cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 31-08-2016
Executado por CHELSEA_PC (31-08-2016 18:55:55)
Executando a partir de C:\Users\CHELSEA_PC\Downloads
Windows 10 Pro Versão 1511 (X64) (2016-08-06 12:39:18)
Modo da Inicialização: Normal
==========================================================


==================== Contas: =============================

Administrador (S-1-5-21-1718880860-687230560-715582702-500 - Administrator - Disabled)
CHELSEA_PC (S-1-5-21-1718880860-687230560-715582702-1001 - Administrator - Enabled) => C:\Users\CHELSEA_PC
Convidado (S-1-5-21-1718880860-687230560-715582702-501 - Limited - Disabled)
DefaultAccount (S-1-5-21-1718880860-687230560-715582702-503 - Limited - Disabled)

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\uTorrent) (Version: 3.4.8.42449 - BitTorrent Inc.)
Adobe Flash Player 22 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.2.2276 - AVAST Software)
Chromium (HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\Chromium) (Version: 51.0.2683.0 - Chromium)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3011 - Acer Incorporated)
Facebook Games Arcade 0.10.0.3 (HKLM-x32\...\{C3B7C124-136A-4E19-B21C-BDA26F8BA5A7}) (Version: 0.10.0.3 - Facebook)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4358 - Intel Corporation)
Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Medal of Honor 1.0.0.0 (HKLM-x32\...\{657E6D11-3DCB-470B-ADDB-D7133CF12489}_is1) (Version: 1.0.0.0 - Electronic Arts Inc.)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Firefox 48.0.2 (x86 pt-BR) (HKLM-x32\...\Mozilla Firefox 48.0.2 (x86 pt-BR)) (Version: 48.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0.2.6079 - Mozilla)
NVIDIA PhysX (HKLM-x32\...\{1C4551A6-4743-4093-91E4-1477CD655043}) (Version: 9.09.0203 - NVIDIA Corporation)
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.13.2-r115422-release - Plays.tv, LLC)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
SafeZone Stable 1.51.2220.47 (x32 Version: 1.51.2220.47 - Avast Software) Hidden
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
SlimDrivers (HKLM-x32\...\{746AB259-6474-4111-8966-1C62F9A6E063}) (Version: 2.3.1 - SlimWare Utilities, Inc.)
State of Decay 14.6.23.5340 (HKLM-x32\...\State of Decay 14.6.23.5340) (Version: 14.6.23.5340 - Undead Labs)
The Elder Scrolls V: Skyrim - Legendary Edition (HKLM-x32\...\The Elder Scrolls V: Skyrim - Legendary Edition_is1) (Version: - )
Unity Web Player (HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\UnityWebPlayer) (Version: 5.3.5f1 - Unity Technologies ApS)
Vimicro USB2.0 UVC PC Camera (HKLM-x32\...\{71A51A91-E7D3-11DB-A386-005056C00008}) (Version: 2009.03.18 - Vimicro Corp.)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)

==================== Exame Personalizado CLSID (Whitelisted): ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

CustomCLSID: HKU\S-1-5-21-1718880860-687230560-715582702-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\CHELSEA_PC\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1718880860-687230560-715582702-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)

==================== Tarefas Agendadas (Whitelisted) =============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {0010F95B-10D9-46FF-A42E-EBC22463E67B} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\CHELSEA_PC\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-23] (Microsoft Corporation)
Task: {03D05454-7337-488C-81DE-3C60ED70A498} - System32\Tasks\SafeZone scheduled Autoupdate 1470495347 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-07-25] (Avast Software)
Task: {4C38C941-5FE8-45DC-84B7-7D6421991B85} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-29] (Google Inc.)
Task: {57491193-63C5-49A4-8799-72D2CC9AD42C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-29] (Google Inc.)
Task: {7D9C12AC-B3B5-4510-8909-1D209AD22F6B} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-08-06] (AVAST Software)
Task: {95EC89B6-9426-4AFF-8598-7FD04B54CFE6} - System32\Tasks\Yahoo! Powered radet => Wscript.exe "C:\ProgramData\{BAC17FA2-3083-F564-B645-6B262C07E0E8}\dato.txt" "687474703a2f2f7761676e672e636f6d" "433a5c50726f6772616d446174615c7b42414331374641322d333038332d463536342d423634352d3642323632433037453045387d5c6c6563656369" "433a5c50726f6772616d446174615c7b42414331374641322d333038332d463536342d423634 (a entrada de dados tem 78 mais caracteres).
Task: {9BBE665F-2960-48AE-BC27-15008432414F} - System32\Tasks\{5DBF619F-82C3-4317-B7E6-1D2F38D73BBE} => Chrome.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.12.0.101&LastError=404
Task: {9E053939-3CEB-464C-B172-B72464F4B7C4} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe [2016-08-06] (Adobe Systems Incorporated)
Task: {AAC9BB68-C48F-4CB2-8BEF-F57F391E04D7} - System32\Tasks\ACC => C:\Program Files\DriverSetupUtility\FUB\FUB_Send.bat [2015-06-22] () <==== ATENÇÃO
Task: {D16D3278-43DB-49B1-BA3A-D903D168D42A} - System32\Tasks\{74153D3D-DB1C-4F8E-92ED-A7BA99037F06} => pcalua.exe -a C:\Users\CHELSEA_PC\AppData\Local\{D383E5DF-F72B-8967-9AB3-AC8FBEDB5017}\uninst.exe -c -FN="C:\Users\CHELSEA_PC\AppData\Roaming\{D3DEE565-F68C-8813-9DBA-AFC1416852FF}\syncversion.exe"-P=/Uninstall /s /noun /DelSelfDir
Task: {D933309A-59C6-4497-8AD6-0938103DA671} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-06] (Adobe Systems Incorporated)

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Yahoo! Powered radet.job => Wscript.exe C:\ProgramData\{BAC17FA2-3083-F564-B645-6B262C07E0E8}\dato.txt <==== ATENÇÃO

==================== Atalhos =============================

(As entradas podem ser listadas para serem restauradas ou removidas.)

==================== Módulos Carregados (Whitelisted) ==============

2015-10-30 04:17 - 2015-10-30 04:17 - 00028672 _____ () C:\Windows\SYSTEM32\efsext.dll
2015-10-30 04:18 - 2015-10-30 04:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-08-06 14:42 - 2016-07-01 01:48 - 02656408 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-08-06 14:42 - 2016-07-01 01:48 - 02656408 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-08-23 13:01 - 2016-08-23 13:01 - 01864384 _____ () C:\Users\CHELSEA_PC\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll
2016-08-06 15:04 - 2015-12-07 01:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-08-06 15:11 - 2016-07-01 00:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-08-06 14:43 - 2016-07-01 00:27 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-08-06 14:40 - 2016-07-01 00:21 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-08-06 14:42 - 2016-07-01 00:22 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-08-06 14:42 - 2016-07-01 00:24 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-08-06 11:32 - 2016-08-06 11:33 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-08-16 06:07 - 2016-08-16 06:09 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-08-16 06:07 - 2016-08-16 06:09 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-08-06 11:27 - 2016-08-06 11:28 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-08-06 11:08 - 2016-08-06 11:08 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-08-06 12:10 - 2016-08-06 12:10 - 00016896 _____ () C:\Program Files\WindowsApps\51257MaximeFrappat.Azubu_1.2.1.0_x64__as1ssbhd2rqcr\Azubu.exe
2016-08-06 12:10 - 2016-08-06 12:10 - 09894400 _____ () C:\Program Files\WindowsApps\51257MaximeFrappat.Azubu_1.2.1.0_x64__as1ssbhd2rqcr\Azubu.dll
2016-08-06 11:35 - 2016-08-06 11:35 - 04108184 _____ () C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.0.1606.0_x64__8wekyb3d8bbwe\Microsoft.Advertising.dll
2015-10-30 04:18 - 2015-10-30 04:18 - 00218456 _____ () c:\windows\system32\WerEtw.dll
2016-08-06 11:48 - 2016-08-06 11:48 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-08-06 11:48 - 2016-08-06 11:48 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2016-08-31 17:33 - 2016-08-31 17:33 - 03017728 _____ () C:\Program Files\AVAST Software\Avast\defs\16083103\algo.dll
2016-08-23 13:00 - 2016-08-23 13:00 - 01383616 _____ () C:\Users\CHELSEA_PC\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll
2016-08-23 13:01 - 2016-08-23 13:01 - 00118976 _____ () C:\Users\CHELSEA_PC\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll
2016-08-06 11:49 - 2016-08-06 11:49 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-08-06 11:32 - 2016-08-06 11:33 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-08-06 11:32 - 2016-08-06 11:33 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-08-29 16:48 - 2016-08-02 21:24 - 01771336 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libglesv2.dll
2016-08-29 16:48 - 2016-08-02 21:23 - 00094024 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(Se uma entrada for incluída na fixlist, somente o ADS será removido.)


==================== Modo de Segurança (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)


==================== Associação (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.)


==================== Internet Explorer confiável/restrito ===============

(Se uma entrada for incluída na fixlist, será removida do Registro.)


==================== Hosts Conteúdo: ===============================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2015-10-30 04:24 - 2016-08-08 06:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Outras Áreas ============================

(Atualmente não há nenhuma correção automática para esta seção.)

HKU\S-1-5-21-1718880860-687230560-715582702-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Firewall do Windows está habilitado.

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

(Atualmente não há nenhuma correção automática para esta seção.)

MSCONFIG\Services: lfsvc => 3
MSCONFIG\Services: rtop => 2
HKLM\...\StartupApproved\Run32: => "VMonitorVMUVC"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\StartupApproved\StartupFolder: => "FacebookGamesNotifier.exe.lnk"
HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\StartupApproved\Run: => "Chromium"
HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-1718880860-687230560-715582702-1001\...\StartupApproved\Run: => "EADM"

==================== Regras do Firewall (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{57FDAFBC-3A38-459F-80D9-36BAB794E620}] => (Allow) C:\Users\CHELSEA_PC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{D3A8A53E-D2DA-47AD-89B8-152A68CB2152}] => (Allow) C:\Users\CHELSEA_PC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{71FDCAA4-B55C-4FA3-8119-8BCB4E2C4B98}] => (Allow) C:\Users\CHELSEA_PC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{EF86CA42-ADEC-41B4-9242-A53141CD1D5F}] => (Allow) C:\Users\CHELSEA_PC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DBBCDCAE-FB46-467D-A913-4D5B5286840E}] => (Allow) C:\Users\CHELSEA_PC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{D58E7856-A3F9-48C6-B998-A497524EA865}] => (Allow) C:\Users\CHELSEA_PC\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{65B75FF6-5878-47BC-96AE-4CC6D821A1EE}] => (Allow) C:\Users\CHELSEA_PC\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [{CA9347AD-46F3-4931-9283-3BC3E7D39768}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{4873E641-5271-4396-80D2-560FB40C35E0}C:\games\fifa 14\game\fifa14.exe] => (Allow) C:\games\fifa 14\game\fifa14.exe
FirewallRules: [UDP Query User{FF1D131B-CD7E-4D42-8C44-C9AF7FB58896}C:\games\fifa 14\game\fifa14.exe] => (Allow) C:\games\fifa 14\game\fifa14.exe
FirewallRules: [{0E711228-8610-4F74-8632-4A41115C6C96}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F5B732EC-6EFE-4291-B26D-8981F19E4EB1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{B4A72D84-99B8-4B16-BA7C-69835C73F7B3}F:\crack\pes2013.exe] => (Allow) F:\crack\pes2013.exe
FirewallRules: [UDP Query User{8855A6FA-067F-4B23-A8C8-D9924AE154D5}F:\crack\pes2013.exe] => (Allow) F:\crack\pes2013.exe
FirewallRules: [TCP Query User{7EFAEF48-0A7B-4561-B362-5754E4C4E1BC}D:\pes2013_r1\program files\konami\pro evolution soccer 2013\pes2013.exe] => (Allow) D:\pes2013_r1\program files\konami\pro evolution soccer 2013\pes2013.exe
FirewallRules: [UDP Query User{C3425A92-23BE-4E48-A3C2-C1C67A687394}D:\pes2013_r1\program files\konami\pro evolution soccer 2013\pes2013.exe] => (Allow) D:\pes2013_r1\program files\konami\pro evolution soccer 2013\pes2013.exe
FirewallRules: [{01578C81-F49F-4736-9587-7FD8F077DBB8}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{7D344F40-85EB-45CF-873B-60201730C151}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{8114DD96-5FAC-4FB8-9BC9-693552168C7C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Pontos de Restauração =========================

ATENÇÃO: A Restauração do Sistema está desabilitada

==================== Dispositivos Apresentando Falhas No Gerenciador =============

Name: Controlador de criptografia/descriptografia PCI
Description: Controlador de criptografia/descriptografia PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Erros no Log de eventos: =========================

Erros em Aplicativos:
==================
Error: (08/28/2016 03:49:51 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-3NP6TLV)
Description: Falha na ativação do aplicativo Microsoft.Windows.Photos_8wekyb3d8bbwe!App com o erro: -2147023170. Veja o log Microsoft-Windows-TWinUI/Operational para obter informações adicionais.

Error: (08/27/2016 06:52:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-3NP6TLV)
Description: Falha na ativação do aplicativo Microsoft.AccountsControl_cw5n1h2txyewy!App com o erro: -2147023170. Veja o log Microsoft-Windows-TWinUI/Operational para obter informações adicionais.

Error: (08/27/2016 06:51:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: AccountsControlHost.exe, versão: 10.0.10586.122, carimbo de data/hora: 0x56cc1660
Nome do módulo com falha: Windows.UI.Xaml.dll, versão: 10.0.10586.545, carimbo de data/hora: 0x57a1bca1
Código de exceção: 0xc000027b
Deslocamento da falha: 0x00000000006fd01b
ID do processo com falha: 0xfc8
Hora de início do aplicativo com falha: 0x01d200ad394af268
Caminho do aplicativo com falha: C:\Windows\SystemApps\Microsoft.AccountsControl_cw5n1h2txyewy\AccountsControlHost.exe
Caminho do módulo com falha: C:\Windows\System32\Windows.UI.Xaml.dll
ID do Relatório: 423e002d-10a6-489b-a693-57bcddc5c94d
Nome completo do pacote com falha: Microsoft.AccountsControl_10.0.10586.0_neutral__cw5n1h2txyewy
ID do aplicativo relativo ao pacote com falha: App

Error: (08/26/2016 04:42:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: NetworkUXBroker.exe, versão: 10.0.10586.420, carimbo de data/hora: 0x57491d98
Nome do módulo com falha: ntdll.dll, versão: 10.0.10586.306, carimbo de data/hora: 0x571af2eb
Código de exceção: 0xc0000409
Deslocamento da falha: 0x0000000000007fd0
ID do processo com falha: 0x43c
Hora de início do aplicativo com falha: 0x01d1ffd2078ae4f7
Caminho do aplicativo com falha: C:\Windows\System32\NetworkUXBroker.exe
Caminho do módulo com falha: C:\Windows\SYSTEM32\ntdll.dll
ID do Relatório: e01e2edb-653f-4501-981f-fbc8a3e48fbf
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:

Error: (08/25/2016 08:19:36 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-3NP6TLV)
Description: Falha na ativação do aplicativo Microsoft.Windows.Photos_8wekyb3d8bbwe!App com o erro: -2144927142. Veja o log Microsoft-Windows-TWinUI/Operational para obter informações adicionais.

Error: (08/25/2016 08:19:36 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa Microsoft.Photos.exe versão 1.0.1607.22006 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle Segurança e Manutenção.

ID do Processo: 1b94

Hora de Início: 01d1ff271928188d

Hora de Término: 4294967295

Caminho do Aplicativo: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID do Relatório: 61b5f10f-6b1a-11e6-8bed-7427ea7ae15b

Nome completo do pacote com falha: Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe

ID do aplicativo relativo ao pacote com falha: App

Error: (08/25/2016 08:19:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: DESKTOP-3NP6TLV)
Description: O aplicativo Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe+App não foi iniciado dentro do tempo alocado.

Error: (08/25/2016 08:19:26 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa Microsoft.Photos.exe versão 1.0.1607.22006 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle Segurança e Manutenção.

ID do Processo: 1590

Hora de Início: 01d1ff0214b61440

Hora de Término: 4294967295

Caminho do Aplicativo: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID do Relatório: 4aa996c6-6b1a-11e6-8bed-7427ea7ae15b

Nome completo do pacote com falha: Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe

ID do aplicativo relativo ao pacote com falha: App

Error: (08/25/2016 08:19:11 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-3NP6TLV)
Description: Falha na ativação do aplicativo Microsoft.Windows.Photos_8wekyb3d8bbwe!App com o erro: -2144927142. Veja o log Microsoft-Windows-TWinUI/Operational para obter informações adicionais.

Error: (08/24/2016 04:25:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome do aplicativo com falha: rads_user_kernel.exe, versão: 0.0.0.0, carimbo de data/hora: 0x4e65c1ac
Nome do módulo com falha: rads_user_kernel.exe, versão: 0.0.0.0, carimbo de data/hora: 0x4e65c1ac
Código de exceção: 0xc0000005
Deslocamento da falha: 0x000b8554
ID do processo com falha: 0x167c
Hora de início do aplicativo com falha: 0x01d1fe3d53e2c487
Caminho do aplicativo com falha: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
Caminho do módulo com falha: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
ID do Relatório: e6fee311-7d7d-4377-8ee9-c073e6505b85
Nome completo do pacote com falha:
ID do aplicativo relativo ao pacote com falha:


Erros de Sistema:
=============
Error: (08/31/2016 02:53:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: O serviço Intel(R) Content Protection HECI Service terminou com o erro:
%%2147942659 = Não há mais dados disponíveis.

Error: (08/31/2016 02:53:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Tempo limite esgotado (30000 milissegundos) ao aguardar a conexão do serviço Host de Sincronização_28f89e0.

Error: (08/31/2016 02:53:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Tempo limite esgotado (30000 milissegundos) ao aguardar a conexão do serviço Armazenamento de Dados de Usuário_28f89e0.


CodeIntegrity:
===================================
Date: 2016-08-13 20:16:41.696
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-13 11:37:19.836
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-10 05:26:42.223
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-10 03:11:22.186
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-06 20:12:16.684
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-06 12:13:28.657
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-06 11:59:04.849
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-06 10:08:20.802
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-06 09:38:06.654
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-08-06 09:28:54.690
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Informações da Memória ===========================

Processador: Intel(R) Celeron(R) CPU J1800 @ 2.41GHz
Percentagem de memória em uso: 77%
RAM física total: 1921.23 MB
RAM física disponível: 436.3 MB
Virtual Total: 3461.55 MB
Virtual disponível: 1580.71 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:96.78 GB) (Free:12.71 GB) NTFS ==>[drive com componentes de inicialização (obtido através de BCD)]
Drive d: (Lucas) (Fixed) (Total:200.09 GB) (Free:166.27 GB) NTFS

==================== MBR & Tabela de Partições ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: DE560695)
Partition 1: (Not Active) - (Size=200.1 GB) - (Type=07 NTFS)
Partition 2: (Active) - (Size=96.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=450 MB) - (Type=27)

==================== Fim de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité