Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 02-12-2016 Executado por Computador (03-12-2016 18:21:18) Executando a partir de C:\ Windows 7 Ultimate Service Pack 1 (X64) (2012-05-12 14:21:02) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-361755602-808845968-1976823773-500 - Administrator - Disabled) ASPNET (S-1-5-21-361755602-808845968-1976823773-1004 - Limited - Enabled) Computador (S-1-5-21-361755602-808845968-1976823773-1000 - Administrator - Enabled) => C:\Users\Computador Convidado (S-1-5-21-361755602-808845968-1976823773-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-361755602-808845968-1976823773-1002 - Limited - Enabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Norton Internet Security (Disabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Internet Security (Disabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202} FW: Norton Internet Security (Disabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) @BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.09 - GIGABYTE) µTorrent (HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\uTorrent) (Version: 3.4.9.42973 - BitTorrent Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.144 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Creative Suite 5 Master Collection (HKLM-x32\...\{1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}) (Version: 5.0 - Adobe Systems Incorporated) Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Reader 9.3 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A93000000001}) (Version: 9.3.0 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Apple Application Support (HKLM-x32\...\{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}) (Version: 2.1.7 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) AutoCAD 2012 - Brasil (Version: 18.2.51.0 - Autodesk) Hidden AutoCAD 2012 Language Pack - Brasil (Version: 18.2.51.0 - Autodesk) Hidden Autodesk 3ds Max 2016 (HKLM\...\Autodesk 3ds Max 2016) (Version: 18.0.873.0 - Autodesk) Autodesk 3ds Max 2016 (Version: 18.0.873.0 - Autodesk) Hidden Autodesk 3ds Max 2016 Populate Data (HKLM\...\{57E92DED-DC7C-41E5-B9E1-76D83BD2EABE}) (Version: 18.0.0.0 - Autodesk) Autodesk 3ds Max Design 2012 64-bit - English (Version: 14.2.0.375 - Autodesk) Hidden Autodesk 3ds Max Design 2012 64-bit - English SP2 (HKLM-x32\...\Autodesk 3ds Max Design 2012 64-bit - English SP2) (Version: 14.2.0.375 - Autodesk) Autodesk Advanced Material Library Image Library 2016 (HKLM-x32\...\{94AD53E7-493B-4291-8714-7A3B761D2783}) (Version: 6.3.0.19 - Autodesk) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 5.0.142.14 - Autodesk) Autodesk Backburner 2012.0.0 (HKLM-x32\...\{3D347E6D-5A03-4342-B5BA-6A771885F379}) (Version: 2012.0.0 - Autodesk, Inc.) Autodesk Civil View for 3ds Max 2016 64-bit (HKLM\...\{1C4FFAF0-6DBB-4F7A-A386-46747D060826}) (Version: 18.0.0.0 - Autodesk) Autodesk Content Service (HKLM-x32\...\{086F9A69-CD39-4893-A9FB-D3A0634CE3F7}) (Version: 2.0.90 - Autodesk) Autodesk DirectConnect 2016 64-bit (HKLM\...\Autodesk DirectConnect 2016 64-bit) (Version: 10.0.98.0 - Autodesk) Autodesk DirectConnect 2016 64-bit (Version: 10.0.98.0 - Autodesk) Hidden Autodesk FBX Plug-in 2011.1 - 3ds Max 2011 64-bit (HKLM\...\Autodesk FBX Plug-in 2011.1 - 3ds Max 2011 64-bit) (Version: - Autodesk) Autodesk FBX Plug-in 2012.0 - 3ds Max Design 2012 64-bit (HKLM\...\Autodesk FBX Plug-in 2012.0 - 3ds Max Design 2012 64-bit) (Version: - Autodesk) Autodesk Inventor Fusion 2012 (HKLM\...\Autodesk Inventor Fusion 2012) (Version: 1.0.0.79 - Autodesk, Inc.) Autodesk Inventor Fusion 2012 (Version: 1.0.0.79 - Autodesk, Inc.) Hidden Autodesk Inventor Fusion plug-in for AutoCAD 2012 (HKLM\...\Plug-in Autodesk Inventor Fusion para AutoCAD 2012) (Version: 0.0.1.138 - Autodesk) Autodesk Inventor Server Engine for 3ds Max 2016 (HKLM\...\{9167CA34-4E58-49E3-8892-3C439739D2D3}) (Version: 18.0 - Autodesk) Autodesk Material Library 2011 (HKLM-x32\...\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}) (Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2011 Base Image library (HKLM-x32\...\{CD1E078C-A6B9-47DA-B035-6365C85C7832}) (Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2011 Medium Image library (HKLM-x32\...\{975951E7-14D0-49AF-A630-89680D12D7F6}) (Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library 2016 (HKLM-x32\...\{29A7D6EC-63C2-42FD-8143-5812ABD2923F}) (Version: 6.3.0.19 - Autodesk) Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Base Resolution Image Library 2016 (HKLM-x32\...\{6B4CFC6E-ECB0-47FE-95D3-65C680ED0687}) (Version: 6.3.0.19 - Autodesk) Autodesk Material Library Medium Resolution Image Library 2012 (HKLM-x32\...\{B5751715-EC10-43D9-8C95-62E1368433EF}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Medium Resolution Image Library 2016 (HKLM-x32\...\{415A5A54-325E-4815-9940-62A889CA3877}) (Version: 6.3.0.19 - Autodesk) Autodesk Maya 2016 (HKLM\...\Autodesk Maya 2016) (Version: 16.0.1312.0 - Autodesk) Autodesk Maya 2016 (Version: 16.0.1312.0 - Autodesk) Hidden Autodesk Maya 2016 Extension 2 (HKLM\...\Autodesk Maya 2016 Extension 2) (Version: 16.50.1224.0 - Autodesk) Autodesk Maya 2016 Extension 2 (Version: 16.50.1224.0 - Autodesk) Hidden Autodesk Revit Interoperability for 3ds Max (HKLM\...\Autodesk Revit Interoperability for 3ds Max ) (Version: 16.0.394.0 - Autodesk) Autodesk Revit Interoperability for 3ds Max (Version: 16.0.394.0 - Autodesk) Hidden Bamboo Dock (HKLM-x32\...\Bamboo Dock) (Version: 4.1 - Wacom Co., Ltd.) Bamboo Dock (x32 Version: 4.1.0 - Wacom Europe GmbH) Hidden Bamboo Tablets Tutorial (x32 Version: 3.0.20 - Wacom) Hidden BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DealPly (HKU\.DEFAULT\...\DealPly) (Version: - ) <==== ATENÇÃO DES 2.0 (HKLM-x32\...\{675F86A8-E093-4002-87D5-915CC2C45571}) (Version: 1.00.0000 - Gigabyte) Driver Pro v3.0 (HKLM-x32\...\Driver Pro_is1) (Version: 3.0 - PC Utilities Pro) <==== ATENÇÃO Easy Tune 6 B10.1024.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) Easy Tune 6 B10.1024.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production) GetDataBack for FAT (HKLM-x32\...\{2EEEC858-21F8-419B-8FE2-820621BFFCD7}) (Version: 4.33.000 - Runtime Software) GetDataBack for NTFS (HKLM-x32\...\{56582EEA-3AEF-4D84-8B9D-C87A3CD9250F}) (Version: 4.33.000 - Runtime Software) Google Chrome (HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Drive (HKLM-x32\...\{3D7AB4D4-2E45-4986-BAC5-5B3CEED21FAA}) (Version: 1.32.3592.6117 - Google, Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation) Java(TM) 6 Update 22 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.220 - Oracle) K-Lite Codec Pack (64-bit) v3.8.0 (HKLM\...\KLiteCodecPack64_is1) (Version: 3.8.0 - ) Marvelous Designer 2 (HKLM-x32\...\Marvelous Designer 2) (Version: - CLO Virtual Fashion Inc.) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Games for Windows - LIVE (HKLM-x32\...\{F97E3841-CA9D-4964-9D64-26066241D26F}) (Version: 3.3.24.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{8FB1B528-E260-451E-9B55-E9152F94B80B}) (Version: 3.2.3.0 - Microsoft Corporation) Microsoft Office 2010 Service Pack 1 (SP1) (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{047B0968-E622-4FAA-9B4B-121FA109EDDE}) (Version: - Microsoft) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.1.10329.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Módulo Adicional de Segurança CAIXA (HKLM-x32\...\{5d01f486-f32d-462e-8830-cc1d116e8ece}_is1) (Version: Módulo Adicional de Segurança CAIXA - ) Norton Internet Security (HKLM-x32\...\NIS) (Version: 18.7.1.3 - Symantec Corporation) NVIDIA Driver de áudio HD 1.1.13.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.1.13.1 - NVIDIA Corporation) NVIDIA Driver de gráficos 267.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 267.17 - NVIDIA Corporation) NVIDIA Driver do 3D Vision 267.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 267.17 - NVIDIA Corporation) NVIDIA nView 135.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 135.64 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{8A809006-C25A-4A3A-9DAB-94659BCDB107}) (Version: 9.10.0224 - NVIDIA Corporation) ON_OFF Charge B10.0427.1 (HKLM-x32\...\{3DECD372-76A1-4483-BF10-B547790A3261}) (Version: 1.00.0001 - GIGABYTE) Pacote de idioma do Autodesk Inventor Fusion 2012 (Version: 1.0.0.79 - Autodesk, Inc.) Hidden Pacote de idioma do plug-in Autodesk Inventor Fusion para AutoCAD 2012 (Version: 0.0.1.138 - Autodesk) Hidden Pacote de Idiomas do Microsoft .NET Framework 4 Client Profile - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Client Profile PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Pacote de Idiomas do Microsoft .NET Framework 4 Extended - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Extended PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Painel de controle da NVIDIA 267.17 (Version: 267.17 - NVIDIA Corporation) Hidden PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden PureRef (HKLM-x32\...\PureRef) (Version: 1.6.0 - Idyllic Pixel) PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) Hidden QuickTime (HKLM-x32\...\{0E64B098-8018-4256-BA23-C316A43AD9B0}) (Version: 7.72.80.56 - Apple Inc.) RealDownloader (x32 Version: 1.3.1 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.0 - RealNetworks) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.26.902.2010 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6194 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.20.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.20.0 - Renesas Electronics Corporation) Hidden ROBLOX Player (HKLM-x32\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - ROBLOX Corporation) Smart 6 B10.1023.1 (HKLM-x32\...\{3B35725F-C623-4A1E-B5CC-99C0868679E3}) (Version: 1.00.0000 - GIGABYTE) Spotify (HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\Spotify) (Version: 1.0.42.151.g19de0aa6 - Spotify AB) Stoke MX 1.0 64-bit (HKLM\...\{3FF63F0C-0D07-4145-B081-71E1021C73F5}) (Version: 1.0.0.51286 - Thinkbox Software) SweetPacks bundle uninstaller (HKLM-x32\...\{0C43FE6B-E881-4AFC-B384-4AEBC90047E8}) (Version: 1.0.0000 - SweetIM Technologies Ltd.) <==== ATENÇÃO swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Unity Web Player (HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\UnityWebPlayer) (Version: 5.0.3f2 - Unity Technologies ApS) Update Manager for SweetPacks 1.1 (HKLM-x32\...\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}) (Version: 1.1.0008 - SweetIM Technologies Ltd.) <==== ATENÇÃO Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Version Checker for Funmoods (HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\Funmoods) (Version: - ) <==== ATENÇÃO V-Ray for 3dsmax 2016 for x64 (HKLM\...\V-Ray for 3dsmax 2016 for x64) (Version: 3.40.01 - Chaos Software Ltd) Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.5-3 - Wacom Technology Corp.) Warsaw 1.12.3.5 64 bits (HKLM\...\{20E60725-16C8-4FB9-8BC2-AF92C5F8D06D}_is1) (Version: 1.12.3.5 - GAS Tecnologia) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WibuKey Setup (WibuKey Remove) (HKLM\...\{00060000-0000-1004-8002-0000C06B5161}) (Version: Version 6.32 of 2015-Jul-21 (Build 1504) (Setup) - WIBU-SYSTEMS AG) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - ) ZBrush 4R7 (HKLM-x32\...\ZBrush 4R7 4R7) (Version: 4R7 - Pixologic) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> C:\Program Files\Autodesk\3ds Max 2016\Inventor Server\Bin\TestServer.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Brasil\acad.exe /Automation => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{83B0E426-D4EE-11D4-BEDF-BAB7F1EEA455}\InprocServer32 -> C:\Program Files\Autodesk\3ds Max Design 2012\addflow4.ocx => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> C:\Program Files\Autodesk\3ds Max 2016\Inventor Server\Bin\TestServer.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Brasil\acad.exe /Automation => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Brasil\acad.exe /Automation => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Brasil\acad.exe => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2012 - Brasil\acadficn.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> C:\Program Files\Autodesk\3ds Max 2016\Inventor Server\Bin\TestServer.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-361755602-808845968-1976823773-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Computador\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {17060BCA-20CA-44A0-B519-7C41A57BFD1B} - System32\Tasks\RealCreateProcessScheduledTask19221101S-1-5-21-361755602-808845968-1976823773-1000 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-05-05] (RealNetworks, Inc.) Task: {170A3376-F1B3-4C87-8CE5-980466EB29D6} - System32\Tasks\ReclaimerUpdateFiles_Computador => C:\Users\Computador\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.05\agent\rnupgagent.exe [2016-11-27] (RealNetworks, Inc.) Task: {17590FD5-C132-4534-9FEA-A40327367D54} - System32\Tasks\Funmoods => C:\Users\Computador\AppData\Roaming\Funmoods\UpdateProc\UpdateTask.exe [2013-02-14] () <==== ATENÇÃO Task: {17784412-3BE8-42A0-B316-79B3F5D55974} - System32\Tasks\RNUpgradeHelperResumePrompt_Computador => C:\Users\Computador\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.05\agent\rnupgagent.exe [2016-11-27] (RealNetworks, Inc.) Task: {1F2F339E-45EA-42B4-8F27-C7945BD3CD40} - System32\Tasks\ComputadorProcurableLowbredV2 => Rundll32.exe UnpretentiousnessWelshers.dll,main 7 1 <==== ATENÇÃO Task: {22F95F2A-DFAD-4672-BDBF-CEFEA3BC3553} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-03-06] (RealNetworks, Inc.) Task: {26A661B6-6D84-4E6D-8905-82280648BD93} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-03-06] (RealNetworks, Inc.) Task: {2B7F2C06-CFB0-4B8E-ADCD-4A0959E9C8BC} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2013-03-06] (RealNetworks, Inc.) Task: {3217C420-38CC-4C05-87A2-647E40D36750} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03] (Google Inc.) Task: {33012D1D-F751-4E12-A1B9-7AB3C483FB7E} - System32\Tasks\Symantec\Norton Error Analyzer 18.7.1.3 => C:\Program Files (x86)\Norton Internet Security\Engine\18.7.1.3\SymErr.exe [2012-03-27] (Symantec Corporation) Task: {332DDC41-02F0-49A6-AF43-0F7C2D099582} - System32\Tasks\{6F559ABA-FC97-56A8-B0A5-385FDED88F1D} => C:\Users\TEMP\AppData\Roaming\{2BDB1~1\Updater.exe <==== ATENÇÃO Task: {3814F7A8-EA8D-47FE-A5E5-8CC0FA21CE76} - System32\Tasks\RNUpgradeHelperLogonPrompt_Computador => C:\Users\Computador\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.05\agent\rnupgagent.exe [2016-11-27] (RealNetworks, Inc.) Task: {5F662549-CFF9-42AA-BD2E-A4781EE1110F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-03] (Google Inc.) Task: {639BD193-D5E9-4093-A181-18A9811B4DC9} - System32\Tasks\Symantec\Norton Error Processor 18.7.1.3 => C:\Program Files (x86)\Norton Internet Security\Engine\18.7.1.3\SymErr.exe [2012-03-27] (Symantec Corporation) Task: {67C17976-CAA7-4F4B-96D2-77A64921A6EF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-361755602-808845968-1976823773-1000Core => C:\Users\Computador\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-03] (Google Inc.) Task: {6C7D1399-BF08-4B1A-97FA-A490466B889B} - System32\Tasks\ReclaimerUpdateXML_Computador => C:\Users\Computador\AppData\Roaming\Real\Update\UpgradeHelper\RealPlayer\14.05\agent\rnupgagent.exe [2016-11-27] (RealNetworks, Inc.) Task: {7759E6BD-56B8-4569-B648-B5C83CCDC402} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\Windows\system32\EOSNotify.exe [2016-06-25] (Microsoft Corporation) Task: {7BB765DE-097F-48B7-A8E6-43EBE484A81B} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-03-06] (RealNetworks, Inc.) Task: {809234DC-3E3A-4459-89A9-B5C6DF5151F8} - System32\Tasks\{911337FC-03CD-490E-9B1A-15042F9C5169} => pcalua.exe -a D:\Filme\Downloads\vagalume-letras-mediaplayer-plugin-v1-3.exe -d D:\Filme\Downloads Task: {8861D8AE-4CEE-463D-B78B-BA933C1A99BE} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2013-03-06] (RealNetworks, Inc.) Task: {9E76E307-7C22-46FB-8A18-D56D4809B153} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-14] (Adobe Systems Incorporated) Task: {B9415D41-FB8F-46D0-9952-C0B547B10C4B} - System32\Tasks\AdobeAAMUpdater-1.0-Computador-PC-Computador => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated) Task: {D66FB68D-AD2E-4FEA-B3F8-4EC9859CF0E8} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe <==== ATENÇÃO Task: {DA703CCD-B02F-4EA3-BC60-A6CA4A983842} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2013-03-06] (RealNetworks, Inc.) Task: {ED19E295-37EF-4313-9F38-64B84A87C6B4} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-361755602-808845968-1976823773-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-03-06] (RealNetworks, Inc.) Task: {F1C99F95-D52E-4254-8466-3D31FBC775B6} - System32\Tasks\RealCreateProcessScheduledTask155884248S-1-5-21-361755602-808845968-1976823773-1000 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-05-05] (RealNetworks, Inc.) Task: {F5B5D320-1F3C-46BB-9C7B-28165CC45B60} - System32\Tasks\RealCreateProcessScheduledTask76348418S-1-5-21-361755602-808845968-1976823773-1000 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-05-05] (RealNetworks, Inc.) Task: {F87CE54F-662C-43C6-B04C-522507B6752B} - System32\Tasks\KMS Activation for Office => C:\Windows\KMSAct.exe Task: {F9AFD9FA-4061-48E9-A525-3644CE4614A4} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-361755602-808845968-1976823773-1000UA => C:\Users\Computador\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-03] (Google Inc.) Task: {FA6D9783-5979-43F9-A742-774EA9FD9835} - System32\Tasks\RealCreateProcessScheduledTask72205733S-1-5-21-361755602-808845968-1976823773-1000 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-05-05] (RealNetworks, Inc.) Task: {FCDA4676-7F97-477E-8B9A-45D852E636DB} - System32\Tasks\RealCreateProcessScheduledTask113710829S-1-5-21-361755602-808845968-1976823773-1000 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-05-05] (RealNetworks, Inc.) Task: {FDC166FF-5BB9-4FF4-8D91-7DFAA7744D0A} - System32\Tasks\RealCreateProcessScheduledTask46903401S-1-5-21-361755602-808845968-1976823773-1000 => c:\program files (x86)\real\realplayer\update\realsched.exe [2013-05-05] (RealNetworks, Inc.) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-361755602-808845968-1976823773-1000Core.job => C:\Users\Computador\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-361755602-808845968-1976823773-1000UA.job => C:\Users\Computador\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\{6F559ABA-FC97-56A8-B0A5-385FDED88F1D}.job => C:\Users\TEMP\AppData\Roaming\{2BDB1~1\Updater.exe <==== ATENÇÃO ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ShortcutWithArgument: C:\Users\Computador\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome\Hangouts do Google.lnk -> C:\Users\Computador\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> --user-data-dir="C:\Users\Computador\AppData\Local\Google\Chrome\User Data" --profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl ShortcutWithArgument: C:\Users\Computador\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\StormFall.lnk -> C:\Users\Computador\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://plarium.com/play/en/stormfall/top/?adCampaign=31083&clickID=tC0CyC0FyCyDzz0DtDtA0C0FtD0B0E0F&publisherID=2_1_2_72 --app-window-size=1680,1050 ==================== Módulos Carregados (Whitelisted) ============== 2011-02-02 15:08 - 2011-02-02 15:08 - 00018656 _____ () C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe 2012-05-12 17:57 - 2009-06-17 17:13 - 00068136 _____ () C:\Program Files (x86)\GIGABYTE\EnergySaver2\des2svr.exe 2013-03-06 03:21 - 2013-03-06 03:21 - 00039056 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 2012-05-12 14:30 - 2011-01-26 13:31 - 01770600 _____ () C:\Program Files\NVIDIA Corporation\nView\nview64.dll 2011-03-17 01:07 - 2011-03-17 01:07 - 04297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2012-05-12 17:56 - 2012-05-12 17:56 - 00008704 _____ () C:\Windows\assembly\GAC_64\GBHO\1.0.0.0__709f1911357dc329\GBHO.dll 2012-05-12 14:30 - 2011-01-26 13:31 - 00615016 _____ () C:\Program Files\NVIDIA Corporation\nView\nvshell.dll 2015-01-25 10:12 - 2014-08-19 12:12 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2012-10-16 07:39 - 2012-10-16 07:39 - 00646744 _____ () C:\Program Files (x86)\Bamboo Dock\BambooCore.exe 2016-05-27 10:46 - 2016-05-27 10:46 - 00147256 _____ () C:\Windows\Installer\{71981989-EEC4-F7E3-381D-88CF17D3EE0C}\syshost.exe 2015-01-25 10:14 - 2016-01-09 08:53 - 00283648 _____ () C:\Program Files (x86)\Bamboo Dock\Bamboo Dock\Bamboo Dock.exe 2014-07-20 16:59 - 2016-02-24 02:48 - 00062024 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll 2014-07-20 16:59 - 2016-02-24 02:47 - 00110664 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll 2012-05-12 17:57 - 2016-08-01 21:53 - 00163840 _____ () C:\Program Files (x86)\GIGABYTE\EnergySaver2\ycc.dll 2012-05-12 14:30 - 2011-01-26 13:31 - 01554024 _____ () C:\Program Files\NVIDIA Corporation\nView\nview.dll 2015-12-22 09:15 - 2015-12-22 09:15 - 00349184 _____ () C:\Users\Computador\AppData\Local\ProcurableLowbred\UnpretentiousnessWelshers.dll 2011-03-17 01:11 - 2011-03-17 01:11 - 04297568 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2016-12-03 16:05 - 2016-12-03 16:05 - 00098816 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32api.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00110080 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\pywintypes27.dll 2016-12-03 16:05 - 2016-12-03 16:05 - 00364544 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\pythoncom27.dll 2016-12-03 16:05 - 2016-12-03 16:05 - 00320512 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32com.shell.shell.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00914432 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_hashlib.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 01176576 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._core_.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00806400 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._gdi_.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00816128 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._windows_.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 01067008 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._controls_.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00733184 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._misc_.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00682496 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\pysqlite2._sqlite.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00088064 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_ctypes.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00686080 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\unicodedata.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00119808 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32file.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00108544 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32security.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00007168 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\hashobjs_ext.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00017920 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\thumbnails_ext.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00088064 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\usb_ext.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00012800 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\common.time34.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00018432 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32event.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00167936 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32gui.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00046080 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_socket.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 01303552 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_ssl.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00128512 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_elementtree.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00127488 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\pyexpat.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00038912 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32inet.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00036864 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_psutil_windows.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00524248 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\windows._lib_cacheinvalidation.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00011264 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32crypt.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00123392 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._wizard.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00077312 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._html2.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00027648 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_multiprocessing.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00020480 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\_yappi.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00035840 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32process.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00078848 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\wx._animate.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00024064 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32pipe.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00010240 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\select.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00025600 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32pdh.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00017408 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32profile.pyd 2016-12-03 16:05 - 2016-12-03 16:05 - 00022528 ____R () C:\Users\Computador\AppData\Local\Temp\_MEI39162\win32ts.pyd 2016-11-27 08:48 - 2016-11-08 18:29 - 01819240 _____ () C:\Users\Computador\AppData\Local\Google\Chrome\Application\54.0.2840.99\libglesv2.dll 2016-11-27 08:48 - 2016-11-08 18:29 - 00093288 _____ () C:\Users\Computador\AppData\Local\Google\Chrome\Application\54.0.2840.99\libegl.dll 2012-10-16 07:39 - 2012-10-16 07:39 - 00060504 _____ () C:\Program Files (x86)\Bamboo Dock\BambooWinTab.dll 2016-12-03 16:05 - 2016-12-03 16:05 - 00011264 _____ () C:\Users\Computador\AppData\Local\Temp\nsvEFFB.tmp\System.dll 2016-05-26 23:18 - 2016-05-26 23:18 - 00065024 _____ () C:\Users\Computador\AppData\Roaming\OpenCandy.DLL ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\Program Files (x86)\GbPlugin:IncompleteStartProcessProtection.cnt [10] AlternateDataStreams: C:\Program Files (x86)\GbPlugin:u6eBQrM0Z2K3FKLVBMG8dY3IkKT2rqFO+Sf68h8fDg== [32] AlternateDataStreams: C:\Windows\System32:37F3DA7E_Cef.gbp [2] AlternateDataStreams: C:\Windows\system32\Drivers\wsddfac.sys:X5ZN8aGXs4 [1198] AlternateDataStreams: C:\ProgramData\GbPlugin:IncompleteStartGbprcm.cnt [10] AlternateDataStreams: C:\ProgramData\Microsoft:6lPh3SL5sEYnX0ez [2476] AlternateDataStreams: C:\ProgramData\Microsoft:epKMDVlnKHLNP4S36OBzJ [585] AlternateDataStreams: C:\ProgramData\TEMP:A1EDB939 [132] AlternateDataStreams: C:\Users\Computador\Cookies:Jxan9Z6Pv7QQCaHHnU1 [2396] AlternateDataStreams: C:\Users\Computador\AppData\Local\Temp:E1RBvfxEOTnoOrZ5xETWb8wWD [2250] AlternateDataStreams: C:\Users\Todos os Usuários\GbPlugin:IncompleteStartGbprcm.cnt [10] AlternateDataStreams: C:\Users\Todos os Usuários\Microsoft:6lPh3SL5sEYnX0ez [2476] AlternateDataStreams: C:\Users\Todos os Usuários\Microsoft:epKMDVlnKHLNP4S36OBzJ [585] AlternateDataStreams: C:\Users\Todos os Usuários\TEMP:A1EDB939 [132] ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) HKU\S-1-5-21-361755602-808845968-1976823773-1000\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1" ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) IE trusted site: HKU\.DEFAULT\...\caixa.gov.br -> hxxps://imagem.caixa.gov.br IE trusted site: HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\caixa.gov.br -> hxxps://imagem.caixa.gov.br IE trusted site: HKU\S-1-5-21-361755602-808845968-1976823773-1000\...\caixa.gov.br -> imagem.caixa.gov.br ==================== Hosts Conteúdo: ========================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-14 00:34 - 2016-09-17 02:24 - 00001486 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 serial.alcohol-soft.com 127.0.0.1 www.alcohol-soft.com 127.0.0.1 images.alcohol-soft.com 127.0.0.1 trial.alcohol-soft.com 127.0.0.1 alcohol-soft.com 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 wip3.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 adobe-dns.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 activate-sjc0.adobe.com ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-361755602-808845968-1976823773-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Computador\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 201.6.2.214 - 201.6.2.115 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: AlcoholAutomount => "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\axcmd.exe" /automount MSCONFIG\startupreg: Google Update => "C:\Users\Computador\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{A6B58E35-9F88-4DE6-B771-EA62A3D51D84}] => C:\Program Files (x86)\Autodesk\Backburner\monitor.exe FirewallRules: [{21F5D146-0808-43E0-9571-1FB0FF363AFC}] => C:\Program Files (x86)\Autodesk\Backburner\monitor.exe FirewallRules: [{C455CF65-8DF6-4DEA-B176-9810D580D12F}] => C:\Program Files (x86)\Autodesk\Backburner\manager.exe FirewallRules: [{F3D54FD2-88ED-4084-8971-7D9C19043878}] => C:\Program Files (x86)\Autodesk\Backburner\manager.exe FirewallRules: [{26369136-C4A1-42CC-A864-0665C662C4EA}] => C:\Program Files (x86)\Autodesk\Backburner\server.exe FirewallRules: [{BE8FFCEF-C334-4377-9C48-08B3270A8C27}] => C:\Program Files (x86)\Autodesk\Backburner\server.exe FirewallRules: [{0C84DCCE-E42F-446E-B0E9-D19EC758A915}] => C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe FirewallRules: [{917F203A-8E4B-4004-8914-EE7956F41F8D}] => C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe FirewallRules: [{1A1B9F45-EB9F-4052-AFCF-EDF244B4BA46}] => C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe FirewallRules: [{82BC4D17-15A8-43CA-B100-6C52382F3295}] => C:\Program Files\Autodesk\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe FirewallRules: [{C36712F2-779A-40E3-9AA6-33620FBB89EB}] => C:\Program Files\Autodesk\3ds Max Design 2012\3dsmax.exe FirewallRules: [{EF54D402-97F0-43AE-A0B7-071FF416A7DE}] => C:\Program Files\Autodesk\3ds Max Design 2012\3dsmax.exe FirewallRules: [{51CA8971-0953-4B6D-8BFD-D38EDE2C88E3}] => D:\Arquivos de Programas\Office14\GROOVE.EXE FirewallRules: [{0D27AADB-2E6D-4C23-8277-662D02182763}] => D:\Arquivos de Programas\Office14\GROOVE.EXE FirewallRules: [{2E77664A-1D05-47B6-B9E9-5E0D4354C9FD}] => D:\Arquivos de Programas\Office14\ONENOTE.EXE FirewallRules: [{63C077FB-E3A9-482B-B5A7-925C7A184466}] => D:\Arquivos de Programas\Office14\ONENOTE.EXE FirewallRules: [{33A0FDB9-D765-4BB1-AFE1-0E55D81628EA}] => D:\Arquivos de Programas\Office14\outlook.exe FirewallRules: [{0E22E958-BD66-4578-BB27-ECB3374E9EC7}] => C:\Program Files\Autodesk\3ds Max 2011\3dsmax.exe FirewallRules: [{ED6E4E24-3A17-4942-876A-8E9338235FE2}] => C:\Program Files\Autodesk\3ds Max 2011\3dsmax.exe FirewallRules: [{5ED93CC6-3C79-44A2-9FA6-2E52E8722B62}] => C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe FirewallRules: [{D882B444-F4FC-4DE4-BE01-5B68556CF12D}] => C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe FirewallRules: [{2DA40F13-3A96-422E-A1D6-0884E499F8C8}] => C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe FirewallRules: [{426F742D-9999-46FD-96D7-BDD35C0782E5}] => C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe FirewallRules: [{6CE7F638-27BA-46B5-AE06-B32A175EE6B6}] => D:\Arquivos de Programas\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe FirewallRules: [{D16B21E5-861C-4704-9E1B-906E2A120C90}] => D:\Arquivos de Programas\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe FirewallRules: [{E29161CE-7C6C-4F33-B0AF-B646869B0690}] => D:\Arquivos de Programas\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe FirewallRules: [{90FE126C-061B-4616-99E8-1FC0BBAA7246}] => D:\Arquivos de Programas\3ds Max Design 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe FirewallRules: [{C173A1A5-3259-46C4-98A6-0B60B58F985A}] => D:\Arquivos de Programas\3ds Max Design 2012\3dsmax.exe FirewallRules: [{404A627A-E66B-4C29-AA6A-59C583309345}] => D:\Arquivos de Programas\3ds Max Design 2012\3dsmax.exe FirewallRules: [{C26F3310-EBA1-40A8-A4E8-C9B527DC7695}] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{6F487F96-01D4-4602-AAC3-032F0B261AC0}] => svchost.exe FirewallRules: [{933A00E2-42CA-40E3-9331-7554DB8E778C}] => D:\Arquivos de Programas (x86)\Binaries\Win32\ShippingPC-StormGame.exe FirewallRules: [{DD4C3EC1-BDFC-485C-A9A4-BD1D7CA9B8AF}] => D:\Arquivos de Programas (x86)\Binaries\Win32\ShippingPC-StormGame.exe FirewallRules: [{95DA919B-EDD2-47E0-9F08-936C878486B6}] => D:\Arquivos de Programas (x86)\Driver.exe FirewallRules: [{0F52D7DE-52C2-4B9F-922D-582ECC55FF0D}] => D:\Arquivos de Programas (x86)\Driver.exe FirewallRules: [{C6BD3171-0766-44FF-BEEE-9DBCD93AB20B}] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{3F8911FD-0DF6-4DDD-90A7-0A2FD17F619D}] => C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{C9545760-0417-4652-9F7F-42729DB9E21B}] => C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{95F7148D-2756-49F1-A7C1-BA9683749CC3}] => C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe FirewallRules: [{FBCAE59C-A844-4B2D-B9F7-8EEAD991BDA3}] => C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe FirewallRules: [TCP Query User{B4272350-A8A7-4833-8C2A-07ABEF9A640F}C:\users\computador\appdata\local\temp\rarsfx0\bie_kms.exe] => C:\users\computador\appdata\local\temp\rarsfx0\bie_kms.exe FirewallRules: [UDP Query User{DD57B38C-F39F-46E7-AC72-3C08A05C3B10}C:\users\computador\appdata\local\temp\rarsfx0\bie_kms.exe] => C:\users\computador\appdata\local\temp\rarsfx0\bie_kms.exe FirewallRules: [TCP Query User{119C2A46-191F-426F-A36E-07E52C7CED1D}C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe] => C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe FirewallRules: [UDP Query User{39418A6E-106F-4E0B-968A-2329CEEFC73A}C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe] => C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe FirewallRules: [TCP Query User{81689DD2-28AD-4E95-A51F-7C9626D83061}C:\program files (x86)\java\jre6\bin\java.exe] => C:\program files (x86)\java\jre6\bin\java.exe FirewallRules: [UDP Query User{B82AB124-97E2-430D-A685-BD61F6574DB5}C:\program files (x86)\java\jre6\bin\java.exe] => C:\program files (x86)\java\jre6\bin\java.exe FirewallRules: [TCP Query User{17A090B2-09A7-4209-B6D3-D23B10E36C65}C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe] => C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe FirewallRules: [UDP Query User{CAEC1FA4-1C49-4ED3-9680-CC0F0E7A5673}C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe] => C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe FirewallRules: [TCP Query User{A7F0A35B-F761-44D3-86BB-00421353D436}C:\program files (x86)\java\jre6\bin\javaw.exe] => C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{962A14C5-8256-45BF-8A60-E053D9F8CC5A}C:\program files (x86)\java\jre6\bin\javaw.exe] => C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [{E428F9C2-FE5C-49F8-BB53-C500687AA96C}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{22837E21-63FA-43A1-859B-365221D894B0}] => LPort=2869 FirewallRules: [{F1DCCDF0-0A81-4326-8A12-69208ED63E63}] => LPort=1900 FirewallRules: [TCP Query User{D46B7CA0-AD69-49C6-8D85-1B994A4B625B}C:\users\computador\documents\oz\quake iii arena\iourtded.exe] => C:\users\computador\documents\oz\quake iii arena\iourtded.exe FirewallRules: [UDP Query User{D886BA44-E8E8-4643-9B93-A9968C5D6032}C:\users\computador\documents\oz\quake iii arena\iourtded.exe] => C:\users\computador\documents\oz\quake iii arena\iourtded.exe FirewallRules: [TCP Query User{CC104BA6-EFDD-4BE9-9376-05E45FB70296}C:\program files\autodesk\3ds max design 2012\3dsmax.exe] => C:\program files\autodesk\3ds max design 2012\3dsmax.exe FirewallRules: [UDP Query User{ADD9BB62-6BE4-40E0-9FBA-CD8A30CE0965}C:\program files\autodesk\3ds max design 2012\3dsmax.exe] => C:\program files\autodesk\3ds max design 2012\3dsmax.exe FirewallRules: [TCP Query User{3CF879A5-4B03-44E9-80C5-ACBF2FE03694}C:\program files (x86)\java\jre6\bin\javaw.exe] => C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [UDP Query User{44E7899A-6183-458D-871C-224D1C0CF83D}C:\program files (x86)\java\jre6\bin\javaw.exe] => C:\program files (x86)\java\jre6\bin\javaw.exe FirewallRules: [{520BEC7D-4695-4D20-8BD0-E7EB47886AA4}] => C:\Users\Computador\AppData\Local\Temp\OfferID9999\bundlesweetimsetup.exe FirewallRules: [{E887FB2D-02A4-448F-91A5-AD7B28A25FE8}] => C:\Users\Computador\AppData\Local\Temp\OfferID9999\bundlesweetimsetup.exe FirewallRules: [{1C512360-0F29-4F1F-9182-31339ADDC5C1}] => C:\Windows\System32\dmwu.exe FirewallRules: [{35CEFF3B-9636-4649-9CB0-D653BBA5B5D6}] => C:\Windows\System32\dmwu.exe FirewallRules: [{AC59AF4A-1456-46A9-859C-7D610F89F003}] => C:\Windows\System32\ARFC\wrtc.exe FirewallRules: [{3482B94F-C56A-4B24-BB96-648FD8979F66}] => C:\Windows\System32\ARFC\wrtc.exe FirewallRules: [TCP Query User{B2D2B2C8-15BA-4B3C-AEAF-320E58BE0498}C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe] => C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe FirewallRules: [UDP Query User{E43C1560-3023-4D71-83DD-F89AF0755890}C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe] => C:\users\computador\documents\oz\quake iii arena\iourbanterror.exe FirewallRules: [{154B7A4C-3748-466C-AEA5-929E60553D53}] => C:\Windows\System32\dmwu.exe FirewallRules: [{3FA52222-9750-4682-BA6D-3B2326DD35AB}] => C:\Windows\System32\dmwu.exe FirewallRules: [{6AB6225F-7F2E-41E3-B830-06A4AA39DF03}] => C:\Windows\System32\ARFC\wrtc.exe FirewallRules: [{5DDB7741-058F-44AD-B37D-6B4DCF30DCE4}] => C:\Windows\System32\ARFC\wrtc.exe FirewallRules: [{44B2A886-CBC9-436D-8941-4CD597B847E0}] => C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{867E15EE-EE4E-4B53-AA0C-7BAEBCB096E7}] => C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{7119D2CF-AC2F-4584-85A3-B692179FFEC5}] => C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe FirewallRules: [{B4C39E3B-C1DC-4EF5-958D-94DE4634BB49}] => C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe FirewallRules: [{5ACB5A93-247A-4DF4-A35F-ADE25537C437}] => D:\Arquivos de Programas\uTorrent.exe FirewallRules: [{A284DA08-925F-4CBF-9B6E-B64C8368D065}] => D:\Arquivos de Programas\uTorrent.exe FirewallRules: [TCP Query User{099DDC2F-CCA7-4ACD-8F4C-8BE0D18C5750}C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe] => C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe FirewallRules: [UDP Query User{7A79CF91-B376-40ED-9FAB-C24CA7BE15D9}C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe] => C:\program files\chaos group\v-ray\rt for 3ds max 2012 for x64\bin\vray.exe FirewallRules: [TCP Query User{DB5F0A1F-8268-4D4D-A179-E8118FDDEF20}D:\arquivos de programas (x86)\duuyhmikriver.exe] => D:\arquivos de programas (x86)\duuyhmikriver.exe FirewallRules: [UDP Query User{46A61F47-9A1A-40D9-940D-80A26660D35E}D:\arquivos de programas (x86)\duuyhmikriver.exe] => D:\arquivos de programas (x86)\duuyhmikriver.exe FirewallRules: [TCP Query User{A81DBB74-FBC0-4E0B-A993-73E96A37796E}D:\arquivos de programas (x86)\prototype2.exe] => D:\arquivos de programas (x86)\prototype2.exe FirewallRules: [UDP Query User{90FB3673-A410-499D-83D2-BBD1CE1F223F}D:\arquivos de programas (x86)\prototype2.exe] => D:\arquivos de programas (x86)\prototype2.exe FirewallRules: [{024094EF-3810-4EB0-A9F8-61C6D7B49697}] => D:\Arquivos de Programas (x86)\Need for Speed The Run\Need For Speed The Run.exe FirewallRules: [{BDBEE964-7F50-447D-BA0F-AF3565C15D09}] => D:\Arquivos de Programas (x86)\Need for Speed The Run\Need For Speed The Run.exe FirewallRules: [TCP Query User{DF89C3E2-F772-43F6-B38E-7C92C6DCA1D1}C:\program files\autodesk\3ds max 2011\3dsmax.exe] => C:\program files\autodesk\3ds max 2011\3dsmax.exe FirewallRules: [UDP Query User{7D5D7FCB-7DEA-43C9-961F-54BA34FB22EC}C:\program files\autodesk\3ds max 2011\3dsmax.exe] => C:\program files\autodesk\3ds max 2011\3dsmax.exe FirewallRules: [TCP Query User{E0A0F254-004A-467A-AB81-954C3DCD75D0}D:\arquivos de programas (x86)\torchlight ii\torchlight2.exe] => D:\arquivos de programas (x86)\torchlight ii\torchlight2.exe FirewallRules: [UDP Query User{23CC659E-67A3-457D-83E6-F9917628A145}D:\arquivos de programas (x86)\torchlight ii\torchlight2.exe] => D:\arquivos de programas (x86)\torchlight ii\torchlight2.exe FirewallRules: [{854ED062-DF95-45F6-ACF6-157131FCDB88}] => C:\Windows\SysWOW64\ARFC\wrtc.exe FirewallRules: [{8FBAD733-671D-4B73-9194-E4796F3B2EDE}] => C:\Windows\SysWOW64\ARFC\wrtc.exe FirewallRules: [TCP Query User{BD635402-BCBE-404F-9B21-F799682FEBEE}D:\jogos\quake iii arena\iourbanterror.exe] => D:\jogos\quake iii arena\iourbanterror.exe FirewallRules: [UDP Query User{2BF2E6BE-3E9C-4B43-A837-F403CB5078B7}D:\jogos\quake iii arena\iourbanterror.exe] => D:\jogos\quake iii arena\iourbanterror.exe FirewallRules: [{7AEF151F-658F-4C40-B2B5-126E0BE7A485}] => D:\jogos\quake iii arena\iourbanterror.exe FirewallRules: [{1EF9A8AA-5F30-405D-92E5-37D9049AF710}] => D:\jogos\quake iii arena\iourbanterror.exe FirewallRules: [TCP Query User{C1F5181A-770E-4870-9790-35260FEEACA3}C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe] => C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe FirewallRules: [UDP Query User{565E65E9-F64F-4B74-B456-30AD4FAACC6F}C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe] => C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe FirewallRules: [{0BD6341F-223C-401D-8E84-1E18D1447C88}] => C:\Windows\SysWOW64\ARFC\wrtc.exe FirewallRules: [{C883419A-0327-4E68-B60C-A192791116FF}] => C:\Windows\SysWOW64\ARFC\wrtc.exe FirewallRules: [TCP Query User{3FA52C6E-D599-47FE-8A8C-D34D8E1CAFC5}C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe] => C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe FirewallRules: [UDP Query User{FEEFFB9B-5E03-47C4-8B22-F220CB116C67}C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe] => C:\program files (x86)\adobe\adobe flash builder 4\flashbuilder.exe FirewallRules: [{B4CF6CC4-7768-4594-941D-3090ECC9B87E}] => C:\Users\Computador\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6B06E1C8-AE8F-49F8-A7CC-7D0291A317D2}] => C:\Users\Computador\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B13E1AA4-C904-488F-A5EC-4F5E1248A379}] => D:\Arquivos de Programas\bin\Watch_Dogs.exe FirewallRules: [{3D2E649C-69A0-4C99-852B-70C6E09B4C84}] => D:\Arquivos de Programas\bin\Watch_Dogs.exe FirewallRules: [TCP Query User{C4D512EE-D0F6-4887-9D91-E91D2A64E4E2}D:\filme\downloads\urbanterror42\quake3-urt.exe] => D:\filme\downloads\urbanterror42\quake3-urt.exe FirewallRules: [UDP Query User{9441D366-DA6F-4656-84E6-EE9CB202ADC6}D:\filme\downloads\urbanterror42\quake3-urt.exe] => D:\filme\downloads\urbanterror42\quake3-urt.exe FirewallRules: [TCP Query User{1989E115-ECFC-48BB-835B-4BFD9EDCE0F0}C:\urbanterror42\quake3-urt.exe] => C:\urbanterror42\quake3-urt.exe FirewallRules: [UDP Query User{C108C30E-4ADD-4EA0-9760-C87334A936AC}C:\urbanterror42\quake3-urt.exe] => C:\urbanterror42\quake3-urt.exe FirewallRules: [{8BFEA1B4-4FFD-45B0-BC86-9A0A700E8C5D}] => C:\Users\Computador\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [TCP Query User{ED09A74A-7BAA-4AB6-A444-D84DFC5ACAB1}C:\users\computador\desktop\crime life\samp-server.exe] => C:\users\computador\desktop\crime life\samp-server.exe FirewallRules: [UDP Query User{A287EC7E-A087-4090-A136-1986EB63CEAE}C:\users\computador\desktop\crime life\samp-server.exe] => C:\users\computador\desktop\crime life\samp-server.exe FirewallRules: [TCP Query User{37E21C2A-9BC9-449C-A60B-6A99D0A762DB}C:\users\computador\appdata\roaming\spotify\spotify.exe] => C:\users\computador\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{6DE9B086-AE41-4C74-87FB-064D69FA66B0}C:\users\computador\appdata\roaming\spotify\spotify.exe] => C:\users\computador\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{D4B6827F-9365-4A3D-B8EB-9C5AD538745B}C:\users\computador\appdata\roaming\spotify\spotify.exe] => C:\users\computador\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{C2C1A74B-BB65-4A68-BA6F-ECF6E564AD42}C:\users\computador\appdata\roaming\spotify\spotify.exe] => C:\users\computador\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{CE0C8988-C93B-48CF-8663-EDA9EFEBD0CC}C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe] => C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe FirewallRules: [UDP Query User{19B365E9-17F4-4CEE-9916-0A71E45087FE}C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe] => C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe FirewallRules: [{B66A82AE-B298-4CE8-BA4D-A8B19F29567D}] => C:\Program Files\Diebold\Warsaw\core.exe FirewallRules: [TCP Query User{CDAEE1DE-1941-4D63-B479-66CCC6C51822}C:\users\computador\appdata\local\akamai\netsession_win.exe] => C:\users\computador\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{2204CCC0-1DC0-4A38-9ADA-8B2AD545673F}C:\users\computador\appdata\local\akamai\netsession_win.exe] => C:\users\computador\appdata\local\akamai\netsession_win.exe FirewallRules: [{13D3E65E-E919-48A5-A456-795AB8D50D9D}] => C:\Users\TEMP\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [TCP Query User{81F45538-E729-4EBE-AF2D-8D75ACE56C4C}C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe] => C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe FirewallRules: [UDP Query User{C942209D-7149-43FA-B830-42C5667D8E00}C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe] => C:\windows\installer\{71981989-eec4-f7e3-381d-88cf17d3ee0c}\syshost.exe FirewallRules: [{CFE2D256-9CC9-4E6D-B26B-A815F9A5D365}] => C:\Program Files\Autodesk\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64server.exe FirewallRules: [{40BD64D5-8513-476F-B1F2-13F8B4F799FE}] => C:\Program Files\Autodesk\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64server.exe FirewallRules: [{B261D3B8-B2B6-407B-AD09-0CED3EEDDDA0}] => C:\Program Files\Autodesk\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64.exe FirewallRules: [{6B1BEF3D-10EF-4FFE-AF43-B2A94409905C}] => C:\Program Files\Autodesk\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64.exe FirewallRules: [{29EE2624-AADA-4C38-9CEE-A37222021AFE}] => C:\Program Files\Chaos Group\V-Ray\3dsmax 2016 for x64\vrlservice.exe FirewallRules: [{5F4961EB-5C63-41EC-9F2D-DB58190DD51D}] => C:\Program Files\Chaos Group\V-Ray\3dsmax 2016 for x64\vrlservice.exe FirewallRules: [{0A88EA0C-5B7F-4940-96E7-4CB048C45DAC}] => C:\Users\Computador\AppData\Local\Google\Chrome\Application\chrome.exe FirewallRules: [{27D2E364-EFDE-4741-98D8-239DB3A81E95}] => LPort=49262 FirewallRules: [{BEB8C31A-9745-4508-9DA1-F3D5095D8AD4}] => LPort=5000 ==================== Pontos de Restauração ========================= ATENÇÃO: A Restauração do Sistema está desabilitada ==================== Dispositivos Apresentando Falhas No Gerenciador ============= Name: BHDrvx64 Description: BHDrvx64 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: BHDrvx64 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Baidu NetDefense Description: Baidu NetDefense Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bndef Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Baidu Protect Description: Baidu Protect Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bprotect Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Adaptador de Túnel Teredo da Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (12/03/2016 06:15:42 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa FRST64.exe versão 2.12.2016.0 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: 2280 Hora de Início: 01d24da1f19b1259 Hora de Término: 2 Caminho do Aplicativo: C:\FRST64.exe Id do Relatório: 396898db-b995-11e6-9753-1c6f658d03cf Error: (12/03/2016 04:10:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Error: (12/03/2016 04:10:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (12/03/2016 04:10:49 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (12/03/2016 03:26:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Error: (12/03/2016 03:26:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (12/03/2016 03:26:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORIDADE NT) Description: As cadeias de caracteres de desempenho no valor do Registro de desempenho foram corrompidas durante o processamento do provedor do contador de extensões Performance. O valor BaseIndex do Registro de desempenho é o primeiro DWORD na seção de dados, o valor LastCounter é o segundo DWORD na seção de dados e o valor LastHelp é o terceiro DWORD na seção de dados. Error: (12/03/2016 03:09:29 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (4168) WindowsMail0: O backup parou porque ele foi interrompido pelo cliente ou houve falha na conexão com o cliente. Error: (12/03/2016 03:09:26 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (3076) WindowsMail0: O backup parou porque ele foi interrompido pelo cliente ou houve falha na conexão com o cliente. Error: (12/03/2016 02:42:13 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORIDADE NT) Description: Falha ao descarregar as cadeias de caracteres do contador de desempenho do serviço WmiApRpl (WmiApRpl). O primeiro DWORD da seção de dados contém o código de erro. Erros de Sistema: ============= Error: (12/03/2016 05:47:36 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: O servidor {E60687F7-01A1-40AA-86AC-DB1CBF673334} não se registrou com o DCOM dentro do tempo limite requerido. Error: (12/03/2016 04:08:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Norton Internet Security foi encerrado inesperadamente. Isso aconteceu 3 vez(es). Error: (12/03/2016 04:06:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço Norton Internet Security foi finalizado inesperadamente. Isto aconteceu 2 vez(es). A seguinte ação corretiva será tomada em 120000 milissegundos: Reiniciar o serviço. Error: (12/03/2016 04:05:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: O serviço Protocolo PNRP terminou com o erro: %%-2140993535 Error: (12/03/2016 04:05:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: O serviço Agrupamento de Rede de Mesmo Nível depende do serviço Protocolo PNRP, mas não foi possível iniciá-lo devido ao seguinte erro: %%-2140993535 Error: (12/03/2016 04:05:28 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: O serviço Protocolo PNRP terminou com o erro: %%-2140993535 Error: (12/03/2016 04:05:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: O serviço Agrupamento de Rede de Mesmo Nível depende do serviço Protocolo PNRP, mas não foi possível iniciá-lo devido ao seguinte erro: %%-2140993535 Error: (12/03/2016 04:05:28 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: A nuvem do Protocolo de Resolução de Nomes de Mesmo Nível não foi iniciada porque houve falha na criação da identidade padrão com o código de erro: 0x80630801. Error: (12/03/2016 04:05:28 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: A nuvem do Protocolo de Resolução de Nomes de Mesmo Nível não foi iniciada porque houve falha na criação da identidade padrão com o código de erro: 0x80630801. Error: (12/03/2016 04:05:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: O serviço Protocolo PNRP terminou com o erro: %%-2140993535 CodeIntegrity: =================================== Date: 2016-05-28 04:39:48.671 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\f7edf.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-05-28 04:39:48.633 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\f7edf.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-01-21 21:38:56.915 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2014-01-21 21:38:56.914 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2014-01-21 21:38:56.912 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2014-01-21 21:38:56.861 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. ==================== Informações da Memória =========================== Processador: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz Percentagem de memória em uso: 40% RAM física total: 15863.43 MB RAM física disponível: 9448.66 MB Virtual Total: 31725.05 MB Virtual disponível: 25856.5 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:5.71 GB) NTFS Drive d: (Biblioteca) (Fixed) (Total:465.76 GB) (Free:4.59 GB) NTFS Drive g: (Oz) (Fixed) (Total:232.83 GB) (Free:0.15 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 00000001) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: BA2F284C) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 232.9 GB) (Disk ID: 26F818CD) Partition 1: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=47 MB) - (Type=A2) ==================== Fim de Addition.txt ============================