Log file. Thanks!

Nayara Siler

Estimable
Jan 31, 2015
1
0
4,510
ComboFix 15-01-29.01 - nayara 01-02-2015 0:46.1.4 - x64 NETWORK
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.351.2070.18.3950.2835 [GMT 0:00]
Executando de: c:\users\nayara\Downloads\ComboFix.exe
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Criado um novo ponto de restauração
.
.
((((((((((((((((((((((((((((((((((((( Outras Exclusões )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\install.exe
c:\users\nayara\AppData\Roaming\337
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\ebase.dll
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\image\default\app_close.png
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\image\default\app_max.png
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\image\default\app_min.png
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\image\default\app_restore.png
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\image\default\wallpaper_resource.xml
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\image\default\window.png
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\language\en_us\wallpaper_lang.ini
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\language\es_es\wallpaper_lang.ini
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\language\pt_br\wallpaper_lang.ini
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\language\tr_tr\wallpaper_lang.ini
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\language\zh_tw\wallpaper_lang.ini
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\layout\default\dp_appwnd.xml
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\layout\default\msgbox.xml
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\libpng.dll
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\main
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\msvcp100.dll
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\msvcr100.dll
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\ouilibnl.dll
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\plusapp.exe
c:\users\nayara\AppData\Roaming\337\337 Wallpaper\style\wallpaper_style.xml
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\ffxtlbr@funmoods.com.json
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\.buildpath
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\bootstrap.js
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\harness-options.json
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\icon.png
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\icon64.png
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\install.rdf
c:\users\nayara\AppData\Roaming\Mozilla\Firefox\Profiles\Solo_330734\extensions\staged\jid1-U7omKQ6kQfxMaQ@jetpack\resources\smootherweb\lib\main.js
c:\windows\msdownld.tmp
.
.
(((((((((((((((( Arquivos/Ficheiros criados de 2015-01-01 to 2015-02-01 ))))))))))))))))))))))))))))
.
.
2015-02-01 00:59 . 2015-02-01 00:59 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-01-31 23:57 . 2015-01-31 23:58 129752 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-01-31 23:57 . 2014-11-21 06:14 63704 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-01-31 23:57 . 2014-11-21 06:14 93400 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-01-31 23:57 . 2014-11-21 06:14 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-01-31 23:57 . 2015-01-31 23:57 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2015-01-31 23:57 . 2015-01-31 23:57 -------- d-----w- c:\programdata\Malwarebytes
2015-01-31 13:19 . 2015-02-01 00:51 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5099233C-C2BD-495E-8CC4-B6A73C6653E9}\offreg.dll
2015-01-31 12:44 . 2014-12-15 04:13 11870360 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5099233C-C2BD-495E-8CC4-B6A73C6653E9}\mpengine.dll
2015-01-31 01:13 . 2015-01-31 20:33 -------- d-----w- C:\SUPERDelete
2015-01-31 00:35 . 2015-01-31 00:35 -------- d-----w- c:\users\nayara\AppData\Roaming\AVAST Software
2015-01-31 00:33 . 2015-01-31 00:32 436624 ----a-w- c:\windows\system32\drivers\aswSP.sys
2015-01-31 00:33 . 2015-01-31 00:32 267632 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2015-01-31 00:33 . 2015-01-31 00:32 116728 ----a-w- c:\windows\system32\drivers\aswStm.sys
2015-01-31 00:33 . 2015-01-31 00:32 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2015-01-31 00:33 . 2015-01-31 00:34 87912 ----a-w- c:\windows\system32\drivers\aswmonflt.sys
2015-01-31 00:33 . 2015-01-31 00:32 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys
2015-01-31 00:33 . 2015-01-31 00:34 1050432 ----a-w- c:\windows\system32\drivers\aswsnx.sys
2015-01-31 00:33 . 2015-01-31 00:32 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2015-01-31 00:32 . 2015-01-31 00:32 364512 ----a-w- c:\windows\system32\aswBoot.exe
2015-01-31 00:32 . 2015-01-31 00:32 43152 ----a-w- c:\windows\avastSS.scr
2015-01-31 00:31 . 2015-01-31 00:31 -------- d-----w- c:\users\nayara\AppData\Roaming\SUPERAntiSpyware.com
2015-01-31 00:30 . 2015-01-31 23:48 -------- d-----w- c:\program files\SUPERAntiSpyware
2015-01-31 00:30 . 2015-01-31 00:30 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2015-01-31 00:23 . 2015-01-31 00:23 -------- d-----w- c:\program files\AVAST Software
2015-01-31 00:22 . 2015-01-31 00:23 -------- d-----w- c:\programdata\AVAST Software
2015-01-31 00:08 . 2015-01-31 00:11 -------- d-----w- c:\users\nayara\AppData\Roaming\Booster-Web
2015-01-30 22:57 . 2015-01-30 22:57 -------- d-----w- c:\program files\Enigma Software Group
2015-01-30 22:53 . 2015-01-31 00:05 -------- d-----w- c:\windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2015-01-30 22:53 . 2015-01-30 22:53 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2015-01-30 20:13 . 2015-01-30 20:13 21976 ----a-w- c:\windows\system32\drivers\SPPD.sys
2015-01-27 00:42 . 2015-01-27 00:42 -------- d-----w- c:\users\nayara\AppData\Roaming\MPC-HC
2015-01-27 00:22 . 2015-01-27 00:22 -------- d-----w- c:\program files (x86)\MPC-HC
2015-01-26 03:52 . 2015-01-26 03:52 -------- d-----w- c:\users\nayara\AppData\Roaming\Media Player Classic
2015-01-24 00:59 . 2015-01-24 00:59 -------- d-----w- c:\programdata\ALM
2015-01-24 00:44 . 2015-01-24 01:00 -------- d-----w- c:\program files\Adobe
2015-01-23 21:49 . 2015-01-23 21:49 -------- d-----w- c:\users\nayara\AppData\Roaming\PACE Anti-Piracy
2015-01-23 21:49 . 2015-01-23 21:49 -------- d-----w- c:\programdata\PACE Anti-Piracy
2015-01-23 21:49 . 2015-01-23 21:49 -------- d-----w- c:\users\nayara\AppData\Local\PACE Anti-Piracy
2015-01-17 17:47 . 2003-06-18 04:09 57344 ------w- c:\windows\R2uninst.exe
2015-01-17 17:47 . 2015-01-17 17:47 -------- d-----w- c:\program files (x86)\RISORINC-NET-C
2015-01-17 17:47 . 2003-06-13 02:32 49152 ------w- c:\windows\R0uninst.exe
2015-01-17 17:35 . 2010-05-15 01:36 22528 ----a-w- c:\windows\system32\Spool\prtprocs\x64\R34V6BP.dll
2015-01-17 01:30 . 2015-01-17 01:30 -------- d-sh--w- c:\users\nayara\AppData\Local\EmieUserList
2015-01-17 01:30 . 2015-01-17 01:30 -------- d-sh--w- c:\users\nayara\AppData\Local\EmieSiteList
2015-01-17 01:30 . 2015-01-17 01:30 -------- d-sh--w- c:\users\nayara\AppData\Local\EmieBrowserModeList
2015-01-16 22:22 . 2015-01-16 22:22 -------- d-----w- c:\users\nayara\AppData\Roaming\337 Wallpaper
2015-01-15 03:55 . 2014-12-12 05:35 5553592 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-01-15 03:55 . 2014-12-12 05:11 3971512 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2015-01-15 03:55 . 2014-12-12 05:11 3916728 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2015-01-15 03:55 . 2014-12-12 05:31 503808 ----a-w- c:\windows\system32\srcore.dll
2015-01-15 03:55 . 2014-12-12 05:31 50176 ----a-w- c:\windows\system32\srclient.dll
2015-01-15 03:55 . 2014-12-12 05:31 296960 ----a-w- c:\windows\system32\rstrui.exe
2015-01-15 03:55 . 2014-12-12 05:07 43008 ----a-w- c:\windows\SysWow64\srclient.dll
2015-01-14 08:57 . 2014-12-11 17:47 52736 ----a-w- c:\windows\system32\TSWbPrxy.exe
2015-01-14 08:57 . 2014-12-19 03:06 210432 ----a-w- c:\windows\system32\profsvc.dll
2015-01-14 08:57 . 2014-12-06 04:17 303616 ----a-w- c:\windows\system32\nlasvc.dll
2015-01-14 08:57 . 2014-12-06 03:50 156672 ----a-w- c:\windows\SysWow64\ncsi.dll
2015-01-14 08:57 . 2014-12-06 03:50 52224 ----a-w- c:\windows\SysWow64\nlaapi.dll
2015-01-14 08:57 . 2014-12-19 01:46 141312 ----a-w- c:\windows\system32\drivers\mrxdav.sys
.
.
.
((((((((((((((((((((((((((((((((((((( Relatório Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-01-25 20:22 . 2014-08-30 21:25 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-01-25 20:22 . 2014-08-30 21:25 701616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-01-14 14:07 . 2013-02-17 19:00 113365784 ----a-w- c:\windows\system32\MRT.exe
2014-12-26 21:06 . 2014-05-22 08:42 13792 ----a-w- c:\windows\system32\drivers\semav6thermal64ro.sys
2014-12-23 00:41 . 2012-10-02 22:33 298120 ------w- c:\windows\system32\MpSigStub.exe
2014-12-18 13:32 . 2014-12-18 13:32 194048 ----a-w- c:\windows\SysWow64\elshyph.dll
2014-12-18 13:32 . 2014-12-18 13:32 71680 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe
2014-12-18 13:32 . 2014-12-18 13:32 645120 ----a-w- c:\windows\SysWow64\jsIntl.dll
2014-12-18 13:32 . 2014-12-18 13:32 62464 ----a-w- c:\windows\SysWow64\tdc.ocx
2014-12-18 13:32 . 2014-12-18 13:32 62464 ----a-w- c:\windows\SysWow64\iesetup.dll
2014-12-18 13:32 . 2014-12-18 13:32 60416 ----a-w- c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2014-12-18 13:32 . 2014-12-18 13:32 337408 ----a-w- c:\windows\SysWow64\html.iec
2014-12-18 13:32 . 2014-12-18 13:32 24576 ----a-w- c:\windows\SysWow64\licmgr10.dll
2014-12-18 13:32 . 2014-12-18 13:32 235008 ----a-w- c:\windows\system32\elshyph.dll
2014-12-18 13:32 . 2014-12-18 13:32 2052096 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2014-12-18 13:32 . 2014-12-18 13:32 1888256 ----a-w- c:\windows\SysWow64\wininet.dll
2014-12-18 13:32 . 2014-12-18 13:32 182272 ----a-w- c:\windows\SysWow64\msls31.dll
2014-12-18 13:32 . 2014-12-18 13:32 151552 ----a-w- c:\windows\SysWow64\iexpress.exe
2014-12-18 13:32 . 2014-12-18 13:32 139264 ----a-w- c:\windows\SysWow64\wextract.exe
2014-12-18 13:32 . 2014-12-18 13:32 1155072 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll
2014-12-18 13:32 . 2014-12-18 13:32 942592 ----a-w- c:\windows\system32\jsIntl.dll
2014-12-18 13:32 . 2014-12-18 13:32 86016 ----a-w- c:\windows\SysWow64\iesysprep.dll
2014-12-18 13:32 . 2014-12-18 13:32 86016 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe
2014-12-18 13:32 . 2014-12-18 13:32 74240 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe
2014-12-18 13:32 . 2014-12-18 13:32 64000 ----a-w- c:\windows\SysWow64\MshtmlDac.dll
2014-12-18 13:32 . 2014-12-18 13:32 620032 ----a-w- c:\windows\SysWow64\jscript9diag.dll
2014-12-18 13:32 . 2014-12-18 13:32 54784 ----a-w- c:\windows\system32\jsproxy.dll
2014-12-18 13:32 . 2014-12-18 13:32 52224 ----a-w- c:\windows\system32\msfeedsbs.dll
2014-12-18 13:32 . 2014-12-18 13:32 501248 ----a-w- c:\windows\SysWow64\vbscript.dll
2014-12-18 13:32 . 2014-12-18 13:32 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll
2014-12-18 13:32 . 2014-12-18 13:32 47616 ----a-w- c:\windows\SysWow64\ieetwproxystub.dll
2014-12-18 13:32 . 2014-12-18 13:32 4299264 ----a-w- c:\windows\SysWow64\jscript9.dll
2014-12-18 13:32 . 2014-12-18 13:32 36352 ----a-w- c:\windows\SysWow64\imgutil.dll
2014-12-18 13:32 . 2014-12-18 13:32 2885120 ----a-w- c:\windows\system32\iertutil.dll
2014-12-18 13:32 . 2014-12-18 13:32 2724864 ----a-w- c:\windows\SysWow64\mshtml.tlb
2014-12-18 13:32 . 2014-12-18 13:32 247808 ----a-w- c:\windows\system32\msls31.dll
2014-12-18 13:32 . 2014-12-18 13:32 2358272 ----a-w- c:\windows\system32\wininet.dll
2014-12-18 13:32 . 2014-12-18 13:32 199680 ----a-w- c:\windows\system32\msrating.dll
2014-12-18 13:32 . 2014-12-18 13:32 1548288 ----a-w- c:\windows\system32\urlmon.dll
2014-12-18 13:32 . 2014-12-18 13:32 13312 ----a-w- c:\windows\SysWow64\mshta.exe
2014-12-18 13:32 . 2014-12-18 13:32 13312 ----a-w- c:\windows\system32\msfeedssync.exe
2014-12-18 13:32 . 2014-12-18 13:32 131072 ----a-w- c:\windows\system32\IEAdvpack.dll
2014-12-18 13:32 . 2014-12-18 13:32 111616 ----a-w- c:\windows\SysWow64\IEAdvpack.dll
2014-12-18 13:32 . 2014-12-18 13:32 92160 ----a-w- c:\windows\system32\mshtmled.dll
2014-12-18 13:32 . 2014-12-18 13:32 90112 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2014-12-18 13:32 . 2014-12-18 13:32 814080 ----a-w- c:\windows\system32\jscript9diag.dll
2014-12-18 13:32 . 2014-12-18 13:32 81408 ----a-w- c:\windows\system32\icardie.dll
2014-12-18 13:32 . 2014-12-18 13:32 800768 ----a-w- c:\windows\system32\msfeeds.dll
2014-12-18 13:32 . 2014-12-18 13:32 800768 ----a-w- c:\windows\system32\ieapfltr.dll
2014-12-18 13:32 . 2014-12-18 13:32 77824 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2014-12-18 13:32 . 2014-12-18 13:32 77312 ----a-w- c:\windows\system32\tdc.ocx
2014-12-18 13:32 . 2014-12-18 13:32 718848 ----a-w- c:\windows\system32\ie4uinit.exe
2014-12-18 13:32 . 2014-12-18 13:32 66560 ----a-w- c:\windows\system32\iesetup.dll
2014-12-18 13:32 . 2014-12-18 13:32 633856 ----a-w- c:\windows\system32\ieui.dll
2014-12-18 13:32 . 2014-12-18 13:32 616104 ----a-w- c:\windows\system32\ieapfltr.dat
2014-12-18 13:32 . 2014-12-18 13:32 6039552 ----a-w- c:\windows\system32\jscript9.dll
2014-12-18 13:32 . 2014-12-18 13:32 580096 ----a-w- c:\windows\system32\vbscript.dll
2014-12-18 13:32 . 2014-12-18 13:32 490496 ----a-w- c:\windows\system32\dxtmsft.dll
2014-12-18 13:32 . 2014-12-18 13:32 48640 ----a-w- c:\windows\system32\mshtmler.dll
2014-12-18 13:32 . 2014-12-18 13:32 413696 ----a-w- c:\windows\system32\html.iec
2014-12-18 13:32 . 2014-12-18 13:32 389296 ----a-w- c:\windows\system32\iedkcs32.dll
2014-12-18 13:32 . 2014-12-18 13:32 34304 ----a-w- c:\windows\system32\iernonce.dll
2014-12-18 13:32 . 2014-12-18 13:32 316928 ----a-w- c:\windows\system32\dxtrans.dll
2014-12-18 13:32 . 2014-12-18 13:32 30208 ----a-w- c:\windows\system32\licmgr10.dll
2014-12-18 13:32 . 2014-12-18 13:32 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-12-18 13:32 . 2014-12-18 13:32 25059840 ----a-w- c:\windows\system32\mshtml.dll
2014-12-18 13:32 . 2014-12-18 13:32 243200 ----a-w- c:\windows\system32\webcheck.dll
2014-12-18 13:32 . 2014-12-18 13:32 235520 ----a-w- c:\windows\system32\url.dll
2014-12-18 13:32 . 2014-12-18 13:32 2125312 ----a-w- c:\windows\system32\inetcpl.cpl
2014-12-18 13:32 . 2014-12-18 13:32 167424 ----a-w- c:\windows\system32\iexpress.exe
2014-12-18 13:32 . 2014-12-18 13:32 14412800 ----a-w- c:\windows\system32\ieframe.dll
2014-12-18 13:32 . 2014-12-18 13:32 143872 ----a-w- c:\windows\system32\wextract.exe
2014-12-18 13:32 . 2014-12-18 13:32 1359360 ----a-w- c:\windows\system32\mshtmlmedia.dll
2014-12-18 13:32 . 2014-12-18 13:32 105984 ----a-w- c:\windows\system32\iesysprep.dll
2014-12-18 13:32 . 2014-12-18 13:32 101376 ----a-w- c:\windows\system32\inseng.dll
2014-12-18 13:32 . 2014-12-18 13:32 88064 ----a-w- c:\windows\system32\MshtmlDac.dll
2014-12-18 13:32 . 2014-12-18 13:32 774144 ----a-w- c:\windows\system32\jscript.dll
2014-12-18 13:32 . 2014-12-18 13:32 62464 ----a-w- c:\windows\system32\pngfilt.dll
2014-12-18 13:32 . 2014-12-18 13:32 48640 ----a-w- c:\windows\system32\ieetwproxystub.dll
2014-12-18 13:32 . 2014-12-18 13:32 48128 ----a-w- c:\windows\system32\imgutil.dll
2014-12-18 13:32 . 2014-12-18 13:32 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2014-12-18 13:32 . 2014-12-18 13:32 147968 ----a-w- c:\windows\system32\occache.dll
2014-12-18 13:32 . 2014-12-18 13:32 13824 ----a-w- c:\windows\system32\mshta.exe
2014-12-18 13:32 . 2014-12-18 13:32 135680 ----a-w- c:\windows\system32\iepeers.dll
2014-12-18 13:32 . 2014-12-18 13:32 114688 ----a-w- c:\windows\system32\ieetwcollector.exe
2014-12-18 13:30 . 2014-12-18 13:30 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-12-18 13:30 . 2014-12-18 13:30 2560 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
.
.
(((((((((((((((((((((((((( Pontos de Carregamento do Registro )))))))))))))))))))))))))))))))))))))))
.
.
*Nota* entradas vazias e legítimas por padrão não são apresentadas.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 131480 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 131480 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 131480 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Mobile Partner"="c:\program files (x86)\4G WiFi movel\4G WiFi movel" [X]
"AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA"="1" [X]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2014-12-11 30873192]
"uTorrent"="c:\users\nayara\AppData\Roaming\uTorrent\uTorrent.exe" [2015-01-16 1374032]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2015-01-22 7780120]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"ISBMgr.exe"="c:\program files (x86)\Sony\ISB Utility\ISBMgr.exe" [2010-05-31 673136]
"PMBVolumeWatcher"="c:\program files (x86)\Sony\PMB\PMBVolumeWatcher.exe" [2010-06-01 600928]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-09-20 102400]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-07-31 38872]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Avira Systray"="c:\program files (x86)\Avira\My Avira\Avira.OE.Systray.exe" [2014-11-20 126200]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS6ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
"Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [2011-09-05 36760]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2011-09-05 2904984]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-01-31 5227112]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware (cleanup)"="c:\programdata\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" [2014-11-21 54072]
.
c:\users\nayara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\nayara\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-12-9 39207112]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2010-6-8 1128224]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R0 aswRvrt;avast! Revert; [x]
R0 aswVmm;avast! VM Monitor; [x]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [x]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [x]
R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
R2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 Avira.OE.ServiceHost;Avira Service Host;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe;c:\program files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 ESRV_SVC;Energy Server Service;c:\program files\Sony\VAIO Care\ESRV\esrv_svc.exe --AUTO_START --start --address 127.0.0.1;c:\program files\Sony\VAIO Care\ESRV\esrv_svc.exe --AUTO_START --start --address 127.0.0.1 [x]
R2 HWDeviceService64.exe;HWDeviceService64.exe;c:\programdata\DatacardService\HWDeviceService64.exe;c:\programdata\DatacardService\HWDeviceService64.exe [x]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
R2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [x]
R2 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files (x86)\PDF Architect\HelperService.exe;c:\program files (x86)\PDF Architect\HelperService.exe [x]
R2 PDF Architect Service;PDF Architect Service;c:\program files (x86)\PDF Architect\ConversionService.exe;c:\program files (x86)\PDF Architect\ConversionService.exe [x]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe;c:\program files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
R2 VAIO Power Management;VAIO Power Management;c:\program files\Sony\VAIO Power Management\SPMService.exe;c:\program files\Sony\VAIO Power Management\SPMService.exe [x]
R2 VSNService;VSNService;c:\program files\Sony\VAIO Smart Network\VSNService.exe;c:\program files\Sony\VAIO Smart Network\VSNService.exe [x]
R2 WTabletServicePro;Wacom Professional Service;c:\program files\Tablet\Wacom\WTabletServicePro.exe;c:\program files\Tablet\Wacom\WTabletServicePro.exe [x]
R3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys;c:\windows\SYSNATIVE\drivers\btwampfl.sys [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys;c:\windows\SYSNATIVE\DRIVERS\btwl2cap.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x]
R3 ew_usbenumfilter;huawei_CompositeFilter;c:\windows\system32\DRIVERS\ew_usbenumfilter.sys;c:\windows\SYSNATIVE\DRIVERS\ew_usbenumfilter.sys [x]
R3 hidkmdf;KMDF Driver;c:\windows\system32\DRIVERS\hidkmdf.sys;c:\windows\SYSNATIVE\DRIVERS\hidkmdf.sys [x]
R3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x]
R3 huawei_cdcecm;huawei_cdcecm;c:\windows\system32\DRIVERS\ew_jucdcecm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcecm.sys [x]
R3 huawei_ext_ctrl;huawei_ext_ctrl;c:\windows\system32\DRIVERS\ew_juextctrl.sys;c:\windows\SYSNATIVE\DRIVERS\ew_juextctrl.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys;c:\windows\SYSNATIVE\DRIVERS\Impcd.sys [x]
R3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 McComponentHostServiceSony;McAfee Security Scan Component Host Service for Sony;c:\program files (x86)\Sony\MSS\3.8.130\McCHSvc.exe;c:\program files (x86)\Sony\MSS\3.8.130\McCHSvc.exe [x]
R3 SOHCImp;VAIO Media plus Content Importer;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [x]
R3 SOHDms;VAIO Media plus Digital Media Server;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [x]
R3 SOHDs;VAIO Media plus Device Searcher;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe;c:\program files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [x]
R3 SpfService;VAIO Entertainment Common Service;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe;c:\program files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [x]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 USER_ESRV_SVC;User Energy Server Service;c:\program files\Sony\VAIO Care\ESRV\esrv_svc.exe;c:\program files\Sony\VAIO Care\ESRV\esrv_svc.exe [x]
R3 VCFw;VAIO Content Folder Watcher;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe;c:\program files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [x]
R3 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe;c:\program files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [x]
R3 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe;c:\program files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [x]
R3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe;c:\program files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [x]
R3 VCService;VCService;c:\program files\Sony\VAIO Care\VCService.exe;c:\program files\Sony\VAIO Care\VCService.exe [x]
R3 VUAgent;VUAgent;c:\program files\Sony\VAIO Update\vuagent.exe;c:\program files\Sony\VAIO Update\vuagent.exe [x]
R3 WacHidRouter;Wacom Hid Router;c:\windows\system32\DRIVERS\wachidrouter.sys;c:\windows\SYSNATIVE\DRIVERS\wachidrouter.sys [x]
R3 wacomrouterfilter;Wacom Router Filter Driver;c:\windows\system32\DRIVERS\wacomrouterfilter.sys;c:\windows\SYSNATIVE\DRIVERS\wacomrouterfilter.sys [x]
R3 WatAdminSvc;Serviço de Tecnologias de Activação do Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 ZTEusbnet;ZTE USB-NDIS miniport;c:\windows\system32\DRIVERS\ZTEusbnet.sys;c:\windows\SYSNATIVE\DRIVERS\ZTEusbnet.sys [x]
R3 ZTEusbvoice;ZTE VoUSB Port;c:\windows\system32\DRIVERS\ZTEusbvoice.sys;c:\windows\SYSNATIVE\DRIVERS\ZTEusbvoice.sys [x]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [x]
S2 rimspci;rimspci;c:\windows\system32\drivers\rimssne64.sys;c:\windows\SYSNATIVE\drivers\rimssne64.sys [x]
S2 risdsnpe;risdsnpe;c:\windows\system32\drivers\risdsne64.sys;c:\windows\SYSNATIVE\drivers\risdsne64.sys [x]
S3 dc3d;MS Hardware Device Detection Driver (USB);c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x]
S3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x]
S3 SFEP;Sony Firmware Extension Parser;c:\windows\system32\DRIVERS\SFEP.sys;c:\windows\SYSNATIVE\DRIVERS\SFEP.sys [x]
S3 vodafone_K3805-z_dc_enum;vodafone_K3805-z_dc_enum;c:\windows\system32\DRIVERS\vodafone_K3805-z_dc_enum.sys;c:\windows\SYSNATIVE\DRIVERS\vodafone_K3805-z_dc_enum.sys [x]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-01-31 18:28 1086280 ----a-w- c:\program files (x86)\Google\Chrome\Application\40.0.2214.94\Installer\chrmstp.exe
.
Conteúdo da pasta 'Tarefas Agendadas'
.
2015-01-31 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-08-30 20:22]
.
2015-01-31 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-615217086-3195935486-568960257-1000Core.job
- c:\users\nayara\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-07-08 09:29]
.
2015-01-31 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-615217086-3195935486-568960257-1000UA.job
- c:\users\nayara\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-07-08 09:29]
.
2015-01-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-10-02 14:24]
.
2015-01-31 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-10-02 14:24]
.
2015-01-31 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task 532afd25-668c-4429-9ca4-974f3884d21d.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2013-11-07 20:08]
.
2015-01-31 c:\windows\Tasks\SUPERAntiSpyware Scheduled Task 9ce2fed8-bf5a-484c-a5f5-d5d05f9e7bc6.job
- c:\program files\SUPERAntiSpyware\SASTask.exe [2013-11-07 20:08]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-01-31 00:32 860984 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 164760 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 164760 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 164760 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2014-06-24 22:04 164760 ----a-w- c:\users\nayara\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2015-01-15 16:59 776520 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2015-01-15 16:59 776520 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2015-01-15 16:59 776520 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2015-01-15 16:59 776520 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2015-01-15 16:59 776520 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-05-31 10775584]
"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2010-05-31 2040352]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
.
------- Scan Suplementar -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = google.com
mLocal Page = c:\windows\SYSTEM32\blank.htm
uInternet Settings,ProxyOverride = <local>
IE: Append Link Target to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Append to Existing PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert Link Target to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert to Adobe PDF - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: E&nviar para o OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: E&xportar para o Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.10.1
.
- - - - ORFÃOS REMOVIDOS - - - -
.
Wow6432Node-HKCU-Run-AdobeBridge - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Wow6432Node-HKLM-Run-DelaypluginInstall - c:\programdata\Wondershare\Video Converter Ultimate\DelayPluginI.exe
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
SafeBoot-MBAMSwissArmy
HKLM-Run-Apoint - c:\program files (x86)\Apoint\Apoint.exe
.
.
.
--------------------- CHAVES DO REGISTRO BLOQUEADAS ---------------------
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Tempo para conclusão: 2015-02-01 01:03:23
ComboFix-quarantined-files.txt 2015-02-01 01:03
.
Pré-execução: 196.805.431.296 bytes livres
Pós execução: 197.248.815.104 bytes livres
.
- - End Of File - - 8CA8883EC8AA09A83B2B53207D6CCBF6