cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão:23-12-2015
Executado por NEWUSU (2015-12-24 16:02:31)
Executando a partir de C:\Users\NEWUSU\Desktop
Windows 7 Ultimate Service Pack 1 (X64) (2014-08-16 18:56:06)
Modo da Inicialização: Normal
==========================================================


==================== Contas: =============================

Administrador (S-1-5-21-4220064015-3225715080-1381729876-500 - Administrator - Disabled)
Convidado (S-1-5-21-4220064015-3225715080-1381729876-501 - Limited - Enabled) => C:\Users\Convidado.SERVIDOR
NEWUSU (S-1-5-21-4220064015-3225715080-1381729876-1001 - Administrator - Enabled) => C:\Users\NEWUSU

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.28 - GIGABYTE)
µTorrent (HKU\S-1-5-21-4220064015-3225715080-1381729876-1001\...\uTorrent) (Version: 3.4.5.41372 - BitTorrent Inc.)
Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Flash Player 19 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
aTube Catcher versão 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.4.2233 - AVAST Software)
BB Token Admin Tool (HKLM-x32\...\{95A34656-CD4A-45A0-BAB8-AB950EFCBEBF}) (Version: 1.1.1 - Watchdata Technologies Pte., Ltd.)
CALL - Vs5 (HKLM-x32\...\CALL_VS5) (Version: 5 - CCAA)
CALL Vs.5 (x32 Version: 5 - CCAA) Hidden
Camtasia Studio 8 (HKLM-x32\...\{904AC0F0-F69E-467E-A719-B083940F608A}) (Version: 8.5.2.1999 - TechSmith Corporation)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
Cobian Backup 10 (HKLM-x32\...\CobBackup10) (Version: - )
Combat Arms (HKLM-x32\...\Combat Arms) (Version: - )
CrossFire BR (HKLM-x32\...\CrossFire BR_is1) (Version: V5126 - Z8Games.com)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Firebird 2.5.1.26351 (x64) (HKLM\...\FBDBServer_2_5_x64_is1) (Version: 2.5.1.26351 - Firebird Project)
Five Nights at Freddy's 2 v1.0 (HKLM-x32\...\Five Nights at Freddy's 2 v1.0_is1) (Version: - )
FormatFactory 3.7.5.0 (HKLM-x32\...\FormatFactory) (Version: 3.7.5.0 - Free Time)
Galeria de Fotos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.)
Google Earth Pro (HKLM-x32\...\{35DAA04C-1720-4BE3-A920-A03731EC6A1D}) (Version: 7.1.5.1557 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - )
hppLaserJetService (x32 Version: 001.003.000145 - Hewlett-Packard) Hidden
hppM1130M1210SeriesLaserJetService (x32 Version: 001.003.00073 - Hewlett-Packard) Hidden
hppusgM1130M1210Series (x32 Version: 1.0.0.2 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2843 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
Java 8 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218065F0}) (Version: 8.0.650.17 - Oracle Corporation)
Jogos Level Up (HKU\S-1-5-21-4220064015-3225715080-1381729876-1001\...\6d7bdf9c3c2a31f9) (Version: 0.9.4.29 - Level Up)
LiveUpdate 3.2 (Symantec Corporation) (HKLM-x32\...\LiveUpdate) (Version: 3.2.0.68 - Symantec Corporation)
Malwarebytes Anti-Malware versão 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MSI to redistribute MS VS2005 CRT libraries (HKLM-x32\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project)
MSI to redistribute MS VS2005 CRT libraries (HKLM-x32\...\{EBFC96E5-4409-426E-88B7-650ADB342E78}) (Version: 8.0.50727.42 - The Firebird Project)
Norton Ghost (HKLM-x32\...\{B0255743-165B-4BD5-8DA8-37DFB9930015}) (Version: 15.0.0.35659 - Symantec Corporation)
OpenOffice 4.1.1 (HKLM-x32\...\{503D2C42-D698-43BC-97FE-3610F4E8CDDC}) (Version: 4.11.9775 - Apache Software Foundation)
Opera Stable 32.0.1948.38 (HKLM-x32\...\Opera 32.0.1948.38) (Version: 32.0.1948.38 - Opera Software)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{6BF729A5-756B-4AA5-8721-E3B3972FEB96}) (Version: 1.00.0198 - REALTEK Semiconductor Corp.)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TightVNC (HKLM\...\{D2372F87-7DA2-47F7-A102-AF2181B8EAA2}) (Version: 2.7.10.0 - GlavSoft LLC.)
Unity (HKLM-x32\...\Unity) (Version: 5.1.2f1 - Unity Technologies ApS)
Unity Web Player (HKU\S-1-5-21-4220064015-3225715080-1381729876-1001\...\UnityWebPlayer) (Version: 5.1.3f1 - Unity Technologies ApS)
VNC Free Edition 4.1.1 (HKLM-x32\...\RealVNC_is1) (Version: 4.1.1 - RealVNC Ltd.)
Warsaw 1.11.0.42826 64 bits (HKLM\...\{20E60725-16C8-4FB9-8BC2-AF92C5F8D06D}_is1) (Version: 1.11.0.42826 - GAS Tecnologia)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman)

==================== Exame Personalizado CLSID (Whitelisted): ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Pontos de Restauração =========================

16-12-2015 05:15:45 Windows Update
19-12-2015 13:01:46 Removed Google Earth
19-12-2015 13:02:11 Removed Google Earth

==================== Hosts Conteúdo: ===============================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2015-02-04 09:53 - 2015-11-17 07:26 - 00000035 ____N C:\Windows\system32\Drivers\etc\hosts


==================== Tarefas Agendadas (Whitelisted) =============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {0E73995F-A9EA-4781-9B8C-06F1E1A0A8A7} - System32\Tasks\Opera scheduled Autoupdate 1443538791 => C:\Program Files (x86)\Opera\launcher.exe [2015-09-28] (Opera Software)
Task: {13449D2C-9522-4D39-8BAD-7EF17491F794} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {6831FA86-DB0A-410E-BF6A-D7118F01D111} - \ToolsUpdatePlatform_ScheduledTask -> Nenhum Arquivo <==== ATENÇÃO
Task: {83C6205E-ECA8-4E86-93E9-EF19E0C30AC6} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-16] (AVAST Software)
Task: {863E1F51-CA9E-46FB-9B13-D835D92A601A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-10-28] (AVAST Software)
Task: {8CC1C660-B0F3-4051-B3E9-00880B04257C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {8E16FF4D-7F30-422E-9745-8DCFD674396A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_19_0_0_185_pepper.exe [2015-09-29] (Adobe Systems Incorporated)
Task: {92D54C99-1872-46BD-8785-4073F446044A} - System32\Tasks\RealDownloader Update Check => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
Task: {BAAEF443-FED0-49B5-874D-99DAF49AD41D} - System32\Tasks\{829AD981-F71F-45C2-9CD1-82CA969E91B2} => pcalua.exe -a C:\Users\Servidor.SERVIDOR\Desktop\ZHPFix.exe -d C:\Users\Servidor.SERVIDOR\Desktop

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_19_0_0_185_pepper.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Atalhos =============================

(As entradas podem ser listadas para serem restauradas ou removidas.)

==================== Módulos Carregados (Whitelisted) ==============

2015-03-02 16:42 - 2012-09-29 14:25 - 00409088 _____ () C:\Windows\System32\HPM1210LM.DLL
2014-12-20 11:39 - 2012-09-29 14:25 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2015-10-28 11:33 - 2015-10-28 11:33 - 00103376 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-10-28 11:33 - 2015-10-28 11:33 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-12-24 13:11 - 2015-12-24 13:11 - 02806272 _____ () C:\Program Files\AVAST Software\Avast\defs\15122401\algo.dll
2009-10-15 12:13 - 2009-10-15 12:13 - 00061440 _____ () C:\Program Files (x86)\HP\HPLaserJetService\HPTools.dll
2009-10-15 12:13 - 2009-10-15 12:13 - 00964096 _____ () C:\Program Files (x86)\HP\HPLaserJetService\LEDMXMLObjects.dll
2014-12-20 11:37 - 2012-11-08 01:00 - 00082944 _____ () C:\Windows\system32\mvusbews.DLL
2015-05-09 15:53 - 2012-08-28 17:54 - 00114688 _____ () C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll
2015-10-28 11:33 - 2015-10-28 11:33 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-08-16 17:10 - 2012-06-25 11:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2015-12-17 10:37 - 2015-12-11 01:54 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libglesv2.dll
2015-12-17 10:37 - 2015-12-11 01:54 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(Se uma entrada for incluída na fixlist, somente o ADS será removido.)

AlternateDataStreams: C:\Program Files (x86)\GbPlugin:IncompleteStartProcessProtection.cnt
AlternateDataStreams: C:\Program Files (x86)\GbPlugin:u6eBQrM0Z2K3FKLVBMG8dY3IkKT2rqFO+Sf68h8fDg==
AlternateDataStreams: C:\Windows\System32:BB9600F7_Bb.gbp
AlternateDataStreams: C:\Windows\system32\Drivers\wsddfac.sys:X5ZN8aGXs4

==================== Modo de Segurança (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)


==================== EXE Associação (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.)


==================== Internet Explorer confiável/restrito ===============

(Se uma entrada for incluída na fixlist, será removida do Registro.)

IE trusted site: HKU\.DEFAULT\...\bancobrasil.com.br -> hxxps://www14.bancobrasil.com.br
IE trusted site: HKU\.DEFAULT\...\bb.com.br -> hxxps://seg.bb.com.br
IE trusted site: HKU\S-1-5-21-4220064015-3225715080-1381729876-1001\...\bancobrasil.com.br -> www.bancobrasil.com.br
IE trusted site: HKU\S-1-5-21-4220064015-3225715080-1381729876-1001\...\bb.com.br -> hxxps://seg.bb.com.br

==================== Outras Áreas ============================

(Atualmente não há nenhuma correção automática para esta seção.)

HKU\S-1-5-21-4220064015-3225715080-1381729876-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\NEWUSU\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall do Windows está desabilitado.

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

(Atualmente não há nenhuma correção automática para esta seção.)

MSCONFIG\startupfolder: C:^Users^servidor^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^TeamViewer 9.lnk => C:\Windows\pss\TeamViewer 9.lnk.Startup
MSCONFIG\startupreg: Cobian Backup 10 => "C:\Arquivos de programas\Cobian Backup 10\Cobian.exe"

==================== Regras do Firewall (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [TCP Query User{8828089B-CD53-457E-AA89-BA9EEF8495B8}C:\logtec\ltagentserver\ltagentserver.exe] => (Allow) C:\logtec\ltagentserver\ltagentserver.exe
FirewallRules: [UDP Query User{EDC1FFAE-B14A-4368-961D-002701F2C002}C:\logtec\ltagentserver\ltagentserver.exe] => (Allow) C:\logtec\ltagentserver\ltagentserver.exe
FirewallRules: [TCP Query User{8EE80626-85F6-4980-87E2-23F9C9CE2534}C:\logtec\ltconcserver\ltconcserver.exe] => (Allow) C:\logtec\ltconcserver\ltconcserver.exe
FirewallRules: [UDP Query User{FA55BC9C-E1E1-4367-831B-7A26216B4716}C:\logtec\ltconcserver\ltconcserver.exe] => (Allow) C:\logtec\ltconcserver\ltconcserver.exe
FirewallRules: [{310A3EE7-E04C-4947-A591-64CD34E7FFA4}] => (Allow) C:\Users\NEWUSU\Desktop\Steam\Steam.exe
FirewallRules: [{FB0D02A4-B6F7-4416-B9DB-363F3878AF82}] => (Allow) C:\Users\NEWUSU\Desktop\Steam\Steam.exe
FirewallRules: [{2455112F-FD89-4F26-A78E-FCF8F3C98564}] => (Allow) C:\Users\NEWUSU\Desktop\Steam\bin\steamwebhelper.exe
FirewallRules: [{0B11854D-D274-4C13-AB5F-6C31543BAB60}] => (Allow) C:\Users\NEWUSU\Desktop\Steam\bin\steamwebhelper.exe
FirewallRules: [{95E846EB-BE2D-4DEB-81EC-2EE45DD24FB1}] => (Allow) C:\Users\servidor\Desktop\FormatFactory\FFModules\Package\PFInstOnline.exe
FirewallRules: [{00699359-C049-4BF5-A0DE-3E1CCDE6A9B6}] => (Allow) C:\Users\servidor\Desktop\FormatFactory\FormatFactory.exe
FirewallRules: [{859A20B2-1E4C-42B9-9C14-BBD832941FA2}] => (Allow) C:\Program Files (x86)\PicosmosTools\PFInstOnline.exe
FirewallRules: [{2C379780-EE35-4E3D-9F86-D92FA41C9B81}] => (Allow) C:\Level Up\Combat Arms\NMService.exe
FirewallRules: [{9B984A81-7521-45EA-A099-186B0584DA31}] => (Allow) C:\Level Up\Combat Arms\NMService.exe
FirewallRules: [{5C34B819-9AEE-4C11-A677-16F42F728F3C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Dispositivos Apresentando Falhas No Gerenciador =============


==================== Erros no Log de eventos: =========================

Erros em Aplicativos:
==================
Error: (12/24/2015 03:14:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa Inicializador.exe versão 12.1.1.6 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações.

ID de Processo: e14

Hora de Início: 01d13e6e5c35576e

Hora de Término: 0

Caminho do Aplicativo: C:\Logtec\Inicializador\Inicializador.exe

Id do Relatório: ae97fcc0-aa61-11e5-9af5-94de80f1e383

Error: (12/23/2015 06:16:38 PM) (Source: ESENT) (EventID: 454) (User: )
Description: taskhost (1576) WebCacheLocal: Falha na recuperação/restauração do banco de dados com erro inesperado -510.

Error: (12/23/2015 06:16:38 PM) (Source: ESENT) (EventID: 439) (User: )
Description: taskhost (1576) WebCacheLocal: Não é possível gravar um cabeçalho oculto para o arquivo C:\Users\NEWUSU\AppData\Local\Microsoft\Windows\WebCache\V01.chk. Erro -1032.

Error: (12/23/2015 06:16:38 PM) (Source: ESENT) (EventID: 490) (User: )
Description: taskhost (1576) WebCacheLocal: Falha ao tentar abrir o arquivo "C:\Users\NEWUSU\AppData\Local\Microsoft\Windows\WebCache\V01.chk" para acesso de leitura/gravação com o erro de sistema 32 (0x00000020): "O arquivo já está sendo usado por outro processo. ". A operação de abertura do arquivo falhará com o erro -1032 (0xfffffbf8).

Error: (12/23/2015 06:16:27 PM) (Source: ESENT) (EventID: 490) (User: )
Description: taskhost (1576) WebCacheLocal: Falha ao tentar abrir o arquivo "C:\Users\NEWUSU\AppData\Local\Microsoft\Windows\WebCache\V01.chk" para acesso de leitura/gravação com o erro de sistema 32 (0x00000020): "O arquivo já está sendo usado por outro processo. ". A operação de abertura do arquivo falhará com o erro -1032 (0xfffffbf8).

Error: (12/23/2015 06:16:15 PM) (Source: ESENT) (EventID: 454) (User: )
Description: taskhost (1576) WebCacheLocal: Falha na recuperação/restauração do banco de dados com erro inesperado -510.

Error: (12/23/2015 06:16:15 PM) (Source: ESENT) (EventID: 439) (User: )
Description: taskhost (1576) WebCacheLocal: Não é possível gravar um cabeçalho oculto para o arquivo C:\Users\NEWUSU\AppData\Local\Microsoft\Windows\WebCache\V01.chk. Erro -1032.

Error: (12/23/2015 06:16:15 PM) (Source: ESENT) (EventID: 490) (User: )
Description: taskhost (1576) WebCacheLocal: Falha ao tentar abrir o arquivo "C:\Users\NEWUSU\AppData\Local\Microsoft\Windows\WebCache\V01.chk" para acesso de leitura/gravação com o erro de sistema 32 (0x00000020): "O arquivo já está sendo usado por outro processo. ". A operação de abertura do arquivo falhará com o erro -1032 (0xfffffbf8).

Error: (12/23/2015 06:16:04 PM) (Source: ESENT) (EventID: 490) (User: )
Description: taskhost (1576) WebCacheLocal: Falha ao tentar abrir o arquivo "C:\Users\NEWUSU\AppData\Local\Microsoft\Windows\WebCache\V01.chk" para acesso de leitura/gravação com o erro de sistema 32 (0x00000020): "O arquivo já está sendo usado por outro processo. ". A operação de abertura do arquivo falhará com o erro -1032 (0xfffffbf8).

Error: (12/23/2015 06:15:54 PM) (Source: ESENT) (EventID: 104) (User: )
Description: taskhost (1576) WebCacheLocal: O mecanismo de banco de dados interrompeu a instância (0) com erro (-1032).


Erros de Sistema:
=============
Error: (12/24/2015 03:50:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:50:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Warsaw File Access svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:50:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Warsaw File Access svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:49:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:49:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Warsaw File Access svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:49:45 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Falha ao carregar o(s) seguinte(s) driver(s) de início do sistema ou de inicialização:
gbpddfac
gbpddreg

Error: (12/24/2015 03:16:10 PM) (Source: BROWSER) (EventID: 8032) (User: )
Description: O serviço localizador não pôde recuperar a lista de backup muitas vezes no transporte \Device\NetBT_Tcpip_{B4DC5849-E7DC-46EC-9B58-BD47DE673BD3}.
O localizador reserva está finalizando.

Error: (12/24/2015 03:14:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:14:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Warsaw File Access svc devido ao seguinte erro:
%%2

Error: (12/24/2015 03:14:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Warsaw File Access svc devido ao seguinte erro:
%%2


CodeIntegrity:
===================================
Date: 2015-08-26 09:58:52.315
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:52.268
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:52.222
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:52.175
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:50.849
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:50.802
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:50.755
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:50.708
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:49.258
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2015-08-26 09:58:49.211
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\NEWUSU\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Informações da Memória ===========================

Processador: Intel(R) Pentium(R) CPU G2030 @ 3.00GHz
Percentagem de memória em uso: 43%
RAM física total: 3989.46 MB
RAM física disponível: 2258.44 MB
Virtual Total: 7977.13 MB
Virtual disponível: 6083.35 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:373.33 GB) NTFS

==================== MBR & Tabela de Partições ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F0146396)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== Fim de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité