Resultado do exame Adicional Farbar Recovery Scan Tool (x86) Versão: 31-08-2016 Executado por User (11-09-2016 19:34:32) Executando a partir de F:\BACKUP GERAL\Downloads Microsoft Windows 7 Ultimate (X86) (2016-06-15 14:13:38) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-943065992-922339391-255231251-500 - Administrator - Disabled) Convidado (S-1-5-21-943065992-922339391-255231251-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-943065992-922339391-255231251-1002 - Limited - Enabled) User (S-1-5-21-943065992-922339391-255231251-1000 - Administrator - Enabled) => C:\Users\User ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) ACA & MEP 2017 Object Enabler (Version: 7.9.45.0 - Autodesk) Hidden ACAD Private (Version: 21.0.52.0 - Autodesk) Hidden Adobe Flash Player 22 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 22.0.0.210 - Adobe Systems Incorporated) Adobe Reader XI (11.0.17) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.17 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-943065992-922339391-255231251-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Ares 2.2.4 (HKLM\...\Ares) (Version: 2.2.4-Build#3048 - Ares Development Group) Audacity 2.1.2 (HKLM\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) AutoCAD 2014 - Português - Brasil (Brazilian Portuguese) (Version: 19.1.18.0 - Autodesk) Hidden AutoCAD 2014 Language Pack - Português - Brasil (Brazilian Portuguese) (Version: 19.1.18.0 - Autodesk) Hidden AutoCAD 2017 (Version: 21.0.52.0 - Autodesk) Hidden AutoCAD 2017 Language Pack - Français (French) (Version: 21.0.52.0 - Autodesk) Hidden Autodesk 360 (HKLM\...\{52B28CAD-F49D-47BA-9FFE-29C2E85F0D0B}) (Version: 4.0.27.1 - Autodesk) Autodesk App Manager (HKLM\...\{C070121A-C8C5-4D52-9A7D-D240631BD433}) (Version: 1.1.0 - Autodesk) Autodesk AutoCAD 2014 - Português - Brasil (Brazilian Portuguese) (HKLM\...\AutoCAD 2014 - Português - Brasil (Brazilian Portuguese)) (Version: 19.1.18.0 - Autodesk) Autodesk Content Service (HKLM\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk) Autodesk Content Service (Version: 3.1.3.0 - Autodesk) Hidden Autodesk Content Service Language Pack (Version: 3.1.3.0 - Autodesk) Hidden Autodesk Featured Apps (HKLM\...\{F732FEDA-7713-4428-934B-EF83B8DD65D0}) (Version: 1.1.0 - Autodesk) Autodesk Material Library 2014 (HKLM\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.19.0 - Autodesk) Autodesk Material Library Base Resolution Image Library 2014 (HKLM\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.19.0 - Autodesk) Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.0.43.13 - Autodesk) Autodesk ReCap (Version: 1.0.43.13 - Autodesk) Hidden Autodesk ReCap Language Pack-English (Version: 1.0.43.13 - Autodesk) Hidden Avast Free Antivirus (HKLM\...\Avast) (Version: 12.3.2280 - AVAST Software) Common Desktop Agent (Version: 1.62.0 - OEM) Hidden Driver Easy 5.0.6 (HKLM\...\DriverEasy_is1) (Version: 5.0.6 - Easeware) FARO LS 1.1.501.0 (HKLM\...\{8F196892-666A-4A40-8587-6AE38F78A5C2}) (Version: 5.1.0.30630 - FARO Scanner Production) Google Chrome (HKLM\...\Google Chrome) (Version: 53.0.2785.101 - Google Inc.) Google Update Helper (Version: 1.3.21.153 - Google Inc.) Hidden Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2993 - Intel Corporation) Java 7 Update 21 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217021FF}) (Version: 7.0.210 - Oracle) K-Lite Codec Pack 6.6.6 (Standard) (HKLM\...\KLiteCodecPack_is1) (Version: 6.6.6 - ) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Pacote de Idiomas do Microsoft .NET Framework 4 Client Profile - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Client Profile PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Pacote de Idiomas do Microsoft .NET Framework 4 Extended - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Extended PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SafeZone Stable 1.51.2220.53 (Version: 1.51.2220.53 - Avast Software) Hidden Samsung Easy Printer Manager (HKLM\...\Samsung Easy Printer Manager) (Version: 1.05.82.00(27/07/2015) - Samsung Electronics Co., Ltd.) SketchUp Import for AutoCAD 2014 (HKLM\...\{644E9589-F73A-49A4-AC61-A953B9DE5669}) (Version: 1.1.0 - Autodesk) Skype™ 7.27 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.) Uninstall Samsung Printer Software (HKLM\...\TotalUninstaller) (Version: 4.0.0.67 - Samsung Electronics CO., LTD.) WinRAR 5.00 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-943065992-922339391-255231251-1000_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-943065992-922339391-255231251-1000_Classes\CLSID\{7DE1BE5C-CEBA-4F1D-ACBC-9CE11EE9A2A1}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-943065992-922339391-255231251-1000_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-943065992-922339391-255231251-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2014\pt-BR\acadficn.dll (Autodesk, Inc.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {0041A1D6-4598-45C9-BD97-A10D7D0C1D78} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-14] (Adobe Systems Incorporated) Task: {201720AF-C17E-4457-ADAB-8F38CDABCDA7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-06-15] (Google Inc.) Task: {315AEDFC-744B-4763-9006-B1B2BD540F93} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-15] (AVAST Software) Task: {43B81F54-B7FA-48F5-89CB-7AE35D4959D7} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [2016-06-11] (Easeware) Task: {7530D160-AC78-4CAE-A88B-744138A2BFD4} - System32\Tasks\avastBCLRestart_chrome.exe => Chrome.exe Task: {80E13E59-E371-4BF3-9559-8ED42B373AA4} - System32\Tasks\SafeZone scheduled Autoupdate 1466021463 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-08-09] (Avast Software) Task: {9C5D957D-CD3B-4DB1-8D1B-3AD63E1114C9} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-09-10] (AVAST Software) Task: {D30F8A3D-1B9B-42FC-B2F6-B9D456B8B1DA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-06-15] (Google Inc.) Task: {E3402759-E950-4AD7-913E-88A3DC7D561B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {F03C8782-1BEC-4CB7-82A0-21C04D37F4FE} - System32\Tasks\DriverEasy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [2016-06-11] (Easeware) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ==================== Módulos Carregados (Whitelisted) ============== 2016-09-10 19:40 - 2016-09-10 19:40 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-09-11 09:29 - 2016-09-11 09:29 - 03085488 _____ () C:\Program Files\AVAST Software\Avast\defs\16091102\algo.dll 2016-09-10 19:40 - 2016-09-10 19:40 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2010-01-30 02:41 - 2010-01-30 02:41 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2016-07-20 20:35 - 2015-03-11 23:43 - 00018432 _____ () C:\Windows\System32\us00alm.dll 2013-02-19 13:43 - 2013-02-19 13:43 - 00094208 _____ () C:\Windows\System32\IccLibDll.dll 2016-07-01 15:34 - 2016-07-01 15:34 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-09-08 13:30 - 2014-09-08 13:30 - 00351968 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe 2014-09-08 13:32 - 2014-09-08 13:32 - 00050688 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll 2016-07-20 20:35 - 2016-05-25 07:19 - 01530672 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\us00adu.dll 2016-06-15 17:13 - 2016-06-15 17:10 - 00008192 _____ () C:\Windows\system32\srvany.exe 2016-06-15 17:13 - 2016-06-15 17:10 - 00077824 _____ () C:\Windows\KMService.exe 2013-02-05 00:21 - 2013-02-05 00:21 - 00049184 _____ () C:\Program Files\Autodesk\Autodesk Sync\qoauth_Ad_1.dll 2013-02-05 00:21 - 2013-02-05 00:21 - 00744992 _____ () C:\Program Files\Autodesk\Autodesk Sync\qca_Ad_2.dll 2013-02-05 00:21 - 2013-02-05 00:21 - 00106016 _____ () C:\Program Files\Autodesk\Autodesk Sync\QJson.dll 2013-02-05 00:21 - 2013-02-05 00:21 - 00039456 _____ () C:\Program Files\Autodesk\Autodesk Sync\QtSolutions_MFCMigrationFramework_Ad_2.dll 2016-09-10 09:19 - 2016-09-06 22:29 - 01806152 _____ () C:\Program Files\Google\Chrome\Application\53.0.2785.101\libglesv2.dll 2016-09-10 09:19 - 2016-09-06 22:29 - 00094024 _____ () C:\Program Files\Google\Chrome\Application\53.0.2785.101\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) HKU\S-1-5-21-943065992-922339391-255231251-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1" ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-13 23:04 - 2009-06-10 18:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-943065992-922339391-255231251-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\User\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.100.61 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == (Atualmente não há nenhuma correção automática para esta seção.) ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [TCP Query User{C7FC08A2-3241-4E4E-9FF2-2F3F7C6EAA77}C:\program files\ares\ares.exe] => (Allow) C:\program files\ares\ares.exe FirewallRules: [UDP Query User{18626870-8B50-4801-BC01-DF831B412D01}C:\program files\ares\ares.exe] => (Allow) C:\program files\ares\ares.exe FirewallRules: [{4298B751-F0EC-451B-9DFC-D093D01E3A43}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{66977F88-A19A-47F1-B810-0A90443FD7A4}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\user\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{75841994-1099-43B4-8F46-EC7494B1B82F}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\user\appdata\local\akamai\netsession_win.exe FirewallRules: [{C3BF180D-D0CF-4E47-9720-0E5141C92A95}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{761BC49B-791C-4148-8C1D-06847BF1CDE2}] => (Allow) LPort=50248 FirewallRules: [{204ABB51-84EF-4D10-AD12-D01CEB1A387A}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\IDS.Application.exe FirewallRules: [{5F15143F-78BB-4380-B9C4-4BEAB847CBDC}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\OrderSupplies.exe FirewallRules: [{30B3EA64-B79A-4DDE-9D0B-25DBE16E1AAA}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\IDSAlert.exe FirewallRules: [{3D899995-6A64-4CD4-B4A8-2B1846DE2D24}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\uninstall.exe FirewallRules: [{CD931569-D3B2-4738-AD9C-0F794D1D5238}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe FirewallRules: [{A4969CDD-1D79-40D8-8676-9896D3914801}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exe FirewallRules: [{0193A199-4DE7-4BCF-A7FC-75301FEA6EAE}] => (Allow) C:\Program Files\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exe FirewallRules: [TCP Query User{DB4B9106-F19C-4B8E-9BA2-A92E6CDCB41B}C:\program files\ares\ares.exe] => (Block) C:\program files\ares\ares.exe FirewallRules: [UDP Query User{A9518FF3-34E5-462A-BA48-7061028A84C5}C:\program files\ares\ares.exe] => (Block) C:\program files\ares\ares.exe FirewallRules: [{72CBF1D9-0B83-4F64-9409-856F2B82366E}] => (Allow) LPort=49333 FirewallRules: [{F51CDA30-A990-4162-A5A5-96D06D4A9F8B}] => (Allow) LPort=5000 FirewallRules: [{E42FBD65-576A-4164-ACF3-A122F410A6D4}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{C4493220-DF94-46E3-BB96-5414A44C620C}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{B2828571-052A-40B7-A67E-8154A55248B5}C:\users\user\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\user\appdata\local\akamai\netsession_win.exe FirewallRules: [{887FA6F2-9C54-4160-9207-23C86C31D788}] => (Allow) LPort=49205 FirewallRules: [{C234FE58-484A-4A61-A353-527B0A8CAB64}] => (Allow) LPort=5000 ==================== Pontos de Restauração ========================= 04-07-2016 09:26:31 Ponto de Verificação Agendado 05-07-2016 13:21:30 ASU_MSI_TRAN 20-07-2016 19:19:24 Ponto de Verificação Agendado 30-07-2016 17:49:04 ASU_MSI_TRAN 17-08-2016 16:25:17 Ponto de Verificação Agendado 25-08-2016 11:54:38 Ponto de Verificação Agendado 01-09-2016 09:41:24 ASU_MSI_TRAN 08-09-2016 12:56:01 Ponto de Verificação Agendado ==================== Dispositivos Apresentando Falhas No Gerenciador ============= ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (09/11/2016 05:28:32 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Error: (09/11/2016 05:28:32 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (09/11/2016 05:28:32 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (09/11/2016 03:33:04 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Error: (09/11/2016 03:33:04 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (09/11/2016 03:33:04 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (09/11/2016 03:32:01 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Error: (09/11/2016 03:32:01 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (09/11/2016 03:32:01 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (09/11/2016 09:33:41 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Erros de Sistema: ============= Error: (09/11/2016 05:45:49 PM) (Source: Disk) (EventID: 11) (User: ) Description: O driver detectou um erro de controlador em \Device\Harddisk2\DR4. Error: (09/11/2016 05:45:48 PM) (Source: Disk) (EventID: 11) (User: ) Description: O driver detectou um erro de controlador em \Device\Harddisk2\DR4. Error: (09/11/2016 05:24:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço DgiVecp devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (09/11/2016 05:23:57 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: AUTORIDADE NT) Description: Verificação de volume criptografado: as informações de volume em D: não podem ser lidas. Error: (09/11/2016 03:31:52 PM) (Source: Disk) (EventID: 11) (User: ) Description: O driver detectou um erro de controlador em \Device\Harddisk3\DR3. Error: (09/11/2016 03:31:50 PM) (Source: Disk) (EventID: 11) (User: ) Description: O driver detectou um erro de controlador em \Device\Harddisk3\DR3. Error: (09/11/2016 03:27:40 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço DgiVecp devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (09/11/2016 03:27:23 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: AUTORIDADE NT) Description: Verificação de volume criptografado: as informações de volume em D: não podem ser lidas. Error: (09/11/2016 09:27:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço DgiVecp devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (09/10/2016 07:00:11 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Tempo limite esgotado (30000 milissegundos) ao aguardar a resposta de uma transação do serviço Spooler. CodeIntegrity: =================================== Date: 2016-09-10 12:59:57.024 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-10 12:59:56.914 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-10 08:54:34.164 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-10 08:54:33.961 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-08 13:46:14.024 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-08 13:46:13.992 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-08 11:07:01.523 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-08 11:07:01.336 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 15:08:00.445 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 15:08:00.289 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. ==================== Informações da Memória =========================== Processador: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz Percentagem de memória em uso: 57% RAM física total: 3509.11 MB RAM física disponível: 1500.28 MB Virtual Total: 7016.5 MB Virtual disponível: 4765.13 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:176.66 GB) (Free:135.18 GB) NTFS Drive f: (BACKUP) (Fixed) (Total:289 GB) (Free:273.48 GB) NTFS Drive h: (JUNIOR) (Removable) (Total:3.73 GB) (Free:1.75 GB) FAT32 ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: C2F2252F) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=176.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=289 GB) - (Type=07 NTFS) Could not read MBR for disk 1. ======================================================== Disk: 2 (Size: 3.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fim de Addition.txt ============================