Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 25-01-2017 01 Executado por Brancalione (26-01-2017 16:34:57) Executando a partir de C:\Users\Brancalione\Desktop Windows 7 Ultimate Service Pack 1 (X64) (2016-12-27 01:45:52) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-2290041996-4079224171-2164530013-500 - Administrator - Disabled) Brancalione (S-1-5-21-2290041996-4079224171-2164530013-1000 - Administrator - Enabled) => C:\Users\Brancalione Convidado (S-1-5-21-2290041996-4079224171-2164530013-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2290041996-4079224171-2164530013-1002 - Limited - Enabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) µTorrent (HKU\S-1-5-21-2290041996-4079224171-2164530013-1000\...\uTorrent) (Version: 3.4.9.43085 - BitTorrent Inc.) Adobe Acrobat Reader DC - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated) AIKA (HKU\S-1-5-21-2290041996-4079224171-2164530013-1000\...\AIKA) (Version: 2.0 - OnGame) Ansel (Version: 378.49 - NVIDIA Corporation) Hidden Atualizações da NVIDIA 23.23.0.0 (Version: 23.23.0.0 - NVIDIA Corporation) Hidden aTube Catcher versão 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp) AVG (HKLM\...\AvgZen) (Version: 1.113.2.50020 - AVG Technologies) AVG (Version: 16.141.7998 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4749 - AVG Technologies) Hidden AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.72.2.55508 - AVG Technologies) AVG PC TuneUp (x32 Version: 16.72.3 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.141.7998 - AVG Technologies) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.6.255 - AVG Technologies) AVG Zen (Version: 1.113.1 - AVG Technologies) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform) FMW 1 (Version: 1.143.3 - AVG Technologies) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.) Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games) League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden Left 4 Dead 2 (HKLM\...\Steam App 550) (Version: - Valve) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - pt-br (HKLM\...\ProPlusRetail - pt-br) (Version: 16.0.7571.2109 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2290041996-4079224171-2164530013-1000\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Mozilla Firefox 50.1.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 en-US)) (Version: 50.1.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0 - Mozilla) MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team) NVIDIA Driver de áudio HD 1.3.34.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.21 - NVIDIA Corporation) NVIDIA Driver de controle do 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Driver de gráficos 378.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.49 - NVIDIA Corporation) NVIDIA Driver do 3D Vision 378.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.49 - NVIDIA Corporation) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation) NVIDIA ForceWare Network Access Manager (HKLM-x32\...\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.7325.0 - NVIDIA Corporation) NVIDIA GeForce Experience 3.3.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.3.0.95 - NVIDIA Corporation) NVIDIA Software do sistema PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NvNodejs (Version: 3.3.0.95 - NVIDIA Corporation) Hidden NvTelemetry (Version: 2.3.5.0 - NVIDIA Corporation) Hidden NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7571.2109 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7571.2109 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7571.2109 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7571.2109 - Microsoft Corporation) Hidden Painel de controle da NVIDIA 378.49 (Version: 378.49 - NVIDIA Corporation) Hidden Path of Exile (HKLM\...\Steam App 238960) (Version: - Grinding Gear Games) PC Camera (HKLM-x32\...\{A59AB961-BE82-41E0-B0FB-648DFA6DDEA4}) (Version: 1.0.20 - ANC) Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7512 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.3.0.95 - NVIDIA Corporation) Hidden SlimDrivers (HKLM-x32\...\{746AB259-6474-4111-8966-1C62F9A6E063}) (Version: 2.3.1 - SlimWare Utilities, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TERA (HKLM\...\Steam App 323370) (Version: - Bluehole Inc.) VIA Gerenciador de dispositivo de plataforma (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.) WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) XAMPP (HKLM-x32\...\xampp) (Version: 5.6.28-1 - Bitnami) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {09E38631-6D23-4A4F-BF40-AB055AA7F370} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-26] (Google Inc.) Task: {11B79337-440F-4D33-A08D-8DEAF9EC634E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-01-17] (Microsoft Corporation) Task: {130C90D4-C8E2-4D62-9AFA-3AE32E699BCB} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe [2017-01-09] (AVG Technologies CZ, s.r.o.) Task: {227383C1-A531-476B-9F3E-F4537EDD7277} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-20] (NVIDIA Corporation) Task: {2B14757D-1A3D-4269-89ED-45B091E18B0D} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {3879793E-DFFF-4A13-996E-EA5ED9DB1F72} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {6108172F-9B09-4077-B99D-F32B5DA2F536} - System32\Tasks\Desligar PC => shutdown [Argument = -s -t 0] Task: {9F9A998C-2183-4C1B-8802-139D90DDB8D5} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-20] (NVIDIA Corporation) Task: {A0EEAB59-A668-45F6-BAA6-DA429EE57BE9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-01-17] (Microsoft Corporation) Task: {A21EE461-7BBF-4B5C-922E-EE03603045BF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-06] (Piriform Ltd) Task: {B0995538-48FB-4650-B736-B994E11BBA7A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-26] (Google Inc.) Task: {B9E9CC54-BC5B-4A26-BEB1-0A955F835F89} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-12-28] (Microsoft Corporation) Task: {D73CDE42-1F14-4E54-99E3-4C7D751BBED3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {DF48258E-AD66-4D64-B113-4E4CEFEB42D7} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-01-20] (NVIDIA Corporation) Task: {E41C3C24-C374-4C7F-AD52-A3838A5E6076} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-01-20] (NVIDIA Corporation) Task: {E467A196-6A5F-4ECD-A55B-13BF185BDE03} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-12-28] (Microsoft Corporation) Task: {EC6B6B4A-9803-4260-93A9-AC67EDA26DB4} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2015-08-19] (SlimWare Utilities, Inc.) Task: {ED56C239-9B1C-418F-B869-0B343DA145C2} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-20] (NVIDIA Corporation) Task: {EF6CA927-C4CA-4C86-AD47-70F881BCD0BE} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-20] (NVIDIA Corporation) Task: {F4755322-A2CE-49C3-83D4-780AB9E3C451} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-01-20] (NVIDIA Corporation) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\SlimDrivers Startup.job => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ==================== Módulos Carregados (Whitelisted) ============== 2017-01-02 00:37 - 2017-01-02 00:36 - 00980552 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe 2017-01-01 21:36 - 2017-01-20 13:13 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-01-17 17:01 - 2017-01-20 16:39 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-01-17 17:01 - 2017-01-20 16:39 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2017-01-02 11:53 - 2010-01-21 01:53 - 00496232 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe 2017-01-02 11:53 - 2010-01-21 01:52 - 00076392 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll 2017-01-02 11:53 - 2010-01-21 01:53 - 00731752 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\SpecialCase.dll 2017-01-02 11:53 - 2010-01-21 01:53 - 00209000 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe 2016-12-27 01:26 - 1999-12-31 22:00 - 00078456 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2016-12-27 01:26 - 1999-12-31 22:00 - 00386168 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2017-01-02 00:37 - 2017-01-02 00:36 - 02180680 _____ () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe 2016-12-26 23:52 - 2016-12-08 06:03 - 02412888 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libglesv2.dll 2016-12-26 23:52 - 2016-12-08 06:03 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\55.0.2883.87\libegl.dll 2017-01-17 17:01 - 2017-01-20 16:39 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2017-01-17 17:01 - 2017-01-20 16:39 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-01-17 17:01 - 2017-01-20 16:39 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll 2017-01-02 00:32 - 2017-01-02 00:32 - 48920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll 2017-01-17 17:01 - 2017-01-20 11:36 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2017-01-17 17:01 - 2017-01-20 11:36 - 00254008 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2017-01-17 17:01 - 2017-01-20 11:36 - 02808888 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2017-01-17 17:01 - 2017-01-20 11:36 - 00384568 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2017-01-17 17:01 - 2017-01-20 11:36 - 00537656 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2017-01-17 17:01 - 2017-01-20 11:36 - 00468024 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2017-01-17 17:01 - 2017-01-20 11:36 - 01066552 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node 2017-01-25 17:57 - 2017-01-20 11:36 - 01014840 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSDKAPINode.node ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-14 00:34 - 2017-01-17 17:34 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-2290041996-4079224171-2164530013-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Brancalione\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [TCP Query User{B4F63CC9-15C9-4322-8011-9FA60E2833DF}C:\program files (x86)\google\chrome\application\chrome.exe] => C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{26DC8DEF-F7ED-4AAA-B0DF-4E93D8A69FD5}C:\program files (x86)\google\chrome\application\chrome.exe] => C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [{402D4D0C-0AF0-4AE3-B1AE-47DBF53442E4}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BCA23EBB-B25B-4FFA-A506-FD006AAA7909}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{842C221B-6BF6-45F0-A96E-C060BBEB2B00}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{BB58474A-4A90-455B-A3D4-F150323A9CA9}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3A45A9F8-4430-4F2E-A06E-2825FBEC9E5D}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{11255784-736C-4975-8B18-949AAB8AD74C}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{9D80A300-07FE-42CD-B12D-FCD626052451}C:\users\brancalione\appdata\roaming\utorrent\utorrent.exe] => C:\users\brancalione\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{DC7B0C1B-D77D-409B-8997-44B7EB95DFB4}C:\users\brancalione\appdata\roaming\utorrent\utorrent.exe] => C:\users\brancalione\appdata\roaming\utorrent\utorrent.exe FirewallRules: [{5D2BC220-AB2E-4DA8-83FC-2D7EB513825D}] => C:\Program Files (x86)\Steam\steamapps\common\TERA\TERA-Launcher.exe FirewallRules: [{D88343AF-AAF9-4364-B95D-65DD25C3DEAE}] => C:\Program Files (x86)\Steam\steamapps\common\TERA\TERA-Launcher.exe FirewallRules: [{329EA7F8-20AE-47AB-A2C7-CBD2F8163CCB}] => C:\OnGame\AIKA\AIKALauncher.exe FirewallRules: [{B78C327A-20E8-4F47-B0BE-4E8DB70BF602}] => C:\OnGame\AIKA\AIKALauncher.exe FirewallRules: [{DCA789D1-902E-4C54-ACB6-73EBB16F8628}] => C:\OnGame\AIKA\AIKALauncher.exe FirewallRules: [{E89ABEF8-ED79-4FF6-B2B4-7639D94B0DE9}] => C:\OnGame\AIKA\AIKALauncher.exe FirewallRules: [{1C0EF45E-D285-4897-A74E-2FF8AF35CA3B}] => C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{974E98DF-E97E-411E-8677-AA08C3E49D5E}] => C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{4BD1D42E-1798-4C57-B706-503DBFAAE4FA}] => C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{5DE73E6C-F4B8-4AA0-A0FB-C68106F766AE}] => C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{706AD9A4-E196-44A5-A2DE-8A1CFCC9935F}] => C:\Users\Brancalione\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [{FD0984BA-5E37-4E47-ACC0-64C3FD5F514F}] => C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{CC502045-2C6B-452A-9669-EAA402700F65}] => C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{F900974C-1DB7-4560-ACAF-ABD160EEDF42}] => C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{6F684990-5FC8-4106-B646-794E7592E2AF}] => C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{937ACBEA-DE1D-48AC-A115-44888676A370}] => C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{6F62D74C-CEC1-4492-854C-748FA8419C82}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{8316E748-75ED-4141-B32A-AEF6658138D5}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{D691AB88-FD31-4F2A-AF19-284179DF896A}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{128E28D4-2C03-4781-B392-ADB89A4F23D3}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{087E0278-E823-4BD5-984D-02759359C74F}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{5B4384CD-AAF9-44F6-9CE6-918132C11401}C:\xampp\apache\bin\httpd.exe] => C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{DB596387-65C9-47A1-BA02-895CBEE55BC2}C:\xampp\apache\bin\httpd.exe] => C:\xampp\apache\bin\httpd.exe FirewallRules: [{B15FE082-61C6-40D7-B3D1-6B278958660A}] => C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{D650011F-88FF-4E0A-87E0-46D32100B650}] => C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{A6C37F2F-7E45-4CBB-9183-88BE3C16CC0B}] => C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{FB069060-0B89-4987-B951-01C5A9AE1FBA}] => C:\Program Files (x86)\AVG\Av\avgemca.exe ==================== Pontos de Restauração ========================= ATENÇÃO: A Restauração do Sistema está desabilitada ==================== Dispositivos Apresentando Falhas No Gerenciador ============= ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (01/26/2017 04:34:08 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa FRST64.exe versão 0.0.0.0 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: 192c Hora de Início: 01d27802750e354c Hora de Término: 2 Caminho do Aplicativo: C:\Users\Brancalione\Downloads\FRST64.exe Id do Relatório: Error: (01/26/2017 09:21:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (01/25/2017 09:06:05 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Erro no arquivo de manifesto ou de diretiva C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL", na linha 1. Identidade do componente localizado no manifesto não corresponde à identidade do componente solicitado. A referência é UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0". A definição é UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0". Use o arquivo sxstrace.exe para obter um dignóstico detalhado. Error: (01/25/2017 09:06:05 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Erro no arquivo de manifesto ou de diretiva C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL", na linha 1. Identidade do componente localizado no manifesto não corresponde à identidade do componente solicitado. A referência é UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0". A definição é UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0". Use o arquivo sxstrace.exe para obter um dignóstico detalhado. Error: (01/25/2017 09:04:06 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Erro no arquivo de manifesto ou de diretiva C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL", na linha 1. Identidade do componente localizado no manifesto não corresponde à identidade do componente solicitado. A referência é UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0". A definição é UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0". Use o arquivo sxstrace.exe para obter um dignóstico detalhado. Error: (01/25/2017 09:04:06 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Erro no arquivo de manifesto ou de diretiva C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL", na linha 1. Identidade do componente localizado no manifesto não corresponde à identidade do componente solicitado. A referência é UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0". A definição é UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0". Use o arquivo sxstrace.exe para obter um dignóstico detalhado. Error: (01/25/2017 06:13:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (01/25/2017 06:06:26 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa wmplayer.exe versão 12.0.7601.17514 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: d7c Hora de Início: 01d27746277240bb Hora de Término: 8 Caminho do Aplicativo: C:\Program Files (x86)\Windows Media Player\wmplayer.exe Id do Relatório: b28d5deb-e339-11e6-a1cf-002522c1a4b5 Error: (01/25/2017 10:14:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (01/25/2017 01:59:31 AM) (Source: SideBySide) (EventID: 35) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Erro no arquivo de manifesto ou de diretiva C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL", na linha 1. Identidade do componente localizado no manifesto não corresponde à identidade do componente solicitado. A referência é UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0". A definição é UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0". Use o arquivo sxstrace.exe para obter um dignóstico detalhado. Erros de Sistema: ============= Error: (01/26/2017 09:20:39 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/26/2017 09:20:22 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/26/2017 07:00:12 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/25/2017 06:13:04 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/25/2017 06:12:39 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/25/2017 06:12:31 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento anterior do sistema em 18:08:05 às ‎25/‎01/‎2017 não era esperado. Error: (01/25/2017 10:13:41 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/25/2017 10:13:25 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/25/2017 07:00:08 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: A chamada ScRegSetValueExW falhou para FailureActions com o seguinte erro: Acesso negado. Error: (01/23/2017 08:28:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Serviço Clique para Executar do Microsoft Office devido ao seguinte erro: O serviço não respondeu à requisição de início ou controle em tempo hábil. ==================== Informações da Memória =========================== Processador: AMD Phenom(tm) II X6 1055T Processor Percentagem de memória em uso: 45% RAM física total: 8191.3 MB RAM física disponível: 4503.79 MB Virtual Total: 16380.81 MB Virtual disponível: 12160.98 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:1396.29 GB) (Free:1223.5 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 1A7C55D9) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1396.3 GB) - (Type=07 NTFS) ==================== Fim de Addition.txt ============================