DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 8.0.7600.16385 Run by Otavio at 21:01:04 on 2014-10-06 Microsoft Windows 7 Professional 6.1.7600.0.1252.55.1046.18.8140.5715 [GMT -3:00] . SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\atieclxx.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe C:\Users\Otavio\AppData\Local\Viber\Viber.exe C:\Program Files (x86)\Internet Download Manager\IDMan.exe C:\Program Files (x86)\WTFast\WTFast.exe C:\Users\Otavio\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe C:\Program Files (x86)\ASUS\Disk Unlocker\ASPFSVS64.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe E:\Program Files (x86)\Corsair SSD Toolbox\CSSDTService.exe C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe C:\Program Files\Intel\iCLS Client\HeciServer.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\WUDFHost.exe C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe C:\PROGRA~2\Raptr\raptr.exe C:\PROGRA~2\Raptr\raptr_im.exe C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\Raptr\raptr_ep64.exe C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.02\AsusFanControlService.exe C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Windows\system32\sppsvc.exe C:\Windows\System32\svchost.exe -k secsvcs C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Windows\system32\wuauclt.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . mWinlogon: Userinit = userinit.exe BHO: IDM integration (IDMIEHlprObj Class): {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll uRun: [Viber] "C:\Users\Otavio\AppData\Local\Viber\Viber.exe" StartMinimized uRun: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe /onboot uRun: [WTFast Tray] "C:\Program Files (x86)\WTFast\WTFast.exe" trayonly uRun: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" mRun: [ASUS Ai Charger] C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun StartupFolder: C:\Users\Otavio\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Otavio\AppData\Roaming\Dropbox\bin\Dropbox.exe mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: Fazer o download de todos os links usando o IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm IE: Fazer o download usando o IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm LSP: %SystemRoot%\system32\WTFastDrv.dll TCP: NameServer = 8.8.8.8 8.8.4.4 TCP: Interfaces\{1C9D3F04-07FC-4F68-9198-342B63C79292} : DHCPNameServer = 8.8.8.8 8.8.4.4 SSODL: WebCheck - SSODL: EldosMountNotificator-cbfs5 - {6DB47405-A97B-4F2B-8F56-7FEC141296E7} - C:\Windows\SysWOW64\cbfsMntNtf5.dll STS: Virtual Storage Mount Notification - {6DB47405-A97B-4F2B-8F56-7FEC141296E7} - C:\Windows\SysWOW64\cbfsMntNtf5.dll x64-BHO: IDM integration (IDMIEHlprObj Class): {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s x64-SSODL: WebCheck - x64-SSODL: EldosMountNotificator-cbfs5 - {6DB47405-A97B-4F2B-8F56-7FEC141296E7} - C:\Windows\System32\cbfsMntNtf5.dll x64-STS: Virtual Storage Mount Notification - {6DB47405-A97B-4F2B-8F56-7FEC141296E7} - C:\Windows\System32\cbfsMntNtf5.dll . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Otavio\AppData\Roaming\Mozilla\Firefox\Profiles\fcjidovi.default\ FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll . ---- FIREFOX POLICIES ---- . FF - user.js: plugin.state.npcontentblocker - 2 . FF - user.js: plugin.state.nponlinebanking - 2 . FF - user.js: plugin.state.npvkplugin - 2 . FF - user.js: plugin.state.anti_banner_native_proxy - 2 . FF - user.js: plugin.state.url_advisor - 2 . FF - user.js: plugin.state.npcontentblocker - 2 . FF - user.js: plugin.state.nponlinebanking - 2 . FF - user.js: plugin.state.npvkplugin - 2 . FF - user.js: plugin.state.anti_banner_native_proxy - 2 . FF - user.js: plugin.state.url_advisor - 2 . FF - user.js: plugin.state.npcontentblocker - 2 . FF - user.js: plugin.state.nponlinebanking - 2 . FF - user.js: plugin.state.npvkplugin - 2 . FF - user.js: plugin.state.anti_banner_native_proxy - 2 . FF - user.js: plugin.state.url_advisor - 2 . FF - user.js: plugin.state.npcontentblocker - 2 . FF - user.js: plugin.state.nponlinebanking - 2 . FF - user.js: plugin.state.npvkplugin - 2 . FF - user.js: plugin.state.anti_banner_native_proxy - 2 . FF - user.js: plugin.state.url_advisor - 2 . FF - user.js: plugin.state.npcontentblocker - 2 . FF - user.js: plugin.state.nponlinebanking - 2 . FF - user.js: plugin.state.npvkplugin - 2 . FF - user.js: plugin.state.anti_banner_native_proxy - 2 . FF - user.js: plugin.state.url_advisor - 2 . ============= SERVICES / DRIVERS =============== . R0 iusb3hcs;Driver de comutação do controlador host Intel(R) USB 3.0;C:\Windows\System32\drivers\iusb3hcs.sys [2012-5-21 19264] R1 cbfs5;cbfs5;C:\Windows\System32\drivers\cbfs5.sys [2014-10-2 416960] R1 ndisrd;WinpkFilter LightWeight Filter;C:\Windows\System32\drivers\ndisrd.sys [2014-10-2 32400] R1 VDiskBus;ASUS Disk Unlocker;C:\Windows\System32\drivers\VDiskBus64.sys [2012-6-1 42656] R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-10-4 239616] R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe [2011-10-28 918448] R2 ASDiskUnlocker;ASDiskUnlocker;C:\Program Files (x86)\ASUS\Disk Unlocker\ASPFSVS64.exe [2012-6-18 262816] R2 asHmComSvc;ASUS HM Com Service;C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2014-10-2 951936] R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2014-10-2 149120] R2 AsusFanControlService;AsusFanControlService;C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.02\AsusFanControlService.exe [2014-10-2 1470592] R2 CorsairSSDToolBox;Corsair SSD Toolbox;E:\Program Files (x86)\Corsair SSD Toolbox\CSSDTService.exe [2014-10-2 1864808] R2 IDMWFP;IDMWFP;C:\Windows\System32\drivers\idmwfp.sys [2014-9-12 180136] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-4-20 635104] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe [2014-10-2 166720] R2 TeamViewer9;TeamViewer 9;C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-10-2 4799760] R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2014-10-2 365376] R3 ASFLTDrv.sys;ASFLTDrv.sys;C:\Program Files (x86)\ASUS\Disk Unlocker\ASFLTDrv64.sys [2010-9-16 16512] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2014-6-21 94720] R3 EuMusDesignVirtualAudioCableWdm;Virtual Audio Cable (WDM);C:\Windows\System32\drivers\vrtaucbl.sys [2014-10-3 66728] R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-10-2 160768] R3 iusb3hub;Driver para hub Intel(R) USB 3.0;C:\Windows\System32\drivers\iusb3hub.sys [2012-5-21 357184] R3 iusb3xhc;Driver de controlador host eXtensível Intel(R) USB 3.0;C:\Windows\System32\drivers\iusb3xhc.sys [2012-5-21 789824] R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2014-10-2 769168] R3 vpnpbus;EldoS PnP Virtual Bus driver;C:\Windows\System32\drivers\vpnpbus.sys [2014-10-2 18624] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-8 123856] S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-4-3 315008] S3 StorSvc;Serviço de Armazenamento;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136] . =============== Created Last 30 ================ . 2014-10-06 23:34:22 -------- d-----w- C:\Users\Otavio\AppData\Roaming\library_dir 2014-10-06 23:33:26 -------- d-----w- C:\Users\Otavio\AppData\Roaming\Raptr 2014-10-06 23:33:26 -------- d-----w- C:\Program Files (x86)\Raptr 2014-10-06 23:33:21 -------- d-----w- C:\Program Files (x86)\AMD AVT 2014-10-06 23:12:17 -------- d-----w- C:\Users\Otavio\AppData\Roaming\uTorrent 2014-10-06 22:54:24 -------- d-----w- C:\Program Files\WhoCrashed 2014-10-04 19:08:14 78432 ----a-w- C:\Windows\System32\atimpc64.dll 2014-10-04 19:08:14 78432 ----a-w- C:\Windows\System32\amdpcom64.dll 2014-10-04 19:08:12 71704 ----a-w- C:\Windows\SysWow64\atimpc32.dll 2014-10-04 19:08:12 71704 ----a-w- C:\Windows\SysWow64\amdpcom32.dll 2014-10-04 19:05:58 293064 ----a-w- C:\Windows\System32\drivers\amdacpksd.sys 2014-10-04 19:04:26 16750080 ----a-w- C:\Windows\System32\drivers\atikmdag.sys 2014-10-04 18:50:44 235008 ----a-w- C:\Windows\System32\clinfo.exe 2014-10-04 18:50:38 98816 ----a-w- C:\Windows\System32\OpenVideo64.dll 2014-10-04 18:50:38 83456 ----a-w- C:\Windows\SysWow64\OpenVideo.dll 2014-10-04 18:50:36 86528 ----a-w- C:\Windows\System32\OVDecode64.dll 2014-10-04 18:50:34 73216 ----a-w- C:\Windows\SysWow64\OVDecode.dll 2014-10-04 18:50:32 33867264 ----a-w- C:\Windows\System32\amdocl64.dll 2014-10-04 18:49:48 27918336 ----a-w- C:\Windows\System32\atio6axx.dll 2014-10-04 18:49:44 28770304 ----a-w- C:\Windows\SysWow64\amdocl.dll 2014-10-04 18:48:56 65024 ----a-w- C:\Windows\System32\OpenCL.dll 2014-10-04 18:48:56 58880 ----a-w- C:\Windows\SysWow64\OpenCL.dll 2014-10-04 18:44:30 23375360 ----a-w- C:\Windows\SysWow64\atioglxx.dll 2014-10-04 18:43:02 127488 ----a-w- C:\Windows\System32\mantle64.dll 2014-10-04 18:42:58 113664 ----a-w- C:\Windows\SysWow64\mantle32.dll 2014-10-04 18:42:52 5639168 ----a-w- C:\Windows\System32\amdmantle64.dll 2014-10-04 18:42:28 48128 ----a-w- C:\Windows\System32\amdmmcl6.dll 2014-10-04 18:42:26 37888 ----a-w- C:\Windows\SysWow64\amdmmcl.dll 2014-10-04 18:40:10 367104 ----a-w- C:\Windows\System32\atiapfxx.exe 2014-10-04 18:40:08 62464 ----a-w- C:\Windows\System32\aticalrt64.dll 2014-10-04 18:40:06 52224 ----a-w- C:\Windows\SysWow64\aticalrt.dll 2014-10-04 18:40:04 55808 ----a-w- C:\Windows\System32\aticalcl64.dll 2014-10-04 18:40:04 49152 ----a-w- C:\Windows\SysWow64\aticalcl.dll 2014-10-04 18:39:58 15716352 ----a-w- C:\Windows\System32\aticaldd64.dll 2014-10-04 18:39:46 4480000 ----a-w- C:\Windows\SysWow64\amdmantle32.dll 2014-10-04 18:39:08 14302208 ----a-w- C:\Windows\SysWow64\aticaldd.dll 2014-10-04 18:37:04 91648 ----a-w- C:\Windows\System32\mantleaxl64.dll 2014-10-04 18:37:02 85504 ----a-w- C:\Windows\SysWow64\mantleaxl32.dll 2014-10-04 18:35:44 31232 ----a-w- C:\Windows\System32\atimuixx.dll 2014-10-04 18:35:42 619008 ----a-w- C:\Windows\System32\atieclxx.exe 2014-10-04 18:35:36 239616 ----a-w- C:\Windows\System32\atiesrxx.exe 2014-10-04 18:35:22 190976 ----a-w- C:\Windows\System32\atitmm64.dll 2014-10-04 18:31:30 900608 ----a-w- C:\Windows\SysWow64\atiadlxy.dll 2014-10-04 18:31:26 75264 ----a-w- C:\Windows\System32\atig6pxx.dll 2014-10-04 18:31:26 69632 ----a-w- C:\Windows\SysWow64\atiglpxx.dll 2014-10-04 18:31:26 69632 ----a-w- C:\Windows\System32\atiglpxx.dll 2014-10-04 18:31:24 146944 ----a-w- C:\Windows\System32\atig6txx.dll 2014-10-04 18:31:22 133632 ----a-w- C:\Windows\SysWow64\atigktxx.dll 2014-10-04 18:31:18 576000 ----a-w- C:\Windows\System32\drivers\atikmpag.sys 2014-10-04 18:31:04 43520 ----a-w- C:\Windows\System32\drivers\ati2erec.dll 2014-10-04 17:54:12 51200 ----a-w- C:\Windows\System32\kdbsdk64.dll 2014-10-04 17:52:36 38912 ----a-w- C:\Windows\SysWow64\kdbsdk32.dll 2014-10-04 17:06:36 4750160 ----a-w- C:\Windows\PE_File.dll 2014-10-04 06:00:25 -------- d-s---w- C:\Windows\System32\CompatTel 2014-10-04 01:44:31 66728 ----a-w- C:\Windows\System32\drivers\vrtaucbl.sys 2014-10-04 01:44:31 -------- d-----w- C:\Program Files\Virtual Audio Cable 2014-10-03 20:03:59 -------- d-----w- C:\Users\Otavio\AppData\Local\Skype 2014-10-03 19:59:34 4684624 ----a-w- C:\Windows\PE_Rom.dll 2014-10-03 19:59:24 -------- d-----r- C:\Program Files (x86)\Skype 2014-10-03 19:02:18 -------- d-----w- C:\Users\Otavio\AppData\Roaming\Tibiacast 2014-10-03 18:04:49 -------- d-----w- C:\Users\Otavio\AppData\Local\Thunderbird 2014-10-03 13:55:51 142336 ----a-w- C:\Windows\System32\poqexec.exe 2014-10-03 13:55:51 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe 2014-10-03 13:55:38 574976 ----a-w- C:\Windows\System32\aepdu.dll 2014-10-03 13:55:38 424448 ----a-w- C:\Windows\System32\aeinv.dll 2014-10-03 13:55:38 11578928 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll 2014-10-03 13:55:36 11578928 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A895BAE3-C3E5-45C7-87F6-840B641FA3AE}\mpengine.dll 2014-10-03 08:20:02 -------- d-----w- C:\Users\Otavio\VirtualBox VMs 2014-10-03 08:17:21 -------- d-----w- C:\Users\Otavio\.VirtualBox 2014-10-03 08:16:39 910920 ----a-w- C:\Windows\System32\drivers\VBoxDrv.sys 2014-10-03 08:16:36 129168 ----a-w- C:\Windows\System32\drivers\VBoxUSBMon.sys 2014-10-03 03:49:02 2622464 ----a-w- C:\Windows\System32\wucltux.dll 2014-10-03 03:48:51 99840 ----a-w- C:\Windows\System32\wudriver.dll 2014-10-03 03:48:41 36864 ----a-w- C:\Windows\System32\wuapp.exe 2014-10-03 03:48:41 186752 ----a-w- C:\Windows\System32\wuwebv.dll 2014-10-03 03:42:14 -------- d-----w- C:\Windows\Panther 2014-10-03 03:21:27 -------- d-----w- C:\Program Files (x86)\Magebot 2014-10-03 02:03:19 -------- d-----w- C:\Users\Otavio\AppData\Roaming\HD Tune Pro 2014-10-03 02:03:16 -------- d-----w- C:\Program Files (x86)\HD Tune Pro 2014-10-03 01:11:37 1988096 ----a-w- C:\Windows\System32\libmysql_e.dll 2014-10-03 01:11:35 -------- d-----w- C:\Program Files\PremiumSoft 2014-10-03 01:07:36 -------- d-----w- C:\Users\Otavio\AppData\Local\Macromedia 2014-10-03 00:39:21 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2014-10-03 00:39:21 701104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2014-10-03 00:37:31 -------- d-----w- C:\Users\Otavio\AppData\Local\Adobe 2014-10-03 00:31:49 -------- d-----w- C:\ProgramData\Kaspersky Lab 2014-10-03 00:15:40 -------- d-----w- C:\Users\Otavio\AppData\Local\AAA_Internet_Publishing,_ 2014-10-03 00:15:38 79464 ----a-w- C:\Windows\System32\WTFastDrv.dll 2014-10-03 00:15:38 72296 ----a-w- C:\Windows\SysWow64\WTFastDrv.dll 2014-10-03 00:15:38 11264 ----a-w- C:\Windows\SysWow64\SPORDER.DLL 2014-10-03 00:15:37 -------- d-----w- C:\Program Files (x86)\WTFast 2014-10-03 00:14:32 -------- d-----w- C:\Users\Otavio\AppData\Roaming\Tibia 2014-10-03 00:14:19 -------- d-----w- C:\ibot 2014-10-03 00:05:57 -------- d-----w- C:\Users\Otavio\AppData\Roaming\TeamViewer 2014-10-02 23:58:39 -------- d-----w- C:\Users\Otavio\AppData\Roaming\TS3Client 2014-10-02 23:56:24 -------- d-----w- C:\Users\Otavio\AppData\Roaming\Dropbox 2014-10-02 23:54:15 -------- d-----w- C:\Users\Otavio\AppData\Roaming\IDM 2014-10-02 23:54:15 -------- d-----w- C:\Users\Otavio\AppData\Roaming\DMCache 2014-10-02 23:54:15 -------- d-----w- C:\ProgramData\IDM 2014-10-02 23:54:14 -------- d-----w- C:\Program Files (x86)\Internet Download Manager 2014-10-02 23:53:31 -------- d-----w- C:\Users\Otavio\AppData\Roaming\ViberPC 2014-10-02 23:52:41 -------- d-----w- C:\Users\Otavio\AppData\Local\Corsair 2014-10-02 23:52:32 -------- d-----w- C:\Users\Otavio\AppData\Local\Programs 2014-10-02 23:51:33 -------- d-----w- C:\Users\Otavio\AppData\Local\Viber 2014-10-02 23:49:33 -------- d-----w- C:\Program Files (x86)\TeamViewer 2014-10-02 23:47:22 -------- d-----w- C:\Users\Otavio\AppData\Local\ATI 2014-10-02 23:46:26 -------- d-----w- C:\ProgramData\ASUS OC Profiles 2014-10-02 23:46:20 0 ----a-w- C:\Windows\ativpsrm.bin 2014-10-02 23:45:27 -------- d-----w- C:\ProgramData\AMD 2014-10-02 23:45:26 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies 2014-10-02 23:45:19 -------- d-----w- C:\Program Files (x86)\ATI Technologies 2014-10-02 23:45:16 -------- d-----w- C:\Program Files\AMD 2014-10-02 23:45:10 -------- d-----w- C:\Program Files\Common Files\ATI Technologies 2014-10-02 23:43:45 -------- d-----w- C:\AMD 2014-10-02 23:43:21 -------- d-----w- C:\Asus WebStorage 2014-10-02 23:42:11 416960 ----a-w- C:\Windows\System32\drivers\cbfs5.sys 2014-10-02 23:42:11 220456 ----a-w- C:\Windows\SysWow64\cbfsNetRdr5.dll 2014-10-02 23:42:11 183592 ----a-w- C:\Windows\System32\cbfsMntNtf5.dll 2014-10-02 23:42:11 157992 ----a-w- C:\Windows\SysWow64\cbfsMntNtf5.dll 2014-10-02 23:42:11 120616 ----a-w- C:\Windows\System32\cbfsNetRdr5.dll 2014-10-02 23:42:04 9000 ----a-w- C:\Windows\System32\elevtmsg.dll 2014-10-02 23:42:04 18624 ----a-w- C:\Windows\System32\drivers\vpnpbus.sys 2014-10-02 23:30:54 -------- d-----w- C:\Drivers 2014-10-02 23:29:40 -------- d-----w- C:\Program Files\ASUS 2014-10-02 23:29:39 46152 ----a-w- C:\Windows\SysWow64\drivers\ASUSFILTER.sys 2014-10-02 23:28:36 14848 ----a-w- C:\Windows\SysWow64\drivers\AiCharger.sys 2014-10-02 23:27:31 -------- d-----w- C:\Users\Otavio\AppData\Roaming\ASUS WebStorage 2014-10-02 23:27:31 -------- d-----w- C:\ProgramData\ASUS WebStorage 2014-10-02 23:26:51 753664 ------w- C:\Users\Otavio\AppData\Roaming\Microsoft\Windows\Templates\2052.msi 2014-10-02 23:26:51 753664 ------w- C:\Users\Otavio\AppData\Roaming\Microsoft\Windows\Templates\1041.msi 2014-10-02 23:26:51 753664 ------w- C:\Users\Otavio\AppData\Roaming\Microsoft\Windows\Templates\1036.msi 2014-10-02 23:26:51 753664 ------w- C:\Users\Otavio\AppData\Roaming\Microsoft\Windows\Templates\1033.msi 2014-10-02 23:26:51 753664 ------w- C:\Users\Otavio\AppData\Roaming\Microsoft\Windows\Templates\1031.msi 2014-10-02 23:26:51 753664 ------w- C:\Users\Otavio\AppData\Roaming\Microsoft\Windows\Templates\1028.msi 2014-10-02 23:25:43 41984 ----a-w- C:\Windows\System32\drivers\USB3Ver.dll 2014-10-02 23:20:02 16896 ----a-w- C:\Windows\AsTaskSched.dll 2014-10-02 23:19:54 15168 ----a-w- C:\Windows\System32\drivers\IntelMEFWVer.dll 2014-10-02 23:19:34 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent 2014-10-02 23:19:30 62784 ----a-w- C:\Windows\System32\drivers\HECIx64.sys 2014-10-02 23:19:30 -------- d-----w- C:\Intel 2014-10-02 23:16:55 -------- d-sh--w- C:\Windows\Installer 2014-10-02 23:15:02 769168 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys 2014-10-02 23:15:02 74344 ----a-w- C:\Windows\System32\RtNicProp64.dll 2014-10-02 23:03:54 278152 ------w- C:\Windows\System32\MpSigStub.exe 2014-10-02 22:47:58 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll 2014-10-02 22:47:54 -------- d-----w- C:\Program Files (x86)\Realtek 2014-09-15 22:31:50 144328 ----a-w- C:\Windows\System32\atiuxp64.dll 2014-09-15 22:31:48 126848 ----a-w- C:\Windows\SysWow64\atiuxpag.dll 2014-09-15 22:31:46 118096 ----a-w- C:\Windows\System32\atiu9p64.dll 2014-09-15 22:31:44 100032 ----a-w- C:\Windows\SysWow64\atiu9pag.dll 2014-09-15 22:31:42 1335544 ----a-w- C:\Windows\System32\aticfx64.dll 2014-09-15 22:31:40 1113576 ----a-w- C:\Windows\SysWow64\aticfx32.dll 2014-09-15 22:31:34 10826488 ----a-w- C:\Windows\System32\atidxx64.dll 2014-09-15 22:31:30 9254184 ----a-w- C:\Windows\SysWow64\atidxx32.dll 2014-09-15 22:31:22 7207592 ----a-w- C:\Windows\SysWow64\atiumdva.dll 2014-09-15 22:31:16 7028336 ----a-w- C:\Windows\SysWow64\atiumdag.dll 2014-09-15 22:31:06 8044976 ----a-w- C:\Windows\System32\atiumd6a.dll 2014-09-15 22:31:02 8296296 ----a-w- C:\Windows\System32\atiumd64.dll 2014-09-15 22:18:02 995342 ----a-w- C:\Windows\SysWow64\amdocl_as32.exe 2014-09-15 22:18:02 798734 ----a-w- C:\Windows\SysWow64\amdocl_ld32.exe 2014-09-15 22:18:02 1187342 ----a-w- C:\Windows\System32\amdocl_as64.exe 2014-09-15 22:18:02 1061902 ----a-w- C:\Windows\System32\amdocl_ld64.exe 2014-09-15 22:03:28 442368 ----a-w- C:\Windows\System32\atidemgy.dll 2014-09-15 21:59:40 827392 ----a-w- C:\Windows\System32\coinst_14.30.dll 2014-09-15 21:59:20 1210880 ----a-w- C:\Windows\System32\atiadlxx.dll 2014-09-12 11:05:53 180136 ----a-w- C:\Windows\System32\drivers\idmwfp.sys 2014-09-09 20:27:58 157448 ----a-w- C:\Windows\System32\drivers\VBoxNetFlt.sys 2014-09-09 20:27:58 142528 ----a-w- C:\Windows\System32\drivers\VBoxNetAdp.sys 2014-09-09 20:26:36 205352 ----a-w- C:\Windows\System32\VBoxNetFltNobj.dll . ==================== Find3M ==================== . 2014-10-02 23:29:07 929844 ------w- C:\Windows\SysWow64\drivers\MFDLL\MFC42D.DLL 2014-10-02 23:29:07 385100 ------w- C:\Windows\SysWow64\drivers\MFDLL\MSVCRTD.DLL 2014-10-02 23:29:07 343040 ------w- C:\Windows\SysWow64\drivers\MFDLL\msvcrt.dll 2014-10-02 23:29:07 1028096 ------w- C:\Windows\SysWow64\drivers\MFDLL\MFC42.DLL 2014-10-02 23:25:36 789824 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys 2014-10-02 23:25:36 357184 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys 2014-10-02 23:25:36 19264 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys 2014-10-02 23:25:36 1721576 ----a-w- C:\Windows\System32\WdfCoInstaller01009.dll 2014-10-02 23:17:21 32400 ----a-w- C:\Windows\System32\drivers\ndisrd.sys 2014-10-02 23:17:15 28672 ----a-w- C:\Windows\SysWow64\AsIO.dll 2014-10-02 23:17:15 15232 ----a-w- C:\Windows\SysWow64\drivers\AsIO.sys . ============= FINISH: 21:01:09,62 ===============