017-03-16 12:36 - 2017-03-04 03:02 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
    2017-03-16 12:36 - 2017-03-04 03:02 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01595904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01571840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01564160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
    2017-03-16 12:36 - 2017-03-04 03:01 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
    2017-03-16 12:36 - 2017-03-04 03:01 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
    2017-03-16 12:36 - 2017-03-04 03:01 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 04557824 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 02996736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
    2017-03-16 12:36 - 2017-03-04 03:00 - 02483200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 02003968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00862208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
    2017-03-16 12:36 - 2017-03-04 03:00 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
    2017-03-16 12:36 - 2017-03-04 02:59 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
    2017-03-16 12:36 - 2017-03-04 02:57 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
    2017-03-16 12:36 - 2017-03-04 02:57 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
    2017-03-16 12:35 - 2017-03-04 04:24 - 02482280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
    2017-03-16 12:35 - 2017-03-04 04:19 - 02049480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
    2017-03-16 12:35 - 2017-03-04 04:09 - 07220696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
    2017-03-16 12:35 - 2017-03-04 04:09 - 01860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
    2017-03-16 12:35 - 2017-03-04 04:09 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
    2017-03-16 12:35 - 2017-03-04 04:09 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
    2017-03-16 12:35 - 2017-03-04 04:06 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
    2017-03-16 12:35 - 2017-03-04 04:04 - 08169536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
    2017-03-16 12:35 - 2017-03-04 04:04 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
    2017-03-16 12:35 - 2017-03-04 04:04 - 01362512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll
    2017-03-16 12:35 - 2017-03-04 04:03 - 22223968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
    2017-03-16 12:35 - 2017-03-04 04:03 - 04260576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
    2017-03-16 12:35 - 2017-03-04 04:03 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
    2017-03-16 12:35 - 2017-03-04 04:03 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
    2017-03-16 12:35 - 2017-03-04 04:03 - 01454512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
    2017-03-16 12:35 - 2017-03-04 04:03 - 01301112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
    2017-03-16 12:35 - 2017-03-04 03:57 - 02536288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
    2017-03-16 12:35 - 2017-03-04 03:56 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
    2017-03-16 12:35 - 2017-03-04 03:47 - 00374448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
    2017-03-16 12:35 - 2017-03-04 03:42 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
    2017-03-16 12:35 - 2017-03-04 03:36 - 00126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
    2017-03-16 12:35 - 2017-03-04 03:34 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
    2017-03-16 12:35 - 2017-03-04 03:34 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
    2017-03-16 12:35 - 2017-03-04 03:34 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
    2017-03-16 12:35 - 2017-03-04 03:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.UI.GameBar.dll
    2017-03-16 12:35 - 2017-03-04 03:32 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll
    2017-03-16 12:35 - 2017-03-04 03:31 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
    2017-03-16 12:35 - 2017-03-04 03:31 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
    2017-03-16 12:35 - 2017-03-04 03:30 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
    2017-03-16 12:35 - 2017-03-04 03:30 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
    2017-03-16 12:35 - 2017-03-04 03:30 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
    2017-03-16 12:35 - 2017-03-04 03:30 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
    2017-03-16 12:35 - 2017-03-04 03:29 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
    2017-03-16 12:35 - 2017-03-04 03:29 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveExt.dll
    2017-03-16 12:35 - 2017-03-04 03:29 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
    2017-03-16 12:35 - 2017-03-04 03:29 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfp.dll
    2017-03-16 12:35 - 2017-03-04 03:29 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInputUap.dll
    2017-03-16 12:35 - 2017-03-04 03:29 - 00019968 _____ C:\WINDOWS\SysWOW64\GamePanelExternalHook.dll
    2017-03-16 12:35 - 2017-03-04 03:28 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
    2017-03-16 12:35 - 2017-03-04 03:28 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
    2017-03-16 12:35 - 2017-03-04 03:28 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 06574592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
    2017-03-16 12:35 - 2017-03-04 03:27 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accountaccessor.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
    2017-03-16 12:35 - 2017-03-04 03:27 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddrawex.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.UI.GameBar.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
    2017-03-16 12:35 - 2017-03-04 03:26 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe
    2017-03-16 12:35 - 2017-03-04 03:25 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
    2017-03-16 12:35 - 2017-03-04 03:25 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscandui.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCCSEngineShared.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.SystemManagement.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WPDShServiceObj.dll
    2017-03-16 12:35 - 2017-03-04 03:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfui.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
    2017-03-16 12:35 - 2017-03-04 03:24 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
    2017-03-16 12:35 - 2017-03-04 03:23 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
    2017-03-16 12:35 - 2017-03-04 03:23 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DavSyncProvider.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
    2017-03-16 12:35 - 2017-03-04 03:23 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiohlp.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 01299968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\icm32.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
    2017-03-16 12:35 - 2017-03-04 03:22 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
    2017-03-16 12:35 - 2017-03-04 03:22 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 06285824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\main.cpl
    2017-03-16 12:35 - 2017-03-04 03:21 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi32.dll
    2017-03-16 12:35 - 2017-03-04 03:21 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanui.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
    2017-03-16 12:35 - 2017-03-04 03:20 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
    2017-03-16 12:35 - 2017-03-04 03:19 - 03777536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
    2017-03-16 12:35 - 2017-03-04 03:19 - 00714752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
    2017-03-16 12:35 - 2017-03-04 03:19 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
    2017-03-16 12:35 - 2017-03-04 03:19 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
    2017-03-16 12:35 - 2017-03-04 03:19 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
    2017-03-16 12:35 - 2017-03-04 03:19 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 01231360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
    2017-03-16 12:35 - 2017-03-04 03:18 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
    2017-03-16 12:35 - 2017-03-04 03:17 - 07812096 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
    2017-03-16 12:35 - 2017-03-04 03:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
    2017-03-16 12:35 - 2017-03-04 03:17 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 13441536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
    2017-03-16 12:35 - 2017-03-04 03:16 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
    2017-03-16 12:35 - 2017-03-04 03:16 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
    2017-03-16 12:35 - 2017-03-04 03:15 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
    2017-03-16 12:35 - 2017-03-04 03:15 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
    2017-03-16 12:35 - 2017-03-04 03:15 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
    2017-03-16 12:35 - 2017-03-04 03:14 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
    2017-03-16 12:35 - 2017-03-04 03:13 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
    2017-03-16 12:35 - 2017-03-04 03:13 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
    2017-03-16 12:35 - 2017-03-04 03:13 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
    2017-03-16 12:35 - 2017-03-04 03:13 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
    2017-03-16 12:35 - 2017-03-04 03:12 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
    2017-03-16 12:35 - 2017-03-04 03:12 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
    2017-03-16 12:35 - 2017-03-04 03:12 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
    2017-03-16 12:35 - 2017-03-04 03:12 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
    2017-03-16 12:35 - 2017-03-04 03:12 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
    2017-03-16 12:35 - 2017-03-04 03:11 - 03441664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
    2017-03-16 12:35 - 2017-03-04 03:11 - 02953216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
    2017-03-16 12:35 - 2017-03-04 03:11 - 01357312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
    2017-03-16 12:35 - 2017-03-04 03:10 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
    2017-03-16 12:35 - 2017-03-04 03:10 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
    2017-03-16 12:35 - 2017-03-04 03:10 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
    2017-03-16 12:35 - 2017-03-04 03:10 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
    2017-03-16 12:35 - 2017-03-04 03:10 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
    2017-03-16 12:35 - 2017-03-04 03:10 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regedit.exe
    2017-03-16 12:35 - 2017-03-04 03:10 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
    2017-03-16 12:35 - 2017-03-04 03:09 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
    2017-03-16 12:35 - 2017-03-04 03:09 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
    2017-03-16 12:35 - 2017-03-04 03:09 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
    2017-03-16 12:35 - 2017-03-04 03:09 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
    2017-03-16 12:35 - 2017-03-04 03:08 - 12349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
    2017-03-16 12:35 - 2017-03-04 03:08 - 03405312 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
    2017-03-16 12:35 - 2017-03-04 03:08 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
    2017-03-16 12:35 - 2017-03-04 03:08 - 01981440 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
    2017-03-16 12:35 - 2017-03-04 03:08 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
    2017-03-16 12:35 - 2017-03-04 03:07 - 01792512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
    2017-03-16 12:35 - 2017-03-04 03:07 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
    2017-03-16 12:35 - 2017-03-04 03:07 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
    2017-03-16 12:35 - 2017-03-04 03:07 - 00545280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
    2017-03-16 12:35 - 2017-03-04 03:07 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
    2017-03-16 12:35 - 2017-03-04 03:06 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
    2017-03-16 12:35 - 2017-03-04 03:06 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
    2017-03-16 12:35 - 2017-03-04 03:06 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
    2017-03-16 12:35 - 2017-03-04 03:06 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
    2017-03-16 12:35 - 2017-03-04 03:06 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
    2017-03-16 12:35 - 2017-03-04 03:06 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
    2017-03-16 12:35 - 2017-03-04 03:05 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
    2017-03-16 12:35 - 2017-03-04 03:05 - 01133568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
    2017-03-16 12:35 - 2017-03-04 03:05 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
    2017-03-16 12:35 - 2017-03-04 03:05 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
    2017-03-16 12:35 - 2017-03-04 03:05 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
    2017-03-16 12:35 - 2017-03-04 03:04 - 00753152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll
    2017-03-16 12:35 - 2017-03-04 03:04 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
    2017-03-16 12:35 - 2017-03-04 03:03 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
    2017-03-16 12:35 - 2017-03-04 03:03 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSENCD.DLL
    2017-03-16 12:35 - 2017-03-04 03:03 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
    2017-03-16 12:35 - 2017-03-04 03:03 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxclu.dll
    2017-03-16 12:35 - 2017-03-04 03:02 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
    2017-03-16 12:35 - 2017-03-04 03:02 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll
    2017-03-16 12:35 - 2017-03-04 03:02 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
    2017-03-16 12:35 - 2017-03-04 03:01 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
    2017-03-16 12:35 - 2017-03-04 03:01 - 01154560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Pimstore.dll
    2017-03-16 12:35 - 2017-03-04 03:01 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
    2017-03-16 12:35 - 2017-03-04 03:01 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
    2017-03-16 12:35 - 2017-03-04 03:00 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
    2017-03-16 12:35 - 2017-03-04 03:00 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
    2017-03-16 12:35 - 2017-03-04 03:00 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
    2017-03-16 12:35 - 2017-03-04 02:59 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
    2017-03-16 12:35 - 2017-03-04 02:57 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
    2017-03-16 12:35 - 2017-03-04 02:57 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RADCUI.dll
    2017-03-16 12:35 - 2017-03-04 02:36 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
    2017-03-16 12:35 - 2017-02-21 23:17 - 00448285 _____ C:\WINDOWS\system32\ApnDatabase.xml
    2017-03-16 12:34 - 2017-03-04 04:27 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
    2017-03-16 12:34 - 2017-03-04 04:26 - 00794416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
    2017-03-16 12:34 - 2017-03-04 04:24 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
    2017-03-16 12:34 - 2017-03-04 04:24 - 00646688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
    2017-03-16 12:34 - 2017-03-04 04:24 - 00108384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
    2017-03-16 12:34 - 2017-03-04 04:23 - 02512304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
    2017-03-16 12:34 - 2017-03-04 04:22 - 07786336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
    2017-03-16 12:34 - 2017-03-04 04:22 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
    2017-03-16 12:34 - 2017-03-04 04:19 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
    2017-03-16 12:34 - 2017-03-04 04:18 - 01181024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
    2017-03-16 12:34 - 2017-03-04 04:18 - 00219040 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
    2017-03-16 12:34 - 2017-03-04 04:18 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
    2017-03-16 12:34 - 2017-03-04 04:17 - 00409952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
    2017-03-16 12:34 - 2017-03-04 04:15 - 01000280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
    2017-03-16 12:34 - 2017-03-04 04:15 - 00063328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
    2017-03-16 12:34 - 2017-03-04 04:11 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
    2017-03-16 12:34 - 2017-03-04 04:10 - 02828384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
    2017-03-16 12:34 - 2017-03-04 04:10 - 02189664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
    2017-03-16 12:34 - 2017-03-04 04:10 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
    2017-03-16 12:34 - 2017-03-04 04:09 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
    2017-03-16 12:34 - 2017-03-04 04:09 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
    2017-03-16 12:34 - 2017-03-04 04:09 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
    2017-03-16 12:34 - 2017-03-04 04:09 - 00681312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
    2017-03-16 12:34 - 2017-03-04 04:09 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
    2017-03-16 12:34 - 2017-03-04 04:09 - 00635864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
    2017-03-16 12:34 - 2017-03-04 04:09 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
    2017-03-16 12:34 - 2017-03-04 04:09 - 00396168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
    2017-03-16 12:34 - 2017-03-04 04:08 - 00450400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
    2017-03-16 12:34 - 2017-03-04 04:08 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
    2017-03-16 12:34 - 2017-03-04 04:07 - 00432992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
    2017-03-16 12:34 - 2017-03-04 04:04 - 01063472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 01989072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 01723560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
    2017-03-16 12:34 - 2017-03-04 04:03 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 01473048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 01071736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00755648 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00596040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00443232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00424616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
    2017-03-16 12:34 - 2017-03-04 04:03 - 00241496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
    2017-03-16 12:34 - 2017-03-04 04:03 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
    2017-03-16 12:34 - 2017-03-04 04:01 - 00137936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
    2017-03-16 12:34 - 2017-03-04 03:57 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
    2017-03-16 12:34 - 2017-03-04 03:39 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
    2017-03-16 12:34 - 2017-03-04 03:37 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
    2017-03-16 12:34 - 2017-03-04 03:36 - 22565376 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
    2017-03-16 12:34 - 2017-03-04 03:36 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
    2017-03-16 12:34 - 2017-03-04 03:36 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DuCsps.dll
    2017-03-16 12:34 - 2017-03-04 03:36 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
    2017-03-16 12:34 - 2017-03-04 03:35 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
    2017-03-16 12:34 - 2017-03-04 03:35 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
    2017-03-16 12:34 - 2017-03-04 03:34 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
    2017-03-16 12:34 - 2017-03-04 03:34 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
    2017-03-16 12:34 - 2017-03-04 03:34 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
    2017-03-16 12:34 - 2017-03-04 03:33 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
    2017-03-16 12:34 - 2017-03-04 03:33 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
    2017-03-16 12:34 - 2017-03-04 03:32 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
    2017-03-16 12:34 - 2017-03-04 03:32 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCCSEngineShared.dll
    2017-03-16 12:34 - 2017-03-04 03:32 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
    2017-03-16 12:34 - 2017-03-04 03:31 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
    2017-03-16 12:34 - 2017-03-04 03:31 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
    2017-03-16 12:34 - 2017-03-04 03:31 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
    2017-03-16 12:34 - 2017-03-04 03:30 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
    2017-03-16 12:34 - 2017-03-04 03:30 - 00535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
    2017-03-16 12:34 - 2017-03-04 03:30 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
    2017-03-16 12:34 - 2017-03-04 03:30 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
    2017-03-16 12:34 - 2017-03-04 03:30 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
    2017-03-16 12:34 - 2017-03-04 03:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
    2017-03-16 12:34 - 2017-03-04 03:30 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
    2017-03-16 12:34 - 2017-03-04 03:29 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
    2017-03-16 12:34 - 2017-03-04 03:29 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
    2017-03-16 12:34 - 2017-03-04 03:29 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
    2017-03-16 12:34 - 2017-03-04 03:29 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
    2017-03-16 12:34 - 2017-03-04 03:29 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
    2017-03-16 12:34 - 2017-03-04 03:29 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00741888 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ppcsnap.dll
    2017-03-16 12:34 - 2017-03-04 03:28 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
    2017-03-16 12:34 - 2017-03-04 03:27 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00460288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
    2017-03-16 12:34 - 2017-03-04 03:27 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DavSyncProvider.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
    2017-03-16 12:34 - 2017-03-04 03:26 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
    2017-03-16 12:34 - 2017-03-04 03:25 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
    2017-03-16 12:34 - 2017-03-04 03:24 - 01025536 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
    2017-03-16 12:34 - 2017-03-04 03:24 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
    2017-03-16 12:34 - 2017-03-04 03:24 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
    2017-03-16 12:34 - 2017-03-04 03:23 - 01184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
    2017-03-16 12:34 - 2017-03-04 03:23 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
    2017-03-16 12:34 - 2017-03-04 03:23 - 00945152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
    2017-03-16 12:34 - 2017-03-04 03:23 - 00820224 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintRenderAPIHost.DLL
    2017-03-16 12:34 - 2017-03-04 03:23 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
    2017-03-16 12:34 - 2017-03-04 03:23 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
    2017-03-16 12:34 - 2017-03-04 03:23 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
    2017-03-16 12:34 - 2017-03-04 03:23 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
    2017-03-16 12:34 - 2017-03-04 03:21 - 01937920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
    2017-03-16 12:34 - 2017-03-04 03:21 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
    2017-03-16 12:34 - 2017-03-04 03:21 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
    2017-03-16 12:34 - 2017-03-04 03:21 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
    2017-03-16 12:34 - 2017-03-04 03:21 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
    2017-03-16 12:34 - 2017-03-04 03:20 - 01280512 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
    2017-03-16 12:34 - 2017-03-04 03:20 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
    2017-03-16 12:34 - 2017-03-04 03:20 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
    2017-03-16 12:34 - 2017-03-04 03:20 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
    2017-03-16 12:34 - 2017-03-04 03:19 - 23676416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
    2017-03-16 12:34 - 2017-03-04 03:19 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
    2017-03-16 12:34 - 2017-03-04 03:19 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
    2017-03-16 12:34 - 2017-03-04 03:19 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
    2017-03-16 12:34 - 2017-03-04 03:19 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
    2017-03-16 12:34 - 2017-03-04 03:19 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
    2017-03-16 12:34 - 2017-03-04 03:19 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
    2017-03-16 12:34 - 2017-03-04 03:19 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Tabbtn.dll
    2017-03-16 12:34 - 2017-03-04 03:18 - 17198592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
    2017-03-16 12:34 - 2017-03-04 03:18 - 01762816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
    2017-03-16 12:34 - 2017-03-04 03:18 - 01189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
    2017-03-16 12:34 - 2017-03-04 03:18 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
    2017-03-16 12:34 - 2017-03-04 03:17 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
    2017-03-16 12:34 - 2017-03-04 03:17 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
    2017-03-16 12:34 - 2017-03-04 03:17 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
    2017-03-16 12:34 - 2017-03-04 03:16 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
    2017-03-16 12:34 - 2017-03-04 03:16 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmscan.dll
    2017-03-16 12:34 - 2017-03-04 03:16 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
    2017-03-16 12:34 - 2017-03-04 03:16 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
    2017-03-16 12:34 - 2017-03-04 03:15 - 18362368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
    2017-03-16 12:34 - 2017-03-04 03:15 - 01837056 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
    2017-03-16 12:34 - 2017-03-04 03:15 - 01345024 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll
    2017-03-16 12:34 - 2017-03-04 03:14 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 19411968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 00937472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
    2017-03-16 12:34 - 2017-03-04 03:13 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll
    2017-03-16 12:34 - 2017-03-04 03:12 - 13085184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
    2017-03-16 12:34 - 2017-03-04 03:12 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll
    2017-03-16 12:34 - 2017-03-04 03:12 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
    2017-03-16 12:34 - 2017-03-04 03:11 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
    2017-03-16 12:34 - 2017-03-04 03:11 - 00975872 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
    2017-03-16 12:34 - 2017-03-04 03:11 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
    2017-03-16 12:34 - 2017-03-04 03:11 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
    2017-03-16 12:34 - 2017-03-04 03:11 - 00572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
    2017-03-16 12:34 - 2017-03-04 03:10 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
    2017-03-16 12:34 - 2017-03-04 03:10 - 01917440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 01536000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 01399296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pimstore.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
    2017-03-16 12:34 - 2017-03-04 03:10 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
    2017-03-16 12:34 - 2017-03-04 03:09 - 08125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
    2017-03-16 12:34 - 2017-03-04 03:09 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
    2017-03-16 12:34 - 2017-03-04 03:09 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
    2017-03-16 12:34 - 2017-03-04 03:09 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
    2017-03-16 12:34 - 2017-03-04 03:08 - 08076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
    2017-03-16 12:34 - 2017-03-04 03:08 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
    2017-03-16 12:34 - 2017-03-04 03:08 - 01780224 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
    2017-03-16 12:34 - 2017-03-04 03:08 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
    2017-03-16 12:34 - 2017-03-04 03:08 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
    2017-03-16 12:34 - 2017-03-04 03:08 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 12178944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 02895872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 02691072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
    2017-03-16 12:34 - 2017-03-04 03:07 - 01512448 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 01348608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 00935936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srmclient.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
    2017-03-16 12:34 - 2017-03-04 03:07 - 00707584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 02475008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 02287104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
    2017-03-16 12:34 - 2017-03-04 03:06 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
    2017-03-16 12:34 - 2017-03-04 03:05 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
    2017-03-16 12:34 - 2017-03-04 03:05 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
    2017-03-16 12:34 - 2017-03-04 03:04 - 01826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
    2017-03-16 12:34 - 2017-03-04 03:04 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
    2017-03-16 12:34 - 2017-03-04 03:04 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
    2017-03-16 12:34 - 2017-03-04 03:04 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
    2017-03-16 12:34 - 2017-03-04 03:04 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
    2017-03-16 12:34 - 2017-03-04 03:03 - 06044672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
    2017-03-16 12:34 - 2017-03-04 03:03 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
    2017-03-16 12:34 - 2017-03-04 03:03 - 00119808 ____R (Microsoft Corporation) C:\WINDOWS\system32\SecureAssessmentHandlers.dll
    2017-03-16 12:34 - 2017-03-04 03:02 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.SecureAssessment.dll
    2017-03-16 12:34 - 2017-03-04 03:01 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
    2017-03-16 12:34 - 2017-03-04 03:00 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
    2017-03-16 12:33 - 2017-03-04 04:57 - 00192352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 01617760 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 01294688 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00655200 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00590952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00378720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00343904 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00315232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00242528 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00142176 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
    2017-03-16 12:33 - 2017-03-04 04:35 - 00086368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
    2017-03-16 12:33 - 2017-03-04 04:35 - 00038240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
    2017-03-16 12:33 - 2017-03-04 04:27 - 02170720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
    2017-03-16 12:33 - 2017-03-04 04:25 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
    2017-03-16 12:33 - 2017-03-04 04:24 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
    2017-03-16 12:33 - 2017-03-04 04:24 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
    2017-03-16 12:33 - 2017-03-04 04:24 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
    2017-03-16 12:33 - 2017-03-04 04:22 - 01354312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
    2017-03-16 12:33 - 2017-03-04 04:22 - 01172984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
    2017-03-16 12:33 - 2017-03-04 04:21 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
    2017-03-16 12:33 - 2017-03-04 04:20 - 00379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
    2017-03-16 12:33 - 2017-03-04 04:20 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
    2017-03-16 12:33 - 2017-03-04 04:18 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
    2017-03-16 12:33 - 2017-03-04 04:15 - 00404320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
    2017-03-16 12:33 - 2017-03-04 04:13 - 00635456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
    2017-03-16 12:33 - 2017-03-04 04:11 - 00266544 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
    2017-03-16 12:33 - 2017-03-04 04:09 - 00578392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
    2017-03-16 12:33 - 2017-03-04 04:09 - 00178520 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
    2017-03-16 12:33 - 2017-03-04 04:08 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
    2017-03-16 12:33 - 2017-03-04 04:08 - 00509280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
    2017-03-16 12:33 - 2017-03-04 04:08 - 00342456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
    2017-03-16 12:33 - 2017-03-04 04:07 - 02913144 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
    2017-03-16 12:33 - 2017-03-04 04:07 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
    2017-03-16 12:33 - 2017-03-04 04:07 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
    2017-03-16 12:33 - 2017-03-04 04:07 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
    2017-03-16 12:33 - 2017-03-04 04:07 - 00989016 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
    2017-03-16 12:33 - 2017-03-04 04:07 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
    2017-03-16 12:33 - 2017-03-04 04:07 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
    2017-03-16 12:33 - 2017-03-04 04:07 - 00682808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
    2017-03-16 12:33 - 2017-03-04 04:07 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
    2017-03-16 12:33 - 2017-03-04 04:07 - 00110944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
    2017-03-16 12:33 - 2017-03-04 04:07 - 00080224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
    2017-03-16 12:33 - 2017-03-04 04:03 - 04674360 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
    2017-03-16 12:33 - 2017-03-04 04:03 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
    2017-03-16 12:33 - 2017-03-04 04:03 - 00038768 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
    2017-03-16 12:33 - 2017-03-04 04:01 - 00201568 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
    2017-03-16 12:33 - 2017-03-04 04:01 - 00128648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
    2017-03-16 12:33 - 2017-03-04 03:59 - 01570208 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
    2017-03-16 12:33 - 2017-03-04 03:58 - 01416224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
    2017-03-16 12:33 - 2017-03-04 03:58 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
    2017-03-16 12:33 - 2017-03-04 03:58 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
    2017-03-16 12:33 - 2017-03-04 03:57 - 00372432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
    2017-03-16 12:33 - 2017-03-04 03:42 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
    2017-03-16 12:33 - 2017-03-04 03:37 - 00025088 _____ C:\WINDOWS\system32\GamePanelExternalHook.dll
    2017-03-16 12:33 - 2017-03-04 03:36 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
    2017-03-16 12:33 - 2017-03-04 03:36 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
    2017-03-16 12:33 - 2017-03-04 03:36 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
    2017-03-16 12:33 - 2017-03-04 03:36 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
    2017-03-16 12:33 - 2017-03-04 03:35 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
    2017-03-16 12:33 - 2017-03-04 03:35 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
    2017-03-16 12:33 - 2017-03-04 03:34 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.SystemManagement.dll
    2017-03-16 12:33 - 2017-03-04 03:34 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfui.dll
    2017-03-16 12:33 - 2017-03-04 03:34 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys
    2017-03-16 12:33 - 2017-03-04 03:34 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dggpext.dll
    2017-03-16 12:33 - 2017-03-04 03:33 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
    2017-03-16 12:33 - 2017-03-04 03:33 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
    2017-03-16 12:33 - 2017-03-04 03:33 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
    2017-03-16 12:33 - 2017-03-04 03:33 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
    2017-03-16 12:33 - 2017-03-04 03:33 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothDesktopHandlers.dll
    2017-03-16 12:33 - 2017-03-04 03:33 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInputUap.dll
    2017-03-16 12:33 - 2017-03-04 03:33 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
    2017-03-16 12:33 - 2017-03-04 03:32 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
    2017-03-16 12:33 - 2017-03-04 03:32 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
    2017-03-16 12:33 - 2017-03-04 03:32 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
    2017-03-16 12:33 - 2017-03-04 03:32 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
    2017-03-16 12:33 - 2017-03-04 03:32 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
    2017-03-16 12:33 - 2017-03-04 03:31 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
    2017-03-16 12:33 - 2017-03-04 03:31 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll
    2017-03-16 12:33 - 2017-03-04 03:31 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
    2017-03-16 12:33 - 2017-03-04 03:31 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscandui.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
    2017-03-16 12:33 - 2017-03-04 03:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
    2017-03-16 12:33 - 2017-03-04 03:29 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
    2017-03-16 12:33 - 2017-03-04 03:29 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll
    2017-03-16 12:33 - 2017-03-04 03:29 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
    2017-03-16 12:33 - 2017-03-04 03:29 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll
    2017-03-16 12:33 - 2017-03-04 03:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
    2017-03-16 12:33 - 2017-03-04 03:29 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
    2017-03-16 12:33 - 2017-03-04 03:28 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
    2017-03-16 12:33 - 2017-03-04 03:28 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
    2017-03-16 12:33 - 2017-03-04 03:27 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00643072 _____ (Microsoft Corporation) C:\WINDOWS\system32\main.cpl
    2017-03-16 12:33 - 2017-03-04 03:26 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
    2017-03-16 12:33 - 2017-03-04 03:26 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
    2017-03-16 12:33 - 2017-03-04 03:25 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
    2017-03-16 12:33 - 2017-03-04 03:25 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
    2017-03-16 12:33 - 2017-03-04 03:25 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 01092096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXP.dll
    2017-03-16 12:33 - 2017-03-04 03:24 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
    2017-03-16 12:33 - 2017-03-04 03:23 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
    2017-03-16 12:33 - 2017-03-04 03:23 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
    2017-03-16 12:33 - 2017-03-04 03:23 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
    2017-03-16 12:33 - 2017-03-04 03:23 - 00715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
    2017-03-16 12:33 - 2017-03-04 03:23 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
    2017-03-16 12:33 - 2017-03-04 03:23 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
    2017-03-16 12:33 - 2017-03-04 03:23 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
    2017-03-16 12:33 - 2017-03-04 03:22 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
    2017-03-16 12:33 - 2017-03-04 03:22 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
    2017-03-16 12:33 - 2017-03-04 03:22 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
    2017-03-16 12:33 - 2017-03-04 03:21 - 00776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabletPC.cpl
    2017-03-16 12:33 - 2017-03-04 03:21 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
    2017-03-16 12:33 - 2017-03-04 03:20 - 01913856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
    2017-03-16 12:33 - 2017-03-04 03:20 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
    2017-03-16 12:33 - 2017-03-04 03:20 - 00893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
    2017-03-16 12:33 - 2017-03-04 03:20 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
    2017-03-16 12:33 - 2017-03-04 03:20 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
    2017-03-16 12:33 - 2017-03-04 03:19 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
    2017-03-16 12:33 - 2017-03-04 03:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
    2017-03-16 12:33 - 2017-03-04 03:19 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
    2017-03-16 12:33 - 2017-03-04 03:19 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\tabcal.exe
    2017-03-16 12:33 - 2017-03-04 03:18 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
    2017-03-16 12:33 - 2017-03-04 03:18 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\regedit.exe
    2017-03-16 12:33 - 2017-03-04 03:18 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll
    2017-03-16 12:33 - 2017-03-04 03:17 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
    2017-03-16 12:33 - 2017-03-04 03:17 - 00730624 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
    2017-03-16 12:33 - 2017-03-04 03:17 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
    2017-03-16 12:33 - 2017-03-04 03:17 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
    2017-03-16 12:33 - 2017-03-04 03:16 - 03289088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
    2017-03-16 12:33 - 2017-03-04 03:16 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
    2017-03-16 12:33 - 2017-03-04 03:16 - 00583168 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
    2017-03-16 12:33 - 2017-03-04 03:16 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
    2017-03-16 12:33 - 2017-03-04 03:15 - 09130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
    2017-03-16 12:33 - 2017-03-04 03:15 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
    2017-03-16 12:33 - 2017-03-04 03:15 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
    2017-03-16 12:33 - 2017-03-04 03:14 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
    2017-03-16 12:33 - 2017-03-04 03:14 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
    2017-03-16 12:33 - 2017-03-04 03:14 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
    2017-03-16 12:33 - 2017-03-04 03:14 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
    2017-03-16 12:33 - 2017-03-04 03:14 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
    2017-03-16 12:33 - 2017-03-04 03:14 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
    2017-03-16 12:33 - 2017-03-04 03:14 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
    2017-03-16 12:33 - 2017-03-04 03:13 - 05114368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
    2017-03-16 12:33 - 2017-03-04 03:13 - 00961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
    2017-03-16 12:33 - 2017-03-04 03:13 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
    2017-03-16 12:33 - 2017-03-04 03:13 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
    2017-03-16 12:33 - 2017-03-04 03:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
    2017-03-16 12:33 - 2017-03-04 03:13 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
    2017-03-16 12:33 - 2017-03-04 03:13 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MultiDigiMon.exe
    2017-03-16 12:33 - 2017-03-04 03:12 - 01692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
    2017-03-16 12:33 - 2017-03-04 03:12 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
    2017-03-16 12:33 - 2017-03-04 03:12 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
    2017-03-16 12:33 - 2017-03-04 03:12 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
    2017-03-16 12:33 - 2017-03-04 03:11 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
    2017-03-16 12:33 - 2017-03-04 03:11 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
    2017-03-16 12:33 - 2017-03-04 03:11 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
    2017-03-16 12:33 - 2017-03-04 03:11 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
    2017-03-16 12:33 - 2017-03-04 03:11 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
    2017-03-16 12:33 - 2017-03-04 03:11 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
    2017-03-16 12:33 - 2017-03-04 03:11 - 00818176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
    2017-03-16 12:33 - 2017-03-04 03:10 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
    2017-03-16 12:33 - 2017-03-04 03:10 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
    2017-03-16 12:33 - 2017-03-04 03:10 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
    2017-03-16 12:33 - 2017-03-04 03:10 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
    2017-03-16 12:33 - 2017-03-04 03:10 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
    2017-03-16 12:33 - 2017-03-04 03:10 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
    2017-03-16 12:33 - 2017-03-04 03:09 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
    2017-03-16 12:33 - 2017-03-04 03:08 - 01714688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
    2017-03-16 12:33 - 2017-03-04 03:08 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
    2017-03-16 12:33 - 2017-03-04 03:07 - 02914816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
    2017-03-16 12:33 - 2017-03-04 03:07 - 02512384 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
    2017-03-16 12:33 - 2017-03-04 03:07 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
    2017-03-16 12:33 - 2017-03-04 03:07 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
    2017-03-16 12:33 - 2017-03-04 03:07 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
    2017-03-16 12:33 - 2017-03-04 03:07 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
    2017-03-16 12:33 - 2017-03-04 03:06 - 05384192 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll
    2017-03-16 12:33 - 2017-03-04 03:06 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
    2017-03-16 12:33 - 2017-03-04 03:06 - 04060672 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
    2017-03-16 12:33 - 2017-03-04 03:06 - 03614720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
    2017-03-16 12:33 - 2017-03-04 03:06 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
    2017-03-16 12:33 - 2017-03-04 03:06 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
    2017-03-16 12:33 - 2017-03-04 03:06 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
    2017-03-16 12:33 - 2017-03-04 03:05 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
    2017-03-16 12:33 - 2017-03-04 03:05 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
    2017-03-16 12:33 - 2017-03-04 03:05 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
    2017-03-16 12:33 - 2017-03-04 03:04 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
    2017-03-16 12:33 - 2017-03-04 03:03 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
    2017-03-16 12:33 - 2017-03-04 03:02 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
    2017-03-16 12:33 - 2017-03-04 03:01 - 03478528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
    2017-03-16 12:33 - 2016-07-15 23:29 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\CspCellularSettings.dll
    2017-03-16 12:33 - 2016-07-15 23:28 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAPNCsp.dll
    2017-03-16 12:33 - 2016-07-15 23:26 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CfgSPCellular.dll
    2017-03-16 12:32 - 2016-05-29 15:38 - 08886976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSetup.exe
    2017-03-15 16:11 - 2017-03-15 16:11 - 00000000 ___RD C:\Program Files (x86)\Skype
    2017-03-15 16:11 - 2017-03-15 16:11 - 00000000 ____D C:\ProgramData\Package Cache
    2017-03-15 16:11 - 2017-03-15 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
    2017-03-13 18:20 - 2017-03-23 12:21 - 00000000 ____D C:\Program Files\g5hicevy
    2017-03-13 18:20 - 2017-03-18 18:44 - 04939480 _____ C:\WINDOWS\system32\FNTCACHE.DAT
    2017-03-10 17:27 - 2017-03-10 17:27 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\{C4DEF282-E076-9E3A-8DEE-BBD2A986474A}
    2017-03-10 09:32 - 2017-03-10 09:49 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Bigatainanvack
    2017-03-10 09:32 - 2017-03-10 09:32 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Qijulememeent
    2017-03-10 09:32 - 2017-03-10 09:32 - 00000000 ____D C:\Program Files (x86)\Qucight Monitor
    2017-03-06 17:29 - 2017-03-10 09:47 - 00015420 _____ C:\WINDOWS\system32\--traceoff
    2017-03-06 17:29 - 2017-03-06 17:29 - 00000000 _____ C:\WINDOWS\system32\--debugoff
    2017-03-06 16:31 - 2017-03-06 16:32 - 00000000 ____D C:\Users\Joana Lobo\AppData\LocalLow\uTorrent
    2017-03-06 15:55 - 2017-03-06 15:55 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Sony Creative Software Inc
    2017-03-06 15:55 - 2017-03-06 15:55 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Publish Providers
    2017-03-06 15:50 - 2017-03-10 09:47 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Sony
    2017-03-06 15:49 - 2017-03-06 17:32 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Sony
    2017-03-06 12:28 - 2017-03-16 10:20 - 00000000 ____D C:\Users\Joana Lobo\Documents\vídeos
    2017-03-06 07:50 - 2017-04-04 10:36 - 00003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
    2017-03-06 07:50 - 2017-04-04 10:35 - 00334088 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
    2017-03-06 07:50 - 2017-04-04 10:35 - 00307736 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
    2017-03-06 07:50 - 2017-04-04 10:35 - 00189768 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
    2017-03-06 07:50 - 2017-04-04 10:35 - 00048528 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
    2017-03-06 07:50 - 2017-03-06 07:50 - 00334600 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\asw54B1.tmp
    2017-03-06 07:50 - 2017-03-06 07:50 - 00309272 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\asw549F.tmp
    2017-03-06 07:50 - 2017-03-06 07:50 - 00189768 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\asw54B0.tmp
    2017-03-06 07:50 - 2017-03-06 07:50 - 00048528 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\asw54B2.tmp
    2017-02-24 19:10 - 2017-02-24 19:10 - 40213952 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 39246768 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 35131640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 33775608 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 15630696 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 13607800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 04316128 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 04284872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 02422504 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 01883360 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 01841088 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 01838392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00323736 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00308496 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00253016 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00233920 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00215856 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00194336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00193312 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00192152 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00170368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00170368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
    2017-02-24 19:10 - 2017-02-24 19:10 - 00064560 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 29110288 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 19870216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 11750928 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 08740880 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 05697544 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 05271560 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 04937232 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 04372496 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 03980304 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 01599504 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 01187336 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 01035760 _____ C:\WINDOWS\system32\igfxSDK.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00976872 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00973296 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00713744 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00545272 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00475632 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00457200 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00448008 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00424976 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00398864 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00397320 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00358888 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00327184 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00310256 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00282128 _____ C:\WINDOWS\system32\igfxCPL.cpl
    2017-02-24 19:07 - 2017-02-24 19:07 - 00274960 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00263696 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00245744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00241144 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00240624 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00234000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00201736 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00183792 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
    2017-02-24 19:07 - 2017-02-24 19:07 - 00182792 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00120336 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00112656 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00112144 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00109576 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00108552 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00103952 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00093184 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00061456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00037896 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00037896 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00036360 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00036360 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00031248 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
    2017-02-24 19:07 - 2017-02-24 19:07 - 00031240 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
    2017-02-06 16:17 - 2017-02-06 16:17 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativo Itaú
    2017-02-02 06:29 - 2016-12-21 04:08 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
    2017-02-02 06:29 - 2016-12-21 01:44 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
    2017-02-02 06:26 - 2017-03-06 12:29 - 00003294 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
    2017-01-28 07:10 - 2017-01-28 07:10 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
    2017-01-28 07:10 - 2017-01-28 07:10 - 00000000 ____D C:\Program Files\Common Files\AV
    2017-01-10 17:47 - 2016-12-21 05:08 - 00245600 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
    2017-01-10 17:47 - 2016-12-21 05:08 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
    2017-01-10 17:47 - 2016-12-21 04:08 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
    2017-01-10 17:47 - 2016-12-21 03:59 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
    2017-01-10 17:47 - 2016-12-21 03:51 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
    2017-01-10 17:47 - 2016-12-21 03:49 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
    2017-01-10 17:47 - 2016-12-21 02:59 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll
    2017-01-10 17:47 - 2016-12-21 01:43 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
    2017-01-10 17:47 - 2016-12-21 01:41 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
    2017-01-10 17:47 - 2016-12-21 01:40 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
    2017-01-10 17:47 - 2016-12-21 01:40 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
    2017-01-10 17:47 - 2016-12-21 01:39 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
    2017-01-10 17:47 - 2016-12-21 01:38 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
    2017-01-10 17:47 - 2016-12-21 01:30 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 01669984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 01400160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00992096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00822624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
    2017-01-10 17:47 - 2016-12-14 02:33 - 00779616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00752992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00571744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
    2017-01-10 17:47 - 2016-12-14 02:33 - 00406368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll
    2017-01-10 17:47 - 2016-12-14 02:23 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
    2017-01-10 17:47 - 2016-12-14 02:17 - 00319288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
    2017-01-10 17:47 - 2016-12-14 02:01 - 00382784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
    2017-01-10 17:47 - 2016-12-14 01:43 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
    2017-01-10 17:47 - 2016-12-14 01:42 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
    2017-01-10 17:47 - 2016-12-14 01:42 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll
    2017-01-10 17:47 - 2016-12-14 01:42 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
    2017-01-10 17:47 - 2016-12-14 01:38 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll
    2017-01-10 17:47 - 2016-12-14 01:35 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
    2017-01-10 17:47 - 2016-12-14 01:35 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
    2017-01-10 17:47 - 2016-12-14 01:35 - 00553984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
    2017-01-10 17:47 - 2016-12-14 01:26 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
    2017-01-10 17:47 - 2016-12-14 01:24 - 01005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
    2017-01-10 17:47 - 2016-12-14 01:24 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
    2017-01-10 17:47 - 2016-12-14 01:23 - 03134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
    2017-01-10 17:46 - 2016-12-21 04:43 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
    2017-01-10 17:46 - 2016-12-21 04:37 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
    2017-01-10 17:46 - 2016-12-21 04:13 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
    2017-01-10 17:46 - 2016-12-21 04:12 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
    2017-01-10 17:46 - 2016-12-21 04:10 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
    2017-01-10 17:46 - 2016-12-21 04:09 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
    2017-01-10 17:46 - 2016-12-21 04:09 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
    2017-01-10 17:46 - 2016-12-21 04:08 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
    2017-01-10 17:46 - 2016-12-21 04:08 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
    2017-01-10 17:46 - 2016-12-21 04:07 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
    2017-01-10 17:46 - 2016-12-21 04:06 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
    2017-01-10 17:46 - 2016-12-21 03:57 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
    2017-01-10 17:46 - 2016-12-21 03:54 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
    2017-01-10 17:46 - 2016-12-21 01:40 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
    2017-01-10 17:46 - 2016-12-21 01:24 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
    2017-01-10 17:46 - 2016-12-14 02:33 - 01356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
    2017-01-10 17:46 - 2016-12-14 02:33 - 01054048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
    2017-01-10 17:46 - 2016-12-14 02:33 - 00813408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
    2017-01-10 17:46 - 2016-12-14 02:33 - 00513376 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll
    2017-01-10 17:46 - 2016-12-14 02:33 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe
    2017-01-10 17:46 - 2016-12-14 02:33 - 00190816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe
    2017-01-10 17:46 - 2016-12-14 02:18 - 00715104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
    2017-01-10 17:46 - 2016-12-14 02:18 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
    2017-01-10 17:46 - 2016-12-14 02:14 - 00418952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
    2017-01-10 17:46 - 2016-12-14 02:14 - 00089416 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
    2017-01-10 17:46 - 2016-12-14 02:08 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
    2017-01-10 17:46 - 2016-12-14 02:01 - 00076984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
    2017-01-10 17:46 - 2016-12-14 01:46 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
    2017-01-10 17:46 - 2016-12-14 01:45 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
    2017-01-10 17:46 - 2016-12-14 01:42 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
    2017-01-10 17:46 - 2016-12-14 01:41 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
    2017-01-10 17:46 - 2016-12-14 01:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
    2017-01-10 17:46 - 2016-12-14 01:40 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
    2017-01-10 17:46 - 2016-12-14 01:40 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
    2017-01-10 17:46 - 2016-12-14 01:39 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
    2017-01-10 17:46 - 2016-12-14 01:39 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll
    2017-01-10 17:46 - 2016-12-14 01:36 - 01002496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
    2017-01-10 17:46 - 2016-12-14 01:32 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
    2017-01-10 17:46 - 2016-12-14 01:25 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
    2017-01-10 17:46 - 2016-12-14 01:23 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
    2017-01-10 17:46 - 2016-12-14 01:22 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
    2017-01-10 17:46 - 2016-11-02 08:00 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
    2017-01-10 17:46 - 2016-11-02 07:22 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
    2017-01-10 17:46 - 2016-11-02 07:21 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll

    ==================== Three Months Modified files and folders ========

    (If an entry is included in the fixlist, the file/folder will be moved.)

    2017-04-05 11:54 - 2016-10-26 14:47 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
    2017-04-05 09:22 - 2016-10-26 12:39 - 00000000 ___HD C:\Program Files\WindowsApps
    2017-04-05 09:22 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\AppReadiness
    2017-04-05 09:20 - 2016-10-26 16:29 - 00004188 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1E33FD4D-5A21-4E76-9DB9-81C9FF62DA1F}
    2017-04-05 09:17 - 2016-11-01 12:00 - 00000000 ____D C:\ProgramData\GbPlugin
    2017-04-05 09:17 - 2016-10-27 08:48 - 00000000 ___RD C:\Users\Joana Lobo\Dropbox
    2017-04-05 09:17 - 2016-10-26 16:24 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
    2017-04-05 09:17 - 2016-01-07 19:58 - 00000000 __SHD C:\Users\Joana Lobo\IntelGraphicsProfiles
    2017-04-04 22:11 - 2016-10-27 08:13 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\Spotify
    2017-04-04 22:11 - 2016-10-26 16:28 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Spotify
    2017-04-04 15:45 - 2016-10-27 08:17 - 00000000 ____D C:\Program Files (x86)\Dropbox
    2017-04-04 15:26 - 2016-10-26 14:54 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Packages
    2017-04-04 10:36 - 2016-10-26 16:44 - 00556784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
    2017-04-04 10:36 - 2016-10-26 16:44 - 00339696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
    2017-04-04 10:36 - 2016-10-26 16:44 - 00164064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
    2017-04-04 10:36 - 2016-10-26 16:44 - 00127112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
    2017-04-04 10:36 - 2016-10-26 16:44 - 00101152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
    2017-04-04 10:36 - 2016-10-26 16:44 - 00075704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
    2017-04-04 10:36 - 2016-10-26 16:44 - 00038296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
    2017-04-04 10:35 - 2016-10-26 16:44 - 01005048 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
    2017-04-04 10:34 - 2016-11-08 07:45 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\ZHP
    2017-04-03 13:02 - 2016-11-01 12:00 - 00000000 ____D C:\Program Files (x86)\GbPlugin
    2017-04-03 10:46 - 2016-10-19 10:45 - 00001024 _____ C:\.rnd
    2017-04-03 10:36 - 2016-10-26 16:21 - 05292804 _____ C:\WINDOWS\system32\PerfStringBackup.INI
    2017-04-03 10:36 - 2016-10-26 12:42 - 01212086 _____ C:\WINDOWS\system32\prfh0816.dat
    2017-04-03 10:36 - 2016-10-26 12:42 - 00551266 _____ C:\WINDOWS\system32\prfc0816.dat
    2017-04-03 10:36 - 2016-10-26 12:41 - 01197820 _____ C:\WINDOWS\system32\prfh0416.dat
    2017-04-03 10:36 - 2016-10-26 12:41 - 00548010 _____ C:\WINDOWS\system32\prfc0416.dat
    2017-04-03 10:31 - 2016-11-08 07:33 - 00000000 ____D C:\AdwCleaner
    2017-04-03 10:31 - 2016-10-26 14:47 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
    2017-04-03 10:31 - 2016-10-26 12:34 - 00786432 _____ C:\WINDOWS\system32\config\BBI
    2017-04-03 10:30 - 2016-10-26 16:31 - 00001280 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
    2017-04-01 09:38 - 2016-10-27 09:38 - 00000033 _____ C:\Users\Joana Lobo\AppData\Roaming\AdobeWLCMCache.dat
    2017-03-31 16:12 - 2016-10-27 19:27 - 00513192 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
    2017-03-26 20:02 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\system32\NDF
    2017-03-24 12:57 - 2016-10-26 16:30 - 00000000 ____D C:\Program Files (x86)\Google
    2017-03-23 12:11 - 2016-10-26 16:57 - 00000000 ____D C:\ProgramData\Autodesk
    2017-03-23 11:24 - 2016-10-26 17:04 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared
    2017-03-23 10:12 - 2016-10-26 12:34 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
    2017-03-22 07:33 - 2016-10-28 11:18 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\vlc
    2017-03-21 19:50 - 2016-10-26 16:44 - 00548928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54D7.tmp
    2017-03-21 08:19 - 2016-11-16 18:19 - 00000000 ___HD C:\Program Files (x86)\InstallJammer Registry
    2017-03-21 08:19 - 2016-11-16 18:19 - 00000000 ____D C:\Arquivos de Programas RFB
    2017-03-20 15:23 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\rescache
    2017-03-19 22:56 - 2016-10-26 14:50 - 00000000 ____D C:\Users\Joana Lobo
    2017-03-18 10:37 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\system32\appraiser
    2017-03-18 10:37 - 2016-10-26 12:35 - 00000000 ____D C:\WINDOWS\CbsTemp
    2017-03-18 10:17 - 2016-01-07 19:33 - 00000000 __RHD C:\Users\Public\AccountPictures
    2017-03-18 10:16 - 2016-10-26 12:38 - 00000000 ____D C:\WINDOWS\INF
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ___SD C:\WINDOWS\system32\F12
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ___RD C:\WINDOWS\PrintDialog
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ___RD C:\Program Files\Windows Defender
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\system32\setup
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\system32\oobe
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\ShellExperiences
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\bcastdvr
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\Program Files\Windows Photo Viewer
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
    2017-03-17 20:54 - 2016-10-26 12:39 - 00000000 ____D C:\Program Files (x86)\Windows Defender
    2017-03-17 18:50 - 2016-11-16 18:52 - 00000000 ____D C:\Users\Joana Lobo\.receitanet
    2017-03-17 18:17 - 2016-11-16 18:11 - 00000000 ____D C:\ProgramData\Oracle
    2017-03-16 12:58 - 2016-10-27 18:49 - 00000000 ____D C:\WINDOWS\system32\MRT
    2017-03-16 12:51 - 2016-10-27 18:49 - 138634176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
    2017-03-16 10:24 - 2016-10-26 17:08 - 00000000 ____D C:\ProgramData\boost_interprocess
    2017-03-15 16:11 - 2016-11-28 15:11 - 00002642 _____ C:\Users\Public\Desktop\Skype.lnk
    2017-03-15 16:11 - 2016-11-28 15:11 - 00000000 ____D C:\ProgramData\Skype
    2017-03-15 12:06 - 2016-10-26 12:39 - 00000000 ____D C:\WINDOWS\LiveKernelReports
    2017-03-14 10:43 - 2016-10-26 16:44 - 00337592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54D8.tmp
    2017-03-13 02:00 - 2016-10-26 17:00 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\Adobe
    2017-03-10 02:17 - 2016-10-26 12:40 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2017-03-10 02:17 - 2016-10-26 12:40 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
    2017-03-09 15:52 - 2016-10-26 16:43 - 00000000 ____D C:\ProgramData\AVAST Software
    2017-03-08 14:02 - 2016-10-26 14:48 - 01019725 _____ C:\WINDOWS\system32\Drivers\rtwavesskdy.dat
    2017-03-08 14:02 - 2016-10-26 14:48 - 00188557 _____ C:\WINDOWS\system32\Drivers\rtwaves40.dat
    2017-03-08 14:02 - 2016-10-26 14:48 - 00031095 _____ C:\WINDOWS\system32\Drivers\rtwavesEFX.dat
    2017-03-08 14:02 - 2016-10-26 14:48 - 00017978 _____ C:\WINDOWS\system32\Drivers\rtwavesvpcap.dat
    2017-03-08 14:02 - 2016-10-26 14:48 - 00010945 _____ C:\WINDOWS\system32\Drivers\rtwavesMFX.dat
    2017-03-08 14:02 - 2016-10-26 14:48 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
    2017-03-08 14:01 - 2016-10-27 19:38 - 00000000 ____D C:\Users\Joana Lobo\AppData\Local\ElevatedDiagnostics
    2017-03-06 19:40 - 2016-10-26 16:41 - 00000000 ____D C:\Users\Joana Lobo\AppData\Roaming\uTorrent
    2017-03-06 12:29 - 2016-10-26 14:56 - 00002388 _____ C:\Users\Joana Lobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
    2017-03-06 12:29 - 2016-01-07 19:38 - 00000000 ___RD C:\Users\Joana Lobo\OneDrive
    2017-03-06 07:50 - 2016-10-26 16:44 - 00993608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54B3.tmp
    2017-03-06 07:50 - 2016-10-26 16:44 - 00162528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54D9.tmp
    2017-03-06 07:50 - 2016-10-26 16:44 - 00126600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54C5.tmp
    2017-03-06 07:50 - 2016-10-26 16:44 - 00100640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54C3.tmp
    2017-03-06 07:50 - 2016-10-26 16:44 - 00075704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54C6.tmp
    2017-03-06 07:50 - 2016-10-26 16:44 - 00038296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw54C4.tmp

    ==================== Files in the root of some directories =======

    2016-10-27 09:38 - 2017-04-01 09:38 - 0000033 _____ () C:\Users\Joana Lobo\AppData\Roaming\AdobeWLCMCache.dat
    2016-11-01 13:40 - 2016-11-01 13:40 - 0000017 _____ () C:\Users\Joana Lobo\AppData\Local\resmon.resmoncfg
    2016-10-26 14:48 - 2016-10-26 14:48 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
    2016-10-27 07:59 - 2016-11-20 08:58 - 0006756 _____ () C:\ProgramData\hpzinstall.log

    Some files in TEMP:
    ====================
    2017-03-23 12:02 - 2015-01-26 13:34 - 0015752 _____ (Autodesk, Inc.) C:\Users\Joana Lobo\AppData\Local\Temp\AcDeltree.exe
    2017-03-23 11:21 - 2017-03-23 11:21 - 1962752 _____ (Flexera Software LLC) C:\Users\Joana Lobo\AppData\Local\Temp\FNP_ACT_InstallerCA.dll
    2017-03-15 16:11 - 2017-03-15 16:11 - 14456872 _____ (Microsoft Corporation) C:\Users\Joana Lobo\AppData\Local\Temp\vc_redist.x86.exe

    ==================== Bamital & volsnap ======================

    (There is no automatic fix for files that do not pass verification.)

    C:\WINDOWS\system32\winlogon.exe => File is digitally signed
    C:\WINDOWS\system32\wininit.exe => File is digitally signed
    C:\WINDOWS\explorer.exe => File is digitally signed
    C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
    C:\WINDOWS\system32\svchost.exe => File is digitally signed
    C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
    C:\WINDOWS\system32\services.exe => File is digitally signed
    C:\WINDOWS\system32\User32.dll => File is digitally signed
    C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
    C:\WINDOWS\system32\userinit.exe => File is digitally signed
    C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
    C:\WINDOWS\system32\rpcss.dll => File is digitally signed
    C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
    C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
    C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

    LastRegBack: 2017-03-27 15:46

    ==================== End of FRST.txt ============================

    Addition.txt

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

     

    Baixe o arquivo (fixlist.txt) no anexo deste post e salve-o na Área de Trabalho (Desktop).

    Execute o FRST.exe (ou FRST64.exe) e clique no botão Corrigir.

    Aguarde... ao final será gerado o log Fixlog.txt  salvo em sua Área de Trabalho (Desktop).

    Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

     

    Abraços :D

    fixlist.txt

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Fix result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017
    Ran by Joana Lobo (06-04-2017 13:27:16) Run:1
    Running from C:\Users\Joana Lobo\Desktop
    Loaded Profiles: Joana Lobo (Available Profiles: Joana Lobo)
    Boot Mode: Normal
    ==============================================

    fixlist content:
    *****************
    CreateRestorePoint:
    CloseProcesses:
    Toolbar: HKU\S-1-5-21-2996735110-1512066444-4271885341-1000 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -  No File
    CHR DefaultSearchURL: ChromeDefaultData -> hxxp://www.startpageing123.com/search/?type=ds&ts=1490688776&z=cda0e9abed4dafe7f868a7fgazetfe4q7b9bbm5mfq&from=che0812&uid=SamsungXSSDX850XEVOX500GB_S2RANXAH322155R&q={searchTerms}
    CHR DefaultSearchKeyword: ChromeDefaultData -> startpageing123
    CHR Profile: C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-04-03] <==== ATTENTION
    S3 NMIndexingService; "C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe" [X]
    S3 dbx; system32\DRIVERS\dbx.sys [X]
    S1 gbpddfac; system32\drivers\gbpddfac64.sys [X]
    S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
    2016-10-26 14:48 - 2016-10-26 14:48 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
    2017-03-23 12:02 - 2015-01-26 13:34 - 0015752 _____ (Autodesk, Inc.) C:\Users\Joana Lobo\AppData\Local\Temp\AcDeltree.exe
    2017-03-23 11:21 - 2017-03-23 11:21 - 1962752 _____ (Flexera Software LLC) C:\Users\Joana Lobo\AppData\Local\Temp\FNP_ACT_InstallerCA.dll
    2017-03-15 16:11 - 2017-03-15 16:11 - 14456872 _____ (Microsoft Corporation) C:\Users\Joana Lobo\AppData\Local\Temp\vc_redist.x86.exe
    CMD:ipconfig /flushdns
    EmptyTemp:

    *****************

    Restore point was successfully created.
    Processes closed successfully.
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value removed successfully
    HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => key not found.
    Chrome DefaultSearchURL => removed successfully
    Chrome DefaultSearchKeyword => removed successfully
    C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData => moved successfully
    HKLM\System\CurrentControlSet\Services\NMIndexingService => key removed successfully
    NMIndexingService => service removed successfully
    HKLM\System\CurrentControlSet\Services\dbx => key removed successfully
    dbx => service removed successfully
    HKLM\System\CurrentControlSet\Services\gbpddfac => key removed successfully
    gbpddfac => service removed successfully
    HKLM\System\CurrentControlSet\Services\gbpddreg => key removed successfully
    gbpddreg => service removed successfully
    C:\ProgramData\DP45977C.lfl => moved successfully
    C:\Users\Joana Lobo\AppData\Local\Temp\AcDeltree.exe => moved successfully
    C:\Users\Joana Lobo\AppData\Local\Temp\FNP_ACT_InstallerCA.dll => moved successfully
    C:\Users\Joana Lobo\AppData\Local\Temp\vc_redist.x86.exe => moved successfully

    ========= ipconfig /flushdns =========


    Configura‡Æo de IP do Windows

    Libera‡Æo do Cache do DNS Resolver bem-sucedida.

    ========= End of CMD: =========


    =========== EmptyTemp: ==========

    BITS transfer queue => 0 B
    DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 184465817 B
    Java, Flash, Steam htmlcache => 15425668 B
    Windows/system/drivers => 200753300 B
    Edge => 148712586 B
    Chrome => 0 B
    Firefox => 0 B
    Opera => 0 B

    Temp, IE cache, history, cookies, recent:
    Default => 0 B
    Users => 0 B
    ProgramData => 0 B
    Public => 0 B
    systemprofile => 0 B
    systemprofile32 => 53361133 B
    LocalService => 40182 B
    NetworkService => 74228 B
    Joana Lobo => 169710050 B

    RecycleBin => 18709795780 B
    EmptyTemp: => 18.1 GB temporary data Removed.

    ================================


    The system needed a reboot.

    ==== End of Fixlog 13:27:51 ====

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Baixe a Malwarebytes Anti-Malware (MBAM).
     
    Clique duas vezes no mbam-setup.exe para instalar o programa.

    • Desmarque a caixa Ativar trial gratuito do MalwareBytes Anti-Malware PRO.
    • Se houver atualizações a serem feitas, serão baixadas e instaladas..
    • Clique em Configurações, clique em Detecção e proteção, marque Verificar por Rootkits.
    • Volte ao Painel e por fim clique em Verificar agora.
    • Começará então o exame. Aguarde, pois pode demorar.
    • Ao acabar o exame, se houver itens encontrados, certifique-se que estejam todas marcados e clique no botão Remover Selecionadas
    • Ao final da desinfecção, poderá aparecer um aviso se quer reiniciar o PC. (Ver Nota abaixo)
    • O log é automaticamente salvo pelo MBAM e para vê-lo, clique na aba Histórico -> Registros do aplicativo na janela principal do programa.
    • Clique duas vezes no log (Registro de verificação). Utilize o formato .txt para exportar o log.
    • O log de Proteção é desnecessário para a análise, exporte sempre o log correto.
    • Selecione, copie e cole o conteúdo deste log em sua próxima resposta.

     

    NOTA: Se o MBAM encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC (talvez mais de uma vez). Faça isso imediatamente, ao ser perguntado se quer reiniciar o PC.

     

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Como não apareceu a opção de remover, mandei td pra quarentena.

    MBAM.txt

    MBAM-QUAR.txt

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Ótimo! :)

     

    Baixe o RogueKiller e salve em sua Área de Trabalho (Desktop).
    32 bit (x86) ou 64 bit (x64)

    Execute o arquivo RogueKiller.exe.

     

    Atenção: Usuários Windows Vista, 7, 8 e 10 , cliquem com o botão direito do mouse e escolha: execadmin.png

    • Clique na aba Scan, depois Start Scan. Aguarde o exame finalizar.
    • Clique no botão Open Report, e seguida em Open TXT
    • Abrirá um bloco de notas com informações.
    • Copie e cole o conteúdo desse arquivo em sua próxima resposta.

    OBS: não use o botão Remove Selected pois precisamos primeiro avaliar os itens encontrados.

     

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Captura de tela 2017-04-10 08.59.15.png

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Ok!

     

    Faça um novo log com o FRST, porém antes de clicar no botão Examinar, marque a opção Addition.

     

    Anexe os logs, por favor.

     

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

     

    Baixe o arquivo (fixlist.txt) no anexo deste post e salve-o na Área de Trabalho (Desktop).

    Execute o FRST.exe (ou FRST64.exe) e clique no botão Corrigir.

    Aguarde... ao final será gerado o log Fixlog.txt  salvo em sua Área de Trabalho (Desktop).

    Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

     

    Abraços :D

    fixlist.txt

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Fix result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017
    Ran by Joana Lobo (15-04-2017 07:18:18) Run:2
    Running from C:\Users\Joana Lobo\Desktop
    Loaded Profiles: Joana Lobo (Available Profiles: Joana Lobo)
    Boot Mode: Normal
    ==============================================

    fixlist content:
    *****************
    CreateRestorePoint:
    CloseProcesses:
    ShellExecuteHooks: No Name - {7161A4D0-0390-11E7-A094-64006A5CFC23} - C:\Users\Joana Lobo\AppData\Roaming\Bigatainanvack\Ghipoward.dll -> No File
    SearchScopes: HKU\S-1-5-21-2996735110-1512066444-4271885341-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
    SearchScopes: HKU\S-1-5-21-2996735110-1512066444-4271885341-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
    CHR Profile: C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-04-12] <==== ATTENTION
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Boxfat\Application\chrome.exe <==== ATTENTION
    S1 gbpddfac; system32\drivers\gbpddfac64.sys [X]
    S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
    Reboot:


    *****************

    Restore point was successfully created.
    Processes closed successfully.
    HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{7161A4D0-0390-11E7-A094-64006A5CFC23} => value removed successfully
    HKCR\CLSID\{7161A4D0-0390-11E7-A094-64006A5CFC23} => key not found. 
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} => key removed successfully
    HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => key not found. 
    C:\Users\Joana Lobo\AppData\Local\Google\Chrome\User Data\ChromeDefaultData => moved successfully
    HKU\S-1-5-21-2996735110-1512066444-4271885341-1000\SOFTWARE\Clients\StartMenuInternet\ChromeHTML => key removed successfully
    HKLM\System\CurrentControlSet\Services\gbpddfac => key removed successfully
    gbpddfac => service removed successfully
    HKLM\System\CurrentControlSet\Services\gbpddreg => key removed successfully
    gbpddreg => service removed successfully


    The system needed a reboot.

    ==== End of Fixlog 07:18:43 ====

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

    Baixe o Stinger e salve em sua Área de trabalho (Desktop).
    32 bit (x86) ou 64 bit (x64)

    • Execute o arquivo Stinger.exe
      • Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png
    • Clique no botão “I Accept”


    Stinger%20a.png

    Na nova janela clique em “Advanced” e depois “Settings”

    Stinger%20b.png

    Na janela configurações deixe conforme imagem abaixo e clique no botão “Save”

    9hnsyu.png

    Clique em “Customize my Scan”

    Stinger%20f.png

    Selecione as unidades do sistema e em seguida clique no botão “Scan”

    Stinger%20g.png

    Ao final clique em “View log”, será aberto uma janela com o log em seu navegador.
    Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

     

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • McAfee® Labs Stinger™ Version 12.1.0.2339 built on Apr 12 2017 at 23:17:35 Copyright© 2015, McAfee, Inc. All Rights Reserved. AV Engine version v5900.7806 for Windows. Virus data file v1000.0 created on Apr 13, 2017 Ready to scan for 10085 viruses, trojans and variants. Custom scan initiated on domingo, abril 16, 2017 09:45:54 Rootkit scan result : Not Scanned. C:\AdwCleaner\quarantine\files\ijwkijbfigemljipjciprknjsadnzdkx\Kyubey.exe [MD5:38f2402afe7995582b581f0ead1eb4dc] is infected with Artemis!38F2402AFE79 C:\AdwCleaner\quarantine\files\ijwkijbfigemljipjciprknjsadnzdkx\Kyubey.exe has been Deleted Summary Report on C: D: File(s) TotalFiles:............ 703374 Clean:................. 454962 Not Scanned:........... 248411 Possibly Infected:..... 1 Time: 01:05:33 Scan completed on domingo, abril 16, 2017 10:51:27

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Baixe Security Check, by glax24 e salve em sua Área de trabalho (Desktop).

     

    Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

    • Aguarde enquanto a ferramenta faz o exame.
    • Ao final salve log como SecurityCheck.html
    • Abra o arquivo com o bloco de notas;
    • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • SecurityCheck by glax24 & Severnyj v.1.4.0.49 [15.04.17]
    WebSite: www.safezone.cc
    DateLog: 18.04.2017 20:50:58
    Path starting: C:\Users\Joana Lobo\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
    Log directory: C:\SecurityCheck\
    IsAdmin: True
    User: Joana Lobo
    VersionXML: 4.12is-15.04.2017
    ___________________________________________________________________________

    Windows 10(6.3.14393) (x64) Professional Release: 1607 Lang: Portuguese(0816)
    Installation date OS: 26.10.2016 17:54:49
    LicenseStatus: Windows(R), Professional edition The machine is permanently activated.
    LicenseStatus: Office 15, OfficeProPlusVL_KMS_Client edition Volume activation will expire : 6708 minutes
    Boot Mode: Normal
    Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
    SystemDrive: C: FS: [NTFS] Capacity: [465.3 Gb] Used: [96.4 Gb] Free: [368.9 Gb]
    ------------------------------- [ Windows ] -------------------------------
    Internet Explorer 11.1066.14393.0
    User Account Control enabled
    The elevation prompt for administrators disabled
    ^It is recommended to enable: Win+R typing UserAccountControlSettings and Enter^
    Automatically download and schedule installation
    Windows Update (wuauserv) - The service is running
    Central de Segurança (wscsvc) - The service is running
    Registro remoto (RemoteRegistry) - The service has stopped
    Descoberta SSDP (SSDPSRV) - The service is running
    Serviços de Área de Trabalho Remota (TermService) - The service has stopped
    Windows Remote Management (WS-Management) (WinRM) - The service has stopped
    ---------------------------- [ Antivirus_WMI ] ----------------------------
    Avast Antivirus (enabled and up to date)
    Malwarebytes (enabled and up to date)
    --------------------------- [ FirewallWindows ] ---------------------------
    Firewall do Windows (MpsSvc) - The service is running
    --------------------------- [ AntiSpyware_WMI ] ---------------------------
    Malwarebytes (enabled and up to date)
    Avast Antivirus (enabled and up to date)
    ---------------------- [ AntiVirusFirewallInstall ] -----------------------
    Avast Free Antivirus v.17.3.2291
    -------------------------- [ SecurityUtilities ] --------------------------
    Malwarebytes versão 3.0.6.1469 v.3.0.6.1469
    --------------------------- [ OtherUtilities ] ----------------------------
    VLC media player v.2.2.4
    WinRAR 5.40 (32-bit) v.5.40.0
    --------------------------------- [ IM ] ----------------------------------
    Skype™ 7.33 v.7.33.105 Warning! Download Update
    ^Optional update.^
    --------------------------------- [ P2P ] ---------------------------------
    µTorrent v.3.4.9.43295 Warning! P2P-client.
    ------------------------------- [ Browser ] -------------------------------
    Google Chrome v.57.0.2987.133
    --------------------------- [ RunningProcess ] ----------------------------
    C:\Program Files (x86)\Google\Chrome\Application\chrome.exe v.57.0.2987.133
    ------------------ [ AntivirusFirewallProcessServices ] -------------------
    Avast Antivirus (avast! Antivirus) - The service is running
    C:\Program Files\AVAST Software\Avast\AvastSvc.exe v.17.3.3443.0
    aswbIDSAgent (aswbIDSAgent) - The service is running
    C:\Program Files\AVAST Software\Avast\AvastUI.exe v.17.3.3443.0
    C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe v.3.0.0.912
    Malwarebytes Service (MBAMService) - The service is running
    C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe v.3.1.0.415
    McAfee Validation Trust Protection Service (mfevtp) - The service is running
    C:\Windows\System32\mfevtps.exe
    Serviço Windows Defender (WinDefend) - The service has stopped
    Serviço de Inspeção de Rede do Windows Defender (WdNisSvc) - The service has stopped
    ----------------------------- [ End of Log ] ------------------------------
     

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Cara @jlobo

     

    Como está seu Windows?

     

    # Etapa nº 1 #

     

    Baixe o Delfix by Xplode e salve na sua área de trabalho.

     

    Clique duas vezes no delfix.exe para executá-lo. Marque as caixas conforme imagem.

     

    ** Usuários do Windows Vista ou Windows 7 clique com o direito sobre o arquivo delfix.exe, depois clique em execadmin.png.

     

    2mez6ld.png

     

    Clique no botão Executar.

     

    Ao final será gerado um log, mas não é necessário postar.

    # Etapa nº 2 #

    imageproxy.php?img=http%3A%2F%2Fi65.tiny Versões antigas de programas têm vulnerabilidades que alguns malwares podem usar para infectar o seu sistema.

    Por isso, é recomendável atualizar os programas que o Security Check apontou como desatualizados (os updates opcionais ficam ao seu critério).

    Basta clicar no Download Update de cada aviso (post acima), que irá para o site do desenvolvedor.

    <<@>> Mantenha sempre seu Windows atualizado; mantenha uma vigilância constante com o firewall e antivírus e por fim, lembre-se que, a melhor forma de prevenir começa pelas nossas atitudes!

     

    # Etapa nº 3 #

     

    O Ccleaner é um excelente utilitário de limpeza para o computador.

     

    Faça o download dele aqui Ccleaner

     

    • Após a instalação vá até o local onde o programa foi instalado, geralmente em C:\Arquivos de programas\CCleaner.
    • Clique duas vezes nesta pasta;
    • Numa área vazia desta janela, clique com o botão direito do mouse e escolha Novo > pasta e crie uma nova pasta;
    • Coloque o nome de backups.
    • Abra o programa e clique em Executar Limpeza;
    • Clique no botão Registro > Procurar Erros > Corrigir erro(s) seleciona(s)...
    • Observação: Não se esqueça de aceitar o backup das correções, e salvá-los nas pasta criada acima!

    Abraços :D

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • Aparentemente o windows ta normal.

    Muito obrigada pela ajuda. :) 

    Abraços.

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    Problema resolvido!

     

    Caso o autor necessite, o mesmo será reaberto, para isso deverá entrar em contato com um Analista de Segurança solicitando o desbloqueio

     

    Turco

    diego_moicano

     

    .

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
    Visitante
    Este tópico está impedido de receber novos posts.





    Sobre o Clube do Hardware

    No ar desde 1996, o Clube do Hardware é uma das maiores, mais antigas e mais respeitadas publicações sobre tecnologia do Brasil. Leia mais

    Direitos autorais

    Não permitimos a cópia ou reprodução do conteúdo do nosso site, fórum, newsletters e redes sociais, mesmo citando-se a fonte. Leia mais

    ×