Logo Hardware.com.br
johan1206
johan1206 Novo Membro Registrado
5 Mensagens 0 Curtidas

Virus bloqueando navegador.

#1 Por johan1206 29/05/2020 - 10:56
Estou com um vírus no computador que ele:
  • Bloqueia a inicialização dos navegadores
  • Não permite acessar a aba detalhes do gerenciador de arquivos
  • Desativa o firewall do meu antivirus (nod 32)
  • Bloqueia o acesso a internet (Não permite que o antivirus atualize)

Segue os logs criados pelo FRST64
"FRST"

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 29-05-2020
Executado por Johan (administrador) em DESKTOP-CI0EAOA (29-05-2020 10:39:02)
Executando a partir de D:\Usuarios\Johan\Desktop\Downloads
Perfis Carregados: Johan
Platform: Windows 10 Home Versão 1909 18363.720 (X64) Idioma: Português (Brasil)
Navegador padrão: Chrome
Modo da Inicialização: Safe Mode (with Networking)
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <23>
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registro (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [pac] => C:\Program Files\Autodesk\Personal Accelerator for Revit\RevitAccelerator.exe [339464 2016-02-10] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [185648 2020-04-02] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [235624 2015-01-09] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [405048 2020-03-16] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [664872 2020-03-04] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM-x32\...\Run: [ifood.order.manager] => C:\Gestor de Pedidos\Gestor de Pedidos.exe [56374272 2018-11-07] (iFood) [Arquivo não assinado]
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrição <==== ATENÇÃO
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [48214752 2020-04-06] (Google LLC -> )
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [31867792 2020-05-22] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [648328 2020-04-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [ApowerMirror] => C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe [6201904 2020-05-21] (Apowersoft Ltd -> Apowersoft)
HKLM\...\Windows x64\Print Processors\Canon G3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCW.DLL [30208 2016-03-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor G3000 series: C:\Windows\system32\CNMLMCW.DLL [406528 2016-03-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [375296 2015-03-17] (CANON INC.) [Arquivo não assinado]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-27] (Google LLC -> Google LLC)
Startup: C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WO Mic Client.lnk [2020-05-27]
ShortcutTarget: WO Mic Client.lnk -> C:\Program Files (x86)\WOMic\WOMicClient.exe () [Arquivo não assinado]
GroupPolicy: Restrição ? <==== ATENÇÃO
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrição <==== ATENÇÃO
CHR HKLM\SOFTWARE\Policies\Google: Restrição <==== ATENÇÃO

==================== Tarefas Agendadas (Whitelisted) ============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {2D7C02A2-6C27-4E9E-BDB1-B2E87FEAE6D0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {3972C591-CE36-4727-9226-BA0894132AC5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {43F0C08C-C43C-4457-A341-5C3C4A7D58FD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-26] (Google LLC -> Google LLC)
Task: {C7F4A74D-FD60-4255-B2F6-87BCCC52AB3D} - System32\Tasks\[email]AdobeAAMUpdater-1.0-MicrosoftAccount-johan88232671@hotmail.com[/email] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {D82090D0-ED07-4439-90DD-95364632E98D} - System32\Tasks\BlueStacksHelper => D:\BlueStacks\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {DF314322-6E99-44F9-A9A3-86B67BE783BF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {E4BF8781-BBD4-44DD-81A3-F038B5D46C73} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-26] (Google LLC -> Google LLC)
Task: {EEAFB67E-D57C-41C8-B9D9-013FB6CB7A54} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)

Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll => Nenhum Arquivo
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.15.1
Tcpip\..\Interfaces\{64636619-4c44-48aa-a136-7346447810cd}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{8cdb8378-48f1-4521-b499-2255baccb0b0}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{94e79823-f764-4b59-aad4-cf77ee891f7a}: [DhcpNameServer] 192.168.15.1

Internet Explorer:
==================
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => Nenhum Arquivo
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
DownloadDir: D:\Usuarios\Johan\Desktop\Downloads

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-03-16] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Arquivo não assinado]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-03-16] (Adobe Inc. -> Adobe Systems)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default [2020-05-29]
CHR Notifications: Default -> hxxps://gestordepedidos.ifood.com.br
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxps://www.google.com.br/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8"
CHR Extension: (Apresentações) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-26]
CHR Extension: (GrowBot Automator for Instagram) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\abhcgokmndbiegmmbjffdlpihgdmeejf [2020-05-24]
CHR Extension: (Taxas de Câmbio Bitcoin) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambclkiicpedhalibphbmdbojciekhjj [2019-12-26]
CHR Extension: (Import Aliexpress Products to Woocommerce) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambpfppfbpeepjlpgekhpdfmmgikfjjd [2020-04-20]
CHR Extension: (Documentos) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-26]
CHR Extension: (Google Drive) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-12-26]
CHR Extension: (ColorZilla) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2020-05-18]
CHR Extension: (YouTube) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-26]
CHR Extension: (Vimeo™ Video Downloader) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgpbghdbejagejmciefmekcklikpoeel [2020-03-16]
CHR Extension: (MozBar) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\eakacpaijcpapndcfffdgphdiccmpknp [2019-12-26]
CHR Extension: (Full Page Screen Capture) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2020-04-17]
CHR Extension: (Planilhas) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-26]
CHR Extension: (MindMap) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdaeohpmcenmffofpikllphdhlkkocfa [2019-12-26]
CHR Extension: (Documentos Google off-line) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-22]
CHR Extension: (AdBlock — o melhor bloqueador de anúncios) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-05-20]
CHR Extension: (Stream Video Downloader) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\imkngaibigegepnlckfcbecjoilcjbhf [2020-04-28]
CHR Extension: (Tag Assistant (by Google)) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2020-03-24]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-26]
CHR Extension: (vidIQ Vision for YouTube) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2020-05-21]
CHR Extension: (Gmail) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-12-26]
CHR Extension: (Chrome Media Router) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-27]
CHR HKU\S-1-5-21-3846544088-2690467880-392933104-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Serviços (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1046904 2020-03-04] (Autodesk, Inc. -> Autodesk Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [820280 2020-03-16] (Adobe Inc. -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3673680 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3406416 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2019-12-16] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-02] (ESET, spol. s r.o. -> ESET)
S3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-02] (ESET, spol. s r.o. -> ESET)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81280 2020-02-17] (Mixbyte Inc -> Freemake)
S2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [399296 2019-11-28] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-05-29] (Malwarebytes Inc -> Malwarebytes)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wuauserv; C:\Windows\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 wuauserv; C:\Windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
S2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2019-12-12] (Bluestack Systems, Inc -> Bluestack System Inc.)
S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [154336 2020-04-02] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [106840 2020-04-02] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2020-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
S1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [188872 2020-04-02] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [53048 2020-04-02] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [79520 2020-04-02] (ESET, spol. s r.o. -> ESET)
S1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [115960 2020-04-02] (ESET, spol. s r.o. -> ESET)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [66824 2017-06-15] (IObit Information Technology -> IObit)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-05-29] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [20936 2020-05-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-05-29] (Malwarebytes Inc -> Malwarebytes)
S3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\nvlddmkm.sys [22094936 2019-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation -> Corel Corporation)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 wovad_micarray; C:\Windows\system32\drivers\womic.sys [34496 2020-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
U1 aswbdisk; não ImagePath

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três meses (criados) ===================

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2020-05-29 10:38 - 2020-05-29 10:39 - 000000000 ____D C:\FRST
2020-05-29 10:35 - 2020-05-29 10:35 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-05-29 10:35 - 2020-05-29 10:35 - 000214496 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-05-29 10:23 - 2020-05-29 10:33 - 000000286 __RSH C:\Users\Todos os Usuários\ntuser.pol
2020-05-29 10:23 - 2020-05-29 10:33 - 000000286 __RSH C:\ProgramData\ntuser.pol
2020-05-29 10:16 - 2020-05-29 10:16 - 000000000 ___HD C:\$SysReset
2020-05-29 09:59 - 2020-05-29 09:59 - 000001253 _____ C:\Users\Todos os Usuários\Desktop\IObit Unlocker.lnk
2020-05-29 09:59 - 2020-05-29 09:59 - 000001253 _____ C:\Users\Public\Desktop\IObit Unlocker.lnk
2020-05-29 09:59 - 2020-05-29 09:59 - 000001253 _____ C:\ProgramData\Desktop\IObit Unlocker.lnk
2020-05-29 09:59 - 2020-05-29 09:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker
2020-05-29 09:57 - 2020-05-29 09:57 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-05-29 09:57 - 2020-05-29 09:57 - 000020936 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys
2020-05-29 09:57 - 2020-05-29 09:57 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000002021 _____ C:\Users\Todos os Usuários\Desktop\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000002021 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000000000 ____D C:\Users\Todos os Usuários\Malwarebytes
2020-05-29 09:57 - 2020-05-29 09:57 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-05-29 08:05 - 2020-05-29 08:05 - 000000000 ____D C:\Program Files\Malwarebytes
2020-05-29 07:48 - 2020-05-29 07:48 - 000000805 _____ C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-05-29 07:26 - 2020-05-29 07:26 - 000000000 _____ C:\Users\Johan\AppData\Local\{F1B57825-8AB3-43AE-98C6-D5401DA9995C}
2020-05-27 18:36 - 2020-05-28 21:54 - 000000000 ____D C:\Users\Johan\AppData\Local\Ubisoft Game Launcher
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\Users\Todos os Usuários\Ubisoft
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\ProgramData\Ubisoft
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2020-05-27 18:22 - 2020-05-27 18:22 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WO Mic Client
2020-05-27 18:22 - 2020-05-27 18:22 - 000000000 ____D C:\Program Files (x86)\WOMic
2020-05-27 17:02 - 2020-05-27 17:02 - 000001167 _____ C:\Users\Todos os Usuários\Desktop\SoundWire Server.lnk
2020-05-27 17:02 - 2020-05-27 17:02 - 000001167 _____ C:\Users\Public\Desktop\SoundWire Server.lnk
2020-05-27 17:02 - 2020-05-27 17:02 - 000001167 _____ C:\ProgramData\Desktop\SoundWire Server.lnk
2020-05-27 17:02 - 2020-05-27 17:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoundWire Server
2020-05-27 17:02 - 2020-05-27 17:02 - 000000000 ____D C:\Program Files (x86)\SoundWire Server
2020-05-27 11:13 - 2020-05-27 11:13 - 000000000 ____D C:\.android
2020-05-27 11:12 - 2020-05-29 09:54 - 000000000 ____D C:\Program Files\Bonjour
2020-05-27 11:12 - 2020-05-27 11:12 - 000001273 _____ C:\Users\Todos os Usuários\Desktop\ApowerMirror.lnk
2020-05-27 11:12 - 2020-05-27 11:12 - 000001273 _____ C:\Users\Public\Desktop\ApowerMirror.lnk
2020-05-27 11:12 - 2020-05-27 11:12 - 000001273 _____ C:\ProgramData\Desktop\ApowerMirror.lnk
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\Users\Todos os Usuários\Apple
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Apowersoft
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\ProgramData\Apple
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\Program Files (x86)\Apowersoft
2020-05-27 11:04 - 2020-05-27 11:05 - 000000000 ____D C:\Users\Johan\AppData\Roaming\AirDroid
2020-05-27 10:59 - 2020-05-27 10:59 - 000000000 ____D C:\Users\Todos os Usuários\AirDroid
2020-05-27 10:59 - 2020-05-27 10:59 - 000000000 ____D C:\ProgramData\AirDroid
2020-05-27 07:24 - 2020-05-27 07:24 - 000001333 _____ C:\Users\Todos os Usuários\Desktop\Money Robot Submitter.lnk
2020-05-27 07:24 - 2020-05-27 07:24 - 000001333 _____ C:\Users\Public\Desktop\Money Robot Submitter.lnk
2020-05-27 07:24 - 2020-05-27 07:24 - 000001333 _____ C:\ProgramData\Desktop\Money Robot Submitter.lnk
2020-05-27 07:24 - 2020-05-27 07:24 - 000000046 _____ C:\Users\Todos os Usuários\Desktop\Money Robot Forum.url
2020-05-27 07:24 - 2020-05-27 07:24 - 000000046 _____ C:\Users\Public\Desktop\Money Robot Forum.url
2020-05-27 07:24 - 2020-05-27 07:24 - 000000046 _____ C:\ProgramData\Desktop\Money Robot Forum.url
2020-05-19 15:21 - 2020-05-19 15:21 - 000000000 ____D C:\Users\suporte\AppData\LocalLow\Adobe
2020-05-19 15:19 - 2020-05-19 15:30 - 000000000 ____D C:\Users\suporte\AppData\Local\Adobe
2020-05-19 15:19 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Roaming\NVIDIA
2020-05-19 15:19 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Local\UXP
2020-05-19 15:19 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Local\NVIDIA
2020-05-19 14:43 - 2020-05-19 14:43 - 000000000 ____D C:\Users\suporte\AppData\Local\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\Users\Todos os Usuários\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\ProgramData\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\Program Files\ESET
2020-05-15 21:03 - 2020-05-29 10:38 - 000591812 _____ C:\Windows\ntbtlog.txt
2020-05-15 21:03 - 2020-05-29 10:35 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2020-05-12 18:59 - 2020-05-12 18:59 - 000000000 ____D C:\Users\suporte\AppData\Roaming\Avast Software
2020-05-12 18:59 - 2020-05-12 18:59 - 000000000 ____D C:\Users\suporte\AppData\Local\CEF
2020-05-11 08:50 - 2020-05-11 08:50 - 000000000 ____D C:\Users\Johan\AppData\Roaming\obs-studio
2020-05-10 23:06 - 2020-05-15 21:11 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Avast Software
2020-05-10 23:02 - 2020-05-10 23:02 - 000000000 ___HD C:\$AV_ASW
2020-05-10 22:52 - 2020-05-10 22:52 - 000000000 ____D C:\Users\suporte\AppData\Local\mbamtray
2020-05-10 22:51 - 2020-05-10 22:52 - 000000000 _____ C:\Windows\system32\last.dump
2020-05-10 22:49 - 2020-05-10 22:51 - 000000000 ____D C:\AdwCleaner
2020-05-10 22:43 - 2020-05-15 21:11 - 000000000 ____D C:\Users\Todos os Usuários\Avast Software
2020-05-10 22:43 - 2020-05-15 21:11 - 000000000 ____D C:\ProgramData\Avast Software
2020-05-10 22:29 - 2020-05-10 22:29 - 000000000 ____D C:\Users\Johan\AppData\Local\mbamtray
2020-05-10 22:29 - 2020-05-10 22:29 - 000000000 ____D C:\Users\Johan\AppData\Local\mbam
2020-05-10 20:08 - 2020-05-10 20:08 - 000000000 ____D C:\Users\suporte\AppData\Roaming\MPC-HC
2020-05-10 18:57 - 2020-05-26 13:27 - 000000000 ____D C:\Users\suporte\AppData\Roaming\obs-studio
2020-05-10 18:56 - 2020-05-10 18:56 - 000001052 _____ C:\Users\Todos os Usuários\Desktop\OBS Studio.lnk
2020-05-10 18:56 - 2020-05-10 18:56 - 000001052 _____ C:\Users\Public\Desktop\OBS Studio.lnk
2020-05-10 18:56 - 2020-05-10 18:56 - 000001052 _____ C:\ProgramData\Desktop\OBS Studio.lnk
2020-05-10 18:56 - 2020-05-10 18:56 - 000000000 ____D C:\Users\Todos os Usuários\obs-studio-hook
2020-05-10 18:56 - 2020-05-10 18:56 - 000000000 ____D C:\ProgramData\obs-studio-hook
2020-05-10 18:56 - 2020-05-10 18:56 - 000000000 ____D C:\Program Files\obs-studio
2020-05-10 18:46 - 2020-05-10 18:49 - 000000000 ____D C:\Users\suporte\AppData\Local\ElevatedDiagnostics
2020-05-08 21:39 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Local\D3DSCache
2020-05-08 10:14 - 2020-05-08 10:14 - 000000938 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2019.lnk
2020-05-08 06:48 - 2020-05-08 06:48 - 000001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2019.lnk
2020-05-05 19:49 - 2020-05-05 19:49 - 000000000 ____D C:\Users\Johan\AppData\Roaming\SmartSteamEmu
2020-05-05 14:05 - 2020-05-05 14:05 - 000000000 ____D C:\Users\Johan\AppData\LocalLow\Jollypunch Games
2020-05-05 13:27 - 2020-05-28 21:55 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2020-05-01 19:33 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2020-05-01 08:09 - 2020-05-01 08:09 - 000000000 ____D C:\Users\Johan\Games
2020-04-28 16:58 - 2020-04-30 07:42 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Gestor de Pedidos
2020-04-28 16:58 - 2020-04-28 16:58 - 000001774 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gestor de Pedidos.lnk
2020-04-28 16:58 - 2020-04-28 16:58 - 000000000 ____D C:\Gestor de Pedidos
2020-04-24 10:47 - 2020-04-24 10:47 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Quest3D
2020-04-23 18:10 - 2020-04-23 18:10 - 000000000 ____D C:\Users\Todos os Usuários\LogMeIn
2020-04-23 18:10 - 2020-04-23 18:10 - 000000000 ____D C:\Users\Johan\AppData\Local\LogMeIn
2020-04-23 18:10 - 2020-04-23 18:10 - 000000000 ____D C:\ProgramData\LogMeIn
2020-04-22 13:26 - 2020-04-22 13:26 - 000070712 _____ C:\Users\Johan\AppData\Local\GDIPFONTCACHEV1.DAT
2020-04-22 13:25 - 2020-05-02 10:12 - 000000000 ____D C:\Users\Todos os Usuários\RevitInterProcess
2020-04-22 13:25 - 2020-05-02 10:12 - 000000000 ____D C:\ProgramData\RevitInterProcess
2020-04-22 13:23 - 2020-04-22 13:23 - 000000000 ____D C:\Users\Todos os Usuários\FLEXnet
2020-04-22 13:23 - 2020-04-22 13:23 - 000000000 ____D C:\ProgramData\FLEXnet
2020-04-22 12:17 - 2020-04-22 12:17 - 000000000 ____D C:\Program Files (x86)\Autodesk
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\Users\Todos os Usuários\Dynamo
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Dynamo
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\ProgramData\Dynamo
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\Program Files\Dynamo 0.9
2020-04-22 12:13 - 2020-04-22 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IronPython 2.7
2020-04-22 12:13 - 2020-04-22 12:13 - 000000000 ____D C:\Program Files (x86)\IronPython 2.7
2020-04-22 12:12 - 2020-04-22 13:27 - 000000000 ____D C:\Users\Johan\AppData\Local\Autodesk
2020-04-22 12:11 - 2020-04-22 12:11 - 000001658 _____ C:\Users\Todos os Usuários\Desktop\Revit 2017.lnk
2020-04-22 12:11 - 2020-04-22 12:11 - 000001658 _____ C:\Users\Public\Desktop\Revit 2017.lnk
2020-04-22 12:11 - 2020-04-22 12:11 - 000001658 _____ C:\ProgramData\Desktop\Revit 2017.lnk
2020-04-22 12:11 - 2020-04-22 12:11 - 000000185 _____ C:\Windows\ODBCINST.INI
2020-04-22 12:11 - 2020-04-22 12:11 - 000000152 _____ C:\Windows\ODBC.INI
2020-04-22 12:09 - 2020-04-22 12:14 - 000000000 ____D C:\Program Files\Autodesk
2020-04-22 12:08 - 2020-04-22 12:10 - 000000000 ____D C:\Program Files\Common Files\Autodesk Shared
2020-04-22 12:08 - 2020-04-22 12:08 - 000000000 ____D C:\Program Files\Common Files\Macrovision Shared
2020-04-22 12:07 - 2020-04-22 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2020-04-22 11:30 - 2020-04-23 06:29 - 000000000 ____D C:\Users\Todos os Usuários\Autodesk
2020-04-22 11:30 - 2020-04-23 06:29 - 000000000 ____D C:\ProgramData\Autodesk
2020-04-22 11:30 - 2020-04-22 13:23 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Autodesk
2020-04-14 14:28 - 2020-04-14 14:28 - 000000000 ____D C:\Users\Johan\AppData\Local\Steam
2020-04-13 16:58 - 2020-05-10 18:27 - 000000096 _____ C:\Windows\system32\perfdish001.dat
2020-04-10 16:45 - 2020-05-08 06:56 - 000001364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2020-04-10 15:51 - 2020-04-10 15:51 - 000000000 ____D C:\Users\Johan\AppData\LocalLow\IObit
2020-04-10 15:50 - 2020-05-10 22:51 - 000000000 ____D C:\Users\Johan\AppData\Roaming\IObit
2020-04-10 15:50 - 2020-04-10 15:50 - 000000000 ____D C:\Users\Todos os Usuários\ProductData
2020-04-10 15:50 - 2020-04-10 15:50 - 000000000 ____D C:\ProgramData\ProductData
2020-04-02 13:43 - 2020-04-02 13:43 - 000188872 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000154336 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000115960 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000106840 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000079520 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000053048 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2020-04-01 15:27 - 2020-04-01 15:27 - 000015800 _____ (ESET) C:\Windows\system32\Drivers\eelam.sys
2020-04-01 10:43 - 2020-04-01 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by.xatab
2020-03-31 21:54 - 2010-06-02 04:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2020-03-31 21:54 - 2010-06-02 04:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 002475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2020-03-31 21:54 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2020-03-31 21:54 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2020-03-31 21:54 - 2008-07-10 11:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2020-03-31 21:54 - 2008-05-30 14:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2020-03-31 21:54 - 2008-05-30 14:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2020-03-31 21:54 - 2008-05-30 14:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2020-03-31 21:54 - 2008-05-30 14:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2020-03-31 21:54 - 2008-05-30 14:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2020-03-31 21:54 - 2008-05-30 14:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2020-03-31 21:54 - 2008-05-30 14:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2020-03-31 21:54 - 2008-05-30 14:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2020-03-31 21:54 - 2008-03-05 16:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2020-03-31 21:54 - 2008-03-05 16:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2020-03-31 21:54 - 2008-03-05 16:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2020-03-31 21:54 - 2008-03-05 16:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2020-03-31 21:54 - 2008-03-05 16:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2020-03-31 21:54 - 2008-03-05 16:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2020-03-31 21:54 - 2008-02-05 23:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2020-03-31 21:54 - 2008-02-05 23:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2020-03-31 21:54 - 2007-10-22 03:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2020-03-31 21:54 - 2007-10-22 03:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2020-03-31 21:54 - 2007-10-22 03:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2020-03-31 21:54 - 2007-10-22 03:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2020-03-31 21:54 - 2007-10-02 09:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2020-03-31 21:54 - 2007-10-02 09:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2020-03-31 21:54 - 2007-07-20 00:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2020-03-31 21:54 - 2007-07-20 00:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2020-03-31 21:54 - 2007-06-20 20:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2020-03-31 21:54 - 2007-06-20 20:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2020-03-31 21:54 - 2007-04-04 18:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2020-03-31 21:54 - 2007-04-04 18:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2020-03-31 21:54 - 2007-03-15 16:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2020-03-31 21:54 - 2007-03-15 16:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2020-03-31 21:54 - 2007-03-05 12:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2020-03-31 21:54 - 2007-03-05 12:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2020-03-31 21:54 - 2007-01-24 15:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2020-03-31 21:54 - 2007-01-24 15:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2020-03-31 21:54 - 2006-12-08 12:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2020-03-31 21:54 - 2006-12-08 12:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 000469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 000440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2020-03-31 21:54 - 2006-09-28 16:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2020-03-31 21:54 - 2006-09-28 16:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2020-03-31 21:54 - 2006-09-28 16:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2020-03-31 21:54 - 2006-09-28 16:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2020-03-31 21:54 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2020-03-31 21:54 - 2006-07-28 09:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2020-03-31 21:54 - 2006-07-28 09:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2020-03-31 21:54 - 2006-07-28 09:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2020-03-31 21:54 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2020-03-31 21:54 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2020-03-31 21:54 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2020-03-31 21:54 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2020-03-31 21:54 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2020-03-31 21:54 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2020-03-31 21:54 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2020-03-31 21:54 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2020-03-31 21:54 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2020-03-31 21:54 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2020-03-31 21:54 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2020-03-31 21:54 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2020-03-31 21:54 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2020-03-31 21:54 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2020-03-31 21:54 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2020-03-31 21:54 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2020-03-31 21:54 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2020-03-31 21:54 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2020-03-31 21:54 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2020-03-31 21:54 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2020-03-31 21:54 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2020-03-31 21:54 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2020-03-31 21:54 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2020-03-31 21:54 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2020-03-31 21:53 - 2020-04-01 10:43 - 000000000 ____D C:\Windows\SysWOW64\directx
2020-03-30 16:47 - 2020-03-30 16:49 - 000000000 ___HD C:\Users\Todos os Usuários\CanonIJMIG
2020-03-30 16:47 - 2020-03-30 16:49 - 000000000 ___HD C:\ProgramData\CanonIJMIG
2020-03-30 16:46 - 2020-03-30 16:47 - 000000000 ___HD C:\Users\Todos os Usuários\CanonIJScan
2020-03-30 16:46 - 2020-03-30 16:47 - 000000000 ___HD C:\ProgramData\CanonIJScan
2020-03-30 14:48 - 2020-03-30 14:48 - 000000000 ____D C:\Users\Johan\AppData\Local\Saber
2020-03-29 18:11 - 2020-05-08 10:14 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Adobe
2020-03-29 06:50 - 2020-03-29 06:50 - 000000024 _____ C:\Windows\system32\WinUpdates105.dat
2020-03-29 06:50 - 2020-03-29 06:50 - 000000003 _____ C:\Windows\system32\wdbcache.tmp
2020-03-29 06:50 - 2020-03-19 13:37 - 000024512 _____ C:\Windows\system32\7B296FC0-376B-497d-B013-58F4D9633A22-5P-1.B5841A4C-A289-439d-8115-50AB69CD450
2020-03-28 18:01 - 2020-03-28 18:01 - 000000000 ____D C:\Users\Johan\AppData\Roaming\IOTransfer
2020-03-26 18:16 - 2020-03-26 18:16 - 000000000 ____D C:\Users\Todos os Usuários\Freemake
2020-03-26 18:16 - 2020-03-26 18:16 - 000000000 ____D C:\Users\Johan\AppData\Local\FreemakeVideoConverter
2020-03-26 18:16 - 2020-03-26 18:16 - 000000000 ____D C:\ProgramData\Freemake
2020-03-26 18:15 - 2020-04-19 07:48 - 000000000 ____D C:\Program Files (x86)\Freemake
2020-03-26 15:52 - 2020-05-08 06:56 - 000000000 ____D C:\Users\Todos os Usuários\Adobe
2020-03-26 15:52 - 2020-05-08 06:56 - 000000000 ____D C:\ProgramData\Adobe
2020-03-26 14:59 - 2020-03-27 10:54 - 000000132 _____ C:\Users\Johan\AppData\Roaming\Adobe PNG Format CS6 Prefs
2020-03-26 12:07 - 2020-05-08 07:00 - 000000000 ____D C:\Users\Johan\AppData\Local\Adobe
2020-03-26 11:48 - 2020-03-26 11:48 - 000000000 ____D C:\Users\Johan\AppData\Roaming\NVIDIA
2020-03-23 23:01 - 2020-03-23 23:01 - 000000000 _____ C:\Users\Johan\AppData\Local\{E8CB954F-72E1-4E2A-BBEE-F611F77C256C}
2020-03-22 18:54 - 2020-03-22 18:54 - 000022240 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_1084761933816809.dll
2020-03-19 14:55 - 2020-05-06 10:38 - 000000000 ____D C:\Users\Johan\dwhelper
2020-03-19 14:55 - 2020-03-19 14:55 - 000000000 ____D C:\Program Files\net.downloadhelper.coapp
2020-03-19 13:37 - 2020-03-19 13:37 - 000024512 _____ C:\Windows\system32\7B296FC0-376B-497d-B013-58F4D9633A22-5P-1.B5841A4C-A289-439d-8115-50AB69CD450B
2020-03-19 13:37 - 2020-03-19 13:37 - 000000000 _____ C:\Windows\system32\setup4.2.6.tmp
2020-03-15 16:07 - 2020-03-15 16:07 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 009930552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 006520776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 004563416 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 001398584 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 001077048 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-03-15 16:07 - 2020-03-15 16:07 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-03-14 08:19 - 2020-05-10 23:02 - 000000000 ____D C:\Program Files\KMSpico
2020-03-14 08:19 - 2020-03-14 08:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-03-14 08:19 - 2010-12-05 23:16 - 000090112 _____ (Vestris Inc.) C:\Windows\system32\Vestris.ResourceLib.dll
2020-03-14 08:16 - 2020-05-27 11:14 - 000000000 ____D C:\Users\Johan\AppData\Local\CrashDumps
2020-03-13 09:43 - 2020-05-10 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2020-03-13 07:39 - 2020-03-13 07:39 - 011607552 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-03-13 07:39 - 2020-03-13 07:39 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 025900544 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 022635008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 019850240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 019812352 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 018027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007905784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007755776 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007259648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006436352 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006285312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006168064 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006084344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005911040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005112832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004855808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004622280 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 004580352 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004538880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004471296 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004348408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004129648 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004048896 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003971808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003819520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003799552 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003728896 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 003708928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003587896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 003552768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003488768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003371720 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003260928 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003243296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003143168 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002956688 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002875904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002808832 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002800640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002773568 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002768440 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-03-13 07:38 - 2020-03-13 07:38 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-03-13 07:38 - 2020-03-13 07:38 - 002740736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002715648 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002698040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002584008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002522112 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002474496 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002453504 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002315680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002307584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002259872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002180408 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002157056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002087376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002072664 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002021888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001999952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001985104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001972536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001867816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001854976 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001835128 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001823232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001762304 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001757304 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-03-13 07:38 - 2020-03-13 07:38 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001743888 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001729024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001688064 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001684992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001665416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001657120 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001609216 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001555904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001540096 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001513040 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001484600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001482040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 001481216 _____ (Microsoft Corporation) C:\Windows\system32\rdpsharercom.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001480192 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 001417976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001412096 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001396152 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001394168 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-03-13 07:38 - 2020-03-13 07:38 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001284096 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001283600 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2020-03-13 07:38 - 2020-03-13 07:38 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001273856 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001264128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001260544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpsharercom.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001260480 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001218632 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001190912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001182448 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001092096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001083904 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001071184 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001054376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001031680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001027000 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001012792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001007672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001000960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000983896 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000974848 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000945384 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000935040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000929144 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000921088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000914944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000908504 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000892696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000877232 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000874296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000845312 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000838144 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000833616 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000802304 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000796904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000783480 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000776488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000769552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000748032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000741392 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000678912 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000668296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000661816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000649728 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000646656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000642216 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000637240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000627216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000605896 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-03-13 07:38 - 2020-03-13 07:38 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000531768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000526848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000522384 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000478792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000459688 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000457016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000429880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-03-13 07:38 - 2020-03-13 07:38 - 000403456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\XpsDocumentTargetPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000355000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000353960 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Acx01000.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000320312 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\msIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000273408 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountCloudAP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000268288 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000263168 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000258048 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000250896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000248064 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000234984 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000224056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000222520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000221200 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000213984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000210744 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000208696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000201744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000199992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000183608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000181248 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000180232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeHelper.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000165504 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000164776 _____ (Microsoft Corporation) C:\Windows\system32\omadmapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000151568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUpdateAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\GraphicsCapture.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUser.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000136328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\omadmapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000133944 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000133256 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000128312 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Taskbar.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000107832 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GraphicsCapture.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000102760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000098104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089616 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000068408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceReactivation.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000067112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000066336 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000063288 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000056632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\MSAProfileNotificationHandler.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\dusmapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000048256 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\WiredNetworkCSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000042336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afunix.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\dusmtask.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\FaxPrinterInstaller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000030008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000029712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Drivers\afunix.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000028936 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\wci.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000019984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msauserext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000016912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\pacjsworker.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000003584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCertResources.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000003584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tier2punctuations.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUserRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2020-03-13 07:32 - 2020-02-11 01:48 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-03-13 07:32 - 2020-02-11 01:37 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-03-12 19:02 - 2020-03-12 19:02 - 000000000 ____D C:\Users\Todos os Usuários\Microsoft Toolkit
2020-03-12 19:02 - 2020-03-12 19:02 - 000000000 ____D C:\ProgramData\Microsoft Toolkit
2020-03-12 18:56 - 2020-05-28 18:30 - 000000000 ____D C:\Users\Johan\AppData\Roaming\VPN4Test
2020-03-12 18:55 - 2020-03-12 18:56 - 000000000 ____D C:\Program Files\TAP-Windows
2020-03-12 18:55 - 2020-03-12 18:55 - 000002301 _____ C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VPN4Test.lnk
2020-03-12 18:55 - 2020-03-12 18:55 - 000000000 ____D C:\Users\Johan\AppData\Local\vpn4test-updater
2020-03-09 23:30 - 2020-03-10 22:44 - 000008002 _____ C:\Users\Todos os Usuários\DisplaySessionContainer27.log_backup1
2020-03-09 23:30 - 2020-03-10 22:44 - 000008002 _____ C:\ProgramData\DisplaySessionContainer27.log_backup1
2020-03-08 22:35 - 2020-03-09 23:30 - 000008075 _____ C:\Users\Todos os Usuários\DisplaySessionContainer26.log_backup1
2020-03-08 22:35 - 2020-03-09 23:30 - 000008075 _____ C:\ProgramData\DisplaySessionContainer26.log_backup1
2020-03-08 16:06 - 2020-03-08 22:35 - 000006619 _____ C:\Users\Todos os Usuários\DisplaySessionContainer25.log_backup1
2020-03-08 16:06 - 2020-03-08 22:35 - 000006619 _____ C:\ProgramData\DisplaySessionContainer25.log_backup1
2020-03-07 22:27 - 2020-03-08 22:35 - 000008074 _____ C:\Users\Todos os Usuários\DisplaySessionContainer24.log_backup1
2020-03-07 22:27 - 2020-03-08 22:35 - 000008074 _____ C:\ProgramData\DisplaySessionContainer24.log_backup1
2020-03-06 22:53 - 2020-03-07 22:27 - 000008076 _____ C:\Users\Todos os Usuários\DisplaySessionContainer23.log_backup1
2020-03-06 22:53 - 2020-03-07 22:27 - 000008076 _____ C:\ProgramData\DisplaySessionContainer23.log_backup1
2020-03-05 21:17 - 2020-03-06 22:52 - 000008398 _____ C:\Users\Todos os Usuários\DisplaySessionContainer22.log_backup1
2020-03-05 21:17 - 2020-03-06 22:52 - 000008398 _____ C:\ProgramData\DisplaySessionContainer22.log_backup1
2020-03-04 22:51 - 2020-03-05 21:17 - 000008078 _____ C:\Users\Todos os Usuários\DisplaySessionContainer21.log_backup1
2020-03-04 22:51 - 2020-03-05 21:17 - 000008078 _____ C:\ProgramData\DisplaySessionContainer21.log_backup1
2020-03-03 21:54 - 2020-03-04 22:51 - 000008070 _____ C:\Users\Todos os Usuários\DisplaySessionContainer20.log_backup1
2020-03-03 21:54 - 2020-03-04 22:51 - 000008070 _____ C:\ProgramData\DisplaySessionContainer20.log_backup1
2020-03-02 23:08 - 2020-03-03 21:54 - 000008078 _____ C:\Users\Todos os Usuários\DisplaySessionContainer19.log_backup1
2020-03-02 23:08 - 2020-03-03 21:54 - 000008078 _____ C:\ProgramData\DisplaySessionContainer19.log_backup1
2020-03-01 22:20 - 2020-03-02 23:07 - 000007677 _____ C:\Users\Todos os Usuários\DisplaySessionContainer18.log_backup1
2020-03-01 22:20 - 2020-03-02 23:07 - 000007677 _____ C:\ProgramData\DisplaySessionContainer18.log_backup1
2020-03-01 20:22 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2020-03-01 20:22 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2020-03-01 20:20 - 2020-03-01 20:22 - 000000000 ____D C:\Users\Todos os Usuários\Epic
2020-03-01 20:20 - 2020-03-01 20:22 - 000000000 ____D C:\Users\Johan\AppData\Local\UnrealEngine
2020-03-01 20:20 - 2020-03-01 20:22 - 000000000 ____D C:\ProgramData\Epic
2020-03-01 20:20 - 2020-03-01 20:20 - 000000811 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2020-03-01 20:20 - 2020-03-01 20:20 - 000000000 ____D C:\Users\Johan\AppData\Local\UnrealEngineLauncher
2020-03-01 20:20 - 2020-03-01 20:20 - 000000000 ____D C:\Users\Johan\AppData\Local\EpicGamesLauncher
2020-03-01 20:20 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2020-03-01 20:20 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll

==================== Três meses (modificados) ==================

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2020-05-29 10:35 - 2019-03-19 01:37 - 001048576 _____ C:\Windows\system32\config\BBI
2020-05-29 10:34 - 2019-12-26 12:48 - 000006614 _____ C:\Users\Todos os Usuários\DisplaySessionContainer1.log_backup1
2020-05-29 10:34 - 2019-12-26 12:48 - 000006614 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2020-05-29 10:31 - 2019-12-30 12:44 - 120636720 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-05-29 10:23 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2020-05-29 10:23 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2020-05-29 10:15 - 2019-12-27 16:33 - 000000000 ____D C:\Users\suporte
2020-05-29 10:07 - 2019-03-19 01:52 - 000000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2020-05-29 10:07 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-05-29 10:06 - 2019-12-26 11:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-29 09:57 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-05-29 09:18 - 2019-12-26 12:15 - 000020584 _____ C:\Users\Todos os Usuários\NVDisplayContainerWatchdog.log_backup1
2020-05-29 09:18 - 2019-12-26 12:15 - 000020584 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2020-05-29 09:18 - 2019-12-26 12:15 - 000007417 _____ C:\Users\Todos os Usuários\NVDisplay.ContainerLocalSystem.log_backup1
2020-05-29 09:18 - 2019-12-26 12:15 - 000007417 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2020-05-29 08:57 - 2019-12-26 12:10 - 000000000 ____D C:\Users\Johan\AppData\Local\VirtualStore
2020-05-29 08:39 - 2019-12-26 11:51 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-05-29 08:17 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\NDF
2020-05-29 07:26 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\LiveKernelReports
2020-05-27 17:32 - 2019-03-19 01:50 - 000000000 ____D C:\Windows\INF
2020-05-27 17:23 - 2019-12-26 12:26 - 000000000 ____D C:\Users\Johan\AppData\Local\ElevatedDiagnostics
2020-05-27 16:30 - 2019-12-26 12:14 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-27 07:24 - 2019-12-30 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Money Robot
2020-05-27 07:24 - 2019-12-30 20:11 - 000000000 ____D C:\Program Files (x86)\Money Robot
2020-05-24 22:49 - 2019-12-26 12:15 - 000006630 _____ C:\Users\Todos os Usuários\DisplaySessionContainer2.log_backup1
2020-05-24 22:49 - 2019-12-26 12:15 - 000006630 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2020-05-22 16:28 - 2020-01-23 13:38 - 000000000 ____D C:\Users\Todos os Usuários\CanonIJPLM
2020-05-22 16:28 - 2020-01-23 13:38 - 000000000 ____D C:\ProgramData\CanonIJPLM
2020-05-19 15:19 - 2019-12-27 16:33 - 000000000 ____D C:\Users\suporte\AppData\Roaming\Adobe
2020-05-19 14:44 - 2019-12-27 16:33 - 000000000 ____D C:\Users\suporte\AppData\Local\Packages
2020-05-19 08:01 - 2020-01-17 16:02 - 000003522 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2020-05-15 20:42 - 2020-02-14 21:58 - 000002962 _____ C:\Windows\system32\Tasks\BlueStacksHelper
2020-05-15 20:42 - 2020-01-07 11:58 - 000002814 _____ C:\Windows\system32\Tasks\[email]AdobeAAMUpdater-1.0-MicrosoftAccount-johan88232671@hotmail.com[/email]
2020-05-15 20:42 - 2019-12-27 16:35 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3846544088-2690467880-392933104-1002
2020-05-15 20:42 - 2019-12-26 12:14 - 000003518 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-05-15 20:42 - 2019-12-26 12:14 - 000003294 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-05-15 20:42 - 2019-12-26 12:13 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3846544088-2690467880-392933104-1001
2020-05-14 12:59 - 2019-12-26 12:10 - 000000000 ____D C:\Users\Johan\AppData\Local\Packages
2020-05-14 10:37 - 2020-01-07 11:39 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Azureus
2020-05-13 15:53 - 2019-12-26 12:46 - 000005726 _____ C:\Users\Todos os Usuários\DisplaySessionContainer3.log_backup1
2020-05-13 15:53 - 2019-12-26 12:46 - 000005726 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2020-05-11 08:09 - 2019-12-27 15:27 - 000000000 ____D C:\Users\Johan\AppData\Local\ESET
2020-05-10 18:56 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\AppReadiness
2020-05-10 06:53 - 2019-12-26 12:13 - 000000000 __RDL C:\Users\Johan\OneDrive
2020-05-10 06:53 - 2019-12-26 12:07 - 000002369 _____ C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-08 21:07 - 2019-12-27 16:35 - 000000000 ___RD C:\Users\suporte\OneDrive
2020-05-08 21:07 - 2019-12-27 16:33 - 000002375 _____ C:\Users\suporte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-08 21:06 - 2019-12-27 16:33 - 000000000 ___RD C:\Users\suporte\3D Objects
2020-05-08 21:06 - 2019-12-26 12:10 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-05-08 10:17 - 2019-12-26 12:14 - 000000000 ____D C:\Users\Johan\AppData\Local\D3DSCache
2020-05-08 07:00 - 2020-01-17 16:13 - 000000000 ___RD C:\Users\Johan\Creative Cloud Files
2020-05-08 06:59 - 2020-01-17 14:04 - 000000000 ____D C:\Program Files\Adobe
2020-05-08 06:56 - 2020-01-17 16:00 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-05-08 06:56 - 2019-12-27 14:54 - 000000000 ____D C:\Program Files\Common Files\Adobe
2020-05-08 06:56 - 2019-12-26 14:59 - 000000000 ____D C:\Users\Todos os Usuários\Package Cache
2020-05-08 06:56 - 2019-12-26 14:59 - 000000000 ____D C:\ProgramData\Package Cache
2020-05-06 10:36 - 2019-12-26 12:07 - 000000000 ____D C:\Users\Johan
2020-05-03 00:46 - 2019-12-26 11:58 - 001652386 _____ C:\Windows\system32\PerfStringBackup.INI
2020-05-03 00:46 - 2019-03-19 09:46 - 000715788 _____ C:\Windows\system32\prfh0416.dat
2020-05-03 00:46 - 2019-03-19 09:46 - 000140846 _____ C:\Windows\system32\prfc0416.dat
2020-05-02 12:23 - 2020-01-17 14:05 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2020.lnk

==================== Arquivos na raiz de alguns diretórios ========

2020-03-26 14:59 - 2020-03-27 10:54 - 000000132 _____ () C:\Users\Johan\AppData\Roaming\Adobe PNG Format CS6 Prefs
2020-02-03 17:10 - 2020-04-16 11:25 - 000001456 _____ () C:\Users\Johan\AppData\Local\Adobe Save for Web 13.0 Prefs
2020-01-17 16:00 - 2020-04-09 19:13 - 000011275 _____ () C:\Users\Johan\AppData\Local\oobelibMkey.log
2020-03-23 23:01 - 2020-03-23 23:01 - 000000000 _____ () C:\Users\Johan\AppData\Local\{E8CB954F-72E1-4E2A-BBEE-F611F77C256C}
2020-05-29 07:26 - 2020-05-29 07:26 - 000000000 _____ () C:\Users\Johan\AppData\Local\{F1B57825-8AB3-43AE-98C6-D5401DA9995C}

==================== SigCheck ============================

(Não há correção automática para arquivos que não passaram na verificação.)

==================== Fim de FRST.txt ========================


"Addition"

Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 29-05-2020
Executado por Johan (29-05-2020 10:40:04)
Executando a partir de D:\Usuarios\Johan\Desktop\Downloads
Windows 10 Home Versão 1909 18363.720 (X64) (2019-12-26 14:54:04)
Modo da Inicialização: Safe Mode (with Networking)
==========================================================


==================== Contas: =============================

Administrador (S-1-5-21-3846544088-2690467880-392933104-500 - Administrator - Disabled)
Convidado (S-1-5-21-3846544088-2690467880-392933104-501 - Limited - Disabled)
DefaultAccount (S-1-5-21-3846544088-2690467880-392933104-503 - Limited - Disabled)
Johan (S-1-5-21-3846544088-2690467880-392933104-1001 - Administrator - Enabled) => C:\Users\Johan
suporte (S-1-5-21-3846544088-2690467880-392933104-1002 - Administrator - Enabled) => C:\Users\suporte
WDAGUtilityAccount (S-1-5-21-3846544088-2690467880-392933104-504 - Limited - Disabled)

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

Ad (HKLM\...\{58621D10-8DB7-42D2-9576-32104DBD17F0}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
Adobe After Effects 2019 (HKLM-x32\...\AEFT_16_1) (Version: 16.1 - Adobe Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.7.0.400 - Adobe Systems Incorporated)
Adobe Illustrator CC 2019 (HKLM-x32\...\ILST_23_0_1) (Version: 23.0.1 - Adobe Systems Incorporated)
Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0_2) (Version: 21.0.2 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2019 (HKLM-x32\...\PPRO_13_0_1) (Version: 13.0.1 - Adobe Systems Incorporated)
Aplicativo da área de trabalho Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 8.0.0.46 - Autodesk)
ApowerMirror V1.4.7.35 (HKLM-x32\...\{a9482532-9c34-478c-80c3-85bdccbb981f}_is1) (Version: 1.4.7.35 - APOWERSOFT LIMITED)
Autodesk A360 Collaboration for Revit 2017 (HKLM\...\{AA384BE4-1700-0010-0000-97E7D7D00B17}) (Version: 17.0.416.0 - Autodesk) Hidden
Autodesk A360 Collaboration for Revit 2017 (HKLM\...\Autodesk A360 Collaboration for Revit 2017) (Version: 17.0.416.0 - Autodesk)
Autodesk BIM 360 Revit 2017 Add-in 64 bit (HKLM\...\{A26EBAD5-9591-407F-9D6C-C7A4F3DFE506}) (Version: 4.37.6853 - Autodesk)
Autodesk License Service (x64) - 3.1 (HKLM\...\{EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D}) (Version: 3.1.26.0 - Autodesk)
Autodesk Material Library 2017 (HKLM-x32\...\{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32\...\{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Low Resolution Image Library 2017 (HKLM-x32\...\{360AC116-6CD4-4E7D-8174-28D47B05E898}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2017 (HKLM-x32\...\{CB6E007E-701D-42CD-AF0E-4BE9C36C7F7C}) (Version: 15.11.3.0 - Autodesk)
Autodesk Revit 2017 (HKLM\...\Autodesk Revit 2017) (Version: 17.0.416.0 - Autodesk)
Autodesk Revit 2017 (HKLM\...\Revit 2017) (Version: - )
Autodesk Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese) (HKLM\...\Autodesk Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese)) (Version: 17.0.416.0 - Autodesk)
Autodesk Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese) (HKLM\...\Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese)) (Version: - )
Autodesk Revit MEP Imperial Content v2.0 (HKLM\...\{F2538944-3E07-4E97-B41A-FC48AB53EE9D}) (Version: 2.0 - Autodesk)
Autodesk Revit MEP Metric Content v2.0 (HKLM\...\{DEF775C7-84BF-4730-976A-FE3747F1757C}) (Version: 2.0 - Autodesk)
Autodesk Workflows 2017 (HKLM\...\{23A13F78-5B67-441A-ABF9-48BE8B5455DB}) (Version: 15.11.13.0 - Autodesk, Inc.)
Backup and Sync from Google (HKLM\...\{FE296942-D2D3-4149-8895-60655FE4CFDE}) (Version: 3.49.9800.0000 - Google, Inc.)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
BlueStacks App Player (HKLM\...\BlueStacks) (Version: 4.150.11.1001 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Canon G3000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_G3000_series) (Version: 1.02 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: 1.5.4.4 - Canon Inc.)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.7.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.2.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
Dynamo 0.9.1 (HKLM\...\{85626FB3-CAF9-49C1-AA28-E3C75164BD6F}) (Version: 0.9.1.4062 - Autodesk)
Epic Games Launcher (HKLM-x32\...\{F851EFCF-A2E6-4ABA-8208-39DDD5B50B45}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESET Security (HKLM\...\{0C3F76CB-98AA-49B1-9B72-CD040E3E17E8}) (Version: 13.1.21.0 - ESET, spol. s r.o.)
FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production)
FileZilla Client 3.46.3 (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\FileZilla Client) (Version: 3.46.3 - Tim Kosse)
FormIt 360 Converter For Revit 2017 (HKLM\...\{637211B6-D2E9-474A-BF06-4F61F1254104}) (Version: 1.9.0.0 - Autodesk)
Gestor de Pedidos 5.2.0 (HKLM-x32\...\b9f7a051-d6a0-5360-b69d-ebb7242fa49c) (Version: 5.2.0 - iFood)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 83.0.4103.61 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.1.2.1 - IObit)
IronPython 2.7.3 (HKLM-x32\...\{1EBADAEA-1A0F-40E3-848C-0DD8C5E5A10D}) (Version: 2.7.31000.0 - IronPython Team)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Microsoft Office Language Pack 2013 - Portuguese/Português (Brasil) (HKLM\...\Office15.OMUI.pt-br) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\OneDriveSetup.exe) (Version: 20.052.0311.0011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.44.2 - Microsoft Corporation)
Money Robot Submitter version 7.34.5 (HKLM-x32\...\{D8331B58-377C-4350-B879-21133B050E19}_is1) (Version: 7.34.5 - Money Robot srl LTD)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
NVIDIA Driver de gráficos 432.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 432.00 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.8 - OBS Project)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - Português (Brasil) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PTB) (Version: 10.0.50903 - Microsoft Corporation)
Personal Accelerator for Revit (HKLM\...\{7C317DB0-F31F-4024-A289-92CF4B6FB256}) (Version: 16.0.1109.0 - Autodesk) Hidden
Personal Accelerator for Revit (HKLM\...\Personal Accelerator for Revit) (Version: 16.0.1109.0 - Autodesk)
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
Poedit (HKLM-x32\...\{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1) (Version: 2.2.4 - Vaclav Slavik)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7503 - Realtek Semiconductor Corp.)
Realtek SDIO Wireless LAN Driver (HKLM-x32\...\InstallShield_{C0F7E79F-05B9-4da6-9D1E-00EE1A63E881}) (Version: Drv_3.00.0016 - REALTEK Semiconductor Corp.)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM\...\{90150000-001F-0416-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Revit 2017 (HKLM\...\{7346B4A0-1700-0510-0000-705C0D862004}) (Version: 17.0.416.0 - Autodesk) Hidden
Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese) (HKLM\...\{941030D0-1700-0410-0000-818BB38A95FC}) (Version: 17.0.416.0 - Autodesk) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0416-1000-0000000FF1CE}_Office15.OMUI.pt-br_{8ECA38FB-BA64-4DF3-A770-936F18495B2C}) (Version: - Microsoft)
SimCity v.10.3.4 (HKLM-x32\...\SimCity_is1) (Version: - )
SoundWire Server version 2.5 (HKLM-x32\...\{E15658BC-7742-4397-999F-98B1BD11B784}_is1) (Version: 2.5 - GeorgieLabs)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-012B-0416-1000-0000000FF1CE}_Office15.OMUI.pt-br_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 109.0 - Ubisoft)
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
VPN4Test 1.3.1 (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\d73c5f2f-d492-5b11-9414-9aff3fe8a1ac) (Version: 1.3.1 - )
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.7.7.0 - Azureus Software, Inc.)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
WO Mic Client (HKLM-x32\...\WOMic) (Version: - )
XAMPP (HKLM\...\xampp) (Version: 7.4.1-0 - Bitnami)

Packages:
=========
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc [2020-01-17] (Adobe Systems Incorporated)
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.9.0.1_neutral__6e5tt8cgb93ep [2020-03-09] (Canon Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-12-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-12-27] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-02-27] (Microsoft Studios) [MS Ad]
MSN Clima -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.956.0_x64__56jybvy8sckqj [2019-12-26] (NVIDIA Corp.)

==================== Exame Personalizado CLSID (Whitelisted): ==============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

CustomCLSID: HKU\S-1-5-21-3846544088-2690467880-392933104-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-CFEB59F65985} -> [Creative Cloud Files] => C:\Users\Johan\Creative Cloud Files [2020-01-17 16:13]
CustomCLSID: HKU\S-1-5-21-3846544088-2690467880-392933104-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Nenhum Arquivo
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Nenhum Arquivo
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Nenhum Arquivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Nenhum Arquivo
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-05-29] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Nenhum Arquivo
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Nenhum Arquivo
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Nenhum Arquivo
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\nvshext.dll [2019-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Nenhum Arquivo
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-05-29] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Nenhum Arquivo
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Atalhos & WMI ========================

(As entradas podem ser listadas para serem restauradas ou removidas.)

ShortcutWithArgument: C:\Users\Johan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Módulos Carregados (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

(Se uma entrada for incluída na fixlist, somente o ADS será removido.)

AlternateDataStreams: C:\Users\Johan\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]

==================== Modo de Segurança (Whitelisted) ==================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMInstallerService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMSwissArmy => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMInstallerService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMSwissArmy => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2"

==================== Associação (Whitelisted) =================

==================== Internet Explorer confiável/restrito ==========

==================== Hosts Conteúdo: =========================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2019-03-19 01:49 - 2019-03-19 01:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Outras Áreas ===========================

(Atualmente não há nenhuma correção automática para esta seção.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64\compiler;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Common Files\Autodesk Shared\
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Johan\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\984342_1.jpg
DNS Servers: 192.168.15.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Firewall do Windows está habilitado.

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

(Se uma entrada for incluída na fixlist, será removida.)

HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "pac"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX"
HKLM\...\StartupApproved\Run32: => "CanonQuickMenu"
HKLM\...\StartupApproved\Run32: => "Autodesk Desktop App"
HKLM\...\StartupApproved\Run32: => "ifood.order.manager"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\StartupFolder: => "WO Mic Client.lnk"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_E1298BB278A3A30B6E29F17BFC75823D"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "ApowerMirror"

==================== Regras do Firewall (Whitelisted) ================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [{541286D8-27DA-4347-8F25-7031EC8F4705}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{796F2F1C-CCBC-4670-9686-B2B209B3EF8A}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{59F69EEE-6376-4361-9218-99FE4D408DD4}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{2DA6E077-5CB4-410D-86AB-C081E232D661}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{2491397F-B54F-4FAF-8987-44C707D3A45C}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [Arquivo não assinado]
FirewallRules: [UDP Query User{329802C7-C4F2-40BE-A0E5-0259531046D0}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [Arquivo não assinado]
FirewallRules: [{56111725-CF32-401D-AD09-D7E30B2B769C}] => (Allow) C:\Program Files\Vuze\Azureus.exe (Azureus Software, Inc. -> Azureus Software, Inc)
FirewallRules: [{962191B6-DC17-4460-9658-6F4A6EA8FC14}] => (Allow) C:\Program Files\Vuze\Azureus.exe (Azureus Software, Inc. -> Azureus Software, Inc)
FirewallRules: [{AD1D15E6-77E1-4A81-B1ED-9FF8B997070D}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{813255FF-E306-4EA3-BC6E-D7CBB7F2AC86}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{0DBDB795-C101-48DA-BA31-2ED0E501B6AD}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Arquivo não assinado]
FirewallRules: [UDP Query User{727B33E0-E40D-4F31-8906-D43765E6EBB4}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Arquivo não assinado]
FirewallRules: [TCP Query User{BE72C8C6-8734-4708-94EF-B7D0AE6D4ADB}D:\xampp\mysql\bin\mysqld.exe] => (Allow) D:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [UDP Query User{A637B64B-CE21-4EB3-A519-8B6D59E6425D}D:\xampp\mysql\bin\mysqld.exe] => (Allow) D:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [{8BBD4195-5CBD-4CAF-B887-CE483EE81552}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
FirewallRules: [TCP Query User{492AAFFA-DE0E-49CE-9D08-C6AE548AE84E}D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [Arquivo não assinado]
FirewallRules: [UDP Query User{4A4DB8A1-33DB-4E89-8FCC-AC25C703F7A6}D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [Arquivo não assinado]
FirewallRules: [TCP Query User{6405DA4E-338C-4269-817A-0D44E172B99B}D:\games\simcity\simcity\sclauncher.exe] => (Allow) D:\games\simcity\simcity\sclauncher.exe () [Arquivo não assinado]
FirewallRules: [UDP Query User{0B24E348-D39F-4A69-936E-234E1CE806FC}D:\games\simcity\simcity\sclauncher.exe] => (Allow) D:\games\simcity\simcity\sclauncher.exe () [Arquivo não assinado]
FirewallRules: [{EC696452-B739-4B5F-9763-1595AD055BD3}] => (Allow) D:\Games\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [Arquivo não assinado]
FirewallRules: [{3F0F8508-5D48-4F37-B280-F033751B91EC}] => (Allow) D:\Games\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [Arquivo não assinado]
FirewallRules: [TCP Query User{1ABD6DF8-D72B-454B-BC0F-3CAD9A49446A}C:\users\johan\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\johan\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{542F28B8-E627-48DD-B843-5E2880C5E0AF}C:\users\johan\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\johan\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{2FF253B9-C60F-428E-BD4B-DA9D1D84DAB7}D:\games\age of empires definitive edition\aoede_s.exe] => (Allow) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{14A02C66-352F-4BDF-B63E-3781159BEBDB}D:\games\age of empires definitive edition\aoede_s.exe] => (Allow) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [{A0EE1B6D-D609-4521-B45E-AB47FB9F067E}] => (Block) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [{4A317A8B-056C-486D-BD7A-BE557FE71953}] => (Block) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [TCP Query User{0478D0EF-4EFF-4A87-A9FA-751B77B0A825}D:\games\age of empires definitive edition\battleserver.exe] => (Allow) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{B7A91B3E-85D8-4996-B3AA-1E7CB704F44C}D:\games\age of empires definitive edition\battleserver.exe] => (Allow) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{B7A3E1E4-5ABB-4A2D-9611-B9B2E19BC5CE}] => (Block) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{3DD95CB8-3055-439D-A9CB-3F9BAC0FB068}] => (Block) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{502955FE-CFCE-407C-B8E9-25B4B99E346A}] => (Allow) D:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: ) [Arquivo não assinado]
FirewallRules: [{06F8A065-05B6-4591-884A-2C80C7C6704D}] => (Allow) D:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: ) [Arquivo não assinado]
FirewallRules: [{D2B8A49F-E7E4-4699-8BD2-0BD4217EBFF4}] => (Allow) D:\Steam\steamapps\common\Fly Punch Boom First Impact!\Fly Punch Boom First Impact!.exe () [Arquivo não assinado]
FirewallRules: [{51C99E9F-AA5E-46B2-A0DC-44E88B676074}] => (Allow) D:\Steam\steamapps\common\Fly Punch Boom First Impact!\Fly Punch Boom First Impact!.exe () [Arquivo não assinado]
FirewallRules: [TCP Query User{C58668F5-A457-4A54-ABA6-1EC544098F75}D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe] => (Allow) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [UDP Query User{2960F806-38A6-43F7-827D-1566B348638D}D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe] => (Allow) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [{B2985475-9D08-457F-8DFD-008C736FADA5}] => (Block) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [{AA4269ED-05EE-40E7-AD3B-899A88D41939}] => (Block) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [{0E5736B9-91D9-4ACA-BC8E-949665E0B62C}] => (Allow) C:\Windows\system32\winrmsrv.exe => Nenhum Arquivo
FirewallRules: [{B0D73DEF-F323-4809-9AFB-61B01CBC7E69}] => (Allow) LPort=1688
FirewallRules: [{AEF260CF-E587-4F32-9902-902527776AB7}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{10572F2D-E66A-4D77-BE00-FEE58481B127}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{277754B3-3E05-4D7E-BB8C-E64FD5E5D69D}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{B9D98128-1712-4003-B286-13A87DB679D6}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{AD9B75F8-FB14-4C37-871D-3772B768ED5E}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{182507A2-0994-4862-A9C7-3732CAA637C4}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{9273B02B-2D02-4D8B-97DF-C7359D1EC30E}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{884447FC-D74B-457B-82E3-C4BC5E7C462A}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{7D913787-3FF0-43F1-B4CA-586FAC90DCD5}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{CF0BBF7A-67DA-4855-8EDC-CC1C0C9DD890}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{E010B5C7-8813-4428-BBC9-C0F9C0783467}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{39425F89-E8BF-40C6-8576-B4D6FFF9540D}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{E9CABE0F-ED72-4DC4-B910-0507BEA8FD3D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{F4B7D2B6-90A2-42AA-90C4-EAAF70E90B88}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{5D600E67-D3DE-4076-932B-BABFB5AE7C08}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{DCBCE428-B715-477A-B8F3-C7C455EF50CF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{E319A477-AEA2-47B8-829F-DE4A43CBE1AD}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{874D75F6-A115-4AC0-9138-B52E9CDC3684}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{C7AADBFC-0ECA-4188-8D2A-4A879360F45F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2AE97959-6929-4AFF-82E0-E2954AE8043A}] => (Allow) C:\Program Files (x86)\WOMic\womicclient.exe () [Arquivo não assinado]
FirewallRules: [{2DC56572-F1CD-4681-A7EB-666C3B7705B3}] => (Allow) C:\Program Files (x86)\WOMic\womicclient.exe () [Arquivo não assinado]
FirewallRules: [{8403DD59-1041-405D-AE01-400D7206E029}] => (Allow) C:\Program Files (x86)\WOMic\womicclient.exe () [Arquivo não assinado]

==================== Pontos de Restauração =========================

ATENÇÃO: A Restauração do Sistema está desabilitada (Total:111.22 GB) (Free:41.72 GB) (38%)

==================== Dispositivos Apresentando Falhas No Gerenciador ============

Name: Driver de Infraestrutura de Virtualização Microsoft Hyper-V
Description: Driver de Infraestrutura de Virtualização Microsoft Hyper-V
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: Vid
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: WO Mic Device
Description: WO Mic Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Wolicheng Tech Ltd.
Service: wovad_micarray
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Erros no Log de eventos: ========================

Erros em Aplicativos:
==================
Error: (05/29/2020 10:06:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: FreemakeUtilsService.exe, versão: 1.0.0.0, carimbo de data/hora: 0x5e4a1dfb
Nome do módulo com falha: KERNELBASE.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x4061c730
Código de exceção: 0xe0434352
Deslocamento da falha: 0x00114192
ID do processo com falha: 0xc80
Hora de início do aplicativo com falha: 0x01d635b9f6768c25
Caminho do aplicativo com falha: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Caminho do módulo com falha: C:\Windows\System32\KERNELBASE.dll
ID do Relatório: 5af1e863-2457-40f6-beca-2b3ebd225426
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 10:06:29 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicativo: FreemakeUtilsService.exe
Versão do Framework: v4.0.30319
Descrição: O processo foi terminado devido a uma exceção sem tratamento.
Informações da Exceção: System.IO.FileNotFoundException
em FreemakeUtilsService.Program.Main(System.String[])

Error: (05/29/2020 10:06:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: svchost.exe_Dnscache, versão: 10.0.18362.1, carimbo de data/hora: 0x32d6c210
Nome do módulo com falha: ntdll.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x64d10ee0
Código de exceção: 0xc0000409
Deslocamento da falha: 0x00000000000a4278
ID do processo com falha: 0x700
Hora de início do aplicativo com falha: 0x01d635b9f5525ac2
Caminho do aplicativo com falha: C:\Windows\system32\svchost.exe
Caminho do módulo com falha: C:\Windows\SYSTEM32\ntdll.dll
ID do Relatório: 8434fb3d-6a39-4636-b031-8a9f657b3315
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 09:45:26 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa SystemSettings.exe versão 10.0.18362.628 parou de interagir com o Windows e foi fechado. Para ver se mais informações sobre o problema estão disponíveis, verifique o histórico de problemas no painel de controle Segurança e Manutenção.

ID do Processo: 51c

Hora de Início: 01d635b3c8d03e41

Hora de Término: 4294967295

Caminho do Aplicativo: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

ID do Relatório: 43b179bb-64ce-4d0f-871d-9d1b9cccd886

Nome completo do pacote com falha: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

ID do aplicativo relativo ao pacote com falha: microsoft.windows.immersivecontrolpanel

Tipo com falha: Cross-process

Error: (05/29/2020 09:18:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: FreemakeUtilsService.exe, versão: 1.0.0.0, carimbo de data/hora: 0x5e4a1dfb
Nome do módulo com falha: KERNELBASE.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x4061c730
Código de exceção: 0xe0434352
Deslocamento da falha: 0x00114192
ID do processo com falha: 0xc78
Hora de início do aplicativo com falha: 0x01d635b334c2a782
Caminho do aplicativo com falha: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Caminho do módulo com falha: C:\Windows\System32\KERNELBASE.dll
ID do Relatório: 2fb2c2da-1356-4b04-bdbb-9ff050c49615
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 09:18:07 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicativo: FreemakeUtilsService.exe
Versão do Framework: v4.0.30319
Descrição: O processo foi terminado devido a uma exceção sem tratamento.
Informações da Exceção: System.IO.FileNotFoundException
em FreemakeUtilsService.Program.Main(System.String[])

Error: (05/29/2020 09:18:04 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: svchost.exe_Dnscache, versão: 10.0.18362.1, carimbo de data/hora: 0x32d6c210
Nome do módulo com falha: ntdll.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x64d10ee0
Código de exceção: 0xc0000409
Deslocamento da falha: 0x00000000000a4278
ID do processo com falha: 0x704
Hora de início do aplicativo com falha: 0x01d635b333892a52
Caminho do aplicativo com falha: C:\Windows\system32\svchost.exe
Caminho do módulo com falha: C:\Windows\SYSTEM32\ntdll.dll
ID do Relatório: 00e2f187-bc68-4164-aacf-aa1c395accbd
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 08:54:56 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: FreemakeUtilsService.exe, versão: 1.0.0.0, carimbo de data/hora: 0x5e4a1dfb
Nome do módulo com falha: KERNELBASE.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x4061c730
Código de exceção: 0xe0434352
Deslocamento da falha: 0x00114192
ID do processo com falha: 0xcc8
Hora de início do aplicativo com falha: 0x01d635aff766e027
Caminho do aplicativo com falha: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Caminho do módulo com falha: C:\Windows\System32\KERNELBASE.dll
ID do Relatório: 03560e02-304b-4279-86e2-4c189385e010
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:


Erros de Sistema:
=============
Error: (05/29/2020 10:40:38 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:40:04 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:39:40 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço WSearch com argumentos "Não Disponível" para executar o servidor:
{9E175B6D-F52A-11D8-B9A5-505054503030}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço VSS com argumentos "Não Disponível" para executar o servidor:
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço VSS com argumentos "Não Disponível" para executar o servidor:
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço VSS com argumentos "Não Disponível" para executar o servidor:
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}


CodeIntegrity:
===================================

Date: 2020-05-29 10:32:22.152
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:32:22.150
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:14:52.639
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:14:52.636
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:12:31.050
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:12:31.048
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:10:47.034
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-05-29 10:10:47.013
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Informações da Memória ===========================

BIOS: American Megatrends Inc. 0802 10/08/2012
placa-mãe: ASUSTeK COMPUTER INC. P8H61-M LX3 PLUS R2.0
Processador: Intel(R) Core(TM) i5-2310 CPU @ 2.90GHz
Percentagem de memória em uso: 29%
RAM física total: 8143.79 MB
RAM física disponível: 5742.6 MB
Virtual Total: 16335.79 MB
Virtual disponível: 14225.19 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.22 GB) (Free:41.72 GB) NTFS
Drive d: (Dados) (Fixed) (Total:447.13 GB) (Free:81.38 GB) NTFS
Drive e: (WIN10_PRO_X86X64_en-US_Feb2016) (Removable) (Total:15 GB) (Free:11.4 GB) NTFS

\\?\Volume{897d68e1-0000-0000-0000-100000000000}\ (Reservado pelo Sistema) (Fixed) (Total:0.57 GB) (Free:0.11 GB) NTFS

==================== MBR & Tabela de Partições ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 897D68E1)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 447.1 GB) (Disk ID: 1558E0F3)
Partition 1: (Not Active) - (Size=447.1 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 15 GB) (Disk ID: 00107570)
Partition 1: (Active) - (Size=15 GB) - (Type=07 NTFS)

==================== Fim de Addition.txt =======================
Kraftwerk
Kraftwerk Cyber Highlander Registrado
29.4K Mensagens 9.4K Curtidas
#2 Por Kraftwerk
29/05/2020 - 13:06
anjinho.gif

Experimente rodar um anti vírus via CD ou pen drive.

adeus.gif
Christo Nihil Praeponere
"Quem procura a Verdade, consciente ou não, procura Deus"
"Aprovemos Leis que proíbam o Comunismo, o Fascismo, o Nazismo, o Socialismo e qualquer doutrina totalitária."
"Quando dominam os justos, alegra-se o povo; quando governa o ímpio, o povo geme." Provérbios, 29:2
PH
PH Cyber Highlander Registrado
61.2K Mensagens 10.7K Curtidas
#3 Por PH
29/05/2020 - 16:06
johan1206 disse:
Estou com um vírus no computador que ele:
  • Bloqueia a inicialização dos navegadores
  • Não permite acessar a aba detalhes do gerenciador de arquivos
  • Desativa o firewall do meu antivirus (nod 32)
  • Bloqueia o acesso a internet (Não permite que o antivirus atualize)

Segue os logs criados pelo FRST64
"FRST"

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 29-05-2020
Executado por Johan (administrador) em DESKTOP-CI0EAOA (29-05-2020 10:39:02)
Executando a partir de D:\Usuarios\Johan\Desktop\Downloads
Perfis Carregados: Johan
Platform: Windows 10 Home Versão 1909 18363.720 (X64) Idioma: Português (Brasil)
Navegador padrão: Chrome
Modo da Inicialização: Safe Mode (with Networking)
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <23>
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registro (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [pac] => C:\Program Files\Autodesk\Personal Accelerator for Revit\RevitAccelerator.exe [339464 2016-02-10] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [185648 2020-04-02] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [235624 2015-01-09] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [405048 2020-03-16] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [664872 2020-03-04] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM-x32\...\Run: [ifood.order.manager] => C:\Gestor de Pedidos\Gestor de Pedidos.exe [56374272 2018-11-07] (iFood) [Arquivo não assinado]
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrição <==== ATENÇÃO
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [48214752 2020-04-06] (Google LLC -> )
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [31867792 2020-05-22] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [648328 2020-04-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\Run: [ApowerMirror] => C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe [6201904 2020-05-21] (Apowersoft Ltd -> Apowersoft)
HKLM\...\Windows x64\Print Processors\Canon G3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCW.DLL [30208 2016-03-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor G3000 series: C:\Windows\system32\CNMLMCW.DLL [406528 2016-03-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [375296 2015-03-17] (CANON INC.) [Arquivo não assinado]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-27] (Google LLC -> Google LLC)
Startup: C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WO Mic Client.lnk [2020-05-27]
ShortcutTarget: WO Mic Client.lnk -> C:\Program Files (x86)\WOMic\WOMicClient.exe () [Arquivo não assinado]
GroupPolicy: Restrição ? <==== ATENÇÃO
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrição <==== ATENÇÃO
CHR HKLM\SOFTWARE\Policies\Google: Restrição <==== ATENÇÃO

==================== Tarefas Agendadas (Whitelisted) ============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {2D7C02A2-6C27-4E9E-BDB1-B2E87FEAE6D0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {3972C591-CE36-4727-9226-BA0894132AC5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {43F0C08C-C43C-4457-A341-5C3C4A7D58FD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-26] (Google LLC -> Google LLC)
Task: {C7F4A74D-FD60-4255-B2F6-87BCCC52AB3D} - System32\Tasks\[EMAIL]AdobeAAMUpdater-1.0-MicrosoftAccount-johan88232671@hotmail.com[/EMAIL] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {D82090D0-ED07-4439-90DD-95364632E98D} - System32\Tasks\BlueStacksHelper => D:\BlueStacks\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {DF314322-6E99-44F9-A9A3-86B67BE783BF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {E4BF8781-BBD4-44DD-81A3-F038B5D46C73} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-26] (Google LLC -> Google LLC)
Task: {EEAFB67E-D57C-41C8-B9D9-013FB6CB7A54} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3325520 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)

Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll => Nenhum Arquivo
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.15.1
Tcpip\..\Interfaces\{64636619-4c44-48aa-a136-7346447810cd}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{8cdb8378-48f1-4521-b499-2255baccb0b0}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{94e79823-f764-4b59-aad4-cf77ee891f7a}: [DhcpNameServer] 192.168.15.1

Internet Explorer:
==================
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => Nenhum Arquivo
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
DownloadDir: D:\Usuarios\Johan\Desktop\Downloads

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-03-16] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Arquivo não assinado]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-03-16] (Adobe Inc. -> Adobe Systems)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default [2020-05-29]
CHR Notifications: Default -> hxxps://gestordepedidos.ifood.com.br
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxps://www.google.com.br/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8"
CHR Extension: (Apresentações) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-26]
CHR Extension: (GrowBot Automator for Instagram) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\abhcgokmndbiegmmbjffdlpihgdmeejf [2020-05-24]
CHR Extension: (Taxas de Câmbio Bitcoin) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambclkiicpedhalibphbmdbojciekhjj [2019-12-26]
CHR Extension: (Import Aliexpress Products to Woocommerce) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ambpfppfbpeepjlpgekhpdfmmgikfjjd [2020-04-20]
CHR Extension: (Documentos) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-26]
CHR Extension: (Google Drive) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-12-26]
CHR Extension: (ColorZilla) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2020-05-18]
CHR Extension: (YouTube) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-26]
CHR Extension: (Vimeo™ Video Downloader) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgpbghdbejagejmciefmekcklikpoeel [2020-03-16]
CHR Extension: (MozBar) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\eakacpaijcpapndcfffdgphdiccmpknp [2019-12-26]
CHR Extension: (Full Page Screen Capture) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2020-04-17]
CHR Extension: (Planilhas) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-26]
CHR Extension: (MindMap) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdaeohpmcenmffofpikllphdhlkkocfa [2019-12-26]
CHR Extension: (Documentos Google off-line) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-22]
CHR Extension: (AdBlock — o melhor bloqueador de anúncios) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-05-20]
CHR Extension: (Stream Video Downloader) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\imkngaibigegepnlckfcbecjoilcjbhf [2020-04-28]
CHR Extension: (Tag Assistant (by Google)) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2020-03-24]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-12-26]
CHR Extension: (vidIQ Vision for YouTube) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2020-05-21]
CHR Extension: (Gmail) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-12-26]
CHR Extension: (Chrome Media Router) - C:\Users\Johan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-27]
CHR HKU\S-1-5-21-3846544088-2690467880-392933104-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Serviços (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1046904 2020-03-04] (Autodesk, Inc. -> Autodesk Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [820280 2020-03-16] (Adobe Inc. -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3673680 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3406416 2020-05-05] (Adobe Inc. -> Adobe Systems, Incorporated)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2019-12-16] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-02] (ESET, spol. s r.o. -> ESET)
S3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-02] (ESET, spol. s r.o. -> ESET)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81280 2020-02-17] (Mixbyte Inc -> Freemake)
S2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [399296 2019-11-28] (Canon Inc. -> )
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-05-29] (Malwarebytes Inc -> Malwarebytes)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 wuauserv; C:\Windows\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 wuauserv; C:\Windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
S2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2019-12-12] (Bluestack Systems, Inc -> Bluestack System Inc.)
S1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [154336 2020-04-02] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [106840 2020-04-02] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2020-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
S1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [188872 2020-04-02] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [53048 2020-04-02] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [79520 2020-04-02] (ESET, spol. s r.o. -> ESET)
S1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [115960 2020-04-02] (ESET, spol. s r.o. -> ESET)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [66824 2017-06-15] (IObit Information Technology -> IObit)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-05-29] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [20936 2020-05-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-05-29] (Malwarebytes Inc -> Malwarebytes)
S3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\nvlddmkm.sys [22094936 2019-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation -> Corel Corporation)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 wovad_micarray; C:\Windows\system32\drivers\womic.sys [34496 2020-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
U1 aswbdisk; não ImagePath

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três meses (criados) ===================

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2020-05-29 10:38 - 2020-05-29 10:39 - 000000000 ____D C:\FRST
2020-05-29 10:35 - 2020-05-29 10:35 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2020-05-29 10:35 - 2020-05-29 10:35 - 000214496 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2020-05-29 10:23 - 2020-05-29 10:33 - 000000286 __RSH C:\Users\Todos os Usuários\ntuser.pol
2020-05-29 10:23 - 2020-05-29 10:33 - 000000286 __RSH C:\ProgramData\ntuser.pol
2020-05-29 10:16 - 2020-05-29 10:16 - 000000000 ___HD C:\$SysReset
2020-05-29 09:59 - 2020-05-29 09:59 - 000001253 _____ C:\Users\Todos os Usuários\Desktop\IObit Unlocker.lnk
2020-05-29 09:59 - 2020-05-29 09:59 - 000001253 _____ C:\Users\Public\Desktop\IObit Unlocker.lnk
2020-05-29 09:59 - 2020-05-29 09:59 - 000001253 _____ C:\ProgramData\Desktop\IObit Unlocker.lnk
2020-05-29 09:59 - 2020-05-29 09:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker
2020-05-29 09:57 - 2020-05-29 09:57 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2020-05-29 09:57 - 2020-05-29 09:57 - 000020936 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys
2020-05-29 09:57 - 2020-05-29 09:57 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000002021 _____ C:\Users\Todos os Usuários\Desktop\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000002021 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2020-05-29 09:57 - 2020-05-29 09:57 - 000000000 ____D C:\Users\Todos os Usuários\Malwarebytes
2020-05-29 09:57 - 2020-05-29 09:57 - 000000000 ____D C:\ProgramData\Malwarebytes
2020-05-29 08:05 - 2020-05-29 08:05 - 000000000 ____D C:\Program Files\Malwarebytes
2020-05-29 07:48 - 2020-05-29 07:48 - 000000805 _____ C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-05-29 07:26 - 2020-05-29 07:26 - 000000000 _____ C:\Users\Johan\AppData\Local\{F1B57825-8AB3-43AE-98C6-D5401DA9995C}
2020-05-27 18:36 - 2020-05-28 21:54 - 000000000 ____D C:\Users\Johan\AppData\Local\Ubisoft Game Launcher
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\Users\Todos os Usuários\Ubisoft
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\ProgramData\Ubisoft
2020-05-27 18:36 - 2020-05-27 18:36 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2020-05-27 18:22 - 2020-05-27 18:22 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WO Mic Client
2020-05-27 18:22 - 2020-05-27 18:22 - 000000000 ____D C:\Program Files (x86)\WOMic
2020-05-27 17:02 - 2020-05-27 17:02 - 000001167 _____ C:\Users\Todos os Usuários\Desktop\SoundWire Server.lnk
2020-05-27 17:02 - 2020-05-27 17:02 - 000001167 _____ C:\Users\Public\Desktop\SoundWire Server.lnk
2020-05-27 17:02 - 2020-05-27 17:02 - 000001167 _____ C:\ProgramData\Desktop\SoundWire Server.lnk
2020-05-27 17:02 - 2020-05-27 17:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoundWire Server
2020-05-27 17:02 - 2020-05-27 17:02 - 000000000 ____D C:\Program Files (x86)\SoundWire Server
2020-05-27 11:13 - 2020-05-27 11:13 - 000000000 ____D C:\.android
2020-05-27 11:12 - 2020-05-29 09:54 - 000000000 ____D C:\Program Files\Bonjour
2020-05-27 11:12 - 2020-05-27 11:12 - 000001273 _____ C:\Users\Todos os Usuários\Desktop\ApowerMirror.lnk
2020-05-27 11:12 - 2020-05-27 11:12 - 000001273 _____ C:\Users\Public\Desktop\ApowerMirror.lnk
2020-05-27 11:12 - 2020-05-27 11:12 - 000001273 _____ C:\ProgramData\Desktop\ApowerMirror.lnk
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\Users\Todos os Usuários\Apple
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Apowersoft
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\ProgramData\Apple
2020-05-27 11:12 - 2020-05-27 11:12 - 000000000 ____D C:\Program Files (x86)\Apowersoft
2020-05-27 11:04 - 2020-05-27 11:05 - 000000000 ____D C:\Users\Johan\AppData\Roaming\AirDroid
2020-05-27 10:59 - 2020-05-27 10:59 - 000000000 ____D C:\Users\Todos os Usuários\AirDroid
2020-05-27 10:59 - 2020-05-27 10:59 - 000000000 ____D C:\ProgramData\AirDroid
2020-05-27 07:24 - 2020-05-27 07:24 - 000001333 _____ C:\Users\Todos os Usuários\Desktop\Money Robot Submitter.lnk
2020-05-27 07:24 - 2020-05-27 07:24 - 000001333 _____ C:\Users\Public\Desktop\Money Robot Submitter.lnk
2020-05-27 07:24 - 2020-05-27 07:24 - 000001333 _____ C:\ProgramData\Desktop\Money Robot Submitter.lnk
2020-05-27 07:24 - 2020-05-27 07:24 - 000000046 _____ C:\Users\Todos os Usuários\Desktop\Money Robot Forum.url
2020-05-27 07:24 - 2020-05-27 07:24 - 000000046 _____ C:\Users\Public\Desktop\Money Robot Forum.url
2020-05-27 07:24 - 2020-05-27 07:24 - 000000046 _____ C:\ProgramData\Desktop\Money Robot Forum.url
2020-05-19 15:21 - 2020-05-19 15:21 - 000000000 ____D C:\Users\suporte\AppData\LocalLow\Adobe
2020-05-19 15:19 - 2020-05-19 15:30 - 000000000 ____D C:\Users\suporte\AppData\Local\Adobe
2020-05-19 15:19 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Roaming\NVIDIA
2020-05-19 15:19 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Local\UXP
2020-05-19 15:19 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Local\NVIDIA
2020-05-19 14:43 - 2020-05-19 14:43 - 000000000 ____D C:\Users\suporte\AppData\Local\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\Users\Todos os Usuários\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\ProgramData\ESET
2020-05-16 06:44 - 2020-05-16 06:44 - 000000000 ____D C:\Program Files\ESET
2020-05-15 21:03 - 2020-05-29 10:38 - 000591812 _____ C:\Windows\ntbtlog.txt
2020-05-15 21:03 - 2020-05-29 10:35 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2020-05-12 18:59 - 2020-05-12 18:59 - 000000000 ____D C:\Users\suporte\AppData\Roaming\Avast Software
2020-05-12 18:59 - 2020-05-12 18:59 - 000000000 ____D C:\Users\suporte\AppData\Local\CEF
2020-05-11 08:50 - 2020-05-11 08:50 - 000000000 ____D C:\Users\Johan\AppData\Roaming\obs-studio
2020-05-10 23:06 - 2020-05-15 21:11 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Avast Software
2020-05-10 23:02 - 2020-05-10 23:02 - 000000000 ___HD C:\$AV_ASW
2020-05-10 22:52 - 2020-05-10 22:52 - 000000000 ____D C:\Users\suporte\AppData\Local\mbamtray
2020-05-10 22:51 - 2020-05-10 22:52 - 000000000 _____ C:\Windows\system32\last.dump
2020-05-10 22:49 - 2020-05-10 22:51 - 000000000 ____D C:\AdwCleaner
2020-05-10 22:43 - 2020-05-15 21:11 - 000000000 ____D C:\Users\Todos os Usuários\Avast Software
2020-05-10 22:43 - 2020-05-15 21:11 - 000000000 ____D C:\ProgramData\Avast Software
2020-05-10 22:29 - 2020-05-10 22:29 - 000000000 ____D C:\Users\Johan\AppData\Local\mbamtray
2020-05-10 22:29 - 2020-05-10 22:29 - 000000000 ____D C:\Users\Johan\AppData\Local\mbam
2020-05-10 20:08 - 2020-05-10 20:08 - 000000000 ____D C:\Users\suporte\AppData\Roaming\MPC-HC
2020-05-10 18:57 - 2020-05-26 13:27 - 000000000 ____D C:\Users\suporte\AppData\Roaming\obs-studio
2020-05-10 18:56 - 2020-05-10 18:56 - 000001052 _____ C:\Users\Todos os Usuários\Desktop\OBS Studio.lnk
2020-05-10 18:56 - 2020-05-10 18:56 - 000001052 _____ C:\Users\Public\Desktop\OBS Studio.lnk
2020-05-10 18:56 - 2020-05-10 18:56 - 000001052 _____ C:\ProgramData\Desktop\OBS Studio.lnk
2020-05-10 18:56 - 2020-05-10 18:56 - 000000000 ____D C:\Users\Todos os Usuários\obs-studio-hook
2020-05-10 18:56 - 2020-05-10 18:56 - 000000000 ____D C:\ProgramData\obs-studio-hook
2020-05-10 18:56 - 2020-05-10 18:56 - 000000000 ____D C:\Program Files\obs-studio
2020-05-10 18:46 - 2020-05-10 18:49 - 000000000 ____D C:\Users\suporte\AppData\Local\ElevatedDiagnostics
2020-05-08 21:39 - 2020-05-19 15:19 - 000000000 ____D C:\Users\suporte\AppData\Local\D3DSCache
2020-05-08 10:14 - 2020-05-08 10:14 - 000000938 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2019.lnk
2020-05-08 06:48 - 2020-05-08 06:48 - 000001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2019.lnk
2020-05-05 19:49 - 2020-05-05 19:49 - 000000000 ____D C:\Users\Johan\AppData\Roaming\SmartSteamEmu
2020-05-05 14:05 - 2020-05-05 14:05 - 000000000 ____D C:\Users\Johan\AppData\LocalLow\Jollypunch Games
2020-05-05 13:27 - 2020-05-28 21:55 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2020-05-01 19:33 - 2008-10-15 06:22 - 005631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 004379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 002605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 002036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 000519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2020-05-01 19:33 - 2008-10-15 06:22 - 000452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2020-05-01 08:09 - 2020-05-01 08:09 - 000000000 ____D C:\Users\Johan\Games
2020-04-28 16:58 - 2020-04-30 07:42 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Gestor de Pedidos
2020-04-28 16:58 - 2020-04-28 16:58 - 000001774 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gestor de Pedidos.lnk
2020-04-28 16:58 - 2020-04-28 16:58 - 000000000 ____D C:\Gestor de Pedidos
2020-04-24 10:47 - 2020-04-24 10:47 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Quest3D
2020-04-23 18:10 - 2020-04-23 18:10 - 000000000 ____D C:\Users\Todos os Usuários\LogMeIn
2020-04-23 18:10 - 2020-04-23 18:10 - 000000000 ____D C:\Users\Johan\AppData\Local\LogMeIn
2020-04-23 18:10 - 2020-04-23 18:10 - 000000000 ____D C:\ProgramData\LogMeIn
2020-04-22 13:26 - 2020-04-22 13:26 - 000070712 _____ C:\Users\Johan\AppData\Local\GDIPFONTCACHEV1.DAT
2020-04-22 13:25 - 2020-05-02 10:12 - 000000000 ____D C:\Users\Todos os Usuários\RevitInterProcess
2020-04-22 13:25 - 2020-05-02 10:12 - 000000000 ____D C:\ProgramData\RevitInterProcess
2020-04-22 13:23 - 2020-04-22 13:23 - 000000000 ____D C:\Users\Todos os Usuários\FLEXnet
2020-04-22 13:23 - 2020-04-22 13:23 - 000000000 ____D C:\ProgramData\FLEXnet
2020-04-22 12:17 - 2020-04-22 12:17 - 000000000 ____D C:\Program Files (x86)\Autodesk
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\Users\Todos os Usuários\Dynamo
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Dynamo
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\ProgramData\Dynamo
2020-04-22 12:14 - 2020-04-22 12:14 - 000000000 ____D C:\Program Files\Dynamo 0.9
2020-04-22 12:13 - 2020-04-22 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IronPython 2.7
2020-04-22 12:13 - 2020-04-22 12:13 - 000000000 ____D C:\Program Files (x86)\IronPython 2.7
2020-04-22 12:12 - 2020-04-22 13:27 - 000000000 ____D C:\Users\Johan\AppData\Local\Autodesk
2020-04-22 12:11 - 2020-04-22 12:11 - 000001658 _____ C:\Users\Todos os Usuários\Desktop\Revit 2017.lnk
2020-04-22 12:11 - 2020-04-22 12:11 - 000001658 _____ C:\Users\Public\Desktop\Revit 2017.lnk
2020-04-22 12:11 - 2020-04-22 12:11 - 000001658 _____ C:\ProgramData\Desktop\Revit 2017.lnk
2020-04-22 12:11 - 2020-04-22 12:11 - 000000185 _____ C:\Windows\ODBCINST.INI
2020-04-22 12:11 - 2020-04-22 12:11 - 000000152 _____ C:\Windows\ODBC.INI
2020-04-22 12:09 - 2020-04-22 12:14 - 000000000 ____D C:\Program Files\Autodesk
2020-04-22 12:08 - 2020-04-22 12:10 - 000000000 ____D C:\Program Files\Common Files\Autodesk Shared
2020-04-22 12:08 - 2020-04-22 12:08 - 000000000 ____D C:\Program Files\Common Files\Macrovision Shared
2020-04-22 12:07 - 2020-04-22 12:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2020-04-22 11:30 - 2020-04-23 06:29 - 000000000 ____D C:\Users\Todos os Usuários\Autodesk
2020-04-22 11:30 - 2020-04-23 06:29 - 000000000 ____D C:\ProgramData\Autodesk
2020-04-22 11:30 - 2020-04-22 13:23 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Autodesk
2020-04-14 14:28 - 2020-04-14 14:28 - 000000000 ____D C:\Users\Johan\AppData\Local\Steam
2020-04-13 16:58 - 2020-05-10 18:27 - 000000096 _____ C:\Windows\system32\perfdish001.dat
2020-04-10 16:45 - 2020-05-08 06:56 - 000001364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2020-04-10 15:51 - 2020-04-10 15:51 - 000000000 ____D C:\Users\Johan\AppData\LocalLow\IObit
2020-04-10 15:50 - 2020-05-10 22:51 - 000000000 ____D C:\Users\Johan\AppData\Roaming\IObit
2020-04-10 15:50 - 2020-04-10 15:50 - 000000000 ____D C:\Users\Todos os Usuários\ProductData
2020-04-10 15:50 - 2020-04-10 15:50 - 000000000 ____D C:\ProgramData\ProductData
2020-04-02 13:43 - 2020-04-02 13:43 - 000188872 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000154336 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000115960 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000106840 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000079520 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2020-04-02 13:43 - 2020-04-02 13:43 - 000053048 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2020-04-01 15:27 - 2020-04-01 15:27 - 000015800 _____ (ESET) C:\Windows\system32\Drivers\eelam.sys
2020-04-01 10:43 - 2020-04-01 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by.xatab
2020-03-31 21:54 - 2010-06-02 04:55 - 000239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2020-03-31 21:54 - 2010-06-02 04:55 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2020-03-31 21:54 - 2010-02-04 10:01 - 000074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2020-03-31 21:54 - 2009-09-04 17:44 - 000069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 005554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 005501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 002582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 002475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 001974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 001892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2020-03-31 21:54 - 2009-09-04 17:29 - 000235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2020-03-31 21:54 - 2009-03-16 14:18 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 005425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 004178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 002430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 001846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 000520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2020-03-31 21:54 - 2009-03-09 15:27 - 000453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2020-03-31 21:54 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2020-03-31 21:54 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2020-03-31 21:54 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2020-03-31 21:54 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2020-03-31 21:54 - 2008-07-10 11:01 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 004992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 003851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 001942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 001493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2020-03-31 21:54 - 2008-07-10 11:00 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2020-03-31 21:54 - 2008-05-30 14:19 - 000511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2020-03-31 21:54 - 2008-05-30 14:19 - 000507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2020-03-31 21:54 - 2008-05-30 14:18 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2020-03-31 21:54 - 2008-05-30 14:18 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2020-03-31 21:54 - 2008-05-30 14:17 - 000068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2020-03-31 21:54 - 2008-05-30 14:17 - 000065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2020-03-31 21:54 - 2008-05-30 14:17 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2020-03-31 21:54 - 2008-05-30 14:16 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 004991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 003850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 001941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 001491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 000540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2020-03-31 21:54 - 2008-05-30 14:11 - 000467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2020-03-31 21:54 - 2008-03-05 16:04 - 000489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2020-03-31 21:54 - 2008-03-05 16:03 - 000479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2020-03-31 21:54 - 2008-03-05 16:03 - 000238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2020-03-31 21:54 - 2008-03-05 16:03 - 000177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2020-03-31 21:54 - 2008-03-05 16:00 - 000028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2020-03-31 21:54 - 2008-03-05 16:00 - 000025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 004910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 003786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 001860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2020-03-31 21:54 - 2008-03-05 15:56 - 001420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2020-03-31 21:54 - 2008-02-05 23:07 - 000529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2020-03-31 21:54 - 2008-02-05 23:07 - 000462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2020-03-31 21:54 - 2007-10-22 03:40 - 000411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2020-03-31 21:54 - 2007-10-22 03:39 - 000267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2020-03-31 21:54 - 2007-10-22 03:37 - 000021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2020-03-31 21:54 - 2007-10-22 03:37 - 000017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 005081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 003734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 002006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2020-03-31 21:54 - 2007-10-12 15:14 - 001374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2020-03-31 21:54 - 2007-10-02 09:56 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2020-03-31 21:54 - 2007-10-02 09:56 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2020-03-31 21:54 - 2007-07-20 00:57 - 000411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2020-03-31 21:54 - 2007-07-20 00:57 - 000267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 005073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 003727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 001985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 001358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 000508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2020-03-31 21:54 - 2007-07-19 18:14 - 000444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2020-03-31 21:54 - 2007-06-20 20:49 - 000409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2020-03-31 21:54 - 2007-06-20 20:46 - 000266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 004496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 003497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 001401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 001124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2020-03-31 21:54 - 2007-05-16 16:45 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2020-03-31 21:54 - 2007-04-04 18:55 - 000403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2020-03-31 21:54 - 2007-04-04 18:55 - 000261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2020-03-31 21:54 - 2007-03-15 16:57 - 000506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2020-03-31 21:54 - 2007-03-15 16:57 - 000443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 004494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 003495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 001400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2020-03-31 21:54 - 2007-03-12 16:42 - 001123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2020-03-31 21:54 - 2007-03-05 12:42 - 000017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2020-03-31 21:54 - 2007-03-05 12:42 - 000015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2020-03-31 21:54 - 2007-01-24 15:27 - 000393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2020-03-31 21:54 - 2007-01-24 15:27 - 000255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2020-03-31 21:54 - 2006-12-08 12:02 - 000251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2020-03-31 21:54 - 2006-12-08 12:00 - 000390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 004398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 003426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 000469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2020-03-31 21:54 - 2006-11-29 13:06 - 000440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2020-03-31 21:54 - 2006-09-28 16:05 - 003977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2020-03-31 21:54 - 2006-09-28 16:05 - 002414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2020-03-31 21:54 - 2006-09-28 16:05 - 000237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2020-03-31 21:54 - 2006-09-28 16:04 - 000364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2020-03-31 21:54 - 2006-07-28 09:31 - 000083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2020-03-31 21:54 - 2006-07-28 09:30 - 000363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2020-03-31 21:54 - 2006-07-28 09:30 - 000236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2020-03-31 21:54 - 2006-07-28 09:30 - 000062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2020-03-31 21:54 - 2006-05-31 07:24 - 000230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2020-03-31 21:54 - 2006-05-31 07:22 - 000354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2020-03-31 21:54 - 2006-03-31 12:41 - 003927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2020-03-31 21:54 - 2006-03-31 12:40 - 002388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2020-03-31 21:54 - 2006-03-31 12:40 - 000352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2020-03-31 21:54 - 2006-03-31 12:39 - 000229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2020-03-31 21:54 - 2006-03-31 12:39 - 000083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2020-03-31 21:54 - 2006-03-31 12:39 - 000062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2020-03-31 21:54 - 2006-02-03 08:43 - 003830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2020-03-31 21:54 - 2006-02-03 08:43 - 002332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2020-03-31 21:54 - 2006-02-03 08:42 - 000355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2020-03-31 21:54 - 2006-02-03 08:42 - 000230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2020-03-31 21:54 - 2006-02-03 08:41 - 000016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2020-03-31 21:54 - 2006-02-03 08:41 - 000014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2020-03-31 21:54 - 2005-12-05 18:09 - 003815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2020-03-31 21:54 - 2005-12-05 18:09 - 002323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2020-03-31 21:54 - 2005-07-22 19:59 - 003807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2020-03-31 21:54 - 2005-07-22 19:59 - 002319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2020-03-31 21:54 - 2005-05-26 15:34 - 003767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2020-03-31 21:54 - 2005-05-26 15:34 - 002297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2020-03-31 21:54 - 2005-03-18 17:19 - 003823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2020-03-31 21:54 - 2005-03-18 17:19 - 002337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2020-03-31 21:54 - 2005-02-05 19:45 - 003544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2020-03-31 21:54 - 2005-02-05 19:45 - 002222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2020-03-31 21:53 - 2020-04-01 10:43 - 000000000 ____D C:\Windows\SysWOW64\directx
2020-03-30 16:47 - 2020-03-30 16:49 - 000000000 ___HD C:\Users\Todos os Usuários\CanonIJMIG
2020-03-30 16:47 - 2020-03-30 16:49 - 000000000 ___HD C:\ProgramData\CanonIJMIG
2020-03-30 16:46 - 2020-03-30 16:47 - 000000000 ___HD C:\Users\Todos os Usuários\CanonIJScan
2020-03-30 16:46 - 2020-03-30 16:47 - 000000000 ___HD C:\ProgramData\CanonIJScan
2020-03-30 14:48 - 2020-03-30 14:48 - 000000000 ____D C:\Users\Johan\AppData\Local\Saber
2020-03-29 18:11 - 2020-05-08 10:14 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Adobe
2020-03-29 06:50 - 2020-03-29 06:50 - 000000024 _____ C:\Windows\system32\WinUpdates105.dat
2020-03-29 06:50 - 2020-03-29 06:50 - 000000003 _____ C:\Windows\system32\wdbcache.tmp
2020-03-29 06:50 - 2020-03-19 13:37 - 000024512 _____ C:\Windows\system32\7B296FC0-376B-497d-B013-58F4D9633A22-5P-1.B5841A4C-A289-439d-8115-50AB69CD450
2020-03-28 18:01 - 2020-03-28 18:01 - 000000000 ____D C:\Users\Johan\AppData\Roaming\IOTransfer
2020-03-26 18:16 - 2020-03-26 18:16 - 000000000 ____D C:\Users\Todos os Usuários\Freemake
2020-03-26 18:16 - 2020-03-26 18:16 - 000000000 ____D C:\Users\Johan\AppData\Local\FreemakeVideoConverter
2020-03-26 18:16 - 2020-03-26 18:16 - 000000000 ____D C:\ProgramData\Freemake
2020-03-26 18:15 - 2020-04-19 07:48 - 000000000 ____D C:\Program Files (x86)\Freemake
2020-03-26 15:52 - 2020-05-08 06:56 - 000000000 ____D C:\Users\Todos os Usuários\Adobe
2020-03-26 15:52 - 2020-05-08 06:56 - 000000000 ____D C:\ProgramData\Adobe
2020-03-26 14:59 - 2020-03-27 10:54 - 000000132 _____ C:\Users\Johan\AppData\Roaming\Adobe PNG Format CS6 Prefs
2020-03-26 12:07 - 2020-05-08 07:00 - 000000000 ____D C:\Users\Johan\AppData\Local\Adobe
2020-03-26 11:48 - 2020-03-26 11:48 - 000000000 ____D C:\Users\Johan\AppData\Roaming\NVIDIA
2020-03-23 23:01 - 2020-03-23 23:01 - 000000000 _____ C:\Users\Johan\AppData\Local\{E8CB954F-72E1-4E2A-BBEE-F611F77C256C}
2020-03-22 18:54 - 2020-03-22 18:54 - 000022240 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_1084761933816809.dll
2020-03-19 14:55 - 2020-05-06 10:38 - 000000000 ____D C:\Users\Johan\dwhelper
2020-03-19 14:55 - 2020-03-19 14:55 - 000000000 ____D C:\Program Files\net.censurado.png.coapp
2020-03-19 13:37 - 2020-03-19 13:37 - 000024512 _____ C:\Windows\system32\7B296FC0-376B-497d-B013-58F4D9633A22-5P-1.B5841A4C-A289-439d-8115-50AB69CD450B
2020-03-19 13:37 - 2020-03-19 13:37 - 000000000 _____ C:\Windows\system32\setup4.2.6.tmp
2020-03-15 16:07 - 2020-03-15 16:07 - 025444352 _____ (Microsoft Corporation) C:\Windows\system32\Hydrogen.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 009930552 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 007604584 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 006520776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 004563416 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 001610240 _____ (Microsoft Corporation) C:\Windows\system32\HologramCompositor.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 001398584 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 001077048 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2020-03-15 16:07 - 2020-03-15 16:07 - 000772096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-03-15 16:07 - 2020-03-15 16:07 - 000689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2020-03-15 16:07 - 2020-03-15 16:07 - 000561464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-03-14 08:19 - 2020-05-10 23:02 - 000000000 ____D C:\Program Files\KMSpico
2020-03-14 08:19 - 2020-03-14 08:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2020-03-14 08:19 - 2010-12-05 23:16 - 000090112 _____ (Vestris Inc.) C:\Windows\system32\Vestris.ResourceLib.dll
2020-03-14 08:16 - 2020-05-27 11:14 - 000000000 ____D C:\Users\Johan\AppData\Local\CrashDumps
2020-03-13 09:43 - 2020-05-10 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2020-03-13 07:39 - 2020-03-13 07:39 - 011607552 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-03-13 07:39 - 2020-03-13 07:39 - 009711616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 025900544 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 022635008 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 019850240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 019812352 _____ (Microsoft Corporation) C:\Windows\system32\HologramWorld.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 018027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007905784 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007755776 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007263992 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 007259648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006436352 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006285312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006168064 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 006084344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005911040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005764664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005112832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 005040640 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004855808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004622280 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 004580352 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004538880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004471296 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004348408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004140544 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004129648 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 004048896 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003971808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003819520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003799552 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003728896 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 003708928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003587896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 003552768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003488768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003371720 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003263488 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003260928 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003243296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 003143168 _____ (Microsoft Corporation) C:\Windows\system32\directml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002986808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002956688 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002875904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002870272 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002808832 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002800640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002773568 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002768440 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-03-13 07:38 - 2020-03-13 07:38 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-03-13 07:38 - 2020-03-13 07:38 - 002740736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directml.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002715648 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002698040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 002584008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002561536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002522112 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002494744 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002474496 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002453504 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002315680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002307584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002305536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002289152 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002259872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002224952 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002180408 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002157056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002087376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002072664 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002031104 _____ C:\Windows\system32\rdpnano.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 002021888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001999952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001985104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001972536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 001885184 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001867816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001854976 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001835128 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001835008 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001823232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001770552 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001764336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001762304 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001757304 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-03-13 07:38 - 2020-03-13 07:38 - 001751040 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001743888 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001729024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001697792 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001688064 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001684992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001665416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001664896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001657120 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001647072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001609216 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001581056 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001555904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001540096 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001513040 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001490640 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001484600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001482040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 001481216 _____ (Microsoft Corporation) C:\Windows\system32\rdpsharercom.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001480192 _____ (Microsoft Corporation) C:\Windows\system32\usocoreworker.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001458688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001428992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 001417976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001412096 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001396152 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001394168 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001366128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-03-13 07:38 - 2020-03-13 07:38 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001319936 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001284096 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001283600 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2020-03-13 07:38 - 2020-03-13 07:38 - 001282944 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001273856 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001264128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001260544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpsharercom.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001260480 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001218632 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001214976 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001190912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001182448 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001153024 _____ (Microsoft Corporation) C:\Windows\system32\windowsperformancerecordercontrol.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001149712 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001108040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001098720 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001092096 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001088000 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001083904 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001071184 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 001057792 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001054376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001031680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001027000 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001012792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001007672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 001000960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Mirage.Internal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000988160 _____ (Microsoft Corporation) C:\Windows\system32\refsutil.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000983896 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000974848 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000945384 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000935040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000929144 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000923136 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000921088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000916480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000914944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000908504 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000898048 _____ (Microsoft Corporation) C:\Windows\system32\MdmDiagnostics.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000892696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000883712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000878080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Service.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000877232 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000874296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsperformancerecordercontrol.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000851968 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000845312 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000843776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000838144 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Language.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000836608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000835584 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000833616 _____ (Microsoft Corporation) C:\Windows\system32\pkeyhelper.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000802304 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000796904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000783480 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000782848 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000776488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000769552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000765440 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000757632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000748032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000741392 _____ (Microsoft Corporation) C:\Windows\system32\LicensingWinRT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000734720 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000710144 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000705536 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Mirage.Internal.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000680448 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000680184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000678912 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000670720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000669496 _____ (Microsoft Corporation) C:\Windows\system32\computecore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000668672 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000668296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000661816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000649728 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000646656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000642216 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000638464 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000637240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000636848 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000627216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicensingWinRT.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000613888 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000605896 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000599552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000578560 _____ (Microsoft Corporation) C:\Windows\system32\SppExtComObj.Exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000551824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000550400 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-03-13 07:38 - 2020-03-13 07:38 - 000535552 _____ (Microsoft Corporation) C:\Windows\system32\usosvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000532480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000531768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000526848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000525312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000522384 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000518656 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000510768 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000500224 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000478792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000477496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000460800 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000459688 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000457216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cldflt.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000457016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000455168 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000448000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsEnvironment.Desktop.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000444416 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacDecoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000443904 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000441144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000435200 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountExtension.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000429880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-03-13 07:38 - 2020-03-13 07:38 - 000403456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000401408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000382976 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacDecoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000379904 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000368128 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\dusmsvc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000355840 _____ (Microsoft Corporation) C:\Windows\system32\XpsDocumentTargetPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000355000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000353960 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000337920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Acx01000.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000336384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000330240 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000329216 _____ (Microsoft Corporation) C:\Windows\system32\DiagnosticLogCSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000320312 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000308736 _____ (Microsoft Corporation) C:\Windows\system32\msIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000294400 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDirectoryClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\MSFlacEncoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000282112 _____ (Microsoft Corporation) C:\Windows\system32\ngcpopkeysrv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000277504 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000273408 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountCloudAP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000268288 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000265216 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000263168 _____ (Microsoft Corporation) C:\Windows\system32\wpnservice.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000262656 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000260920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000259584 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000258048 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsDocumentTargetPrint.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000250896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winnat.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000248064 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000240640 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFlacEncoder.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000239104 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000234984 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000232960 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000231936 _____ (Microsoft Corporation) C:\Windows\system32\InstallServiceTasks.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000228864 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\IndexedDbLegacy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000226816 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000224056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000222520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000221200 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000213984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeManagerObj.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000210744 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000208696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000206336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000201744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000199992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000199480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000193592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngOnline.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000183608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000182272 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000181248 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000181248 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000180232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallServiceTasks.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\LanguageComponentsInstaller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000179200 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000177152 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IndexedDbLegacy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000174392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditionUpgradeHelper.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000165504 _____ (Microsoft Corporation) C:\Windows\system32\dmcmnutils.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000164776 _____ (Microsoft Corporation) C:\Windows\system32\omadmapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000155136 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000151568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000147456 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000146712 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUpdateAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\GraphicsCapture.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000141840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\provpackageapidll.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000139776 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000138752 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUser.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000137216 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000136328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\omadmapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000135168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000133944 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000133256 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000131896 _____ (Microsoft Corporation) C:\Windows\system32\DTUHandler.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000130112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcmnutils.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000128312 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000127064 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000120560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000120048 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000118784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Taskbar.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000108032 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000107832 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000107520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GraphicsCapture.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000105832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000105472 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000102760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000098104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000097080 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000093184 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseDesktopAppMgmtCSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089616 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\enterpriseresourcemanager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\CustomInstallExec.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\autopilot.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000071680 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000068408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceReactivation.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000067112 _____ (Microsoft Corporation) C:\Windows\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000066336 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enterpriseresourcemanager.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000065536 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iemigplugin.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000063288 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthHost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000061952 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000056632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\MSAProfileNotificationHandler.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000052736 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\dusmapi.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000048256 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000045568 _____ (Microsoft Corporation) C:\Windows\system32\cellulardatacapabilityhandler.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000043008 _____ (Microsoft Corporation) C:\Windows\system32\WiredNetworkCSP.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000042336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000042296 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afunix.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000037888 _____ (Microsoft Corporation) C:\Windows\system32\dusmtask.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthMini.SYS
2020-03-13 07:38 - 2020-03-13 07:38 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000032056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000031232 _____ (Microsoft Corporation) C:\Windows\system32\FaxPrinterInstaller.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\KNetPwrDepBroker.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000030008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000029712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Drivers\afunix.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000028936 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\autopilotdiag.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\wci.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000023040 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000019984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msauserext.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000016912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys
2020-03-13 07:38 - 2020-03-13 07:38 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\pacjsworker.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000010752 _____ (Microsoft Corporation) C:\Windows\system32\DMAlertListener.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2020-03-13 07:38 - 2020-03-13 07:38 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DMAlertListener.ProxyStub.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000003584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCertResources.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000003584 _____ (Microsoft Corporation) C:\Windows\system32\TpmCertResources.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\tier2punctuations.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000002560 _____ (Microsoft Corporation) C:\Windows\system32\TelephonyInteractiveUserRes.dll
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2020-03-13 07:38 - 2020-03-13 07:38 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2020-03-13 07:32 - 2020-02-11 01:48 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-03-13 07:32 - 2020-02-11 01:37 - 000492544 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-03-12 19:02 - 2020-03-12 19:02 - 000000000 ____D C:\Users\Todos os Usuários\Microsoft Toolkit
2020-03-12 19:02 - 2020-03-12 19:02 - 000000000 ____D C:\ProgramData\Microsoft Toolkit
2020-03-12 18:56 - 2020-05-28 18:30 - 000000000 ____D C:\Users\Johan\AppData\Roaming\VPN4Test
2020-03-12 18:55 - 2020-03-12 18:56 - 000000000 ____D C:\Program Files\TAP-Windows
2020-03-12 18:55 - 2020-03-12 18:55 - 000002301 _____ C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VPN4Test.lnk
2020-03-12 18:55 - 2020-03-12 18:55 - 000000000 ____D C:\Users\Johan\AppData\Local\vpn4test-updater
2020-03-09 23:30 - 2020-03-10 22:44 - 000008002 _____ C:\Users\Todos os Usuários\DisplaySessionContainer27.log_backup1
2020-03-09 23:30 - 2020-03-10 22:44 - 000008002 _____ C:\ProgramData\DisplaySessionContainer27.log_backup1
2020-03-08 22:35 - 2020-03-09 23:30 - 000008075 _____ C:\Users\Todos os Usuários\DisplaySessionContainer26.log_backup1
2020-03-08 22:35 - 2020-03-09 23:30 - 000008075 _____ C:\ProgramData\DisplaySessionContainer26.log_backup1
2020-03-08 16:06 - 2020-03-08 22:35 - 000006619 _____ C:\Users\Todos os Usuários\DisplaySessionContainer25.log_backup1
2020-03-08 16:06 - 2020-03-08 22:35 - 000006619 _____ C:\ProgramData\DisplaySessionContainer25.log_backup1
2020-03-07 22:27 - 2020-03-08 22:35 - 000008074 _____ C:\Users\Todos os Usuários\DisplaySessionContainer24.log_backup1
2020-03-07 22:27 - 2020-03-08 22:35 - 000008074 _____ C:\ProgramData\DisplaySessionContainer24.log_backup1
2020-03-06 22:53 - 2020-03-07 22:27 - 000008076 _____ C:\Users\Todos os Usuários\DisplaySessionContainer23.log_backup1
2020-03-06 22:53 - 2020-03-07 22:27 - 000008076 _____ C:\ProgramData\DisplaySessionContainer23.log_backup1
2020-03-05 21:17 - 2020-03-06 22:52 - 000008398 _____ C:\Users\Todos os Usuários\DisplaySessionContainer22.log_backup1
2020-03-05 21:17 - 2020-03-06 22:52 - 000008398 _____ C:\ProgramData\DisplaySessionContainer22.log_backup1
2020-03-04 22:51 - 2020-03-05 21:17 - 000008078 _____ C:\Users\Todos os Usuários\DisplaySessionContainer21.log_backup1
2020-03-04 22:51 - 2020-03-05 21:17 - 000008078 _____ C:\ProgramData\DisplaySessionContainer21.log_backup1
2020-03-03 21:54 - 2020-03-04 22:51 - 000008070 _____ C:\Users\Todos os Usuários\DisplaySessionContainer20.log_backup1
2020-03-03 21:54 - 2020-03-04 22:51 - 000008070 _____ C:\ProgramData\DisplaySessionContainer20.log_backup1
2020-03-02 23:08 - 2020-03-03 21:54 - 000008078 _____ C:\Users\Todos os Usuários\DisplaySessionContainer19.log_backup1
2020-03-02 23:08 - 2020-03-03 21:54 - 000008078 _____ C:\ProgramData\DisplaySessionContainer19.log_backup1
2020-03-01 22:20 - 2020-03-02 23:07 - 000007677 _____ C:\Users\Todos os Usuários\DisplaySessionContainer18.log_backup1
2020-03-01 22:20 - 2020-03-02 23:07 - 000007677 _____ C:\ProgramData\DisplaySessionContainer18.log_backup1
2020-03-01 20:22 - 2010-05-26 11:41 - 001907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2020-03-01 20:22 - 2010-05-26 11:41 - 000511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2020-03-01 20:20 - 2020-03-01 20:22 - 000000000 ____D C:\Users\Todos os Usuários\Epic
2020-03-01 20:20 - 2020-03-01 20:22 - 000000000 ____D C:\Users\Johan\AppData\Local\UnrealEngine
2020-03-01 20:20 - 2020-03-01 20:22 - 000000000 ____D C:\ProgramData\Epic
2020-03-01 20:20 - 2020-03-01 20:20 - 000000811 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2020-03-01 20:20 - 2020-03-01 20:20 - 000000000 ____D C:\Users\Johan\AppData\Local\UnrealEngineLauncher
2020-03-01 20:20 - 2020-03-01 20:20 - 000000000 ____D C:\Users\Johan\AppData\Local\EpicGamesLauncher
2020-03-01 20:20 - 2010-05-26 11:41 - 001868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2020-03-01 20:20 - 2010-05-26 11:41 - 000470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll

==================== Três meses (modificados) ==================

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2020-05-29 10:35 - 2019-03-19 01:37 - 001048576 _____ C:\Windows\system32\config\BBI
2020-05-29 10:34 - 2019-12-26 12:48 - 000006614 _____ C:\Users\Todos os Usuários\DisplaySessionContainer1.log_backup1
2020-05-29 10:34 - 2019-12-26 12:48 - 000006614 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2020-05-29 10:31 - 2019-12-30 12:44 - 120636720 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-05-29 10:23 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2020-05-29 10:23 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy
2020-05-29 10:15 - 2019-12-27 16:33 - 000000000 ____D C:\Users\suporte
2020-05-29 10:07 - 2019-03-19 01:52 - 000000000 ____D C:\Users\Todos os Usuários\regid.1991-06.com.microsoft
2020-05-29 10:07 - 2019-03-19 01:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-05-29 10:06 - 2019-12-26 11:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-05-29 09:57 - 2019-03-19 01:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-05-29 09:18 - 2019-12-26 12:15 - 000020584 _____ C:\Users\Todos os Usuários\NVDisplayContainerWatchdog.log_backup1
2020-05-29 09:18 - 2019-12-26 12:15 - 000020584 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2020-05-29 09:18 - 2019-12-26 12:15 - 000007417 _____ C:\Users\Todos os Usuários\NVDisplay.ContainerLocalSystem.log_backup1
2020-05-29 09:18 - 2019-12-26 12:15 - 000007417 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2020-05-29 08:57 - 2019-12-26 12:10 - 000000000 ____D C:\Users\Johan\AppData\Local\VirtualStore
2020-05-29 08:39 - 2019-12-26 11:51 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-05-29 08:17 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\system32\NDF
2020-05-29 07:26 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\LiveKernelReports
2020-05-27 17:32 - 2019-03-19 01:50 - 000000000 ____D C:\Windows\INF
2020-05-27 17:23 - 2019-12-26 12:26 - 000000000 ____D C:\Users\Johan\AppData\Local\ElevatedDiagnostics
2020-05-27 16:30 - 2019-12-26 12:14 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-05-27 07:24 - 2019-12-30 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Money Robot
2020-05-27 07:24 - 2019-12-30 20:11 - 000000000 ____D C:\Program Files (x86)\Money Robot
2020-05-24 22:49 - 2019-12-26 12:15 - 000006630 _____ C:\Users\Todos os Usuários\DisplaySessionContainer2.log_backup1
2020-05-24 22:49 - 2019-12-26 12:15 - 000006630 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2020-05-22 16:28 - 2020-01-23 13:38 - 000000000 ____D C:\Users\Todos os Usuários\CanonIJPLM
2020-05-22 16:28 - 2020-01-23 13:38 - 000000000 ____D C:\ProgramData\CanonIJPLM
2020-05-19 15:19 - 2019-12-27 16:33 - 000000000 ____D C:\Users\suporte\AppData\Roaming\Adobe
2020-05-19 14:44 - 2019-12-27 16:33 - 000000000 ____D C:\Users\suporte\AppData\Local\Packages
2020-05-19 08:01 - 2020-01-17 16:02 - 000003522 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2020-05-15 20:42 - 2020-02-14 21:58 - 000002962 _____ C:\Windows\system32\Tasks\BlueStacksHelper
2020-05-15 20:42 - 2020-01-07 11:58 - 000002814 _____ C:\Windows\system32\Tasks\[EMAIL]AdobeAAMUpdater-1.0-MicrosoftAccount-johan88232671@hotmail.com[/EMAIL]
2020-05-15 20:42 - 2019-12-27 16:35 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3846544088-2690467880-392933104-1002
2020-05-15 20:42 - 2019-12-26 12:14 - 000003518 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-05-15 20:42 - 2019-12-26 12:14 - 000003294 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-05-15 20:42 - 2019-12-26 12:13 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3846544088-2690467880-392933104-1001
2020-05-14 12:59 - 2019-12-26 12:10 - 000000000 ____D C:\Users\Johan\AppData\Local\Packages
2020-05-14 10:37 - 2020-01-07 11:39 - 000000000 ____D C:\Users\Johan\AppData\Roaming\Azureus
2020-05-13 15:53 - 2019-12-26 12:46 - 000005726 _____ C:\Users\Todos os Usuários\DisplaySessionContainer3.log_backup1
2020-05-13 15:53 - 2019-12-26 12:46 - 000005726 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2020-05-11 08:09 - 2019-12-27 15:27 - 000000000 ____D C:\Users\Johan\AppData\Local\ESET
2020-05-10 18:56 - 2019-03-19 01:52 - 000000000 ____D C:\Windows\AppReadiness
2020-05-10 06:53 - 2019-12-26 12:13 - 000000000 __RDL C:\Users\Johan\OneDrive
2020-05-10 06:53 - 2019-12-26 12:07 - 000002369 _____ C:\Users\Johan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-08 21:07 - 2019-12-27 16:35 - 000000000 ___RD C:\Users\suporte\OneDrive
2020-05-08 21:07 - 2019-12-27 16:33 - 000002375 _____ C:\Users\suporte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-05-08 21:06 - 2019-12-27 16:33 - 000000000 ___RD C:\Users\suporte\3D Objects
2020-05-08 21:06 - 2019-12-26 12:10 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-05-08 10:17 - 2019-12-26 12:14 - 000000000 ____D C:\Users\Johan\AppData\Local\D3DSCache
2020-05-08 07:00 - 2020-01-17 16:13 - 000000000 ___RD C:\Users\Johan\Creative Cloud Files
2020-05-08 06:59 - 2020-01-17 14:04 - 000000000 ____D C:\Program Files\Adobe
2020-05-08 06:56 - 2020-01-17 16:00 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-05-08 06:56 - 2019-12-27 14:54 - 000000000 ____D C:\Program Files\Common Files\Adobe
2020-05-08 06:56 - 2019-12-26 14:59 - 000000000 ____D C:\Users\Todos os Usuários\Package Cache
2020-05-08 06:56 - 2019-12-26 14:59 - 000000000 ____D C:\ProgramData\Package Cache
2020-05-06 10:36 - 2019-12-26 12:07 - 000000000 ____D C:\Users\Johan
2020-05-03 00:46 - 2019-12-26 11:58 - 001652386 _____ C:\Windows\system32\PerfStringBackup.INI
2020-05-03 00:46 - 2019-03-19 09:46 - 000715788 _____ C:\Windows\system32\prfh0416.dat
2020-05-03 00:46 - 2019-03-19 09:46 - 000140846 _____ C:\Windows\system32\prfc0416.dat
2020-05-02 12:23 - 2020-01-17 14:05 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2020.lnk

==================== Arquivos na raiz de alguns diretórios ========

2020-03-26 14:59 - 2020-03-27 10:54 - 000000132 _____ () C:\Users\Johan\AppData\Roaming\Adobe PNG Format CS6 Prefs
2020-02-03 17:10 - 2020-04-16 11:25 - 000001456 _____ () C:\Users\Johan\AppData\Local\Adobe Save for Web 13.0 Prefs
2020-01-17 16:00 - 2020-04-09 19:13 - 000011275 _____ () C:\Users\Johan\AppData\Local\oobelibMkey.log
2020-03-23 23:01 - 2020-03-23 23:01 - 000000000 _____ () C:\Users\Johan\AppData\Local\{E8CB954F-72E1-4E2A-BBEE-F611F77C256C}
2020-05-29 07:26 - 2020-05-29 07:26 - 000000000 _____ () C:\Users\Johan\AppData\Local\{F1B57825-8AB3-43AE-98C6-D5401DA9995C}

==================== SigCheck ============================

(Não há correção automática para arquivos que não passaram na verificação.)

==================== Fim de FRST.txt ========================


"Addition"

Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 29-05-2020
Executado por Johan (29-05-2020 10:40:04)
Executando a partir de D:\Usuarios\Johan\Desktop\Downloads
Windows 10 Home Versão 1909 18363.720 (X64) (2019-12-26 14:54:04)
Modo da Inicialização: Safe Mode (with Networking)
==========================================================


==================== Contas: =============================

Administrador (S-1-5-21-3846544088-2690467880-392933104-500 - Administrator - Disabled)
Convidado (S-1-5-21-3846544088-2690467880-392933104-501 - Limited - Disabled)
DefaultAccount (S-1-5-21-3846544088-2690467880-392933104-503 - Limited - Disabled)
Johan (S-1-5-21-3846544088-2690467880-392933104-1001 - Administrator - Enabled) => C:\Users\Johan
suporte (S-1-5-21-3846544088-2690467880-392933104-1002 - Administrator - Enabled) => C:\Users\suporte
WDAGUtilityAccount (S-1-5-21-3846544088-2690467880-392933104-504 - Limited - Disabled)

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

Ad (HKLM\...\{58621D10-8DB7-42D2-9576-32104DBD17F0}) (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
Adobe After Effects 2019 (HKLM-x32\...\AEFT_16_1) (Version: 16.1 - Adobe Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.7.0.400 - Adobe Systems Incorporated)
Adobe Illustrator CC 2019 (HKLM-x32\...\ILST_23_0_1) (Version: 23.0.1 - Adobe Systems Incorporated)
Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0_2) (Version: 21.0.2 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2019 (HKLM-x32\...\PPRO_13_0_1) (Version: 13.0.1 - Adobe Systems Incorporated)
Aplicativo da área de trabalho Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 8.0.0.46 - Autodesk)
ApowerMirror V1.4.7.35 (HKLM-x32\...\{a9482532-9c34-478c-80c3-85bdccbb981f}_is1) (Version: 1.4.7.35 - APOWERSOFT LIMITED)
Autodesk A360 Collaboration for Revit 2017 (HKLM\...\{AA384BE4-1700-0010-0000-97E7D7D00B17}) (Version: 17.0.416.0 - Autodesk) Hidden
Autodesk A360 Collaboration for Revit 2017 (HKLM\...\Autodesk A360 Collaboration for Revit 2017) (Version: 17.0.416.0 - Autodesk)
Autodesk BIM 360 Revit 2017 Add-in 64 bit (HKLM\...\{A26EBAD5-9591-407F-9D6C-C7A4F3DFE506}) (Version: 4.37.6853 - Autodesk)
Autodesk License Service (x64) - 3.1 (HKLM\...\{EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D}) (Version: 3.1.26.0 - Autodesk)
Autodesk Material Library 2017 (HKLM-x32\...\{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32\...\{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Low Resolution Image Library 2017 (HKLM-x32\...\{360AC116-6CD4-4E7D-8174-28D47B05E898}) (Version: 15.11.3.0 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2017 (HKLM-x32\...\{CB6E007E-701D-42CD-AF0E-4BE9C36C7F7C}) (Version: 15.11.3.0 - Autodesk)
Autodesk Revit 2017 (HKLM\...\Autodesk Revit 2017) (Version: 17.0.416.0 - Autodesk)
Autodesk Revit 2017 (HKLM\...\Revit 2017) (Version: - )
Autodesk Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese) (HKLM\...\Autodesk Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese)) (Version: 17.0.416.0 - Autodesk)
Autodesk Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese) (HKLM\...\Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese)) (Version: - )
Autodesk Revit MEP Imperial Content v2.0 (HKLM\...\{F2538944-3E07-4E97-B41A-FC48AB53EE9D}) (Version: 2.0 - Autodesk)
Autodesk Revit MEP Metric Content v2.0 (HKLM\...\{DEF775C7-84BF-4730-976A-FE3747F1757C}) (Version: 2.0 - Autodesk)
Autodesk Workflows 2017 (HKLM\...\{23A13F78-5B67-441A-ABF9-48BE8B5455DB}) (Version: 15.11.13.0 - Autodesk, Inc.)
Backup and Sync from Google (HKLM\...\{FE296942-D2D3-4149-8895-60655FE4CFDE}) (Version: 3.49.9800.0000 - Google, Inc.)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
BlueStacks App Player (HKLM\...\BlueStacks) (Version: 4.150.11.1001 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Canon G3000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_G3000_series) (Version: 1.02 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: 1.5.4.4 - Canon Inc.)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.7.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.2.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
Dynamo 0.9.1 (HKLM\...\{85626FB3-CAF9-49C1-AA28-E3C75164BD6F}) (Version: 0.9.1.4062 - Autodesk)
Epic Games Launcher (HKLM-x32\...\{F851EFCF-A2E6-4ABA-8208-39DDD5B50B45}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESET Security (HKLM\...\{0C3F76CB-98AA-49B1-9B72-CD040E3E17E8}) (Version: 13.1.21.0 - ESET, spol. s r.o.)
FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production)
FileZilla Client 3.46.3 (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\FileZilla Client) (Version: 3.46.3 - Tim Kosse)
FormIt 360 Converter For Revit 2017 (HKLM\...\{637211B6-D2E9-474A-BF06-4F61F1254104}) (Version: 1.9.0.0 - Autodesk)
Gestor de Pedidos 5.2.0 (HKLM-x32\...\b9f7a051-d6a0-5360-b69d-ebb7242fa49c) (Version: 5.2.0 - iFood)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 83.0.4103.61 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.1.2.1 - IObit)
IronPython 2.7.3 (HKLM-x32\...\{1EBADAEA-1A0F-40E3-848C-0DD8C5E5A10D}) (Version: 2.7.31000.0 - IronPython Team)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Microsoft Office Language Pack 2013 - Portuguese/Português (Brasil) (HKLM\...\Office15.OMUI.pt-br) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\OneDriveSetup.exe) (Version: 20.052.0311.0011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.44.2 - Microsoft Corporation)
Money Robot Submitter version 7.34.5 (HKLM-x32\...\{D8331B58-377C-4350-B879-21133B050E19}_is1) (Version: 7.34.5 - Money Robot srl LTD)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
NVIDIA Driver de gráficos 432.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 432.00 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.8 - OBS Project)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - Português (Brasil) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PTB) (Version: 10.0.50903 - Microsoft Corporation)
Personal Accelerator for Revit (HKLM\...\{7C317DB0-F31F-4024-A289-92CF4B6FB256}) (Version: 16.0.1109.0 - Autodesk) Hidden
Personal Accelerator for Revit (HKLM\...\Personal Accelerator for Revit) (Version: 16.0.1109.0 - Autodesk)
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
Poedit (HKLM-x32\...\{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1) (Version: 2.2.4 - Vaclav Slavik)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7503 - Realtek Semiconductor Corp.)
Realtek SDIO Wireless LAN Driver (HKLM-x32\...\InstallShield_{C0F7E79F-05B9-4da6-9D1E-00EE1A63E881}) (Version: Drv_3.00.0016 - REALTEK Semiconductor Corp.)
Revisores de Texto do Microsoft Office 2013 – Português do Brasil (HKLM\...\{90150000-001F-0416-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Revit 2017 (HKLM\...\{7346B4A0-1700-0510-0000-705C0D862004}) (Version: 17.0.416.0 - Autodesk) Hidden
Revit Content Libraries 2017 - Português - Brasil (Brazilian Portuguese) (HKLM\...\{941030D0-1700-0410-0000-818BB38A95FC}) (Version: 17.0.416.0 - Autodesk) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0416-1000-0000000FF1CE}_Office15.OMUI.pt-br_{8ECA38FB-BA64-4DF3-A770-936F18495B2C}) (Version: - Microsoft)
SimCity v.10.3.4 (HKLM-x32\...\SimCity_is1) (Version: - )
SoundWire Server version 2.5 (HKLM-x32\...\{E15658BC-7742-4397-999F-98B1BD11B784}_is1) (Version: 2.5 - GeorgieLabs)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484097) 64-Bit Edition (HKLM\...\{90150000-012B-0416-1000-0000000FF1CE}_Office15.OMUI.pt-br_{1EB78C78-BFAF-4052-BD35-9A0F99B941CC}) (Version: - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 109.0 - Ubisoft)
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.censurado.png.coapp_is1) (Version: - censurado.png)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation)
VPN4Test 1.3.1 (HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\d73c5f2f-d492-5b11-9414-9aff3fe8a1ac) (Version: 1.3.1 - )
Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.7.7.0 - Azureus Software, Inc.)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
WO Mic Client (HKLM-x32\...\WOMic) (Version: - )
XAMPP (HKLM\...\xampp) (Version: 7.4.1-0 - Bitnami)

Packages:
=========
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc [2020-01-17] (Adobe Systems Incorporated)
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.9.0.1_neutral__6e5tt8cgb93ep [2020-03-09] (Canon Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-12-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-12-27] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.1224.0_x64__8wekyb3d8bbwe [2020-02-27] (Microsoft Studios) [MS Ad]
MSN Clima -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.956.0_x64__56jybvy8sckqj [2019-12-26] (NVIDIA Corp.)

==================== Exame Personalizado CLSID (Whitelisted): ==============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

CustomCLSID: HKU\S-1-5-21-3846544088-2690467880-392933104-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-CFEB59F65985} -> [Creative Cloud Files] => C:\Users\Johan\Creative Cloud Files [2020-01-17 16:13]
CustomCLSID: HKU\S-1-5-21-3846544088-2690467880-392933104-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-04-06] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Nenhum Arquivo
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Nenhum Arquivo
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Nenhum Arquivo
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Nenhum Arquivo
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-05-29] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Nenhum Arquivo
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Nenhum Arquivo
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-04-06] (Google LLC -> Google)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Nenhum Arquivo
ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_90685a092bcf58c7\nvshext.dll [2019-10-04] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-01-07] (Adobe Inc. -> )
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Nenhum Arquivo
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-05-29] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Nenhum Arquivo
ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Atalhos & WMI ========================

(As entradas podem ser listadas para serem restauradas ou removidas.)

ShortcutWithArgument: C:\Users\Johan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Módulos Carregados (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

(Se uma entrada for incluída na fixlist, somente o ADS será removido.)

AlternateDataStreams: C:\Users\Johan\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]

==================== Modo de Segurança (Whitelisted) ==================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMInstallerService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMSwissArmy => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMInstallerService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMSwissArmy => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2"

==================== Associação (Whitelisted) =================

==================== Internet Explorer confiável/restrito ==========

==================== Hosts Conteúdo: =========================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2019-03-19 01:49 - 2019-03-19 01:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Outras Áreas ===========================

(Atualmente não há nenhuma correção automática para esta seção.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64\compiler;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Common Files\Autodesk Shared\
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Johan\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\984342_1.jpg
DNS Servers: 192.168.15.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Firewall do Windows está habilitado.

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

(Se uma entrada for incluída na fixlist, será removida.)

HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "pac"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX"
HKLM\...\StartupApproved\Run32: => "CanonQuickMenu"
HKLM\...\StartupApproved\Run32: => "Autodesk Desktop App"
HKLM\...\StartupApproved\Run32: => "ifood.order.manager"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\StartupFolder: => "WO Mic Client.lnk"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_E1298BB278A3A30B6E29F17BFC75823D"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3846544088-2690467880-392933104-1001\...\StartupApproved\Run: => "ApowerMirror"

==================== Regras do Firewall (Whitelisted) ================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [{541286D8-27DA-4347-8F25-7031EC8F4705}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{796F2F1C-CCBC-4670-9686-B2B209B3EF8A}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{59F69EEE-6376-4361-9218-99FE4D408DD4}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{2DA6E077-5CB4-410D-86AB-C081E232D661}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{2491397F-B54F-4FAF-8987-44C707D3A45C}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [Arquivo não assinado]
FirewallRules: [UDP Query User{329802C7-C4F2-40BE-A0E5-0259531046D0}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [Arquivo não assinado]
FirewallRules: [{56111725-CF32-401D-AD09-D7E30B2B769C}] => (Allow) C:\Program Files\Vuze\Azureus.exe (Azureus Software, Inc. -> Azureus Software, Inc)
FirewallRules: [{962191B6-DC17-4460-9658-6F4A6EA8FC14}] => (Allow) C:\Program Files\Vuze\Azureus.exe (Azureus Software, Inc. -> Azureus Software, Inc)
FirewallRules: [{AD1D15E6-77E1-4A81-B1ED-9FF8B997070D}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{813255FF-E306-4EA3-BC6E-D7CBB7F2AC86}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{0DBDB795-C101-48DA-BA31-2ED0E501B6AD}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Arquivo não assinado]
FirewallRules: [UDP Query User{727B33E0-E40D-4F31-8906-D43765E6EBB4}D:\xampp\apache\bin\httpd.exe] => (Allow) D:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [Arquivo não assinado]
FirewallRules: [TCP Query User{BE72C8C6-8734-4708-94EF-B7D0AE6D4ADB}D:\xampp\mysql\bin\mysqld.exe] => (Allow) D:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [UDP Query User{A637B64B-CE21-4EB3-A519-8B6D59E6425D}D:\xampp\mysql\bin\mysqld.exe] => (Allow) D:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [{8BBD4195-5CBD-4CAF-B887-CE483EE81552}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
FirewallRules: [TCP Query User{492AAFFA-DE0E-49CE-9D08-C6AE548AE84E}D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [Arquivo não assinado]
FirewallRules: [UDP Query User{4A4DB8A1-33DB-4E89-8FCC-AC25C703F7A6}D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\epic games\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [Arquivo não assinado]
FirewallRules: [TCP Query User{6405DA4E-338C-4269-817A-0D44E172B99B}D:\games\simcity\simcity\sclauncher.exe] => (Allow) D:\games\simcity\simcity\sclauncher.exe () [Arquivo não assinado]
FirewallRules: [UDP Query User{0B24E348-D39F-4A69-936E-234E1CE806FC}D:\games\simcity\simcity\sclauncher.exe] => (Allow) D:\games\simcity\simcity\sclauncher.exe () [Arquivo não assinado]
FirewallRules: [{EC696452-B739-4B5F-9763-1595AD055BD3}] => (Allow) D:\Games\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [Arquivo não assinado]
FirewallRules: [{3F0F8508-5D48-4F37-B280-F033751B91EC}] => (Allow) D:\Games\SimCity\SimCity\SimCity.exe (Electronic Arts Inc.) [Arquivo não assinado]
FirewallRules: [TCP Query User{1ABD6DF8-D72B-454B-BC0F-3CAD9A49446A}C:\users\johan\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\johan\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{542F28B8-E627-48DD-B843-5E2880C5E0AF}C:\users\johan\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\johan\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{2FF253B9-C60F-428E-BD4B-DA9D1D84DAB7}D:\games\age of empires definitive edition\aoede_s.exe] => (Allow) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{14A02C66-352F-4BDF-B63E-3781159BEBDB}D:\games\age of empires definitive edition\aoede_s.exe] => (Allow) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [{A0EE1B6D-D609-4521-B45E-AB47FB9F067E}] => (Block) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [{4A317A8B-056C-486D-BD7A-BE557FE71953}] => (Block) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [TCP Query User{0478D0EF-4EFF-4A87-A9FA-751B77B0A825}D:\games\age of empires definitive edition\battleserver.exe] => (Allow) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{B7A91B3E-85D8-4996-B3AA-1E7CB704F44C}D:\games\age of empires definitive edition\battleserver.exe] => (Allow) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{B7A3E1E4-5ABB-4A2D-9611-B9B2E19BC5CE}] => (Block) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{3DD95CB8-3055-439D-A9CB-3F9BAC0FB068}] => (Block) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{502955FE-CFCE-407C-B8E9-25B4B99E346A}] => (Allow) D:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: ) [Arquivo não assinado]
FirewallRules: [{06F8A065-05B6-4591-884A-2C80C7C6704D}] => (Allow) D:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: ) [Arquivo não assinado]
FirewallRules: [{D2B8A49F-E7E4-4699-8BD2-0BD4217EBFF4}] => (Allow) D:\Steam\steamapps\common\Fly Punch Boom First Impact!\Fly Punch Boom First Impact!.exe () [Arquivo não assinado]
FirewallRules: [{51C99E9F-AA5E-46B2-A0DC-44E88B676074}] => (Allow) D:\Steam\steamapps\common\Fly Punch Boom First Impact!\Fly Punch Boom First Impact!.exe () [Arquivo não assinado]
FirewallRules: [TCP Query User{C58668F5-A457-4A54-ABA6-1EC544098F75}D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe] => (Allow) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [UDP Query User{2960F806-38A6-43F7-827D-1566B348638D}D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe] => (Allow) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [{B2985475-9D08-457F-8DFD-008C736FADA5}] => (Block) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [{AA4269ED-05EE-40E7-AD3B-899A88D41939}] => (Block) D:\usuarios\johan\documentos\vuze downloads\galgun.double.peace\binaries\win64\gg2game.exe (Epic Games, Inc.) [Arquivo não assinado]
FirewallRules: [{0E5736B9-91D9-4ACA-BC8E-949665E0B62C}] => (Allow) C:\Windows\system32\winrmsrv.exe => Nenhum Arquivo
FirewallRules: [{B0D73DEF-F323-4809-9AFB-61B01CBC7E69}] => (Allow) LPort=1688
FirewallRules: [{AEF260CF-E587-4F32-9902-902527776AB7}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{10572F2D-E66A-4D77-BE00-FEE58481B127}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{277754B3-3E05-4D7E-BB8C-E64FD5E5D69D}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{B9D98128-1712-4003-B286-13A87DB679D6}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Submitter\MoneyRobot.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{AD9B75F8-FB14-4C37-871D-3772B768ED5E}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{182507A2-0994-4862-A9C7-3732CAA637C4}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{9273B02B-2D02-4D8B-97DF-C7359D1EC30E}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{884447FC-D74B-457B-82E3-C4BC5E7C462A}] => (Allow) C:\Program Files (x86)\Money Robot\Money Robot Bot\MRb.exe (Softtech Vision Limited -> SoftTech)
FirewallRules: [{7D913787-3FF0-43F1-B4CA-586FAC90DCD5}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{CF0BBF7A-67DA-4855-8EDC-CC1C0C9DD890}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{E010B5C7-8813-4428-BBC9-C0F9C0783467}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{39425F89-E8BF-40C6-8576-B4D6FFF9540D}] => (Allow) C:\Program Files (x86)\Money Robot\Seo Backlink Monitor\SeoBacklinkMonitor.exe (Softtech Vision Limited -> )
FirewallRules: [{E9CABE0F-ED72-4DC4-B910-0507BEA8FD3D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{F4B7D2B6-90A2-42AA-90C4-EAAF70E90B88}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{5D600E67-D3DE-4076-932B-BABFB5AE7C08}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{DCBCE428-B715-477A-B8F3-C7C455EF50CF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{E319A477-AEA2-47B8-829F-DE4A43CBE1AD}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{874D75F6-A115-4AC0-9138-B52E9CDC3684}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (Apowersoft Ltd -> Apowersoft)
FirewallRules: [{C7AADBFC-0ECA-4188-8D2A-4A879360F45F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2AE97959-6929-4AFF-82E0-E2954AE8043A}] => (Allow) C:\Program Files (x86)\WOMic\womicclient.exe () [Arquivo não assinado]
FirewallRules: [{2DC56572-F1CD-4681-A7EB-666C3B7705B3}] => (Allow) C:\Program Files (x86)\WOMic\womicclient.exe () [Arquivo não assinado]
FirewallRules: [{8403DD59-1041-405D-AE01-400D7206E029}] => (Allow) C:\Program Files (x86)\WOMic\womicclient.exe () [Arquivo não assinado]

==================== Pontos de Restauração =========================

ATENÇÃO: A Restauração do Sistema está desabilitada (Total:111.22 GB) (Free:41.72 GB) (38%)

==================== Dispositivos Apresentando Falhas No Gerenciador ============

Name: Driver de Infraestrutura de Virtualização Microsoft Hyper-V
Description: Driver de Infraestrutura de Virtualização Microsoft Hyper-V
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: Vid
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: NVIDIA High Definition Audio
Description: NVIDIA High Definition Audio
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: NVIDIA
Service: NVHDA
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: WO Mic Device
Description: WO Mic Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Wolicheng Tech Ltd.
Service: wovad_micarray
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Erros no Log de eventos: ========================

Erros em Aplicativos:
==================
Error: (05/29/2020 10:06:30 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: FreemakeUtilsService.exe, versão: 1.0.0.0, carimbo de data/hora: 0x5e4a1dfb
Nome do módulo com falha: KERNELBASE.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x4061c730
Código de exceção: 0xe0434352
Deslocamento da falha: 0x00114192
ID do processo com falha: 0xc80
Hora de início do aplicativo com falha: 0x01d635b9f6768c25
Caminho do aplicativo com falha: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Caminho do módulo com falha: C:\Windows\System32\KERNELBASE.dll
ID do Relatório: 5af1e863-2457-40f6-beca-2b3ebd225426
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 10:06:29 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicativo: FreemakeUtilsService.exe
Versão do Framework: v4.0.30319
Descrição: O processo foi terminado devido a uma exceção sem tratamento.
Informações da Exceção: System.IO.FileNotFoundException
em FreemakeUtilsService.Program.Main(System.String[])

Error: (05/29/2020 10:06:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: svchost.exe_Dnscache, versão: 10.0.18362.1, carimbo de data/hora: 0x32d6c210
Nome do módulo com falha: ntdll.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x64d10ee0
Código de exceção: 0xc0000409
Deslocamento da falha: 0x00000000000a4278
ID do processo com falha: 0x700
Hora de início do aplicativo com falha: 0x01d635b9f5525ac2
Caminho do aplicativo com falha: C:\Windows\system32\svchost.exe
Caminho do módulo com falha: C:\Windows\SYSTEM32\ntdll.dll
ID do Relatório: 8434fb3d-6a39-4636-b031-8a9f657b3315
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 09:45:26 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa SystemSettings.exe versão 10.0.18362.628 parou de interagir com o Windows e foi fechado. Para ver se mais informações sobre o problema estão disponíveis, verifique o histórico de problemas no painel de controle Segurança e Manutenção.

ID do Processo: 51c

Hora de Início: 01d635b3c8d03e41

Hora de Término: 4294967295

Caminho do Aplicativo: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

ID do Relatório: 43b179bb-64ce-4d0f-871d-9d1b9cccd886

Nome completo do pacote com falha: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

ID do aplicativo relativo ao pacote com falha: microsoft.windows.immersivecontrolpanel

Tipo com falha: Cross-process

Error: (05/29/2020 09:18:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: FreemakeUtilsService.exe, versão: 1.0.0.0, carimbo de data/hora: 0x5e4a1dfb
Nome do módulo com falha: KERNELBASE.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x4061c730
Código de exceção: 0xe0434352
Deslocamento da falha: 0x00114192
ID do processo com falha: 0xc78
Hora de início do aplicativo com falha: 0x01d635b334c2a782
Caminho do aplicativo com falha: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Caminho do módulo com falha: C:\Windows\System32\KERNELBASE.dll
ID do Relatório: 2fb2c2da-1356-4b04-bdbb-9ff050c49615
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 09:18:07 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplicativo: FreemakeUtilsService.exe
Versão do Framework: v4.0.30319
Descrição: O processo foi terminado devido a uma exceção sem tratamento.
Informações da Exceção: System.IO.FileNotFoundException
em FreemakeUtilsService.Program.Main(System.String[])

Error: (05/29/2020 09:18:04 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: svchost.exe_Dnscache, versão: 10.0.18362.1, carimbo de data/hora: 0x32d6c210
Nome do módulo com falha: ntdll.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x64d10ee0
Código de exceção: 0xc0000409
Deslocamento da falha: 0x00000000000a4278
ID do processo com falha: 0x704
Hora de início do aplicativo com falha: 0x01d635b333892a52
Caminho do aplicativo com falha: C:\Windows\system32\svchost.exe
Caminho do módulo com falha: C:\Windows\SYSTEM32\ntdll.dll
ID do Relatório: 00e2f187-bc68-4164-aacf-aa1c395accbd
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (05/29/2020 08:54:56 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: FreemakeUtilsService.exe, versão: 1.0.0.0, carimbo de data/hora: 0x5e4a1dfb
Nome do módulo com falha: KERNELBASE.dll, versão: 10.0.18362.719, carimbo de data/hora: 0x4061c730
Código de exceção: 0xe0434352
Deslocamento da falha: 0x00114192
ID do processo com falha: 0xcc8
Hora de início do aplicativo com falha: 0x01d635aff766e027
Caminho do aplicativo com falha: C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
Caminho do módulo com falha: C:\Windows\System32\KERNELBASE.dll
ID do Relatório: 03560e02-304b-4279-86e2-4c189385e010
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:


Erros de Sistema:
=============
Error: (05/29/2020 10:40:38 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:40:04 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:39:40 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço WSearch com argumentos "Não Disponível" para executar o servidor:
{9E175B6D-F52A-11D8-B9A5-505054503030}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço VSS com argumentos "Não Disponível" para executar o servidor:
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço VSS com argumentos "Não Disponível" para executar o servidor:
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}

Error: (05/29/2020 10:39:22 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço VSS com argumentos "Não Disponível" para executar o servidor:
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}


CodeIntegrity:
===================================

Date: 2020-05-29 10:32:22.152
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:32:22.150
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:14:52.639
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:14:52.636
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:12:31.050
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:12:31.048
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-05-29 10:10:47.034
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-05-29 10:10:47.013
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Informações da Memória ===========================

BIOS: American Megatrends Inc. 0802 10/08/2012
placa-mãe: ASUSTeK COMPUTER INC. P8H61-M LX3 PLUS R2.0
Processador: Intel(R) Core(TM) i5-2310 CPU @ 2.90GHz
Percentagem de memória em uso: 29%
RAM física total: 8143.79 MB
RAM física disponível: 5742.6 MB
Virtual Total: 16335.79 MB
Virtual disponível: 14225.19 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.22 GB) (Free:41.72 GB) NTFS
Drive d: (Dados) (Fixed) (Total:447.13 GB) (Free:81.38 GB) NTFS
Drive e: (WIN10_PRO_X86X64_en-US_Feb2016) (Removable) (Total:15 GB) (Free:11.4 GB) NTFS

\\?\Volume{897d68e1-0000-0000-0000-100000000000}\ (Reservado pelo Sistema) (Fixed) (Total:0.57 GB) (Free:0.11 GB) NTFS

==================== MBR & Tabela de Partições ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 897D68E1)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 447.1 GB) (Disk ID: 1558E0F3)
Partition 1: (Not Active) - (Size=447.1 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 15 GB) (Disk ID: 00107570)
Partition 1: (Active) - (Size=15 GB) - (Type=07 NTFS)

==================== Fim de Addition.txt =======================


Boa tarde.

Tem uma linha estranha no RUN que são aplicações que carregam com o Windows. Sabe o que é?

HKLM\...\StartupApproved\Run: => "pac"

Seu Sistema está bem infectado então não vai conseguir baixar nada nesse computador.

Conforme informado acima, vamos passar logo para uma solução mais agressiva. Que é um Antivírus on-line rodando direto de um CD ou pendrive.

Dessa forma, se tiver um vírus que suba com o sistema e se aloque na memória vai ter mais trabalho para removê-lo.

Vai rodar um antivírus on-line da Kaspersky sem que o Windows seja carregado, roda em um ambiente Linux.

Pode baixar aqui: Kaspersky Rescue Disk e AQUI tem as ferramenta e tutorial como colocar em um pendrive.

Neste link a seguir, tem um pequeno tutorial de como usar o Kaspersky: https://www.hardware.com.br/comunidade/v-t/1510949/#post8249043

A varredura vai ser demorada, ao termino poste aqui o resultado.
Mas aquele que me negar diante dos homens, eu também o negarei diante do meu Pai que está nos céus.

Mateus 10:33
joram
joram Highlander Registrado
5.4K Mensagens 2.5K Curtidas
#4 Por joram
29/05/2020 - 20:44
/_ Boa Noite! johan1206 _\

> HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrição <==== ATENÇÃO
>
> Houve restrição,pelo Eset Node 32, ao Windows Defender que é nativo ao sistema.
> Recomendo sua desinstalação e ativação do Windows Defender.
CHR HKU\S-1-5-21-3846544088-2690467880-392933104-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

> Conheces esta extensão ao Chrome?
Erros de Sistema:
=============
Error: (05/29/2020 10:40:38 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-CI0EAOA)
Description: O DCOM obteve o erro "1084" ao tentar iniciar o serviço ShellHWDetection com argumentos "Não Disponível" para executar o servidor:
{DD522ACC-F821-461A-A407-50B198B896DC}
----------
----------

> Erros DCOM foram detectados no log de Eventos.
> Ps: O Komm pode lhe ajudar neste mister.
> E...se possível,habilite a Restauração do Sistema!

> Copie estas informações que estão no Spoiler,para o Bloco de Notas.
> Salve-as com o nome fixlist. << Texto ou Unicode,caso solicite!
> Salve-as ao desktop! ( Área de trabalho ... )
> Mova a ferramenta FRST ao desktop! [Executando a partir de D:\Usuarios\Johan\Desktop\Downloads]

"fixlist"
start::
CloseProcesses:
GroupPolicy: Restrição ? <==== ATENÇÃO
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restrição <==== ATENÇÃO
CHR HKLM\SOFTWARE\Policies\Google: Restrição <==== ATENÇÃO
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restrição <==== ATENÇÃO
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll => Nenhum Arquivo
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll => Nenhum Arquivo
CHR StartupUrls: Default -> "hxxps://www.google.com.br/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8"
S2 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
U1 aswbdisk; não ImagePath
2020-05-27 11:12 - 2020-05-29 09:54 - 000000000 ____D C:\Program Files\Bonjour
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Nenhum Arquivo
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Nenhum Arquivo
[IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Nenhum Arquivo
[BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Nenhum Arquivo
[IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll -> Nenhum Arquivo
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Nenhum Arquivo
ShortcutWithArgument: C:\Users\Johan\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default
AlternateDataStreams: C:\Users\Johan\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]
FirewallRules: [TCP Query User{2FF253B9-C60F-428E-BD4B-DA9D1D84DAB7}D:\games\age of empires definitive edition\aoede_s.exe] => (Allow) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{14A02C66-352F-4BDF-B63E-3781159BEBDB}D:\games\age of empires definitive edition\aoede_s.exe] => (Allow) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [{A0EE1B6D-D609-4521-B45E-AB47FB9F067E}] => (Block) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [{4A317A8B-056C-486D-BD7A-BE557FE71953}] => (Block) D:\games\age of empires definitive edition\aoede_s.exe => Nenhum Arquivo
FirewallRules: [TCP Query User{0478D0EF-4EFF-4A87-A9FA-751B77B0A825}D:\games\age of empires definitive edition\battleserver.exe] => (Allow) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{B7A91B3E-85D8-4996-B3AA-1E7CB704F44C}D:\games\age of empires definitive edition\battleserver.exe] => (Allow) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{B7A3E1E4-5ABB-4A2D-9611-B9B2E19BC5CE}] => (Block) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{3DD95CB8-3055-439D-A9CB-3F9BAC0FB068}] => (Block) D:\games\age of empires definitive edition\battleserver.exe => Nenhum Arquivo
FirewallRules: [{0E5736B9-91D9-4ACA-BC8E-949665E0B62C}] => (Allow) C:\Windows\system32\winrmsrv.exe => Nenhum Arquivo
FirewallRules: [{E9CABE0F-ED72-4DC4-B910-0507BEA8FD3D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{F4B7D2B6-90A2-42AA-90C4-EAAF70E90B88}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{5D600E67-D3DE-4076-932B-BABFB5AE7C08}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => Nenhum Arquivo
FirewallRules: [{DCBCE428-B715-477A-B8F3-C7C455EF50CF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe => Nenhum Arquivo
CreateRestorePoint:
RemoveProxy:
EmptyTemp:
Reboot:
Hosts:
end::


Imagem

> Execute FRST/FRST64 >> Clique "Corrigir" << Aguarde!
> Poste o relatório "Resultado da Correção pela Farbar Recovery Scan Tool". (Fixlog.txt)
> Este e outros relatórios,podem ser encontrados na pasta: Disco Local (C) > FRST > Logs

< Peço aos visitantes que não utilizem este script em outros computadores,sob risco de danos aos mesmos! >

[A+]
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal