Ir ao conteúdo
  • Cadastre-se
avedis123

Analise log za-scan

Recommended Posts

Caro @avedis123

 

Recomendo que salve este tópico em seus Favoritos para facilitar na hora de encontrá-lo.

 

Por favor, atente para o seguinte:

  • Caso fique sem resposta durante 3 dias, me envie uma Mensagem Privada (MP);
  • O que será passado aqui, somente será com relação ao problema do seu computador portanto, não faça mais em nenhum outro;
  • Siga, por favor, atentamente as instruções passadas e em caso de dúvidas não hesite em perguntá-las;
  • Sempre coloque suas respostas neste tópico... Não abra outro!
  • Procure sempre me manter informado, durante a remoção, sobre o que acontece com seu computador.
  • Respeite a ordem das instruções passadas.

Observação: Não tome outra medida além das passadas aqui; atente para que, caso peça ajuda em outro fórum, não deixe de nos informar, sob risco de desconfigurar seu computador!

 

# Etapa nº 1 #
 
Baixe o AdwCleaner e salve em sua Área de trabalho (Desktop)

Execute o arquivo adwcleaner.exe

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • Clique na aba Opções e deixe marcado apenas "Restaurar Políticas do IE" e "Restaurar Políticas do Chrome"
  • Clique no botão Verificar e aguarde o exame finalizar.
  • Clique no botão Limpar.
  • Abrirá um bloco de notas com o resultado.
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.
  • O log também será salvo em C:\AdwCleaner


NOTA: Se o AdwCleaner encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC. Faça isso imediatamente, ao ser perguntado se quer reiniciar.
 
# Etapa nº 2 #
 
Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Baixe o Junkware Removal Tool (JRT) e salve em sua Área de trabalho (Desktop)

 

Clique duas vezes para executar o jrt.exe.
 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • A ferramenta começará o exame do seu sistema.
  • Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar.
  • Ao final um log se abrirá. Será salvo no desktop com o nome de JRT.txt.
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

 
# Etapa nº 3 #
 
Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Faça o download do ZHPCleaner e salve em sua Área de trabalho (Desktop)

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png

  • Clique no botão Scanner.
  • A ferramenta começara o exame do seu sistema.
  • Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar.
  • Em seguida clique no botão Reparar.
  • Será gerado um log chamado ZHPCleaner.txt
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

 

Baixe o Farbar Recovery Scan Tool e salve-o na Área de Trabalho (Desktop).


32 bit (x86) ou 64 bit (x64)

 

  • Clique duas vezes para executar a ferramenta.
    • Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png
  • Marque a caixa Arquivos 90 dias,  e clique no botão Examinar.
  • Aguarde e ao final os logs FRST.txt e Addition.txt serão salvos em sua Área de Trabalho (Desktop).
  • Selecione, copie e cole o conteúdo do log  FRST.txt em sua próxima resposta.
  • Anexe o log Addition.txt

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão:07-06-2016
Executado por joaoa (administrador) em DESKTOP-1BJQORP (08-06-2016 12:03:22)
Executando a partir de C:\Users\joaoa\Desktop
Perfis Carregados: joaoa (Perfis Disponíveis: joaoa)
Platform: Windows 10 Home Single Language Versão 1511 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: FF)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\GbpSv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\GbpSv.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
() C:\Program Files (x86)\Viva\viva.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
() C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
(Dell) C:\Program Files\Dell\Product Registration\PRSvc.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_242.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_242.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8849152 2016-06-02] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-06-02] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3935400 2015-05-29] (Synaptics Incorporated)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3877936 2015-06-12] (Dell Inc.)
HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [904928 2015-11-04] (GAS Tecnologia LTDA)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [23972712 2016-05-31] (Dropbox, Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2012-02-20] (Apple Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [sun21] => [X]
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5890848 2016-04-26] (IObit)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7400064 2016-06-07] (AVAST Software)
Winlogon\Notify\ GbPluginBb: C:\PROGRAM FILES (X86)\GBPLUGIN\gbieh.dll [2015-10-20] (Banco do Brasil)
Winlogon\Notify\ GbPluginCef: C:\Program Files (x86)\GbPlugin\gbiehCef.dll [2015-09-22] (Caixa Economica Federal)
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53123712 2016-05-17] (Skype Technologies S.A.)
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [AirDroid 3] => C:\Program Files (x86)\AirDroid\AirDroid.exe [8679424 2016-06-07] (Sand Studio)
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [1163072 2012-04-12] (DT Soft Ltd)
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2425632 2014-11-07] (IObit)
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\RunOnce: [Uninstall C:\Users\joaoa\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\joaoa\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64"
AppInit_DLLs: C:\ProgramData\Konksolex\Geoeco.dll => Nenhum Arquivo
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399003} - C:\Program Files (x86)\GbPlugin\gbiehcef.dll [1888480 2015-09-22] (Caixa Economica Federal)
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\PROGRAM FILES (X86)\GbPlugin\gbieh.dll [1945472 2015-10-20] (Banco do Brasil)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-06-07] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-05-31] (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 189.7.72.33 189.7.72.38
Tcpip\..\Interfaces\{6ca104ee-99c8-424a-be7c-4d26246d3005}: [DhcpNameServer] 10.42.0.251 10.42.0.252
Tcpip\..\Interfaces\{a2c4bc63-3d34-4e7e-970d-c81ff48a4259}: [DhcpNameServer] 189.7.72.33 189.7.72.38

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
SearchScopes: HKLM-x32 -> DefaultScope valor está ausente
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2016-06-02] (IObit)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-05-15] (Microsoft Corporation)
BHO: Sem Nome -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Nenhum Arquivo
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-05-15] (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-05-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-02] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\PROGRAM FILES (X86)\GBPLUGIN\gbieh.dll [2015-10-20] (Banco do Brasil)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540003} -> C:\Program Files (x86)\GbPlugin\gbiehcef.dll [2015-09-22] (Caixa Economica Federal)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-05-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-02] (Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-05-15] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF ProfilePath: C:\Users\joaoa\AppData\Roaming\Profiles\mqrdn38l.default
FF NewTab: C:\\ProgramData\\Konksolexs\\ff.NT
FF DefaultSearchEngine: Google
FF Homepage: www.google.com
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll [2016-05-12] ()
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-12] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-02] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-02] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-05-15] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-05-15] (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-04-26] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems)
FF user.js: detected! => C:\Users\joaoa\AppData\Roaming\Profiles\u3ozzfeh.default\user.js [2016-06-06]
FF user.js: detected! => C:\Users\joaoa\AppData\Roaming\Profiles\mqrdn38l.default\user.js [2016-06-06]
FF SearchPlugin: C:\Users\joaoa\AppData\Roaming\Mozilla\Firefox\Profiles\nhbtckku.default\searchplugins\fxqdh0ij.xml [2016-06-02]
FF SearchPlugin: C:\Users\joaoa\AppData\Roaming\Mozilla\Firefox\Profiles\nhbtckku.default\searchplugins\McSiteAdvisor.xml [2016-02-03]
FF SearchPlugin: C:\Users\joaoa\AppData\Roaming\Profiles\u3ozzfeh.default\searchplugins\7zr9f7vo.xml [2016-06-02]
FF SearchPlugin: C:\Users\joaoa\AppData\Roaming\Profiles\u3ozzfeh.default\searchplugins\McSiteAdvisor.xml [2016-02-03]
FF SearchPlugin: C:\Users\joaoa\AppData\Roaming\Profiles\mqrdn38l.default\searchplugins\fxqdh0ij.xml [2016-06-02]
FF Extension: GsearchFinder - C:\Users\joaoa\AppData\Roaming\Profiles\u3ozzfeh.default\Extensions\@A3592ADB-854A-443A-854E-EB92130D470D.xpi [2016-06-02]
FF Extension: Skype - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-06-07]
FF HKLM\...\Firefox\Extensions: [jid1-r1tDuNiNb4SEww@jetpack] - C:\Program Files\AVAST Software\Avast\pam\FF
FF Extension: Avast Passwords - C:\Program Files\AVAST Software\Avast\pam\FF [2016-06-07]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF HKLM-x32\...\Firefox\Extensions: [jid1-r1tDuNiNb4SEww@jetpack] - C:\Program Files\AVAST Software\Avast\pam\FF
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] - hxxps://clients2.google.com/service/update2/crx

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated)
R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [323152 2015-06-07] (Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-06-07] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [370656 2016-06-07] (AVAST Software)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2911472 2016-05-15] (Microsoft Corporation)
R2 COMLiveService; C:\Program Files (x86)\Viva\viva.exe [346624 2015-10-05] () [Arquivo não assinado]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-24] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-24] (Dropbox, Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [137968 2015-09-22] (Dell Inc.)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [153960 2016-04-29] (Dell)
R2 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [36200 2016-01-11] ()
R2 Dell Product Registration; C:\Program Files\Dell\Product Registration\PRSvc.exe [32104 2016-01-25] (Dell)
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2574168 2015-09-11] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201560 2015-09-11] (Dell Inc.)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [237272 2015-08-27] (Dell Inc.)
R2 GbpSv; C:\Program Files (x86)\GbPlugin\GbpSv.exe [593120 2015-09-22] (GAS Tecnologia)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [365032 2016-03-17] (Intel Corporation)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [1580320 2016-04-22] (IObit)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Arquivo não assinado]
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Arquivo não assinado]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008 2015-06-24] (Intel Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960672 2016-04-21] (IObit)
R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2014-04-08] (Motorola Mobility LLC)
S4 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [Arquivo não assinado]
S4 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-04-14] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [310016 2016-06-02] (Realtek Semiconductor)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [21160 2015-09-30] (Dell Inc.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Arquivo não assinado]
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [904928 2015-11-04] (GAS Tecnologia LTDA)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe" [X]
S2 rtysystemSrv; "C:\Program Files (x86)\Ruotygutght\rtysystemSrv.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]
S2 zivuleclahtainlauncherSrv; "C:\Program Files (x86)\Zivuleclahtain\zivuleclahtainlauncherSrv.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-06-07] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-06-07] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-06-07] (AVAST Software)
R1 aswNetSec; C:\Windows\system32\drivers\aswNetSec.sys [536312 2016-06-07] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-06-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-06-07] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-06-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-06-07] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-06-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-06-07] (AVAST Software)
R3 athr; C:\Windows\System32\drivers\athw10x.sys [4323976 2016-06-02] (Qualcomm Atheros Communications, Inc.)
S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [165376 2015-10-30] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [36864 2015-10-30] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [32464 2015-09-11] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2015-09-11] (Dell Computer Corporation)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
S3 dtproscsibus; C:\Windows\System32\drivers\dtproscsibus.sys [30264 2016-05-22] (Disc Soft Ltd)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2016-05-22] (DT Soft Ltd)
S1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [0 2016-02-11] () <==== ATENÇÃO (zero byte Arquivo/Pasta)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2015-12-08] (GAS Tecnologia)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-06-02] (REALiX(tm))
R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [46856 2016-06-02] (Intel Corporation)
S4 IMFFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\IMFFilter.sys [22208 2016-03-31] (IObit)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185896 2016-06-02] (Intel Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2016-03-31] (IObit.com)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [936192 2016-06-02] (Realtek                                            )
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [413912 2016-06-02] (Realsil Semiconductor Corporation)
R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [48296 2015-05-29] (Synaptics Incorporated)
R1 vivadrv; C:\Windows\System32\drivers\vivadrv.sys [59136 2015-09-17] (Windows (R) Win 7 DDK provider)
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2015-12-08] (GAS Tecnologia LTDA)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R4 WinDivert1.1; C:\Program Files\Diebold\Warsaw\WinDivert64.sys [38104 2015-07-07] (Basil)
R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [101080 2016-06-08] (GAS Tecnologia)
R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [103640 2015-03-18] (GAS Tecnologia)
S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-06-08 12:03 - 2016-06-08 12:03 - 00030474 _____ C:\Users\joaoa\Desktop\FRST.txt
2016-06-08 12:03 - 2016-06-08 12:03 - 00000000 ____D C:\FRST
2016-06-08 12:01 - 2016-06-08 12:01 - 02385408 _____ (Farbar) C:\Users\joaoa\Desktop\FRST64.exe
2016-06-07 18:32 - 2016-06-07 18:33 - 00000000 ____D C:\Users\joaoa\Downloads\Atualizações Azamerica
2016-06-07 18:31 - 2016-06-07 18:33 - 00000000 ____D C:\Users\joaoa\Downloads\Programas Windows
2016-06-07 18:27 - 2016-06-07 18:32 - 00000000 ____D C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples
2016-06-07 18:27 - 2016-06-07 18:29 - 00833564 _____ C:\Users\joaoa\Downloads\ibge0216_edital.zip
2016-06-07 14:31 - 2016-06-07 14:31 - 00017298 _____ C:\Users\joaoa\Desktop\ZHPCleaner.txt
2016-06-07 14:21 - 2016-06-08 11:06 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\ProductData
2016-06-07 14:21 - 2016-06-07 17:35 - 00000000 ____D C:\Users\Todos os Usuários\ProductData
2016-06-07 14:21 - 2016-06-07 17:35 - 00000000 ____D C:\ProgramData\ProductData
2016-06-07 14:21 - 2016-06-07 14:31 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\ZHP
2016-06-07 14:21 - 2016-06-07 14:21 - 00000877 _____ C:\Users\joaoa\Desktop\ZHPCleaner.lnk
2016-06-07 14:20 - 2016-06-07 14:20 - 00002532 _____ C:\Users\joaoa\Desktop\JRT.txt
2016-06-07 14:06 - 2016-06-07 14:06 - 02266624 _____ C:\Users\joaoa\Desktop\ZHPCleaner.exe
2016-06-07 14:06 - 2016-06-07 14:06 - 01610816 _____ (Malwarebytes) C:\Users\joaoa\Desktop\JRT.exe
2016-06-07 14:03 - 2016-06-07 14:03 - 00398152 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-06-07 14:03 - 2016-06-07 14:03 - 00052184 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-06-06 12:40 - 2016-06-06 12:47 - 00000000 ____D C:\AdwCleaner
2016-06-06 08:02 - 2016-06-06 08:02 - 00000000 ____D C:\Users\joaoa\AppData\Local\AVAST Software
2016-06-05 21:28 - 2016-06-05 21:28 - 00000000 ____D C:\Users\Todos os Usuários\Toontrack
2016-06-05 21:28 - 2016-06-05 21:28 - 00000000 ____D C:\Users\joaoa\Documents\Toontrack
2016-06-05 21:28 - 2016-06-05 21:28 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Toontrack
2016-06-05 21:28 - 2016-06-05 21:28 - 00000000 ____D C:\ProgramData\Toontrack
2016-06-05 21:26 - 2016-06-05 21:26 - 00002060 _____ C:\Users\Public\Desktop\EZdrummer-64.lnk
2016-06-05 21:26 - 2016-06-05 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toontrack
2016-06-05 21:23 - 2016-06-05 21:23 - 00000000 ____D C:\Program Files\Toontrack
2016-06-05 21:00 - 2016-06-05 21:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sylenth1
2016-06-05 20:45 - 2016-06-05 20:45 - 00033823 _____ C:\Users\joaoa\Downloads\ZA-Scan.txt
2016-06-05 20:41 - 2016-06-05 20:40 - 00033823 _____ C:\ZA-Scan.txt
2016-06-05 19:55 - 2016-06-05 19:55 - 00000000 ____D C:\zoek_backup
2016-06-05 19:49 - 2016-06-05 19:50 - 01370112 _____ C:\Users\joaoa\Desktop\ZA-Scan.exe
2016-06-05 19:06 - 2016-06-05 19:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xfer Records
2016-06-05 19:05 - 2016-06-05 19:05 - 00000000 ____D C:\VstPlugins
2016-06-05 19:03 - 2016-06-06 18:33 - 00000000 ____D C:\VstPlugins x32
2016-06-04 15:35 - 2016-06-04 15:35 - 00000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2016-06-04 13:24 - 2016-06-04 13:24 - 00001981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premier.lnk
2016-06-04 13:24 - 2016-06-04 13:24 - 00001969 _____ C:\Users\Public\Desktop\Avast Premier.lnk
2016-06-04 13:12 - 2016-06-04 13:12 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\AVAST Software
2016-06-04 13:10 - 2016-06-08 11:53 - 00004026 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1465060241
2016-06-04 13:10 - 2016-06-08 11:53 - 00001084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-06-04 13:10 - 2016-06-04 13:10 - 00001084 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-06-04 13:09 - 2016-06-08 11:57 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-06-04 13:09 - 2016-06-07 14:03 - 00465792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2016-06-04 13:09 - 2016-06-07 14:03 - 00287528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-06-04 13:09 - 2016-06-07 14:03 - 00166432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-06-04 13:09 - 2016-06-07 14:03 - 00107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2016-06-04 13:09 - 2016-06-07 14:03 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-06-04 13:09 - 2016-06-07 14:03 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-06-04 13:09 - 2016-06-07 14:03 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-06-04 13:09 - 2016-06-07 14:02 - 01070904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-06-04 13:09 - 2016-06-07 14:02 - 00536312 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetSec.sys
2016-06-04 13:09 - 2016-06-07 14:02 - 00037144 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2016-06-04 13:08 - 2016-06-04 13:08 - 00000000 ____D C:\Program Files\AVAST Software
2016-06-03 21:16 - 2016-06-03 21:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-06-02 23:57 - 2016-06-04 15:35 - 00000000 ____D C:\WINDOWS\LastGood
2016-06-02 23:50 - 2016-06-04 15:33 - 00000000 ____D C:\Intel
2016-06-02 23:45 - 2016-06-02 23:45 - 00197632 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4352.dll
2016-06-02 23:45 - 2016-06-02 23:45 - 00041296 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2016-06-02 23:45 - 2016-06-02 23:45 - 00040931 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2016-06-02 23:45 - 2016-06-02 23:45 - 00040343 _____ C:\WINDOWS\system32\iglhxo64.vp
2016-06-02 23:45 - 2016-06-02 23:45 - 00040316 _____ C:\WINDOWS\system32\iglhxc64.vp
2016-06-02 23:45 - 2016-06-02 23:45 - 00039798 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2016-06-02 23:45 - 2016-06-02 23:45 - 00039658 _____ C:\WINDOWS\system32\iglhxg64.vp
2016-06-02 23:45 - 2016-06-02 23:45 - 00001145 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-06-02 23:45 - 2016-06-02 23:45 - 00001125 _____ C:\WINDOWS\system32\iglhxa64.vp
2016-06-02 23:45 - 2016-03-17 20:23 - 11733568 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2016-06-02 23:37 - 2016-06-02 23:37 - 04330200 _____ (TODO: <Company name>) C:\WINDOWS\RtCRU64.exe
2016-06-02 23:37 - 2016-06-02 23:37 - 00413912 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2016-06-02 23:19 - 2016-06-02 23:19 - 00082544 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
2016-06-02 23:17 - 2016-06-02 23:54 - 00000000 ____D C:\Program Files\Waves
2016-06-02 23:13 - 2016-06-02 23:13 - 00532384 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2016-06-02 23:13 - 2016-06-02 23:13 - 00221976 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2016-06-02 23:13 - 2016-06-02 23:13 - 00209536 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2016-06-02 23:13 - 2016-06-02 23:13 - 00166208 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 72203792 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCORES64.dat
2016-06-02 23:12 - 2016-06-02 23:12 - 13120760 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 12014440 _____ (Waves Audio Ltd.) C:\WINDOWS\SysWOW64\MaxxVoiceAPO30.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 07172920 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 07096192 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 05576400 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2016-06-02 23:12 - 2016-06-02 23:12 - 03700360 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioMeters64.exe
2016-06-02 23:12 - 2016-06-02 23:12 - 03282032 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 03198720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 02894976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2016-06-02 23:12 - 2016-06-02 23:12 - 02050184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 02049664 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01965816 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01780624 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01743632 _____ (Creative Technology Ltd.) C:\WINDOWS\SysWOW64\MBAPO232.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01591064 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01508936 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01421104 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01356512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 01164336 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00998032 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00914024 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBAPO64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00768824 _____ (Creative Technology Ltd.) C:\WINDOWS\SysWOW64\MBAPO32.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00743968 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00727440 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00708320 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00689888 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00678192 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00677680 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00642928 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBTHX64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00577840 _____ (Creative Technology Ltd.) C:\WINDOWS\SysWOW64\MBTHX32.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00574760 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00504312 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00447720 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00445408 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00441272 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00387320 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00330568 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00327464 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00272720 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00253904 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00253872 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00252880 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00214840 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00203560 _____ (Waves Audio) C:\WINDOWS\system32\MaxxAudioVienna264.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00164432 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkXInterface64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00151792 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00134208 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00110984 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00084624 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00074608 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBppld64.dll
2016-06-02 23:12 - 2016-06-02 23:12 - 00069928 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBPPCn64.dll
2016-06-02 23:05 - 2016-06-02 23:50 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-06-02 23:02 - 2016-06-02 23:02 - 00046856 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaLPSS_GPIO.sys
2016-06-02 22:12 - 2016-06-07 07:18 - 00002229 _____ C:\Users\Public\Desktop\Driver Booster 3.lnk
2016-06-02 22:12 - 2016-06-07 07:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
2016-06-02 22:12 - 2016-06-02 22:12 - 00027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
2016-06-02 22:12 - 2016-06-02 22:12 - 00000000 ____D C:\WINDOWS\IObit
2016-06-02 22:09 - 2016-06-02 22:09 - 00001252 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2016-06-02 22:09 - 2016-06-02 22:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
2016-06-02 22:08 - 2016-06-02 22:08 - 00003290 _____ C:\WINDOWS\System32\Tasks\ASC8_PerformanceMonitor
2016-06-02 22:06 - 2016-06-08 11:53 - 00002260 _____ C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
2016-06-02 22:06 - 2016-06-07 14:11 - 00000000 ____D C:\Users\Todos os Usuários\IObit
2016-06-02 22:06 - 2016-06-07 14:11 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\IObit
2016-06-02 22:06 - 2016-06-07 14:11 - 00000000 ____D C:\ProgramData\IObit
2016-06-02 22:06 - 2016-06-07 14:11 - 00000000 ____D C:\Program Files (x86)\IObit
2016-06-02 22:06 - 2016-06-07 07:34 - 00000274 _____ C:\WINDOWS\Tasks\ASC8_SkipUac_joaoa.job
2016-06-02 22:06 - 2016-06-02 22:10 - 00000000 ____D C:\Users\joaoa\AppData\LocalLow\IObit
2016-06-02 22:06 - 2016-06-02 22:06 - 00002446 _____ C:\WINDOWS\System32\Tasks\ASC8_SkipUac_joaoa
2016-06-02 22:06 - 2016-06-02 22:06 - 00001307 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2016-06-02 22:06 - 2016-06-02 22:06 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2016-06-02 22:06 - 2016-06-02 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2016-06-02 22:06 - 2016-06-02 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
2016-06-02 22:04 - 2016-06-02 22:05 - 01125328 _____ (IObit) C:\Users\joaoa\Downloads\OFCommon.dll
2016-06-02 18:04 - 2016-06-04 13:09 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software
2016-06-02 18:04 - 2016-06-04 13:09 - 00000000 ____D C:\ProgramData\AVAST Software
2016-06-02 15:53 - 2016-06-02 15:53 - 00000000 ____D C:\Users\Todos os Usuários\Konksolexs
2016-06-02 15:53 - 2016-06-02 15:53 - 00000000 ____D C:\ProgramData\Konksolexs
2016-06-02 15:52 - 2016-06-02 15:52 - 06859776 _____ C:\Users\joaoa\AppData\Roaming\agent.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 01756999 _____ C:\Users\joaoa\AppData\Roaming\Ozernimron.tst
2016-06-02 15:52 - 2016-06-02 15:52 - 00126464 _____ C:\Users\joaoa\AppData\Roaming\noah.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 00126464 _____ C:\Users\joaoa\AppData\Roaming\lobby.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 00072820 _____ C:\Users\joaoa\AppData\Roaming\True-Top.tst
2016-06-02 15:52 - 2016-06-02 15:52 - 00067776 _____ C:\Users\joaoa\AppData\Roaming\Config.xml
2016-06-02 15:52 - 2016-06-02 15:52 - 00018432 _____ C:\Users\joaoa\AppData\Roaming\Main.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 00005568 _____ C:\Users\joaoa\AppData\Roaming\md.xml
2016-06-02 15:50 - 2016-06-02 15:50 - 00848437 _____ C:\Users\joaoa\AppData\Roaming\NimOvetop.bin
2016-06-02 15:49 - 2016-06-02 15:49 - 00128512 _____ C:\Users\joaoa\AppData\Roaming\Installer.dat
2016-06-02 15:49 - 2016-06-02 15:49 - 00020352 _____ C:\Users\joaoa\AppData\Roaming\InstallationConfiguration.xml
2016-06-02 15:46 - 2016-06-02 17:40 - 00000000 ____D C:\Program Files (x86)\Cirageqopward
2016-06-02 15:46 - 2016-06-02 15:46 - 00000000 ____D C:\Program Files (x86)\Hofight
2016-06-02 15:38 - 2016-06-02 17:59 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\dbuGU
2016-06-02 15:38 - 2016-06-02 17:53 - 00000000 ____D C:\Program Files (x86)\Dbphanihty
2016-06-02 15:35 - 2016-06-06 11:41 - 00003350 _____ C:\WINDOWS\System32\Tasks\AdBlock
2016-06-02 15:34 - 2016-06-02 22:17 - 00000000 ____D C:\Program Files\Common Files\Noobzo
2016-06-02 15:34 - 2016-06-02 15:34 - 00187904 _____ C:\WINDOWS\rsrcs.dll
2016-06-02 13:29 - 2016-06-02 13:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rob Papen Predator
2016-06-02 13:24 - 2016-06-05 19:34 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Xfer
2016-06-02 07:44 - 2016-06-02 07:44 - 00000000 ____D C:\Users\joaoa\Documents\Xfer
2016-06-01 10:40 - 2016-06-01 10:40 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\dvdcss
2016-05-31 09:13 - 2016-05-31 09:13 - 00001621 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2016-05-31 08:18 - 2016-06-02 21:57 - 00000000 ____D C:\Users\joaoa\AppData\Local\Spotify
2016-05-31 08:18 - 2016-05-31 08:18 - 00001838 _____ C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2016-05-31 08:17 - 2016-06-02 21:57 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Spotify
2016-05-22 22:46 - 2016-05-22 22:46 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Maize Sampler Player
2016-05-22 22:33 - 2016-05-22 22:33 - 00000000 ____D C:\Program Files\Steinberg
2016-05-22 20:02 - 2016-05-22 20:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
2016-05-22 20:01 - 2016-05-22 21:06 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Pro
2016-05-22 20:01 - 2016-05-22 20:01 - 00283200 _____ (DT Soft Ltd) C:\WINDOWS\system32\Drivers\dtsoftbus01.sys
2016-05-22 01:42 - 2016-05-22 01:47 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\DAEMON Tools iSCSI Target
2016-05-22 01:41 - 2016-05-22 01:41 - 00030264 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtproscsibus.sys
2016-05-22 01:23 - 2016-05-22 01:23 - 00003690 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-joaoavedisbalabanian@hotmail.com
2016-05-22 01:20 - 2016-05-22 01:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Air Music Tech
2016-05-22 01:16 - 2016-05-22 01:16 - 00000000 ____D C:\Program Files (x86)\AIR Music Technology
2016-05-22 01:14 - 2016-05-22 01:14 - 00000000 ____D C:\Programme
2016-05-22 01:14 - 2016-05-22 01:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Phasewave
2016-05-22 01:11 - 2016-06-06 13:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tone2 Gladiator full
2016-05-21 22:59 - 2016-05-21 22:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tone2 ElectraX full
2016-05-21 22:47 - 2016-05-21 22:47 - 00034308 _____ C:\WINDOWS\SysWOW64\bassmod.dll
2016-05-21 22:38 - 2016-05-21 23:06 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\IsolatedStorage
2016-05-21 22:38 - 2016-05-21 22:38 - 00000000 ____D C:\Users\Todos os Usuários\IsolatedStorage
2016-05-21 22:38 - 2016-05-21 22:38 - 00000000 ____D C:\ProgramData\IsolatedStorage
2016-05-21 22:37 - 2016-05-21 22:55 - 00000000 ____D C:\Spacekace
2016-05-21 22:06 - 2016-05-21 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\reFX
2016-05-21 22:06 - 2009-10-24 21:15 - 01332224 _____ (AD © 2009) C:\WINDOWS\SysWOW64\SYNSOEMU.DLL
2016-05-21 21:59 - 2016-05-21 21:59 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Reveal Sound
2016-05-21 21:59 - 2016-05-21 21:59 - 00000000 ____D C:\Program Files (x86)\Reveal Sound
2016-05-21 19:41 - 2016-05-22 00:41 - 00000072 _____ C:\Users\joaoa\AppData\Roaming\WB.CFG
2016-05-21 19:08 - 2016-05-21 19:08 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\vstsaxi
2016-05-21 18:41 - 2016-06-08 11:41 - 00000302 _____ C:\WINDOWS\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job
2016-05-21 18:41 - 2016-05-21 18:41 - 00002842 _____ C:\WINDOWS\System32\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}
2016-05-21 18:41 - 2016-05-21 18:41 - 00000286 __RSH C:\Users\Todos os Usuários\ntuser.pol
2016-05-21 18:41 - 2016-05-21 18:41 - 00000286 __RSH C:\ProgramData\ntuser.pol
2016-05-21 12:27 - 2016-06-03 08:50 - 00000000 ____D C:\Program Files (x86)\Google
2016-05-21 12:27 - 2016-05-21 17:24 - 00000000 ____D C:\Users\joaoa\AppData\Local\Google
2016-05-21 12:27 - 2016-05-21 12:32 - 00004166 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-19 09:54 - 2016-05-19 09:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Way Out Ware
2016-05-19 09:54 - 2016-05-19 09:54 - 00000000 ____D C:\Program Files (x86)\Way Out Ware
2016-05-17 13:03 - 2016-05-22 01:23 - 00000000 ____D C:\Users\Todos os Usuários\regid.1986-12.com.adobe
2016-05-17 13:03 - 2016-05-22 01:23 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2016-05-17 13:03 - 2016-05-17 13:03 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk
2016-05-17 13:02 - 2016-05-17 13:02 - 00001286 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6.lnk
2016-05-17 13:01 - 2016-05-31 09:19 - 00000000 ____D C:\Program Files\Adobe
2016-05-17 13:01 - 2016-05-17 13:01 - 00001248 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6.lnk
2016-05-17 13:01 - 2016-05-17 13:01 - 00001084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk
2016-05-17 12:59 - 2016-05-17 12:59 - 00001602 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2016-05-17 12:59 - 2016-05-17 12:59 - 00001432 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2016-05-17 12:57 - 2016-05-31 09:25 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-05-14 16:49 - 2016-05-14 16:49 - 00000000 ____D C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen
2016-05-13 15:21 - 2016-05-13 15:21 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dada Life
2016-05-12 17:03 - 2016-05-12 17:14 - 00000000 ____D C:\Users\joaoa\Documents\Addictive Drums
2016-05-12 11:05 - 2016-05-12 11:05 - 00445830 _____ C:\Users\joaoa\Downloads\Fatura.pdf
2016-05-12 10:05 - 2016-05-12 10:05 - 00252285 _____ C:\Users\joaoa\Downloads\AULAS 36 , 37 , 38 e 39.pdf
2016-05-11 18:36 - 2016-05-11 18:36 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
2016-05-11 18:34 - 2016-05-11 18:34 - 00000000 ____D C:\Program Files\Common Files\VST2
2016-05-11 08:57 - 2016-05-11 08:57 - 00564736 _____ C:\WINDOWS\system32\bitst.exe
2016-05-10 14:34 - 2016-04-23 00:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-05-10 14:34 - 2016-04-23 00:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-10 14:34 - 2016-04-23 00:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-10 14:34 - 2016-04-23 00:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-05-10 14:34 - 2016-04-23 00:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-05-10 14:34 - 2016-04-23 00:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-10 14:34 - 2016-04-23 00:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-10 14:34 - 2016-04-23 00:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-05-10 14:34 - 2016-04-23 00:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-10 14:34 - 2016-04-23 00:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-10 14:34 - 2016-04-23 00:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-10 14:34 - 2016-04-23 00:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-10 14:34 - 2016-04-23 00:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-10 14:34 - 2016-04-23 00:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-10 14:34 - 2016-04-23 00:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-10 14:34 - 2016-04-23 00:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-05-10 14:34 - 2016-04-23 00:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-05-10 14:34 - 2016-04-23 00:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-05-10 14:34 - 2016-04-23 00:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-05-10 14:34 - 2016-04-23 00:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-05-10 14:34 - 2016-04-23 00:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-10 14:34 - 2016-04-23 00:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-05-10 14:34 - 2016-04-23 00:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-05-10 14:33 - 2016-04-23 01:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-10 14:33 - 2016-04-23 01:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-10 14:33 - 2016-04-23 01:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-10 14:33 - 2016-04-23 01:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-10 14:33 - 2016-04-23 01:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-10 14:33 - 2016-04-23 01:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-05-10 14:33 - 2016-04-23 01:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-05-10 14:33 - 2016-04-23 01:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-10 14:33 - 2016-04-23 00:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-10 14:33 - 2016-04-23 00:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-05-10 14:33 - 2016-04-23 00:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-10 14:33 - 2016-04-23 00:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-10 14:33 - 2016-04-23 00:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-05-10 14:33 - 2016-04-23 00:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-10 14:33 - 2016-04-23 00:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-10 14:33 - 2016-04-23 00:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-05-10 14:33 - 2016-04-23 00:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-10 14:33 - 2016-04-23 00:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-05-10 14:33 - 2016-04-23 00:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-10 14:32 - 2016-04-30 02:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-10 14:32 - 2016-04-30 02:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-10 14:32 - 2016-04-23 02:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-10 14:32 - 2016-04-23 02:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-10 14:32 - 2016-04-23 02:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-10 14:32 - 2016-04-23 02:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-10 14:32 - 2016-04-23 02:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-10 14:32 - 2016-04-23 02:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-10 14:32 - 2016-04-23 02:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-10 14:32 - 2016-04-23 01:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-05-10 14:32 - 2016-04-23 01:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-10 14:32 - 2016-04-23 01:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-10 14:32 - 2016-04-23 01:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-05-10 14:32 - 2016-04-23 01:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-05-10 14:32 - 2016-04-23 01:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-10 14:32 - 2016-04-23 01:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-10 14:32 - 2016-04-23 01:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-10 14:32 - 2016-04-23 01:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-10 14:32 - 2016-04-23 01:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-05-10 14:32 - 2016-04-23 01:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-10 14:32 - 2016-04-23 01:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-05-10 14:32 - 2016-04-23 01:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-10 14:32 - 2016-04-23 01:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-10 14:32 - 2016-04-23 01:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-10 14:32 - 2016-04-23 01:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-05-10 14:32 - 2016-04-23 01:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-05-10 14:32 - 2016-04-23 01:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-10 14:32 - 2016-04-23 01:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-10 14:32 - 2016-04-23 01:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-10 14:32 - 2016-04-23 01:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-05-10 14:32 - 2016-04-23 01:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-10 14:32 - 2016-04-23 01:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-10 14:32 - 2016-04-23 01:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-10 14:32 - 2016-04-23 01:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-10 14:32 - 2016-04-23 01:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-05-10 14:32 - 2016-04-23 00:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-10 14:32 - 2016-04-23 00:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-10 14:32 - 2016-04-23 00:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-10 14:32 - 2016-04-23 00:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-10 14:32 - 2016-04-23 00:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-10 14:32 - 2016-04-23 00:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-10 14:32 - 2016-04-23 00:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-10 14:32 - 2016-04-23 00:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-10 14:32 - 2016-04-23 00:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-10 14:32 - 2016-04-23 00:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-10 14:32 - 2016-04-23 00:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-10 14:32 - 2016-04-23 00:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-10 14:32 - 2016-04-23 00:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-10 14:32 - 2016-04-23 00:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-10 14:32 - 2016-04-23 00:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-10 14:32 - 2016-04-23 00:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-10 14:32 - 2016-04-23 00:18 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-05-10 14:32 - 2016-04-23 00:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-10 14:32 - 2016-04-23 00:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-10 14:32 - 2016-04-23 00:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-10 14:32 - 2016-04-23 00:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-10 14:32 - 2016-04-23 00:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-10 14:32 - 2016-04-23 00:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-10 14:32 - 2016-04-23 00:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-10 14:32 - 2016-04-23 00:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-10 14:32 - 2016-04-23 00:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-10 14:32 - 2016-04-23 00:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-10 14:32 - 2016-04-23 00:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-10 14:32 - 2016-04-23 00:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-10 14:32 - 2016-04-23 00:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-10 14:32 - 2016-04-23 00:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-10 14:32 - 2016-04-23 00:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-10 14:32 - 2016-04-23 00:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-10 14:32 - 2016-04-23 00:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-05-10 14:32 - 2016-04-23 00:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-05-10 14:32 - 2016-04-23 00:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-10 14:32 - 2016-04-23 00:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-05-10 14:32 - 2016-04-23 00:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-05-10 14:32 - 2016-04-23 00:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-10 14:32 - 2016-04-23 00:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-10 14:32 - 2016-04-23 00:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-05-10 14:32 - 2016-04-23 00:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-10 14:32 - 2016-04-23 00:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-10 14:32 - 2016-04-23 00:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-10 14:32 - 2016-04-23 00:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-10 14:32 - 2016-04-23 00:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-10 14:32 - 2016-04-23 00:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-10 14:32 - 2016-04-23 00:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-05-10 14:32 - 2016-04-23 00:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-10 14:32 - 2016-04-23 00:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-05-10 14:32 - 2016-04-23 00:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-10 14:32 - 2016-04-23 00:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-10 14:32 - 2016-04-23 00:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-10 14:32 - 2016-04-23 00:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-05-10 14:32 - 2016-04-23 00:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-05-10 14:32 - 2016-04-23 00:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-05-10 14:32 - 2016-04-23 00:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-10 14:32 - 2016-04-23 00:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-10 14:32 - 2016-04-23 00:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-10 14:32 - 2016-04-22 22:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-10 14:31 - 2016-05-06 00:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-10 14:31 - 2016-05-06 00:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-05-10 14:31 - 2016-05-06 00:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-10 14:31 - 2016-05-05 23:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-10 14:31 - 2016-05-05 23:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-10 14:31 - 2016-05-05 23:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-10 14:31 - 2016-05-05 23:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-10 14:31 - 2016-05-05 23:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-10 14:31 - 2016-04-23 02:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-10 14:31 - 2016-04-23 01:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-10 14:31 - 2016-04-23 01:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-10 14:31 - 2016-04-23 01:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-10 14:31 - 2016-04-23 01:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-10 14:31 - 2016-04-23 01:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-10 14:31 - 2016-04-23 01:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-10 14:31 - 2016-04-23 01:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-05-10 14:31 - 2016-04-23 01:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-05-10 14:31 - 2016-04-23 01:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-05-10 14:31 - 2016-04-23 01:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-10 14:31 - 2016-04-23 01:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-10 14:31 - 2016-04-23 01:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-10 14:31 - 2016-04-23 01:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-10 14:31 - 2016-04-23 01:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-10 14:31 - 2016-04-23 01:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-05-10 14:31 - 2016-04-23 01:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-10 14:31 - 2016-04-23 01:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-05-10 14:31 - 2016-04-23 01:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-10 14:31 - 2016-04-23 01:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-05-10 14:31 - 2016-04-23 01:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-10 14:31 - 2016-04-23 01:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-10 14:31 - 2016-04-23 01:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-10 14:31 - 2016-04-23 01:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-10 14:31 - 2016-04-23 01:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-10 14:31 - 2016-04-23 01:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-05-10 14:31 - 2016-04-23 01:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-10 14:31 - 2016-04-23 01:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-05-10 14:31 - 2016-04-23 01:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-10 14:31 - 2016-04-23 00:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-10 14:31 - 2016-04-23 00:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-10 14:31 - 2016-04-23 00:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-10 14:31 - 2016-04-23 00:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-10 14:31 - 2016-04-23 00:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-10 14:31 - 2016-04-23 00:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-10 14:31 - 2016-04-23 00:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-10 14:31 - 2016-04-23 00:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-10 14:31 - 2016-04-23 00:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-10 14:31 - 2016-04-23 00:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-10 14:31 - 2016-04-23 00:30 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-05-10 14:31 - 2016-04-23 00:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-05-10 14:31 - 2016-04-23 00:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-05-10 14:31 - 2016-04-23 00:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-10 14:31 - 2016-04-23 00:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-10 14:31 - 2016-04-23 00:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-10 14:31 - 2016-04-23 00:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-05-10 14:31 - 2016-04-23 00:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-05-10 14:31 - 2016-04-23 00:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-05-10 14:31 - 2016-04-23 00:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-10 14:31 - 2016-04-23 00:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-10 14:31 - 2016-04-23 00:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-10 14:31 - 2016-04-23 00:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-10 14:31 - 2016-04-23 00:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-05-10 14:31 - 2016-04-23 00:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-10 14:31 - 2016-04-23 00:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-05-10 14:31 - 2016-04-23 00:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-10 14:31 - 2016-04-23 00:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-10 14:31 - 2016-04-23 00:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-10 14:31 - 2016-04-23 00:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-10 14:31 - 2016-04-23 00:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-05-10 14:31 - 2016-04-23 00:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-10 14:31 - 2016-04-23 00:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-10 14:31 - 2016-04-23 00:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-05-10 14:31 - 2016-04-23 00:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-10 14:31 - 2016-04-23 00:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-10 14:31 - 2016-04-23 00:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-10 14:31 - 2016-04-23 00:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-05-10 14:31 - 2016-04-23 00:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-10 14:31 - 2016-04-23 00:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-10 14:31 - 2016-04-23 00:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-05-10 14:31 - 2016-04-23 00:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-10 14:31 - 2016-04-23 00:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-05-10 14:31 - 2016-04-23 00:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-05-10 14:31 - 2016-04-23 00:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-10 14:31 - 2016-04-23 00:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-10 14:31 - 2016-04-23 00:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-10 14:31 - 2016-04-23 00:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-05-10 14:31 - 2016-04-23 00:18 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-05-10 14:31 - 2016-04-23 00:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-05-10 14:31 - 2016-04-23 00:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-10 14:31 - 2016-04-23 00:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-05-10 14:31 - 2016-04-23 00:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-05-10 14:31 - 2016-04-23 00:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-10 14:31 - 2016-04-23 00:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-10 14:31 - 2016-04-23 00:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-05-10 14:31 - 2016-04-23 00:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-05-10 14:31 - 2016-04-23 00:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-10 14:31 - 2016-04-22 23:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-05-10 14:31 - 2016-04-22 22:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-10 14:31 - 2016-04-18 18:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-05-10 14:11 - 2016-06-02 22:04 - 00000000 ___HD C:\$AVG
2016-05-10 13:45 - 2016-06-08 11:10 - 00000000 ____D C:\viva
2016-05-10 13:45 - 2016-05-10 13:45 - 00722130 _____ C:\WINDOWS\unins000.exe
2016-05-10 13:45 - 2016-05-10 13:45 - 00000785 _____ C:\WINDOWS\unins000.dat
2016-05-10 13:45 - 2016-05-10 13:45 - 00000000 ____D C:\Program Files (x86)\Viva
2016-05-10 13:45 - 2015-09-17 21:27 - 00059136 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\vivadrv.sys
2016-05-10 11:07 - 2016-05-10 11:07 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-05-10 11:07 - 2016-05-10 11:07 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-05-06 16:47 - 2015-12-05 02:25 - 00181640 ____N (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys
2016-05-04 17:09 - 2016-05-04 17:09 - 00513660 _____ C:\Users\joaoa\Downloads\AULAS 30, 31 , 32 e 33.pdf
2016-04-28 17:15 - 2016-04-28 17:15 - 00000000 ____D C:\Users\joaoa\Documents\NET
2016-04-20 13:12 - 2016-04-20 13:12 - 00382426 _____ C:\Users\joaoa\Downloads\Fatura Americanas Abril.pdf
2016-04-20 13:10 - 2016-04-20 13:10 - 00299822 _____ C:\Users\joaoa\Downloads\gru.pdf
2016-04-15 17:18 - 2016-04-15 17:18 - 00000000 ____D C:\Users\joaoa\Documents\CURSOS
2016-04-14 16:05 - 2016-04-15 12:42 - 00000000 ____D C:\Users\joaoa\.receitanet
2016-04-14 16:04 - 2016-04-14 16:04 - 00000176 _____ C:\WINDOWS\REC-NET.INI
2016-04-14 16:04 - 2016-04-14 16:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programas RFB
2016-04-14 16:04 - 2016-04-14 16:04 - 00000000 ____D C:\Program Files (x86)\Programas RFB
2016-04-14 11:45 - 2016-04-14 11:45 - 00000000 ____D C:\Users\joaoa\Documents\FINANCEIRO
2016-04-13 12:27 - 2016-03-29 06:18 - 02152280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-13 12:27 - 2016-03-29 05:37 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-04-13 12:27 - 2016-03-29 04:41 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-13 12:27 - 2016-03-29 04:06 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-13 12:27 - 2016-03-29 04:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-04-13 12:27 - 2016-03-29 03:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-13 12:27 - 2016-03-29 03:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-13 12:27 - 2016-03-29 03:46 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-13 12:27 - 2016-03-29 03:36 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-13 12:27 - 2016-03-29 03:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-04-13 12:27 - 2016-03-29 03:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-04-13 12:27 - 2016-03-29 03:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-04-13 12:27 - 2016-03-29 03:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-04-13 12:27 - 2016-03-29 02:26 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-13 12:27 - 2016-03-29 02:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-04-13 12:26 - 2016-04-01 23:19 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-13 12:26 - 2016-04-01 23:14 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-13 12:26 - 2016-04-01 23:07 - 03575296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-13 12:26 - 2016-03-29 06:20 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-13 12:26 - 2016-03-29 06:20 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-13 12:26 - 2016-03-29 06:20 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-13 12:26 - 2016-03-29 05:56 - 01297752 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-13 12:26 - 2016-03-29 05:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-04-13 12:26 - 2016-03-29 05:11 - 00605440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-04-13 12:26 - 2016-03-29 04:02 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-13 12:26 - 2016-03-29 03:34 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-13 12:26 - 2016-03-29 03:20 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-13 12:26 - 2016-03-29 03:15 - 01714688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-13 12:26 - 2016-03-29 03:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-13 12:26 - 2016-03-29 03:14 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-13 12:26 - 2016-03-29 03:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-13 12:26 - 2016-03-29 03:05 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-13 12:26 - 2016-03-29 03:02 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-13 12:26 - 2016-03-29 03:02 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-13 12:26 - 2016-03-29 03:00 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-13 12:26 - 2016-03-29 02:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-04-13 12:26 - 2016-03-29 02:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-04-13 12:26 - 2016-03-29 02:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-04-13 12:26 - 2016-03-29 02:32 - 01098240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-13 12:26 - 2016-03-29 02:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-04-13 12:26 - 2016-03-29 02:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-04-13 12:26 - 2016-03-29 02:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-04-13 12:26 - 2016-03-29 02:19 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-13 12:26 - 2016-03-29 02:05 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-13 12:26 - 2016-03-29 01:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-04-13 12:26 - 2016-03-29 01:45 - 03078144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-13 12:26 - 2016-03-29 01:43 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-13 12:26 - 2016-03-29 01:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-04-13 12:26 - 2016-03-29 01:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-04-13 12:26 - 2016-03-29 01:26 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-13 12:25 - 2016-04-02 00:13 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-13 12:25 - 2016-04-02 00:10 - 00770640 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-13 12:25 - 2016-04-02 00:10 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-13 12:25 - 2016-04-02 00:10 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-13 12:25 - 2016-04-01 23:25 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-13 12:25 - 2016-04-01 23:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-04-13 12:25 - 2016-03-29 06:23 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-13 12:25 - 2016-03-29 06:22 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-13 12:25 - 2016-03-29 06:22 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-13 12:25 - 2016-03-29 06:15 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-13 12:25 - 2016-03-29 06:11 - 00686976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-13 12:25 - 2016-03-29 06:05 - 01152864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-13 12:25 - 2016-03-29 06:02 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-13 12:25 - 2016-03-29 06:02 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-13 12:25 - 2016-03-29 05:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-04-13 12:25 - 2016-03-29 05:25 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-13 12:25 - 2016-03-29 05:25 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-13 12:25 - 2016-03-29 05:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-04-13 12:25 - 2016-03-29 05:18 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-13 12:25 - 2016-03-29 05:11 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-13 12:25 - 2016-03-29 05:10 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-13 12:25 - 2016-03-29 05:09 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-13 12:25 - 2016-03-29 05:08 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-13 12:25 - 2016-03-29 05:08 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-04-13 12:25 - 2016-03-29 05:07 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-13 12:25 - 2016-03-29 04:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-04-13 12:25 - 2016-03-29 04:26 - 02403680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-13 12:25 - 2016-03-29 04:26 - 01089888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-13 12:25 - 2016-03-29 04:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-04-13 12:25 - 2016-03-29 04:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-04-13 12:25 - 2016-03-29 04:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-04-13 12:25 - 2016-03-29 04:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-04-13 12:25 - 2016-03-29 04:21 - 00378208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-13 12:25 - 2016-03-29 04:16 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-13 12:25 - 2016-03-29 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-13 12:25 - 2016-03-29 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-13 12:25 - 2016-03-29 04:07 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-13 12:25 - 2016-03-29 04:07 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-13 12:25 - 2016-03-29 04:06 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-13 12:25 - 2016-03-29 04:00 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-04-13 12:25 - 2016-03-29 04:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-13 12:25 - 2016-03-29 03:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-13 12:25 - 2016-03-29 03:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-13 12:25 - 2016-03-29 03:57 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-13 12:25 - 2016-03-29 03:57 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-13 12:25 - 2016-03-29 03:55 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-13 12:25 - 2016-03-29 03:55 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-13 12:25 - 2016-03-29 03:54 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-13 12:25 - 2016-03-29 03:53 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-13 12:25 - 2016-03-29 03:52 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-13 12:25 - 2016-03-29 03:51 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-04-13 12:25 - 2016-03-29 03:51 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-13 12:25 - 2016-03-29 03:51 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-13 12:25 - 2016-03-29 03:50 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-13 12:25 - 2016-03-29 03:50 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-13 12:25 - 2016-03-29 03:50 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-13 12:25 - 2016-03-29 03:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-13 12:25 - 2016-03-29 03:49 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-04-13 12:25 - 2016-03-29 03:49 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-13 12:25 - 2016-03-29 03:48 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-13 12:25 - 2016-03-29 03:46 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-13 12:25 - 2016-03-29 03:44 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-13 12:25 - 2016-03-29 03:39 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-13 12:25 - 2016-03-29 03:36 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-13 12:25 - 2016-03-29 03:35 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-13 12:25 - 2016-03-29 03:35 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-13 12:25 - 2016-03-29 03:34 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-13 12:25 - 2016-03-29 03:34 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-13 12:25 - 2016-03-29 03:33 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-13 12:25 - 2016-03-29 03:30 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-13 12:25 - 2016-03-29 03:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-04-13 12:25 - 2016-03-29 03:27 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-13 12:25 - 2016-03-29 03:26 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-13 12:25 - 2016-03-29 03:23 - 00694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-13 12:25 - 2016-03-29 03:23 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-13 12:25 - 2016-03-29 03:22 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-13 12:25 - 2016-03-29 03:21 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 12:25 - 2016-03-29 03:20 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-13 12:25 - 2016-03-29 03:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-04-13 12:25 - 2016-03-29 03:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-04-13 12:25 - 2016-03-29 03:19 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-13 12:25 - 2016-03-29 03:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-04-13 12:25 - 2016-03-29 03:18 - 00676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-13 12:25 - 2016-03-29 03:17 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-13 12:25 - 2016-03-29 03:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-04-13 12:25 - 2016-03-29 03:11 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-13 12:25 - 2016-03-29 03:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-04-13 12:25 - 2016-03-29 03:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-04-13 12:25 - 2016-03-29 03:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-04-13 12:25 - 2016-03-29 03:09 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-13 12:25 - 2016-03-29 03:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-04-13 12:25 - 2016-03-29 03:08 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-13 12:25 - 2016-03-29 03:08 - 00841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-13 12:25 - 2016-03-29 03:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-04-13 12:25 - 2016-03-29 03:07 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-13 12:25 - 2016-03-29 03:06 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-13 12:25 - 2016-03-29 03:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-04-13 12:25 - 2016-03-29 03:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-04-13 12:25 - 2016-03-29 03:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-04-13 12:25 - 2016-03-29 03:03 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-13 12:25 - 2016-03-29 03:00 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-04-13 12:25 - 2016-03-29 03:00 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-13 12:25 - 2016-03-29 03:00 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-13 12:25 - 2016-03-29 02:59 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-13 12:25 - 2016-03-29 02:59 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-13 12:25 - 2016-03-29 02:59 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-13 12:25 - 2016-03-29 02:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-04-13 12:25 - 2016-03-29 02:55 - 01052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-13 12:25 - 2016-03-29 02:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-04-13 12:25 - 2016-03-29 02:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-04-13 12:25 - 2016-03-29 02:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-04-13 12:25 - 2016-03-29 02:49 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-13 12:25 - 2016-03-29 02:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-04-13 12:25 - 2016-03-29 02:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2016-04-13 12:25 - 2016-03-29 02:42 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-13 12:25 - 2016-03-29 02:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-13 12:25 - 2016-03-29 02:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-04-13 12:25 - 2016-03-29 02:40 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-13 12:25 - 2016-03-29 02:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-04-13 12:25 - 2016-03-29 02:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-04-13 12:25 - 2016-03-29 02:36 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-13 12:25 - 2016-03-29 02:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-04-13 12:25 - 2016-03-29 02:34 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-13 12:25 - 2016-03-29 02:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-04-13 12:25 - 2016-03-29 02:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-04-13 12:25 - 2016-03-29 02:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-04-13 12:25 - 2016-03-29 02:32 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-13 12:25 - 2016-03-29 02:32 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-13 12:25 - 2016-03-29 02:32 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-13 12:25 - 2016-03-29 02:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-04-13 12:25 - 2016-03-29 02:29 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-13 12:25 - 2016-03-29 02:29 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-13 12:25 - 2016-03-29 02:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-04-13 12:25 - 2016-03-29 02:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-04-13 12:25 - 2016-03-29 02:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-04-13 12:25 - 2016-03-29 02:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-04-13 12:25 - 2016-03-29 02:17 - 00765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-13 12:25 - 2016-03-29 02:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-04-13 12:25 - 2016-03-29 02:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-04-13 12:25 - 2016-03-29 02:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-04-13 12:25 - 2016-03-29 02:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-04-13 12:25 - 2016-03-29 02:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-04-13 12:25 - 2016-03-29 02:05 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-13 12:25 - 2016-03-29 02:04 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-13 12:25 - 2016-03-29 02:01 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-13 12:25 - 2016-03-29 01:45 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-13 12:25 - 2016-03-29 01:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-04-13 12:25 - 2016-03-29 01:35 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-13 12:25 - 2016-03-29 01:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-13 12:25 - 2016-03-29 01:27 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-13 12:25 - 2016-03-29 01:26 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-13 12:25 - 2016-03-29 01:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-04-13 12:25 - 2016-03-29 01:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-04-13 12:25 - 2016-03-29 01:21 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-13 12:24 - 2016-03-29 02:27 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-04-11 22:40 - 2016-04-11 23:56 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\CubicExplorer
2016-04-11 22:40 - 2016-04-11 22:40 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CubicExplorer
2016-04-11 22:40 - 2016-04-11 22:40 - 00000000 ____D C:\Program Files (x86)\CubicExplorer
2016-04-11 22:39 - 2016-05-10 13:17 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Q-Dir
2016-04-11 22:39 - 2016-04-11 22:39 - 00000000 ____D C:\Users\joaoa\Documents\Favorites_Q_Dir
2016-04-11 22:38 - 2016-05-13 15:40 - 00015245 _____ C:\WINDOWS\Q-Dir.ini
2016-04-11 22:33 - 2016-04-11 22:33 - 00000269 _____ C:\Users\joaoa\AppData\Roaming\CairoStacksConfig.xml
2016-04-11 22:33 - 2016-04-11 22:33 - 00000000 ____D C:\Users\joaoa\AppData\Local\Cairo
2016-04-09 19:24 - 2016-05-10 13:21 - 00000000 ____D C:\Users\Todos os Usuários\Kaspersky Lab
2016-04-09 19:24 - 2016-05-10 13:21 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-04-09 19:23 - 2016-05-06 16:50 - 00000000 ____D C:\Users\Todos os Usuários\Kaspersky Lab Setup Files
2016-04-09 19:23 - 2016-05-06 16:50 - 00000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2016-04-06 14:05 - 2016-04-06 14:10 - 00000000 ____D C:\Users\joaoa\Documents\IMPOSTO DE RENDA
2016-04-06 14:04 - 2016-04-22 12:43 - 00000000 ___HD C:\Program Files (x86)\InstallJammer Registry
2016-04-06 14:04 - 2016-04-06 14:45 - 00000000 ____D C:\Arquivos de Programas RFB
2016-04-06 14:04 - 2016-04-06 14:04 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2016
2016-04-03 22:28 - 2016-04-03 22:28 - 00003798 _____ C:\WINDOWS\System32\Tasks\Java Platform SE Auto Updater
2016-04-03 20:34 - 2016-04-03 20:46 - 00000000 ____D C:\Users\joaoa\Documents\VirtualDJ
2016-04-03 20:34 - 2016-04-03 20:34 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2016-04-03 20:34 - 2016-04-03 20:34 - 00000000 ____D C:\Program Files (x86)\VirtualDJ
2016-04-03 20:30 - 2016-05-22 21:09 - 00000000 ____D C:\Users\joaoa\.mucommander
2016-04-03 20:29 - 2016-06-02 23:38 - 00000000 ____D C:\Users\joaoa\.oracle_jre_usage
2016-04-03 20:29 - 2016-06-02 23:37 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-04-03 20:29 - 2016-06-02 23:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-04-03 20:29 - 2016-04-03 20:29 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Sun
2016-04-03 20:28 - 2016-06-02 23:36 - 00000000 ____D C:\Program Files (x86)\Java
2016-04-03 20:26 - 2016-04-03 20:26 - 00000000 ____D C:\Users\Todos os Usuários\Sun
2016-04-03 20:26 - 2016-04-03 20:26 - 00000000 ____D C:\Users\joaoa\AppData\LocalLow\Oracle
2016-04-03 20:26 - 2016-04-03 20:26 - 00000000 ____D C:\ProgramData\Sun
2016-04-03 20:25 - 2016-04-03 20:29 - 00000000 ____D C:\Users\Todos os Usuários\Oracle
2016-04-03 20:25 - 2016-04-03 20:29 - 00000000 ____D C:\ProgramData\Oracle
2016-04-03 20:25 - 2016-04-03 20:25 - 00000000 ____D C:\Users\joaoa\AppData\LocalLow\Sun
2016-04-03 20:21 - 2016-04-03 20:21 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\muCommander
2016-04-03 20:21 - 2016-04-03 20:21 - 00000000 ____D C:\Program Files (x86)\muCommander
2016-03-30 11:17 - 2016-03-30 11:17 - 00003476 _____ C:\WINDOWS\System32\Tasks\AutoPico Daily Restart
2016-03-30 11:17 - 2010-12-05 22:16 - 00090112 _____ (Vestris Inc.) C:\WINDOWS\system32\Vestris.ResourceLib.dll
2016-03-28 09:40 - 2016-03-29 20:05 - 00003072 _____ C:\WINDOWS\System32\Tasks\0216scUpdateInfo
2016-03-28 09:40 - 2016-03-29 20:05 - 00000000 ____D C:\Users\Todos os Usuários\Avg_Update_0216sc
2016-03-28 09:40 - 2016-03-29 20:05 - 00000000 ____D C:\ProgramData\Avg_Update_0216sc
2016-03-25 20:18 - 2016-03-25 20:19 - 00000000 ____D C:\Users\joaoa\Documents\Academia
2016-03-24 23:03 - 2016-03-24 23:03 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log
2016-03-24 23:03 - 2016-03-24 23:03 - 00000000 ____D C:\Users\joaoa\Documents\SelfMV
2016-03-24 23:03 - 2016-03-24 23:03 - 00000000 ____D C:\Users\joaoa\Documents\samsung
2016-03-24 23:03 - 2016-03-24 23:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2016-03-24 22:56 - 2016-03-24 23:03 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Samsung
2016-03-24 22:55 - 2016-03-24 22:56 - 00000000 ____D C:\Program Files (x86)\Samsung
2016-03-24 22:55 - 2014-05-07 17:42 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\WINDOWS\SysWOW64\secman.dll
2016-03-21 11:42 - 2016-03-21 11:42 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUSB_01007.Wdf
2016-03-21 11:05 - 2015-12-08 04:01 - 01499408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01007.dll
2016-03-21 11:05 - 2015-12-08 04:01 - 00716928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinUSBCoInstaller.dll
2016-03-21 11:05 - 2013-05-02 00:23 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SETB98.tmp
2016-03-21 11:05 - 2013-05-02 00:23 - 00708168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SETB29.tmp
2016-03-21 11:05 - 2013-05-02 00:23 - 00203672 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\SET95C9.tmp
2016-03-21 11:04 - 2016-03-21 11:04 - 00000000 ____D C:\Users\Todos os Usuários\Samsung
2016-03-21 11:04 - 2016-03-21 11:04 - 00000000 ____D C:\Users\joaoa\.android
2016-03-21 11:04 - 2016-03-21 11:04 - 00000000 ____D C:\ProgramData\Samsung
2016-03-21 11:04 - 2016-03-21 11:04 - 00000000 ____D C:\Program Files\SAMSUNG
2016-03-21 11:02 - 2016-03-28 10:59 - 00000000 ____D C:\Program Files (x86)\Kingo ROOT
2016-03-21 11:02 - 2016-03-21 11:02 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Kingosoft
2016-03-21 11:02 - 2016-03-21 11:02 - 00000000 ____D C:\Users\joaoa\AppData\Local\Kingosoft
2016-03-17 20:27 - 2016-03-17 20:27 - 01792376 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 01789760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00422552 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00421472 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00369944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00367832 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00231320 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00194880 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2016-03-17 20:27 - 2016-03-17 20:27 - 00045952 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2016-03-17 20:26 - 2016-03-17 20:26 - 39483688 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2016-03-17 20:24 - 2016-03-17 20:24 - 04198704 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2016-03-17 20:24 - 2016-03-17 20:24 - 04170128 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2016-03-17 20:24 - 2016-03-17 20:24 - 01867184 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2016-03-17 20:24 - 2016-03-17 20:24 - 01443728 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2016-03-17 20:24 - 2016-03-17 20:24 - 00212584 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2016-03-17 20:24 - 2016-03-17 20:24 - 00171544 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2016-03-17 20:23 - 2016-03-17 20:23 - 34463816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2016-03-17 20:22 - 2016-03-17 20:22 - 15331128 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2016-03-17 20:22 - 2016-03-17 20:22 - 13347176 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2016-03-17 20:22 - 2016-03-17 20:22 - 00300888 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2016-03-17 20:22 - 2016-03-17 20:22 - 00285856 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2016-03-17 20:19 - 2016-03-17 20:19 - 00624128 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 01018344 _____ C:\WINDOWS\system32\igfxSDK.exe
2016-03-17 20:18 - 2016-03-17 20:18 - 00613352 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2016-03-17 20:18 - 2016-03-17 20:18 - 00527856 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-03-17 20:18 - 2016-03-17 20:18 - 00407552 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00381440 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00341496 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00309760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00292848 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2016-03-17 20:18 - 2016-03-17 20:18 - 00199168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4404.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00102912 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00092160 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2016-03-17 20:18 - 2016-03-17 20:18 - 00091136 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 05677056 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 04864000 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 04370432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 01568256 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 01159168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00264704 _____ C:\WINDOWS\system32\igfxCPL.cpl
2016-03-17 20:17 - 2016-03-17 20:17 - 00246784 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00228336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2016-03-17 20:17 - 2016-03-17 20:17 - 00094720 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00086528 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00075776 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00044032 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00020480 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00020480 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-03-17 20:17 - 2016-03-17 20:17 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2016-03-17 20:16 - 2016-03-17 20:16 - 00430592 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2016-03-17 20:16 - 2016-03-17 20:16 - 00379904 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2016-03-17 20:16 - 2016-03-17 20:16 - 00257536 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2016-03-17 20:15 - 2016-03-17 20:15 - 00164352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2016-03-17 20:14 - 2016-03-17 20:14 - 11667968 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2016-03-17 20:14 - 2016-03-17 20:14 - 08671744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2016-03-17 20:14 - 2016-03-17 20:14 - 00956392 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2016-03-17 20:14 - 2016-03-17 20:14 - 00952816 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2016-03-17 20:13 - 2016-03-17 20:13 - 29092864 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2016-03-17 20:13 - 2016-03-17 20:13 - 19852800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2016-03-17 20:13 - 2016-03-17 20:13 - 05254144 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2016-03-17 20:13 - 2016-03-17 20:13 - 00458224 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2016-03-17 20:13 - 2016-03-17 20:13 - 00223720 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2016-03-17 20:13 - 2016-03-17 20:13 - 00223216 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-03-17 20:13 - 2016-03-17 20:13 - 00166376 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2016-03-17 20:07 - 2016-03-17 20:07 - 03961344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2016-03-17 20:07 - 2016-03-17 20:07 - 00216576 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2016-03-17 20:06 - 2016-03-17 20:06 - 00184320 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2016-03-17 19:33 - 2016-03-17 19:33 - 05799386 _____ C:\WINDOWS\system32\igdclbif.bin
2016-03-17 19:33 - 2016-03-17 19:33 - 00843068 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2016-03-17 19:33 - 2016-03-17 19:33 - 00004834 _____ C:\WINDOWS\system32\iglhxs64.vp
2016-03-17 10:31 - 2016-03-17 10:31 - 00068085 _____ C:\Users\joaoa\Documents\CNPJ SERRALHERIA RODRIGO.pdf
2016-03-11 16:05 - 2016-03-11 16:05 - 00120178 _____ C:\Users\joaoa\Downloads\50609.pdf
2016-03-11 16:05 - 2016-03-11 16:05 - 00119620 _____ C:\Users\joaoa\Downloads\23195.pdf
2016-03-11 16:05 - 2016-03-11 16:05 - 00119242 _____ C:\Users\joaoa\Downloads\23195(1).pdf
2016-03-11 16:04 - 2016-03-11 16:04 - 00084868 _____ C:\Users\joaoa\Downloads\21476.pdf
2016-03-11 16:04 - 2016-03-11 16:04 - 00084456 _____ C:\Users\joaoa\Downloads\21495.pdf
2016-03-11 16:04 - 2016-03-11 16:04 - 00051236 _____ C:\Users\joaoa\Downloads\50809.pdf
2016-03-11 09:28 - 2016-03-11 09:31 - 00000000 ____D C:\Users\joaoa\Documents\Extratos Conta Caixa
2016-03-10 08:19 - 2016-02-24 05:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-10 08:19 - 2016-02-24 02:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-10 08:19 - 2016-02-24 02:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-10 08:19 - 2016-02-24 02:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-10 08:19 - 2016-02-24 02:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-10 08:19 - 2016-02-24 01:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-10 08:19 - 2016-02-24 01:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-10 08:19 - 2016-02-24 01:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-10 08:19 - 2016-02-24 01:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-10 08:18 - 2016-03-01 01:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-10 08:18 - 2016-03-01 01:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-10 08:18 - 2016-02-24 05:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-10 08:18 - 2016-02-24 04:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-10 08:18 - 2016-02-24 04:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-10 08:18 - 2016-02-24 04:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-10 08:18 - 2016-02-24 04:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-10 08:18 - 2016-02-24 04:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-10 08:18 - 2016-02-24 04:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-10 08:18 - 2016-02-24 04:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-10 08:18 - 2016-02-24 04:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-10 08:18 - 2016-02-24 04:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-10 08:18 - 2016-02-24 04:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-10 08:18 - 2016-02-24 04:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-10 08:18 - 2016-02-24 04:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-10 08:18 - 2016-02-24 03:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-10 08:18 - 2016-02-24 03:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-10 08:18 - 2016-02-24 03:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-10 08:18 - 2016-02-24 03:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-10 08:18 - 2016-02-24 03:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-10 08:18 - 2016-02-24 03:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-10 08:18 - 2016-02-24 03:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-10 08:18 - 2016-02-24 03:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-10 08:18 - 2016-02-24 03:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-10 08:18 - 2016-02-24 03:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-10 08:18 - 2016-02-24 03:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-10 08:18 - 2016-02-24 03:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-10 08:18 - 2016-02-24 03:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-10 08:18 - 2016-02-24 03:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-10 08:18 - 2016-02-24 03:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-10 08:18 - 2016-02-24 03:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-10 08:18 - 2016-02-24 03:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-10 08:18 - 2016-02-24 03:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-10 08:18 - 2016-02-24 03:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-10 08:18 - 2016-02-24 03:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-10 08:18 - 2016-02-24 03:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-10 08:18 - 2016-02-24 03:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-10 08:18 - 2016-02-24 03:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-10 08:18 - 2016-02-24 03:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-10 08:18 - 2016-02-24 03:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-10 08:18 - 2016-02-24 03:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-10 08:18 - 2016-02-24 03:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-10 08:18 - 2016-02-24 03:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-10 08:18 - 2016-02-24 03:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-10 08:18 - 2016-02-24 02:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-10 08:18 - 2016-02-24 02:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-10 08:18 - 2016-02-24 02:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-10 08:18 - 2016-02-24 02:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-10 08:18 - 2016-02-24 02:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-10 08:18 - 2016-02-24 02:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-10 08:18 - 2016-02-24 02:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-10 08:18 - 2016-02-24 02:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-10 08:18 - 2016-02-24 02:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-10 08:18 - 2016-02-24 02:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-10 08:18 - 2016-02-24 02:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-10 08:18 - 2016-02-24 02:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-10 08:18 - 2016-02-24 02:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-10 08:18 - 2016-02-24 02:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-10 08:18 - 2016-02-24 02:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-10 08:18 - 2016-02-24 02:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-10 08:18 - 2016-02-24 02:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-10 08:18 - 2016-02-24 02:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-10 08:18 - 2016-02-24 02:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-10 08:18 - 2016-02-24 02:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-10 08:18 - 2016-02-24 02:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-10 08:18 - 2016-02-24 02:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-10 08:18 - 2016-02-24 02:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-10 08:18 - 2016-02-24 02:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-10 08:18 - 2016-02-24 02:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-10 08:18 - 2016-02-24 02:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-10 08:18 - 2016-02-24 02:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-10 08:18 - 2016-02-24 02:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-10 08:18 - 2016-02-24 02:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-10 08:18 - 2016-02-24 02:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-10 08:18 - 2016-02-24 02:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-10 08:18 - 2016-02-24 02:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-10 08:18 - 2016-02-24 02:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-10 08:18 - 2016-02-24 02:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-10 08:18 - 2016-02-24 02:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-10 08:18 - 2016-02-24 02:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-10 08:18 - 2016-02-24 02:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-10 08:18 - 2016-02-24 02:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-10 08:18 - 2016-02-24 02:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-10 08:18 - 2016-02-24 02:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-10 08:18 - 2016-02-24 02:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-10 08:18 - 2016-02-24 02:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-10 08:18 - 2016-02-24 02:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-10 08:18 - 2016-02-24 02:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-10 08:18 - 2016-02-24 02:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-10 08:18 - 2016-02-24 02:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-10 08:18 - 2016-02-24 02:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-10 08:18 - 2016-02-24 02:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-10 08:18 - 2016-02-24 01:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-10 08:18 - 2016-02-24 01:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-06-08 11:55 - 2016-02-26 23:32 - 00000000 ____D C:\Users\joaoa\Documents\AirDroid
2016-06-08 11:53 - 2016-02-14 03:19 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-06-08 11:53 - 2016-01-27 14:53 - 00000000 ____D C:\Temp
2016-06-08 11:53 - 2016-01-23 21:28 - 00000000 __SHD C:\Users\joaoa\IntelGraphicsProfiles
2016-06-08 11:53 - 2016-01-15 22:58 - 00001042 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2016-06-08 11:52 - 2016-02-03 20:24 - 00101080 _____ (GAS Tecnologia) C:\WINDOWS\system32\Drivers\wsddfac.sys
2016-06-08 11:51 - 2016-02-14 03:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-06-08 11:51 - 2016-02-03 19:33 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2016-06-08 11:51 - 2015-10-30 02:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-06-08 11:42 - 2016-01-26 21:47 - 00000000 ____D C:\Users\joaoa\AppData\Local\Adobe
2016-06-08 11:21 - 2016-01-26 21:53 - 00000902 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-06-08 11:13 - 2016-01-15 22:58 - 00001046 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2016-06-07 18:29 - 2016-02-15 17:45 - 00000000 ____D C:\Users\joaoa\Documents\Concursos
2016-06-07 18:00 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-06-07 17:40 - 2015-10-30 03:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-07 14:22 - 2016-01-15 22:35 - 01819274 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-07 14:22 - 2015-10-30 15:12 - 00785460 _____ C:\WINDOWS\system32\prfh0416.dat
2016-06-07 14:22 - 2015-10-30 15:12 - 00154246 _____ C:\WINDOWS\system32\prfc0416.dat
2016-06-07 14:22 - 2015-10-30 03:21 - 00000000 ____D C:\WINDOWS\INF
2016-06-07 14:17 - 2016-01-23 21:28 - 00000000 ____D C:\Users\joaoa\AppData\Local\Packages
2016-06-07 07:09 - 2016-02-15 17:47 - 00004184 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{7F4F9C08-89C6-4C9A-86B7-40B0F8F3A9A0}
2016-06-06 18:12 - 2016-01-25 21:16 - 00000000 ____D C:\VstPlugins x64
2016-06-06 18:12 - 2016-01-24 14:50 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\uTorrent
2016-06-06 18:09 - 2016-01-25 19:04 - 00000000 ____D C:\Program Files\VstPlugIns
2016-06-06 08:06 - 2016-01-25 06:57 - 00000000 ____D C:\Users\joaoa\Documents\Currículo
2016-06-05 18:00 - 2016-02-03 19:33 - 00000000 ____D C:\Users\Todos os Usuários\GbPlugin
2016-06-05 18:00 - 2016-02-03 19:33 - 00000000 ____D C:\ProgramData\GbPlugin
2016-06-05 15:31 - 2016-01-27 15:29 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-06-05 00:20 - 2016-01-15 22:56 - 00016518 _____ C:\WINDOWS\system32\results.xml
2016-06-04 15:35 - 2016-02-14 03:19 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-06-04 15:35 - 2016-01-15 22:53 - 00000652 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) HD Graphics Control Panel.lnk
2016-06-04 15:32 - 2016-01-15 21:46 - 33143744 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
2016-06-03 21:31 - 2016-02-03 00:07 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\vlc
2016-06-03 21:16 - 2016-01-15 22:58 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-06-03 12:30 - 2016-01-25 19:14 - 00000000 ____D C:\Users\Todos os Usuários\Avg
2016-06-03 12:30 - 2016-01-25 19:14 - 00000000 ____D C:\ProgramData\Avg
2016-06-03 12:30 - 2016-01-25 19:14 - 00000000 ____D C:\Program Files (x86)\AVG
2016-06-03 12:29 - 2016-01-25 19:13 - 00000000 ____D C:\Users\joaoa\AppData\Local\AvgSetupLog
2016-06-03 12:25 - 2016-01-23 21:38 - 00001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-06-03 00:09 - 2016-01-15 22:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2016-06-03 00:09 - 2016-01-15 22:51 - 00000000 ____D C:\Program Files\Dell
2016-06-02 23:54 - 2016-01-25 19:15 - 00000000 ____D C:\Users\Todos os Usuários\MFAData
2016-06-02 23:54 - 2016-01-25 19:15 - 00000000 ____D C:\ProgramData\MFAData
2016-06-02 23:54 - 2016-01-25 19:13 - 00000000 ____D C:\Users\joaoa\AppData\Local\Avg
2016-06-02 23:51 - 2016-01-24 17:45 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Skype
2016-06-02 23:51 - 2016-01-15 21:44 - 01462720 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys
2016-06-02 23:49 - 2016-01-24 17:44 - 00000000 ____D C:\Users\Todos os Usuários\Skype
2016-06-02 23:49 - 2016-01-24 17:44 - 00000000 ____D C:\ProgramData\Skype
2016-06-02 23:19 - 2016-01-15 21:43 - 00936192 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2016-06-02 23:16 - 2016-02-14 03:18 - 01019725 _____ C:\WINDOWS\system32\Drivers\rtwavesskdy.dat
2016-06-02 23:16 - 2016-02-14 03:18 - 00031095 _____ C:\WINDOWS\system32\Drivers\rtwavesEFX.dat
2016-06-02 23:16 - 2016-02-14 03:18 - 00010945 _____ C:\WINDOWS\system32\Drivers\rtwavesMFX.dat
2016-06-02 23:16 - 2016-01-15 22:45 - 00003218 _____ C:\WINDOWS\System32\Tasks\RtHDVBg_PushButton
2016-06-02 23:14 - 2016-02-14 03:17 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-06-02 23:12 - 2016-01-25 06:41 - 04803840 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2016-06-02 23:12 - 2016-01-25 06:41 - 03283248 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2016-06-02 23:12 - 2016-01-25 06:41 - 00192992 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2016-06-02 23:12 - 2016-01-25 06:41 - 00023704 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2016-06-02 23:12 - 2016-01-25 06:40 - 03081808 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2016-06-02 23:12 - 2016-01-25 06:40 - 01977072 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBAPO264.dll
2016-06-02 23:12 - 2016-01-25 06:40 - 01211840 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2016-06-02 23:12 - 2016-01-25 06:40 - 00410040 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\MBWrp64.dll
2016-06-02 23:06 - 2015-06-12 08:54 - 00185896 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys
2016-06-02 23:05 - 2015-06-07 23:40 - 00601624 _____ (Qualcomm Atheros) C:\WINDOWS\system32\Drivers\btfilter.sys
2016-06-02 23:02 - 2016-01-15 22:49 - 04323976 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athw10x.sys
2016-06-02 22:28 - 2016-01-24 14:12 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\DAEMON Tools Pro
2016-06-02 22:06 - 2016-01-25 19:37 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Apple Computer
2016-06-02 22:03 - 2015-10-30 03:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-06-02 12:50 - 2016-01-24 17:54 - 00000000 ____D C:\Program Files (x86)\VstPlugins
2016-05-31 09:22 - 2016-01-27 15:29 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-05-28 18:45 - 2016-01-24 17:44 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-05-28 11:31 - 2015-10-30 02:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-05-26 23:54 - 2015-10-30 03:24 - 00000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2016-05-26 23:54 - 2015-10-30 03:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-05-26 23:52 - 2016-01-15 22:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-05-26 23:25 - 2016-02-14 03:22 - 00000000 ____D C:\Users\joaoa
2016-05-23 15:03 - 2016-01-25 21:00 - 00000000 ____D C:\Program Files\Common Files\VST3
2016-05-22 22:48 - 2016-01-25 21:08 - 00000048 _____ C:\Users\Todos os Usuários\autobk.inc
2016-05-22 22:48 - 2016-01-25 21:08 - 00000048 _____ C:\Users\joaoa\AppData\Roaming\msregsvv.dll
2016-05-22 22:48 - 2016-01-25 21:08 - 00000048 _____ C:\ProgramData\autobk.inc
2016-05-22 22:28 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-05-22 02:53 - 2016-02-14 03:14 - 04966288 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-05-22 02:00 - 2016-01-27 15:28 - 00000000 ____D C:\Users\Todos os Usuários\Adobe
2016-05-22 02:00 - 2016-01-27 15:28 - 00000000 ____D C:\ProgramData\Adobe
2016-05-22 01:21 - 2016-01-23 21:28 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Adobe
2016-05-22 01:16 - 2016-01-25 21:04 - 00000000 ____D C:\Users\Todos os Usuários\AudioUTOPiA
2016-05-22 01:16 - 2016-01-25 21:04 - 00000000 ____D C:\ProgramData\AudioUTOPiA
2016-05-21 18:40 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-05-21 18:40 - 2015-07-10 07:04 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-05-20 12:40 - 2016-02-03 19:33 - 00000000 ____D C:\Users\Todos os Usuários\GAS Tecnologia
2016-05-20 12:40 - 2016-02-03 19:33 - 00000000 ____D C:\ProgramData\GAS Tecnologia
2016-05-19 10:22 - 2016-02-04 22:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ohm Force
2016-05-18 13:56 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\rescache
2016-05-17 12:57 - 2015-10-30 03:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-05-17 12:01 - 2015-10-30 03:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-16 11:27 - 2016-03-08 09:45 - 00000000 ____D C:\Users\joaoa\Documents\COMPROVANTES
2016-05-13 23:29 - 2016-01-23 21:28 - 00000000 ____D C:\Users\joaoa\AppData\Local\VirtualStore
2016-05-13 23:15 - 2016-01-25 21:08 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\ToguAudioLine
2016-05-12 12:43 - 2016-01-27 15:29 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-05-11 18:36 - 2016-01-24 17:55 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2
2016-05-11 18:36 - 2016-01-24 17:46 - 00000000 ____D C:\Program Files (x86)\Image-Line
2016-05-11 18:32 - 2016-01-24 17:53 - 00000000 ____D C:\Users\joaoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2016-05-11 18:32 - 2016-01-24 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
2016-05-11 15:57 - 2015-10-30 03:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-11 15:57 - 2015-10-30 03:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 01:13 - 2016-01-15 23:26 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-10 18:34 - 2015-10-30 15:15 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-10 18:34 - 2015-10-30 03:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-10 18:34 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-10 18:34 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-10 18:34 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-10 18:34 - 2015-10-30 03:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-10 16:00 - 2016-01-24 10:10 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-10 15:51 - 2016-01-24 10:10 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-10 11:07 - 2016-01-25 19:07 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk

==================== Arquivos na raiz de alguns diretórios =======

2016-06-02 15:52 - 2016-06-02 15:52 - 6859776 _____ () C:\Users\joaoa\AppData\Roaming\agent.dat
2016-04-11 22:33 - 2016-04-11 22:33 - 0000269 _____ () C:\Users\joaoa\AppData\Roaming\CairoStacksConfig.xml
2016-06-02 15:52 - 2016-06-02 15:52 - 0067776 _____ () C:\Users\joaoa\AppData\Roaming\Config.xml
2016-06-02 15:49 - 2016-06-02 15:49 - 0020352 _____ () C:\Users\joaoa\AppData\Roaming\InstallationConfiguration.xml
2016-06-02 15:49 - 2016-06-02 15:49 - 0128512 _____ () C:\Users\joaoa\AppData\Roaming\Installer.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 0126464 _____ () C:\Users\joaoa\AppData\Roaming\lobby.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 0018432 _____ () C:\Users\joaoa\AppData\Roaming\Main.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 0005568 _____ () C:\Users\joaoa\AppData\Roaming\md.xml
2016-01-25 21:08 - 2016-05-22 22:48 - 0000048 _____ () C:\Users\joaoa\AppData\Roaming\msregsvv.dll
2016-06-02 15:50 - 2016-06-02 15:50 - 0848437 _____ () C:\Users\joaoa\AppData\Roaming\NimOvetop.bin
2016-06-02 15:52 - 2016-06-02 15:52 - 0126464 _____ () C:\Users\joaoa\AppData\Roaming\noah.dat
2016-06-02 15:52 - 2016-06-02 15:52 - 1756999 _____ () C:\Users\joaoa\AppData\Roaming\Ozernimron.tst
2016-06-02 15:52 - 2016-06-02 15:52 - 0072820 _____ () C:\Users\joaoa\AppData\Roaming\True-Top.tst
2016-06-02 15:53 - 2016-06-02 15:53 - 0032038 _____ () C:\Users\joaoa\AppData\Roaming\uninstall_temp.ico
2016-05-21 19:41 - 2016-05-22 00:41 - 0000072 _____ () C:\Users\joaoa\AppData\Roaming\WB.CFG
2016-01-25 21:08 - 2016-05-22 22:48 - 0000048 _____ () C:\ProgramData\autobk.inc
2016-02-14 03:18 - 2016-02-14 03:18 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-01-15 22:44 - 2016-01-15 22:44 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2016-01-15 22:31 - 2016-01-15 22:32 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2016-01-15 22:39 - 2016-01-15 22:44 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2016-01-15 22:33 - 2016-01-15 22:38 - 0000113 _____ () C:\ProgramData\{E1646825-D391-42A0-93AA-27FA810DA093}.log

Arquivos para serem movidos ou deletados:
====================
C:\Windows\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job


Alguns arquivos em TEMP:
====================
C:\Users\joaoa\AppData\Local\Temp\DC6CNXT3T1.exe
C:\Users\joaoa\AppData\Local\Temp\libeay32.dll
C:\Users\joaoa\AppData\Local\Temp\loop.exe
C:\Users\joaoa\AppData\Local\Temp\msvcr120.dll
C:\Users\joaoa\AppData\Local\Temp\MYPG2Z3KU8.exe
C:\Users\joaoa\AppData\Local\Temp\NVIHBTFI2Q.exe
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll
C:\Users\joaoa\AppData\Local\Temp\sqlite3.dll
C:\Users\joaoa\AppData\Local\Temp\WZVANELIFI.exe


Alguns com tamanho de zero byte arquivos/pastas:
==========================
C:\Windows\System32\Drivers\gbpddfac64.sys

==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\WINDOWS\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\wininit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\explorer.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\svchost.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\services.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\User32.dll => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\userinit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\WINDOWS\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\WINDOWS\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\WINDOWS\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-06-05 15:29

==================== Fim de FRST.txt ============================

Addition.txt

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Vamos lá... :)

 

Primeiro: habilite o firewall do Windows.

 

Segundo: não é aconselhável ter mais de um AV e AS instalados e veja seu caso:
 

Citação

 

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: IObit Malware Fighter (Disabled - Out of date) {4D381C57-3C7A-6F22-07EB-639F49E836D4}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}


AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

 

 

Escolhe um deles e desinstale/desative os outros e me informe qual deixou...

 

Recomendo: http://www.linhadefensiva.org/2010/09/o-antivirus-a-camisinha-e-o-atrito/

 

Abraços :D
 

Compartilhar este post


Link para o post
Compartilhar em outros sites

diego_moicano,

 

Eu fui desativar o windows defender e já estava desativado. No log ele apareceu ativo? O que eu faço em relação a isso?

 

Eu desinstalei o iobit malware fighter, quero deixar o avast.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Esta desativado. ;)

 

Primeiro

 

Desinstale o seguinte programa:

 

Viva version 1.0 (HKLM-x32\...\{15436961-4543-4CA2-ACBF-0B5C73D9E737}_is1) (Version: 1.0 - )

 

Segundo

 

Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

 

Abra o seu Bloco de Notas, copie (control + c) e cole (control + v) todo o texto que está abaixo:

 

Citação

CreateRestorePoint:
CloseProcesses:

() C:\Program Files (x86)\Viva\viva.exe
HKLM-x32\...\Run: [sun21] => [X]
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [AdobeBridge] => [X]
AppInit_DLLs: C:\ProgramData\Konksolex\Geoeco.dll => Nenhum Arquivo
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM-x32 -> DefaultScope valor está ausente
BHO: Sem Nome -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Nenhum Arquivo
FF NewTab: C:\\ProgramData\\Konksolexs\\ff.NT
S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe" [X]
S2 rtysystemSrv; "C:\Program Files (x86)\Ruotygutght\rtysystemSrv.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]
S2 zivuleclahtainlauncherSrv; "C:\Program Files (x86)\Zivuleclahtain\zivuleclahtainlauncherSrv.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]
S1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [0 2016-02-11] () <==== ATENÇÃO (zero byte Arquivo/Pasta)
S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
2016-02-14 03:18 - 2016-02-14 03:18 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-06-02 15:53 - 2016-06-02 15:53 - 00000000 ____D C:\Users\Todos os Usuários\Konksolexs
2016-06-02 15:53 - 2016-06-02 15:53 - 00000000 ____D C:\ProgramData\Konksolexs
C:\Windows\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job
Task: C:\WINDOWS\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job =>
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\Software\Classes\regfile: regedit.exe "%1" <===== ATENÇÃO
C:\Users\joaoa\AppData\Local\Temp\DC6CNXT3T1.exe
C:\Users\joaoa\AppData\Local\Temp\libeay32.dll
C:\Users\joaoa\AppData\Local\Temp\loop.exe
C:\Users\joaoa\AppData\Local\Temp\msvcr120.dll
C:\Users\joaoa\AppData\Local\Temp\MYPG2Z3KU8.exe
C:\Users\joaoa\AppData\Local\Temp\NVIHBTFI2Q.exe
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll
C:\Users\joaoa\AppData\Local\Temp\sqlite3.dll
C:\Users\joaoa\AppData\Local\Temp\WZVANELIFI.exe

CMD:ipconfig /flushdns
EmptyTemp:

 

  • Salve este arquivo na Área de Trabalho (Desktop) como fixlist.txt
  • Execute novamente o FRST e clique no botão Corrigir;
  • Aguarde... ao final será gerado o log Fixlog.txt em sua Área de Trabalho (Desktop).
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão:13-06-2016
Executado por joaoa (2016-06-15 09:34:12) Run:1
Executando a partir de C:\Users\joaoa\Desktop
Perfis Carregados: joaoa (Perfis Disponíveis: joaoa)
Modo da Inicialização: Normal
==============================================

fixlist Conteúdo:
*****************
CreateRestorePoint:
CloseProcesses:

() C:\Program Files (x86)\Viva\viva.exe
HKLM-x32\...\Run: [sun21] => [X]
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\...\Run: [AdobeBridge] => [X]
AppInit_DLLs: C:\ProgramData\Konksolex\Geoeco.dll => Nenhum Arquivo
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM-x32 -> DefaultScope valor está ausente
BHO: Sem Nome -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Nenhum Arquivo
FF NewTab: C:\\ProgramData\\Konksolexs\\ff.NT
S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\1.8.203.0\McCSPServiceHost.exe" [X]
S2 rtysystemSrv; "C:\Program Files (x86)\Ruotygutght\rtysystemSrv.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]
S2 zivuleclahtainlauncherSrv; "C:\Program Files (x86)\Zivuleclahtain\zivuleclahtainlauncherSrv.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]
S1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [0 2016-02-11] () <==== ATENÇÃO (zero byte Arquivo/Pasta)
S0 gbpddreg; system32\drivers\gbpddreg64.sys [X]
2016-02-14 03:18 - 2016-02-14 03:18 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-06-02 15:53 - 2016-06-02 15:53 - 00000000 ____D C:\Users\Todos os Usuários\Konksolexs
2016-06-02 15:53 - 2016-06-02 15:53 - 00000000 ____D C:\ProgramData\Konksolexs
C:\Windows\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job
Task: C:\WINDOWS\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job =>
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\Software\Classes\regfile: regedit.exe "%1" <===== ATENÇÃO
C:\Users\joaoa\AppData\Local\Temp\DC6CNXT3T1.exe
C:\Users\joaoa\AppData\Local\Temp\libeay32.dll
C:\Users\joaoa\AppData\Local\Temp\loop.exe
C:\Users\joaoa\AppData\Local\Temp\msvcr120.dll
C:\Users\joaoa\AppData\Local\Temp\MYPG2Z3KU8.exe
C:\Users\joaoa\AppData\Local\Temp\NVIHBTFI2Q.exe
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll
C:\Users\joaoa\AppData\Local\Temp\sqlite3.dll
C:\Users\joaoa\AppData\Local\Temp\WZVANELIFI.exe

CMD:ipconfig /flushdns
EmptyTemp:

*****************

Ponto de Restauração criado com sucesso.
Processos fechados com sucesso.
C:\Program Files (x86)\Viva\viva.exe => Não foi encontrado em execução o processo
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sun21 => valor removido (a) com sucesso.
HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => valor removido (a) com sucesso.
"C:\ProgramData\Konksolex\Geoeco.dll" => Dados do Valor removido (a) com sucesso..
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => valor restaurado com sucesso
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => valor restaurado com sucesso
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => valor restaurado com sucesso
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => valor restaurado com sucesso
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => chave removido (a) com sucesso.
HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => chave não encontrado (a).
Firefox "newtab" removido (a) com sucesso.
mccspsvc => serviço removido (a) com sucesso.
rtysystemSrv => serviço removido (a) com sucesso.
zivuleclahtainlauncherSrv => serviço removido (a) com sucesso.
gbpddfac => serviço removido (a) com sucesso.
gbpddreg => serviço removido (a) com sucesso.
C:\ProgramData\DP45977C.lfl => movido com sucesso
C:\Users\Todos os Usuários\Konksolexs => movido com sucesso
"C:\ProgramData\Konksolexs" => não encontrado (a).
C:\Windows\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job => movido com sucesso
C:\WINDOWS\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C}.job => não encontrado (a).
"HKU\S-1-5-21-3625514831-3770465460-1378855386-1001\Software\Classes\regfile" => chave removido (a) com sucesso.
"C:\Users\joaoa\AppData\Local\Temp\DC6CNXT3T1.exe" => não encontrado (a).
"C:\Users\joaoa\AppData\Local\Temp\libeay32.dll" => não encontrado (a).
"C:\Users\joaoa\AppData\Local\Temp\loop.exe" => não encontrado (a).
"C:\Users\joaoa\AppData\Local\Temp\msvcr120.dll" => não encontrado (a).
"C:\Users\joaoa\AppData\Local\Temp\MYPG2Z3KU8.exe" => não encontrado (a).
"C:\Users\joaoa\AppData\Local\Temp\NVIHBTFI2Q.exe" => não encontrado (a).
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll => movido com sucesso
"C:\Users\joaoa\AppData\Local\Temp\sqlite3.dll" => não encontrado (a).
"C:\Users\joaoa\AppData\Local\Temp\WZVANELIFI.exe" => não encontrado (a).

========= ipconfig /flushdns =========


Configura��o de IP do Windows

Libera��o do Cache do DNS Resolver bem-sucedida.

========= Fim de CMD: =========

EmptyTemp: => 272.9 MB de dados temporários Removidos.


O sistema precisou ser reiniciado.

==== Fim de Fixlog 09:37:17 ====

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Baixe a Malwarebytes Anti-Malware (MBAM).
 
Clique duas vezes no mbam-setup.exe para instalar o programa.

  • Desmarque a caixa Ativar trial gratuito do MalwareBytes Anti-Malware PRO.
  • Se houver atualizações a serem feitas, serão baixadas e instaladas..
  • Clique em Configurações, clique em Detecção e proteção, marque Verificar por Rootkits.
  • Volte ao Painel e por fim clique em Verificar agora.
  • Começará então o exame. Aguarde, pois pode demorar.
  • Ao acabar o exame, se houver itens encontrados, certifique-se que estejam todas marcados e clique no botão Remover Selecionadas
  • Ao final da desinfecção, poderá aparecer um aviso se quer reiniciar o PC. (Ver Nota abaixo)
  • O log é automaticamente salvo pelo MBAM e para vê-lo, clique na aba Histórico -> Registros do aplicativo na janela principal do programa.
  • Clique duas vezes no log (Registro de verificação). Utilize o formato .txt para exportar o log.
  • O log de Proteção é desnecessário para a análise, exporte sempre o log correto.
  • Selecione, copie e cole o conteúdo deste log em sua próxima resposta.

 

NOTA: Se o MBAM encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC (talvez mais de uma vez). Faça isso imediatamente, ao ser perguntado se quer reiniciar o PC.

 

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

olá diego_moicano, segue log:

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Data da verificação: 16/06/2016
Hora da verificação: 11:26
Arquivo de registro: reg_mbam.txt
Administrador: Sim

Versão: 2.2.1.1043
Banco de dados de malware: v2016.06.16.03
Banco de dados de rootkit: v2016.05.27.01
Licença: Gratuita
Proteção contra malware: Desabilitado
Proteção contra website malicioso: Desabilitado
Autoproteção: Desabilitado

Sistema operacional: Windows 10
CPU: x64
Sistema de arquivos: NTFS
Usuário: joaoa

Tipo de verificação: Verificação da ameaça
Resultado: Concluído
Objetos verificados: 352902
Tempo decorrido: 31 min, 20 seg

Memória: Habilitado
Inicialização: Habilitado
Sistema de arquivos: Habilitado
Arquivos compactados: Habilitado
Rootkits: Habilitado
Heurística: Habilitado
PUP: Habilitado
PUM: Habilitado

Processos: 0
(Nenhum item malicioso detectado)

Módulos: 0
(Nenhum item malicioso detectado)

Chaves de registro: 0
(Nenhum item malicioso detectado)

Valores de registro: 0
(Nenhum item malicioso detectado)

Dados de registro: 0
(Nenhum item malicioso detectado)

Pastas: 0
(Nenhum item malicioso detectado)

Arquivos: 0
(Nenhum item malicioso detectado)

Setores físicos: 0
(Nenhum item malicioso detectado)


(end)

 

 

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Primeiro

 

Habilite o firewall do Windows.

 

Segundo

 

Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

 

Abra o seu Bloco de Notas, copie (control + c) e cole (control + v) todo o texto que está abaixo:

 

Citação

CreateRestorePoint:
CloseProcesses:

FF NewTab: hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqB3UtBHUmCE..&v=20160602&uid=C65236192C763F65D0C04297A31C84D1&ptid=csdi&mode=loadm
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll
C:\Users\joaoa\AppData\Local\Temp\vlc-2.2.4-win32.exe
Task: {D0CF4BFE-E0F7-4CCF-AEEA-E88F55144FDE} - System32\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C} => C:\Users\joaoa\AppData\Local\{8D7AB~1\UNINST~1.EXE <==== ATENÇÃO

Reboot:

 

  • Salve este arquivo na Área de Trabalho (Desktop) como fixlist.txt
  • Execute novamente o FRST e clique no botão Corrigir;
  • Aguarde... ao final será gerado o log Fixlog.txt em sua Área de Trabalho (Desktop).
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá, diego_moicano, segue conteudo do log:

 

Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 20-06-2016 01
Executado por joaoa (2016-06-21 21:25:43) Run:2
Executando a partir de C:\Users\joaoa\Desktop
Perfis Carregados: joaoa (Perfis Disponíveis: joaoa)
Modo da Inicialização: Normal
==============================================

fixlist Conteúdo:
*****************
CreateRestorePoint:
CloseProcesses:

FF NewTab: hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqB3UtBHUmCE..&v=20160602&uid=C65236192C763F65D0C04297A31C84D1&ptid=csdi&mode=loadm
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll
C:\Users\joaoa\AppData\Local\Temp\vlc-2.2.4-win32.exe
Task: {D0CF4BFE-E0F7-4CCF-AEEA-E88F55144FDE} - System32\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C} => C:\Users\joaoa\AppData\Local\{8D7AB~1\UNINST~1.EXE <==== ATENÇÃO

Reboot:

*****************

Ponto de Restauração criado com sucesso.
Processos fechados com sucesso.
Firefox "newtab" removido (a) com sucesso.
C:\Users\joaoa\AppData\Local\Temp\PlaySound.dll => movido com sucesso
C:\Users\joaoa\AppData\Local\Temp\vlc-2.2.4-win32.exe => movido com sucesso
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0CF4BFE-E0F7-4CCF-AEEA-E88F55144FDE}" => chave removido (a) com sucesso.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0CF4BFE-E0F7-4CCF-AEEA-E88F55144FDE}" => chave removido (a) com sucesso.
C:\WINDOWS\System32\Tasks\{05F9B464-5418-DADE-E97A-6186A6E2498C} => movido com sucesso
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{05F9B464-5418-DADE-E97A-6186A6E2498C}" => chave removido (a) com sucesso.


O sistema precisou ser reiniciado.

==== Fim de Fixlog 21:26:46 ====

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Baixe o Stinger e salve em sua Área de trabalho (Desktop).
32 bit (x86) ou 64 bit (x64)

  • Execute o arquivo Stinger.exe
    • Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png
  • Clique no botão “I Accept”


Stinger%20a.png

Na nova janela clique em “Advanced” e depois “Settings”

Stinger%20b.png

Na janela configurações deixe conforme imagem abaixo e clique no botão “Save”

9hnsyu.png

Clique em “Customize my Scan”

Stinger%20f.png

Selecione as unidades do sistema e em seguida clique no botão “Scan”

Stinger%20g.png

Ao final clique em “View log”, será aberto uma janela com o log em seu navegador.
Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

 

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

McAfee Stinger Scan Results

McAfee® Labs Stinger™ Version 12.1.0.2041 built on Jun 24 2016 at 12:43:16 Copyright© 2015, McAfee, Inc. All Rights Reserved. AV Engine version v5800.7501 for Windows. Virus data file v1000.0 created on Jun 24, 2016 Ready to scan for 9803 viruses, trojans and variants. Custom scan initiated on domingo, junho 26, 2016 22:44:14 Rootkit scan result : Not Scanned. C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\addictive drums versão 1.1.rar\KEYGEN - AD V 1.1.1\Keygen.exe is infected with Artemis!320D94448328 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\addictive drums versão 1.1.rar\KEYGEN - AD V 1.1.1\Keygen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\addictive drums versão 1.1.rar is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Adventus 1.5 VSTi [Iwansteep Officail].rar\Adventus 1.5 VSTi\KeyGen.exe is infected with Artemis!F3C75A05F7A9 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Adventus 1.5 VSTi [Iwansteep Officail].rar\Adventus 1.5 VSTi\KeyGen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Adventus 1.5 VSTi [Iwansteep Officail].rar is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Credland.Audio.BigKick.v1.5.2.Incl.Patch.and.Keygen-R2R.rar\Credland.Audio.BigKick.v1.5.2.Incl.Patch.and.Keygen-R2R\r2r-2534.rar\R2R\BigKick_KeyGen.exe is infected with Artemis!51FD08DD4FD7 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Credland.Audio.BigKick.v1.5.2.Incl.Patch.and.Keygen-R2R.rar\Credland.Audio.BigKick.v1.5.2.Incl.Patch.and.Keygen-R2R\r2r-2534.rar\R2R\BigKick_KeyGen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Credland.Audio.BigKick.v1.5.2.Incl.Patch.and.Keygen-R2R.rar is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZ.Nectar.2.Production.Suite.v2.03\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05\R2R\AuthAssistants\DeBreath\AuthAssistant.exe is infected with Artemis!D80A7715D24D C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZ.Nectar.2.Production.Suite.v2.03\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05\R2R\AuthAssistants\DeBreath\AuthAssistant.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZ.Nectar.2.Production.Suite.v2.03\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05 is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZ.Nectar.2.Production.Suite.v2.03.rar\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05\R2R\AuthAssistants\DeBreath\AuthAssistant.exe is infected with Artemis!D80A7715D24D C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZ.Nectar.2.Production.Suite.v2.03.rar\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05\R2R\AuthAssistants\DeBreath\AuthAssistant.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R\iZ.Nectar.2.Production.Suite.v2.03.rar is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R.zip\iZ.Nectar.2.Production.Suite.v2.03.rar\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05\R2R\AuthAssistants\DeBreath\AuthAssistant.exe is infected with Artemis!D80A7715D24D C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R.zip\iZ.Nectar.2.Production.Suite.v2.03.rar\iZotope.Nectar.2.Production.Suite.v2.03.Incl.Emulator-R2R\r2r-3977.r05\R2R\AuthAssistants\DeBreath\AuthAssistant.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\iZotope Nectar 2 Production Suite v2.03 Incl Emulator-R2R.zip is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.2.2.0.WiN\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02\R2R\WaldorfEdition_Keygen.exe is infected with Artemis!5437407787D0 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.2.2.0.WiN\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02\R2R\WaldorfEdition_Keygen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.2.2.0.WiN\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02 is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.2.2.0.WiN.rar\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02\R2R\WaldorfEdition_Keygen.exe is infected with Artemis!5437407787D0 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.2.2.0.WiN.rar\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02\R2R\WaldorfEdition_Keygen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.2.2.0.WiN.rar is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.v2.2.0.MacOSX.rar\Waldorf.Waldorf.Edition.v2.2.0.MacOSX.Incl.Keygen-R2R\r2r-4596.rar\R2R\WaldorfEdition_Keygen.exe is infected with Artemis!5437407787D0 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.v2.2.0.MacOSX.rar\Waldorf.Waldorf.Edition.v2.2.0.MacOSX.Incl.Keygen-R2R\r2r-4596.rar\R2R\WaldorfEdition_Keygen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R\Waldorf.Edition.v2.2.0.MacOSX.rar is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R.zip\Waldorf.Edition.2.2.0.WiN.rar\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02\R2R\WaldorfEdition_Keygen.exe is infected with Artemis!5437407787D0 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R.zip\Waldorf.Edition.2.2.0.WiN.rar\Waldorf.Waldorf.Edition.v2.2.0.Incl.Keygen-R2R\r2r-4595.r02\R2R\WaldorfEdition_Keygen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R.zip\Waldorf.Edition.v2.2.0.MacOSX.rar\Waldorf.Waldorf.Edition.v2.2.0.MacOSX.Incl.Keygen-R2R\r2r-4596.rar\R2R\WaldorfEdition_Keygen.exe is infected with Artemis!5437407787D0 C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R.zip\Waldorf.Edition.v2.2.0.MacOSX.rar\Waldorf.Waldorf.Edition.v2.2.0.MacOSX.Incl.Keygen-R2R\r2r-4596.rar\R2R\WaldorfEdition_Keygen.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Waldorf Waldorf Edition v2.2 Incl Keygen WIN OSX R2R.zip is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\15.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\15.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\16.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\16.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\17.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\17.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\18.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\18.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\19.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\19.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\20.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\20.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\21.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\21.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\22.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\22.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\23.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\23.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\24.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\24.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\25.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\25.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\27.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\27.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\28.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\28.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\29.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\29.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\30.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\30.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\31.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\31.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\32.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\32.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\33.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\33.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\34.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\34.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\35.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\35.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\36.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\36.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\37.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\37.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\38.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\38.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\39.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\39.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe is infected C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\15.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\15.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\16.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\16.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\17.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\17.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\18.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\18.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\19.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\19.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\20.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\20.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\21.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\21.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\22.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\22.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\23.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\23.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\24.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\24.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\25.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\25.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\27.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\27.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\28.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\28.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\29.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\29.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\30.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\30.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\31.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\31.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\32.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\32.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\33.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\33.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\34.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\34.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\35.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\35.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\36.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\36.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\37.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\37.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\38.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\38.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\39.nsis is infected with ZeroAccess!cfg C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar\Xfer Records Serum Wavetable Synthesizer\Install_Xfer_Serum_Demo.exe\39.nsis couldn't be repaired C:\Users\joaoa\Downloads\Programas de produção + Plug-ins + samples\Xfer Records Serum Wavetable Synthesizer.part1.rar is infected C:\Users\joaoa\Downloads\Programas Windows\Crack do FileViewPro.rar\Crack do FileViewPro\Executador.exe is infected with Artemis!37D3A24759AF C:\Users\joaoa\Downloads\Programas Windows\Crack do FileViewPro.rar\Crack do FileViewPro\Executador.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas Windows\Crack do FileViewPro.rar is infected C:\Users\joaoa\Downloads\Programas Windows\DAEMON_Tools_Pro_Activator.rar\Activator.exe is infected with Artemis!A63E83BC2A68 C:\Users\joaoa\Downloads\Programas Windows\DAEMON_Tools_Pro_Activator.rar\Activator.exe couldn't be repaired C:\Users\joaoa\Downloads\Programas Windows\DAEMON_Tools_Pro_Activator.rar is infected C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen\Synthogy Ivory 1.5 Full Hybrid keygen included\Synthogy.Ivory.v1.5.VSTi.RTAS.AU.HYBRiD.DVDR.D01-DYNAMiCS\dyn-sikg.rar\DYNAMiCS_Ivory_1.5_KeyGen.exe is infected with Artemis!B50580599582 C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen\Synthogy Ivory 1.5 Full Hybrid keygen included\Synthogy.Ivory.v1.5.VSTi.RTAS.AU.HYBRiD.DVDR.D01-DYNAMiCS\dyn-sikg.rar\DYNAMiCS_Ivory_1.5_KeyGen.exe couldn't be repaired C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen\Synthogy Ivory 1.5 Full Hybrid keygen included\Synthogy.Ivory.v1.5.VSTi.RTAS.AU.HYBRiD.DVDR.D01-DYNAMiCS\dyn-sikg.rar is infected C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen\Synthogy Ivory 1.5 Full Hybrid keygen included\Synthogy.Ivory.v1.5.VSTi.RTAS.AU.HYBRiD.DVDR.D01-DYNAMiCS\Synthogy Ivory v1.5 Vsti Rtas Au Hybrid Dvdr Kgn-Dynamics.rar\DYNAMiCS_Ivory_1.5_KeyGen.exe is infected with Artemis!B50580599582 C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen\Synthogy Ivory 1.5 Full Hybrid keygen included\Synthogy.Ivory.v1.5.VSTi.RTAS.AU.HYBRiD.DVDR.D01-DYNAMiCS\Synthogy Ivory v1.5 Vsti Rtas Au Hybrid Dvdr Kgn-Dynamics.rar\DYNAMiCS_Ivory_1.5_KeyGen.exe couldn't be repaired C:\Users\joaoa\Downloads\Synthogy Ivory 1 5 with keygen\Synthogy Ivory 1.5 Full Hybrid keygen included\Synthogy.Ivory.v1.5.VSTi.RTAS.AU.HYBRiD.DVDR.D01-DYNAMiCS\Synthogy Ivory v1.5 Vsti Rtas Au Hybrid Dvdr Kgn-Dynamics.rar is infected Summary Report on C: File(s) TotalFiles:............ 1107846 Clean:................. 750706 Not Scanned:........... 357061 Possibly Infected:..... 79 Time: 04:26:17 Scan completed on segunda-feira, junho 27, 2016 03:10:32

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @avedis123

 

Baixe Security Check, by glax24 e salve em sua Área de trabalho (Desktop).

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • Aguarde enquanto a ferramenta faz o exame.
  • Ao final salve log como SecurityCheck.html
  • Abra o arquivo com o bloco de notas;
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

SecurityCheck by glax24 & Severnyj v.1.4.0.40 [21.05.16]
WebSite: www.safezone.cc
DateLog: 29.06.2016 22:23:33
Path starting: C:\Users\joaoa\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: joaoa
VersionXML: 3.15is-29.06.2016
___________________________________________________________________________

Windows 10(6.3.10586) (x64) CoreSingleLanguage Lang: Portuguese(0416)
Installation date OS: 14.02.2016 07:48:58
LicenseStatus: Office 16, Office16ProPlusVL_KMS_Client edition Volume activation will expire : 225520 minutes
LicenseStatus: Windows(R), CoreSingleLanguage edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
SystemDrive: C: FS: [NTFS] Capacity: [917.5 Gb] Used: [299.3 Gb] Free: [618.2 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.420.10586.0
User Account Control enabled
The elevation prompt for administrators disabled
^It is recommended to enable: Win+R typing UserAccountControlSettings and Enter^
Automatic Updates disabled (-1)
Windows Update (wuauserv) - The service is running
Central de Segurança (wscsvc) - The service is running
Registro remoto (RemoteRegistry) - The service has stopped
Descoberta SSDP (SSDPSRV) - The service is running
Serviços de Área de Trabalho Remota (TermService) - The service has stopped
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
---------------------------- [ Antivirus_WMI ] ----------------------------
Windows Defender (disabled)
avast! Antivirus (enabled and up to date)
---------------------------- [ Firewall_WMI ] -----------------------------
avast! Antivirus (enabled)
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (disabled and up to date)
avast! Antivirus (enabled and up to date)
---------------------- [ AntiVirusFirewallInstall ] -----------------------
Avast Premier v.11.2.2262
-------------------------- [ SecurityUtilities ] --------------------------
Malwarebytes Anti-Malware versão 2.2.1.1043 v.2.2.1.1043
--------------------------- [ OtherUtilities ] ----------------------------
WinRAR 5.31 (64-bit) v.5.31.0
VLC media player v.2.2.4
--------------------------------- [ IM ] ----------------------------------
Skype™ 7.25 v.7.25.103
--------------------------------- [ P2P ] ---------------------------------
µTorrent v.3.4.7.42330 Warning! P2P-client.
-------------------------------- [ Java ] ---------------------------------
Java 8 Update 77 v.8.0.770.3 Warning! Download Update
Uninstall old version and install new one.
Java 8 Update 91 v.8.0.910.14 Warning! Download Update
Uninstall old version and install new one.
--------------------------- [ AppleProduction ] ---------------------------
Bonjour v.3.0.0.10 Warning! Download Update
^Please use Apple Software Update tool.^
QuickTime 7 v.7.79.80.95 Warning! This software is no longer supported. Please uninstall it and use another software.
Serviço do Bonjour (Bonjour Service) - The service is running
--------------------------- [ AdobeProduction ] ---------------------------
Adobe Flash Player 22 NPAPI v.22.0.0.192
Adobe Acrobat Reader DC - Português v.15.016.20045
------------------------------- [ Browser ] -------------------------------
Google Chrome v.51.0.2704.103 Warning! Download Update
Mozilla Firefox 46.0.1 (x86 pt-BR) v.46.0.1 Warning! Download Update
--------------------------- [ RunningProcess ] ----------------------------
C:\Program Files (x86)\Mozilla Firefox\firefox.exe v.46.0.1.5966
------------------ [ AntivirusFirewallProcessServices ] -------------------
Avast Antivirus (avast! Antivirus) - The service is running
C:\Program Files\AVAST Software\Avast\AvastSvc.exe v.11.2.2738.0
C:\Program Files\AVAST Software\Avast\avastui.exe v.11.2.2738.17
Avast Firewall (avast! Firewall) - The service is running
Serviço Windows Defender (WinDefend) - The service has stopped
Serviço de Inspeção de Rede do Windows Defender (WdNisSvc) - The service has stopped
---------------------------- [ UnwantedApps ] -----------------------------
Advanced SystemCare 8 v.8.0.3 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Driver Booster 3.4 v.3.4 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Surfing Protection v.1.3 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
IObit Uninstaller v.4.1.5.24 Warning! Application is distributed through the partnership programs and bundle assemblies. Uninstallation recommended. Possible you became a victim of fraud or social engineering.
Skype Click to Call v.8.3.0.9150 Warning! Browser's toolbar. It can slow down the working of your browser and have violation privacy problems.
----------------------------- [ End of Log ] ------------------------------

Compartilhar este post


Link para o post
Compartilhar em outros sites

Cara @avedis123

 

Como está seu Windows?

 

# Etapa nº 1 #

 

Baixe o Delfix by Xplode e salve na sua área de trabalho.

 

Clique duas vezes no delfix.exe para executá-lo. Marque as caixas conforme imagem.

 

** Usuários do Windows Vista ou Windows 7 clique com o direito sobre o arquivo delfix.exe, depois clique em execadmin.png.

 

2mez6ld.png

 

Clique no botão Executar.

 

Ao final será gerado um log, mas não é necessário postar.
 
# Etapa nº 2 #
 
imageproxy.php?img=http%3A%2F%2Fi65.tiny Versões antigas de programas têm vulnerabilidades que alguns malwares podem usar para infectar o seu sistema.
 
Por isso, é recomendável atualizar os programas que o Security Check apontou como desatualizados (os updates opcionais ficam ao seu critério).
 
Basta clicar no Download Update de cada aviso (post acima), que irá para o site do desenvolvedor.

<<@>> Mantenha sempre seu Windows atualizado; mantenha uma vigilância constante com o firewall e antivírus e por fim, lembre-se que, a melhor forma de prevenir começa pelas nossas atitudes!

 

# Etapa nº 3 #

 

O Ccleaner é um excelente utilitário de limpeza para o computador.

 

Faça o download dele aqui Ccleaner

 

  • Após a instalação vá até o local onde o programa foi instalado, geralmente em C:\Arquivos de programas\CCleaner.
  • Clique duas vezes nesta pasta;
  • Numa área vazia desta janela, clique com o botão direito do mouse e escolha Novo > pasta e crie uma nova pasta;
  • Coloque o nome de backups.
  • Abra o programa e clique em Executar Limpeza;
  • Clique no botão Registro > Procurar Erros > Corrigir erro(s) seleciona(s)...
  • Observação: Não se esqueça de aceitar o backup das correções, e salvá-los nas pasta criada acima!

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

diego_moicano você fez "a limpeza" no meu pc, só estou chorando pelas keygens que foram embora kkkkk...você sabe tudo mano, quantos programas para varrer o pc...obrigado

Compartilhar este post


Link para o post
Compartilhar em outros sites
Visitante
Este tópico está impedido de receber novos posts.





Sobre o Clube do Hardware

No ar desde 1996, o Clube do Hardware é uma das maiores, mais antigas e mais respeitadas publicações sobre tecnologia do Brasil. Leia mais

Direitos autorais

Não permitimos a cópia ou reprodução do conteúdo do nosso site, fórum, newsletters e redes sociais, mesmo citando-se a fonte. Leia mais

×