cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.3.6.47 Por Nicolas Coolman (2018/03/06)
~ iniciado por Jose Carlos (Administrator) (2018/03/06 23:52:15)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Status da versão: Version OK
~ Modo: Scanner
~ Relatório: C:\Users\Jose Carlos\Desktop\ZHPDiag.txt
~ Relatório: C:\Users\Jose Carlos\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Inicialização do sistema: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 15063) =>.Microsoft Corporation

---\\ Navegadores Internet (4) - 0s
~ GCIE: Google Chrome v64.0.3282.186
~ MFIE: Mozilla Firefox 58.0.2 (x86 pt-PT)
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.909.15063.0

---\\ Informações sobre os produtos Windows (3) - 4s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK

---\\ Softwares de proteçao do sistema (3) - 13s
Windows Defender (Deactivate)
Bitdefender Total Security v22.0.1.1 (Protection)
Bitdefender Agent v21.0.25.49 (Protection)

---\\ Monitoramento dos softwares (2) - 13s
~ Adobe Flash Player 27 NPAPI (Surveillance)
~ Adobe Acrobat Reader DC - Português (Surveillance)

---\\ Informações sobre o sistema (6) - 0s
~ Operating System: Intel64 Family 6 Model 15 Stepping 6, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2095.156 MB (32% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 227 GB (74%) free of 304 GB : OK =>.Disk Space

---\\ Modo de conexão ao sistema (3) - 0s
~ Computer Name: DESKTOP-Q6O8NOB
~ User Name: Jose Carlos
~ Logged in as Administrator

---\\ Enumeração das unidades dos discos (2) - 0s
~ Drive C: has 227 GB free of 304 GB (System)
~ Drive F: has 7 GB free of 7 GB

---\\ Estado do Centro de Segurança do Windows (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Pesquisa particular de ficheiros genéricos (24) - 3s
[MD5.01078D46C77CE0D7DC584A29062A799D] - 30/09/2017 - (.Microsoft Corporation - Explorador do Windows.) -- C:\WINDOWS\Explorer.exe [4848952] =>.Microsoft Windows®
[MD5.ECB702B8C5650381C0784F1EEABB97BC] - 18/03/2017 - (.Microsoft Corporation - Processo anfitrião do Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [68608] =>.Microsoft Corporation
[MD5.0242626678C83AE788C655C1990A3CC3] - 08/08/2017 - (.Microsoft Corporation - Aplicação de Arranque do Windows.) -- C:\WINDOWS\System32\Wininit.exe [318232] =>.Microsoft Windows Publisher®
[MD5.E36E0FED6D145EC2E6F3849898E6DA7F] - 10/02/2018 - (.Microsoft Corporation - Extensões da Internet para Win32.) -- C:\WINDOWS\System32\wininet.dll [3306496] =>.Microsoft Corporation
[MD5.1487F8F540F1518AD13AE179F67DB4E1] - 01/01/2018 - (.Microsoft Corporation - Aplicação de Início de Sessão do Windows.) -- C:\WINDOWS\System32\Winlogon.exe [706560] =>.Microsoft Corporation
[MD5.50CDF68A8EA8A2A9165CD573FA6C42D8] - 18/03/2017 - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) -- C:\WINDOWS\System32\sppcomapi.dll [414208] =>.Microsoft Corporation
[MD5.6AFA66A457759C1FEC29A52612A67043] - 30/09/2017 - (.Microsoft Corporation - DLL da API de cliente de DNS.) -- C:\WINDOWS\System32\dnsapi.dll [661224] =>.Microsoft Windows®
[MD5.1F4909406532C2FFCBD3683A65F7198F] - 30/09/2017 - (.Microsoft Corporation - DLL da API de cliente de DNS.) -- C:\WINDOWS\Syswow64\dnsapi.dll [508344] =>.Microsoft Windows®
[MD5.26734E90C7BE78EC2B26A68F84B5F6C9] - 01/01/2018 - (.Microsoft Corporation - Controlador de Função Auxiliar para Winsock.) -- C:\WINDOWS\System32\drivers\AFD.sys [610712] =>.Microsoft Windows®
[MD5.01733BEEE02E51F712330D5909BD701C] - 18/03/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [29088] =>.Microsoft Windows®
[MD5.B6E5AD7C83A5254DEE9D86023C0E5A81] - 18/03/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation
[MD5.ABE77AD954BC3D72F559CF0C381E50BC] - 18/03/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [160256] =>.Microsoft Corporation
[MD5.A5AEC7971FFEE63A9FF653DE0AB9AE97] - 01/01/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [150528] =>.Microsoft Corporation
[MD5.02B9639D9997E95CDF2F4C4F3BDCC73D] - 08/08/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86528] =>.Microsoft Corporation
[MD5.C6C8315E3262FAE460529C6DA2951682] - 18/03/2017 - (.Microsoft Corporation - Controlador de porta i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [115200] =>.Microsoft Corporation
[MD5.DCC05E5EAA580C97F13B434FAFACED85] - 18/03/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214528] =>.Microsoft Corporation
[MD5.F2AD1B72C5A6475FB5FF332E1980DF88] - 18/03/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [467352] =>.Microsoft Windows®
[MD5.CDF0B16F1F4C05CFE48C3B1D9B1CA47E] - 01/01/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [305152] =>.Microsoft Corporation
[MD5.D9C6EBFEF29D28B27A11996B10FC6588] - 01/01/2018 - (.Microsoft Corporation - Controlador de Sistema de Ficheiros NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2327448] =>.Microsoft Windows®
[MD5.2CC6C325B271C7CA60F374F8F868CB45] - 18/03/2017 - (.Microsoft Corporation - Controlador de porta paralela.) -- C:\WINDOWS\System32\drivers\Parport.sys [97792] =>.Microsoft Corporation
[MD5.5279EC98F6218D29EADDFECCC0D80E9A] - 18/03/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [107008] =>.Microsoft Corporation
[MD5.1A9F05495C8A2D0699A657B8217EEB41] - 01/01/2018 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [183296] =>.Microsoft Corporation
[MD5.767E8C96C1C21D9B143773D24F8A8E31] - 01/01/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [119704] =>.Microsoft Windows®
[MD5.E3429DBBEA3965BB96E24B16EF4A2551] - 18/03/2017 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [397216] =>.Microsoft Windows®

---\\ Serviços NT não Microsoft e não desativados (15) - 3s
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) . (.Intel Corporation - Intel® Centrino® Wireless Bluetooth® + High.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Sec (BTHSSecurityMgr) . (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: Serviço de Gerenciamento de Dispositivos do Bitdefender (DevMgmtService) . (.Bitdefender - Bitdefender Device Management Service.) - C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe =>.Bitdefender SRL®
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: HP CUE DeviceDiscovery Service (hpqddsvc) . (.Hewlett-Packard Co. - HP CUE DeviceDiscovery Service.) - C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqddsvc.dll =>.Hewlett Packard®
O23 - Service: HP Network Devices Support (HPSLPSVC) . (.Hewlett-Packard Co. - HP Network Devices Support.) - C:\Program Files (x86)\Hp\Digital Imaging\bin\HPSLPSVC64.DLL =>.Hewlett-Packard Co.
O23 - Service: Net Driver HPZ12 (Net Driver HPZ12) . (.Hewlett-Packard - Dot4Net Module.) - C:\Windows\System32\HPZinw12.dll =>.Hewlett-Packard
O23 - Service: Pml Driver HPZ12 (Pml Driver HPZ12) . (.Hewlett-Packard - PmlDrv Module.) - C:\Windows\System32\HPZipm12.dll =>.Hewlett-Packard
O23 - Service: ProductAgentService (ProductAgentService) . (.Bitdefender - Bitdefender Agent.) - C:\Program Files\Bitdefender Agent\ProductAgentService.exe =>.Bitdefender SRL®
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender 2017\updatesrv.exe =>.Bitdefender SRL®
O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2017\vsserv.exe =>.Bitdefender SRL®
O23 - Service: Bitdefender Protected Service (vsservp) . (.Bitdefender - Bitdefender ASMI Protected Service.) - C:\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe =>.Bitdefender SRL®
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Mobile Wireless Group®

---\\ Serviços não Microsoft (SR=Executados, SS=Parados) (24) - 14s
SS - Demand [09/02/2018] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Disabl [11/08/2017] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [18/07/2012] [ 659472] Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) . (.Intel Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe =>.Intel Corporation-Mobile Wireless Group®
SS - Disabl [14/09/2017] [ 2090152] Bitdefender RedLine Service (bdredline) . (.Bitdefender.) - C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe =>.Bitdefender SRL®
SR - Auto [23/08/2012] [ 135984] Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Sec (BTHSSecurityMgr) . (.Intel(R) Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe =>.Intel Corporation-Mobile Wireless Group®
SR - Auto [15/01/2018] [ 103584] Serviço de Gerenciamento de Dispositivos do Bitdefender (DevMgmtService) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe =>.Bitdefender SRL®
SR - Auto [23/08/2012] [ 629040] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Mobile Wireless Group®
SS - Demand [26/04/2017] [ 153752] Serviço Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [26/04/2017] [ 153752] Serviço Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Demand [29/04/2011] [ 254824] hpqcxs08 (hpqcxs08) . (.Hewlett-Packard Co..) - C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqcxs08.dll =>.Hewlett Packard®
SR - Auto [29/04/2011] [ 138600] HP CUE DeviceDiscovery Service (hpqddsvc) . (.Hewlett-Packard Co..) - C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqddsvc.dll =>.Hewlett Packard®
SR - Auto [18/08/2011] [ 1039360] HP Network Devices Support (HPSLPSVC) . (.Hewlett-Packard Co..) - C:\Program Files (x86)\Hp\Digital Imaging\bin\HPSLPSVC64.DLL =>.Hewlett-Packard Co.
SS - Disabl [11/12/2014] [ 89864] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company®
SR - Demand [20/10/2017] [ 672568] Serviço iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SS - Demand [03/03/2018] [ 174544] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [06/08/2010] [ 71680] Net Driver HPZ12 (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\HPZinw12.dll =>.Hewlett-Packard
SR - Auto [06/08/2010] [ 89600] Pml Driver HPZ12 (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\HPZipm12.dll =>.Hewlett-Packard
SR - Auto [11/04/2017] [ 1254736] ProductAgentService (ProductAgentService) . (.Bitdefender.) - C:\Program Files\Bitdefender Agent\ProductAgentService.exe =>.Bitdefender SRL®
SR - Auto [23/08/2012] [ 149296] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Mobile Wireless Group®
SS - Auto [18/07/2017] [ 317408] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [27/02/2018] [ 114968] Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2017\updatesrv.exe =>.Bitdefender SRL®
SR - Auto [27/02/2018] [ 1236696] Bitdefender Virus Shield (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2017\vsserv.exe =>.Bitdefender SRL®
SR - Auto [25/08/2016] [ 524872] Bitdefender Protected Service (vsservp) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe =>.Bitdefender SRL®
SR - Auto [23/08/2012] [ 3342640] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Mobile Wireless Group®

---\\ Tarefas planificadas automaticamente (Register) (8) - 18s
O38 - TASK: {0B2D02A7-5DF0-432B-890A-FB4338EC0AF2} [64Bits][\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864] - (.Bitdefender - Bitdefender Agent WatchDog.) -- C:\Program Files\Bitdefender Agent\WatchDog.exe [574232] =>.BitDefender
O38 - TASK: {2A52EF10-DFEC-4AD5-BDFB-81EA619BDE0C} [64Bits][\AVG EUpdate Task] - (.AVG Technologies - .) -- C:\Program Files (x86)\AVG\Setup\avgsetupx.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {5AADE65A-6137-4EA0-92B4-1E0BB3E49F5D} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Instalador do Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {6A1B3D01-0A8B-421A-BD40-70B41137CFAF} [64Bits][\Driver Booster SkipUAC (Jose Carlos)] - (...) -- C:\Program Files (x86)\IObit\Driver Booster\5.0.3\DriverBooster.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {8443BAB7-1D4B-4B53-B4AA-B65DA5950D1E} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Instalador do Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {91F08241-C90A-4A95-AC2F-D56652D14504} [64Bits][\R@1n-KMS\Windows64Professional] - (.WORKGROUP\WIN-JI0CHPR0FRI$ - .) -- wmic path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate [0] =>HackTool.WinActivator
O38 - TASK: {A8387818-2C41-4E70-93C7-B3D996F0FE35} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1183256] =>.Adobe Systems Incorporated
O38 - TASK: {E2C95782-7F37-42B0-AAC4-78200A2CAA03} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 26.0 r0.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated

---\\ Aplicações iniciadas por registo & pastas (11) - 3s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestor de audio de alta definicao Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe =>.Ivaylo Beltchev®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [pteid] . (.Portuguese Government - Portugal Identity Card Utility Application.) -- C:\Program Files\Portugal Identity Card\pteidgui.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-2072177802-282475358-3043985591-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2072177802-282475358-3043985591-1001\..\Run: [pteid] . (.Portuguese Government - Portugal Identity Card Utility Application.) -- C:\Program Files\Portugal Identity Card\pteidgui.exe

---\\ Processos lançados (19) - 7s
[MD5.6AF6D4A3E4C918F30F75CE3E93BB068B] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender 2017\vsserv.exe [1236696] [PID.1356] =>.Bitdefender SRL®
[MD5.53A304943E415379736F8E0748C1199E] - (.Bitdefender - Bitdefender Device Management Service.) -- C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe [103584] [PID.1508] =>.Bitdefender SRL®
[MD5.770B15B8261A444B817F296EC27CE71E] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [629040] [PID.2312] =>.Intel Corporation-Mobile Wireless Group®
[MD5.992E3160D3AB2D8F083B6808D73A4016] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [149296] [PID.2540] =>.Intel Corporation-Mobile Wireless Group®
[MD5.CEFAA9BF657451BED4346F5DDCD66310] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender 2017\updatesrv.exe [114968] [PID.2596] =>.Bitdefender SRL®
[MD5.83738D7F35391FD45A38B76F5256E88F] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736] [PID.2612] =>.Bitdefender SRL®
[MD5.9FA1347D0E96998C3793F51BB94D7AC3] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3342640] [PID.2692] =>.Intel Corporation-Mobile Wireless Group®
[MD5.B4837176B2DBBC8E3D6F31D4853EEAEB] - (.Intel Corporation - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [659472] [PID.4704] =>.Intel Corporation-Mobile Wireless Group®
[MD5.B9D49E4288F56C053B4C12D2F9042948] - (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [135984] [PID.4744] =>.Intel Corporation-Mobile Wireless Group®
[MD5.5677C8C60F4659E8626AC9036EEF38DF] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [163800] [PID.5208] =>.Ivaylo Beltchev®
[MD5.A16B39D0612F4D0D530B4BD911F3980C] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1807.264.0_x64__kzf8qxf38zg5c\SkypeHost.exe [86528] [PID.5288] =>.Skype Technologies
[MD5.0291CDA835C89BE940DB51AF7EDA802F] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [297784] [PID.6368] =>.Apple Inc.®
[MD5.D645DC241B890DD6E59D1BD9DE83D47B] - (.Portuguese Government - Portugal Identity Card Utility Application.) -- C:\Program Files\Portugal Identity Card\pteidgui.exe [1444864] [PID.6488]
[MD5.45BCB17875BE42FE49116A965DD2C518] - (.Apple Inc. - iPod Service.) -- C:\Program Files\iPod\bin\iPodService.exe [672568] [PID.6764] =>.Apple Inc.®
[MD5.39F3A07B419E4E7CE5F88F9E297BACD5] - (.Bitdefender - Bitdefender agent.) -- C:\Program Files\Bitdefender\Bitdefender 2017\bdagent.exe [444312] [PID.6352] =>.Bitdefender SRL®
[MD5.8D258F49F56E7621063F1F4C272A1606] - (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2017\bdwtxag.exe [1620464] [PID.5900] =>.Bitdefender SRL®
[MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.7040] =>.Google Inc®
[MD5.F107219B133E7E574DA052C5C88FFBF3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe [366672] [PID.6572] =>.Google Inc®
[MD5.8278F33C1C20A643FD4D4703346356D0] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Jose Carlos\AppData\Roaming\ZHP\ZHPDiag3.exe [3034496] [PID.7092] =>.Nicolas Coolman

---\\ Google Chrome, Arranque,Pesquisa,Extensões (46) - 9s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.youtube.com =>.Youtube
G0 - GCSP: Preferences [User Data\Default][HomePage] http://adblockplus.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://docs.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://easylist-downloads.adblockplus.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.googleapis.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://notification.adblockplus.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://searchinterneat-a.akamaihd.net/ =>.SUP.AkamaiHD
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.mysites123.com/ =>PUP.Optional.Mysites123
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.yessearches.com/ =>Adware.YesSearches
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.duckduckgo.com
G2 - GCE: Preference [Jose Carlos][User Data\Default][igmbeeoalifnpnidienlbdbegnepmeep]
G2 - GCE: Preference [Jose Carlos][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.eyeo GmbH {AdBlock Plus}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [cgknieepabgfdjmodnibneolhikkpihn] Convert it!
G2 - GCE: Preference [Jose Carlos][User Data\Default] [chemohaemmfhjpmlgkmkanfpfbkaihop] Access chrome plugins page =>.chromeplayground
G2 - GCE: Preference [Jose Carlos][User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [eggkanocgddhmamlbiijnphhppkpkmkl] Tabs Outliner
G2 - GCE: Preference [Jose Carlos][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [fiombgjlkfpdpkbhfioofeeinbehmajg] http://office.live.com/
G2 - GCE: Preference [Jose Carlos][User Data\Default] [flainkeonkoanoijnkojmiiihnfdhipd] Audio Downloader Prime
G2 - GCE: Preference [Jose Carlos][User Data\Default] [gannpgaobkkhmpomoijebaigcapoeebl] Bitdefender Wallet =>.Bitdefender
G2 - GCE: Preference [Jose Carlos][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [ikgjglmlehllifdekcggaapkaplbdpje] Open VideoDownloadConverter New Tab =>.SUP.MindSpark
G2 - GCE: Preference [Jose Carlos][User Data\Default] [jehegmanppiacmmpiifhjalpkigpcida] http://online-voice-recorder.com
G2 - GCE: Preference [Jose Carlos][User Data\Default] [klbibkeccnjlkjkiokjodocebajanakg] The Great Suspender =>.suspensionlabs
G2 - GCE: Preference [Jose Carlos][User Data\Default] [kmdldgcmokdpmacblnehppgkjphcbpnn] Video Downloader professional =>.startpage24.com
G2 - GCE: Preference [Jose Carlos][User Data\Default] [lmjnegcaeklhafolokijcfjliaokphfk] Video DownloadHelper =>.Downloadhelper.net
G2 - GCE: Preference [Jose Carlos][User Data\Default] [mcjjnhgakghmggnimjkldjmmpabhnhne] http://convert-video-online.com
G2 - GCE: Preference [Jose Carlos][User Data\Default] [mmimngoggfoobjdlefbcabngfnmieonb] Google Play Books =>.Google Inc.
G2 - GCE: Preference [Jose Carlos][User Data\Default] [ndjpnladcallmjemlbaebfadecfhkepb] Microsoft Corporation =>.Microsoft Corporation
G2 - GCE: Preference [Jose Carlos][User Data\Default] [nfdfiepdkbnoanddpianalelglmfooik] Ears: Bass Boost EQ Any Audio!
G2 - GCE: Preference [Jose Carlos][User Data\Default] [niojcggonafbneajjmkpkcigabaobmge] Open FilmFanatic New Tab =>.SUP.MindSpark
G2 - GCE: Preference [Jose Carlos][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [ojfphighcpfimfhblaigjckljcoeipga] http://online-audio-converter.com =>.online-audio {Convertisseur Audio}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [opmfnohodhkciaommnhnnihcnhcnfoeg] Drop Zone
G2 - GCE: Preference [Jose Carlos][User Data\Default] [phpaiffimemgakmakpcehgbophkbllkf] Download
G2 - GCE: Preference [Jose Carlos][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [Jose Carlos][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [Jose Carlos][User Data\Default] [ppejmaapfaehlikmnkbmlhbmhniacpon] Adblock Plus for Youtube =>.Adblock Plus

---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (14) - 12s
P2 - EXT FILE: (.Google™ Translator - A handy multi-language translator buil.) -- C:\Users\Jose Carlos\AppData\Roaming\Mozilla\Firefox\Profiles\vjpic6xu.default-1513959687626\extensions\{059cddf1-f66c-4b63-a79a-c35ac7e6ac65}.xpi =>.Google™ Translator
P2 - EXT FILE: (.Cookie Cleaner (Cookie Eraser) - Quickly delete/wipe your browser Cooki.) -- C:\Users\Jose Carlos\AppData\Roaming\Mozilla\Firefox\Profiles\vjpic6xu.default-1513959687626\extensions\{22b80bb1-c181-4870-8fc0-951f6966b703}.xpi
P2 - EXT FILE: (.History Cleaner (History Eraser) - Quickly delete/wipe your browser histo.) -- C:\Users\Jose Carlos\AppData\Roaming\Mozilla\Firefox\Profiles\vjpic6xu.default-1513959687626\extensions\{75dc4ac6-bf05-47b1-aa27-2130f62de8e2}.xpi
P2 - EXT FILE: (.YouTube to MP3 Button - Free YouTube to MP3 Button allows you .) -- C:\Users\Jose Carlos\AppData\Roaming\Mozilla\Firefox\Profiles\vjpic6xu.default-1513959687626\extensions\{ec791a2e-1b4f-4bcc-a4d0-5e795de557dc}.xpi
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_130.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer, Arranque, Pesquisa, Phishing (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pt =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Browser.) (11.00.15063.608 (WinBuild.160101.0800)) -- C:\WINDOWS\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer, Gestão do Proxy (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Análise das linhas, Carregamento Automático de programas (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Redireção do ficheiro Hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ Browser Helper Objects do navegador (5) - 1s
O2 - BHO: Carteira Bitdefender [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender 2017\pmbxie.dll =>.Bitdefender SRL®
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll =>.Ivaylo Beltchev®
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_64.dll =>.Ivaylo Beltchev®

---\\ Atalhos globais Startup (122) - 31s
O4 - GS\Desktop [Administrador]: Assistente de Atualização do Windows 10.lnk . (.Microsoft Corporation - Assistente de Atualização do Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:NHV12:{}" =>.Microsoft Corporation®
O4 - GS\Desktop [Administrador]: Nero Burning ROM.lnk . (...) C:\Windows\Installer\{A4BF6CA6-18AB-4C1A-8E2E-FB9485149DC9}\ARPPRODUCTICON.exe
O4 - GS\Desktop [Administrador]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Jose Carlos\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrador]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Jose Carlos\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrador]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrador]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\sendTo [Administrador]: Destinatário do fax.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrador]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION®
O4 - GS\sendTo [Administrador]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrador]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrador]: Transferência de Ficheiros do Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrador]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrador]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Startup [Administrador]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.EVERNOTE CORPORATION®
O4 - GS\Programs [Administrador]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software
O4 - GS\Programs [Administrador]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Convidado]: Assistente de Atualização do Windows 10.lnk . (.Microsoft Corporation - Assistente de Atualização do Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:NHV12:{}" =>.Microsoft Corporation®
O4 - GS\Desktop [Convidado]: Nero Burning ROM.lnk . (...) C:\Windows\Installer\{A4BF6CA6-18AB-4C1A-8E2E-FB9485149DC9}\ARPPRODUCTICON.exe
O4 - GS\Desktop [Convidado]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Jose Carlos\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Convidado]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Jose Carlos\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Convidado]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Convidado]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\sendTo [Convidado]: Destinatário do fax.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Convidado]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION®
O4 - GS\sendTo [Convidado]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Convidado]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Convidado]: Transferência de Ficheiros do Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Convidado]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Convidado]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Startup [Convidado]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.EVERNOTE CORPORATION®
O4 - GS\Programs [Convidado]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software
O4 - GS\Programs [Convidado]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [defaultuser0]: Assistente de Atualização do Windows 10.lnk . (.Microsoft Corporation - Assistente de Atualização do Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:NHV12:{}" =>.Microsoft Corporation®
O4 - GS\Desktop [defaultuser0]: Nero Burning ROM.lnk . (...) C:\Windows\Installer\{A4BF6CA6-18AB-4C1A-8E2E-FB9485149DC9}\ARPPRODUCTICON.exe
O4 - GS\Desktop [defaultuser0]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Jose Carlos\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [defaultuser0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Jose Carlos\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [defaultuser0]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [defaultuser0]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\sendTo [defaultuser0]: Destinatário do fax.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [defaultuser0]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION®
O4 - GS\sendTo [defaultuser0]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [defaultuser0]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [defaultuser0]: Transferência de Ficheiros do Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [defaultuser0]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [defaultuser0]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Startup [defaultuser0]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.EVERNOTE CORPORATION®
O4 - GS\Programs [defaultuser0]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software
O4 - GS\Programs [defaultuser0]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Jose Carlos]: Assistente de Atualização do Windows 10.lnk . (.Microsoft Corporation - Assistente de Atualização do Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:NHV12:{}" =>.Microsoft Corporation®
O4 - GS\Desktop [Jose Carlos]: Nero Burning ROM.lnk . (...) C:\Windows\Installer\{A4BF6CA6-18AB-4C1A-8E2E-FB9485149DC9}\ARPPRODUCTICON.exe
O4 - GS\Desktop [Jose Carlos]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Jose Carlos\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Jose Carlos]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Jose Carlos\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Jose Carlos]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Jose Carlos]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group®
O4 - GS\sendTo [Jose Carlos]: Destinatário do fax.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Jose Carlos]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.EVERNOTE CORPORATION®
O4 - GS\sendTo [Jose Carlos]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Jose Carlos]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Jose Carlos]: Transferência de Ficheiros do Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Jose Carlos]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Jose Carlos]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Startup [Jose Carlos]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.EVERNOTE CORPORATION®
O4 - GS\Programs [Jose Carlos]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software
O4 - GS\Programs [Jose Carlos]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Bitdefender.lnk . (.Bitdefender - .) C:\Program Files (x86)\Bitdefender\Bitdefender 2017\bdagent.exe /seccenter =>.BitDefender
O4 - GS\CommonDesktop [Public]: Central de Soluções HP.lnk . (.Hewlett-Packard Company - hpqdirec.exe.) C:\Program Files (x86)\Hp\Digital Imaging\bin\Hpqdirec.exe =>.Hewlett Packard®
O4 - GS\CommonDesktop [Public]: Evernote.lnk . (...) C:\WINDOWS\Installer\{FAA0F386-730B-11E7-8B9C-005056951CAD}\Evernote.ico
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Google Sheets.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Google Slides.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation =>.Google Inc®
O4 - GS\CommonDesktop [Public]: HP ePrinterCenter.lnk . (...) C:\Program Files (x86)\HP\Digital Imaging\AppStudio\hpzsip.url =>.Hewlett-Packard
O4 - GS\CommonDesktop [Public]: ISO Opener.lnk . (...) C:\Program Files (x86)\ISO Opener\ISOOpener.exe
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: LibreOffice 5.4.lnk . (.The Document Foundation - .) C:\Program Files (x86)\LibreOffice 5\program\soffice.exe =>.The Document Foundation
O4 - GS\CommonDesktop [Public]: Loja de Suprimentos HP.lnk . (.Hewlett-Packard Development Company L.P. - Shop for HP Supplies.) C:\Program Files (x86)\Hp\HPSSUPPLY\hpqSSupply.exe =>.Hewlett Packard®
O4 - GS\CommonDesktop [Public]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -suite =>.NCH Software
O4 - GS\CommonDesktop [Public]: plugin Autenticação.Gov.lnk . (.Agência para a Modernização Administrativa, IP - Autenticação.gov.pt.) C:\Program Files (x86)\plugin Autenticacao.Gov\Autenticacao.gov.pt.exe {5D30FA840FD54E90284B584A}
O4 - GS\CommonDesktop [Public]: RecordPad Sound Recorder.lnk . (.NCH Software - RecordPad Sound Recorder.) C:\Program Files (x86)\NCH Software\Recordpad\recordpad.exe =>.NCH Software®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: SoundTap Streaming Audio Recorder.lnk . (.NCH Software - SoundTap Streaming Audio Recorder.) C:\Program Files (x86)\NCH Software\SoundTap\soundtap.exe =>.NCH Software®
O4 - GS\CommonDesktop [Public]: Switch Sound File Converter.lnk . (.NCH Software - Switch Sound File Converter.) C:\Program Files (x86)\NCH Software\Switch\switch.exe =>.NCH Software®
O4 - GS\CommonDesktop [Public]: WavePad Sound Editor.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe =>.NCH Software
O4 - GS\Programs [Public]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Jose Carlos\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloco de notas.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: HP Digital Imaging Monitor.lnk . (.Hewlett-Packard Co. - HP Digital Imaging Monitor.) C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe =>.Hewlett Packard®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Ligação ao ambiente de trabalho remoto.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Ferramenta de Recorte.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Gravação com Descrição.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Aplicação WordPad do Windows.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visualizador XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Mapa de carateres.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1046-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Assistente de Atualização do Windows 10.lnk . (.Microsoft Corporation - Assistente de Atualização do Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:NHV12:{}" =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software
O4 - GS\ProgramsCommon [Public]: OneDrive para Empresas.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: RecordPad Sound Recorder.lnk . (.NCH Software - RecordPad Sound Recorder.) C:\Program Files (x86)\NCH Software\Recordpad\recordpad.exe =>.NCH Software®
O4 - GS\ProgramsCommon [Public]: Skype para Empresas 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: SoundTap Streaming Audio Recorder.lnk . (.NCH Software - SoundTap Streaming Audio Recorder.) C:\Program Files (x86)\NCH Software\SoundTap\soundtap.exe =>.NCH Software®
O4 - GS\ProgramsCommon [Public]: Switch Sound File Converter.lnk . (.NCH Software - Switch Sound File Converter.) C:\Program Files (x86)\NCH Software\Switch\switch.exe =>.NCH Software®
O4 - GS\ProgramsCommon [Public]: WavePad Sound Editor.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe =>.NCH Software
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation

---\\ Alteração Dominio/Clientes DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{48bf4100-e96e-40cd-bf31-b05887b0be09}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{48bf4100-e96e-40cd-bf31-b05887b0be09}: DhcpDomain = lan =>.Local Domain

---\\ Protocolo adicional (26) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Controlo ActiveX para transmissão em fluxo.) -- C:\WINDOWS\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensões OLE32 para Win32.) -- C:\WINDOWS\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\WINDOWS\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Controlo ActiveX para transmissão em fluxo.) -- C:\WINDOWS\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\WINDOWS\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\WINDOWS\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\System32\mscoree.dll =>.Microsoft Corporation

---\\ Software instalados (86) - 60s
O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {FF21C3E6-97FD-474F-9518-8DCBE94C2854} =>.Hewlett-Packard
O42 - Logiciel: Adobe Acrobat Reader DC - Português - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1046-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 27 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824265200} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 12.2 - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {A2116AF9-FA9D-41EA-9874-1E40B227D4DE} =>.Adobe Systems, Inc
O42 - Logiciel: AIDA64 Extreme v5.80 - (.FinalWire Ltd..) [HKLM][64Bits] -- AIDA64 Extreme_is1 =>.FinalWire Kft.®
O42 - Logiciel: Alcor Micro Smart Card Reader Driver - (.Alcor Micro Corp..) [HKLM][64Bits] -- SZCCID =>.Alcor Micro Corp.
O42 - Logiciel: Assistente de Atualização do Windows 10 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft Corporation®
O42 - Logiciel: B110 - (.Hewlett-Packard.) [HKLM][64Bits] -- {CC2917EA-96EC-41D1-9756-760C32AF6F12} =>.Hewlett-Packard
O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM][64Bits] -- {AC62F3F2-61A2-4357-93EC-C308E3FEDF4E} =>.Google, Inc.
O42 - Logiciel: Bitdefender Agent - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender Agent =>.Bitdefender SRL®
O42 - Logiciel: Bitdefender Device Management - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender Device Management =>.Bitdefender SRL®
O42 - Logiciel: Bitdefender Total Security - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender =>.Bitdefender SRL®
O42 - Logiciel: BufferChm - (.Hewlett-Packard.) [HKLM][64Bits] -- {FA0FF682-CC70-4C57-93CD-E276F3E7537E} =>.Hewlett-Packard
O42 - Logiciel: Cartão de Cidadão Português 2.4.4 (build 5176) - (.Portuguese Government.) [HKLM][64Bits] -- {824563DE-75AD-4166-9DC0-B6482F205176}
O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {383BB30A-B4A7-4666-9A83-22CFA8640097} =>.IvoSoft
O42 - Logiciel: Compatibility Pack for the 2007 Office system - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0020-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Destinations - (.Hewlett-Packard.) [HKLM][64Bits] -- {BD7204BA-DD64-499E-9B55-6A282CDF4FA4} =>.Hewlett-Packard
O42 - Logiciel: DeviceDiscovery - (.Hewlett-Packard.) [HKLM][64Bits] -- {1458BB78-1DC5-4BC0-B9A3-2B644F5A8105} =>.Hewlett-Packard
O42 - Logiciel: Evernote v. 6.6.4 - (.Evernote Corp..) [HKLM][64Bits] -- {FAA0F386-730B-11E7-8B9C-005056951CAD} =>.Evernote Corp.
O42 - Logiciel: FMW 1 - (.AVG Technologies.) [HKLM][64Bits] -- {DC301684-9A48-4E46-870F-DDA8981E298D} =>.AVG Technologies
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: GPBaseService2 - (.Hewlett-Packard.) [HKLM][64Bits] -- {BB3447F6-9553-4AA9-960E-0DB5310C5779} =>.Hewlett-Packard
O42 - Logiciel: HashTab 6.0.0.28 - (.Implbits Software.) [HKLM][64Bits] -- HashTab =>.Implbits Software
O42 - Logiciel: HP Customer Participation Program 14.0 - (.HP.) [HKLM][64Bits] -- HPExtendedCapabilities =>.Hewlett Packard®
O42 - Logiciel: HP Imaging Device Functions 14.0 - (.HP.) [HKLM][64Bits] -- HP Imaging Device Functions =>.Hewlett Packard®
O42 - Logiciel: HP Photosmart Wireless B110 All-In-One Driver Software 14.0 Rel. 6 - (.HP.) [HKLM][64Bits] -- {C63184F3-8343-408F-A948-DDB0AC969A99} =>.Hewlett Packard®
O42 - Logiciel: HP Solution Center 14.0 - (.HP.) [HKLM][64Bits] -- HP Solution Center & Imaging Support Tools =>.Hewlett Packard®
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {96D12EC9-720B-45FB-904C-36D6307A1C76} =>.Hewlett-Packard Company
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard
O42 - Logiciel: HPAppStudio - (.Hewlett-Packard.) [HKLM][64Bits] -- {565E7B0E-B76B-4EAD-9753-F1E72A5CF12E} =>.Hewlett-Packard
O42 - Logiciel: HPPhotoGadget - (.Hewlett-Packard.) [HKLM][64Bits] -- {CAE4213F-F797-439D-BD9E-79B71D115BE3} =>.Hewlett-Packard
O42 - Logiciel: HPProductAssistant - (.Hewlett-Packard.) [HKLM][64Bits] -- {150B6201-E9E6-4DFB-960E-CCBD53FBDDED} =>.Hewlett-Packard
O42 - Logiciel: HPSSupply - (.Hewlett-Packard.) [HKLM][64Bits] -- {AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3} =>.Hewlett-Packard
O42 - Logiciel: inSSIDer Office - (.MetaGeek, LLC.) [HKLM][64Bits] -- {F7F37748-A121-4B38-8192-6453E1FF5ADD} =>.MetaGeek, LLC
O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {90F00673-A276-4A58-B675-B426D39D1E09} =>.Intel Corporation
O42 - Logiciel: ISO Opener - (.www.isoopener.com.) [HKLM][64Bits] -- {CE235F00-F8CD-41AF-83D5-236D90E33BFB}_is1 =>.www.isoopener.com
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {68FDAFC6-2B51-4000-AB86-054D048F06FA} =>.Apple Inc.
O42 - Logiciel: Java 8 Update 151 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180151F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: K-Lite Mega Codec Pack 12.5.0 - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 =>.KLCP
O42 - Logiciel: LibreOffice 5.4.4.2 - (.The Document Foundation.) [HKLM][64Bits] -- {36E72E7B-9992-4C69-88B1-5E466E4A1386} =>.The Document Foundation
O42 - Logiciel: MarketResearch - (.Hewlett-Packard.) [HKLM][64Bits] -- {D360FA88-17C8-4F14-B67F-13AAF9607B12} =>.Hewlett-Packard
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Modelo 1 IMI 1.3.0 - (.DGITA.) [HKLM][64Bits] -- 9497-0238-4173-8791
O42 - Logiciel: Mozilla Firefox 58.0.2 (x86 pt-PT) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 58.0.2 (x86 pt-PT) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Network64 - (.Hewlett-Packard.) [HKLM][64Bits] -- {6BFAB6C1-6D46-46DB-A538-A269907C9F2F} =>.Hewlett-Packard
O42 - Logiciel: NFOPad 1.71 - (.True Human Design.) [HKLM][64Bits] -- NFOPad =>.True Human Design
O42 - Logiciel: NVIDIA Drivers - (.nVidia Corporation.) [HKLM][64Bits] -- NVIDIA Drivers =>.NVIDIA Corporation
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-007E-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0816-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Pacote de controladores do Windows - Estado Português SmartCard (07/26/201 - (.Estado Português.) [HKLM][64Bits] -- FE243E41772876B005E5C788B4B7DF2E9914C241 =>.Microsoft Windows®
O42 - Logiciel: plugin Autenticação.Gov - (.Agência para a Modernização Administrativa.) [HKLM][64Bits] -- {A0C5A53F-B458-4643-8B42-3DA9FAD62B93}
O42 - Logiciel: PS_AIO_07_B110_SW_Min - (.Hewlett-Packard.) [HKLM][64Bits] -- {C0974FF0-282B-4730-A50C-B112FA263E17} =>.Hewlett-Packard
O42 - Logiciel: QuickTransfer - (.Hewlett-Packard.) [HKLM][64Bits] -- {E517094C-06B6-419F-8FFD-EF4F57972130} =>.Hewlett-Packard
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: RecordPad Sound Recorder - (.NCH Software.) [HKLM][64Bits] -- Recordpad =>.NCH Software®
O42 - Logiciel: Restore Point Creator version 5.2 - (..) [HKLM][64Bits] -- {CC48DE1C-8EC2-43BC-9201-29701CD9AE13}_is1
O42 - Logiciel: Revo Uninstaller Pro 3.2.0 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd.
O42 - Logiciel: Scan - (.Hewlett-Packard.) [HKLM][64Bits] -- {06A1D88C-E102-4527-AF70-29FFD7AF215A} =>.Hewlett-Packard
O42 - Logiciel: Shop for HP Supplies - (.HP.) [HKLM][64Bits] -- Shop for HP Supplies =>.Hewlett Packard®
O42 - Logiciel: Skype™ 7.40 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Software Intel® PROSet/Wireless WiFi - (.Intel Corporation.) [HKLM][64Bits] -- {ECE5B218-A086-4E18-A362-D11181681457} =>.Intel Corporation
O42 - Logiciel: SolutionCenter - (.Hewlett-Packard.) [HKLM][64Bits] -- {BC5DD87B-0143-4D14-AAE6-97109614DC6B} =>.Hewlett-Packard
O42 - Logiciel: SoundTap Streaming Audio Recorder - (.NCH Software.) [HKLM][64Bits] -- SoundTap =>.NCH Software®
O42 - Logiciel: Status - (.Hewlett-Packard.) [HKLM][64Bits] -- {5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D} =>.Hewlett-Packard
O42 - Logiciel: Suporte para Aplicações Apple (32-bits) - (.Apple Inc..) [HKLM][64Bits] -- {D811A40A-9791-497C-B9DC-2D89C8E95EA1} =>.Apple Inc.
O42 - Logiciel: Suporte para Aplicações Apple (64-bits) - (.Apple Inc..) [HKLM][64Bits] -- {8B47B514-F5D2-4E0D-B951-6E250618A7CD} =>.Apple Inc.
O42 - Logiciel: Switch Sound File Converter - (.NCH Software.) [HKLM][64Bits] -- Switch =>.NCH Software®
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics
O42 - Logiciel: Toolbox - (.Hewlett-Packard.) [HKLM][64Bits] -- {292F0F52-B62D-4E71-921B-89A682402201} =>.Hewlett-Packard
O42 - Logiciel: TrayApp - (.Hewlett-Packard.) [HKLM][64Bits] -- {CD31E63D-47FD-491C-8117-CF201D0AFAB5} =>.Hewlett-Packard
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {E345A108-D9E8-456B-9550-435132D5C9CE} =>.Microsoft Corporation
O42 - Logiciel: UpdateAssistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {567756E0-361F-4E88-AF74-8B0E4628E5BC} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
O42 - Logiciel: WavePad Sound Editor - (.NCH Software.) [HKLM][64Bits] -- WavePad =>.NCH Software
O42 - Logiciel: WebReg - (.Hewlett-Packard.) [HKLM][64Bits] -- {8EE94FD8-5F52-4463-A340-185D16328158} =>.Hewlett-Packard
O42 - Logiciel: Windows 10 Update and Privacy Settings - (.Microsoft Corporation.) [HKLM][64Bits] -- {4DFCD818-036A-4229-A67D-CF17DC461D92} =>.Microsoft Corporation
O42 - Logiciel: Windows Setup Remediations (x64) (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.40 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (118) - 60s
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\AVG =>.AVG Software
HKLM\SOFTWARE\Bitdefender =>.Bitdefender
HKLM\SOFTWARE\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\Eset =>.ESET
HKLM\SOFTWARE\Evernote =>.Evernote
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\Icaros =>.Icaros
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Intel Security =>.Intel Security
HKLM\SOFTWARE\IObit =>.IObit
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\LAV =>.LAV Inc
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\MetaGeek, LLC =>.MetaGeek, LLC
HKLM\SOFTWARE\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\NCH Software =>.NCH Software
HKLM\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\AVG =>.AVG Software
HKLM\SOFTWARE\WOW6432Node\Bitdefender =>.Bitdefender
HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\WOW6432Node\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\WOW6432Node\Eset =>.ESET
HKLM\SOFTWARE\WOW6432Node\Evernote =>.Evernote
HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Intel Security =>.Intel Security
HKLM\SOFTWARE\WOW6432Node\IObit =>.IObit
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\WOW6432Node\LAV =>.LAV Inc
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\MetaGeek, LLC =>.MetaGeek, LLC
HKLM\SOFTWARE\WOW6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\NCH Software =>.NCH Software
HKLM\SOFTWARE\WOW6432Node\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\WOW6432Node\Nero =>.Ahead Corporation
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Agência para a Modernização Administrativa
HKCU\SOFTWARE\Apowersoft =>.Apowersoft
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Bitdefender =>.Bitdefender
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\Evernote =>.Evernote
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\HashTab =>.Implbits Software
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\IvoSoft =>.IvoSoft
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\MetaGeek, LLC =>.MetaGeek, LLC
HKCU\SOFTWARE\Mirage =>.Mirage Game
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\NCH Software =>.NCH Software
HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKCU\SOFTWARE\Nero =>.Ahead Corporation
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NFOPad
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\PTEID
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-a8239664c46d =>.Skype Technologies
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\PasswordBox =>.PasswordBox Inc

---\\ Conteúdo das pastas Programs (264) - 48s
O43 - CFD: 18/05/2017 - [] D -- C:\Program Files\Bitdefender =>.Bitdefender
O43 - CFD: 04/03/2018 - [] AD -- C:\Program Files\Bitdefender Agent =>.Bitdefender
O43 - CFD: 19/02/2018 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files\Classic Shell =>.Ivo Beltchev
O43 - CFD: 02/03/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 06/11/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [0] SHD -- C:\Program Files\Ficheiros Comuns
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files\HashTab Shell Extension =>.Implbits Software
O43 - CFD: 02/03/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 05/01/2018 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 02/11/2017 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 02/11/2017 - [] AD -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 26/04/2017 - [] D -- C:\Program Files\KMS & 7z {03391424EA277B645EEE9BD7C0638224}
O43 - CFD: 07/01/2018 - [] AD -- C:\Program Files\LibreOffice 5 =>.LibreOffice
O43 - CFD: 29/10/2017 - [0] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 02/03/2018 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 06/11/2017 - [] AD -- C:\Program Files\Portugal Identity Card
O43 - CFD: 06/11/2017 - [] AD -- C:\Program Files\PTeID Minidriver
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 22/02/2018 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation®
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 25/04/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb
O43 - CFD: 02/03/2018 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 24/01/2018 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 08/08/2017 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 20/03/2017 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 14/09/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 15/12/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 18/02/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 06/03/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 13/01/2018 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 05/06/2017 - [] D -- C:\Program Files (x86)\BlueSprig =>.BlueSprig
O43 - CFD: 31/12/2017 - [] AD -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc.
O43 - CFD: 02/03/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 12/09/2017 - [] D -- C:\Program Files (x86)\Declarações Electrónicas
O43 - CFD: 06/08/2017 - [] D -- C:\Program Files (x86)\Evernote =>.EverNote Corporation
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files (x86)\FinalWire =>.FinalWire Kft.®
O43 - CFD: 10/02/2018 - [] D -- C:\Program Files (x86)\Genesys Logic =>.Genesys Logic
O43 - CFD: 29/10/2017 - [0] D -- C:\Program Files (x86)\Glarysoft =>.GlarySoft
O43 - CFD: 05/07/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\GUM7215.tmp =>.Google Inc®
O43 - CFD: 25/05/2017 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 27/06/2017 - [] AD -- C:\Program Files (x86)\Hp =>.Hewlett-Packard
O43 - CFD: 26/04/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 05/01/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 27/04/2017 - [] AD -- C:\Program Files (x86)\ISO Opener
O43 - CFD: 22/12/2017 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 25/04/2017 - [] AD -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 06/07/2017 - [0] D -- C:\Program Files (x86)\McAfee =>.McAfee
O43 - CFD: 04/08/2017 - [] D -- C:\Program Files (x86)\MetaGeek =>.MetaGeek
O43 - CFD: 01/11/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 03/03/2018 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 04/03/2018 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 01/11/2017 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation
O43 - CFD: 08/07/2017 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files (x86)\NFOPad
O43 - CFD: 02/03/2018 - [] D -- C:\Program Files (x86)\plugin Autenticacao.Gov {5D30FA840FD54E90284B584A}
O43 - CFD: 26/04/2017 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] AD -- C:\Program Files (x86)\Restore Point Creator =>.Thomas Parkison
O43 - CFD: 03/01/2018 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 26/04/2017 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 14/09/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 15/12/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 18/02/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 18/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 14/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 19/05/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG =>.AVG Software
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cartão de Cidadão
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell =>.Ivo Beltchev
O43 - CFD: 12/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Declarações Electrónicas
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote =>.EverNote Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire =>.FinalWire
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 31/12/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless =>.Intel Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO Opener
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.4 =>.LibreOffice
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek =>.MetaGeek
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\plugin Autenticacao.Gov
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Restore Point Creator =>.Thomas Parkison
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 02/03/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 13/01/2018 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 25/04/2017 - [0] SHD -- C:\ProgramData\Ambiente de Trabalho
O43 - CFD: 02/11/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 02/11/2017 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 08/08/2017 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 14/09/2017 - [] D -- C:\ProgramData\Atc
O43 - CFD: 06/10/2017 - [] D -- C:\ProgramData\bdch =>.Softwin
O43 - CFD: 18/05/2017 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender
O43 - CFD: 18/05/2017 - [] D -- C:\ProgramData\Bitdefender =>.Bitdefender
O43 - CFD: 18/05/2017 - [] D -- C:\ProgramData\Bitdefender Agent =>.Bitdefender
O43 - CFD: 18/05/2017 - [] D -- C:\ProgramData\Bitdefender Device Management =>.Bitdefender
O43 - CFD: 25/04/2017 - [] D -- C:\ProgramData\ClassicShell =>.SourceForge
O43 - CFD: 26/04/2017 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [0] SHD -- C:\ProgramData\Documentos =>.Microsoft Corporation
O43 - CFD: 06/10/2017 - [0] D -- C:\ProgramData\Dumps
O43 - CFD: 08/08/2017 - [] AD -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 27/06/2017 - [] AD -- C:\ProgramData\HP Product Assistant =>.Hewlett-Packard
O43 - CFD: 31/12/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 24/01/2018 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 29/10/2017 - [0] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 24/01/2018 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 25/04/2017 - [0] SHD -- C:\ProgramData\Menu Iniciar =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [0] SHD -- C:\ProgramData\Modelos =>.Microsoft Corporation
O43 - CFD: 08/07/2017 - [] D -- C:\ProgramData\NCH Software =>.NCH Software
O43 - CFD: 15/09/2017 - [] AD -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 22/12/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 15/12/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 31/12/2017 - [] D -- C:\ProgramData\Roaming =>.Microsoft Corporation
O43 - CFD: 03/01/2018 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 18/03/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 16/11/2017 - [] AD -- C:\ProgramData\SZCCID
O43 - CFD: 08/08/2017 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 18/05/2017 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group
O43 - CFD: 27/06/2017 - [] D -- C:\ProgramData\WEBREG =>.Hewlett-Packard
O43 - CFD: 20/03/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 13/01/2018 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 31/12/2017 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 27/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 27/06/2017 - [] D -- C:\Program Files (x86)\Common Files\HP =>.Hewlett-Packard
O43 - CFD: 26/04/2017 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 22/12/2017 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 02/03/2018 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 03/01/2018 - [] AD -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 20/03/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 06/11/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\.pteid-ng
O43 - CFD: 12/09/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 05/08/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 06/11/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 28/09/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Autenticação.gov.pt
O43 - CFD: 18/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Bitdefender =>.Bitdefender
O43 - CFD: 05/06/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\BlueSprig =>.BlueSprig
O43 - CFD: 25/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\ClassicShell =>.SourceForge
O43 - CFD: 17/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Google =>.Google
O43 - CFD: 27/06/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\HP =>.Hewlett-Packard
O43 - CFD: 04/07/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\HpUpdate =>.Hewlett-Packard
O43 - CFD: 31/12/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Intel =>.Intel Corporation
O43 - CFD: 07/01/2018 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\LibreOffice =>.LibreOffice
O43 - CFD: 20/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 06/03/2018 - [] SD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/12/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 06/06/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 08/07/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\NCH Software =>.NCH Software
O43 - CFD: 27/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Nero =>.Ahead Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\plugin Autenticação.Gov
O43 - CFD: 18/05/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Roaming\QuickScan =>.Bitdefender
O43 - CFD: 08/07/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Roaming\Recordpad
O43 - CFD: 15/02/2018 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Skype =>.Skype
O43 - CFD: 25/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 06/03/2018 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Jose Carlos\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 19/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 06/10/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\bdch =>.Softwin
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\CEF =>.CEF
O43 - CFD: 06/03/2018 - [] D -- C:\Users\Jose Carlos\AppData\Local\ClassicShell =>.SourceForge
O43 - CFD: 12/07/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Local\DBG =>.DBG
O43 - CFD: 09/01/2018 - [0] D -- C:\Users\Jose Carlos\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 24/10/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 15/12/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\ESET =>.ESET
O43 - CFD: 05/07/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Google =>.Google
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Jose Carlos\AppData\Local\Histórico =>.Microsoft Corporation
O43 - CFD: 27/06/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 24/01/2018 - [] D -- C:\Users\Jose Carlos\AppData\Local\IIIQF =>.Scrabblo
O43 - CFD: 20/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 02/03/2018 - [] D -- C:\Users\Jose Carlos\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 24/08/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Nero =>.Ahead Corporation
O43 - CFD: 22/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Nero_AG =>.Ahead
O43 - CFD: 25/04/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 15/12/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 19/05/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 18/09/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\Recovery =>.Recovery Labs
O43 - CFD: 06/03/2018 - [] D -- C:\Users\Jose Carlos\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Jose Carlos\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 06/07/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\UNP =>.Microsoft Corporation
O43 - CFD: 01/02/2018 - [] D -- C:\Users\Jose Carlos\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 18/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\Local\VS Revo Group =>.VS Revo Group
O43 - CFD: 19/02/2018 - [] D -- C:\Users\Jose Carlos\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 26/04/2017 - [0] D -- C:\Users\Jose Carlos\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 12/09/2017 - [] D -- C:\Users\Jose Carlos\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 06/08/2017 - [] D -- C:\Users\Jose Carlos\AppData\LocalLow\Evernote =>.EverNote Corporation
O43 - CFD: 20/05/2017 - [] SD -- C:\Users\Jose Carlos\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/03/2018 - [] D -- C:\Users\Jose Carlos\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Jose Carlos\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 22/05/2017 - [] D -- C:\Users\Jose Carlos\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 02/03/2018 - [] D -- C:\Users\Jose Carlos\Desktop\AUTENTICAÇÃO.GOV_files
O43 - CFD: 11/01/2018 - [] D -- C:\Users\Jose Carlos\Desktop\Demos
O43 - CFD: 22/02/2018 - [] D -- C:\Users\Jose Carlos\Desktop\FRST-OlderVersion
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\Jose Carlos\Desktop\Nova pasta
O43 - CFD: 01/09/2017 - [] D -- C:\Users\Jose Carlos\Desktop\Outras Comidas atum em caril_ficheiros
O43 - CFD: 02/01/2018 - [] D -- C:\Users\Jose Carlos\Desktop\Pão, Bolos e Cia._ FARTURAS_files
O43 - CFD: 18/02/2018 - [0] D -- C:\Users\Jose Carlos\Desktop\Quarantine
O43 - CFD: 25/04/2017 - [] D -- C:\Users\Public\Desktop\RCTuga
O43 - CFD: 08/08/2017 - [] RD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] RD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 05/01/2018 - [] RD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 08/08/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 18/03/2017 - [] D -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 05/01/2018 - [] RD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\Users\Jose Carlos\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 24/08/2017 - [] D -- C:\Users\Default\AppData\Local\Google =>.Google
O43 - CFD: 25/04/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Histórico =>.Microsoft Corporation
O43 - CFD: 20/03/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 24/08/2017 - [] D -- C:\Users\Default User\AppData\Local\Google =>.Google
O43 - CFD: 25/04/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Histórico =>.Microsoft Corporation
O43 - CFD: 20/03/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 13/08/2017 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DBG =>.DBG
O43 - CFD: 08/08/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 31/08/2017 - [] SD -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 1s
O106 - SIOI: [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll =>.Google Inc®
O106 - SIOI: [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll =>.Google Inc®
O106 - SIOI: [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll =>.Google Inc®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL da Extensão da Shell de Armazenamento A.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - Interface de utilizador de cache do cliente.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll =>.Ivaylo Beltchev®

---\\ Search Context Menu Handlers (SCMH) (31) - 5s
O108 - CMH1: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\contextmenu64.dll =>.Google Inc®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensões da shell para partilha.) -- C:\WINDOWS\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL comum da shell do Windows.) -- C:\WINDOWS\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensões da shell para partilha.) -- C:\WINDOWS\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH1: WinRAR32 [64Bits] - [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extensão da Shell de Pastas de Trabalho da.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH2: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\contextmenu64.dll =>.Google Inc®
O108 - CMH2: JetClean Ext Menu [64Bits] - {4240801E-7B16-4A3F-A89A-E719BE3F9050} . (.Orphan.)
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL comum da shell do Windows.) -- C:\WINDOWS\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\WINDOWS\System32\StartMenuHelper64.dll =>.IvoSoft
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL comum da shell do Windows.) -- C:\WINDOWS\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL comum da shell do Windows.) -- C:\WINDOWS\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: UnlockerShellExtension [64Bits] - [CC]{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (.Orphan.)
O108 - CMH4: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\contextmenu64.dll =>.Google Inc®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Interface de utilizador de cache do cliente.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensões da shell para partilha.) -- C:\WINDOWS\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extensão da Shell de Pastas de Trabalho da.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL comum da shell do Windows.) -- C:\WINDOWS\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensões da shell para partilha.) -- C:\WINDOWS\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extensão da Shell de Pastas de Trabalho da.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL comum da shell do Windows.) -- C:\WINDOWS\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Interface de utilizador de cache do cliente.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Resolvedor de Aplicações.) -- C:\WINDOWS\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group®
O108 - CMH6: StartMenuExt [64Bits] - [CC]{E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Orphan.)
O108 - CMH6: UnlockerShellExtension [64Bits] - [CC]{DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (.Orphan.)
O108 - CMH6: WinRAR [64Bits] - [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH6: WinRAR32 [64Bits] - [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL da Extensão da Shell de Armazenamento A.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensões da shell para partilha.) -- C:\WINDOWS\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (9) - 2s
O50 - IFEO:C:\WINDOWS\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Módulo de Instalação de Controladores.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitário de Inicialização por utilizador.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ieUnatt.exe - (.Microsoft Corporation - Utilitário de Instalação Totalmente Silenci.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\mmc.exe - (.Microsoft Corporation - Consola de gestão da Microsoft.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Ferramenta de Remoção de Software Malicioso.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\mshta.exe - (.Microsoft Corporation - Anfitrião de Aplicação de HTML da Microsoft.) [MitigationOptions\\256] =>.Microsoft Corporation

---\\ Lista dos drivers do sistema (69) - 43s
O58 - SDL:2017/03/18 20:56:25 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107424] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:26 A . (.LSI Corp - SoftModem Device Driver.) -- C:\WINDOWS\System32\drivers\agrsm64.sys [1146880] =>.LSI Corp
O58 - SDL:2017/11/15 14:22:57 A . (...) -- C:\WINDOWS\System32\drivers\AlcGener.sys [44496] {69E33B1D164023BDEF8763CDE52212FD}
O58 - SDL:2017/03/18 20:56:25 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259488] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27040] =>.Microsoft Windows®
O58 - SDL:2012/07/18 00:49:00 A . (. - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\WINDOWS\System32\drivers\AmpPal.sys [198144]
O58 - SDL:2017/03/18 20:56:25 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132000] =>.Microsoft Windows®
O58 - SDL:2018/02/27 12:30:11 A . (.BitDefender S.R.L. Bucharest, ROMANIA - BitDefender Active Threat Control Filesyste.) -- C:\WINDOWS\System32\drivers\atc.sys [1177720] =>.Bitdefender SRL®
O58 - SDL:2018/02/27 12:24:22 A . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\System32\drivers\avc3.sys [1725800] =>.Bitdefender SRL®
O58 - SDL:2017/05/29 20:27:57 A . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\WINDOWS\System32\drivers\avckf.sys [879600] =>.Bitdefender SRL®
O58 - SDL:2017/03/18 20:56:25 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation
O58 - SDL:2016/03/14 21:04:45 A . (.Bitdefender - Bitdefender Early Launch Anti-Malware Drive.) -- C:\WINDOWS\System32\drivers\bdelam.sys [23672] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2017/11/24 09:47:29 A . (.© Bitdefender SRL - privacy Filter Driver.) -- C:\WINDOWS\System32\drivers\bdprivmon.sys [47376] =>.Bitdefender SRL®
O58 - SDL:2015/12/04 18:27:06 A . (.BitDefender - FileVault Disk Driver.) -- C:\WINDOWS\System32\drivers\bdvedisk.sys [87912] =>.Bitdefender SRL®
O58 - SDL:2017/03/18 20:56:23 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533920] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [102816] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [347032] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T4 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [2104224] =>.Microsoft Windows®
O58 - SDL:2012/09/25 07:52:04 A . (. - IEEE-1284.4-1999 Driver.) -- C:\WINDOWS\System32\drivers\Dot4.sys [151968] =>.Hewlett-Packard Company®
O58 - SDL:2012/09/25 07:52:04 A . (. - IEEE-1284.4 Print Class Driver.) -- C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040] =>.Hewlett-Packard Company®
O58 - SDL:2017/03/18 20:56:26 A . (.Intel Corporation - Intel(R) 10/100 Network Connection NDIS 5.1.) -- C:\WINDOWS\System32\drivers\eFE5b32e.sys [182656] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:23 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419040] =>.Microsoft Windows®
O58 - SDL:2017/11/15 14:24:02 A . (.GenesysLogic - GeneStor.) -- C:\WINDOWS\System32\drivers\GeneStor.sys [130648] =>.GENESYS LOGIC, INC.®
O58 - SDL:2018/02/27 12:28:38 A . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\WINDOWS\System32\drivers\gzflt.sys [191784] =>.Bitdefender SRL®
O58 - SDL:2017/03/18 20:56:25 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64416] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:28 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [33280] =>.Intel(R) Corporation
O58 - SDL:2017/03/18 20:56:28 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation
O58 - SDL:2017/03/18 20:56:28 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [70656] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:28 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [85504] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:28 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165376] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:28 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [168448] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:23 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/03/18 20:56:19 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:26 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673184] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412064] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526240] =>.Microsoft Windows®
O58 - SDL:2018/02/27 12:23:23 A . (.Bitdefender - IGNIS filter driver.) -- C:\WINDOWS\System32\drivers\ignis.sys [190752] =>.Bitdefender SRL®
O58 - SDL:2017/03/18 20:56:25 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108960] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [123808] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [103328] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82848] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59808] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [64416] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575904] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842656] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63904] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108960] =>.Microsoft Windows®
O58 - SDL:2010/10/07 04:11:52 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwLv64.sys [7533568] =>.Intel Corporation
O58 - SDL:2017/03/18 20:56:25 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150432] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166304] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58784] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2016/12/21 14:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [40240] =>.VS Revo Group®
O58 - SDL:2013/11/27 17:42:28 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3751896] =>.Realtek Semiconductor Corp®
O58 - SDL:2017/11/15 14:22:16 A . (.Realtek Corporation - Realtek USB FE/GbE NIC NDIS6.40 64-bit Driv.) -- C:\WINDOWS\System32\drivers\rtux64w10.sys [427488] =>.Realtek Semiconductor Corp.®
O58 - SDL:2017/03/18 20:56:26 A . (...) -- C:\WINDOWS\System32\drivers\SDFRd.sys [31128] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44960] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81824] =>.Microsoft Windows®
O58 - SDL:2017/07/08 11:22:22 A . (...) -- C:\WINDOWS\System32\drivers\stdriverx64.sys [52976] =>.NCH Software Pty Ltd®
O58 - SDL:2017/03/18 20:56:25 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31136] =>.Microsoft Windows®
O58 - SDL:2008/08/14 09:40:44 A . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [260144] =>.Synaptics Incorporated®
O58 - SDL:2017/11/15 14:22:57 A . (.Generic - SZCCID.sys.) -- C:\WINDOWS\System32\drivers\SzCCID.sys [56784] {69E33B1D164023BDEF8763CDE52212FD} =>.Generic
O58 - SDL:2018/03/06 16:23:42 A . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\System32\drivers\trufos.sys [439576] =>.Bitdefender SRL®
O58 - SDL:2017/03/18 20:56:25 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166816] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305568] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32160] =>.Microsoft Windows®
O58 - SDL:2017/03/18 20:56:25 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®

---\\ Associações Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Iniciador do Snap-in Visualizador de Evento.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- "C:\WINDOWS\System32\WScript.exe" "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editor de registo.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de inicialização Internet (12) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por utilizador.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitário de Inicialização por utilizador.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitário de Inicialização por utilizador.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Pesquisa de infeção nos navegadores da Internet (2) - 18s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Listagem dos serviços iniciados pelo Svchost (48) - 3s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Serviço de Propagação de Certificados de Sm.) -- C:\WINDOWS\System32\certprop.dll [189952] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Serviço de Propagação de Certificados de Sm.) -- C:\WINDOWS\System32\certprop.dll [189952] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL do Serviço de Servidor.) -- C:\WINDOWS\System32\srvsvc.dll [303104] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Cliente de Política de Grupo.) -- C:\WINDOWS\System32\gpsvc.dll [1269248] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extensão IKE.) -- C:\WINDOWS\System32\IKEEXT.DLL [934912] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Serviço que oferece conectividade IPv6 numa.) -- C:\WINDOWS\System32\iphlpsvc.dll [996864] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL secundária de serviço de início de sess.) -- C:\WINDOWS\System32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Serviço de Informações sobre Aplicações.) -- C:\WINDOWS\System32\appinfo.dll [138752] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Serviço de Deteção iSCSI.) -- C:\WINDOWS\System32\iscsiexe.dll [150016] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Serviço EAPHost da Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [108032] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Serviço Programador de Tarefas.) -- C:\WINDOWS\System32\schedsvc.dll [877568] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\System32\wbem\WMIsvc.dll [221696] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL do Browser de Computador.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\System32\profsvc.dll [411648] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Serviço de Configuração do Ambiente de Trab.) -- C:\WINDOWS\System32\SessEnv.dll [385536] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Relatórios e Soluções de Problemas.) -- C:\WINDOWS\System32\wercplsupport.dll [98816] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\System32\Windows.SharedPC.AccountManager.dll [192512] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1135104] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Serviço de Autenticação Natural.) -- C:\WINDOWS\System32\NaturalAuth.dll [723968] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Serviço Conta Microsoft®.) -- C:\WINDOWS\System32\wlidsvc.dll [2153984] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [877568] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [1015296] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL do Serviço do Windows Management.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [536064] =>.Microsoft Corporation
O83 - Search Svchost Services: xbgm (xbgm) . (.Microsoft Corporation - Xbox Game Monitoring Service.) -- C:\WINDOWS\System32\xbgmsvc.dll [301216] =>.Microsoft Windows Publisher®
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL de Serviços de Tema da Shell do Windows.) -- C:\WINDOWS\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\WINDOWS\System32\TokenBroker.dll [1052672] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Serviço de Geolocalização.) -- C:\WINDOWS\System32\lfsvc.dll [43520] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Monitor de infrav..) -- C:\WINDOWS\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestor de Marcação Automática de Acesso Rem.) -- C:\WINDOWS\System32\rasauto.dll [104448] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestor de Ligação de Acesso Remoto.) -- C:\WINDOWS\System32\rasmans.dll [874496] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestor de Interfaces Dinâmicas.) -- C:\WINDOWS\System32\mprdim.dll [490496] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Serviço de Notificação de Eventos do Sistem.) -- C:\WINDOWS\System32\Sens.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componentes do Microsoft NAT Helper.) -- C:\WINDOWS\System32\ipnathlp.dll [537600] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Servidor de telefonia Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [306688] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\System32\wuaueng.dll [2449408] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Serviço de transferência inteligente em seg.) -- C:\WINDOWS\System32\qmgr.dll [1159680] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - DLL de serviços da shell do Windows.) -- C:\WINDOWS\System32\shsvcs.dll [612864] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\System32\dmwappushsvc.dll [55296] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Definições de Voo.) -- C:\WINDOWS\System32\flightsettings.dll [719872] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Serviço de Sistema de Notificações Push do.) -- C:\WINDOWS\System32\WpnService.dll [276480] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Serviço BDE.) -- C:\WINDOWS\System32\bdesvc.dll [385536] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\System32\XboxNetApiSvc.dll [1067008] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Atualização de Sessão Orchestrator Core.) -- C:\WINDOWS\System32\usocore.dll [690688] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Serviço de Configuração de Rede.) -- C:\WINDOWS\System32\NetSetupSvc.dll [261632] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestor de Configuração de Dispositivos.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [233984] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Serviço do Assistente de Conectividade da R.) -- C:\WINDOWS\System32\NcaSvc.dll [167424] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\WINDOWS\System32\XboxGipSvc.dll [18944] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Serviço de instalação de software.) -- C:\WINDOWS\System32\appmgmts.dll [196096] =>.Microsoft Corporation

---\\ Lista das exceções do FireWall (FirewallRules) (2) - 7s
O87 - FAEL: "{E07D2736-E94D-4047-943F-816D4C20A897}" [Out-None-P6-TRUE] .(...) -- C:\Windows\KMS-R@1n.exe (.not file.) =>HackTool.WinActivator
O87 - FAEL: "{3D2A2A09-22B0-41C6-8007-99C48300C732}" [In-None-P6-TRUE] .(...) -- C:\Windows\KMS-R@1n.exe (.not file.) =>HackTool.WinActivator

---\\ Pesquisa dos pacotes WindowsInstaller (49) - 31s
[MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/14 09:18:35] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\11f68c79.msi [40960] =>.Google Inc.
[MD5.53452504F882271738498E5F472026AA] [WIS][2012/10/22 19:59:40] (.Intel Corporation - Intel® WiFi.) -- C:\WINDOWS\Installer\169282.msi [81350656] =>.Intel Corporation
[MD5.FEC62A5018C43419D5773D177C3712D8] [WIS][2012/10/22 19:57:23] (.Intel Corporation - Intel(R) PROSet/Wireless Software for Bluet.) -- C:\WINDOWS\Installer\169286.msi [4521984] =>.Intel Corporation
[MD5.7F9BBDB60B98B6AB6A09446AFADA65CB] [WIS][2018/03/01 12:23:27] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\16b12b6e.msi [884736] =>.Adobe Systems Incorporated
[MD5.BCF581E80AF670A0D819BDDF994DA361] [WIS][2017/11/22 13:27:59] (.Evernote Corp. - Evernote v. 6.6.4.) -- C:\WINDOWS\Installer\1e2a5e5.msi [103751680] =>.Evernote Corp.
[MD5.B4F94108AF66AFE386FE4BF788681B61] [WIS][2017/11/06 15:45:23] (.Portuguese Government - Cartão de Cidadão Português 2.4.4 (build 51.) -- C:\WINDOWS\Installer\1f9f529.msi [30511104]
[MD5.811B69C4B9DE419AA45738A7CEC88C44] [WIS][2011/11/25 12:08:40] (. - .) -- C:\WINDOWS\Installer\2214c758.msi [472064]
[MD5.5989F0EC30DDB78903C90A3203CB7197] [WIS][2011/04/25 18:17:49] (.Hewlett-Packard - 64 Bit HP CIO Components Installer Package.) -- C:\WINDOWS\Installer\2214c75c.msi [502784] =>.Hewlett-Packard
[MD5.AEDECB28DB336B91C5C0AE51F0791FA6] [WIS][2011/05/12 23:40:42] (. - .) -- C:\WINDOWS\Installer\2214c764.msi [502272]
[MD5.6FAD5BA687EAD0D8CFD2279131B4D454] [WIS][2011/04/29 23:04:13] (. - .) -- C:\WINDOWS\Installer\2214c768.msi [396288]
[MD5.189A755EF7032F277AB8C3FC875E3A00] [WIS][2011/05/13 00:04:42] (. - .) -- C:\WINDOWS\Installer\2214c76c.msi [2642944]
[MD5.A209C4132AD1D77F2D9FA796779D0E20] [WIS][2011/11/16 08:04:03] (..) -- C:\WINDOWS\Installer\2214c771.msi [1326592]
[MD5.F06113F85D8C8AA55DA1CA3F63B82219] [WIS][2012/08/23 13:36:04] (. - .) -- C:\WINDOWS\Installer\2214c775.msi [391168]
[MD5.4077DCF468E8C32336A5F336FDE880A4] [WIS][2009/11/18 08:46:23] (. - .) -- C:\WINDOWS\Installer\2214c779.msi [618496]
[MD5.C4F6A053F1F0D59FA745582AD8EF04DD] [WIS][2011/04/29 22:46:01] (.Hewlett-Packard - Hewlett-Packard.) -- C:\WINDOWS\Installer\2214c781.msi [820736] =>.Hewlett-Packard
[MD5.02983CC3CF64FA371ADB1C7711BA7476] [WIS][2009/11/18 03:50:11] (..) -- C:\WINDOWS\Installer\2214c785.msi [241664]
[MD5.EE96BC43C3AE95E1C1C76C903DE9B643] [WIS][2009/12/01 04:32:25] (.Hewlett-Packard - Online access to your printer and more from.) -- C:\WINDOWS\Installer\2214c78a.msi [241152] =>.Hewlett-Packard
[MD5.EE12A71E4984E3FF597100189AB08898] [WIS][2011/04/30 02:08:51] (. - .) -- C:\WINDOWS\Installer\2214c78f.msi [699904]
[MD5.090BC981A8B34A8C5372739673CE654A] [WIS][2011/04/29 18:35:14] (. - .) -- C:\WINDOWS\Installer\2214c793.msi [678912]
[MD5.1A570F658FC8CE354337604D03802D79] [WIS][2011/04/29 21:24:50] (. - .) -- C:\WINDOWS\Installer\2214c797.msi [585728]
[MD5.C133F19570415BEC44B8403A15BD4E9A] [WIS][2011/04/29 19:01:06] (.Builds the Destinations MSI - Builds the Destinations MSI.) -- C:\WINDOWS\Installer\2214c79b.msi [523776] =>.Builds the Destinations MSI
[MD5.64EA9D605C57A2A020786BFDE1F2BB35] [WIS][2011/04/29 17:38:34] (. - .) -- C:\WINDOWS\Installer\2214c79f.msi [483840]
[MD5.93E1339E697FD5B9D72945CCD0910660] [WIS][2011/04/29 19:31:13] (. - .) -- C:\WINDOWS\Installer\2214c7a6.msi [829440]
[MD5.3F0108ED639664C6E06A5A46B0692A28] [WIS][2011/04/30 01:50:19] (. - .) -- C:\WINDOWS\Installer\2214c7aa.msi [465920]
[MD5.AFCAD6EDAA31F82E1DB585C7FA0F7A04] [WIS][2011/04/30 00:10:25] (. - .) -- C:\WINDOWS\Installer\2214c7ae.msi [761344]
[MD5.AF03F968CB6CC154EF2D0165F4053249] [WIS][2009/11/18 06:58:23] (. - .) -- C:\WINDOWS\Installer\2214c7b2.msi [1058304]
[MD5.BDE0D76EF26B78395DB2A35F77A98995] [WIS][2014/08/14 21:15:16] (.Hewlett-Packard - HP Update.) -- C:\WINDOWS\Installer\2214c7b7.msi [966656] =>.Hewlett-Packard
[MD5.59D0F30F102B382B13DD66A97A09E110] [WIS][2017/04/26 05:58:07] (.AVG Technologies - Visual Studio 2012 x64 Redistributables.) -- C:\WINDOWS\Installer\24ec11d.msi [13684736] =>.AVG Technologies
[MD5.D7C8F629A87765492DAA8856DE7A9CCC] [WIS][2017/04/26 05:58:08] (.AVG Technologies CZ, s.r.o. - Visual Studio 2012 x86 Redistributables.) -- C:\WINDOWS\Installer\24ec120.msi [40960] =>.AVG Technologies CZ, s.r.o.
[MD5.A382BFF58E83130E345D9D9E826FD8BC] [WIS][2016/10/25 08:03:29] (.Adobe Systems, Inc - Adobe Shockwave Player 12.2.) -- C:\WINDOWS\Installer\26b9a7.msi [24796672] =>.Adobe Systems, Inc
[MD5.31CDDF18DCD2A6B45EDD5C663B8AEECE] [WIS][2017/04/25 20:02:27] (.IvoSoft - Classic Shell.) -- C:\WINDOWS\Installer\26b9ab.msi [4980736] =>.IvoSoft
[MD5.16F6D765A6FB792EF45C0319D14DAF10] [WIS][2018/01/03 12:11:37] (.Skype Technologies S.A. - Skype.) -- C:\WINDOWS\Installer\32d06f.msi [45527040] =>.Skype Technologies S.A.
[MD5.A15EE7B076A63A6B89B9F483AD1B06FC] [WIS][2017/10/20 15:20:14] (.Apple Inc. - Apple Application Support Installer.) -- C:\WINDOWS\Installer\3e0c5ad.msi [45936640] =>.Apple Inc.
[MD5.CA663F5003310E9A4CDE4F80C475D2D6] [WIS][2017/10/20 15:20:16] (.Apple Inc. - Apple Application Support Installer.) -- C:\WINDOWS\Installer\3e0c5b1.msi [51003392] =>.Apple Inc.
[MD5.2698944C4188D9A17CA8F35EFEF5F502] [WIS][2017/10/20 15:42:10] (.Apple Inc. - iTunes Installer.) -- C:\WINDOWS\Installer\3e0c5c0.msi [158834688] =>.Apple Inc.
[MD5.E59BA976245D6AC45DC5B5A653CD4039] [WIS][2017/08/04 08:08:54] (.MetaGeek, LLC - inSSIDer Office.) -- C:\WINDOWS\Installer\4c398fc.msi [10052500] =>.MetaGeek, LLC
[MD5.9A863E7D1620AF0930B7AAF7CE76D753] [WIS][2017/12/22 14:07:54] (.Oracle Corporation - Java SE Runtime Environment 8 Update 151.) -- C:\WINDOWS\Installer\6543b7.msi [61034496] =>.Oracle Corporation
[MD5.D181C3EC418B36FD41F61937E31C66A1] [WIS][2017/12/22 14:07:36] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\6543bb.msi [761856] =>.Oracle Corporation
[MD5.6EF1A8DF2B4264294F8436F681B929DC] [WIS][2015/01/14 15:23:32] (.Hewlett-Packard Company - HP Support Solutions Framework.) -- C:\WINDOWS\Installer\6577b.msi [5165056] =>.Hewlett-Packard Company
[MD5.265CA2EB0C7D4961F80A7B1E6D194AA3] [WIS][2017/05/17 10:33:22] (.AVG Technologies - FMW.) -- C:\WINDOWS\Installer\6b69d6f9.msi [2179072] =>.AVG Technologies
[MD5.B242D69139D1324C567A06EEEF10E6E5] [WIS][2017/05/17 10:37:49] (.AVG Technologies - AVG Dashboard.) -- C:\WINDOWS\Installer\6b69d742.msi [2297856] =>.AVG Technologies
[MD5.63FCF4578A1097ACAECE09E452FFBA8F] [WIS][2015/03/17 08:52:49] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\8c44aac.msi [2803200] =>.Adobe Systems Incorporated
[MD5.BFFC5A17B0B7CE49C3A214D294C1ADA2] [WIS][2018/03/02 09:42:18] (.Agência para a Modernização Administrativa - plugin Autenticação.Gov.) -- C:\WINDOWS\Installer\9e24ae.msi [25853952]
[MD5.BFDF1AEFC863CEE8778568FAA46EDC1A] [WIS][2018/01/07 21:22:48] (.The Document Foundation - LibreOffice 5.4.) -- C:\WINDOWS\Installer\a2cf228.msi [245481472] =>.The Document Foundation
[MD5.9C9DDB0728807754EDBA66D8AA9E2EFE] [WIS][2018/01/30 18:57:50] (.Google, Inc. - Backup and Sync from Google.) -- C:\WINDOWS\Installer\b68a219.msi [52121600] =>.Google, Inc.
[MD5.A9095FC652E0273E10F1D9481C59067D] [WIS][2018/02/23 13:25:19] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\115df53.msp [1343488] =>.Adobe Systems, Incorporated
[MD5.3617A09ABC822D955214EBE86A991CF3] [WIS][2017/11/29 10:42:28] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\5659c08.msp [1355776] =>.Adobe Systems, Incorporated
[MD5.A58EAEAA86B7D4FA1891CA2EEDDCA3DD] [WIS][2018/02/12 14:26:08] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\8560b0a.msp [103362560] =>.Adobe Systems, Incorporated
[MD5.AD68D39EDFB11EFC6F9808DD3B80680A] [WIS][2017/11/04 22:40:37] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\8c44aad.msp [102899712] =>.Adobe Systems, Incorporated

---\\ Scâner Aditional (18) - 24s
C:\WINDOWS\System32\Tasks\R@1n-KMS\Windows64Professional =>HackTool.WinActivator
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ikgjglmlehllifdekcggaapkaplbdpje =>.SUP.MindSpark
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\niojcggonafbneajjmkpkcigabaobmge =>.SUP.MindSpark
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\JetClean Ext Menu =>.SUP.Orphan
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\UnlockerShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\StartMenuExt =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\UnlockerShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\013 =>.SUP.Temporary.Chrome
C:\Users\Jose Carlos\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome

---\\ Resumo dos elementos encontrados na sua estação de trabalho (7) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/12/26/sup-akamaihd/ =>.SUP.AkamaiHD
https://www.nicolascoolman.com/fr/pup-optional-mysites123 =>PUP.Optional.Mysites123
https://www.anti-malware.top/2016/05/12/adware-yessearches/ =>Adware.YesSearches
https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>.SUP.MindSpark
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

~ Unselected Options: O82,
~ End of the scan, 8555 items in 07mn09s (1195)(0)

Publicité


Signaler le contenu de ce document

Publicité