DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 11.0.9600.17937 BrowserJavaVersion: 11.60.2 Run by [removed] at 15:23:48 on 2015-09-02 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.351.2070.18.3549.1237 [GMT 1:00] . AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: Spybot - Search and Destroy *Disabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} . ============== Running Processes ================ . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe C:\Program Files\AVAST Software\Avast\AvastSvc.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe C:\Windows\system32\taskeng.exe C:\Program Files\IObit\Driver Booster\AutoUpdate.exe C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe C:\Program Files\Maxthon\Modules\Service\Update\MaxthonUpdateSvc.exe C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe C:\Program Files\Malwarebytes Anti-Malware\mbam.exe C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe C:\Program Files\AVAST Software\Avast\avastui.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Windows\system32\wbem\unsecapp.exe C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.254\deploy\LoLLauncher.exe C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.38\deploy\LoLPatcher.exe C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe C:\Windows\system32\GWX\GWX.exe C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.158\deploy\LolClient.exe C:\Program Files\Maxthon\Bin\Maxthon.exe C:\Program Files\Maxthon\Bin\Maxthon.exe C:\Program Files\Maxthon\Bin\Maxthon.exe C:\Program Files\Maxthon\Bin\Maxthon.exe C:\Program Files\Maxthon\Bin\Maxthon.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\conhost.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\System32\svchost.exe -k utcsvc C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalServicePeerNet . ============== Pseudo HJT Report =============== . uStart Page = google.pt uSearch Bar = hxxps://www.google.com/?trackid=sp-006 uSearch Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} mWinlogon: Userinit = c:\windows\system32\userinit.exe,userinit.exe, BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.8.0_60\bin\ssv.dll BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre1.8.0_60\bin\jp2ssv.dll uRun: [Gyazo] c:\program files\gyazo\GyStation.exe uRun: [OscarX7Mouse5Mode] "c:\program files\oscarx7editor5mode\oscarx7editor5mode\OscarEditor.exe" Minimum uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe uRun: [SpybotPostWindows10UpgradeReInstall] "c:\program files\common files\av\spybot - search and destroy\Test.exe" mRun: [AvastUI.exe] "c:\program files\avast software\avast\AvastUI.exe" /nogui mRun: [XMouseButtonControl] c:\program files\highresolution enterprises\x-mouse button control\XMouseButtonControl.exe /notportable mRun: [SDTray] "c:\program files\spybot - search & destroy 2\SDTray.exe" mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe" dRun: [Advanced SystemCare 8] "c:\program files\iobit\advanced systemcare 8\ASCTray.exe" /Auto dRunOnce: [SPReview] "c:\windows\system32\spreview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 uPolicies-Explorer: NoResolveTrack = dword:1 uPolicies-Explorer: NoThumbnailCache = dword:1 uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-Explorer: NoResolveTrack = dword:1 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: SoftwareSASGeneration = dword:1 IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll . INFO: HKCU has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . TCP: NameServer = 213.228.128.156 213.228.128.6 TCP: Interfaces\{ABF9C699-C76D-4D1F-97D0-56F6369F1F6E} : NameServer = 8.8.8.8,8.8.4.4 TCP: Interfaces\{ABF9C699-C76D-4D1F-97D0-56F6369F1F6E} : DHCPNameServer = [removed] [removed] Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll Notify: igfxcui - igfxdev.dll Notify: SDWinLogon - SDWinLogon.dll SSODL: WebCheck - mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\44.0.2403.125\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome . ================= FIREFOX =================== . FF - ProfilePath - c:\users\diogo\appdata\roaming\mozilla\firefox\profiles\jydq68rs.default-1441129334920\ FF - prefs.js: browser.startup.homepage - google.pt FF - plugin: c:\progra~1\micros~3\office14\NPAUTHZ.DLL FF - plugin: c:\progra~1\micros~3\office14\NPSPWRAP.DLL FF - plugin: c:\program files\adobe\adobe creative cloud\utils\npAdobeAAMDetect32.dll FF - plugin: c:\program files\adobe\adobe creative cloud\utils\npAdobeAAMDetect64.dll FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll FF - plugin: c:\program files\google\update\1.3.28.1\npGoogleUpdate3.dll FF - plugin: c:\program files\java\jre1.8.0_60\bin\dtplugin\npdeployJava1.dll FF - plugin: c:\program files\java\jre1.8.0_60\bin\plugin2\npjp2.dll FF - plugin: c:\program files\microsoft silverlight\5.1.40728.0\npctrl.1.0.20926.0.dll FF - plugin: c:\program files\microsoft silverlight\5.1.40728.0\npctrlui.dll FF - plugin: c:\users\diogo\appdata\locallow\unity\webplayer\loader\npUnity3D32.dll FF - plugin: c:\windows\system32\adobe\director\np32dsw_1218158.dll FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_18_0_0_232.dll . ============= SERVICES / DRIVERS =============== . R0 aswRvrt;avast! Revert;c:\windows\system32\drivers\aswRvrt.sys [2013-10-5 49776] R0 aswVmm;avast! VM Monitor;c:\windows\system32\drivers\aswVmm.sys [2013-10-5 208664] R0 ngvss;ngvss;c:\windows\system32\drivers\ngvss.sys [2015-7-13 95112] R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-10-5 788784] R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-10-5 433264] R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2013-12-8 243128] R1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO32.SYS [2015-1-7 23840] R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880] R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664] R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2014-7-23 142648] R2 AdvancedSystemCareService8;Advanced SystemCare Service 8;c:\program files\iobit\advanced systemcare 8\ASCService.exe [2015-1-7 815392] R2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [2014-5-5 24016] R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-10-5 76000] R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys [2014-5-5 113592] R2 avast! Antivirus;Avast Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2015-7-29 146600] R2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files\skype\toolbars\autoupdate\SkypeC2CAutoUpdateSvc.exe [2015-5-1 1394816] R2 c2cpnrsvc;Skype Click to Call PNR Service;c:\program files\skype\toolbars\pnrsvc\SkypeC2CPNRSvc.exe [2015-5-1 1772672] R2 DiagTrack;Diagnostics Tracking Service;c:\windows\system32\svchost.exe -k utcsvc [2009-7-14 20992] R2 MaxthonUpdateSvc;Maxthon Core Update Service;c:\program files\maxthon\modules\service\update\MaxthonUpdateSvc.exe [2015-8-24 1871784] R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes anti-malware\mbamscheduler.exe [2015-8-23 1871160] R2 MBAMService;MBAMService;c:\program files\malwarebytes anti-malware\mbamservice.exe [2015-8-23 1133880] R2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\spybot - search & destroy 2\SDUpdSvc.exe [2015-8-28 2088408] R2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\spybot - search & destroy 2\SDWSCSvc.exe [2015-8-28 171928] R2 VBoxAswDrv;VBoxAsw Support Driver;c:\program files\avast software\avast\ng\vbox\VBoxAswDrv.sys [2015-7-13 220752] R3 AvastVBoxSvc;AvastVBox COM Service;c:\program files\avast software\avast\ng\vbox\AvastVBoxSVC.exe [2015-7-13 3218624] R3 KMWDFILTERx86;HIDServiceDesc;c:\windows\system32\drivers\KMWDFILTER.sys [2009-4-29 25088] R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2015-8-23 23256] R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys [2015-8-23 98520] R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2015-8-23 51928] R3 RTL8167;Controlador Realtek 8167 NT;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\spybot - search & destroy 2\SDFSSvc.exe [2015-8-28 1738168] S3 aswTap;avast! SecureLine TAP Adapter v3;c:\windows\system32\drivers\aswTap.sys [2014-7-4 38984] S3 AVEO;STARTEC UVC Driver;c:\windows\system32\drivers\AVEOdcnt.sys [2011-10-24 278528] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888] S3 DrvAgent32;DrvAgent32;c:\windows\system32\drivers\DrvAgent32.sys [2013-12-28 30504] S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2015-8-12 102912] S3 mvusbews;USB EWS Device;c:\windows\system32\drivers\mvusbews.sys [2014-4-27 17408] S3 OverwolfUpdater;Overwolf Updater Windows SCM;c:\program files\overwolf\OverwolfUpdater.exe [2015-7-19 1001200] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2014-4-19 14848] S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2014-4-19 49664] S3 WatAdminSvc;Servi�o de Tecnologias de Activa��o do Windows;c:\windows\system32\wat\WatAdminSvc.exe [2013-10-6 1343400] S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\iobit\game booster 3\driver\WinRing0.sys [2014-4-20 14416] S4 HPSIService;HP SI Service;c:\windows\system32\HPSIsvc.exe [2014-4-27 99896] S4 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2015-2-18 315488] S4 TeamViewer9;TeamViewer 9;c:\program files\teamviewer\version9\TeamViewer_Service.exe [2014-5-5 5052224] . =============== Created Last 30 ================ . 2015-09-01 17:36:44 -------- d-----w- c:\users\diogo\.oracle_jre_usage 2015-09-01 17:36:01 -------- d-----w- c:\programdata\Oracle 2015-09-01 17:11:23 -------- d-----w- C:\MGADiagToolOutput 2015-09-01 10:33:59 -------- d-----w- C:\FRST 2015-08-30 19:25:45 -------- d-----w- c:\program files\OldFirefox 2015-08-30 19:24:32 -------- d-----w- c:\users\diogo\appdata\roaming\ProductData 2015-08-30 19:22:13 -------- d-----w- c:\programdata\ProductData 2015-08-30 19:21:02 -------- d-sh--w- C:\$RECYCLE.BIN 2015-08-30 19:17:13 -------- d-----w- c:\users\diogo\appdata\local\VirtualStore 2015-08-30 19:04:15 24064 ----a-w- c:\windows\zoek-delete.exe 2015-08-30 19:04:07 -------- d-----w- c:\users\diogo\appdata\local\Temp 2015-08-30 18:03:00 -------- d-----w- C:\zoek_backup 2015-08-28 12:16:47 -------- d-----w- c:\program files\common files\AV 2015-08-28 11:57:40 -------- d-----w- C:\AdwCleaner 2015-08-28 11:55:25 -------- d-----w- C:\SUPERDelete 2015-08-28 11:50:06 -------- d-----w- c:\programdata\Kaspersky Lab Setup Files 2015-08-28 11:48:11 18968 ----a-w- c:\windows\system32\sdnclean.exe 2015-08-28 11:48:06 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2015-08-28 11:48:02 -------- d-----w- c:\program files\Spybot - Search & Destroy 2 2015-08-28 11:43:42 -------- d-----w- c:\users\diogo\appdata\roaming\SUPERAntiSpyware.com 2015-08-28 11:43:29 -------- d-----w- c:\programdata\SUPERAntiSpyware.com 2015-08-28 11:43:29 -------- d-----w- c:\program files\SUPERAntiSpyware 2015-08-27 14:03:35 -------- d-----w- c:\program files\Mozilla 2015-08-27 13:55:26 -------- d-----w- c:\program files\OldMozilla 2015-08-26 11:37:53 -------- d-----w- c:\users\diogo\appdata\roaming\Highresolution Enterprises 2015-08-26 11:37:50 -------- d-----w- c:\program files\Highresolution Enterprises 2015-08-24 14:12:04 -------- d-----w- c:\users\diogo\appdata\roaming\Maxthon3 2015-08-24 14:11:35 -------- d-----w- c:\program files\Maxthon 2015-08-24 13:57:32 -------- d-----w- c:\program files\Mozilla Maintenance Service 2015-08-24 11:58:24 -------- d-----w- c:\users\diogo\appdata\local\Apps 2015-08-23 20:27:34 98520 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2015-08-23 20:27:00 94936 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2015-08-23 20:27:00 51928 ----a-w- c:\windows\system32\drivers\mwac.sys 2015-08-23 20:27:00 23256 ----a-w- c:\windows\system32\drivers\mbam.sys 2015-08-23 20:27:00 -------- d-----w- c:\programdata\Malwarebytes 2015-08-23 20:27:00 -------- d-----w- c:\program files\Malwarebytes Anti-Malware 2015-08-23 19:45:03 1372160 ----a-w- c:\windows\system32\dwmcore.dll 2015-08-23 19:45:02 67584 ----a-w- c:\windows\system32\dwmapi.dll 2015-08-23 19:44:43 47104 ----a-w- c:\windows\system32\appinfo.dll 2015-08-23 19:44:43 1805824 ----a-w- c:\windows\system32\authui.dll 2015-08-23 19:44:43 105408 ----a-w- c:\windows\system32\consent.exe 2015-08-23 19:40:51 2048 ----a-w- c:\windows\system32\tzres.dll 2015-08-19 17:06:36 2724864 ----a-w- c:\windows\system32\mshtml.tlb 2015-08-18 17:51:30 0 ----a-w- c:\windows\prleth.sys 2015-08-18 17:51:30 0 ----a-w- c:\windows\hgfs.sys 2015-08-13 12:53:23 -------- d-----w- c:\users\diogo\appdata\local\KogamaLauncher-WWW 2015-08-12 23:01:06 103120 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 07:35:05 93184 ----a-w- c:\windows\system32\wudriver.dll 2015-08-12 07:35:05 73728 ----a-w- c:\windows\system32\WinSetupUI.dll 2015-08-12 07:35:05 34816 ----a-w- c:\windows\system32\wuapp.exe 2015-08-12 07:35:05 2943488 ----a-w- c:\windows\system32\wucltux.dll 2015-08-12 07:35:05 173056 ----a-w- c:\windows\system32\wuwebv.dll 2015-08-12 07:35:05 11776 ----a-w- c:\windows\system32\wu.upgrade.ps.dll 2015-08-08 19:13:13 73216 ----a-w- c:\windows\system32\msiexec.exe 2015-08-08 19:13:13 337408 ----a-w- c:\windows\system32\msihnd.dll 2015-08-08 19:13:13 25088 ----a-w- c:\windows\system32\msimsg.dll 2015-08-08 19:13:13 2364416 ----a-w- c:\windows\system32\msi.dll 2015-08-08 19:13:02 1414656 ----a-w- c:\windows\system32\ole32.dll 2015-08-08 19:13:01 305664 ----a-w- c:\windows\system32\gdi32.dll 2015-08-08 19:12:58 2745856 ----a-w- c:\windows\system32\rdpcorets.dll 2015-08-08 19:12:58 13824 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll 2015-08-08 19:12:57 210432 ----a-w- c:\windows\system32\cewmdm.dll 2015-08-05 09:05:22 -------- d-----w- c:\program files\Overwolf 2015-08-05 09:05:22 -------- d-----w- c:\program files\common files\Overwolf 2015-08-05 09:05:10 -------- d-----w- c:\programdata\Overwolf . ==================== Find3M ==================== . 2015-09-01 17:36:19 97888 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2015-08-28 12:07:54 780488 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2015-08-28 12:07:54 142536 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2015-07-30 17:57:31 909824 ----a-w- c:\windows\system32\FntCache.dll 2015-07-30 17:57:30 1987584 ----a-w- c:\windows\system32\d3d10warp.dll 2015-07-30 17:57:30 1251328 ----a-w- c:\windows\system32\DWrite.dll 2015-07-30 17:57:12 26624 ----a-w- c:\windows\system32\lpk.dll 2015-07-30 17:57:08 70656 ----a-w- c:\windows\system32\fontsub.dll 2015-07-30 17:57:05 10240 ----a-w- c:\windows\system32\dciman32.dll 2015-07-30 17:57:02 34304 ----a-w- c:\windows\system32\atmlib.dll 2015-07-30 16:52:25 2384384 ----a-w- c:\windows\system32\win32k.sys 2015-07-30 16:49:55 299520 ----a-w- c:\windows\system32\atmfd.dll 2015-07-29 11:49:07 208664 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2015-07-29 11:49:07 113592 ----a-w- c:\windows\system32\drivers\aswStm.sys 2015-07-29 11:49:06 81728 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2015-07-29 11:49:06 76000 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2015-07-29 11:49:06 49776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2015-07-29 11:49:06 24016 ----a-w- c:\windows\system32\drivers\aswHwid.sys 2015-07-29 11:48:55 43112 ----a-w- c:\windows\avastSS.scr 2015-07-29 11:48:35 788784 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2015-07-29 11:48:33 95112 ----a-w- c:\windows\system32\drivers\ngvss.sys 2015-07-24 14:47:48 715200 ----a-w- c:\windows\system32\mcupdate_GenuineIntel.dll 2015-07-24 14:47:06 179200 ----a-w- c:\windows\system32\wintrust.dll 2015-07-24 14:47:06 143872 ----a-w- c:\windows\system32\cryptsvc.dll 2015-07-24 14:47:06 1174528 ----a-w- c:\windows\system32\crypt32.dll 2015-07-24 14:47:06 103936 ----a-w- c:\windows\system32\cryptnet.dll 2015-07-16 20:06:26 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll 2015-07-16 19:51:47 504320 ----a-w- c:\windows\system32\vbscript.dll 2015-07-16 19:51:46 62464 ----a-w- c:\windows\system32\iesetup.dll 2015-07-16 19:50:54 47616 ----a-w- c:\windows\system32\ieetwproxystub.dll 2015-07-16 19:50:38 341504 ----a-w- c:\windows\system32\html.iec 2015-07-16 19:49:37 64000 ----a-w- c:\windows\system32\MshtmlDac.dll 2015-07-16 19:39:29 102912 ----a-w- c:\windows\system32\ieetwcollector.exe 2015-07-16 19:39:20 115712 ----a-w- c:\windows\system32\ieUnatt.exe 2015-07-16 19:38:51 620032 ----a-w- c:\windows\system32\jscript9diag.dll 2015-07-16 19:32:13 667648 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2015-07-16 19:24:03 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll 2015-07-16 19:12:39 4520448 ----a-w- c:\windows\system32\jscript9.dll 2015-07-16 19:12:22 37376 ----a-w- c:\windows\system32\tsgqec.dll 2015-07-16 19:12:21 4922368 ----a-w- c:\windows\system32\mstscax.dll 2015-07-16 19:12:17 269824 ----a-w- c:\windows\system32\aaclient.dll 2015-07-16 19:06:06 2052608 ----a-w- c:\windows\system32\inetcpl.cpl 2015-07-16 19:05:15 1155072 ----a-w- c:\windows\system32\mshtmlmedia.dll 2015-07-16 18:42:02 1951232 ----a-w- c:\windows\system32\wininet.dll 2015-07-15 18:45:38 2560 ----a-w- c:\windows\system32\drivers\pt-pt\mountmgr.sys.mui 2015-07-15 17:59:44 78784 ----a-w- c:\windows\system32\drivers\mountmgr.sys 2015-07-15 17:55:03 1159168 ----a-w- c:\windows\system32\sysmain.dll 2015-07-15 17:54:53 10752 ----a-w- c:\windows\system32\msmmsp.dll 2015-07-15 02:55:45 1390592 ----a-w- c:\windows\system32\msxml6.dll 2015-07-15 02:55:45 1241088 ----a-w- c:\windows\system32\msxml3.dll 2015-07-15 02:55:32 44032 ----a-w- c:\windows\system32\basesrv.dll 2015-07-15 02:51:14 2048 ----a-w- c:\windows\system32\msxml6r.dll 2015-07-15 02:51:14 2048 ----a-w- c:\windows\system32\msxml3r.dll 2015-07-09 17:42:27 179712 ----a-w- c:\windows\system32\notepad.exe 2015-07-09 17:42:27 179712 ----a-w- c:\windows\notepad.exe 2015-07-01 20:30:43 206848 ----a-w- c:\windows\system32\WebClnt.dll 2015-07-01 20:30:21 82432 ----a-w- c:\windows\system32\davclnt.dll 2015-06-24 00:29:00 1217192 ----a-w- c:\windows\system32\FM20.DLL 2015-06-23 12:27:10 246952 ------w- c:\windows\system32\MpSigStub.exe 2015-06-20 01:35:58 24 ----a-w- c:\users\diogo\appdata\roaming\appdataFr25.bin 2015-06-09 23:46:39 82944 ----a-w- c:\windows\system32\logman.exe 2015-06-09 23:46:39 40448 ----a-w- c:\windows\system32\typeperf.exe 2015-06-09 23:46:39 364544 ----a-w- c:\windows\system32\tracerpt.exe 2015-06-09 23:46:38 92160 ----a-w- c:\windows\system32\sechost.dll 2015-06-09 23:46:38 37888 ----a-w- c:\windows\system32\relog.exe 2015-06-09 23:46:38 17408 ----a-w- c:\windows\system32\diskperf.exe 2015-06-09 23:44:39 54656 ----a-w- c:\windows\system32\drivers\stream.sys . ============= FINISH: 15:25:52,15 ===============