Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-10-2015 Ran by Gustavo (2015-10-09 22:15:58) Running from C:\Users\Gustavo\Downloads Windows 8.1 Single Language (X64) (2014-12-04 10:32:52) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrador (S-1-5-21-2311927973-3537350689-1432087344-500 - Administrator - Disabled) Convidado (S-1-5-21-2311927973-3537350689-1432087344-501 - Limited - Enabled) => C:\Users\Convidado Gustavo (S-1-5-21-2311927973-3537350689-1432087344-1002 - Administrator - Enabled) => C:\Users\Gustavo UpdatusUser (S-1-5-21-2311927973-3537350689-1432087344-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton Internet Security (Disabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB} AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Internet Security (Disabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66} FW: Norton Internet Security (Disabled) {6BFC5632-188D-B806-D13E-C607121B42A0} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat Reader DC - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated) Baidu Browser (HKLM-x32\...\Spark) (Version: 33.12 Preview - Baidu Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.15 - Piriform) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.0.1912 - CyberLink Corp.) CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4421.02 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dropbox (HKLM-x32\...\Dropbox) (Version: 3.10.7 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.27.35 - Dropbox, Inc.) Hidden Easy File Share (HKLM-x32\...\{A7C37D4B-F37A-42E8-9B6A-B28C18AD4C12}) (Version: 1.3.4 - Samsung Electronics CO.,LTD.) E-POP (HKLM-x32\...\{F06DD8D9-9DC8-430C-835C-C9BF21E05CC1}) (Version: 1.0.1 - Samsung Electronics CO., LTD.) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Foto-galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Fotoğraf Galerisi (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galeria de Fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Galería de fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Giesecke & Devrient GmbH StarSign CUT (HKLM-x32\...\SZCCID) (Version: 1.7.17.0 - Giesecke & Devrient GmbH) Giesecke & Devrient GmbH StarSign CUT (x32 Version: 1.7.17.0 - Giesecke & Devrient GmbH) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Hao123-Client (HKU\S-1-5-21-2311927973-3537350689-1432087344-1002\...\hao123desk-br) (Version: 1.0.0.1111 - Baidu Online Network Technology (Beijing) Co., Ltd.) <==== ATTENTION Help Desk (HKLM\...\{D93F0B49-12AA-4AE6-8349-0ECB13B9532F}) (Version: 1.0.5 - Samsung Electronics CO., LTD.) Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33070) (Version: 3.6.1.33070.11 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3368 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.2.1001 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) istartsurf uninstall (HKLM-x32\...\istartsurf uninstall) (Version: - istartsurf) <==== ATTENTION Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.650 - Oracle) Jungle Net (HKLM-x32\...\Jungle Net) (Version: 2.0.5758.12100 - Jungle Net) <==== ATTENTION LibreOffice 4.2.5.2 (HKLM-x32\...\{93AD8CBD-C32E-4318-90BB-A294BE2D712C}) (Version: 4.2.5.2 - The Document Foundation) Malwarebytes Anti-Malware versão 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.163.2 - McAfee, Inc.) Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft Office 365 - pt-br (HKLM\...\O365HomePremRetail - pt-br) (Version: 15.0.4753.1003 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-2311927973-3537350689-1432087344-1001\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-2311927973-3537350689-1432087344-1002\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Mozilla Firefox 40.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 40.0.2 (x86 en-US)) (Version: 40.0.2 - Mozilla) Norton Internet Security (HKLM-x32\...\NIS) (Version: 20.6.0.27 - Symantec Corporation) Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.2.3.45 - Symantec Corporation) Norton Online Backup ARA (x32 Version: 4.1.0.11 - Symantec Corporation) Hidden NVIDIA Graphics Driver 305.46 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 305.46 - NVIDIA Corporation) NVIDIA PhysX System Software 9.12.0613 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0613 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4753.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4753.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4753.1003 - Microsoft Corporation) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.206 - Qualcomm Atheros Communications) Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6699 - Realtek Semiconductor Corp.) Recovery (HKLM-x32\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 6.0.6.5 - Samsung Electronics CO., LTD.) S Agent (Version: 1.0.7 - Samsung Electronics CO., LTD.) Hidden SafeSign 64-bits (HKLM\...\{66913111-2F8A-4950-AA93-51C26182FC35}) (Version: 3.0.45 - A.E.T. Europe B.V.) Settings (HKLM-x32\...\{52E5DE60-C96B-42CC-9A37-FE04725940AE}) (Version: 2.0.0 - Samsung Electronics CO., LTD.) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.12 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.) Support Center (HKLM\...\{AC0273F1-68A3-42CF-B487-C594B0A92F8D}) (Version: 2.0.12 - Samsung Electronics CO., LTD.) Support Center FAQ (x32 Version: 1.0.5 - Samsung Electronics CO., LTD.) Hidden SW Update (HKLM-x32\...\{D2B5F1E3-EA56-4D84-A453-A213B32974CB}) (Version: 2.1.25 - Samsung Electronics CO., LTD.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.11.1 - Synaptics Incorporated) The Desktop Weather 2.0 (HKLM\...\WeatherTool) (Version: 2.0.0.10766 - ShenZhen Enode Techology co,.Ltd) Unity Web Player (HKU\S-1-5-21-2311927973-3537350689-1432087344-1001\...\UnityWebPlayer) (Version: - Unity Technologies ApS) User Guide (HKLM-x32\...\{9914AD8E-C0D6-420D-BEF6-40BF4DEDE3BA}) (Version: 1.2.00 - Samsung Electronics CO., LTD.) VALID 1.4.01.2 (HKLM-x32\...\{D32F77F7-2906-46F9-ABFF-A4A4EB26BFE}_is1) (Version: 1.4.01.2 - Valid Certificadora Digital) Video Downloader version 2.0 (HKLM-x32\...\Video Downloader_is1) (Version: 2.0 - ) Windows Driver Package - Samsung Electronics Co. Ltd. (RadioHIDMini) HIDClass (07/27/2012 20.57.1.735) (HKLM\...\9F04C462DAB591BDCCE784F77E4D4F1736010B92) (Version: 07/27/2012 20.57.1.735 - Samsung Electronics Co. Ltd.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3503.0728 - Microsoft Corporation) YouTube Accelerator (HKLM-x32\...\YouTube Accelerator) (Version: 3394(build_80) - Goobzo Ltd.) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2311927973-3537350689-1432087344-1002_Classes\CLSID\{0783EB25-59F8-4F02-B6B0-F1D4349F0013}\InprocServer32 -> C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\npsf_uni_64.dll (GAS Tecnologia) CustomCLSID: HKU\S-1-5-21-2311927973-3537350689-1432087344-1002_Classes\CLSID\{0783EB25-59F8-4F02-B6B1-F1D4349F0013}\InprocServer32 -> C:\Users\Gustavo\AppData\Local\GAS Tecnologia\GBBD\npsf_uni_64.dll (GAS Tecnologia) ==================== Restore Points ========================= 22-09-2015 00:31:47 Instalador de Módulos do Windows 24-09-2015 16:40:52 Installed Giesecke & Devrient GmbH StarSign CUT 05-10-2015 14:56:47 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2014-03-03 13:43 - 2015-09-14 13:45 - 00000855 ____N C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 d3oxij66pru1i3.cloudfront.net 0.0.0.1 mssplus.mcafee.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0CDBFFEF-BA15-46BE-911F-195B52243E4B} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe Task: {0FAE6BAF-6EA5-4E42-960C-A1F89A34CD9C} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {1E2B1AAA-9AC9-4BDF-934A-4F787BC686CE} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-12] (Synaptics Incorporated) Task: {273A5093-B17E-4BB2-938E-C933FABE5D3E} - System32\Tasks\SparkUpdater => C:\Program Files (x86)\baidu\Spark\SparkUpdate.exe [2015-08-17] (Baidu.com, Inc.) Task: {5518F319-4357-4A4A-91D2-D8C98B9BCFBA} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-22] (Adobe Systems Incorporated) Task: {5CF534E2-9396-42EF-9926-FA42D3FB850D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-09-11] (Microsoft Corporation) Task: {5CF8C7AB-2C79-428F-8E3C-0EFDC44207BE} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2012-08-17] (Samsung Electronics CO., LTD.) Task: {633E1923-B922-40F2-AA0A-4E3BA161BD2E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-09-11] (Microsoft Corporation) Task: {7350331F-3AA0-4ABA-A75E-97BFBD68DE86} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-07-29] (Dropbox, Inc.) Task: {899619B1-5CB5-45D1-9341-3A032FC53DF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-10] (Google Inc.) Task: {91EE61BD-F68C-42E6-AC6E-A8FF1FD1B71B} - System32\Tasks\FF Watcher {6C3B2C83-B45F-43F1-8E07-8B538ED9F1AE} => C:\Program Files\V-bates\PrefHelper.exe <==== ATTENTION Task: {95DC2913-4CEA-4009-9A82-D0930EB26FB5} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-26] (Microsoft Corporation) Task: {A0ECE448-A897-4FF3-BC14-A4C0C4001599} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {A6E950CF-85B3-4856-B5C5-7D222893E973} - System32\Tasks\Settings => C:\Program Files (x86)\Samsung\Settings\sSettings.exe [2012-09-05] (Samsung Electronics CO., LTD.) Task: {ADB8FF09-8692-44F7-A86E-2749BE8563FA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {B17FFA46-1114-4802-B402-F382517D5C7B} - System32\Tasks\{35207827-183E-4A38-B65C-5490330BFE42} => pcalua.exe -a "C:\Users\Gustavo\AppData\Local\Temp\Temp1_X-PlaneDemoInstallerWindows (1).zip\X-Plane Demo Installer Windows.exe" Task: {B38520C4-5CA3-45EC-A6B9-AD48ACD1C6D8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {B961C412-8D8A-44B5-8466-9768D0134EE5} - System32\Tasks\advRecovery => C:\Program Files\Samsung\Recovery\WCScheduler.exe [2012-09-16] (SEC) Task: {CB1CB265-C8C1-4DC0-9164-CF61EBBD67D7} - System32\Tasks\UNELEVATE_25874 => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.202\jsdrv.exe <==== ATTENTION Task: {CEB938AA-6271-47B0-B5FF-48BE52EDD2FE} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\SymErr.exe [2013-06-03] (Symantec Corporation) Task: {D3C497FA-3751-4A05-94F3-B7A6417A5171} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\SymErr.exe [2013-06-03] (Symantec Corporation) Task: {D3EF1224-4774-4769-BD1D-43C9659D5F59} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\WSCStub.exe [2015-07-27] (Symantec Corporation) Task: {DC02D29F-EAF5-4227-A81B-469E2F9A8456} - \BonanzaDealsLiveUpdateTaskMachineCore -> No File <==== ATTENTION Task: {E0362E8E-61DF-4D58-9F30-5620487D315C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-10] (Google Inc.) Task: {E07C78A4-B054-455E-8DB3-E41857E8732E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-07-29] (Dropbox, Inc.) Task: {E3C36E44-C2C9-4483-A7CB-4F57B9C1A64F} - System32\Tasks\WLANStartup => C:\Program Files (x86)\Samsung\Easy Settings\WLANStartup.exe Task: {E49D304E-0BD2-4F71-A32A-B2BAAC3D8D22} - \BonanzaDealsLiveUpdateTaskMachineUA -> No File <==== ATTENTION Task: {F2002432-F20C-4D7F-9510-28B1D2EA08C8} - \BonanzaDealsUpdate -> No File <==== ATTENTION Task: {F7D12CE1-4366-4105-9303-086F483C2B08} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-09-11] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\FF Watcher {6C3B2C83-B45F-43F1-8E07-8B538ED9F1AE}.job => C:\Program Files\V-bates\PrefHelper.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\SPBIW_UpdateTask_Time_323538383431393532392d454a2a415034412a4a6c575a.job => Wscript.exe S/B C:\ProgramData\ShopperPro\spbihe.js spbiu.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Loaded Modules (Whitelisted) ============== 2014-10-24 09:24 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-11-19 12:38 - 2014-11-19 12:38 - 00186368 _____ () C:\Program Files (x86)\0892CCEA-3029-46F2-BD98-F3177431F5F8\xtloowpkjv64.exe 2014-11-19 12:38 - 2014-11-19 12:38 - 00110080 _____ () C:\Program Files (x86)\0892CCEA-3029-46F2-BD98-F3177431F5F8\nfapi.dll 2014-11-19 12:38 - 2014-11-19 12:38 - 00471040 _____ () C:\Program Files (x86)\0892CCEA-3029-46F2-BD98-F3177431F5F8\ProtocolFilters.dll 2015-10-01 15:18 - 2015-10-01 15:18 - 00185800 _____ () C:\Users\Gustavo\AppData\Local\Crsoft\crsvc.exe 2015-09-08 13:21 - 2015-09-08 13:21 - 00142792 _____ () C:\Users\Gustavo\AppData\Roaming\DNSHelper\DNSSVC.exe 2015-07-21 03:47 - 2015-07-21 03:47 - 00149752 _____ () C:\Program Files (x86)\WeatherTool\2.0.0.10766\WeatherService.exe 2014-07-23 22:42 - 2014-07-23 22:42 - 00709120 _____ () C:\Program Files\005\vulsrsebjh64.exe 2012-09-05 04:50 - 2012-09-05 04:50 - 00085112 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe 2015-07-21 03:48 - 2015-07-21 03:48 - 01043912 _____ () C:\Program Files (x86)\WeatherTool\2.0.0.10766\WeatherEntryDll.dll 2014-03-20 06:53 - 2014-03-20 06:53 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-08-10 06:28 - 2012-08-10 06:28 - 00384128 _____ () C:\Program Files (x86)\Bluetooth Suite\ContactsApi.dll 2012-08-10 06:22 - 2012-08-10 06:22 - 00020992 _____ () C:\Program Files (x86)\Bluetooth Suite\L10n\pt-BR\BtTray.pt-BR.dll 2012-09-14 07:18 - 2012-09-14 07:18 - 04238968 _____ () C:\Program Files\Samsung\Support Center\GuaranaAgent.exe 2015-10-07 14:47 - 2015-10-09 12:58 - 00613600 _____ () C:\Program Files (x86)\Common Files\31f7a620-acbd-4f84-82db-5e231b8ad5de\updater.exe 2015-10-07 13:44 - 2015-10-09 13:03 - 01048288 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugincontainer.exe 2015-10-09 13:05 - 2015-10-09 13:05 - 01001696 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\10\plugin.exe 2015-10-09 13:05 - 2015-10-09 13:05 - 01706208 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\2\plugin.exe 2015-10-09 13:05 - 2015-10-09 13:05 - 01296608 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\5\plugin.exe 2015-10-09 13:05 - 2015-10-09 13:05 - 00638688 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\12\plugin.exe 2015-10-09 13:05 - 2015-10-09 13:05 - 01266912 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\3\plugin.exe 2015-10-09 13:05 - 2015-10-09 13:05 - 00988896 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\7\plugin.exe 2015-10-09 14:20 - 2015-10-09 14:20 - 01254624 _____ () C:\ProgramData\31f7a620-acbd-4f84-82db-5e231b8ad5de\plugins\8\plugin.exe 2014-12-09 10:41 - 2012-05-30 03:51 - 00699280 ____R () C:\PROGRAM FILES (X86)\NORTON INTERNET SECURITY\ENGINE\20.6.0.27\wincfi39.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00211064 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\WinCRT.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00028792 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdWrapper.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 01012856 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmd.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00110712 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsBase.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00056440 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\HookDllPS2.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00026744 _____ () C:\Program Files (x86)\Samsung\Settings\EasySettingsAPI.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00110712 _____ () C:\Program Files (x86)\Samsung\Settings\EasySettingsBase.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00060536 _____ () C:\Program Files (x86)\Samsung\Settings\EasyMovieEnhancer.dll 2012-09-05 04:50 - 2012-09-05 04:50 - 00103544 _____ () C:\Program Files (x86)\Samsung\Settings\EasySettingsCmdClient.dll 2012-10-09 04:31 - 2012-06-08 00:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-07 23:34 - 2012-06-07 23:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2015-10-08 12:34 - 2015-10-08 12:34 - 00071168 _____ () c:\users\gustavo\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxeexzw.dll 2015-08-14 14:55 - 2015-09-23 20:07 - 00012800 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick.2\qtquick2plugin.dll 2015-08-14 14:55 - 2015-09-23 20:07 - 00779776 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-08-14 14:55 - 2015-09-23 20:07 - 00056320 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-08-14 14:55 - 2015-09-23 20:07 - 00012288 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Window.2\windowplugin.dll 2015-01-30 15:26 - 2015-08-17 13:43 - 01018168 _____ () C:\Program Files (x86)\baidu\Spark\bdxui.dll 2015-10-09 13:06 - 2015-10-09 13:05 - 00533216 _____ () C:\Users\Gustavo\AppData\Local\Temp\{D3EEE245-CD00-4077-8741-5B69AA8445F2}.dll 2015-10-09 14:49 - 2015-10-09 13:05 - 00055520 _____ () C:\Users\Gustavo\AppData\Local\Temp\{3AF6DD4E-06E2-48FA-880C-6ADFEB43A7E2}.xpi 2015-09-29 13:39 - 2015-09-23 23:34 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\libglesv2.dll 2015-09-29 13:39 - 2015-09-23 23:34 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\libegl.dll 2015-09-29 13:39 - 2015-09-23 23:34 - 16487752 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:56E2E879 AlternateDataStreams: C:\Users\Gustavo\OneDrive:ms-properties AlternateDataStreams: C:\Users\Todos os Usuários\Temp:56E2E879 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-2311927973-3537350689-1432087344-1001\...\itau.com.br -> bankline.itau.com.br IE trusted site: HKU\S-1-5-21-2311927973-3537350689-1432087344-1002\...\itau.com.br -> bankline.itau.com.br ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2311927973-3537350689-1432087344-1001\Control Panel\Desktop\\Wallpaper -> HKU\S-1-5-21-2311927973-3537350689-1432087344-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Gustavo\Desktop\Chapada dos Veadeiros\G2776243.JPG DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 0) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "BtvStack" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run32: => "RemoteControl10" HKLM\...\StartupApproved\Run32: => "Baidu Antivirus" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-2311927973-3537350689-1432087344-1001\...\StartupApproved\StartupFolder: => "Enviar para o OneNote.lnk" HKU\S-1-5-21-2311927973-3537350689-1432087344-1002\...\StartupApproved\StartupFolder: => "Enviar para o OneNote.lnk" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{9A76FCDD-2C62-4B8B-920D-1AB5DB1CF8FE}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [UDP Query User{D6AEE7BF-6F18-40C6-83AA-139ED1A92A2E}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [TCP Query User{E7A9F941-D171-46DC-AB91-24ED79BFE78D}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [UDP Query User{46A1C290-4410-46D2-8EF8-06824D1B1BC0}C:\users\convidado\appdata\local\facebook\video\skype\facebookvideocalling.exe] => (Block) C:\users\convidado\appdata\local\facebook\video\skype\facebookvideocalling.exe FirewallRules: [TCP Query User{B0553813-A3A4-4796-B8D1-777320FA2012}C:\users\convidado\appdata\local\facebook\video\skype\facebookvideocalling.exe] => (Block) C:\users\convidado\appdata\local\facebook\video\skype\facebookvideocalling.exe FirewallRules: [{B04209C1-01C8-4CCA-BD60-18AB82967BE2}] => (Allow) C:\Program Files (x86)\Samsung\Easy File Share\EasyFileShare.EXE FirewallRules: [{D0F26087-D198-4F53-A277-0188A5417D34}] => (Allow) C:\Program Files (x86)\Samsung\Easy File Share\EasyFileShare.EXE FirewallRules: [{F5E6D503-2208-4E89-9AF0-C10AE7EFB9E7}] => (Allow) LPort=1900 FirewallRules: [{550397B7-A027-4BB9-84D0-CF8C278ED518}] => (Allow) LPort=2869 FirewallRules: [{5AD0DCF8-04C8-40BF-9E0B-02BE2B6988A1}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{E154A618-8DEE-4256-B586-9CE24CAC7BC0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [{EB74704B-9EE2-4371-8346-6D8DB436A850}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [{FDE6BDB8-432D-4AEB-BC00-008183BEE6CB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{53CB25DC-85BC-423B-98B2-E7FCD6C91367}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{F73598D6-366C-49C9-88AF-CC0B356E1E0A}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{81C52252-B6F5-4FC4-B6E3-A1223FFC3C5F}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{802562AE-6B1F-4293-A515-039EE9F16513}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{9FF4EED5-CD13-4D23-94AC-05E9BD95504F}] => (Allow) C:\Program Files (x86)\DigiHelp\bin\DigiHelp.BRT.Helper.exe FirewallRules: [{95D66AE8-C0B6-433E-995E-BCAD42B18708}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8FA383D8-111D-48CA-AE54-E94B41A5DAD1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E20C4EB5-5758-4B38-95FA-BADCFFF10EE6}] => (Allow) C:\Program Files (x86)\baidu\Spark\Spark.exe FirewallRules: [{A5A7BAA1-0FEF-469D-A516-C51F42C949C8}] => (Allow) C:\Program Files (x86)\baidu\Spark\Spark.exe FirewallRules: [{B5775D63-6A7A-4157-95B3-026DDC048C6D}] => (Allow) C:\Program Files (x86)\baidu\Spark\bdtray.exe FirewallRules: [{E47B4BB1-592E-46F5-BABF-7AA6C8F378E9}] => (Allow) C:\Program Files (x86)\baidu\Spark\bdtray.exe FirewallRules: [TCP Query User{C7444DE7-60F3-4C16-896A-22020AB4D9AD}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{A07A0B2E-5EE2-477E-A4C0-D28E05D20F3E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{EDD4A07D-E02A-4403-8782-2DCF5269492F}C:\program files (x86)\symantec\norton online backup\nobuclient.exe] => (Block) C:\program files (x86)\symantec\norton online backup\nobuclient.exe FirewallRules: [UDP Query User{87D04861-56BC-4F43-B834-E4E48B2FFDBB}C:\program files (x86)\symantec\norton online backup\nobuclient.exe] => (Block) C:\program files (x86)\symantec\norton online backup\nobuclient.exe FirewallRules: [{0E2EE6E2-C894-4D46-9F22-89CDB0B970F7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{17A9DC7F-0527-4627-B117-3740962D7D5D}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [TCP Query User{962E4604-0485-41DC-8B7B-9A5766194896}C:\program files (x86)\lenovo\shareit\shareit.exe] => (Allow) C:\program files (x86)\lenovo\shareit\shareit.exe FirewallRules: [UDP Query User{A703520E-74E9-4FD5-8FAC-4C3777850F75}C:\program files (x86)\lenovo\shareit\shareit.exe] => (Allow) C:\program files (x86)\lenovo\shareit\shareit.exe FirewallRules: [TCP Query User{A8FAF70B-8564-4F78-9A64-D86FFAFD12E3}C:\program files (x86)\symantec\norton online backup\nobuclient.exe] => (Block) C:\program files (x86)\symantec\norton online backup\nobuclient.exe FirewallRules: [UDP Query User{5B1A137F-0ECB-4E02-BA76-E73882279B01}C:\program files (x86)\symantec\norton online backup\nobuclient.exe] => (Block) C:\program files (x86)\symantec\norton online backup\nobuclient.exe FirewallRules: [TCP Query User{B42A214C-CF30-4A9B-944A-E14C5A9DC743}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{9B2C0058-0782-4AB2-BB12-5D4B552F1BCE}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{717F6CBE-18A3-4CD0-B61A-D29A57E644EB}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{777590DA-CF8A-4111-9DBD-BAB268B67FE3}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe ==================== Faulty Device Manager Devices ============= Name: Bluetooth Audio Device Description: Bluetooth Audio Device Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: Qualcomm Atheros Communications Service: BTATH_A2DP Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Virtual Bluetooth Support (Include Audio) Description: Virtual Bluetooth Support (Include Audio) Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5} Manufacturer: Qualcomm Atheros Communications Service: AthBTPort Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Bluetooth LWFLT Device Description: Bluetooth LWFLT Device Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5} Manufacturer: Qualcomm Atheros Communications Service: BTATH_LWFLT Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Event log errors: ========================= Application errors: ================== Error: (10/09/2015 10:08:13 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422302 Error: (10/09/2015 12:49:29 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422302 Error: (10/07/2015 05:22:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome do aplicativo com falha: SysDnsSvc.exe, versão: 0.0.0.0, carimbo de data/hora: 0x557e7cf3 Nome do módulo com falha: SysDnsSvc.exe, versão: 0.0.0.0, carimbo de data/hora: 0x557e7cf3 Código de exceção: 0xc0000409 Deslocamento da falha: 0x00013174 ID do processo com falha: 0x71c Hora de início do aplicativo com falha: 0xSysDnsSvc.exe0 Caminho do aplicativo com falha: SysDnsSvc.exe1 Caminho do módulo com falha: SysDnsSvc.exe2 ID do Relatório: SysDnsSvc.exe3 Nome completo do pacote com falha: SysDnsSvc.exe4 ID do aplicativo relativo ao pacote com falha: SysDnsSvc.exe5 Error: (10/07/2015 03:15:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome do aplicativo com falha: Explorer.EXE, versão: 6.3.9600.17667, carimbo de data/hora: 0x54c6f7c2 Nome do módulo com falha: Windows.UI.Search.dll, versão: 6.3.9600.17415, carimbo de data/hora: 0x54503885 Código de exceção: 0xc0000005 Deslocamento da falha: 0x000000000019ea20 ID do processo com falha: 0xcf4 Hora de início do aplicativo com falha: 0xExplorer.EXE0 Caminho do aplicativo com falha: Explorer.EXE1 Caminho do módulo com falha: Explorer.EXE2 ID do Relatório: Explorer.EXE3 Nome completo do pacote com falha: Explorer.EXE4 ID do aplicativo relativo ao pacote com falha: Explorer.EXE5 Error: (10/07/2015 01:21:41 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422302 Error: (10/06/2015 12:57:39 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422302 Error: (10/05/2015 01:38:38 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (10/04/2015 10:36:22 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (10/04/2015 07:32:06 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422302 Error: (10/03/2015 09:14:22 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422302 System errors: ============= Error: (10/09/2015 04:21:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Intel(R) Update Manager foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (10/07/2015 05:36:43 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: O serviço Detecção de Serviços Interativos terminou com o erro: %%1 Error: (10/07/2015 05:27:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Net Event Report foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (10/07/2015 05:16:21 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento do sistema que ocorreu às 15:21:49 do dia ‎07/‎10/‎2015 não era esperado. Error: (10/01/2015 03:30:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Net Event Report foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (10/01/2015 03:14:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Net Event Report foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (09/30/2015 07:30:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Net Event Report foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (09/30/2015 07:24:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço BHDrvx64 devido ao seguinte erro: %%20 Error: (09/30/2015 07:20:07 PM) (Source: DCOM) (EventID: 10010) (User: GUSTAVO) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (09/30/2015 07:20:07 PM) (Source: DCOM) (EventID: 10010) (User: GUSTAVO) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz Percentage of memory in use: 69% Total physical RAM: 3797.53 MB Available physical RAM: 1174.03 MB Total Virtual: 8149.54 MB Available Virtual: 4336.18 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:439.93 GB) (Free:300.31 GB) NTFS Drive d: () (CDROM) (Total:2.63 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ==================== End of Addition.txt ============================