Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 28-06-2016 Executado por augusto (administrador) em AUGUSTO-PC (28-06-2016 22:48:20) Executando a partir de C:\Users\augusto\Downloads Perfis Carregados: augusto (Perfis Disponíveis: augusto) Platform: Windows 7 Ultimate (X64) Idioma: Português (Brasil) Internet Explorer Versão 8 (Navegador padrão: Chrome) Modo da Inicialização: Normal Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wscript.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe ==================== Registro (Whitelisted) =========================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [8897712 2016-06-28] (AVAST Software) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595992 2016-05-20] (Oracle Corporation) HKU\S-1-5-21-753345687-175642474-2247743715-1000\...\Run: [tmp1737] => wscript.exe //B "C:\Users\augusto\AppData\Local\Temp\tmp1737.tmp.vbs" <===== ATENÇÃO ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-06-28] (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk [2016-06-28] ShortcutTarget: Adobe Reader Speed Launch.lnk -> C:\Program Files (x86)\Adobe\Reader 8.0\Reader\reader_sl.exe (Adobe Systems Incorporated) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk [2016-06-28] ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe () Startup: C:\Users\augusto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp1737.tmp.vbs [2015-10-18] () ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{15B8EA7B-CB01-42F9-B5D3-B6EA6B8F6704}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{2EA87BB2-E194-4A17-BDCB-402EEE774416}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== SearchScopes: HKU\S-1-5-21-753345687-175642474-2247743715-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-06-28] (AVAST Software) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Facilitador de Leitor de Link Adobe PDF -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\ssv.dll [2016-06-28] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-06-28] (AVAST Software) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-06-28] (Oracle Corporation) Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-13] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-13] (Microsoft Corporation) FireFox: ======== FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-06-28] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files (x86)\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-06-28] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-06-28] (Google Inc.) FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-06-28] FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-06-28] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Profile: C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Apresentações) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-06-28] CHR Extension: (Google Docs) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-06-28] CHR Extension: (Google Drive) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-28] CHR Extension: (YouTube) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-28] CHR Extension: (Pesquisa do Google) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-10-02] CHR Extension: (Planilhas do Google) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-06-28] CHR Extension: (Documentos Google off-line) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-06-28] CHR Extension: (Avast Online Security) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-06-28] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-06-28] CHR Extension: (Gmail) - C:\Users\augusto\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-06-28] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-02] ==================== Serviços (Whitelisted) ======================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2016-06-28] (AVAST Software) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) ===================== Drivers (Whitelisted) ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-06-28] (AVAST Software) R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-06-28] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108304 2016-06-28] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-06-28] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-06-28] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-06-28] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [473592 2016-06-28] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162904 2016-06-28] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [290088 2016-06-28] (AVAST Software) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [51712 2009-06-10] (Realtek Semiconductor Corporation ) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um Mês Criados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-06-28 22:48 - 2016-06-28 22:48 - 00011172 _____ C:\Users\augusto\Downloads\FRST.txt 2016-06-28 22:48 - 2016-06-28 22:48 - 00000000 ____D C:\FRST 2016-06-28 22:47 - 2016-06-28 22:47 - 02389504 _____ (Farbar) C:\Users\augusto\Downloads\FRST64.exe 2016-06-28 22:39 - 2016-06-28 22:39 - 00001247 _____ C:\Users\augusto\Desktop\TJoC_R - Atalho.lnk 2016-06-28 22:37 - 2016-06-28 22:37 - 00000000 ____D C:\Program Files (x86)\TJoC- R Beta 0.1.0 2016-06-28 22:30 - 2016-05-23 20:40 - 00000000 ____D C:\Users\augusto\Desktop\TJoC- R Beta 0.1.0 2016-06-28 22:11 - 2016-06-28 22:12 - 14749120 _____ (Microsoft Corporation) C:\Users\augusto\Downloads\vc_redist.x64.exe 2016-06-28 21:58 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2016-06-28 21:58 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2016-06-28 21:58 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2016-06-28 21:58 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2016-06-28 21:58 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2016-06-28 21:58 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2016-06-28 21:58 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2016-06-28 21:58 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2016-06-28 21:58 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2016-06-28 21:38 - 2016-06-28 21:38 - 00000000 ____D C:\Windows\system32\appmgmt 2016-06-28 21:17 - 2016-06-28 21:17 - 01594828 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2016-06-28 21:10 - 2009-11-25 12:47 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe 2016-06-28 21:10 - 2009-11-25 12:47 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe 2016-06-28 21:10 - 2009-11-25 12:47 - 00109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 00049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll 2016-06-28 21:10 - 2009-11-25 12:47 - 00048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll 2016-06-28 21:08 - 2016-06-28 22:42 - 00000000 ____D C:\Users\Todos os Usuários\Package Cache 2016-06-28 21:08 - 2016-06-28 22:42 - 00000000 ____D C:\ProgramData\Package Cache 2016-06-28 20:45 - 2016-06-28 20:46 - 398301941 _____ C:\Users\augusto\Downloads\SU S03E01E02.mp4 2016-06-28 19:21 - 2016-06-28 19:21 - 00000000 ___SD C:\Users\augusto\AppData\LocalLow\Temp 2016-06-28 17:44 - 2012-06-02 19:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-06-28 17:44 - 2012-06-02 19:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-06-28 17:44 - 2012-06-02 19:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-06-28 17:44 - 2012-06-02 19:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-06-28 17:44 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-06-28 17:44 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-06-28 17:24 - 2014-07-31 19:44 - 00000000 ____D C:\Users\augusto\Desktop\Pokémon Survival Island v113 2016-06-28 17:23 - 2016-06-28 17:24 - 49193119 _____ C:\Users\augusto\Downloads\pokemon-survival-island-11-3-en-win.zip 2016-06-28 17:10 - 2016-06-28 12:41 - 00390984 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2016-06-28 17:05 - 2016-06-28 17:05 - 00331119 _____ C:\unp305278641509350585.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00331042 _____ C:\unp305278641511690589.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00330929 _____ C:\unp305278641510130586.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00330055 _____ C:\unp305278641508414583.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00329744 _____ C:\unp305278641507478581.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00329330 _____ C:\unp305278641516058597.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00329220 _____ C:\unp305278641510910587.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00328612 _____ C:\unp305278641515278595.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00328519 _____ C:\unp305278641512470590.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00327541 _____ C:\unp305278641514498594.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00323558 _____ C:\unp305278641504982577.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00322810 _____ C:\unp305278641505762578.mdmp 2016-06-28 17:05 - 2016-06-28 17:05 - 00319462 _____ C:\unp305278641506542580.mdmp 2016-06-28 17:05 - 2016-06-28 12:42 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\asw2A72.tmp 2016-06-28 17:05 - 2016-06-28 12:41 - 00290088 _____ (AVAST Software) C:\Windows\system32\Drivers\asw2AC1.tmp 2016-06-28 17:05 - 2016-06-28 12:41 - 00162904 _____ (AVAST Software) C:\Windows\system32\Drivers\asw2B10.tmp 2016-06-28 17:05 - 2016-06-28 12:41 - 00108304 _____ (AVAST Software) C:\Windows\system32\Drivers\asw2957.tmp 2016-06-28 17:05 - 2016-06-28 12:41 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\asw28B9.tmp 2016-06-28 17:05 - 2016-06-28 12:41 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\asw29A6.tmp 2016-06-28 17:05 - 2016-06-28 12:41 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\asw2908.tmp 2016-06-28 17:05 - 2016-06-28 12:40 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\asw27FD.tmp 2016-06-28 17:05 - 2016-06-28 12:40 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\asw27AE.tmp 2016-06-28 17:04 - 2016-06-28 17:05 - 00319818 _____ C:\unp305278641454594489.mdmp 2016-06-28 17:02 - 2016-06-28 17:02 - 00000000 ____D C:\Users\augusto\AppData\Local\CEF 2016-06-28 17:01 - 2016-06-28 17:11 - 00003900 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1467144062 2016-06-28 17:01 - 2016-06-28 17:01 - 00001037 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk 2016-06-28 17:01 - 2016-06-28 17:01 - 00001037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2016-06-28 16:57 - 2016-06-28 16:57 - 00097344 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2016-06-28 16:57 - 2016-06-28 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-06-28 16:56 - 2016-06-28 16:56 - 00737856 _____ (Oracle Corporation) C:\Users\augusto\Downloads\chromeinstall-8u91 (1).exe 2016-06-28 16:51 - 2016-06-28 17:02 - 00024583 _____ C:\Users\augusto\Documents\DxDiag.txt 2016-06-28 15:32 - 2016-06-28 15:35 - 00000000 ____D C:\Users\augusto\AppData\Local\UNDERTALE 2016-06-28 15:29 - 2016-04-02 12:38 - 00000000 ____D C:\Users\augusto\Desktop\Undertale PT-BR v1.001 2016-06-28 15:28 - 2016-06-28 15:28 - 121012602 _____ C:\Users\augusto\Downloads\Undertale PT-BR v1.001.rar 2016-06-28 15:16 - 2016-06-28 17:14 - 00000000 ____D C:\Users\augusto\Desktop\Minecraft 2016-06-28 15:12 - 2016-06-28 15:12 - 00000000 ____D C:\Users\augusto\AppData\Roaming\java 2016-06-28 15:07 - 2016-06-28 15:07 - 00000000 ____D C:\Users\augusto\AppData\Roaming\Sun 2016-06-28 15:07 - 2016-06-28 15:07 - 00000000 ____D C:\Users\augusto\.oracle_jre_usage 2016-06-28 15:06 - 2016-06-28 15:06 - 00000000 ____D C:\Users\augusto\AppData\LocalLow\Oracle 2016-06-28 15:05 - 2016-06-28 15:05 - 00737856 _____ (Oracle Corporation) C:\Users\augusto\Downloads\chromeinstall-8u91.exe 2016-06-28 15:04 - 2016-06-28 16:39 - 00000000 ____D C:\Users\augusto\AppData\Roaming\.minecraft 2016-06-28 13:52 - 2016-06-28 20:13 - 00000000 ____D C:\Users\augusto\Desktop\Arthur 2016-06-28 12:42 - 2016-06-28 17:11 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2016-06-28 12:42 - 2016-06-28 12:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2016-06-28 12:41 - 2016-06-28 12:41 - 00992960 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2016-06-28 12:41 - 2016-06-28 12:41 - 00921280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2016-06-28 12:41 - 2016-06-28 12:41 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr 2016-06-28 12:41 - 2016-06-28 12:40 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2016-06-28 12:36 - 2016-06-28 12:36 - 00000000 ____D C:\Users\augusto\AppData\Roaming\WinRAR 2016-06-28 12:09 - 2016-06-28 12:09 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2016-06-28 12:09 - 2016-06-28 12:09 - 00000000 ____D C:\Program Files\Common Files\AV 2016-06-28 09:45 - 2016-06-28 09:45 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 8.lnk 2016-06-28 09:45 - 2016-06-28 09:45 - 00002014 _____ C:\Users\Public\Desktop\Adobe Reader 8.lnk 2016-06-28 09:44 - 2016-06-28 09:45 - 00000000 ____D C:\Users\Todos os Usuários\Adobe 2016-06-28 09:44 - 2016-06-28 09:45 - 00000000 ____D C:\ProgramData\Adobe 2016-06-28 09:44 - 2016-06-28 09:44 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-06-28 09:41 - 2016-06-28 09:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-06-28 09:39 - 2016-06-28 09:39 - 00000000 ____D C:\Windows\PCHEALTH 2016-06-28 09:39 - 2016-06-28 09:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services 2016-06-28 09:39 - 2016-06-28 09:39 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2016-06-28 09:37 - 2016-06-28 09:37 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2016-06-28 09:36 - 2016-06-28 09:48 - 00000000 ____D C:\Users\augusto\AppData\LocalLow\Netopsystems 2016-06-28 09:36 - 2016-06-28 09:36 - 00000000 ____D C:\Users\augusto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-06-28 09:36 - 2016-06-28 09:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-06-28 09:36 - 2016-06-28 09:36 - 00000000 ____D C:\Program Files\Microsoft Office 2016-06-28 09:35 - 2016-06-28 09:36 - 00000000 ____D C:\Program Files (x86)\WinRAR 2016-06-28 09:35 - 2016-06-28 09:35 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2016-06-28 09:34 - 2016-06-28 09:43 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft Help 2016-06-28 09:34 - 2016-06-28 09:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-06-28 09:34 - 2016-06-28 09:34 - 00000000 __RHD C:\MSOCache 2016-06-28 09:34 - 2016-06-28 09:34 - 00000000 ____D C:\Users\augusto\AppData\Local\Microsoft Help 2016-06-28 09:28 - 2016-06-28 09:28 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf ==================== Um Mês Modificados arquivos e pastas ======== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2016-06-28 22:46 - 2014-10-02 09:44 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-06-28 22:19 - 2009-07-14 01:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-06-28 22:19 - 2009-07-14 01:45 - 00014016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-06-28 22:08 - 2014-10-02 09:23 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-06-28 21:31 - 2009-07-14 14:55 - 00702882 _____ C:\Windows\system32\prfh0416.dat 2016-06-28 21:31 - 2009-07-14 14:55 - 00145668 _____ C:\Windows\system32\prfc0416.dat 2016-06-28 21:31 - 2009-07-14 02:13 - 01626900 _____ C:\Windows\system32\PerfStringBackup.INI 2016-06-28 21:31 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf 2016-06-28 21:26 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-06-28 17:11 - 2014-10-02 09:26 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-06-28 17:04 - 2014-10-02 09:14 - 00000000 ____D C:\Users\augusto\AppData\Local\VirtualStore 2016-06-28 15:09 - 2014-10-02 09:37 - 00000000 ____D C:\Program Files (x86)\Java 2016-06-28 15:07 - 2014-10-02 09:39 - 00000000 ____D C:\Users\Todos os Usuários\Oracle 2016-06-28 15:07 - 2014-10-02 09:39 - 00000000 ____D C:\ProgramData\Oracle 2016-06-28 15:07 - 2014-10-02 09:37 - 00267840 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2016-06-28 15:07 - 2014-10-02 09:13 - 00000000 ____D C:\Users\augusto 2016-06-28 14:31 - 2009-07-14 02:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2016-06-28 13:49 - 2014-10-02 09:23 - 00000000 ____D C:\Users\augusto\AppData\Local\Google 2016-06-28 12:42 - 2014-10-02 09:23 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2016-06-28 12:41 - 2014-10-02 09:23 - 00473592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.146712854678102 2016-06-28 12:41 - 2014-10-02 09:23 - 00290088 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2016-06-28 12:41 - 2014-10-02 09:23 - 00162904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2016-06-28 12:41 - 2014-10-02 09:23 - 00108304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2016-06-28 12:41 - 2014-10-02 09:23 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2016-06-28 12:41 - 2014-10-02 09:23 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2016-06-28 12:41 - 2014-10-02 09:23 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2016-06-28 12:41 - 2014-10-02 09:18 - 00000000 ____D C:\Users\Todos os Usuários\AVAST Software 2016-06-28 12:41 - 2014-10-02 09:18 - 00000000 ____D C:\ProgramData\AVAST Software 2016-06-28 12:40 - 2014-10-02 09:23 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2016-06-28 12:40 - 2014-10-02 09:20 - 00000000 ____D C:\Program Files\AVAST Software 2016-06-28 12:35 - 2014-10-02 09:26 - 00002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-06-28 12:35 - 2014-10-02 09:26 - 00002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-06-28 12:03 - 2014-10-02 09:23 - 00004066 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2016-06-28 12:03 - 2014-10-02 09:23 - 00003814 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2016-06-28 12:03 - 2014-10-02 09:23 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-06-28 09:54 - 2014-10-02 09:18 - 00086096 _____ C:\Users\augusto\AppData\Local\GDIPFONTCACHEV1.DAT 2016-06-28 09:54 - 2009-07-14 01:45 - 00341192 _____ C:\Windows\system32\FNTCACHE.DAT 2016-06-28 09:48 - 2014-10-02 09:42 - 00000000 ____D C:\Users\augusto\AppData\Local\Adobe 2016-06-28 09:48 - 2007-01-01 00:25 - 00000000 ____D C:\Users\augusto\AppData\Roaming\Adobe 2016-06-28 09:37 - 2009-07-14 00:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2016-06-28 09:36 - 2009-07-13 23:34 - 00000478 _____ C:\Windows\win.ini 2016-06-28 09:35 - 2009-07-14 15:11 - 00000000 ____D C:\Windows\ShellNew 2016-06-13 19:31 - 2014-10-02 09:35 - 00484008 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe ==================== Bamital & volsnap ================= (Não há correção automática para arquivos que não passaram na verificação.) C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente C:\Windows\explorer.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente C:\Windows\system32\services.exe => O arquivo é assinado digitalmente C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente LastRegBack: 2014-10-02 10:48 ==================== Fim de FRST.txt ============================ Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 28-06-2016 Executado por augusto (2016-06-28 22:49:29) Executando a partir de C:\Users\augusto\Downloads Windows 7 Ultimate (X64) (2014-10-02 12:12:35) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-753345687-175642474-2247743715-500 - Administrator - Disabled) augusto (S-1-5-21-753345687-175642474-2247743715-1000 - Administrator - Enabled) => C:\Users\augusto Convidado (S-1-5-21-753345687-175642474-2247743715-501 - Limited - Disabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Reader 8 - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-A80000000000}) (Version: 8.0.0 - Adobe Systems Incorporated) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.1.2272 - AVAST Software) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.15 - Oracle Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) SafeZone Stable 1.48.2066.114 (x32 Version: 1.48.2066.114 - Avast Software) Hidden UE4 Prerequisites (x64) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (x32 Version: 1.0.13.0 - Epic Games, Inc.) Hidden WinRAR 5.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {17527DE2-2FC5-4812-9D32-E2573371DB51} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-06-28] (AVAST Software) Task: {2C9075FA-B24D-4C04-8A0D-1B18660AC6B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-28] (Google Inc.) Task: {2F44194C-3E86-4CD7-9D23-64AF32A34A1D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-10-02] (Adobe Systems Incorporated) Task: {74F0674A-515D-4364-839C-358139F1051C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-06-28] (Google Inc.) Task: {B3169B7B-B102-4A41-925A-788D2AD51A5C} - System32\Tasks\SafeZone scheduled Autoupdate 1467144062 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-06-17] (Avast Software) Task: {BAACA90B-D352-4F6B-98A1-261317D30792} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-28] (AVAST Software) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ==================== Módulos Carregados (Whitelisted) ============== 2016-06-28 12:41 - 2016-06-28 12:41 - 00146232 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-06-28 17:05 - 2016-06-28 17:05 - 02944512 _____ () C:\Program Files\AVAST Software\Avast\defs\16062801\algo.dll 2016-06-28 12:41 - 2016-06-28 12:41 - 00479288 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-06-28 12:41 - 2016-06-28 12:41 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-06-28 12:35 - 2016-06-15 06:15 - 01745560 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libglesv2.dll 2016-06-28 12:35 - 2016-06-15 06:15 - 00091288 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libegl.dll 2016-06-28 12:35 - 2016-06-15 06:15 - 17599640 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-13 23:34 - 2009-06-10 18:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-753345687-175642474-2247743715-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\augusto\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == (Atualmente não há nenhuma correção automática para esta seção.) ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{124F538F-CC85-45E9-AD45-4F6725EB6BE2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Pontos de Restauração ========================= 02-10-2014 09:19:35 avast! antivirus system restore point 02-10-2014 09:32:48 Windows Update 02-10-2014 09:36:20 Installed Java 7 Update 67 28-06-2016 09:34:08 Installed Microsoft Office Professional Plus 2010 28-06-2016 09:43:59 Instalado Adobe Reader 8 - Português 28-06-2016 16:07:57 Installed Minecraft 28-06-2016 17:43:40 Windows Update 28-06-2016 17:48:09 Windows Update 28-06-2016 21:07:24 UE4 Prerequisites (x64) 28-06-2016 21:09:57 Windows Update 28-06-2016 21:17:37 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 28-06-2016 21:31:15 UE4 Prerequisites (x64) 28-06-2016 21:32:10 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 28-06-2016 21:32:38 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 28-06-2016 21:38:23 Removed Minecraft 28-06-2016 21:56:43 UE4 Prerequisites (x64) 28-06-2016 21:57:21 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 28-06-2016 21:57:40 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 28-06-2016 21:58:24 DirectX instalado 28-06-2016 22:12:36 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 28-06-2016 22:13:17 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 28-06-2016 22:14:26 UE4 Prerequisites (x64) 28-06-2016 22:40:30 UE4 Prerequisites (x64) 28-06-2016 22:42:19 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 28-06-2016 22:43:34 DirectX instalado ==================== Dispositivos Apresentando Falhas No Gerenciador ============= ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (06/28/2016 02:30:56 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa Explorer.EXE versão 6.1.7600.16385 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: 4f0 Hora de Início: 01d1d14e0cf13756 Hora de Término: 1026 Caminho do Aplicativo: C:\Windows\Explorer.EXE Id do Relatório: 0b460e55-3d56-11e6-8382-001fd0fb5d1a Error: (06/28/2016 12:42:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 12:07:33 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 09:43:59 AM) (Source: MsiInstaller) (EventID: 11500) (User: augusto-PC) Description: Produto: Adobe Reader 8 - Português -- Erro 1500. Outra instalação está em andamento. Você deve concluir a instalação anterior antes de continuar a instalação atual. Error: (06/28/2016 09:35:35 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 09:35:35 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 09:35:34 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 09:35:34 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 09:35:34 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Error: (06/28/2016 09:35:34 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualização automática de: com erro: Um certificado necessário não está no período de validade ao ser verificado em relação à hora atual do sistema ou ao carimbo de data/hora no arquivo assinado. . Erros de Sistema: ============= Error: (06/28/2016 07:19:00 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento anterior do sistema em 19:16:38 às ?28/?06/?2016 não era esperado. Error: (06/28/2016 05:07:49 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:45 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:41 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:36 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:32 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:28 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:24 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:20 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. Error: (06/28/2016 05:07:16 PM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk1\DR1, possui um bloco defeituoso. CodeIntegrity: =================================== Date: 2016-06-28 21:25:46.616 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 21:25:46.336 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 19:18:50.390 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 19:18:50.172 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 17:05:38.226 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 17:05:38.117 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 16:59:31.818 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-06-28 16:59:31.693 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. ==================== Informações da Memória =========================== Processador: Intel(R) Core(TM)2 Duo CPU E7300 @ 2.66GHz Percentagem de memória em uso: 83% RAM física total: 2047.55 MB RAM física disponível: 343.89 MB Virtual Total: 4095.11 MB Virtual disponível: 1854.07 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:148.95 GB) (Free:120.14 GB) NTFS Drive e: (Reservado pelo Sistema) (Fixed) (Total:0.34 GB) (Free:0.31 GB) NTFS Drive f: () (Fixed) (Total:74.19 GB) (Free:74 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 0ED284FC) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=149 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 74.5 GB) (Disk ID: F6B34A78) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=74.2 GB) - (Type=07 NTFS) ==================== Fim de Addition.txt ============================