Ir ao conteúdo
  • Cadastre-se
Rapha Didone

Alguns sites não abrem

Recommended Posts

Olá,

 

Alguns sites confiáveis da internet, como youtube de algumas instituições militares, por vezes, não abrem em meus navegadores. O youtube direto dá problemas de proxy (aí não consigo acessar o site) e já tentei várias coisas para tentar resolver (busquei na internet) e nada surtiu efeito. Percebo tamém uma certa lentidão em meu computador.

zoek-results.log

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Recomendo que salve este tópico em seus Favoritos para facilitar na hora de encontrá-lo.

 

Por favor, atente para o seguinte:

  • Caso fique sem resposta durante 3 dias, me envie uma Mensagem Privada (MP);
  • O que será passado aqui, somente será com relação ao problema do seu computador portanto, não faça mais em nenhum outro;
  • Siga, por favor, atentamente as instruções passadas e em caso de dúvidas não hesite em perguntá-las;
  • Sempre coloque suas respostas neste tópico... Não abra outro!
  • Procure sempre me manter informado, durante a remoção, sobre o que acontece com seu computador.
  • Respeite a ordem das instruções passadas.

Observação: Não tome outra medida além das passadas aqui; atente para que, caso peça ajuda em outro fórum, não deixe de nos informar, sob risco de desconfigurar seu computador!

 

# Etapa nº 1 #
 
Baixe o AdwCleaner e salve em sua Área de trabalho (Desktop)

Execute o arquivo adwcleaner.exe

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • Clique na aba Opções e deixe marcado apenas "Restaurar Políticas do IE" e "Restaurar Políticas do Chrome"
  • Clique no botão Verificar e aguarde o exame finalizar.
  • Clique no botão Limpar.
  • Abrirá um bloco de notas com o resultado.
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.
  • O log também será salvo em C:\AdwCleaner


NOTA: Se o AdwCleaner encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC. Faça isso imediatamente, ao ser perguntado se quer reiniciar.
 
# Etapa nº 2 #
 
Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Baixe o Junkware Removal Tool (JRT) e salve em sua Área de trabalho (Desktop)

 

Clique duas vezes para executar o jrt.exe.
 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • A ferramenta começará o exame do seu sistema.
  • Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar.
  • Ao final um log se abrirá. Será salvo no desktop com o nome de JRT.txt.
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

 
# Etapa nº 3 #
 
Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Faça o download do ZHPCleaner e salve em sua Área de trabalho (Desktop)

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png

  • Clique no botão Scanner.
  • A ferramenta começara o exame do seu sistema.
  • Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar.
  • Em seguida clique no botão Reparar.
  • Será gerado um log chamado ZHPCleaner.txt
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá,

 

Só obtive êxito nos programas das etapas 1 e 3. O do etapa 2, ficou mais de 15 horas rodando e não finalizou. Parou em "Checking Shortcuts" e não saiu mais. Tentei encontrar um algum logo em alguma de suas pastas, mas nada.

 

Etapa 1

# AdwCleaner v6.010 - Relatório criado 09/09/2016 às 12:31:58
# *Updated on 12/08/2016 by ToolsLib
# Banco de dados : 2016-09-09.2 [Servidor]
# Sistema operacional : Windows 7 Ultimate Service Pack 1 (X64)
# Usuário : Davidson - DAVIDSON-PC
# Executando de : C:\Users\Davidson\Downloads\Programs\adwcleaner_6.010.exe
# *Mode: Scan
# Apoio : https://toolslib.net/forum

***** [ Serviços ] *****

Serviço vToolbarUpdater40.3.5
Serviço WtuSystemSupport


***** [ Pastas ] *****

Encontrado C:\Users\Davidson\AppData\Local\eSupport.com
Encontrado C:\Users\Davidson\AppData\Local\avg web tuneup
Encontrado C:\Program Files\Common Files\AVG Secure Search
Encontrado C:\ProgramData\avg web tuneup
Encontrado C:\ProgramData\Application Data\avg web tuneup
Encontrado C:\Program Files (x86)\eSupport.com
Encontrado C:\Program Files (x86)\avg web tuneup
Encontrado C:\Program Files (x86)\Common Files\AVG Secure Search


***** [ Arquivos ] *****

Encontrado C:\Windows\SysNative\SVCProxyOff.ini
Encontrado C:\Windows\SysWOW64\SVCProxyOff.ini


***** [ DLL ] *****

*No malicious DLLs found.


***** [ WMI ] *****

*No malicious keys found.


***** [ Atalhos ] *****

Procurando por atalhos infectados ...


***** [ Tarefas agendadas ] *****

Encontrado AVGPCTuneUp_Task_BkGndMaintenance


***** [ Registro ] *****

Encontrado HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
Encontrado HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataContainer
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataContainer.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataController
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataController.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataStatistics
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataStatistics.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataTable
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataTable.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataTableFields
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataTableFields.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataTableHolder
Encontrado HKLM\SOFTWARE\Classes\PCProxy.DataTableHolder.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.LSPLogic
Encontrado HKLM\SOFTWARE\Classes\PCProxy.LSPLogic.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.ProxyChecks
Encontrado HKLM\SOFTWARE\Classes\PCProxy.ProxyChecks.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.ReadOnlyManager
Encontrado HKLM\SOFTWARE\Classes\PCProxy.ReadOnlyManager.1
Encontrado HKLM\SOFTWARE\Classes\PCProxy.WFPController
Encontrado HKLM\SOFTWARE\Classes\PCProxy.WFPController.1
Encontrado HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd
Encontrado HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1
Encontrado HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi
Encontrado HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1
Encontrado HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Encontrado HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Encontrado HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj
Encontrado HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7C-28D16C4AF54D}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB1-499898429D6C}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A038-16A352CFE8B9}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90FE-F5E0CEA9C4F2}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8B-5A6F029ECECB}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{7697BC38-D0FA-454B-AC75-968B4CCABFCE}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A936-FBA9D5EFD2B9}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D47-E2D3E4761B77}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{ED0D2C81-7DB5-4599-B7C0-1033418B5672}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
Encontrado [x64] HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
Encontrado [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
Encontrado HKLM\SOFTWARE\Classes\AppID\{9DC8FA51-B596-4F77-802C-5B295919C205}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{1663C10B-0D55-438D-8496-19A3DBAEC0E4}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{3E28F712-0D6C-4EE3-AC8C-8F060F5D7C33}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{6EEBC7FF-67DA-4B90-9251-C2C5696E4B48}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{74137531-80F7-406F-9543-7D11385FA8C8}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{832599B2-55BF-4437-8F3E-030CF5AEB262}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{AE91F9CE-0900-4E2A-B673-F3F6E4FC54D9}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{B1A429DB-FB06-4645-B7C0-0CC405EAD3CD}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{DD67706E-819E-4EBD-BF8D-6D6147CC7A49}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615}
Encontrado HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}
Encontrado HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7C-28D16C4AF54D}
Encontrado HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB1-499898429D6C}
Encontrado HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A038-16A352CFE8B9}
Encontrado HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Encontrado HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90FE-F5E0CEA9C4F2}
Encontrado HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Encontrado HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8B-5A6F029ECECB}
Encontrado HKLM\SOFTWARE\Classes\Interface\{7697BC38-D0FA-454B-AC75-968B4CCABFCE}
Encontrado HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Encontrado HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A936-FBA9D5EFD2B9}
Encontrado HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Encontrado HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D47-E2D3E4761B77}
Encontrado HKLM\SOFTWARE\Classes\Interface\{ED0D2C81-7DB5-4599-B7C0-1033418B5672}
Encontrado HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
Encontrado HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
Encontrado HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
Encontrado HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Encontrado HKLM\SOFTWARE\Classes\TypeLib\{ED721A76-8160-4DA0-A18E-7FD7C4574774}
Encontrado HKLM\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7}
Encontrado HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Encontrado HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Encontrado HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Encontrado HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
Encontrado HKLM\SOFTWARE\AVG Tuneup
Encontrado HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Encontrado HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Encontrado HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh
Encontrado HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Encontrado HKLM\SOFTWARE\Classes\f
Encontrado HKCU\Software\Google\Chrome\Extensions\chfdnecihphmhljaaejmgoiahnihplgn


***** [ Navegadores ] *****

Procurando por itens do registro 
*Chromium pref Found: [C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Default\Web data] - br.ask.com
*Chromium pref Found: [C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Web data] - br.ask.com
*Chromium pref Found: [C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Secure Preferences ] - chfdnecihphmhljaaejmgoiahnihplgn

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [8942 *Bytes] - [09/09/2016 12:31:58]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9016 *Bytes] ##########
 

 

Etapa 3

~ ZHPCleaner v2016.9.9.129 by Nicolas Coolman (2016/09/09)
~ Run by Davidson (Administrator)  (10/09/2016 09:44:17)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Reparo
~ Report : C:\Users\Davidson\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Davidson\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)


---\\  Serviços (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.


---\\  Navegadores de Internet (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.


---\\  Arquivo hosts (1)
~ O arquivo hosts é legítimo (32)


---\\  Tarefas automáticas agendadas. (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.


---\\  Explorer ( Arquivos, Pastas) (38)
MOVIDO pasta: C:\Windows\KMS-R@1n.exe    =>HackTool.WinActivator
MOVIDO arquivo: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\CrashRpt  =>.Superfluous.CrashReports
MOVIDO arquivo: C:\Program Files (x86)\QuickTime  =>Riskware.QuickTime
MOVIDO arquivo: C:\Windows\Installer\MSI1340.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI16CA.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI170E.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI26A4.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI356.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI3EB5.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI4913.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI49E2.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI4C5E.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI52C5.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI54B6.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI597A.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI5BEB.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI5F56.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI6B5.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI6DD9.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI735D.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI7444.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI778F.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI7D9.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI8566.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI934.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSI9A.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIB9DB.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSID195.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSID641.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSID822.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIDC04.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIE394.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIE7FB.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIE80E.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIF8BA.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIFB82.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIFCAA.tmp-  =>Empty
MOVIDO arquivo: C:\Windows\Installer\MSIFE25.tmp-  =>Empty


---\\  Registro ( Chaves, Valores, Dados ) (5)
SUPRIMIDO dados: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4A4A7E1C-1038-443E-A182-C17652706763}\\DhcpNameServer [Bad : 179.106.96.131 179.106.96.132]  =>Hijacker.Browser
SUPRIMIDO dados: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{9AAAD339-E7C7-4667-B873-757727A0AA92}\\DhcpNameServer [Bad : 179.106.96.131 179.106.96.132]  =>Hijacker.Browser
SUPRIMIDO dados: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\\DhcpNameServer [Bad : 179.106.96.131 179.106.96.132]  =>Hijacker.Browser
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} [ITool]  =>Toolbar.Ask
SUPRIMIDO chave*: [X64] HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IDM Patch 6.25 build 05 [SandySeedings Team]  =>.Superfluous.CrackSetup


---\\  Resumo dos elementos encontrados na sua estação de trabalho (6)
https://www.nicolascoolman.com/fr/hijacker-windows/  =>HackTool.WinActivator
https://www.nicolascoolman.com/fr/logiciels-superflus  =>.Superfluous.CrashReports
https://www.anti-malware.top/2016/04/21/riskware-quicktime/  =>Riskware.QuickTime
https://www.nicolascoolman.com/fr/hijacker-browser/  =>Hijacker.Browser
https://www.nicolascoolman.com/fr/toolbar-ask/  =>Toolbar.Ask
https://www.nicolascoolman.com/fr/logiciels-superflus  =>.Superfluous.CrackSetup


---\\  Dodatkowe oczyszczenie. (26)
~ Chave de registro Tracing Supprimido (26)
~ Remover os relatórios antigos ZHPCleaner. (0)


---\\ Resultado de reparação
Reparação efectuada com sucesso
~ Este navegador está faltando ! (Opera Software)


---\\ Estatísticas
~ Items scan : 682
~ Items encontrado : 0
~ items cancelados : 0
~ Items réparo : 43


~ End of clean in 00h00mn43s
~====================
ZHPCleaner-[R]-10092016-09_45_00.txt
ZHPCleaner--10092016-09_40_55.txt
 

 

Editado por Rapha Didone

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

 

Baixe o Farbar Recovery Scan Tool e salve-o na Área de Trabalho (Desktop).


32 bit (x86) ou 64 bit (x64)

 

  • Clique duas vezes para executar a ferramenta.
    • Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png
  • Marque a caixa Arquivos 90 dias,  e clique no botão Examinar.
  • Aguarde e ao final os logs FRST.txt e Addition.txt serão salvos em sua Área de Trabalho (Desktop).
  • Selecione, copie e cole o conteúdo do log  FRST.txt em sua próxima resposta.
  • Anexe o log Addition.txt

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá,

 

Segue o log do FRST. O log Addition está anexado ao tópico, conforme recomendado.

 

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 31-08-2016
Executado por Davidson (administrador) em DAVIDSON-PC (10-09-2016 12:42:34)
Executando a partir de C:\Users\Davidson\Downloads\Programs
Perfis Carregados: Davidson (Perfis Disponíveis: Davidson)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgfwsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
(Blue Coat Systems, Inc.) C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Winstep Software Technologies) C:\Program Files (x86)\Winstep\WsxService.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Winstep Software Technologies) C:\Program Files (x86)\Winstep\Nexus.exe
(Kurupira.NET) C:\Program Files (x86)\Kurupira\WebFilter\kurupiraWF.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Kurupira.NET) C:\Program Files (x86)\Kurupira\WebFilter\rcp.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteTray.exe
(Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
(Microsoft Corporation) C:\Windows\System32\calc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13877464 2015-05-15] (Realtek Semiconductor)
HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [925744 2016-06-22] (GAS Tecnologia LTDA)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6709008 2016-07-28] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2086240 2015-04-28] (Wondershare)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [204560 2016-09-07] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [KurupiraNet] => C:\Program Files (x86)\Kurupira\WebFilter\kurupirawf.exe [7731928 2016-01-14] (Kurupira.NET)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\ GbPluginBb: C:\Program Files (x86)\GbPlugin\gbieh.dll [2016-06-22] (Banco do Brasil)
HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\Run: [Nexus] => C:\Program Files (x86)\Winstep\Nexus.exe [13047936 2016-06-27] (Winstep Software Technologies)
HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\Run: [KurupiraNet] => C:\Program Files (x86)\Kurupira\WebFilter\kurupirawf.exe [7731928 2016-01-14] (Kurupira.NET)
HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [249856 2005-08-11] (Macrovision Corporation)
HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3931728 2015-12-09] (Tonec Inc.)
HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\Run: [uTorrent] => C:\Users\Davidson\AppData\Roaming\uTorrent\uTorrent.exe [2530304 2016-05-16] (BitTorrent Inc.)
IFEO\AcroRd32.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\capture.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\coreldrw.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\corelpp.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\dropbox.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\effectextractor.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\fontnav.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\hsscp.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\javacpl.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\javaw.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\javaws.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\lastpass.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\lpuninstall.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\mediaserver.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\pdr.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\screencapture.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\screenrecorder.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\unins000.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\uninstall.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\wsvcusplash.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\Program Files (x86)\GbPlugin\gbieh.dll [1947872 2016-06-22] (Banco do Brasil)
ShellIconOverlayIdentifiers: [   IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-08-14] (Tonec Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.42.dll [2016-08-30] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass FF RunOnce.lnk [2016-04-19]
ShortcutTarget: Install LastPass FF RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass IE RunOnce.lnk [2016-04-19]
ShortcutTarget: Install LastPass IE RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
Startup: C:\Users\Davidson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk [2016-09-10]
ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Hosts: Há mais de uma entrada no Hosts. Veja a seção Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 179.106.96.131 179.106.96.132
Tcpip\..\Interfaces\{4A4A7E1C-1038-443E-A182-C17652706763}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{4A4A7E1C-1038-443E-A182-C17652706763}: [DhcpNameServer] 179.106.96.131 179.106.96.132

Internet Explorer:
==================
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2016-04-19] (LastPass)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO-x32: Wondershare Video Converter Ultimate 7.1.0 -> {451C804F-C205-4F03-B48E-537EC94937BF} -> C:\ProgramData\Wondershare\Video Converter Ultimate\WSBrowserAppMgr.dll [2016-07-13] (Wondershare)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-08] (Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2016-06-01] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-04-19] (LastPass)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\Program Files (x86)\GbPlugin\gbieh.dll [2016-06-22] (Banco do Brasil)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-08] (Oracle Corporation)
Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2016-04-19] (LastPass)
Toolbar: HKLM - Sem Nome - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} -  Nenhum Arquivo
Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll [2016-04-19] (LastPass)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
Handler: WSWSVCUchrome - {1CA93FF0-A218-44F1 -  Nenhum Arquivo

FireFox:
========
FF ProfilePath: C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389
FF Homepage: hxxp://google.com
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-12] ()
FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2016-04-19] (LastPass)
FF Plugin: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-12] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-08] (Oracle Corporation)
FF Plugin-x32: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2016-04-19] (LastPass)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-07-01] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-07-01] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
FF Extension: (LastPass) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\extensions\support@lastpass.com [2016-06-28]
FF Extension: (Block.si) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\extensions\Block.si@block.si.xpi [2016-06-28]
FF Extension: (Google Translator for Firefox) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\extensions\translator@zoli.bod.xpi [2016-07-04]
FF Extension: (Firefox Hotfix) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-01]
FF Extension: (Procon Latte Content Filter) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\Extensions\{9D6218B8-03C7-4b91-AA43-680B305DD35C}.xpi [2016-06-28]
FF Extension: (Video DownloadHelper) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2016-08-03]
FF Extension: (Adblock Plus) - C:\Users\Davidson\AppData\Roaming\Mozilla\Firefox\Profiles\epsepxqh.default-1467151639389\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-28]
FF Extension: (Skype) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25]
FF HKLM-x32\...\Firefox\Extensions: [WSVCU@Wondershare.com] - C:\ProgramData\Wondershare\Video Converter Ultimate\WSVCU@Wondershare.com_xpi
FF Extension: (Wondershare Video Converter Ultimate) - C:\ProgramData\Wondershare\Video Converter Ultimate\WSVCU@Wondershare.com_xpi [2016-07-23]
FF HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2015-11-09]
FF HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF HKU\S-1-5-21-1195522135-2247721333-3383258228-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Davidson\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\Davidson\AppData\Roaming\IDM\idmmzcc5 [2016-09-10] [não assinado]

Chrome: 
=======
CHR HomePage: Profile 1 -> hxxp://google.com/
CHR StartupUrls: Profile 1 -> "hxxp://www.google.com/"
CHR DefaultSearchKeyword: Profile 1 -> lp
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Tradutor) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2016-05-14]
CHR Extension: (Google Apresentações) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-04-15]
CHR Extension: (Facebook Seen Block) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\afmbkbhkclhccghpmakmlmialgcneoml [2016-04-18]
CHR Extension: (Google Docs) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-15]
CHR Extension: (Google Drive) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-15]
CHR Extension: (YouTube) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-15]
CHR Extension: (Firebug Lite for Google Chrome™) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bmagokdooijbeehmkpknfglimnifench [2016-04-15]
CHR Extension: (Adblock Plus) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-08-23]
CHR Extension: (MindMup - Free Mind Map web site) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dnenaecjcgeppfpaokiifokeieopppej [2016-04-15]
CHR Extension: (Planilhas do Google) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-15]
CHR Extension: (News Feed Eradicator for Facebook) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fjcldmjmjhkklehbacihaiopjklihlgg [2016-05-27]
CHR Extension: (Editor do Office) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gbkeegbaiigmenfmjfclcdgdpimamgkj [2016-08-14]
CHR Extension: (MindMap) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gdaeohpmcenmffofpikllphdhlkkocfa [2016-04-15]
CHR Extension: (Documentos Google off-line) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-15]
CHR Extension: (Click&Clean) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghgabhipcejejjmhhchfonmamedcbeod [2016-08-05]
CHR Extension: (OneNote Web Clipper) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gojbdfnpnhogfdgjbigejoaolejmgdhk [2016-09-08]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2016-08-28]
CHR Extension: (Pomodoro Timer) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hfgjlgjnpkpmnpojkkpfkogapiclopop [2016-04-18]
CHR Extension: (Kill News Feed) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hjobfcedfgohjkaieocljfcppjbkglfd [2016-04-18]
CHR Extension: (Desprotetor de Links) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\imcbnnnoghiihopefblgehihofbfbmei [2016-09-02]
CHR Extension: (Skype) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2016-08-31]
CHR Extension: (Video DownloadHelper) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2016-04-15]
CHR Extension: (Telegram UNOFFICIAL DE) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mdoeeillmppnaggckafpacjibhjdcinp [2016-07-06]
CHR Extension: (Pocket) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjcnijlhddpbdemagnpefmlkjdagkogk [2016-05-27]
CHR Extension: (Office Online) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ndjpnladcallmjemlbaebfadecfhkepb [2016-07-30]
CHR Extension: (IDM Integration Module) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-08-09]
CHR Extension: (Save to Pocket) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2016-09-08]
CHR Extension: (MindMapr) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\njkigggmlihigheckmmebgogbgdmllpo [2016-04-15]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-15]
CHR Extension: (Moosti) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pdkkfpnoobbihpjbophkgcibemmmidhk [2016-04-20]
CHR Extension: (Blocksi Web Filter) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pgmjaihnmedpcdkjcgigocogcbffgkbn [2016-07-11]
CHR Extension: (Evernote Web Clipper) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2016-08-23]
CHR Extension: (Gmail) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-04-15]
CHR Extension: (Chrome Media Router) - C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-31]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-12-08]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-12-08]
StartMenuInternet: Google Chrome.RS7QQEBSEDQR3DISGPMXXHYOCI - C:\Users\Davidson\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [674552 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 avgfws; C:\Program Files (x86)\AVG\Av\avgfwsa.exe [2049016 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5267456 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1097488 2016-09-07] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [760024 2016-07-28] (AVG Technologies CZ, s.r.o.)
R2 bckwfs; C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe [2647256 2014-01-24] (Blue Coat Systems, Inc.)
S4 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [445976 2016-07-14] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [421400 2016-07-14] (BlueStack Systems, Inc.)
S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [458264 2016-07-14] (BlueStack Systems, Inc.)
S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-05-13] (Dropbox, Inc.)
S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-05-13] (Dropbox, Inc.)
R2 GbpSv; C:\Program Files (x86)\GbPlugin\gbpsv.exe [631520 2016-06-22] (GAS Tecnologia)
S4 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [2710648 2016-08-23] (AnchorFree Inc.)
S4 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [103168 2016-08-23] ()
S2 KNet; C:\Windows\svcproxy\svcproxy.exe [4524752 2015-09-04] (Kurupira.net)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
S4 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2014-10-20] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [295128 2015-05-04] (Realtek Semiconductor)
S3 svcprocess; C:\Windows\svcproxy\svcprocess.exe [174800 2015-09-04] (Kurupira.NET)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [4878096 2016-08-19] (AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [56080 2016-08-19] (AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [49424 2016-08-19] (AVG Technologies CZ, s.r.o.)
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [925744 2016-06-22] (GAS Tecnologia LTDA)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.2.4.1\WsAppService.exe [417792 2016-07-12] (Wondershare) [Arquivo não assinado]
S2 KMS-R@1n; C:\Windows\KMS-R@1n.exe [X]
R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 AFTrafMgr1.1; C:\Program Files (x86)\Hotspot Shield\bin\TrafMgr_1_1_64.sys [54712 2016-08-23] (AnchorFree Inc.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [73480 2016-06-06] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [314112 2016-06-30] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [261376 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-06-01] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [261888 2016-07-19] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [298752 2016-07-12] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.)
R2 bckd; C:\Windows\System32\drivers\bckd.sys [126168 2014-01-24] (Blue Coat Systems, Inc.)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [152672 2016-07-14] (BlueStack Systems)
R2 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [270904 2016-07-14] (Bluestack System Inc. )
R3 CLMirrorDriver; C:\Windows\System32\DRIVERS\CLMirrorDriver.sys [21264 2015-08-27] (CyberLink)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [28888 2016-09-10] (GAS Tecnologia)
R0 gbpddreg; C:\Windows\System32\drivers\gbpddreg64.sys [29816 2016-09-10] (GAS Tecnologia)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2016-05-09] (GAS Tecnologia)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
S1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70000 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [77728 2016-05-17] (AO Kaspersky Lab)
S1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [103096 2015-06-16] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-09-10] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
R3 MTsensor; C:\Windows\System32\DRIVERS\ATK64AMD.sys [13680 2007-08-09] ()
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42064 2016-05-27] (Anchorfree Inc.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2016-03-29] (AVG Netherlands B.V.)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2016-05-09] (GAS Tecnologia LTDA)
R4 WinDivert1.1; C:\Program Files\Diebold\Warsaw\WinDivert64.sys [38104 2015-07-07] (Basil)
R2 WiseFs; C:\Windows\WiseFs64.sys [14256 2016-06-24] (WiseCleaner.com)
S3 WsAudio_Device; C:\Windows\System32\drivers\VirtualAudio.sys [31080 2014-10-24] (Wondershare)
R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [101080 2016-09-10] (GAS Tecnologia)
R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [103640 2015-03-18] (GAS Tecnologia)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-09-10 12:42 - 2016-09-10 12:42 - 00000000 ____D C:\FRST
2016-09-10 09:40 - 2016-09-10 09:45 - 00005207 _____ C:\Users\Davidson\Desktop\ZHPCleaner.txt
2016-09-10 09:32 - 2016-09-10 09:45 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\ZHP
2016-09-10 09:32 - 2016-09-10 09:32 - 00000795 _____ C:\Users\Davidson\Desktop\ZHPCleaner.lnk
2016-09-09 22:51 - 2016-09-09 22:56 - 00000405 _____ C:\Users\Davidson\Desktop\Músicas na redação.txt
2016-09-09 22:38 - 2016-08-25 16:42 - 02579786 _____ C:\Users\Davidson\Desktop\Esqueleto da Redação - Atualizado.pdf
2016-09-09 19:50 - 2016-09-09 19:50 - 00000323 _____ C:\Users\Davidson\Desktop\Filmes na redação.txt
2016-09-09 15:27 - 2016-09-09 15:27 - 03166059 _____ C:\Users\Davidson\Downloads\Apostas v4.1.1 (1).xlsm
2016-09-09 15:24 - 2016-09-09 15:24 - 00140435 _____ C:\Users\Davidson\Downloads\Planilha-de-Analise (Acad. das apostas).xlsm
2016-09-09 13:35 - 2016-09-10 10:51 - 00101080 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddfac.sys
2016-09-09 13:35 - 2016-09-09 13:35 - 00000000 ___HD C:\Program Files (x86)\GAS Tecnologia
2016-09-09 13:35 - 2016-09-09 13:35 - 00000000 ___HD C:\Program Files (x86)\Diebold
2016-09-09 13:35 - 2016-09-09 13:35 - 00000000 ____D C:\Program Files\Diebold
2016-09-09 13:35 - 2015-03-18 10:23 - 00103640 ____N (GAS Tecnologia) C:\Windows\system32\Drivers\wsddpp.sys
2016-09-09 13:34 - 2016-09-10 10:52 - 00029816 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpddreg64.sys
2016-09-09 13:34 - 2016-09-10 10:52 - 00028888 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpddfac64.sys
2016-09-09 13:32 - 2016-09-09 13:32 - 00000000 ____D C:\Users\Todos os Usuários\GbPlugin
2016-09-09 13:32 - 2016-09-09 13:32 - 00000000 ____D C:\ProgramData\GbPlugin
2016-09-09 13:30 - 2016-09-09 13:30 - 02837040 _____ (Banco do Brasil SA) C:\Users\Davidson\Downloads\DiagnosticoBB.exe
2016-09-09 13:04 - 2016-09-09 13:04 - 00002760 _____ C:\Windows\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance
2016-09-09 12:27 - 2016-09-09 12:31 - 00000000 ____D C:\AdwCleaner
2016-09-05 21:43 - 2016-09-05 21:43 - 00000087 _____ C:\Users\Davidson\Desktop\Clube Hardware.txt
2016-09-05 19:32 - 2016-09-06 12:25 - 00000496 _____ C:\runcheck.txt
2016-09-05 19:32 - 2016-09-05 19:32 - 00000000 ____D C:\zoek_backup
2016-09-05 19:30 - 2016-09-10 09:24 - 00000477 _____ C:\Users\Davidson\Desktop\Agendamento Imersão 2.txt
2016-09-05 17:52 - 2016-09-05 18:30 - 00000000 ____D C:\Users\Davidson\Documents\Camtasia Studio
2016-09-05 17:52 - 2016-09-05 17:52 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\TechSmith
2016-09-05 17:51 - 2016-09-05 17:51 - 00000000 ____D C:\Users\Davidson\AppData\Local\TechSmith
2016-09-05 17:28 - 2016-09-05 17:28 - 00001128 _____ C:\Users\Public\Desktop\Camtasia Studio 8.lnk
2016-09-05 17:28 - 2016-09-05 17:28 - 00000000 ____D C:\Users\Todos os Usuários\TechSmith
2016-09-05 17:28 - 2016-09-05 17:28 - 00000000 ____D C:\Users\Todos os Usuários\regid.1995-08.com.techsmith
2016-09-05 17:28 - 2016-09-05 17:28 - 00000000 ____D C:\ProgramData\TechSmith
2016-09-05 17:28 - 2016-09-05 17:28 - 00000000 ____D C:\ProgramData\regid.1995-08.com.techsmith
2016-09-05 17:28 - 2016-09-05 17:28 - 00000000 ____D C:\Program Files (x86)\TechSmith
2016-09-05 11:47 - 2016-09-05 11:47 - 00634368 _____ C:\Users\Davidson\Downloads\Plano de crescimento.xls
2016-09-04 17:41 - 2016-09-04 17:47 - 171915665 _____ C:\Users\Davidson\Downloads\aterraprometida(2).rar
2016-09-04 17:24 - 2016-09-04 17:32 - 176307772 _____ C:\Users\Davidson\Downloads\aterraprometida(1).rar
2016-09-04 17:12 - 2016-09-04 17:12 - 174505553 _____ C:\Users\Davidson\Downloads\aterraprometida.rar
2016-09-04 16:20 - 2016-09-04 16:33 - 00000000 ____D C:\Users\Davidson\Downloads\O Fisico 2014 DVDRip Dual Audio Dublado
2016-09-04 13:11 - 2016-09-04 13:11 - 00005474 _____ C:\Users\Davidson\Downloads\nomes.txt
2016-09-02 21:51 - 2016-09-02 21:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-09-02 18:50 - 2016-09-02 21:47 - 00000297 _____ C:\Users\Davidson\Preenchimento da Planilha Análise Pré-Jogo.txt
2016-09-02 18:45 - 2016-09-02 18:45 - 00013036 _____ C:\Users\Davidson\Downloads\planilha-pre-analise-pedrobet.xlsx
2016-09-01 16:55 - 2016-09-01 16:55 - 00207246 _____ C:\Users\Davidson\Downloads\Grupo Colmeia Livre - Materiais Compartilhados.xlsx
2016-09-01 14:57 - 2016-09-01 14:57 - 00000035 _____ C:\Users\Davidson\Downloads\twitter.txt
2016-08-31 09:16 - 2016-08-31 09:16 - 00001022 _____ C:\Users\Davidson\Documents\Winstep.lnk
2016-08-29 18:09 - 2016-08-29 18:10 - 680008136 _____ C:\Users\Davidson\Downloads\Módulo 2 - Veterano.zip
2016-08-29 17:28 - 2016-08-29 17:29 - 01394431 _____ C:\Users\Davidson\Downloads\1-Dando Nome aos Bois.pdf
2016-08-29 12:01 - 2016-08-29 13:19 - 00000574 _____ C:\Users\Davidson\Sites para análises.txt
2016-08-25 16:51 - 2016-08-25 16:51 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Houaiss3
2016-08-25 16:51 - 2016-08-25 16:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dicionário Houaiss 3
2016-08-25 16:51 - 2016-08-25 16:51 - 00000000 ____D C:\Program Files (x86)\Houaiss3
2016-08-25 16:43 - 2016-08-27 17:49 - 01669317 _____ C:\Users\Davidson\Desktop\Técnicas Secundárias de Argumentação.pdf
2016-08-24 09:32 - 2016-08-28 14:40 - 00079349 _____ C:\Users\Davidson\Acompanhamento dos Gastos.xlsx
2016-08-23 13:48 - 2016-08-19 16:30 - 00044304 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\authuitu.dll
2016-08-23 13:48 - 2016-08-19 16:30 - 00039696 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll
2016-08-17 02:46 - 2016-07-08 12:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-08-17 02:46 - 2016-07-08 12:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-08-16 22:01 - 2016-08-16 22:01 - 00036486 _____ C:\Users\Davidson\Downloads\Brainstorming semana 3.odt
2016-08-16 11:39 - 2016-08-20 17:49 - 00000169 _____ C:\Users\Davidson\Dinheiro.txt
2016-08-15 11:21 - 2016-08-15 11:21 - 00148267 _____ C:\Users\Davidson\Agosto 2016.pdf
2016-08-15 11:21 - 2016-08-15 11:21 - 00148034 _____ C:\Users\Davidson\Julho 2016.pdf
2016-08-12 22:19 - 2016-08-19 10:23 - 00000000 ____D C:\Users\Davidson\Downloads\Originals
2016-08-12 16:34 - 2016-08-19 09:01 - 00000000 ____D C:\Windows\Minidump
2016-08-11 13:57 - 2016-08-02 11:54 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-08-11 13:57 - 2016-08-02 11:08 - 00346312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-08-11 13:57 - 2016-08-02 03:47 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-08-11 13:57 - 2016-08-02 03:47 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-08-11 13:57 - 2016-08-02 03:32 - 02894336 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-08-11 13:57 - 2016-08-02 03:32 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-08-11 13:57 - 2016-08-02 03:31 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-08-11 13:57 - 2016-08-02 03:31 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-08-11 13:57 - 2016-08-02 03:24 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-08-11 13:57 - 2016-08-02 03:23 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-08-11 13:57 - 2016-08-02 03:20 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-08-11 13:57 - 2016-08-02 03:19 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-08-11 13:57 - 2016-08-02 03:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-08-11 13:57 - 2016-08-02 03:18 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-08-11 13:57 - 2016-08-02 03:18 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-08-11 13:57 - 2016-08-02 03:18 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-08-11 13:57 - 2016-08-02 03:11 - 00969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-08-11 13:57 - 2016-08-02 03:08 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-08-11 13:57 - 2016-08-02 03:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-08-11 13:57 - 2016-08-02 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-08-11 13:57 - 2016-08-02 02:59 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-08-11 13:57 - 2016-08-02 02:55 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-08-11 13:57 - 2016-08-02 02:54 - 20343808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-08-11 13:57 - 2016-08-02 02:53 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-08-11 13:57 - 2016-08-02 02:51 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-08-11 13:57 - 2016-08-02 02:51 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-08-11 13:57 - 2016-08-02 02:51 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-08-11 13:57 - 2016-08-02 02:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-08-11 13:57 - 2016-08-02 02:51 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-08-11 13:57 - 2016-08-02 02:50 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-08-11 13:57 - 2016-08-02 02:47 - 02286592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-08-11 13:57 - 2016-08-02 02:45 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-08-11 13:57 - 2016-08-02 02:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-08-11 13:57 - 2016-08-02 02:42 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-08-11 13:57 - 2016-08-02 02:41 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-08-11 13:57 - 2016-08-02 02:41 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-08-11 13:57 - 2016-08-02 02:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-08-11 13:57 - 2016-08-02 02:40 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-08-11 13:57 - 2016-08-02 02:38 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-08-11 13:57 - 2016-08-02 02:38 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-08-11 13:57 - 2016-08-02 02:37 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-08-11 13:57 - 2016-08-02 02:36 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-08-11 13:57 - 2016-08-02 02:33 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-08-11 13:57 - 2016-08-02 02:29 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-08-11 13:57 - 2016-08-02 02:28 - 15412224 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-08-11 13:57 - 2016-08-02 02:28 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-08-11 13:57 - 2016-08-02 02:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-08-11 13:57 - 2016-08-02 02:25 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-08-11 13:57 - 2016-08-02 02:24 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-08-11 13:57 - 2016-08-02 02:23 - 02868224 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-08-11 13:57 - 2016-08-02 02:22 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-08-11 13:57 - 2016-08-02 02:21 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-08-11 13:57 - 2016-08-02 02:16 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-08-11 13:57 - 2016-08-02 02:15 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-08-11 13:57 - 2016-08-02 02:14 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-08-11 13:57 - 2016-08-02 02:14 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-08-11 13:57 - 2016-08-02 02:11 - 13808128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-08-11 13:57 - 2016-08-02 02:10 - 01550848 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-08-11 13:57 - 2016-08-02 01:59 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-08-11 13:57 - 2016-08-02 01:56 - 02393088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-08-11 13:57 - 2016-08-02 01:53 - 01316352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-08-11 13:57 - 2016-08-02 01:51 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-08-11 13:57 - 2016-07-08 12:37 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-08-11 13:57 - 2016-07-08 12:37 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-08-11 13:57 - 2016-07-08 12:32 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-08-11 13:57 - 2016-07-08 12:32 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-08-11 13:57 - 2016-07-08 12:17 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-08-11 13:57 - 2016-07-08 12:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-08-11 13:57 - 2016-07-08 12:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-08-11 13:57 - 2016-07-08 12:03 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-08-11 13:57 - 2016-07-08 11:57 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-08-11 13:57 - 2016-07-08 11:56 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-08-11 13:57 - 2016-07-08 11:56 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-08-11 13:57 - 2016-07-08 11:55 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-08-11 13:57 - 2016-07-08 11:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-08-11 13:57 - 2016-07-08 11:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-08-11 13:56 - 2016-08-02 03:54 - 25808384 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-08-11 13:56 - 2016-08-02 03:31 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-08-11 13:56 - 2016-08-02 03:31 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-08-11 13:56 - 2016-08-02 02:56 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-08-11 13:56 - 2016-07-08 12:01 - 03218944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-08-09 22:47 - 2016-09-06 17:51 - 00000000 ____D C:\Users\Davidson\Downloads\Outros
2016-08-08 21:21 - 2016-09-10 10:04 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\DMCache
2016-08-08 21:21 - 2016-09-06 17:49 - 00000000 ____D C:\Users\Davidson\Downloads\Compressed
2016-08-08 21:21 - 2016-08-12 09:38 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\IDM
2016-08-08 21:21 - 2016-08-11 18:56 - 00000000 ____D C:\Users\Davidson\Downloads\Video
2016-08-08 21:21 - 2016-08-08 21:21 - 00000000 ____D C:\Users\Todos os Usuários\IDM
2016-08-08 21:21 - 2016-08-08 21:21 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2016-08-08 21:21 - 2016-08-08 21:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2016-08-08 21:21 - 2016-08-08 21:21 - 00000000 ____D C:\ProgramData\IDM
2016-08-08 21:20 - 2016-08-08 21:26 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2016-08-04 20:17 - 2016-09-09 18:13 - 00078848 ____H C:\Users\Davidson\Downloads\photothumb.db
2016-07-23 18:10 - 2016-05-27 09:41 - 00000232 _____ C:\Windows\SysWOW64\dllhost.exe.config
2016-07-23 18:10 - 2015-02-27 14:38 - 00721263 _____ () C:\Windows\SysWOW64\WSCM64.dll
2016-07-23 18:10 - 2015-02-27 14:38 - 00214528 _____ () C:\Windows\SysWOW64\WSCM32.dll
2016-07-23 18:01 - 2016-07-23 18:01 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Wondershare Video Converter Ultimate
2016-07-23 17:59 - 2016-08-29 12:51 - 00000000 ____D C:\Users\Todos os Usuários\Wondershare Video Converter Ultimate
2016-07-23 17:59 - 2016-08-29 12:51 - 00000000 ____D C:\ProgramData\Wondershare Video Converter Ultimate
2016-07-23 17:59 - 2016-07-23 17:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2016-07-23 17:58 - 2016-07-23 18:10 - 00000000 ____D C:\Program Files (x86)\Wondershare
2016-07-22 09:57 - 2016-07-22 09:57 - 00001822 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BlueStacks.lnk
2016-07-22 09:56 - 2016-07-22 09:57 - 00000000 ____D C:\Program Files (x86)\BlueStacks
2016-07-22 09:56 - 2016-07-22 09:56 - 00000000 ____D C:\Users\Todos os Usuários\BlueStacks
2016-07-22 09:56 - 2016-07-22 09:56 - 00000000 ____D C:\ProgramData\BlueStacks
2016-07-21 06:36 - 2016-07-21 06:36 - 00000000 ____D C:\Windows\pss
2016-07-21 00:02 - 2016-07-21 00:02 - 00000000 ____D C:\Windows\EOONotify
2016-07-20 23:02 - 2016-07-20 23:03 - 00000000 ____D C:\Users\Davidson\Documents\Wondershare Video Converter Ultimate
2016-07-20 23:02 - 2016-07-20 23:02 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
2016-07-20 23:02 - 2016-07-20 23:02 - 00000000 ____D C:\Users\Davidson\AppData\Local\Wondershare
2016-07-20 23:01 - 2016-07-23 18:11 - 00000000 ____D C:\Users\Todos os Usuários\Wondershare
2016-07-20 23:01 - 2016-07-23 18:11 - 00000000 ____D C:\ProgramData\Wondershare
2016-07-20 23:01 - 2016-07-20 23:11 - 00000000 ____D C:\Users\Davidson\Documents\Wondershare MediaServer
2016-07-20 23:01 - 2014-10-24 14:35 - 00031080 _____ (Wondershare) C:\Windows\system32\Drivers\VirtualAudio.sys
2016-07-20 22:56 - 2016-07-20 23:01 - 00000000 ____D C:\Users\Public\Documents\Wondershare
2016-07-20 22:50 - 2016-07-20 22:50 - 00000000 ____D C:\Users\Todos os Usuários\Ashampoo
2016-07-20 22:50 - 2016-07-20 22:50 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Ashampoo
2016-07-20 22:50 - 2016-07-20 22:50 - 00000000 ____D C:\Users\Davidson\AppData\Local\ashampoo
2016-07-20 22:50 - 2016-07-20 22:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2016-07-20 22:50 - 2016-07-20 22:50 - 00000000 ____D C:\ProgramData\Ashampoo
2016-07-20 22:50 - 2016-07-20 22:50 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2016-07-20 17:17 - 2016-07-20 22:17 - 00000000 ____D C:\FFOutput
2016-07-20 17:10 - 2016-07-20 17:10 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2016-07-20 17:10 - 2016-07-20 17:10 - 00000000 ____D C:\Program Files (x86)\FormatFactory
2016-07-19 16:45 - 2016-07-19 16:45 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\CrystalIdea Software
2016-07-19 12:27 - 2016-07-19 12:27 - 00261888 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2016-07-15 23:24 - 2016-09-05 11:24 - 00000000 ____D C:\Users\Davidson\AppData\Local\EvernoteNW
2016-07-15 17:42 - 2016-07-15 17:42 - 00000000 ____D C:\Users\Davidson\AppData\Local\Evernote
2016-07-15 17:41 - 2016-09-09 13:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
2016-07-15 17:41 - 2016-07-15 17:41 - 00000000 ____D C:\Users\Davidson\AppData\LocalLow\Evernote
2016-07-15 17:41 - 2016-07-15 17:41 - 00000000 ____D C:\Program Files (x86)\Evernote
2016-07-14 12:44 - 2016-06-25 21:35 - 00041704 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-07-14 12:44 - 2016-06-25 21:27 - 01208320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-07-14 12:44 - 2016-06-25 21:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-07-14 12:44 - 2016-06-25 21:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-07-14 12:44 - 2016-06-25 21:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-07-14 12:44 - 2016-06-25 21:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-07-14 12:44 - 2016-06-25 21:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2016-07-14 12:44 - 2016-06-25 16:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-07-14 12:44 - 2016-06-25 16:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-07-14 12:44 - 2016-06-25 16:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2016-07-14 12:44 - 2016-06-25 16:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2016-07-14 12:44 - 2016-06-25 16:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2016-07-14 12:44 - 2016-06-22 10:06 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2016-07-14 12:44 - 2016-06-17 15:24 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-07-14 12:44 - 2016-06-17 15:24 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-07-14 12:44 - 2016-06-17 15:24 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-07-14 12:44 - 2016-06-17 15:24 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-07-14 12:44 - 2016-06-17 15:24 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-07-14 12:44 - 2016-06-17 15:24 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-07-12 21:00 - 2016-07-12 21:00 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2016-07-12 21:00 - 2016-07-12 21:00 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-07-12 20:59 - 2016-07-12 20:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2016-07-12 16:10 - 2016-07-12 16:10 - 00298752 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2016-07-11 17:43 - 2016-09-06 21:02 - 00000000 ____D C:\Users\Davidson\Imersão em redação
2016-07-07 08:27 - 2016-07-12 22:35 - 00009216 ____H C:\Users\Davidson\photothumb.db
2016-07-04 18:34 - 2016-07-12 23:01 - 00031232 ____H C:\Users\Davidson\Desktop\~WRL1518.tmp
2016-07-04 18:34 - 2016-07-08 17:41 - 00027648 ____H C:\Users\Davidson\Desktop\~WRL0001.tmp
2016-07-04 16:55 - 2016-07-04 16:55 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FBCIM
2016-07-04 16:55 - 2016-07-04 16:55 - 00000000 ____D C:\Program Files (x86)\FBCIM
2016-07-01 12:34 - 2016-07-20 22:48 - 00002153 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-07-01 12:32 - 2016-07-27 09:32 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-01 12:32 - 2016-07-27 09:32 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-01 12:32 - 2016-07-26 22:08 - 00004078 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-07-01 12:32 - 2016-07-26 22:08 - 00003826 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-01 12:32 - 2016-07-01 12:34 - 00000000 ____D C:\Program Files (x86)\Google
2016-06-30 14:41 - 2016-06-30 14:41 - 00314112 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2016-06-30 08:14 - 2016-09-05 17:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
2016-06-29 12:31 - 2016-06-29 12:32 - 00002424 _____ C:\Users\Davidson\Documents\Register Sound Forge Pro.htm
2016-06-29 12:26 - 2016-06-29 12:26 - 00000000 ____D C:\Users\Todos os Usuários\Sony
2016-06-29 12:26 - 2016-06-29 12:26 - 00000000 ____D C:\ProgramData\Sony
2016-06-29 12:26 - 2016-06-29 12:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2016-06-29 12:26 - 2016-06-29 12:26 - 00000000 ____D C:\Program Files (x86)\Sony
2016-06-29 11:41 - 2016-06-29 11:41 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-06-29 11:41 - 2016-06-29 11:41 - 00000000 ____D C:\Windows\system32\SRSLabs
2016-06-29 11:41 - 2016-06-29 11:41 - 00000000 ____D C:\Program Files\Realtek
2016-06-29 11:40 - 2015-05-15 19:27 - 02918104 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-06-29 11:40 - 2015-05-15 18:23 - 04464344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-06-29 11:40 - 2015-05-15 16:32 - 01316056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-06-29 11:40 - 2015-05-15 15:29 - 02847448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-06-29 11:40 - 2015-05-15 13:16 - 02048372 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-06-29 11:40 - 2015-05-11 14:01 - 01739992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-06-29 11:40 - 2015-04-13 19:14 - 00168816 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-06-29 11:40 - 2015-03-10 18:04 - 02702040 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-06-29 11:40 - 2014-12-02 18:42 - 03218800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-06-29 11:40 - 2014-11-11 13:44 - 00631000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-06-29 11:40 - 2014-06-17 19:17 - 00856992 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2016-06-29 11:40 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2016-06-29 11:40 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-06-29 11:40 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-06-29 11:40 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2016-06-29 11:40 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2016-06-29 11:40 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-06-29 11:40 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-06-29 11:40 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-06-29 11:40 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-06-29 11:40 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-06-29 11:40 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-06-29 11:39 - 2016-06-29 11:39 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-06-29 11:39 - 2015-04-09 15:23 - 01559744 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2016-06-29 11:39 - 2015-03-08 12:22 - 03182104 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-06-29 11:39 - 2014-06-09 10:59 - 00560328 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-06-29 11:39 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-06-29 11:39 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-06-29 11:38 - 2016-06-29 11:44 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-06-29 11:38 - 2015-03-11 18:04 - 02825944 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-06-28 19:04 - 2016-09-05 10:09 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-06-28 19:04 - 2016-06-28 19:04 - 00001123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-06-28 19:03 - 2016-09-04 23:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-06-28 14:47 - 2016-06-28 15:04 - 00000000 ____D C:\Users\Public\interapp
2016-06-28 09:26 - 2016-06-28 09:26 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Apple Computer
2016-06-26 20:08 - 2016-07-20 19:32 - 00000000 ____D C:\Users\Public\CyberLink
2016-06-26 20:08 - 2016-07-20 19:32 - 00000000 ____D C:\Users\Davidson\Documents\CyberLink
2016-06-26 20:07 - 2016-06-29 18:35 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\CyberLink
2016-06-26 20:07 - 2016-06-26 20:07 - 00000000 ____D C:\Users\Davidson\AppData\Local\CyberLink
2016-06-26 20:03 - 2016-06-26 20:03 - 00000000 ____D C:\Users\Todos os Usuários\Apple Computer
2016-06-26 20:03 - 2016-06-26 20:03 - 00000000 ____D C:\ProgramData\Apple Computer
2016-06-26 20:01 - 2016-07-12 21:00 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-06-26 20:01 - 2016-06-26 20:01 - 00000000 ____D C:\Users\Todos os Usuários\Apple
2016-06-26 20:01 - 2016-06-26 20:01 - 00000000 ____D C:\Users\Davidson\AppData\Local\Apple
2016-06-26 20:01 - 2016-06-26 20:01 - 00000000 ____D C:\ProgramData\Apple
2016-06-26 19:59 - 2016-06-26 19:59 - 00000000 ____D C:\Users\Todos os Usuários\proDAD
2016-06-26 19:59 - 2016-06-26 19:59 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\proDAD
2016-06-26 19:59 - 2016-06-26 19:59 - 00000000 ____D C:\Users\Davidson\AppData\LocalLow\Apple Computer
2016-06-26 19:59 - 2016-06-26 19:59 - 00000000 ____D C:\ProgramData\proDAD
2016-06-26 19:59 - 2016-06-26 19:59 - 00000000 ____D C:\Program Files\proDAD
2016-06-26 19:59 - 2015-08-27 19:41 - 00607256 _____ (proDAD GmbH) C:\Windows\system32\prodad-codec.dll
2016-06-26 19:59 - 2015-08-27 19:41 - 00376344 _____ (proDAD GmbH) C:\Windows\system32\proDAD-PA-Support.dll
2016-06-26 19:59 - 2015-08-27 19:41 - 00034064 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\CLMirrorDriver.dll
2016-06-26 19:59 - 2015-08-27 19:41 - 00021264 _____ (CyberLink) C:\Windows\system32\Drivers\CLMirrorDriver.sys
2016-06-26 19:57 - 2016-06-26 19:58 - 00000000 ____D C:\Program Files\NewBlue
2016-06-26 19:57 - 2016-06-26 19:57 - 00000000 ____D C:\Program Files\Common Files\NewBlue
2016-06-26 19:56 - 2016-06-26 19:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
2016-06-26 19:56 - 2016-06-26 19:58 - 00000000 ____D C:\Program Files (x86)\NewBlue
2016-06-26 19:56 - 2016-06-26 19:56 - 00002063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Screen Recorder.lnk
2016-06-26 19:56 - 2016-06-26 19:56 - 00001980 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 14 (64-bit).lnk
2016-06-26 19:56 - 2016-06-26 19:56 - 00000000 ____D C:\Program Files (x86)\NSIS Uninstall Information
2016-06-26 19:56 - 2016-06-26 19:56 - 00000000 ____D C:\Program Files (x86)\CyberLink
2016-06-26 19:53 - 2016-06-26 19:57 - 00000000 ____D C:\Program Files\CyberLink
2016-06-26 19:51 - 2016-06-26 19:52 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2016-06-26 19:51 - 2016-06-26 19:52 - 00000000 ____D C:\ProgramData\Package Cache
2016-06-26 19:48 - 2016-07-01 15:44 - 00000000 ____D C:\Users\Todos os Usuários\CyberLink
2016-06-26 19:48 - 2016-07-01 15:44 - 00000000 ____D C:\ProgramData\CyberLink
2016-06-26 19:48 - 2016-06-26 19:48 - 00000000 ____D C:\Users\Todos os Usuários\SUPPORTDIR
2016-06-26 19:48 - 2016-06-26 19:48 - 00000000 ____D C:\ProgramData\SUPPORTDIR
2016-06-26 19:31 - 2016-06-26 20:11 - 00157063 ____H C:\Users\Davidson\Desktop\~WRL0005.tmp
2016-06-24 22:04 - 2004-03-09 00:00 - 00662288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomct2.ocx
2016-06-24 22:04 - 2003-07-06 13:07 - 00372736 _____ (Intel Corporation) C:\Windows\SysWOW64\ijl15.dll
2016-06-24 22:04 - 2000-05-21 23:00 - 00115920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx
2016-06-24 22:04 - 1999-11-21 13:11 - 00372736 _____ C:\Windows\SysWOW64\wintbr.ocx
2016-06-24 22:04 - 1999-05-06 23:00 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2016-06-24 22:04 - 1998-06-26 00:00 - 01062704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2016-06-24 22:04 - 1998-06-24 00:00 - 00166200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmask32.ocx
2016-06-24 18:33 - 2016-06-24 18:33 - 00000000 _RSHD C:\
2016-06-24 18:32 - 2016-06-24 18:32 - 00014256 _____ (WiseCleaner.com) C:\Windows\WiseFs64.sys
2016-06-24 18:32 - 2016-06-24 18:32 - 00001208 _____ C:\Users\Davidson\Documents\Wise Folder Hider.lnk
2016-06-24 18:32 - 2016-06-24 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Folder Hider
2016-06-24 18:32 - 2016-06-24 18:32 - 00000000 ____D C:\Program Files (x86)\Wise
2016-06-24 17:43 - 2016-09-10 10:51 - 00000000 ___HD C:\Windows\svcproxy
2016-06-24 17:43 - 2016-06-24 17:43 - 00000000 ____D C:\Users\Todos os Usuários\Kurupira
2016-06-24 17:43 - 2016-06-24 17:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kurupira
2016-06-24 17:43 - 2016-06-24 17:43 - 00000000 ____D C:\ProgramData\Kurupira
2016-06-24 17:43 - 2016-06-24 17:43 - 00000000 ____D C:\Program Files (x86)\Kurupira
2016-06-24 17:43 - 2015-03-05 21:30 - 00460288 _____ (Kurupira.net) C:\Windows\system32\SVCProxy64.dll
2016-06-24 17:43 - 2015-03-05 21:29 - 00354304 _____ (Kurupira.net) C:\Windows\SysWOW64\SVCProxy.dll
2016-06-24 17:43 - 2011-05-11 04:32 - 00032768 _____ () C:\Windows\SysWOW64\VBDelegator.dll
2016-06-24 17:43 - 2011-05-06 16:33 - 01867264 _____ (Osen Kusnadi) C:\Windows\SysWOW64\osenvistasuite2010.ocx
2016-06-24 17:43 - 2011-05-06 16:03 - 01342464 _____ (Osen Kusnadi) C:\Windows\SysWOW64\MySQLite2010.dll
2016-06-24 17:43 - 2011-04-29 10:42 - 00361472 _____ (Osen Kusnadi) C:\Windows\SysWOW64\osenvistasuite2010.dll
2016-06-24 17:43 - 2009-12-09 10:27 - 02187264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatMail_v7_9.dll
2016-06-24 17:43 - 2009-12-02 13:30 - 00145944 _____ (Desaware Inc.) C:\Windows\SysWOW64\dwshengine80.dll
2016-06-24 17:43 - 2009-01-20 03:20 - 00258048 _____ (InfoSoft Global (P) Ltd.) C:\Windows\SysWOW64\FusionCharts.ocx
2016-06-24 17:43 - 2008-10-10 13:36 - 00128840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswinsck.ocx
2016-06-24 17:43 - 2008-05-01 14:46 - 00187392 _____ (Desaware Inc.) C:\Windows\SysWOW64\dweasy80.OCX
2016-06-24 17:43 - 2004-10-17 03:32 - 00299008 _____ (xp-style-menu.com) C:\Windows\SysWOW64\XpNetMenu.ocx
2016-06-24 17:43 - 2004-03-09 01:00 - 00212240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RICHTX32.OCX
2016-06-24 17:43 - 2004-02-23 03:00 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msbind.dll
2016-06-24 17:43 - 1998-09-11 10:14 - 00021504 _____ () C:\Windows\SysWOW64\WBCustomizer.dll
2016-06-24 17:43 - 1998-04-14 10:51 - 00034304 _____ (Microsoft) C:\Windows\SysWOW64\NTSVC.ocx
2016-06-24 17:16 - 2016-06-24 17:16 - 00000000 ____D C:\Windows\SysWOW64\Hotspot Shield
2016-06-24 17:04 - 2016-09-05 17:08 - 00000000 ____D C:\Users\Todos os Usuários\Hotspot Shield
2016-06-24 17:04 - 2016-09-05 17:08 - 00000000 ____D C:\ProgramData\Hotspot Shield
2016-06-24 17:04 - 2016-09-05 17:08 - 00000000 ____D C:\Program Files (x86)\Hotspot Shield
2016-06-24 17:04 - 2016-06-24 17:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield
2016-06-21 14:23 - 2016-06-21 15:34 - 00000000 ____D C:\Program Files (x86)\SafeIP
2016-06-21 14:23 - 2015-08-03 06:54 - 00547328 _____ (SafeIP) C:\Windows\system32\SafeIPs64.dll
2016-06-21 14:23 - 2015-08-03 06:53 - 00384000 _____ (SafeIP) C:\Windows\SysWOW64\SafeIPs.dll
2016-06-20 15:22 - 2016-06-20 15:22 - 00077056 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avguniva.sys
2016-06-15 18:16 - 2016-05-13 19:15 - 00382184 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-06-15 18:16 - 2016-05-13 19:09 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-06-15 18:16 - 2016-05-13 19:09 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-06-15 18:16 - 2016-05-13 19:09 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-06-15 18:16 - 2016-05-13 19:09 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-06-15 18:16 - 2016-05-13 18:54 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-06-15 18:16 - 2016-05-13 18:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-06-15 18:16 - 2016-05-13 18:49 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-06-15 18:16 - 2016-05-13 18:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-06-15 18:16 - 2016-05-13 18:27 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-06-15 18:16 - 2016-05-12 14:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2016-06-15 18:16 - 2016-05-12 14:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-06-15 18:16 - 2016-05-12 14:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2016-06-15 18:16 - 2016-05-12 14:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-06-15 18:16 - 2016-05-12 14:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2016-06-15 18:16 - 2016-05-12 14:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2016-06-15 18:16 - 2016-05-12 14:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2016-06-15 18:16 - 2016-05-12 14:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2016-06-15 18:16 - 2016-05-12 12:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2016-06-15 18:16 - 2016-05-12 12:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2016-06-15 18:16 - 2016-05-12 12:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2016-06-15 18:16 - 2016-05-12 12:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2016-06-15 18:16 - 2016-05-12 12:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2016-06-15 18:16 - 2016-05-12 12:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2016-06-15 18:16 - 2016-05-12 11:58 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-06-15 18:16 - 2016-05-12 11:58 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-06-15 18:16 - 2016-05-12 11:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-06-15 18:16 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll
2016-06-15 18:16 - 2016-05-12 11:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe
2016-06-15 18:16 - 2016-05-12 10:05 - 00459640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-06-15 18:16 - 2016-05-12 10:05 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-06-15 18:16 - 2016-05-12 10:04 - 00249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-06-15 18:16 - 2016-05-11 14:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-06-15 18:16 - 2016-05-11 14:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-06-15 18:16 - 2016-05-11 14:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-06-15 18:16 - 2016-05-11 14:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-06-15 18:16 - 2016-05-11 12:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-06-15 18:16 - 2016-05-11 12:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-15 18:16 - 2016-05-11 12:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-06-15 18:16 - 2016-05-11 12:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-06-15 18:16 - 2016-05-11 12:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2016-06-15 18:16 - 2016-05-11 12:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2016-06-15 18:16 - 2016-05-11 11:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-06-15 18:15 - 2016-05-18 13:10 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-06-15 18:15 - 2016-05-18 13:09 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-06-15 18:15 - 2016-04-14 13:46 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-06-15 18:15 - 2016-04-14 13:42 - 03243520 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-06-15 18:15 - 2016-04-14 13:42 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-06-15 18:15 - 2016-04-14 13:42 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2016-06-15 18:15 - 2016-04-14 13:42 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-06-15 18:15 - 2016-04-14 13:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2016-06-15 18:15 - 2016-04-14 12:33 - 02365440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-06-15 18:15 - 2016-04-14 12:33 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-06-15 18:15 - 2016-04-14 12:33 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2016-06-15 18:15 - 2016-04-14 12:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2016-06-15 18:15 - 2016-04-14 12:19 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-06-15 18:15 - 2016-04-14 12:11 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2016-06-15 18:15 - 2016-04-09 03:58 - 14186496 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-06-15 18:15 - 2016-04-09 03:57 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-06-15 18:15 - 2016-04-09 03:54 - 12881408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-06-15 18:15 - 2016-04-09 03:54 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-06-15 18:15 - 2016-04-09 02:53 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-06-15 18:15 - 2016-04-09 02:44 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-06-15 18:15 - 2016-03-09 16:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-06-15 18:15 - 2016-03-09 15:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-06-13 18:27 - 2016-06-13 18:27 - 00000000 ____D C:\Users\Davidson\Documents\Blocos de Anotações do OneNote
2016-06-12 18:13 - 2016-06-12 18:13 - 00054795 ____N C:\Impressao.pdf

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-09-10 12:38 - 2016-04-19 15:33 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-09-10 12:38 - 2016-04-13 14:01 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-09-10 11:44 - 2016-05-20 13:27 - 00000000 ____D C:\Users\Todos os Usuários\MFAData
2016-09-10 11:44 - 2016-05-20 13:27 - 00000000 ____D C:\ProgramData\MFAData
2016-09-10 11:17 - 2016-05-16 22:12 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\uTorrent
2016-09-10 10:59 - 2009-07-14 01:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-09-10 10:59 - 2009-07-14 01:45 - 00026576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-09-10 10:51 - 2016-05-09 22:05 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2016-09-10 10:51 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-09-10 10:03 - 2016-04-14 22:56 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Skype
2016-09-10 09:04 - 2009-07-14 01:45 - 00441056 _____ C:\Windows\system32\FNTCACHE.DAT
2016-09-09 23:05 - 2016-05-13 08:58 - 00004478 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2016-09-09 23:05 - 2016-04-14 10:43 - 00003696 _____ C:\Windows\System32\Tasks\Adobe Reader and Acrobat Manager
2016-09-09 23:02 - 2016-04-13 09:48 - 00000000 ____D C:\Users\Davidson
2016-09-09 19:13 - 2016-04-19 16:02 - 00000000 ____D C:\Users\Davidson\AppData\LocalLow\LastPass
2016-09-09 13:49 - 2016-04-13 11:17 - 00121336 _____ C:\Users\Davidson\AppData\Local\GDIPFONTCACHEV1.DAT
2016-09-09 13:35 - 2016-05-09 22:08 - 00001024 _____ C:\.rnd
2016-09-09 12:16 - 2016-04-15 22:41 - 00000000 ____D C:\Users\Todos os Usuários\BlueStacksSetup
2016-09-09 12:16 - 2016-04-15 22:41 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2016-09-09 09:17 - 2016-05-13 10:07 - 00001024 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-09-09 09:17 - 2016-05-13 10:07 - 00001020 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-09-08 22:36 - 2016-05-13 10:07 - 00004032 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2016-09-08 22:36 - 2016-05-13 10:07 - 00003780 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2016-09-08 17:33 - 2010-11-21 06:37 - 00705268 _____ C:\Windows\system32\prfh0416.dat
2016-09-08 17:33 - 2010-11-21 06:37 - 00147108 _____ C:\Windows\system32\prfc0416.dat
2016-09-08 17:33 - 2009-07-14 02:13 - 01633534 _____ C:\Windows\system32\PerfStringBackup.INI
2016-09-08 17:33 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-09-08 17:31 - 2016-05-13 10:19 - 00000000 ___RD C:\Users\Davidson\Dropbox
2016-09-06 18:15 - 2016-04-14 10:43 - 00003826 _____ C:\Windows\System32\Tasks\InstallShield Update Service
2016-09-06 17:43 - 2016-05-17 20:18 - 00000000 ____D C:\Users\Davidson\AppData\Roaming\Audacity
2016-09-06 14:20 - 2016-04-14 22:56 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-09-06 14:20 - 2016-04-14 22:56 - 00000000 ____D C:\Users\Todos os Usuários\Skype
2016-09-06 14:20 - 2016-04-14 22:56 - 00000000 ____D C:\ProgramData\Skype
2016-09-05 21:43 - 2016-05-28 14:00 - 00000000 ____D C:\Users\Public\Documents\Winstep
2016-09-02 21:51 - 2016-05-13 10:06 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-09-02 16:00 - 2016-05-01 19:22 - 00024576 ____H C:\Users\Davidson\Desktop\photothumb.db
2016-08-31 09:16 - 2016-05-28 14:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winstep
2016-08-31 09:16 - 2016-05-28 14:00 - 00000000 ____D C:\Program Files (x86)\Winstep
2016-08-23 15:11 - 2016-06-09 15:30 - 00003706 _____ C:\Windows\System32\Tasks\Java Platform SE Auto Updater
2016-08-23 13:48 - 2016-04-14 10:38 - 00002520 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk
2016-08-23 13:48 - 2016-04-14 10:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp
2016-08-19 16:35 - 2016-04-14 10:38 - 00053008 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\TURegOpt.exe
2016-08-19 16:30 - 2016-06-02 21:13 - 00056080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\uxtuneup.dll
2016-08-19 16:30 - 2016-06-02 21:13 - 00049424 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\uxtuneup.dll
2016-08-17 13:34 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\rescache
2016-08-14 06:30 - 2009-07-14 02:08 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-08-12 10:16 - 2016-06-05 17:49 - 00000000 ____D C:\Program Files\Blue Coat K9 Web Protection
2016-08-11 20:35 - 2016-04-14 23:21 - 00000000 ____D C:\Windows\system32\MRT
2016-08-11 20:27 - 2016-04-14 23:21 - 147640136 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Arquivos na raiz de alguns diretórios =======

2016-04-19 16:03 - 2016-04-19 16:03 - 21572120 _____ (LastPass) C:\Program Files (x86)\Common Files\lpuninstall.exe

Alguns arquivos em TEMP:
====================
C:\Users\Davidson\AppData\Local\Temp\7za.exe
C:\Users\Davidson\AppData\Local\Temp\hijackthis.exe
C:\Users\Davidson\AppData\Local\Temp\libeay32.dll
C:\Users\Davidson\AppData\Local\Temp\msvcr120.dll
C:\Users\Davidson\AppData\Local\Temp\NirCmd.exe
C:\Users\Davidson\AppData\Local\Temp\PEVZ.EXE
C:\Users\Davidson\AppData\Local\Temp\remove.exe
C:\Users\Davidson\AppData\Local\Temp\sed.exe
C:\Users\Davidson\AppData\Local\Temp\shortcut.exe
C:\Users\Davidson\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Davidson\AppData\Local\Temp\sqlite3.dll
C:\Users\Davidson\AppData\Local\Temp\swreg.exe
C:\Users\Davidson\AppData\Local\Temp\swxcacls.exe
C:\Users\Davidson\AppData\Local\Temp\wget.exe
C:\Users\Davidson\AppData\Local\Temp\ZAScan.exe
C:\Users\Davidson\AppData\Local\Temp\zoek-delete.exe


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-09-07 20:45

==================== Fim de FRST.txt ============================

Addition.txt

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

O FRST deve ser executado diretamente da Área de Trabalho (Desktop), no entanto você executou da pasta:

 

Executando a partir de C:\Users\Davidson\Downloads\Programs

 

Delete-o daí, baixe um novo para o Desktop, execute o FRST, marque a opção Addition e clique no botão Examinar. Anexe os logs.

 

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Desative temporariamente seu antivírus, antispywares e firewall, para não causar conflitos.

 

Abra o seu Bloco de Notas, copie (control + c) e cole (control + v) todo o texto que está abaixo:

 

Citação

CreateRestorePoint:
CloseProcesses:

S3 VGPU; System32\drivers\rdvgkmd.sys [X]
CHR DefaultSearchKeyword: Profile 1 -> lp
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1

CMD:ipconfig /flushdns
EmptyTemp:

 

  • Salve este arquivo na Área de Trabalho (Desktop) como fixlist.txt
  • Execute novamente o FRST e clique no botão Corrigir;
  • Aguarde... ao final será gerado o log Fixlog.txt em sua Área de Trabalho (Desktop).
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá,

 

Segue o conteúdo do log:

 

Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 12-09-2016
Executado por Davidson (14-09-2016 22:41:12) Run:1
Executando a partir de C:\Users\Davidson\Desktop
Perfis Carregados: Davidson (Perfis Disponíveis: Davidson)
Modo da Inicialização: Normal
==============================================

fixlist Conteúdo:
*****************
CreateRestorePoint:
CloseProcesses:
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
CHR DefaultSearchKeyword: Profile 1 -> lp
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1
CMD:ipconfig /flushdns
EmptyTemp:
*****************

Ponto de Restauração criado com sucesso.
Processos fechados com sucesso.
VGPU => serviço removido (a) com sucesso.
Chrome DefaultSearchKeyword => removido (a) com sucesso.
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Default => Erro: Nenhuma correção automática foi encontrada para esta entrada.
CHR Profile: C:\Users\Davidson\AppData\Local\Google\Chrome\User Data\Profile 1 => Erro: Nenhuma correção automática foi encontrada para esta entrada.

========= ipconfig /flushdns =========


Configura‡Æo de IP do Windows

Libera‡Æo do Cache do DNS Resolver bem-sucedida.

========= Fim de CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12433663 B
Java, Flash, Steam htmlcache => 737 B
Windows/system/drivers => 144225677 B
Edge => 0 B
Chrome => 165593967 B
Firefox => 23724180 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 22272 B
Public => 0 B
ProgramData => 0 B
systemprofile => 58558278 B
systemprofile32 => 69044 B
LocalService => 0 B
NetworkService => 7794 B
Davidson => 477135072 B

RecycleBin => 275667781 B
EmptyTemp: => 1.1 GB de dados temporários Removidos.

================================


O sistema precisou ser reiniciado.

==== Fim de Fixlog 22:43:26 ====

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Baixe a Malwarebytes Anti-Malware (MBAM).
 
Clique duas vezes no mbam-setup.exe para instalar o programa.

  • Desmarque a caixa Ativar trial gratuito do MalwareBytes Anti-Malware PRO.
  • Se houver atualizações a serem feitas, serão baixadas e instaladas..
  • Clique em Configurações, clique em Detecção e proteção, marque Verificar por Rootkits.
  • Volte ao Painel e por fim clique em Verificar agora.
  • Começará então o exame. Aguarde, pois pode demorar.
  • Ao acabar o exame, se houver itens encontrados, certifique-se que estejam todas marcados e clique no botão Remover Selecionadas
  • Ao final da desinfecção, poderá aparecer um aviso se quer reiniciar o PC. (Ver Nota abaixo)
  • O log é automaticamente salvo pelo MBAM e para vê-lo, clique na aba Histórico -> Registros do aplicativo na janela principal do programa.
  • Clique duas vezes no log (Registro de verificação). Utilize o formato .txt para exportar o log.
  • O log de Proteção é desnecessário para a análise, exporte sempre o log correto.
  • Selecione, copie e cole o conteúdo deste log em sua próxima resposta.

 

NOTA: Se o MBAM encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC (talvez mais de uma vez). Faça isso imediatamente, ao ser perguntado se quer reiniciar o PC.

 

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá,

 

Segue o log de verificação:

 

Malwarebytes Anti-Malware
www.malwarebytes.org

Data da verificação: 16/09/2016
Hora da verificação: 11:22:59
Arquivo de registro: Log Malwarebytes.txt
Administrador: Sim

Versão: 2.2.1.1043
Banco de dados de malware: v2016.09.16.05
Banco de dados de rootkit: v2016.08.15.01
Licença: Premium
Proteção contra malware: Habilitado
Proteção contra website malicioso: Habilitado
Autoproteção: Desabilitado

Sistema operacional: Windows 7 Service Pack 1
CPU: x64
Sistema de arquivos: NTFS
Usuário: Davidson

Tipo de verificação: Verificação da ameaça
Resultado: Concluído
Objetos verificados: 309438
Tempo decorrido: 26 min, 53 seg

Memória: Habilitado
Inicialização: Habilitado
Sistema de arquivos: Habilitado
Arquivos compactados: Habilitado
Rootkits: Habilitado
Heurística: Habilitado
PUP: Habilitado
PUM: Habilitado

Processos: 0
(Nenhum item malicioso detectado)

Módulos: 0
(Nenhum item malicioso detectado)

Chaves de registro: 0
(Nenhum item malicioso detectado)

Valores de registro: 0
(Nenhum item malicioso detectado)

Dados de registro: 0
(Nenhum item malicioso detectado)

Pastas: 0
(Nenhum item malicioso detectado)

Arquivos: 0
(Nenhum item malicioso detectado)

Setores físicos: 0
(Nenhum item malicioso detectado)


(end)

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Desative temporariamente seu antivirus, antispywares e firewall, para não causar conflitos.

Baixe o Stinger e salve em sua Área de trabalho (Desktop).
32 bit (x86) ou 64 bit (x64)

  • Execute o arquivo Stinger.exe
    • Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png
  • Clique no botão “I Accept”


Stinger%20a.png

Na nova janela clique em “Advanced” e depois “Settings”

Stinger%20b.png

Na janela configurações deixe conforme imagem abaixo e clique no botão “Save”

9hnsyu.png

Clique em “Customize my Scan”

Stinger%20f.png

Selecione as unidades do sistema e em seguida clique no botão “Scan”

Stinger%20g.png

Ao final clique em “View log”, será aberto uma janela com o log em seu navegador.
Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

 

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá,

 

Segue o Log:

 

McAfee Stinger Scan Results

McAfee® Labs Stinger™ Version 12.1.0.2116 built on Sep 16 2016 at 12:45:39 Copyright© 2015, McAfee, Inc. All Rights Reserved. AV Engine version v5800.7501 for Windows. Virus data file v1000.0 created on Sep 15, 2016 Ready to scan for 9892 viruses, trojans and variants. Custom scan initiated on sábado, setembro 17, 2016 20:33:28 Rootkit scan result : Clean. Summary Report on C: D: File(s) TotalFiles:............ 376459 Clean:................. 186946 Not Scanned:........... 189513 Possibly Infected:..... 0 Time: 01:41:57 Scan completed on sábado, setembro 17, 2016 22:15:25

 

Editado por Rapha Didone

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Baixe Security Check, by glax24 e salve em sua Área de trabalho (Desktop).

 

Atenção: Usuários Windows Vista, 7 e 8, cliquem com o botão direito do mouse e escolha: execadmin.png 

  • Aguarde enquanto a ferramenta faz o exame.
  • Ao final salve log como SecurityCheck.html
  • Abra o arquivo com o bloco de notas;
  • Selecione, copie e cole o conteúdo deste log em sua sua próxima resposta.

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá,

 

Segue o log:

 

SecurityCheck by glax24 & Severnyj v.1.4.0.45 [10.09.16]
WebSite: www.safezone.cc
DateLog: 20.09.2016 21:26:18
Path starting: C:\Users\Davidson\AppData\Local\Temp\SecurityCheck\SecurityCheck.exe
Log directory: C:\SecurityCheck\
IsAdmin: True
User: Davidson
VersionXML: 3.33is-15.09.2016
___________________________________________________________________________

Windows 7(6.1.7601) Service Pack 1 (x64) Ultimate Lang: Portuguese(0416)
Installation date OS: 13.04.2016 12:48:28
LicenseStatus: Windows(R) 7, Ultimate edition The machine is permanently activated.
Boot Mode: Normal
Default Browser: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
SystemDrive: C: FS: [NTFS] Capacity: [319.2 Gb] Used: [81.2 Gb] Free: [238 Gb]
------------------------------- [ Windows ] -------------------------------
Internet Explorer 11.0.9600.18449
User Account Control enabled
Automatic download and scheduled installation
Date install updates: 2016-09-16 19:23:13
Windows Update (wuauserv) - The service is running
Central de Segurança (wscsvc) - The service is running
Registro remoto (RemoteRegistry) - The service has stopped
Descoberta SSDP (SSDPSRV) - The service is running
Serviços de Área de Trabalho Remota (TermService) - The service has stopped
Windows Remote Management (WS-Management) (WinRM) - The service has stopped
------------------------------ [ MS Office ] ------------------------------
Microsoft Office 2010 x64 v.14.0.4763.1000
---------------------------- [ Antivirus_WMI ] ----------------------------
AVG Internet Security (enabled and up to date)
---------------------------- [ Firewall_WMI ] -----------------------------
AVG Internet Security (enabled)
--------------------------- [ AntiSpyware_WMI ] ---------------------------
Windows Defender (enabled and up to date)
AVG Internet Security (enabled and up to date)
-------------------------- [ SecurityUtilities ] --------------------------
Malwarebytes Anti-Malware versão 2.2.1.1043 v.2.2.1.1043
--------------------------- [ OtherUtilities ] ----------------------------
7-Zip 16.02 (x64) v.16.02
WinRAR 4.20 (64-bit) v.4.20.0 Warning! Download Update
--------------------------------- [ IM ] ----------------------------------
Skype™ 7.27 v.7.27.101
---------------------------- [ ProxyAndVPNs ] -----------------------------
Hotspot Shield 5.4.11 v.5.4.11 Warning! This app can show ads.
Hotspot Shield 5.4.11 Embedded v.5.4.11.9772 Warning! This app can show ads.
Hotspot Shield Service (hshld) - The service has stopped
--------------------------------- [ P2P ] ---------------------------------
µTorrent v.3.4.8.42576 Warning! P2P-client.
-------------------------------- [ Java ] ---------------------------------
Java 8 Update 91 v.8.0.910.15 Warning! Download Update
Uninstall old version and install new one (jre-8u102-windows-i586.exe).
--------------------------- [ AppleProduction ] ---------------------------
QuickTime 7 v.7.79.80.95 Warning! This software is no longer supported. Please uninstall it and use another software.
--------------------------- [ AdobeProduction ] ---------------------------
Adobe Flash Player 23 NPAPI v.23.0.0.162
Adobe Acrobat Reader DC - Português v.15.017.20053
------------------------------- [ Browser ] -------------------------------
Google Chrome v.52.0.2743.82 Warning! Download Update
Mozilla Firefox 48.0.2 (x86 pt-BR) v.48.0.2
--------------------------- [ RunningProcess ] ----------------------------
chrome.exe
------------------ [ AntivirusFirewallProcessServices ] -------------------
AvgAMPS (AvgAMPS) - The service has stopped
C:\PROGRA~2\AVG\Av\avgrsa.exe v.16.111.0.7797
C:\Program Files (x86)\AVG\Av\avgcsrva.exe v.16.111.0.7797
AVGIDSAgent (AVGIDSAgent) - The service is running
AVG Service (avgsvc) - The service is running
C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe v.1.123.2.37609
AVG Service (avgsvc) - The service is running
AVG Firewall (avgfws) - The service is running
C:\Program Files (x86)\AVG\Av\avgfwsa.exe v.16.111.0.7797
AVG WatchDog (avgwd) - The service is running
C:\Program Files (x86)\AVG\Av\avgwdsvca.exe v.16.111.0.7797
C:\Program Files (x86)\AVG\Av\avgnsa.exe v.16.111.0.7797
C:\Program Files (x86)\AVG\Av\avgemca.exe v.16.111.0.7797
C:\Program Files (x86)\AVG\Av\avgui.exe v.16.111.0.7797
C:\Program Files (x86)\AVG\Framework\Common\avguix.exe v.1.123.2.37609
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe v.1.0.1.922
MBAMScheduler (MBAMScheduler) - The service is running
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe v.3.1.7.0
MBAMService (MBAMService) - The service is running
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe v.3.2.21.0
McAfee Validation Trust Protection Service (mfevtp) - The service is running
C:\Windows\System32\mfevtps.exe
Windows Defender (WinDefend) - The service is running
---------------------------- [ UnwantedApps ] -----------------------------
Skype Click to Call v.8.3.0.9150 Warning! Browser's toolbar. It can slow down the working of your browser and have violation privacy problems.
----------------------------- [ End of Log ] ------------------------------
 

Editado por Rapha Didone

Compartilhar este post


Link para o post
Compartilhar em outros sites

Caro @Rapha Didone

 

Como está seu Windows?

 

# Etapa nº 1 #

 

Baixe o Delfix by Xplode e salve na sua área de trabalho.

 

Clique duas vezes no delfix.exe para executá-lo. Marque as caixas conforme imagem.

 

** Usuários do Windows Vista ou Windows 7 clique com o direito sobre o arquivo delfix.exe, depois clique em execadmin.png.

 

2mez6ld.png

 

Clique no botão Executar.

 

Ao final será gerado um log, mas não é necessário postar.
 
# Etapa nº 2 #
 
imageproxy.php?img=http%3A%2F%2Fi65.tiny Versões antigas de programas têm vulnerabilidades que alguns malwares podem usar para infectar o seu sistema.
 
Por isso, é recomendável atualizar os programas que o Security Check apontou como desatualizados (os updates opcionais ficam ao seu critério).
 
Basta clicar no Download Update de cada aviso (post acima), que irá para o site do desenvolvedor.

<<@>> Mantenha sempre seu Windows atualizado; mantenha uma vigilância constante com o firewall e antivírus e por fim, lembre-se que, a melhor forma de prevenir começa pelas nossas atitudes!

 

# Etapa nº 3 #

 

O Ccleaner é um excelente utilitário de limpeza para o computador.

 

Faça o download dele aqui Ccleaner

 

  • Após a instalação vá até o local onde o programa foi instalado, geralmente em C:\Arquivos de programas\CCleaner.
  • Clique duas vezes nesta pasta;
  • Numa área vazia desta janela, clique com o botão direito do mouse e escolha Novo > pasta e crie uma nova pasta;
  • Coloque o nome de backups.
  • Abra o programa e clique em Executar Limpeza;
  • Clique no botão Registro > Procurar Erros > Corrigir erro(s) seleciona(s)...
  • Observação: Não se esqueça de aceitar o backup das correções, e salvá-los nas pasta criada acima!

Abraços :D

Compartilhar este post


Link para o post
Compartilhar em outros sites
Visitante
Este tópico está impedido de receber novos posts.





Sobre o Clube do Hardware

No ar desde 1996, o Clube do Hardware é uma das maiores, mais antigas e mais respeitadas publicações sobre tecnologia do Brasil. Leia mais

Direitos autorais

Não permitimos a cópia ou reprodução do conteúdo do nosso site, fórum, newsletters e redes sociais, mesmo citando-se a fonte. Leia mais

×