cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame Adicional Farbar Recovery Scan Tool (x86) Versão:21-02-2016 01
Executado por Joao (2016-02-23 08:30:05)
Executando a partir de C:\Users\Joao\Desktop
Microsoft Windows 7 Professional Service Pack 1 (X86) (2015-03-07 16:05:23)
Modo da Inicialização: Normal
==========================================================


==================== Contas: =============================

Administrador (S-1-5-21-48089091-2623837105-114055649-500 - Administrator - Disabled)
Convidado (S-1-5-21-48089091-2623837105-114055649-501 - Limited - Disabled)
Joao (S-1-5-21-48089091-2623837105-114055649-1001 - Administrator - Enabled) => C:\Users\Joao
UpdatusUser (S-1-5-21-48089091-2623837105-114055649-1002 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-48089091-2623837105-114055649-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Português (HKLM\...\{AC76BA86-7AD7-1046-7B44-AC0F074E4100}) (Version: 15.010.20059 - Adobe Systems Incorporated)
Adobe Flash Player 20 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 20.0.0.306 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.22 - Atheros Communications Inc.)
Atualizações da NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
AutoCAD 2010 - English (HKLM\...\AutoCAD 2010 - English) (Version: 18.0.55.0 - Autodesk)
AutoCAD 2010 - English (Version: 18.0.55.0 - Autodesk) Hidden
AutoCAD 2010 Language Pack - English (Version: 18.0.55.0 - Autodesk) Hidden
Autodesk DWF Viewer (HKLM\...\Autodesk DWF Viewer) (Version: 6.5 - Autodesk, Inc.)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.7 - Autodesk, Inc.)
Compiled Driver Disk(Motorola) 1.0 (HKLM\...\{3DCF00F5-04A5-4543-A088-705480811202}_is1) (Version: 1.0.8.0 - COMPELSON Labs)
CutePDF Writer 3.0 (HKLM\...\CutePDF Writer Installation) (Version: 3.0 - Acro Software Inc.)
ESET NOD32 Antivirus (HKLM\...\{A1A01D26-AF53-42C0-9DAE-1BC2FCC68812}) (Version: 8.0.304.0 - ESET, spol s r. o.)
ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - )
FormatFactory 3.8.0.0 (HKLM\...\FormatFactory) (Version: 3.8.0.0 - Free Time)
Google Chrome (HKLM\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.)
Google Drive (HKLM\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.)
Google SketchUp 8 (HKLM\...\{6B5F92BB-4272-4A69-B39B-EED000BC6192}) (Version: 3.0.14372 - Google, Inc.)
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
HP Deskjet 2050 J510 series Ajuda (HKLM\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard)
HP Deskjet 2050 J510 series Estudo de aprimoramento de produtos (HKLM\...\{D63C6E54-882C-478B-91AB-53D1E89C80BA}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Deskjet 2050 J510 series Software básico do dispositivo (HKLM\...\{6A653EE1-F8B9-4885-BB4A-E9D9481F626C}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Java 8 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
K-Lite Mega Codec Pack 9.8.0 (HKLM\...\KLiteCodecPack_is1) (Version: 9.8.0 - )
MCESimplificado (HKLM\...\ST6UNST #1) (Version: - )
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Português do Brasil) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1046) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Motorola Device Manager (HKLM\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.5.4 - Motorola Mobility)
Motorola Device Software Update (Version: 13.09.3001 - Motorola Mobility) Hidden
Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{BA562260-B4FA-4D87-ADC5-963783028C68}) (Version: 6.4.0 - Motorola Mobility LLC)
Mozilla Firefox 44.0.2 (x86 pt-BR) (HKLM\...\Mozilla Firefox 44.0.2 (x86 pt-BR)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
No-IP DUC (HKLM\...\NoIPDUC) (Version: 4.1.1 - Vitalwerks Internet Solutions LLC)
NVIDIA Driver de gráficos 309.08 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 309.08 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation)
OLYMPUS CAMEDIA Master 4.2 (HKLM\...\{30BB4D60-81DB-11D5-BB77-00400536ABAC}) (Version: - )
Painel de controle da NVIDIA 309.08 (Version: 309.08 - NVIDIA Corporation) Hidden
Platform (Version: 1.39 - VIA Technologies, Inc.) Hidden
QuickTime (HKLM\...\QuickTime) (Version: - )
SketchUp 2015 (HKLM\...\{989CF309-4CB7-49F9-8B77-2CD9E9EE5BF2}) (Version: 15.0.9351 - Trimble Navigation Limited)
SpyHunter 4 (HKLM\...\SpyHunter) (Version: 4.21.18.4608 - Enigma Software Group, LLC)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VIA Gerenciador de dispositivo de plataforma (HKLM\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.)
Web View Ctrl version 1.0.2.11 (HKLM\...\{3F76DB94-6C4E-42AC-BD74-64E103174FE7}_is1) (Version: 1.0.2.11 - )
WinRAR 4.11 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
ZHPFix 2015 (HKLM\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman)

==================== Exame Personalizado CLSID (Whitelisted): ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

CustomCLSID: HKU\S-1-5-21-48089091-2623837105-114055649-1001_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-48089091-2623837105-114055649-1001_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-48089091-2623837105-114055649-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\AutoCAD 2010\acadficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-48089091-2623837105-114055649-1002_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-48089091-2623837105-114055649-1002_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-48089091-2623837105-114055649-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\AutoCAD 2010\acadficn.dll (Autodesk, Inc.)

==================== Tarefas Agendadas (Whitelisted) =============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {10F59E4A-E471-4984-95B1-0CAB22C3F368} - System32\Tasks\Motorola Device Manager Update => C:\Program Files\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] ()
Task: {178BB9D7-CEDC-4288-952A-CCDA3885895D} - System32\Tasks\ESET Windows 10 upgrade – Refresh settings => C:\Program Files\Common Files\AV\ESET NOD32 Antivirus 8.0\upgrade.exe [2015-11-23] (ESET)
Task: {183851EB-51DB-464E-90A8-9B7C6E9A74D3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {21B3AE34-9B2A-4689-8B02-292EED6EBF6F} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] ()
Task: {24E8D136-5727-404E-B93F-15A151D4FDB6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10] (Adobe Systems Incorporated)
Task: {3A3C7100-E016-42DE-B9BE-F5699D39563E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {50F32F48-9A8F-4733-B585-A4DEA176289D} - System32\Tasks\GoogleUpdateTaskMachineUA1d0bfbc4ad17430 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {6203F625-5062-4992-9047-13DC8EA05AA3} - System32\Tasks\GoogleUpdateTaskMachineCore1d08fdd1e7a5b40 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {68BC9CC0-6BDC-4D8F-95A2-A4D74DDD3536} - System32\Tasks\GoogleUpdateTaskMachineUA1d08fdd1ea16b40 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {7F3D8344-C222-40C6-BE77-DDA2CF135FCA} - System32\Tasks\GoogleUpdateTaskMachineUA1d0f09b10362f40 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {8A1D45BB-5CE6-4D4A-A7CF-90480C723B87} - System32\Tasks\GoogleUpdateTaskMachineUA1d15dd045d477e0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {8C5F58AC-C031-4A1D-8FC3-56E930BE42CF} - System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPCustPartic.exe [2012-10-02] (Hewlett-Packard Co.)
Task: {9B77C53A-8CA1-434A-9B57-9CA2B71584D7} - System32\Tasks\GoogleUpdateTaskMachineCore1d15dd045b58600 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {ABA95E74-682E-48CD-B83E-26E15D959545} - System32\Tasks\ByteFence Scan => C:\Program Files\ByteFence\ByteFence.exe
Task: {B2CF3318-EFA3-4A3D-943B-FA2FF153CB37} - System32\Tasks\ASUS Patch for VIA Audio => C:\Windows\system32\AsPatchViaAudio.exe [2012-11-07] (ASUSTek Computer INC.)
Task: {CE817CF6-F0B8-420C-AF9A-D73D9329E5B5} - System32\Tasks\GoogleUpdateTaskMachineUA1d12e78b9c7bfe0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {D408108C-9B8D-4044-B0B1-E75BD3760B8F} - System32\Tasks\GoogleUpdateTaskMachineCore1d12e78b99361a0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {E4EA9C9D-A9A6-45E9-B357-0AD62752FF41} - System32\Tasks\IR7 => cmd.exe /c cscript.exe /b C:\Windows\System32\slmgr.vbs /rearm && net stop sppsvc && net start sppsvc
Task: {E51D5FE9-2109-4C90-84DE-71FD9E457877} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bfbc4aa43a10 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {E801D3BB-B9BC-4AE5-B43B-62C4F07F22B8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)
Task: {FF53552A-D679-46C0-9F0E-851F6FBAB2E2} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e4316e25e4e0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-03-07] (Google Inc.)

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d08fdd1e7a5b40.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0bfbc4aa43a10.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d12e78b99361a0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d15dd045b58600.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d08fdd1ea16b40.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0bfbc4ad17430.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0e4316e25e4e0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0f09b10362f40.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d12e78b9c7bfe0.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d15dd045d477e0.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Atalhos =============================

(As entradas podem ser listadas para serem restauradas ou removidas.)

==================== Módulos Carregados (Whitelisted) ==============

2015-03-07 13:37 - 2015-01-30 21:48 - 00078480 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2015-03-07 13:28 - 2013-10-23 15:23 - 00089136 _____ () C:\Windows\System32\cpwmon2k.dll
2014-04-07 11:31 - 2014-04-07 11:31 - 00172032 _____ () C:\Program Files\Motorola Mobility\Motorola Device Manager\css_core.dll
2015-06-26 13:12 - 2012-11-30 17:55 - 00080504 ____R () C:\Program Files\VIA\VIAudioi\VDeck\QsApoApi.dll
2015-06-26 13:12 - 2012-11-30 17:55 - 00113272 ____R () C:\Program Files\VIA\VIAudioi\VDeck\Dts2ApoApi.dll
2016-01-25 13:12 - 2014-09-11 17:09 - 01498112 _____ () C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2016-01-25 13:12 - 2014-05-19 16:19 - 00137728 _____ () C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2016-02-23 07:47 - 2016-02-23 07:47 - 00098816 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32api.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00110080 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\pywintypes27.dll
2016-02-23 07:47 - 2016-02-23 07:47 - 00364544 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\pythoncom27.dll
2016-02-23 07:47 - 2016-02-23 07:47 - 00320512 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32com.shell.shell.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00776704 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_hashlib.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 01176576 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._core_.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00806400 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._gdi_.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00816128 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._windows_.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 01067008 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._controls_.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00733184 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._misc_.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00682496 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\pysqlite2._sqlite.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00088064 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_ctypes.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00119808 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32file.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00108544 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32security.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00007168 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\hashobjs_ext.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00017920 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\thumbnails_ext.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00088064 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\usb_ext.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00167936 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32gui.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00018432 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32event.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00046080 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_socket.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 01208320 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_ssl.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00128512 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_elementtree.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00127488 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\pyexpat.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00013824 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\common.time34.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00036864 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_psutil_windows.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00038912 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32inet.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00525240 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\windows._lib_cacheinvalidation.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00011264 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32crypt.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00077312 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._html2.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00027136 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_multiprocessing.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00020480 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\_yappi.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00035840 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32process.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00686080 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\unicodedata.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00078848 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._animate.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00123392 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\wx._wizard.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00024064 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32pipe.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00010240 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\select.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00025600 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32pdh.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00017408 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32profile.pyd
2016-02-23 07:47 - 2016-02-23 07:47 - 00022528 _____ () C:\Users\Joao\AppData\Local\Temp\_MEI22362\win32ts.pyd
2015-07-20 12:34 - 2015-07-20 12:34 - 00012288 _____ () C:\Program Files\No-IP\ducservice.exe
2015-07-20 12:34 - 2015-07-20 12:34 - 00073728 _____ () C:\Program Files\No-IP\ducapi.dll

==================== Alternate Data Streams (Whitelisted) =========

(Se uma entrada for incluída na fixlist, somente o ADS será removido.)


==================== Modo de Segurança (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)


==================== EXE Associação (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.)


==================== Internet Explorer confiável/restrito ===============

(Se uma entrada for incluída na fixlist, será removida do Registro.)


==================== Hosts Conteúdo: ==========================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2009-07-13 23:04 - 2016-02-21 17:15 - 00001235 ____N C:\Windows\system32\Drivers\etc\hosts

0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
0.0.0.0 media.opencandy.com
0.0.0.0 cdn.opencandy.com
0.0.0.0 tracking.opencandy.com
0.0.0.0 api.opencandy.com
0.0.0.0 api.recommendedsw.com
0.0.0.0 installer.betterinstaller.com
0.0.0.0 installer.filebulldog.com
0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
0.0.0.0 inno.bisrv.com
0.0.0.0 nsis.bisrv.com
0.0.0.0 cdn.file2desktop.com
0.0.0.0 cdn.goateastcach.us
0.0.0.0 cdn.guttastatdk.us
0.0.0.0 cdn.inskinmedia.com
0.0.0.0 cdn.insta.oibundles2.com
0.0.0.0 cdn.insta.playbryte.com
0.0.0.0 cdn.llogetfastcach.us
0.0.0.0 cdn.montiera.com
0.0.0.0 cdn.msdwnld.com
0.0.0.0 cdn.mypcbackup.com
0.0.0.0 cdn.ppdownload.com
0.0.0.0 cdn.riceateastcach.us
0.0.0.0 cdn.shyapotato.us
0.0.0.0 cdn.solimba.com
0.0.0.0 cdn.tuto4pc.com
0.0.0.0 cdn.appround.biz
0.0.0.0 cdn.bigspeedpro.com
0.0.0.0 cdn.bispd.com

Existem ainda 4 mais linhas.


==================== Outras Áreas ============================

(Atualmente não há nenhuma correção automática para esta seção.)

HKU\S-1-5-21-48089091-2623837105-114055649-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Joao\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall do Windows está habilitado.

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

(Atualmente não há nenhuma correção automática para esta seção.)

MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\qttask.exe" -atboottime

==================== Regras do Firewall (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{129CFD71-6269-43F9-B778-D8147B9793BD}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{0F352677-5FD6-451B-8772-6EAF8061CBF3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{67C02689-337A-4624-A4BB-C645B0247D12}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{00A1ACA2-E765-42B0-A72E-FC182FE93DC4}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{3DE185DE-B18D-4089-AF7A-A033C91B879B}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{E4DB62DD-27C3-4E44-887C-83688704853D}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{930628F0-DC6F-45AF-973E-B47684E9DA2B}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Pontos de Restauração =========================


==================== Dispositivos Apresentando Falhas No Gerenciador =============


==================== Erros no Log de eventos: =========================

Erros em Aplicativos:
==================
Error: (02/23/2016 08:17:37 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Falha do Agendador de Ativação de Licença (sppuinotify.dll) com o seguinte código de erro:
0x80070005

Error: (02/23/2016 07:52:38 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Falha do Agendador de Ativação de Licença (sppuinotify.dll) com o seguinte código de erro:
0x80070005

Error: (02/23/2016 07:48:52 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/23/2016 07:47:01 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Falha de ativação da licença do Windows. Erro 0x80070005.

Error: (02/22/2016 07:14:24 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Falha do Agendador de Ativação de Licença (sppuinotify.dll) com o seguinte código de erro:
0x80070005

Error: (02/22/2016 06:49:25 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Falha do Agendador de Ativação de Licença (sppuinotify.dll) com o seguinte código de erro:
0x80070005

Error: (02/22/2016 06:45:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/22/2016 06:43:45 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Falha de ativação da licença do Windows. Erro 0x80070005.

Error: (02/22/2016 04:00:15 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Falha do Agendador de Ativação de Licença (sppuinotify.dll) com o seguinte código de erro:
0x80070005

Error: (02/22/2016 03:25:16 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Falha do Agendador de Ativação de Licença (sppuinotify.dll) com o seguinte código de erro:
0x80070005


Erros de Sistema:
=============
Error: (02/23/2016 07:52:38 AM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/23/2016 07:47:44 AM) (Source: volsnap) (EventID: 36) (User: )
Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário.

Error: (02/23/2016 07:47:35 AM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 06:49:25 PM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 06:44:21 PM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 02:00:16 PM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 01:55:12 PM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 08:47:26 AM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 08:42:22 AM) (Source: DCOM) (EventID: 10001) (User: )
Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

Error: (02/22/2016 07:39:31 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: O serviço Serviço da Lista de Redes depende do serviço Reconhecimento de Locais de Rede, mas não foi possível iniciá-lo devido ao seguinte erro:
%%1068


CodeIntegrity:
===================================
Date: 2015-03-18 13:14:47.187
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appid.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:47.150
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appid.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:47.113
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appid.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:47.076
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appid.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:45.534
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appidapi.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:45.498
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appidapi.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:45.461
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appidapi.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-18 13:14:45.424
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appidapi.dll because the set of per-page image hashes could not be found on the system.

Date: 2015-03-08 17:45:04.772
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appid.sys because the set of per-page image hashes could not be found on the system.

Date: 2015-03-08 17:45:04.679
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.18574_none_591283e7109a2658\appid.sys because the set of per-page image hashes could not be found on the system.


==================== Informações da Memória ===========================

Processador: AMD Athlon(tm) II X4 620 Processor
Percentagem de memória em uso: 81%
RAM física total: 1791.43 MB
RAM física disponível: 329.63 MB
Virtual Total: 3582.86 MB
Virtual disponível: 2109.09 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.56 GB) (Free:7.05 GB) NTFS
Drive d: () (Fixed) (Total:443.23 GB) (Free:431.5 GB) NTFS
Drive e: () (Fixed) (Total:488.18 GB) (Free:425.83 GB) NTFS
Drive g: (Reservado pelo Sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[sistema com componentes de inicialização (obtido através de drive)]

==================== MBR & Tabela de Partições ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 55.9 GB) (Disk ID: AC659FBA)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=55.6 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 1C98BFAE)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=488.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=443.2 GB) - (Type=07 NTFS)

==================== Fim de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité