Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 14-02-2017 Executado por REDE R (14-02-2017 12:12:43) Executando a partir de D:\ Windows 7 Ultimate (X64) (2016-08-16 16:09:57) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-398587748-1458752106-3854067645-500 - Administrator - Disabled) Convidado (S-1-5-21-398587748-1458752106-3854067645-501 - Limited - Disabled) REDE R (S-1-5-21-398587748-1458752106-3854067645-1000 - Administrator - Enabled) => C:\Users\REDE R ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe After Effects CS6 (HKLM-x32\...\{4817D846-700B-474E-A31B-80892B3E92E3}) (Version: 11 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Flash Player 24 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 24.0.0.194 - Adobe Systems Incorporated) Adobe Flash Player 24 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{03520551-508E-EDCA-4A14-90C706A54A41}) (Version: 3.0.851.0 - Advanced Micro Devices, Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) BitTorrent (HKU\S-1-5-21-398587748-1458752106-3854067645-1000\...\BitTorrent) (Version: 7.8.1.29813 - BitTorrent Inc.) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) Discord (HKU\S-1-5-21-398587748-1458752106-3854067645-1000\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.) Dll-Files Fixer (HKLM-x32\...\Dll-Files Fixer_is1) (Version: 3.2.90 - Dll-Files.com) FileZilla Client 3.17.0.1 (HKU\S-1-5-21-398587748-1458752106-3854067645-1000\...\FileZilla Client) (Version: 3.17.0.1 - Tim Kosse) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.) Google Drive (HKLM-x32\...\{07A12123-B717-496B-B471-48AF6407B433}) (Version: 1.32.4066.7445 - Google, Inc.) Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6428.0 - IDT) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2559 - Intel Corporation) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.72.4 - JMicron Technology Corp.) K-Lite Mega Codec Pack 6.5.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.5.0 - ) League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games) League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden Lightshot-5.4.0.1 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.1 - Skillbrains) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) NEC Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.18.0 - NEC Electronics Corporation) NEC Electronics USB 3.0 Host Controller Driver (x32 Version: 1.0.18.0 - NEC Electronics Corporation) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.73.618.2013 - Realtek) Revisores de Texto do Microsoft Office 2013 – Português do Brasil (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Skype Web Plugin (HKLM-x32\...\{8AB268B6-837A-44A8-A616-2CC233FEC42A}) (Version: 7.31.0.51 - Skype Technologies S.A.) Skype™ 7.31 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.31.104 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-398587748-1458752106-3854067645-1000\...\Spotify) (Version: 1.0.42.151.g19de0aa6 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Suporte para Aplicativos Apple (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.72365 - TeamViewer) Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.) Vegas Pro 12.0 (64-bit) (HKLM\...\{A7500970-FE98-11E1-B560-F04DA23A5C58}) (Version: 12.0.367 - Sony) WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{9DA87DE9-7F5D-4C7C-BECD-25B0E99ED572}\localserver32 -> C:\Users\REDE R\AppData\Local\SkypePlugin\7.31.0.51\GatewayVersion-x64.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\REDE R\AppData\Local\SkypePlugin\7.31.0.51\EdgeCalling.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-398587748-1458752106-3854067645-1000_Classes\CLSID\{F1DB282B-47C6-48D0-A970-7437FDBB1E96}\InprocServer32 -> C:\Users\REDE R\AppData\Local\SkypePlugin\7.31.0.51\GatewayActiveX-x64.dll (Skype Technologies S.A.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {0CE52EDC-79AA-4333-B307-3BF0B34BC6A0} - System32\Tasks\SlimCleaner Plus (Scheduled Scan - REDE R) => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe Task: {207D324A-CB1F-4826-954E-0E9BD41B4DC4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {352EC17C-FE4B-4E2B-A10E-A1D2878DE0C2} - System32\Tasks\{528A308A-F176-4788-8322-5555ECA98F1A} => pcalua.exe -a "C:\Users\REDE R\AppData\Roaming\Nox\bin\Nox_unload.exe" Task: {527F5DE5-34FD-4916-B50C-FEB9D8E01283} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe [2017-01-10] (Adobe Systems Incorporated) Task: {5B527E7D-D4DE-4FD2-A2CE-A19A9786D6BF} - System32\Tasks\DLL-files.com Fixer_MONTHLY => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2015-07-09] (Dll-FIles.Com) Task: {6DF498BD-1967-45DC-80A0-99B282BD7BF2} - System32\Tasks\Microsoft Office 15 Sync Maintenance for REDE-R-REDE R REDE-R => C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation) Task: {828A686D-C921-4826-A5C4-71D99C7BE539} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-16] (Google Inc.) Task: {94431D19-03C6-43B0-B4DA-585598D83401} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {A336EAEB-13E9-4101-ADDA-B1FA1926CB74} - System32\Tasks\DLL-files.com Fixer_UPDATES => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2015-07-09] (Dll-FIles.Com) Task: {A5C973ED-F8D3-4579-96AE-32D3D9D570E0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {A61F080A-1682-4346-82F3-B6439B5C4592} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-16] (Google Inc.) Task: {C896816A-DB35-4787-8BB7-0A02E12E6E1C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-10] (Adobe Systems Incorporated) Task: {D11C6B15-E443-43E6-822D-4A8825074F27} - System32\Tasks\update-S-1-5-21-398587748-1458752106-3854067645-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2016-07-11] () Task: {DD845ACD-93D6-4C74-B9F7-A16321F8BAF9} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => %ProgramFiles%\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {DEBE2500-3D74-4C48-8964-880B9317B88E} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2016-07-11] () Task: {E1271D28-905B-4E83-931F-B29138D856AC} - System32\Tasks\{3060C693-0709-4FE9-B125-F0B7DEC6407D} => pcalua.exe -a "C:\Users\REDE R\Downloads\LeagueofLegends_BR_Installer_2016_05_13.exe" -d C:\Windows\SysWOW64 -c /groupsextract:100;101;102; /out:"C:\Users\REDE R\AppData\Roaming\Riot Games\League of Legends\prerequisites" /callbackid:3856 (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DLL-files.com Fixer_MONTHLY.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\DLL-files.com Fixer_UPDATES.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\SlimCleaner Plus (Scheduled Scan - REDE R).job => C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe Task: C:\Windows\Tasks\update-S-1-5-21-398587748-1458752106-3854067645-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ShortcutWithArgument: C:\Users\REDE R\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b8da4a38624bbb1e\Feedback.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gfdkimpbcpahaombhbimeihdjnejgicl ==================== Módulos Carregados (Whitelisted) ============== 2016-05-09 04:22 - 2016-05-09 04:22 - 00052912 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll 2011-10-21 08:49 - 2011-10-21 08:49 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 04582904 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\LeagueClient.exe 2017-02-08 08:54 - 2017-02-08 08:54 - 03476472 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\LeagueClientUx.exe 2017-02-08 08:54 - 2017-02-08 08:54 - 03476472 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\LeagueClientUxHelper.exe 2017-02-06 22:12 - 2017-02-01 06:47 - 02459992 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libglesv2.dll 2017-02-06 22:12 - 2017-02-01 06:47 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libegl.dll 2016-11-17 06:36 - 2016-11-17 06:36 - 51776112 _____ () C:\Users\REDE R\AppData\Roaming\Spotify\libcef.dll 2017-02-14 11:26 - 2017-02-14 11:26 - 00098816 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32api.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00110080 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\pywintypes27.dll 2017-02-14 11:26 - 2017-02-14 11:26 - 00364544 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\pythoncom27.dll 2017-02-14 11:26 - 2017-02-14 11:26 - 00320512 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32com.shell.shell.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00914432 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_hashlib.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 01176576 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._core_.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00806400 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._gdi_.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00816128 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._windows_.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 01067008 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._controls_.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00733184 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._misc_.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00682496 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\pysqlite2._sqlite.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00088064 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_ctypes.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00686080 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\unicodedata.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00119808 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32file.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00108544 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32security.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00007168 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\hashobjs_ext.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00017920 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\thumbnails_ext.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00088064 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\usb_ext.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00012800 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\common.time34.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00018432 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32event.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00167936 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32gui.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00046080 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_socket.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 01303552 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_ssl.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00128512 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_elementtree.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00127488 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\pyexpat.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00038912 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32inet.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00036864 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_psutil_windows.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00524248 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\windows._lib_cacheinvalidation.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00011264 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32crypt.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00123392 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._wizard.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00077312 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._html2.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00027648 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_multiprocessing.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00020480 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\_yappi.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00035840 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32process.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00078848 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\wx._animate.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00024064 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32pipe.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00010240 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\select.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00025600 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32pdh.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00017408 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32profile.pyd 2017-02-14 11:26 - 2017-02-14 11:26 - 00022528 ____R () C:\Users\REDER~1\AppData\Local\Temp\_MEI30282\win32ts.pyd 2017-02-08 08:54 - 2017-02-08 08:54 - 03339776 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-patcher\rcp-be-patcher.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 01039872 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-rso-auth\rcp-be-rso-auth.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 02525184 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-login\rcp-be-lol-login.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00579072 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-account-settings\rcp-be-lol-account-settings.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00579584 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-platform-config\rcp-be-lol-platform-config.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00729088 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-summoner\rcp-be-lol-summoner.dll 2017-02-08 08:52 - 2017-01-30 00:04 - 00641536 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-ranked-stats\rcp-be-lol-ranked-stats.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00560640 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-maps\rcp-be-lol-maps.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00699392 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-game-queues\rcp-be-lol-game-queues.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00850944 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-gameflow\rcp-be-lol-gameflow.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00934912 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-player-preferences\rcp-be-lol-player-preferences.dll 2017-02-08 08:52 - 2017-01-30 00:04 - 00688640 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-game-settings\rcp-be-lol-game-settings.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00662528 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-settings\rcp-be-lol-settings.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00630272 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-sanitizer\rcp-be-sanitizer.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 02497536 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-chat\rcp-be-lol-chat.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00159224 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\libexpat.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 02016256 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-riot-messaging-service\rcp-be-lol-riot-messaging-service.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00558080 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-heartbeat\rcp-be-lol-heartbeat.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00580608 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-shutdown\rcp-be-lol-shutdown.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00592384 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-acs\rcp-be-lol-acs.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00604672 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-player-notifications\rcp-be-player-notifications.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00563200 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-loyalty\rcp-be-lol-loyalty.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 01108480 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-collections\rcp-be-lol-collections.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00954880 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-loot\rcp-be-lol-loot.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00554496 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-kr-shutdown-law\rcp-be-lol-kr-shutdown-law.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00975872 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-lobby-team-builder\rcp-be-lol-lobby-team-builder.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00679936 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-queue-eligibility\rcp-be-lol-queue-eligibility.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 01540608 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-lobby\rcp-be-lol-lobby.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00857088 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-license-agreement\rcp-be-lol-license-agreement.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 01166848 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-champ-select-legacy\rcp-be-lol-champ-select-legacy.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00665600 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-champ-select\rcp-be-lol-champ-select.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00811520 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-matchmaking\rcp-be-lol-matchmaking.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00538112 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-kr-playtime-reminder\rcp-be-lol-kr-playtime-reminder.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00551936 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-game-client-chat\rcp-be-lol-game-client-chat.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00599040 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-team-boosts\rcp-be-lol-team-boosts.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00809984 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-end-of-game\rcp-be-lol-end-of-game.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00583680 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-active-boosts\rcp-be-lol-active-boosts.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00612864 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-kudos\rcp-be-lol-kudos.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00661504 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-parties\rcp-be-lol-parties.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00882176 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-leagues\rcp-be-lol-leagues.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00672256 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-pft\rcp-be-lol-pft.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00687104 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-player-behavior\rcp-be-lol-player-behavior.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00665600 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-suggested-players\rcp-be-lol-suggested-players.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00592896 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-service-status\rcp-be-lol-service-status.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00619520 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-leaver-buster\rcp-be-lol-leaver-buster.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00734720 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-match-history\rcp-be-lol-match-history.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00758272 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-recofriender\rcp-be-recofriender.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00858112 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-clubs\rcp-be-lol-clubs.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 01704448 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-clubs-public\rcp-be-lol-clubs-public.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00648192 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-esport-stream-notifications\rcp-be-lol-esport-stream-notifications.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00778752 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-replays\rcp-be-lol-replays.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00577536 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-spectator\rcp-be-lol-spectator.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00707072 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-store\rcp-be-lol-store.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00569856 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-player-level-up\rcp-be-lol-player-level-up.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00545792 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-tencent-qt\rcp-be-lol-tencent-qt.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00624128 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-beta-opt-in\rcp-be-lol-beta-opt-in.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00606208 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-player-messaging\rcp-be-lol-player-messaging.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00525312 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-user-experience\rcp-be-lol-user-experience.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00606208 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-lol-simple-dialog-messages\rcp-be-lol-simple-dialog-messages.dll 2017-02-08 08:54 - 2017-02-08 08:54 - 00549888 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\Plugins\rcp-be-network-testing\rcp-be-network-testing.dll 2017-02-08 08:52 - 2017-01-25 06:26 - 55617504 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\libcef.dll 2017-02-08 08:52 - 2017-01-25 06:26 - 01876448 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\libglesv2.dll 2017-02-08 08:52 - 2017-01-25 06:26 - 00021984 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.50\deploy\libegl.dll 2016-11-17 06:36 - 2016-11-17 06:36 - 01803888 _____ () C:\Users\REDE R\AppData\Roaming\Spotify\libglesv2.dll 2016-11-17 06:36 - 2016-11-17 06:36 - 00086128 _____ () C:\Users\REDE R\AppData\Roaming\Spotify\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\ProgramData:NT [40] AlternateDataStreams: C:\ProgramData:NT2 [346] AlternateDataStreams: C:\Users\All Users:NT [40] AlternateDataStreams: C:\Users\All Users:NT2 [346] AlternateDataStreams: C:\Users\Todos os Usuários:NT [40] AlternateDataStreams: C:\Users\Todos os Usuários:NT2 [346] AlternateDataStreams: C:\ProgramData\Application Data:NT [40] AlternateDataStreams: C:\ProgramData\Application Data:NT2 [346] AlternateDataStreams: C:\ProgramData\Dados de aplicativos:NT [40] AlternateDataStreams: C:\ProgramData\Dados de aplicativos:NT2 [346] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT [40] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 [346] AlternateDataStreams: C:\Users\REDE R\Dados de aplicativos:NT [40] AlternateDataStreams: C:\Users\REDE R\Dados de aplicativos:NT2 [346] AlternateDataStreams: C:\Users\REDE R\AppData\Roaming:NT [40] AlternateDataStreams: C:\Users\REDE R\AppData\Roaming:NT2 [346] AlternateDataStreams: C:\Users\Todos os Usuários\Application Data:NT [40] AlternateDataStreams: C:\Users\Todos os Usuários\Application Data:NT2 [346] AlternateDataStreams: C:\Users\Todos os Usuários\Dados de aplicativos:NT [40] AlternateDataStreams: C:\Users\Todos os Usuários\Dados de aplicativos:NT2 [346] AlternateDataStreams: C:\Users\Todos os Usuários\MTA San Andreas All:NT [40] AlternateDataStreams: C:\Users\Todos os Usuários\MTA San Andreas All:NT2 [346] ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\0EB94980.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\0EB94980.sys => ""="Driver" ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-13 23:34 - 2009-06-10 18:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-398587748-1458752106-3854067645-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\REDE R\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.15.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{50093709-CAF2-44B1-B26F-403C472F43AF}] => C:\Program Files (x86)\Microsoft Office\Office15\lync.exe FirewallRules: [{F11234B9-ABAA-4A45-A39D-D3B66DECB90F}] => C:\Program Files (x86)\Microsoft Office\Office15\lync.exe FirewallRules: [{2C0D266A-A9D6-4202-9294-87DCEE5410F2}] => C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{9E4B24FB-ADF8-4B97-95B7-CCCF34670AFC}] => C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{9C2694F5-D5C0-47B4-8C4D-298EBF3CB8D2}] => C:\Users\REDE R\AppData\Roaming\Nox\bin\Nox.exe FirewallRules: [{BA97C798-EED0-478F-B0F6-B574C544E780}] => C:\Program Files\Bignox\BigNoxVM\RTNoxVMHandle.exe FirewallRules: [{9E4560CB-9781-4589-B353-2475CDDC6D45}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{EF81D0BD-43FC-461B-B2E4-B6435F0AC216}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{05EB5377-698B-4BB4-8F6C-11CEEF7C62F6}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{1643F071-DA5F-4DEB-AC9D-34A2E75989AF}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{3782F68F-D785-41D2-84B0-B06EDFC44A6A}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A0700D49-AB25-4656-9522-24D3E29E3532}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A9D7F561-5904-4B8B-B1BA-0A8BC6458948}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{6F5194F9-3757-4DC6-A5E1-ABC2DFB27AB6}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{1AF98E6D-C1BF-4845-BB8F-59D160551A5E}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{120D16E0-D355-4A31-BEE0-B9F5FD5305BA}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{0A948868-6323-49CA-836E-102546AB1C52}] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [TCP Query User{E274F26E-DC39-4F33-9DF6-609EFA032570}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [UDP Query User{EFB75A07-728B-4475-A98F-FE86BB10AED3}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [TCP Query User{778E090F-F4B6-4E98-8DF0-F9956D2B434A}C:\program files (x86)\lolreplay2\lolreplay2.exe] => C:\program files (x86)\lolreplay2\lolreplay2.exe FirewallRules: [UDP Query User{CA916985-F78E-4489-A99F-608EFDC7BBEC}C:\program files (x86)\lolreplay2\lolreplay2.exe] => C:\program files (x86)\lolreplay2\lolreplay2.exe FirewallRules: [{759CC6FA-D4E9-42C4-9E1C-3907347BADA3}] => C:\program files (x86)\lolreplay2\lolreplay2.exe FirewallRules: [{B62D0F22-4C83-470D-87BF-9C0AB73FB926}] => C:\program files (x86)\lolreplay2\lolreplay2.exe FirewallRules: [TCP Query User{49F3FF3D-397D-439B-8062-DEB5D68F343D}C:\users\rede r\appdata\roaming\spotify\spotify.exe] => C:\users\rede r\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{03F28CEF-6571-4FE8-970E-7E3C33033E3C}C:\users\rede r\appdata\roaming\spotify\spotify.exe] => C:\users\rede r\appdata\roaming\spotify\spotify.exe FirewallRules: [{3F7C8357-E55C-46FE-AABC-CBD529C66D1C}] => C:\users\rede r\appdata\roaming\spotify\spotify.exe FirewallRules: [{16E5D845-49FB-4E5A-BDF5-EEFFBAB80FD6}] => C:\users\rede r\appdata\roaming\spotify\spotify.exe FirewallRules: [{F8D26C19-00E0-462A-B6D5-4AA102A8CE30}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{B07D67D6-7517-4446-925C-8460A1ACD195}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{2488B8AB-E6F2-429B-9FCC-975B38AB1BA2}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{FB2F4C04-9FC6-4B7C-9779-8E4289304A72}C:\program files\java\jre1.8.0_111\bin\javaw.exe] => C:\program files\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [UDP Query User{9A57BADB-59B6-4CCD-AA45-0F9716A95645}C:\program files\java\jre1.8.0_111\bin\javaw.exe] => C:\program files\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{9108C266-9447-4756-81D1-2859C7B46269}] => C:\program files\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{AA81483C-701C-4369-9BFF-22DA73AB117D}] => C:\program files\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{73E0B8B7-6EC0-4583-9AE6-6465E90C4635}] => C:\Users\REDE R\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{67733422-67ED-47F2-AC8C-C231CAFFC83C}] => C:\Users\REDE R\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [TCP Query User{760BB23F-BEE7-47B9-88C0-A6D83E6B1299}C:\program files\teamspeak 3 client\ts3client_win64.exe] => C:\program files\teamspeak 3 client\ts3client_win64.exe FirewallRules: [UDP Query User{BDFCA0BB-C247-4DF6-A43D-78C18AE21534}C:\program files\teamspeak 3 client\ts3client_win64.exe] => C:\program files\teamspeak 3 client\ts3client_win64.exe FirewallRules: [TCP Query User{AEF68434-8E4A-45C1-A393-09E6CD7A2716}C:\program files\java\jre1.8.0_121\bin\javaw.exe] => C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [UDP Query User{A8D89A18-C1A0-45E6-A8B1-0628FFC63DB2}C:\program files\java\jre1.8.0_121\bin\javaw.exe] => C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{CD000DEE-49D3-4B62-BBAE-DA27A651186D}] => C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{A34833CB-03FF-4F0B-8AD6-04A3BEBD16EA}] => C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{0A3F8C88-DF20-48F8-B2E7-A0C24EBBA83B}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{CB1732F5-499C-4C06-BA4B-C73DF8C18525}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A82EF4D3-4EF1-4406-A696-F113EA3A7645}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A729CE6E-6048-46C6-964F-EAFC3374F2B1}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{68C3AD05-5499-4981-9D6A-DE0C88EB02A9}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{5E0D36AC-463A-4629-BF99-3AD78BA28A7F}] => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2A152C05-CE5F-4FAA-ACDC-50542C7C6B5D}] => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C7F7290A-3FFA-496D-B943-C717C21EA05D}] => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{17C832AF-0F18-47F7-99AF-5F0A598F1BF2}] => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe ==================== Pontos de Restauração ========================= 14-02-2017 12:06:25 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 ==================== Dispositivos Apresentando Falhas No Gerenciador ============= Name: Generic Bluetooth Adapter Description: Generic Bluetooth Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: GenericAdapter Service: BTHUSB Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (02/13/2017 05:30:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: nativeproxy.exe, versão: 0.0.0.0, carimbo de hora: 0x583f730b Nome do módulo de falhas: ntdll.dll, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bdb3b Código de exceção: 0xc0000005 Deslocamento com falha: 0x0003317f Identificação do processo com falha: 0xfec Hora de início do aplicativo com falha: 0x01d28637fb57ae85 Caminho do aplicativo com falha: C:\Program Files (x86)\Google\Drive\nativeproxy.exe FCaminho do módulo de falhas: C:\Windows\SysWOW64\ntdll.dll Identificação do Relatório: 3a3e5448-f22b-11e6-ae8f-e4115b3e12b4 Error: (02/12/2017 12:06:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: LolClient.exe, versão: 0.0.0.0, carimbo de hora: 0x515663e0 Nome do módulo de falhas: Adobe AIR.dll, versão: 21.0.0.176, carimbo de hora: 0x56de3058 Código de exceção: 0xc0000005 Deslocamento com falha: 0x0006e3db Identificação do processo com falha: 0x462c Hora de início do aplicativo com falha: 0x01d284aa312789e2 Caminho do aplicativo com falha: C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.241\deploy\LolClient.exe FCaminho do módulo de falhas: C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.241\deploy\Adobe AIR\Versions\1.0\Adobe AIR.dll Identificação do Relatório: e37dfd30-f134-11e6-b648-e4115b3e12b4 Error: (02/09/2017 04:17:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: TeamViewer.exe, versão: 12.1.6829.0, carimbo de hora: 0x58527849 Nome do módulo de falhas: TeamViewer.exe, versão: 12.1.6829.0, carimbo de hora: 0x58527849 Código de exceção: 0xc0000005 Deslocamento com falha: 0x0057d87d Identificação do processo com falha: 0x6d4 Hora de início do aplicativo com falha: 0x01d28305cfbcd6b5 Caminho do aplicativo com falha: C:\Program Files (x86)\TeamViewer\TeamViewer.exe FCaminho do módulo de falhas: C:\Program Files (x86)\TeamViewer\TeamViewer.exe Identificação do Relatório: 5621d983-eefc-11e6-b648-e4115b3e12b4 Error: (02/07/2017 06:05:08 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa League of Legends.exe versão 7.2.174.5460 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: e94 Hora de Início: 01d28185c1e1b6e7 Hora de Término: 16 Caminho do Aplicativo: C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.161\deploy\League of Legends.exe Id do Relatório: 16443fd2-ed79-11e6-b648-e4115b3e12b4 Error: (02/03/2017 10:03:52 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa League of Legends.exe versão 7.2.174.5460 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: 2c3c Hora de Início: 01d27e827b82bcc0 Hora de Término: 18 Caminho do Aplicativo: C:\Riot Games\League of Legends\RADS\solutions\lol_game_client_sln\releases\0.0.1.161\deploy\League of Legends.exe Id do Relatório: c800e496-ea75-11e6-a01a-e4115b3e12b4 Error: (01/31/2017 05:06:05 PM) (Source: Microsoft Office 15) (EventID: 2000) (User: ) Description: Microsoft Outlook: Accepted Safe Mode action : Outlook detectou um problema com o(a) NormalEmail.dotm existente. Deseja criar um novo(a) NormalEmail.dotm?. Accepted Safe Mode action : Microsoft Outlook. Error: (01/29/2017 07:13:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: rads_user_kernel.exe, versão: 0.0.0.0, carimbo de hora: 0x4e65c1ac Nome do módulo de falhas: rads_user_kernel.exe, versão: 0.0.0.0, carimbo de hora: 0x4e65c1ac Código de exceção: 0xc0000005 Deslocamento com falha: 0x000b8554 Identificação do processo com falha: 0x22b0 Hora de início do aplicativo com falha: 0x01d27a7cedb260de Caminho do aplicativo com falha: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe FCaminho do módulo de falhas: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe Identificação do Relatório: 2de9594d-e670-11e6-8bc9-e4115b3e12b4 Error: (01/24/2017 11:06:58 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: rads_user_kernel.exe, versão: 0.0.0.0, carimbo de hora: 0x4e65c1ac Nome do módulo de falhas: rads_user_kernel.exe, versão: 0.0.0.0, carimbo de hora: 0x4e65c1ac Código de exceção: 0xc0000005 Deslocamento com falha: 0x000b8554 Identificação do processo com falha: 0x2414 Hora de início do aplicativo com falha: 0x01d2764b1e7ca71a Caminho do aplicativo com falha: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe FCaminho do módulo de falhas: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe Identificação do Relatório: 5e502154-e23e-11e6-ba1a-e4115b3e12b4 Error: (01/21/2017 08:04:45 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: O programa rads_user_kernel.exe versão 0.0.0.0 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações. ID de Processo: fd4 Hora de Início: 01d273d6247c5389 Hora de Término: 1 Caminho do Aplicativo: C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe Id do Relatório: 667bb698-dfc9-11e6-a100-e4115b3e12b4 Error: (01/21/2017 08:02:24 AM) (Source: Validity USDK) (EventID: 44) (User: ) Description: Event-ID 44 Erros de Sistema: ============= Error: (02/14/2017 11:26:13 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento anterior do sistema em 11:24:50 às ‎14/‎02/‎2017 não era esperado. Error: (02/14/2017 11:26:17 AM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Falha indeterminada do adaptador Bluetooth local; ele não será usado. O driver foi descarregado. Error: (02/13/2017 04:57:06 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Falha indeterminada do adaptador Bluetooth local; ele não será usado. O driver foi descarregado. Error: (02/13/2017 04:57:40 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento anterior do sistema em 16:56:00 às ‎13/‎02/‎2017 não era esperado. Error: (02/12/2017 07:53:55 AM) (Source: volsnap) (EventID: 36) (User: ) Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário. Error: (02/11/2017 11:46:01 AM) (Source: volsnap) (EventID: 36) (User: ) Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário. Error: (02/11/2017 10:02:48 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Tempo limite esgotado (30000 milissegundos) ao aguardar a resposta de uma transação do serviço TeamViewer. Error: (02/10/2017 11:46:06 AM) (Source: volsnap) (EventID: 36) (User: ) Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário. Error: (02/09/2017 07:29:42 AM) (Source: volsnap) (EventID: 36) (User: ) Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário. Error: (02/08/2017 02:05:57 AM) (Source: volsnap) (EventID: 36) (User: ) Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário. CodeIntegrity: =================================== Date: 2017-02-14 11:47:24.936 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAC64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-14 11:46:00.861 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAC64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-14 11:30:46.154 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAC64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-14 11:29:25.857 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAR64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-14 11:26:50.093 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAR64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-14 11:26:27.873 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAR64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-14 11:26:22.636 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAR64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-13 17:01:42.666 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAC64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-13 17:01:04.540 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAR64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-13 16:59:05.987 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\AESTAR64.dll because the set of per-page image hashes could not be found on the system. ==================== Informações da Memória =========================== Processador: Intel(R) Core(TM) i5-2520M CPU @ 2.50GHz Percentagem de memória em uso: 52% RAM física total: 8126.37 MB RAM física disponível: 3853.14 MB Virtual Total: 16250.88 MB Virtual disponível: 11739.05 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.56 GB) (Free:2.81 GB) NTFS ==>[drive com componentes de inicialização (obtido através de BCD)] Drive d: (Disco Local) (Fixed) (Total:200.43 GB) (Free:89.09 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: F90FDD3D) Partition 1: (Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=200.4 GB) - (Type=07 NTFS) ==================== Fim de Addition.txt ============================