Resultado do exame Adicional Farbar Recovery Scan Tool (x86) Versão:01-03-2016 Executado por inteligente (2016-03-01 18:48:33) Executando a partir de C:\Users\inteligente\Downloads\Programs Microsoft Windows 8.1 Pro (X86) (2015-02-21 20:52:19) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-962113958-2137007927-2541743853-500 - Administrator - Disabled) Convidado (S-1-5-21-962113958-2137007927-2541743853-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-962113958-2137007927-2541743853-1003 - Limited - Enabled) inteligente (S-1-5-21-962113958-2137007927-2541743853-1001 - Administrator - Enabled) => C:\Users\inteligente UpdatusUser (S-1-5-21-962113958-2137007927-2541743853-1004 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Atualizações da NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) Chromium (HKU\.DEFAULT\...\Chromium) (Version: 50.0.2632.0 - Chromium) Google Chrome (HKU\S-1-5-21-962113958-2137007927-2541743853-1001\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.) Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Mozilla Firefox 38.0.5 (x86 pt-BR) (HKLM\...\Mozilla Firefox 38.0.5 (x86 pt-BR)) (Version: 38.0.5 - Mozilla) MyStart Toolbar (HKLM\...\mystarttb) (Version: 5.6.0.6 - Visicom Media Inc.) NVIDIA Driver de gráficos 307.68 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 307.68 - NVIDIA Corporation) Outlook365 Notifier (HKLM\...\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}) (Version: - ) <==== ATENÇÃO Painel de controle da NVIDIA 307.68 (Version: 307.68 - NVIDIA Corporation) Hidden PriceFountain (HKU\.DEFAULT\...\PriceFountain) (Version: - ) <==== ATENÇÃO Setup (HKLM\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) <==== ATENÇÃO Shopper-Pro (HKLM\...\ShopperPro3) (Version: - ) <==== ATENÇÃO Update for PriceFountain (HKU\.DEFAULT\...\PriceFountainUpdateVer) (Version: - Update for PriceFountain) <==== ATENÇÃO winrar-520br (HKLM\...\{DEFC8ABD-41D6-5EAE-CA9C-F0B45E96388E}) (Version: Winrar 5.2 BR 32-bits - Winrar) youtubeadblocker (HKLM\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: - ) <==== ATENÇÃO YTDownloader (HKLM\...\YTDownloader) (Version: - YTDownloader) <==== ATENÇÃO ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\inteligente\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.27.5\psuser.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{5C65F4B0-3651-4514-B207-D10CB699B14B}\localserver32 -> C:\Users\inteligente\AppData\Local\Google\Chrome\Application\48.0.2564.116\delegate_execute.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\psuser.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.26.9\psuser.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\npGoogleUpdate3.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-962113958-2137007927-2541743853-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\inteligente\AppData\Local\Google\Update\1.3.29.5\psuser.dll (Google Inc.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {3C622A26-04FF-48BC-BBAF-888ECCA166F6} - System32\Tasks\svchost => C:\Users\inteligente\AppData\Local\Temp\72166L5UH\E6PS6O1EC.exe [2016-03-01] (TZ) <==== ATENÇÃO Task: {3F8E7629-ED56-4C06-872B-F15879BAF9C6} - System32\Tasks\Run_Bobby_Browser => C:\Users\inteligente\AppData\Local\BoBrowser\Application\bobrowser.exe <==== ATENÇÃO Task: {7725D1F2-1433-4D7E-9C03-3C3C06C37214} - System32\Tasks\Chfefv => C:\PROGRA~1\SHOPPE~1\Pugporni.bat Task: {7EDC3F35-DE9B-4C46-BBC7-D73B044A472D} - System32\Tasks\Vuofnafiwuam => C:\ProgramData\Vuofnafiwuam\1.0.7.1\usiomixa.exe [2016-03-01] () Task: {88813E13-8ACB-4EBB-81AC-FC1A4E9D9B75} - System32\Tasks\crash_service => C:\Users\inteligente\AppData\Local\BoBrowser\Application\crash_service.exe <==== ATENÇÃO Task: {929CFF75-5083-4A6B-8879-4EBFBDD31F7E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-962113958-2137007927-2541743853-1001Core => C:\Users\inteligente\AppData\Local\Google\Update\GoogleUpdate.exe [2015-06-26] (Google Inc.) Task: {AE795549-89E9-4F41-AE8C-9EE59CA715CB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-962113958-2137007927-2541743853-1001UA => C:\Users\inteligente\AppData\Local\Google\Update\GoogleUpdate.exe [2015-06-26] (Google Inc.) Task: {DD3D1129-5666-47D8-B05C-5AB14A2DB5F1} - System32\Tasks\SISTEMADispossessoryHyperopicV2 => Rundll32.exe StrumCavorts.dll,main 7 1 <==== ATENÇÃO Task: {F1C2B46E-7CCB-423C-8FE3-6478012A7179} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-02-26] (Microsoft Corporation) Task: {F501AF3E-BACC-4DB4-ACCA-1667CC84B695} - \AutoPico Daily Restart -> Nenhum Arquivo <==== ATENÇÃO (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-962113958-2137007927-2541743853-1001Core.job => C:\Users\inteligente\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-962113958-2137007927-2541743853-1001UA.job => C:\Users\inteligente\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ShortcutWithArgument: C:\Users\inteligente\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.mystartsearch.com/?type=sc&ts=1425510326&from=wpc&uid=HitachiXHDS721050DLE630_MSK4215H11UNZG11UNZGX ShortcutWithArgument: C:\Users\inteligente\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yeabests.cc/ ShortcutWithArgument: C:\Users\inteligente\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome (2).lnk -> C:\Users\inteligente\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yeabests.cc/ ShortcutWithArgument: C:\Users\inteligente\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yeabests.cc/ ShortcutWithArgument: C:\Users\inteligente\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yeabests.cc/ ShortcutWithArgument: C:\Users\inteligente\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Yeabeats Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yeabests.cc/ ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yeabests.cc/ ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yeabests.cc/ ==================== Módulos Carregados (Whitelisted) ============== 2015-12-25 05:41 - 2015-12-25 05:41 - 00128136 _____ () C:\Program Files\CalendarTool\2.0.0.11189\CalendarEntry.dll 2016-03-01 18:18 - 2016-01-26 11:54 - 02415616 _____ () c:\programdata\msiql.exe 2016-03-01 18:19 - 2016-02-04 14:57 - 02010624 _____ () C:\ProgramData\WindowsMsg\675D131108D4FD145B0BFBC68A3E018A.dll 2015-12-25 05:42 - 2015-12-25 05:42 - 00141960 _____ () C:\Program Files\CalendarTool\2.0.0.11189\CalendarServ.exe 2015-12-25 05:42 - 2015-12-25 05:42 - 00543368 _____ () C:\Program Files\CalendarTool\2.0.0.11189\EVPTask.dll 2015-12-25 05:42 - 2015-12-25 05:42 - 00406664 _____ () C:\Program Files\CalendarTool\2.0.0.11189\EVPNet.dll 2015-12-25 05:41 - 2015-12-25 05:41 - 00428680 _____ () C:\Program Files\CalendarTool\2.0.0.11189\EVPDR.dll 2015-12-25 05:42 - 2015-12-25 05:42 - 00747144 _____ () C:\Program Files\CalendarTool\2.0.0.11189\EVPKernel.dll 2015-12-25 05:42 - 2015-12-25 05:42 - 00327304 _____ () C:\Program Files\CalendarTool\2.0.0.11189\EVPHelp.dll 2015-12-25 05:41 - 2015-12-25 05:41 - 02249864 _____ () C:\Program Files\CalendarTool\2.0.0.11189\Calendar.exe 2016-03-01 18:16 - 2016-03-01 18:16 - 00356864 _____ () C:\Windows\system32\config\systemprofile\AppData\Local\DispossessoryHyperopic\StrumCavorts.dll 2015-06-26 11:32 - 2015-06-26 11:32 - 00154112 _____ () C:\Users\inteligente\Downloads\NetFree.exe 2016-02-24 20:49 - 2016-02-18 01:14 - 01630360 _____ () C:\Users\inteligente\AppData\Local\Google\Chrome\Application\48.0.2564.116\libglesv2.dll 2016-02-24 20:49 - 2016-02-18 01:14 - 00085656 _____ () C:\Users\inteligente\AppData\Local\Google\Chrome\Application\48.0.2564.116\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\Users\inteligente\Local Settings:init ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== EXE Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) ==================== Hosts Conteúdo: ========================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2013-08-22 03:13 - 2016-03-01 18:28 - 00001110 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-962113958-2137007927-2541743853-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 172.35.255.2 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == (Atualmente não há nenhuma correção automática para esta seção.) ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{1838114F-2802-4F59-9040-1F608F7475CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A8C42C30-8374-44B2-895B-BE1972CE7D81}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{1EDF0C31-1C79-4C64-844A-82A56A1D2E67}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{9296389C-FA5E-4B05-AA36-006202D64720}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{61D0C697-71A4-40A1-B6DE-591A3699C125}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{EA9B8C6E-0220-4284-952B-04F77AA4E0AC}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [TCP Query User{AFBB221B-06D3-43CF-ADE8-89C53552C2F1}C:\program files\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [UDP Query User{128F2DF1-7D1E-4D1D-8F56-61A2BC770477}C:\program files\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [{FB801E25-45E0-436E-9CAC-43C2A95B5493}] => (Allow) C:\Program Files\Fiddler2\Fiddler.exe FirewallRules: [{55753E6A-E7C6-4981-AE17-85ABF2028AB7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{7BD44683-1621-47E3-8EA6-55E33F37873C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{307A0599-62BF-4572-B8F4-9E7C002F1E06}C:\users\inteligente\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\inteligente\appdata\local\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{9B6CAFE7-C0FF-46F3-AD10-7C03D3CA0940}C:\users\inteligente\appdata\local\google\chrome\application\chrome.exe] => (Allow) C:\users\inteligente\appdata\local\google\chrome\application\chrome.exe FirewallRules: [{BB8E74D6-F7DC-48FA-8B96-6615C771070F}] => (Allow) C:\Windows\system32\config\systemprofile\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{92632E51-C794-44F6-B775-205865B94B22}] => (Allow) C:\Program Files\mystarttb\ToolbarCleaner.exe FirewallRules: [{9BC3A9B1-1249-4C34-AD7D-499EAFDF7E8F}] => (Allow) C:\Program Files\mystarttb\ToolbarCleaner.exe ==================== Pontos de Restauração ========================= 27-08-2015 09:39:51 Windows Update 24-02-2016 20:58:52 Windows Update 25-02-2016 00:00:53 Instalador de Módulos do Windows 28-02-2016 12:19:17 Windows Update ==================== Dispositivos Apresentando Falhas No Gerenciador ============= Name: Co-processador Description: Co-processador Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (03/01/2016 06:40:53 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha na Ativação de Licença (slui.exe). Código de erro: hr=0xC004F074 Argumento de linha de comando: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable Error: (03/01/2016 06:38:07 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa mbot_br_014010248.exe versão 0.0.0.0 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID do Processo: 178c Hora de Início: 01d174018d1e82ad Hora de Término: 4294967295 Caminho do Aplicativo: C:\Program Files\mbot_br_014010248\mbot_br_014010248.exe ID do Relatório: cd8aef31-dff5-11e5-9722-003018000001 Nome completo do pacote com falha: ID do aplicativo relativo ao pacote com falha: Error: (03/01/2016 06:36:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome do aplicativo com falha: BrowserHelper.exe, versão: 1.8.1.0, carimbo de data/hora: 0x5628b2eb Nome do módulo com falha: BrowserHelper.exe, versão: 1.8.1.0, carimbo de data/hora: 0x5628b2eb Código de exceção: 0xc0000005 Deslocamento da falha: 0x00027ca5 ID do processo com falha: 0x11f8 Hora de início do aplicativo com falha: 0xBrowserHelper.exe0 Caminho do aplicativo com falha: BrowserHelper.exe1 Caminho do módulo com falha: BrowserHelper.exe2 ID do Relatório: BrowserHelper.exe3 Nome completo do pacote com falha: BrowserHelper.exe4 ID do aplicativo relativo ao pacote com falha: BrowserHelper.exe5 Error: (03/01/2016 06:32:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: JEFERSON) Description: Falha na ativação do aplicativo Microsoft.SkypeApp_kzf8qxf38zg5c!App com o erro: -2144927141. Veja o log Microsoft-Windows-TWinUI/Operational para obter informações adicionais. Error: (03/01/2016 06:27:48 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa LiveComm.exe versão 17.5.9600.20911 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID do Processo: 1748 Hora de Início: 01d173ff813a2a40 Hora de Término: 4294967295 Caminho do Aplicativo: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x86__8wekyb3d8bbwe\LiveComm.exe ID do Relatório: 694a1d5c-dff4-11e5-9722-003018000001 Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.20911_x86__8wekyb3d8bbwe ID do aplicativo relativo ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1 Error: (03/01/2016 06:24:05 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Erro do Serviço de Cópias de Sombra de Volume: erro inesperado ao consultar a interface IVssWriterCallback. hr = 0x8007071a, O procedimento de chamada remoto foi cancelado. . Muitas vezes, isso é causado por configurações de segurança incorretas no processo gravador ou solicitante. Operação: Obtendo Dados do Gravador Contexto: Id de Classe de Gravador: {cd3f2362-8bef-46c7-9181-d62844cdc0b2} Nome do Gravador: MSSearch Service Writer ID de Instância de Gravador: {065703d7-3681-4a0c-9d7a-9e52e81be4ae} Error: (03/01/2016 06:22:16 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha na Ativação de Licença (slui.exe). Código de erro: hr=0xC004F074 Argumento de linha de comando: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable Error: (03/01/2016 06:03:32 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha na Ativação de Licença (slui.exe). Código de erro: hr=0xC004F074 Argumento de linha de comando: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (03/01/2016 06:02:35 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha na Ativação de Licença (slui.exe). Código de erro: hr=0xC004F074 Argumento de linha de comando: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable Error: (02/26/2016 11:14:53 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Falha na Ativação de Licença (slui.exe). Código de erro: hr=0xC004F074 Argumento de linha de comando: RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable Erros de Sistema: ============= Error: (03/01/2016 06:34:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço KafrJUqSDml foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 60000 milissegundos: Reiniciar o serviço. Error: (03/01/2016 06:32:06 PM) (Source: DCOM) (EventID: 10010) (User: JEFERSON) Description: App.AppX54xz6wnkhmw763c2y8tb018n7d71dtx7.wwa Error: (03/01/2016 06:23:44 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: O serviço MPC Core Protect Service está marcado como um serviço interativo. No entanto, o sistema está configurado para não permitir serviços interativos. Esse serviço pode não funcionar corretamente. Error: (03/01/2016 06:21:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço csrcc foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (03/01/2016 06:20:01 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: O serviço ClaraUpdater está marcado como um serviço interativo. No entanto, o sistema está configurado para não permitir serviços interativos. Esse serviço pode não funcionar corretamente. Error: (03/01/2016 06:18:29 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: O serviço GoogleChromeUpSvc está marcado como um serviço interativo. No entanto, o sistema está configurado para não permitir serviços interativos. Esse serviço pode não funcionar corretamente. Error: (03/01/2016 06:18:29 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: O serviço GoogleChromeUpService está marcado como um serviço interativo. No entanto, o sistema está configurado para não permitir serviços interativos. Esse serviço pode não funcionar corretamente. Error: (03/01/2016 06:02:01 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento do sistema que ocorreu às 22:54:40 do dia ‎26/‎02/‎2016 não era esperado. Error: (02/26/2016 11:30:24 PM) (Source: DCOM) (EventID: 10010) (User: JEFERSON) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/26/2016 11:30:24 PM) (Source: DCOM) (EventID: 10010) (User: JEFERSON) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} CodeIntegrity: =================================== Date: 2015-07-01 17:29:10.951 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.946 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.867 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.863 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.290 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.278 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.273 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.154 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:10.083 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-01 17:29:09.998 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Informações da Memória =========================== Processador: AMD Sempron(tm) 130 Processor Percentagem de memória em uso: 88% RAM física total: 1791.43 MB RAM física disponível: 208.87 MB Virtual Total: 4095.43 MB Virtual disponível: 1992.2 MB ==================== Drives ================================ Drive c: (Windows 7) (Fixed) (Total:95.34 GB) (Free:71 GB) NTFS Drive d: (Windows 8) (Fixed) (Total:370.22 GB) (Free:17.42 GB) NTFS ==>[sistema com componentes de inicialização (obtido através de drive)] Drive e: (newiso) (CDROM) (Total:0.04 GB) (Free:0 GB) CDFS Drive f: (FILES) (Fixed) (Total:0.19 GB) (Free:0.19 GB) FAT32 ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F6D4AB9E) Partition 1: (Not Active) - (Size=200 MB) - (Type=0B) Partition 2: (Active) - (Size=370.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=95.3 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 7.2 GB) (Disk ID: 11E72F70) Could not read MBR for disk 2. ==================== Fim de Addition.txt ============================