cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 01-03-2017
Executado por Usuario (administrador) em USUARIO-PC (02-03-2017 08:49:36)
Executando a partir de C:\Users\Usuario\Downloads
Perfis Carregados: Usuario (Perfis Disponíveis: Usuario)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: Chrome)
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\Program Files (x86)\AppBrad\NetExpressUpdater.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(Beijing WatchData System Co., Ltd.) C:\Windows\SysWOW64\Watchdata\Watchdata Brazil CSP v1.0\WDBrazMon34.exe
(Firebird Project) C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(GAS Tecnologia) C:\Program Files (x86)\GbPlugin\gbpsv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(GAS Tecnologia LTDA) C:\Program Files\Diebold\Warsaw\core.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
( Beijing WatchData System Co., Ltd.) C:\Windows\SysWOW64\Watchdata\Watchdata Brazil CSP v1.0\BBCertM32.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Agrotis Consultoria Agronômica) \\Joice-pc\e\SAFEBD\SISTEMAS\estoqbd.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe

==================== Registro (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8447192 2015-01-28] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2016-01-29] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Diebold - Warsaw] => C:\Program Files\Diebold\Warsaw\core.exe [927280 2016-11-11] (GAS Tecnologia LTDA)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [293872 2014-08-25] (Intel Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [33648 2007-08-24] (Microsoft Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9080768 2016-11-16] (AVAST Software)
HKLM-x32\...\Run: [wdbraz_certm] => C:\Windows\SysWOW64\Watchdata\Watchdata Brazil CSP v1.0\BBCertM32.exe [57488 2011-03-29] ( Beijing WatchData System Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation)
Winlogon\Notify\ GbPluginBb: C:\Program Files (x86)\GbPlugin\gbieh.dll [2016-06-07] (Banco do Brasil)
Winlogon\Notify\ GbPluginCef: C:\Program Files (x86)\GbPlugin\gbiehCef.dll [2016-11-01] (Caixa Economica Federal)
Winlogon\Notify\ GbPluginuni: C:\Program Files (x86)\GbPlugin\gbiehuni.dll [2016-12-06] (Banco Itaú Unibanco)
HKU\S-1-5-21-53600636-3130324572-2940492648-1000\...\Run: [GoogleDriveSync] => "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
HKU\S-1-5-21-53600636-3130324572-2940492648-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545056 2017-02-14] (Skype Technologies S.A.)
HKU\S-1-5-21-53600636-3130324572-2940492648-1000\...\MountPoints2: {fa620b4e-99d5-11e6-999e-806e6f6e6963} - D:\Bin\ASSETUP.exe
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - C:\Program Files (x86)\GbPlugin\gbieh.dll [1947872 2016-06-07] (Banco do Brasil)
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399003} - C:\Program Files (x86)\GbPlugin\gbiehcef.dll [1903328 2016-11-01] (Caixa Economica Federal)
ShellExecuteHooks-x32: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399008} - C:\Program Files (x86)\GbPlugin\gbiehuni.dll [1951968 2016-12-06] (Banco Itaú Unibanco)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-10-24] (AVAST Software)

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 200.204.0.10 200.204.0.138
Tcpip\..\Interfaces\{D4CA25DD-4297-4831-BD04-F8E9144D2C0E}: [DhcpNameServer] 200.204.0.10 200.204.0.138

Internet Explorer:
==================
HKU\S-1-5-21-53600636-3130324572-2940492648-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://br.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset
HKU\S-1-5-21-53600636-3130324572-2940492648-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pt-br/?ocid=iehp
SearchScopes: HKU\S-1-5-21-53600636-3130324572-2940492648-1000 -> {BD827CEF-347E-44A9-9025-FC566DFB55B8} URL = hxxps://br.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-10-24] (AVAST Software)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-03-02] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-10-24] (AVAST Software)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540000} -> C:\Program Files (x86)\GbPlugin\gbieh.dll [2016-06-07] (Banco do Brasil)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540003} -> C:\Program Files (x86)\GbPlugin\gbiehcef.dll [2016-11-01] (Caixa Economica Federal)
BHO-x32: GbIehObj Class -> {C41A1C0E-EA6C-11D4-B1B8-444553540008} -> C:\Program Files (x86)\GbPlugin\gbiehuni.dll [2016-12-06] (Banco Itaú Unibanco)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-03-02] (Oracle Corporation)

FireFox:
========
FF DefaultProfile: eg4fgus2.default
FF ProfilePath: C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\eg4fgus2.default [2017-03-01]
FF NewTab: Mozilla\Firefox\Profiles\eg4fgus2.default -> about:newtab
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\eg4fgus2.default -> Avast Search
FF DefaultSearchUrl: Mozilla\Firefox\Profiles\eg4fgus2.default -> hxxps://search.avast.com/AV772/search/web?q={searchTerms}
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\eg4fgus2.default -> Avast Search
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\eg4fgus2.default -> Avast Search
FF Homepage: Mozilla\Firefox\Profiles\eg4fgus2.default -> hxxps://search.avast.com/AV772/
FF Keyword.URL: Mozilla\Firefox\Profiles\eg4fgus2.default -> hxxps://search.avast.com/AV772/search/web?q={searchTerms}
FF Extension: (Search and New Tab by Yahoo) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\eg4fgus2.default\Extensions\jid1-16aeif9OQIRKxA@jetpack.xpi [2016-11-29]
FF Extension: (SHA-1 deprecation staged rollout) - C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\eg4fgus2.default\features\{2ab963d4-2611-4637-8032-14f77f93e608}\disableSHA1rollout@mozilla.org.xpi [2017-02-17]
FF SearchPlugin: C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\eg4fgus2.default\searchplugins\avast-search.xml [2016-10-24]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-10-24]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-10-24]
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-14] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-14] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-04-29] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-04-29] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-03-02] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-03-02] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-29] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-29] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-19] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-12-17] (Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default [2017-03-02]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-24]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-24]
CHR Extension: (Pesquisa do Google) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-10-24]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-19]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-24]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-02-08]
CHR HKU\S-1-5-21-53600636-3130324572-2940492648-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fabhkdeopjkcpkmofliimbjckmocfiom] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fdbpcigaolookbahgdofnimidinicfid] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Serviços (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-01-28] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-10-24] (AVAST Software)
R2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe [154112 2013-03-19] (Firebird Project) [Arquivo não assinado]
R3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe [5708800 2013-03-19] (Firebird Project) [Arquivo não assinado]
R2 GbpSv; C:\Program Files (x86)\GbPlugin\gbpsv.exe [631520 2017-03-02] (GAS Tecnologia)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2016-01-29] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-04-29] (Intel Corporation)
R2 NetExpress Updater; C:\Program Files (x86)\AppBrad\NetExpressUpdater.exe [18936 2016-07-22] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2016-01-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833360 2016-01-29] (NVIDIA Corporation)
R2 Warsaw Technology; C:\Program Files\Diebold\Warsaw\core.exe [927280 2016-11-11] (GAS Tecnologia LTDA)
R2 WDBrazMonitor34; C:\Windows\SysWOW64\Watchdata\Watchdata Brazil CSP v1.0\WDBrazMon34.exe [75680 2011-03-24] (Beijing WatchData System Co., Ltd.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-28] ()
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-10-24] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-10-24] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-10-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-10-24] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-10-24] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2016-10-24] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2016-10-24] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-10-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2016-10-24] (AVAST Software)
R1 gbpddfac; C:\Windows\System32\drivers\gbpddfac64.sys [28888 2017-03-02] (GAS Tecnologia)
R0 gbpddreg; C:\Windows\System32\drivers\gbpddreg64.sys [29816 2017-03-02] (GAS Tecnologia)
R3 GBPRCM; C:\Program Files (x86)\GbPlugin\gbprcm64.sys [29912 2016-05-09] (GAS Tecnologia)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-05-28] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [118272 2014-04-29] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2016-01-29] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2016-01-29] (NVIDIA Corporation)
R3 Warsaw_PP; C:\Program Files (x86)\GbPlugin\wsftprp64.sys [24792 2016-05-09] (GAS Tecnologia LTDA)
R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [28376 2017-03-02] (GAS Tecnologia)
R1 wsddntf; C:\Windows\System32\DRIVERS\wsddntf.sys [36984 2016-06-16] (GAS Tecnologia)
R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [25184 2016-11-11] (GAS Tecnologia)
R3 wsddprm; C:\Windows\system32\drivers\wsddprm.sys [25184 2016-11-11] (GAS Tecnologia)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2017-03-02 08:43 - 2017-03-02 08:43 - 00001125 _____ C:\Users\Public\Desktop\DLL-Files.com Client.lnk
2017-03-02 08:43 - 2017-03-02 08:43 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\DLL-files.com
2017-03-02 08:43 - 2017-03-02 08:43 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\DFXCT
2017-03-02 08:43 - 2017-03-02 08:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL-Files.com Client
2017-03-02 08:43 - 2017-03-02 08:43 - 00000000 ____D C:\Program Files (x86)\DLL-Files.com Client
2017-03-02 08:42 - 2017-03-02 08:42 - 02729024 _____ (DLL-Files.com Client ) C:\Users\Usuario\Downloads\clientsetup_fde-0.exe
2017-03-02 08:37 - 2017-03-02 08:49 - 00028173 _____ C:\Users\Usuario\Downloads\Addition.txt
2017-03-02 08:37 - 2017-03-02 08:49 - 00019458 _____ C:\Users\Usuario\Downloads\FRST.txt
2017-03-02 08:36 - 2017-03-02 08:49 - 00000000 ____D C:\FRST
2017-03-02 08:35 - 2017-03-02 08:36 - 02423808 _____ (Farbar) C:\Users\Usuario\Downloads\FRST64.exe
2017-03-02 08:30 - 2017-03-02 08:31 - 14230000 _____ (Microsoft Corporation) C:\Users\Usuario\Downloads\vc_redist.x86.exe
2017-03-02 08:22 - 2017-03-02 08:24 - 14749120 _____ (Microsoft Corporation) C:\Users\Usuario\Downloads\vc_redist.x64.exe
2017-03-02 08:11 - 2017-03-02 08:11 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk
2017-03-02 08:11 - 2017-03-02 08:11 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-03-02 08:11 - 2017-03-02 08:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-03-02 08:03 - 2017-03-02 08:03 - 01631200 _____ (Skype Technologies S.A.) C:\Users\Usuario\Downloads\SkypeSetup.exe
2017-03-02 07:40 - 2017-03-02 08:33 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache
2017-03-02 07:40 - 2017-03-02 08:33 - 00000000 ____D C:\ProgramData\Package Cache
2017-03-01 17:55 - 2017-03-01 17:59 - 42460598 _____ C:\Users\Usuario\Downloads\AGROMINASPA010317.rar
2017-03-01 17:18 - 2017-03-01 17:49 - 00000000 ____D C:\Users\Usuario\Desktop\nf desconto bradesco
2017-03-01 10:42 - 2017-03-01 10:42 - 00005743 _____ C:\Users\Usuario\Desktop\férias thalita.pdf
2017-02-27 08:07 - 2017-02-27 08:18 - 00038400 _____ C:\Users\Usuario\Desktop\vendas marcelo ricardo.xls
2017-02-24 14:55 - 2017-02-24 14:55 - 00004226 _____ C:\Users\Usuario\Downloads\86924022017.pdf
2017-02-23 16:38 - 2017-02-23 16:38 - 00016244 _____ C:\Users\Usuario\Downloads\Boleto (1).pdf
2017-02-23 09:17 - 2017-02-23 09:17 - 00055369 _____ C:\Users\Usuario\Desktop\estoque.pdf
2017-02-22 11:02 - 2017-02-22 11:03 - 01001208 _____ C:\Users\Usuario\Downloads\CONTRATO DE RENEGOCIAÇÃO E QUITAÇÃO DE DÍVIDA.pdf
2017-02-21 15:43 - 2017-02-21 15:43 - 00572544 _____ C:\Users\Usuario\Downloads\104-SIG11.conf
2017-02-21 15:42 - 2017-02-21 15:42 - 00572548 _____ C:\Users\Usuario\Downloads\104-SIG14 (1).conf
2017-02-21 15:41 - 2017-02-21 15:41 - 00570516 _____ C:\Users\Usuario\Downloads\104-SR5.conf
2017-02-21 15:41 - 2017-02-21 15:41 - 00567692 _____ C:\Users\Usuario\Downloads\104-SI.conf
2017-02-21 15:40 - 2017-02-21 15:40 - 00567728 _____ C:\Users\Usuario\Downloads\104-CR.conf
2017-02-21 15:37 - 2017-02-21 15:37 - 00568116 _____ C:\Users\Usuario\Downloads\104-CS.conf
2017-02-21 15:36 - 2017-02-21 15:36 - 00572548 _____ C:\Users\Usuario\Downloads\104-SIG14.conf
2017-02-21 11:49 - 2017-02-21 11:50 - 12970544 _____ (TeamViewer GmbH) C:\Users\Usuario\Downloads\TeamViewer_Setup_pt (2).exe
2017-02-21 11:47 - 2017-02-21 11:47 - 01817200 _____ ( ) C:\Users\Usuario\Downloads\Baixaki_teamviewer_V5eFTg.exe
2017-02-21 10:18 - 2017-02-21 10:18 - 00013601 _____ C:\Users\Usuario\Desktop\Boleto de Cobrança fausto.pdf
2017-02-21 09:06 - 2017-02-21 09:06 - 00022547 _____ C:\Users\Usuario\Desktop\cheques descontado caixa.pdf
2017-02-20 14:51 - 2017-02-20 14:51 - 00004354 _____ C:\Users\Usuario\Downloads\GTPY20022017.pdf
2017-02-17 10:20 - 2017-02-17 10:20 - 00004073 _____ C:\Users\Usuario\Downloads\comprovante juros ihara.pdf
2017-02-17 10:04 - 2017-02-17 10:04 - 00005353 _____ C:\Users\Usuario\Desktop\comprovante capital - ihara.PDF
2017-02-17 08:09 - 2017-02-17 08:11 - 00037376 _____ C:\Users\Usuario\Desktop\ESTOQUE IHARA.xls
2017-02-16 14:01 - 2017-02-16 14:01 - 00016255 _____ C:\Users\Usuario\Downloads\Boleto.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00006625 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216110135.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00006026 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216110113.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00005398 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105834.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00003840 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216110030.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00003605 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105820.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00002996 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216110009.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00002637 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105918.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00002545 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105946.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00002539 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105758.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00002388 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105931.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00001842 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105903.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00001656 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105849.pdf
2017-02-16 10:06 - 2017-02-16 10:06 - 00001408 _____ C:\Users\Usuario\Downloads\extrato_financeiro_20170216105705.pdf
2017-02-16 10:03 - 2017-02-16 10:03 - 02700766 _____ C:\Users\Usuario\Desktop\Informe Anual da DIRF.pdf
2017-02-16 10:03 - 2017-02-16 10:03 - 02696327 _____ C:\Users\Usuario\Downloads\Informe Anual da DIRF
2017-02-15 15:56 - 2017-02-15 15:56 - 00011492 _____ C:\Users\Usuario\Desktop\+raiz.pdf
2017-02-15 10:27 - 2017-02-15 10:27 - 00007858 _____ C:\Users\Usuario\Desktop\comprovante gabriel coutinho2.PDF
2017-02-15 10:25 - 2017-02-15 10:25 - 00007869 _____ C:\Users\Usuario\Desktop\comprovante gabriel coutinho.PDF
2017-02-15 10:07 - 2017-02-15 10:07 - 00013209 _____ C:\Users\Usuario\Desktop\dow.pdf
2017-02-15 09:22 - 2017-02-15 09:23 - 00125440 _____ C:\Users\Usuario\Desktop\projeto preço novo.xls
2017-02-14 15:38 - 2017-02-14 15:38 - 00011462 _____ C:\Users\Usuario\Desktop\nf enervig.pdf
2017-02-14 15:14 - 2017-02-14 15:14 - 00016861 _____ C:\Users\Usuario\Desktop\BOLETOS ITAÚ1.xlsx
2017-02-14 15:09 - 2017-02-14 15:11 - 00010027 _____ C:\Users\Usuario\Desktop\BOLETOS BAIXADOS-LIQUIDADOS-DESCONTADOS-ITAÚ.xls
2017-02-14 14:54 - 2017-02-14 14:54 - 00011771 _____ C:\Users\Usuario\Desktop\Comprovante.pdf
2017-02-14 14:30 - 2017-02-14 14:30 - 00004456 _____ C:\Users\Usuario\Desktop\MovTit.pdf
2017-02-14 09:46 - 2017-02-14 09:46 - 00006875 _____ C:\Users\Usuario\Downloads\erro sped icms 13 02.pdf
2017-02-14 07:38 - 2017-02-14 07:38 - 00066467 _____ C:\Users\Usuario\Downloads\Aviso Marcelo.pdf
2017-02-14 07:38 - 2017-02-14 07:38 - 00065031 _____ C:\Users\Usuario\Downloads\Aviso Ivann.pdf
2017-02-14 07:38 - 2017-02-14 07:38 - 00046187 _____ C:\Users\Usuario\Downloads\Aviso Mariana.pdf
2017-02-14 07:33 - 2017-02-14 07:36 - 42327261 _____ C:\Users\Usuario\Downloads\AGROMINASPA (2).rar
2017-02-13 16:33 - 2017-02-13 16:33 - 00330153 _____ C:\Users\Usuario\Desktop\Banco Itaú S_A - SEGURO DE VIDA.pdf
2017-02-13 15:44 - 2017-02-13 15:44 - 00003948 _____ C:\Users\Usuario\Downloads\erro 13-02.pdf
2017-02-13 14:09 - 2017-02-13 14:09 - 00068594 _____ C:\Users\Usuario\Desktop\CreditoNOVO.pdf
2017-02-13 09:32 - 2017-02-13 10:17 - 00037376 _____ C:\Users\Usuario\Desktop\sgg0074.xls
2017-02-13 08:52 - 2017-02-13 08:52 - 00014977 _____ C:\Users\Usuario\Desktop\35170201372142000142550010000096121000297496.pdf
2017-02-13 08:43 - 2017-02-13 08:43 - 00018272 _____ C:\Users\Usuario\Desktop\35170201372142000142550010000096111000297480.pdf
2017-02-13 08:22 - 2017-02-13 08:22 - 00015961 _____ C:\Users\Usuario\Downloads\Book1.xlsx
2017-02-13 07:39 - 2017-02-13 07:39 - 00005134 _____ C:\Users\Usuario\Downloads\HC0813022017.pdf
2017-02-13 07:39 - 2017-02-13 07:39 - 00004060 _____ C:\Users\Usuario\Downloads\baixa protesto - josé osvaldo.pdf
2017-02-10 10:41 - 2017-02-10 10:41 - 00005492 _____ C:\Users\Usuario\Desktop\COMPROVANTE IBRA.PDF
2017-02-10 10:30 - 2017-02-10 10:30 - 00005513 _____ C:\Users\Usuario\Desktop\COMPROVANTE FIAT.PDF
2017-02-10 10:03 - 2017-02-10 10:03 - 00068594 _____ C:\Users\Usuario\Desktop\Credito.pdf
2017-02-09 13:01 - 2017-02-09 13:01 - 00223916 _____ C:\Users\Usuario\Downloads\HELIO_ALENCAR_GENGHINI_JUNIOR_636222455915803813.pdf
2017-02-09 08:53 - 2017-02-09 08:53 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas_SPED
2017-02-09 08:52 - 2017-02-09 08:53 - 00000000 ____D C:\Users\Usuario\.spedfiscal
2017-02-09 08:38 - 2017-02-09 08:48 - 134085285 _____ (Flexera Software) C:\Users\Usuario\Downloads\PVA_EFD_w32-2.3.3.exe
2017-02-09 07:06 - 2017-02-09 07:06 - 00020782 _____ C:\Users\Usuario\Downloads\nfe_56.182.pdf
2017-02-08 15:32 - 2017-02-08 15:32 - 00003436 _____ C:\Users\Usuario\Downloads\RECIBO ECF 2016.pdf
2017-02-08 15:31 - 2017-02-08 15:31 - 00070737 _____ C:\Users\Usuario\Downloads\INFORMAÇÕES ECONOMICAS.pdf
2017-02-03 13:41 - 2017-02-03 13:41 - 00218630 _____ C:\Users\Usuario\Downloads\Entrada Socorro 01-2017.PDF
2017-02-03 13:03 - 2017-02-03 13:03 - 00000059 _____ C:\Users\Usuario\Downloads\notas_fiscais_20170203140317.csv
2017-02-03 13:03 - 2017-02-03 13:03 - 00000059 _____ C:\Users\Usuario\Downloads\notas_fiscais_20170203140317 (1).csv
2017-02-03 09:55 - 2017-02-03 09:56 - 00009237 _____ C:\Users\Usuario\Downloads\Lista Clientes Encontro Taiô leste1- Março 2017.xlsx
2017-02-02 16:51 - 2017-02-02 16:52 - 04374528 _____ C:\Users\Usuario\Downloads\Não confirmado 819727.crdownload
2017-02-02 16:08 - 2017-02-02 16:08 - 01486603 _____ C:\Users\Usuario\Downloads\19-ALTERÇÃO CONTRATUAL - 19.06.2015 - ULTIMA.rar
2017-02-02 15:02 - 2017-02-02 15:02 - 00013438 _____ C:\Users\Usuario\Downloads\agrominas (2).pdf
2017-02-02 14:41 - 2017-02-02 14:41 - 00003254 _____ C:\Users\Usuario\Downloads\comprovante (1).html
2017-02-02 14:34 - 2017-02-02 14:34 - 00063784 _____ C:\Users\Usuario\Downloads\00902022017.pdf
2017-02-02 11:19 - 2017-02-02 11:20 - 00210384 _____ C:\Users\Usuario\Downloads\Minha_Fatura_CLASSICO GOLD MC-11-02-2017.pdf
2017-02-01 14:55 - 2017-02-01 14:55 - 00001367 _____ C:\Users\Usuario\Downloads\video0923.zip
2017-02-01 13:51 - 2017-02-01 13:51 - 00006078 _____ C:\Users\Usuario\Downloads\extrato (5).pdf
2017-02-01 13:50 - 2017-02-01 13:50 - 00004762 _____ C:\Users\Usuario\Downloads\extrato (4).pdf
2017-02-01 13:00 - 2017-02-01 13:00 - 00020847 _____ C:\Users\Usuario\Downloads\nfe_55.906.pdf
2017-02-01 12:59 - 2017-02-01 12:59 - 00021427 _____ C:\Users\Usuario\Downloads\nfe_55.663.pdf
2017-02-01 12:59 - 2017-02-01 12:59 - 00021427 _____ C:\Users\Usuario\Downloads\nfe_55.663 (1).pdf
2017-01-30 14:07 - 2017-01-30 14:07 - 00020812 _____ C:\Users\Usuario\Downloads\nfe_55.960 (2).pdf
2017-01-30 08:34 - 2017-01-30 08:34 - 00021473 _____ C:\Users\Usuario\Downloads\000617379-9.pdf
2017-01-27 07:24 - 2017-01-27 07:24 - 00020812 _____ C:\Users\Usuario\Downloads\nfe_55.960 (1).pdf
2017-01-27 07:23 - 2017-01-27 07:23 - 00020812 _____ C:\Users\Usuario\Downloads\nfe_55.960.pdf
2017-01-26 16:50 - 2017-01-30 06:44 - 00552960 _____ C:\Users\Usuario\Desktop\VENDAS LUIZ ANTONIO GERAL.xls
2017-01-26 10:54 - 2017-01-26 10:54 - 00127295 _____ C:\Users\Usuario\Downloads\Boleto Crea.pdf
2017-01-26 10:37 - 2017-01-26 10:37 - 00005471 _____ C:\Users\Usuario\Downloads\boletos brasil.pdf
2017-01-25 15:24 - 2017-01-25 15:24 - 00000000 ____D C:\Users\Usuario\AppData\Local\TeamViewer
2017-01-25 15:12 - 2017-01-25 15:13 - 12970544 _____ (TeamViewer GmbH) C:\Users\Usuario\Downloads\TeamViewer_Setup_pt (1).exe
2017-01-25 15:07 - 2017-01-25 15:08 - 12970544 _____ (TeamViewer GmbH) C:\Users\Usuario\Downloads\TeamViewer_Setup_pt.exe
2017-01-24 10:55 - 2017-01-24 10:55 - 00000435 _____ C:\Users\Usuario\Downloads\vid1532.zip
2017-01-23 13:28 - 2017-01-23 13:28 - 00005702 _____ C:\Users\Usuario\Downloads\Ferias Func 000009 Dezembro de 2016 (1).PDF
2017-01-23 13:28 - 2017-01-23 13:28 - 00005700 _____ C:\Users\Usuario\Downloads\Ferias Func 000010 Dezembro de 2016 (1).PDF
2017-01-23 09:52 - 2017-01-23 09:52 - 00065046 _____ C:\Users\Usuario\Downloads\Aviso Agrominas Ivan.pdf
2017-01-23 09:52 - 2017-01-23 09:52 - 00064176 _____ C:\Users\Usuario\Downloads\Aviso Agrominas Denis.pdf
2017-01-19 14:27 - 2017-01-19 14:27 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativo Itaú
2017-01-19 08:49 - 2017-01-19 08:49 - 00007694 _____ C:\Users\Usuario\Downloads\extrato(2).pdf
2017-01-18 13:47 - 2017-01-18 13:47 - 00007718 _____ C:\Users\Usuario\Downloads\extrato (3).pdf
2017-01-18 13:23 - 2017-01-18 13:23 - 00004160 _____ C:\Users\Usuario\Downloads\86918012017.pdf
2017-01-18 13:21 - 2017-01-18 13:21 - 00005969 _____ C:\Users\Usuario\Downloads\GTPY18012017.pdf
2017-01-18 08:50 - 2017-01-18 08:50 - 00048945 _____ C:\Users\Usuario\Downloads\00918012017.pdf
2017-01-17 15:02 - 2017-01-17 15:02 - 00963422 _____ C:\Users\Usuario\Downloads\USCS.campusSP 2016 PROVA II.pdf
2017-01-17 09:45 - 2017-01-17 09:45 - 00528808 _____ C:\Users\Usuario\Downloads\kremerata_baltica____Blitz__Fantasy__Presto_(5Music.Net).m4a
2017-01-13 13:23 - 2017-01-13 13:23 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_wpdcomp_01_09_00.Wdf
2017-01-13 12:59 - 2017-01-13 12:59 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2017-01-13 10:03 - 2017-01-13 10:08 - 69468299 _____ C:\Users\Usuario\Downloads\Pedidos Roni.rar
2017-01-12 14:44 - 2017-01-12 14:44 - 00017159 _____ C:\Users\Usuario\Downloads\imprimir.pdf
2017-01-12 13:23 - 2017-01-12 13:24 - 00030208 _____ C:\Users\Usuario\Downloads\estoque ihara(6).xls
2017-01-12 13:10 - 2017-01-12 13:10 - 00051134 _____ C:\Users\Usuario\Downloads\sc_pdf_20170112140629_417_p015_cons_boleto_generico.pdf
2017-01-11 08:34 - 2017-01-11 10:26 - 00033792 _____ C:\Users\Usuario\Desktop\porcentagem lucro.xls
2017-01-05 07:49 - 2017-01-05 07:49 - 00003256 _____ C:\Users\Usuario\Downloads\comprovante.html
2017-01-04 14:55 - 2017-01-04 14:55 - 00049485 _____ C:\Users\Usuario\Downloads\Boleto_00029582750000170612.pdf
2017-01-04 10:22 - 2017-01-04 10:22 - 00186334 _____ C:\Users\Usuario\Downloads\Livro de Entrada 12 2016.PDF
2017-01-04 06:43 - 2017-01-04 06:43 - 00005700 _____ C:\Users\Usuario\Downloads\Ferias Func 000010 Dezembro de 2016.PDF
2017-01-04 06:42 - 2017-01-04 06:42 - 00027600 _____ C:\Users\Usuario\Downloads\DarfImpostodeRenda122016 (1).PDF
2017-01-04 06:42 - 2017-01-04 06:42 - 00005795 _____ C:\Users\Usuario\Downloads\Ferias Func 000011 Dezembro de 2016.PDF
2017-01-04 06:42 - 2017-01-04 06:42 - 00005702 _____ C:\Users\Usuario\Downloads\Ferias Func 000009 Dezembro de 2016.PDF
2017-01-04 06:41 - 2017-01-04 06:41 - 00030409 _____ C:\Users\Usuario\Downloads\DarfImpostodeRenda122016 Joice.pdf
2017-01-04 06:41 - 2017-01-04 06:41 - 00027597 _____ C:\Users\Usuario\Downloads\DarfImpostodeRenda122016 .PDF
2017-01-04 06:41 - 2017-01-04 06:41 - 00005785 _____ C:\Users\Usuario\Downloads\Ferias Func 000026 Dezembro de 2016.PDF
2017-01-03 09:28 - 2017-01-03 09:28 - 00272928 _____ C:\Users\Usuario\Downloads\Minha_Fatura_CLASSICO GOLD MC-11-01-2017.pdf
2017-01-03 09:27 - 2017-01-03 09:27 - 00013431 _____ C:\Users\Usuario\Downloads\agrominas (1).pdf
2017-01-03 07:22 - 2017-01-03 07:25 - 41713532 _____ C:\Users\Usuario\Downloads\AGROMINASPA (1).rar
2017-01-02 16:46 - 2017-01-02 16:46 - 00032768 _____ C:\Users\Usuario\Downloads\AGROMINAS COM ATACADISTA LTDA (1).xls
2017-01-02 16:39 - 2017-03-02 07:52 - 00028376 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddfac.sys
2017-01-02 16:39 - 2016-11-11 14:41 - 00025184 ____N (GAS Tecnologia) C:\Windows\system32\Drivers\wsddpp.sys
2017-01-02 16:30 - 2017-01-02 16:43 - 00032768 _____ C:\Users\Usuario\Downloads\AGROMINAS COM ATACADISTA LTDA.xls
2017-01-02 14:03 - 2017-01-02 14:03 - 00127842 _____ C:\Users\Usuario\Downloads\Relatorios-Report_IPVA_Unica_Com_Desconto_EHV4309.PDF
2016-12-27 11:09 - 2016-12-27 11:09 - 00005918 _____ C:\Users\Usuario\Downloads\879027122016.pdf
2016-12-27 10:39 - 2016-11-11 14:41 - 00025184 ____N (GAS Tecnologia) C:\Windows\system32\Drivers\wsddprm.sys
2016-12-26 09:23 - 2016-12-26 09:23 - 00127725 _____ C:\Users\Usuario\Downloads\Relatorios-Report_IPVA_Unica_Com_Desconto_FEV3641.PDF
2016-12-26 08:15 - 2016-12-26 08:15 - 00009485 _____ C:\Users\Usuario\Downloads\extrato(1).pdf
2016-12-20 13:21 - 2016-12-20 13:21 - 00021211 _____ C:\Users\Usuario\Downloads\nfe_55.437.pdf
2016-12-20 07:24 - 2016-12-20 07:24 - 00049052 _____ C:\Users\Usuario\Downloads\Boleto_00029582750000169502.pdf
2016-12-19 16:31 - 2017-02-10 08:38 - 00000000 ___RD C:\Users\Usuario\Google Drive
2016-12-19 16:25 - 2016-12-19 16:25 - 01065376 _____ (Google Inc.) C:\Users\Usuario\Downloads\googledrivesync.exe
2016-12-19 16:17 - 2016-12-19 16:17 - 00000059 _____ C:\Users\Usuario\Downloads\notas_fiscais_20161014085256 (1).csv
2016-12-19 16:16 - 2016-12-19 16:16 - 00000059 _____ C:\Users\Usuario\Downloads\notas_fiscais_20161014085256.csv
2016-12-19 10:40 - 2017-02-22 07:50 - 00123904 _____ C:\Users\Usuario\Desktop\projeto preço.xls
2016-12-16 14:32 - 2016-12-16 14:32 - 00115200 _____ C:\Users\Usuario\Downloads\Formação-de-Preço-de-Venda-Planilha.xls
2016-12-16 14:16 - 2016-12-16 14:16 - 00004226 _____ C:\Users\Usuario\Downloads\61.548.pdf
2016-12-16 14:15 - 2016-12-16 14:15 - 00005122 _____ C:\Users\Usuario\Downloads\86916122016.pdf
2016-12-16 14:11 - 2016-12-16 14:11 - 00000000 _____ C:\Users\Usuario\Downloads\81816122016.pdf
2016-12-16 09:54 - 2016-12-16 09:54 - 00338357 _____ C:\Users\Usuario\Downloads\FAT AGROMINAS 30-11.jpeg
2016-12-15 10:01 - 2016-12-15 10:01 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Macromedia
2016-12-15 10:01 - 2016-12-15 10:01 - 00000000 ____D C:\Users\Usuario\AppData\Local\Macromedia
2016-12-14 10:54 - 2016-12-14 10:54 - 00085003 _____ C:\Users\Usuario\Desktop\DANFE009377.pdf
2016-12-14 09:45 - 2016-12-14 09:45 - 00068545 _____ C:\Users\Usuario\Downloads\21d7206f6a321f801a93924043f442f6.pdf
2016-12-13 16:41 - 2016-12-13 16:41 - 00024576 _____ C:\Users\Usuario\Downloads\LAUDO TÉCNICO Roberto Carlos de Souza (1).doc
2016-12-13 16:38 - 2016-12-13 16:38 - 00024576 _____ C:\Users\Usuario\Downloads\LAUDO TÉCNICO Roberto Carlos de Souza.doc
2016-12-13 15:27 - 2016-12-13 15:28 - 12876400 _____ (TeamViewer GmbH) C:\Users\Usuario\Downloads\TeamViewer_Setup_pt-jbf.exe
2016-12-13 15:05 - 2016-12-13 15:15 - 84090455 _____ (Banco do Brasil ) C:\Users\Usuario\Downloads\BBCobranca.exe
2016-12-13 15:00 - 2016-12-13 15:00 - 00004037 _____ C:\Users\Usuario\Downloads\880013122016.pdf
2016-12-08 09:21 - 2016-12-08 09:21 - 00007289 _____ C:\Users\Usuario\Desktop\itau.pdf
2016-12-08 07:03 - 2016-12-08 07:51 - 00010193 _____ C:\Users\Usuario\Downloads\Pasta1.xlsx
2016-12-07 14:20 - 2016-12-07 14:20 - 00005729 _____ C:\Users\Usuario\Downloads\Ferias Func 000026 Novembro de 2016.PDF
2016-12-06 15:40 - 2016-06-16 18:43 - 00036984 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\wsddntf.sys
2016-12-06 15:40 - 2016-06-16 18:43 - 00008811 _____ C:\Windows\system32\Drivers\wsddntf.cat
2016-12-06 15:40 - 2016-06-16 14:06 - 00002708 _____ C:\Windows\system32\Drivers\wsddntf.inf
2016-12-06 08:30 - 2016-12-06 08:30 - 00035154 _____ C:\Users\Usuario\Downloads\00906122016.pdf
2016-12-06 07:31 - 2016-12-06 07:31 - 00261614 _____ C:\Users\Usuario\Downloads\livro de entrada cuca 11 2016.PDF
2016-12-05 15:39 - 2016-12-05 15:39 - 00000000 ____D C:\Users\Todos os Usuários\gbas
2016-12-05 15:39 - 2016-12-05 15:39 - 00000000 ____D C:\ProgramData\gbas
2016-12-05 15:38 - 2017-01-19 14:27 - 00002179 _____ C:\Users\Usuario\Desktop\Itaú.lnk
2016-12-05 15:38 - 2017-01-19 14:27 - 00000000 ____D C:\Users\Usuario\AppData\Local\Aplicativo Itau
2016-12-05 15:03 - 2016-12-05 15:06 - 40682452 _____ C:\Users\Usuario\Downloads\AGROMINASPA.rar
2016-12-05 13:37 - 2016-12-05 13:37 - 00020829 _____ C:\Users\Usuario\Downloads\nfe_55.048.pdf
2016-12-05 10:37 - 2013-10-14 17:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2016-12-05 10:21 - 2016-12-05 10:21 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-12-05 10:21 - 2016-12-05 10:21 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-12-05 10:21 - 2016-12-05 10:21 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2016-12-05 10:21 - 2016-12-05 10:21 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-12-05 10:21 - 2016-12-05 10:21 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2016-12-05 10:21 - 2016-12-05 10:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2016-12-05 10:21 - 2016-12-05 10:21 - 00016303 _____ C:\Windows\SysWOW64\ieuinit.inf
2016-12-05 10:21 - 2016-12-05 10:21 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2016-12-05 10:21 - 2016-12-05 10:21 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-12-05 10:20 - 2016-12-05 10:20 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-12-05 10:20 - 2016-12-05 10:20 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2016-12-05 10:20 - 2016-12-05 10:20 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-12-05 10:20 - 2016-12-05 10:20 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2016-12-05 10:20 - 2016-12-05 10:20 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-12-05 10:20 - 2016-12-05 10:20 - 00016303 _____ C:\Windows\system32\ieuinit.inf
2016-12-05 10:20 - 2016-12-05 10:20 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-12-05 10:20 - 2016-12-05 10:20 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-12-05 10:19 - 2016-12-05 10:19 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-12-05 10:19 - 2016-12-05 10:19 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-12-05 10:19 - 2016-12-05 10:19 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-12-05 10:19 - 2016-12-05 10:19 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-12-05 10:19 - 2016-12-05 10:19 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-12-05 10:19 - 2016-12-05 10:19 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-12-05 10:19 - 2016-12-05 10:19 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-12-05 10:15 - 2016-12-05 10:15 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-12-05 10:15 - 2016-12-05 10:15 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-12-05 10:09 - 2016-12-05 10:37 - 00020971 _____ C:\Windows\IE11_main.log
2016-12-05 06:38 - 2014-06-30 19:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2016-12-05 06:38 - 2014-06-30 19:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2016-12-05 06:38 - 2014-06-06 03:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2016-12-05 06:38 - 2014-06-06 03:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2016-12-05 06:38 - 2014-03-09 18:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2016-12-05 06:38 - 2014-03-09 18:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2016-12-05 06:38 - 2014-03-09 18:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2016-12-05 06:38 - 2014-03-09 18:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2016-12-04 19:01 - 2013-04-25 20:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-12-04 19:01 - 2013-03-31 19:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-12-04 18:55 - 2013-09-13 22:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-12-04 18:55 - 2013-09-07 23:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-12-04 18:55 - 2013-09-07 23:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-12-04 18:55 - 2013-09-07 23:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-12-04 18:55 - 2013-01-03 03:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-12-04 18:55 - 2012-08-22 15:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-12-04 18:53 - 2012-11-30 02:45 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-12-04 18:53 - 2012-11-30 02:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-12-04 18:53 - 2012-11-30 02:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-12-04 18:53 - 2012-11-30 02:41 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-12-04 18:53 - 2012-11-30 02:41 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 02:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-12-04 18:53 - 2012-11-30 01:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 01:45 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-12-04 18:53 - 2012-11-30 00:23 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-12-04 18:53 - 2012-11-29 23:38 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-12-04 18:53 - 2012-11-29 23:38 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-12-04 18:53 - 2012-11-29 23:38 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-12-04 18:53 - 2012-11-29 23:38 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-12-04 18:51 - 2012-11-23 00:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-12-04 18:44 - 2013-08-27 22:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-12-04 18:15 - 2016-07-22 11:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2016-12-04 18:15 - 2016-07-22 11:51 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2016-12-02 15:06 - 2016-12-02 15:06 - 00267303 _____ C:\Users\Usuario\Downloads\Minha_Fatura_CLASSICO GOLD MC-11-12-2016.pdf
2016-12-02 08:04 - 2016-12-02 08:04 - 00013426 _____ C:\Users\Usuario\Downloads\AGROMINAS.pdf

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2017-03-02 08:27 - 2009-07-14 01:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-03-02 08:27 - 2009-07-14 01:45 - 00021072 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-03-02 08:16 - 2016-10-24 13:42 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-03-02 08:11 - 2016-10-24 10:35 - 00000000 ____D C:\Users\Todos os Usuários\Skype
2017-03-02 08:11 - 2016-10-24 10:35 - 00000000 ____D C:\ProgramData\Skype
2017-03-02 07:53 - 2016-10-25 06:39 - 00000000 ____D C:\Users\Todos os Usuários\GbPlugin
2017-03-02 07:53 - 2016-10-25 06:39 - 00000000 ____D C:\ProgramData\GbPlugin
2017-03-02 07:53 - 2016-10-24 12:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-03-02 07:52 - 2016-10-25 06:39 - 00029816 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpddreg64.sys
2017-03-02 07:52 - 2016-10-25 06:39 - 00028888 _____ (GAS Tecnologia) C:\Windows\system32\Drivers\gbpddfac64.sys
2017-03-02 07:52 - 2016-10-25 06:39 - 00000000 ____D C:\Program Files (x86)\GbPlugin
2017-03-02 07:51 - 2016-10-24 13:19 - 00000000 ____D C:\Users\Todos os Usuários\NVIDIA
2017-03-02 07:51 - 2016-10-24 13:19 - 00000000 ____D C:\ProgramData\NVIDIA
2017-03-02 07:51 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2017-03-02 07:50 - 2016-03-22 08:02 - 00243200 _____ C:\Users\Usuario\Desktop\DÉBITOS SOCORRO.xls
2017-03-02 07:49 - 2016-10-24 13:26 - 00000000 ____D C:\Users\Todos os Usuários\Oracle
2017-03-02 07:49 - 2016-10-24 13:26 - 00000000 ____D C:\ProgramData\Oracle
2017-03-02 07:49 - 2016-10-24 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-03-02 07:49 - 2016-10-24 13:26 - 00000000 ____D C:\Program Files (x86)\Java
2017-03-02 07:48 - 2016-10-24 13:26 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2017-03-02 07:41 - 2016-10-24 10:36 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Skype
2017-03-01 14:55 - 2016-11-24 07:48 - 00000000 ____D C:\Users\Usuario\AppData\LocalLow\Mozilla
2017-03-01 14:39 - 2016-10-26 07:32 - 00000000 ____D C:\Users\Usuario\AppData\LocalLow\Scpad
2017-03-01 14:19 - 2016-10-26 07:22 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\NetExpress50
2017-03-01 14:10 - 2016-10-24 15:06 - 00001573 _____ C:\Users\Usuario\Desktop\Conta Plus 2.lnk
2017-02-27 11:20 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\LiveKernelReports
2017-02-27 08:37 - 2016-10-26 10:21 - 00011645 _____ C:\Users\Usuario\Desktop\BOLETOS DESC. PAGOS.xlsx
2017-02-24 15:15 - 2016-10-24 11:57 - 00000000 ____D C:\Users\Usuario\Desktop\wemerson
2017-02-22 07:34 - 2009-07-14 01:45 - 00419960 _____ C:\Windows\system32\FNTCACHE.DAT
2017-02-22 07:33 - 2016-11-21 10:50 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2017-02-21 13:58 - 2016-10-24 08:14 - 00109632 _____ C:\Users\Usuario\AppData\Local\GDIPFONTCACHEV1.DAT
2017-02-21 11:56 - 2016-10-24 15:27 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\TeamViewer
2017-02-21 07:42 - 2011-01-27 20:11 - 00709416 _____ C:\Windows\system32\prfh0416.dat
2017-02-21 07:42 - 2011-01-27 20:11 - 00148694 _____ C:\Windows\system32\prfc0416.dat
2017-02-21 07:42 - 2009-07-14 02:13 - 01645748 _____ C:\Windows\system32\PerfStringBackup.INI
2017-02-21 07:42 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2017-02-21 07:35 - 2009-07-14 02:08 - 00032586 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2017-02-16 16:44 - 2016-10-26 14:24 - 00001656 _____ C:\DBERRORS.TXT
2017-02-14 10:24 - 2016-10-24 07:43 - 00000000 ____D C:\Users\Usuario
2017-02-14 08:17 - 2016-10-24 13:42 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2017-02-14 08:17 - 2016-10-24 13:42 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-02-14 08:17 - 2016-10-24 13:42 - 00003840 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-02-14 08:17 - 2016-10-24 13:42 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-02-14 08:17 - 2016-10-24 13:42 - 00000000 ____D C:\Windows\system32\Macromed
2017-02-10 11:21 - 2016-10-24 07:52 - 00000000 ____D C:\Users\Usuario\AppData\Local\Google
2017-02-09 08:53 - 2016-11-17 10:19 - 00000000 ____D C:\Program Files (x86)\Programas_SPED
2017-02-07 13:46 - 2016-10-24 07:52 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-02-07 13:46 - 2016-10-24 07:52 - 00002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-02-02 13:54 - 2016-10-24 10:26 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help
2017-01-31 15:17 - 2016-10-24 12:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service

==================== Arquivos na raiz de alguns diretórios =======

2016-10-24 07:58 - 2016-10-24 07:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Alguns arquivos em TEMP:
====================
2016-12-05 15:34 - 2016-12-05 15:34 - 3580664 _____ () C:\Users\Usuario\AppData\Local\Temp\aplicativoitau.exe
2016-11-14 13:28 - 2016-11-14 13:28 - 0737856 _____ (Oracle Corporation) C:\Users\Usuario\AppData\Local\Temp\jre-8u111-windows-au.exe
2017-03-02 07:43 - 2017-03-02 07:43 - 0739904 _____ (Oracle Corporation) C:\Users\Usuario\AppData\Local\Temp\jre-8u121-windows-au.exe
2016-11-24 16:03 - 2016-11-30 13:10 - 43887064 _____ (Skype Technologies S.A.) C:\Users\Usuario\AppData\Local\Temp\SkypeSetup.exe
2017-03-02 08:07 - 2017-03-02 08:08 - 14456872 _____ (Microsoft Corporation) C:\Users\Usuario\AppData\Local\Temp\vc_redist.x86.exe

==================== Bamital & volsnap ======================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente

LastRegBack: 2017-02-22 13:02

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité