Resultado do exame Adicional Farbar Recovery Scan Tool (x86) Versão: 15-03-2017 Executado por Usuario (29-03-2017 13:18:05) Executando a partir de C:\Users\Usuario\Downloads Microsoft Windows 7 Ultimate (X86) (2012-01-09 14:38:42) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-2207622508-2808302335-582593149-500 - Administrator - Disabled) Convidado (S-1-5-21-2207622508-2808302335-582593149-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2207622508-2808302335-582593149-1003 - Limited - Enabled) Usuario (S-1-5-21-2207622508-2808302335-582593149-1000 - Administrator - Enabled) => C:\Users\Usuario ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) µTorrent (HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\uTorrent) (Version: 3.4.5.41865 - BitTorrent Inc.) Adobe Flash Player 11 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.5.502.146 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 11.5.502.146 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Português (HKLM\...\{AC76BA86-7AD7-1046-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.8.638 - Adobe Systems, Inc.) AMD Catalyst Install Manager (HKLM\...\{394FEDAF-ED28-2CBE-2DD4-9DE323B494D6}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) Arquivos de Suporte à Instalação do Microsoft SQL Server 2008 (HKLM\...\{21B55B6F-35FC-47C6-A945-82750A61BABF}) (Version: 10.1.2731.0 - Microsoft Corporation) Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.25.172 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM\...\{0b46d918-af4f-4612-8076-5c0ae67cb2aa}) (Version: 1.2.81.41506 - Avira Operations GmbH & Co. KG) Avira Connect (Version: 1.2.81.41506 - Avira Operations GmbH & Co. KG) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.13 - Piriform) CDisplayEx 1.10.29 (HKLM\...\CDisplayEx_is1) (Version: - Progdigy Software S.A.R.L.) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Estudo de aprimoramento de produto para HP Deskjet 1510 series (HKLM\...\{DD5AAE06-B7DB-459B-9007-21F1BBAFE910}) (Version: 30.0.1093.41190 - Hewlett-Packard Co.) Galeria de Fotos (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Google Chrome (HKLM\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.) Google Update Helper (Version: 1.3.32.7 - Google Inc.) Hidden HP Deskjet 1510 series Ajuda (HKLM\...\{6DFDA448-D4A1-49DB-9217-1501D24861F5}) (Version: 30.0.0 - Hewlett Packard) HP Deskjet 1510 series Software básico do dispositivo (HKLM\...\{09EC1A2F-F639-49BE-8378-746DA9F286F8}) (Version: 30.0.1093.41190 - Hewlett-Packard Co.) HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Instalação do Microsoft SQL Server 2008 R2 (Inglês) (HKLM\...\{DFA77AE4-727B-4ABA-BBB5-EAE781FE2B43}) (Version: 10.51.2500.0 - Microsoft Corporation) IObit Uninstaller (HKLM\...\IObitUninstall) (Version: 4.1.5.24 - IObit) Java 7 Update 11 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217011FF}) (Version: 7.0.110 - Oracle) Junk Mail filter update (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Linx Microvix POS (HKLM\...\{845DFE1C-424B-4E9B-A3F3-E3B9F341DE3F}) (Version: 4.0.0.1 - Linx S.A) Linx Microvix POS updater 4.0 (HKLM\...\{8E979E5C-C838-4405-BEC6-8D2E6C2A410A}) (Version: 4.0.0.0400 - Linx S.A) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0416-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20125.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 (HKLM\...\Microsoft SQL Server 2008 R2) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{1010E406-0214-4415-BF2C-EAC2C99255E5}) (Version: 10.51.2500.0 - Microsoft Corporation) Microsoft SQL Server Browser (HKLM\...\{336FEB35-3257-4467-BC8B-2F5CF432BCF8}) (Version: 10.51.2500.0 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{1ADC8771-9EFC-417B-9FDB-700BF03B8BCD}) (Version: 10.51.2500.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Movie Maker (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 39.0 (x86 pt-BR) (HKLM\...\Mozilla Firefox 39.0 (x86 pt-BR)) (Version: 39.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 43.0.1.5828 - Mozilla) osu! (HKLM\...\{95323d36-6a0c-4d8f-920e-0503bd190789}) (Version: latest - ppy Pty Ltd) Pacote de Driver do Windows - Urmet Daruma Barramento USB (01/12/2014 3.7.0) (HKLM\...\BA39C4B4B6E51C618D584D3DDC124168A8187782) (Version: 01/12/2014 3.7.0 - Urmet Daruma) Pacote de Driver do Windows - Urmet Daruma Porta Serial (01/12/2014 3.7.0) (HKLM\...\8A4E55D6AF54F3FF88FA5A7094CFE782609E57E1) (Version: 01/12/2014 3.7.0 - Urmet Daruma) PhotoScape (HKLM\...\PhotoScape) (Version: - ) Popmuz (HKLM\...\{fe2ef823-d1eb-43ca-b114-e07fe5c445d4}) (Version: 2.0.0.0 - www.popmuz.com.br) Popmuz (Version: 2.0.0.0 - www.popmuz.com.br) Hidden Portaldosties (HKLM\...\Desk 365) (Version: - ) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7260 - Realtek Semiconductor Corp.) Service Pack 1 para o SQL Server 2008 R2 (KB2528583) (HKLM\...\KB2528583) (Version: 10.51.2500.0 - Microsoft Corporation) Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype Meetings App (HKLM\...\{D194F3F7-A3E3-4D33-97D6-A37725DAEC25}) (Version: 16.2.0.172 - Microsoft Corporation) Skype™ 7.8 (HKLM\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\Spotify) (Version: 1.0.49.125.g72ee7853 - Spotify AB) SQL Server 2008 R2 SP1 Common Files (Version: 10.51.2500.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP1 Database Engine Services (Version: 10.51.2500.0 - Microsoft Corporation) Hidden SQL Server 2008 R2 SP1 Database Engine Shared (Version: 10.51.2500.0 - Microsoft Corporation) Hidden Sql Server Customer Experience Improvement Program (Version: 10.50.1600.1 - Microsoft Corporation) Hidden swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamViewer 9 (HKLM\...\TeamViewer 9) (Version: 9.0.41110 - TeamViewer) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Movie Maker Packages (HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\Windows Movie Maker Packages) (Version: - ) <==== ATENÇÃO WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-2207622508-2808302335-582593149-1000_Classes\CLSID\{3E3AD4BD-346A-460A-80E8-90699B75C00B}\InprocServer32 -> C:\Users\Usuario\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.172\GatewayActiveX.dll (Microsoft Corporation) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {101DBD9B-D442-4050-8252-A99A3E8C4329} - System32\Tasks\Uninstaller_SkipUac_Usuario => C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe Task: {2032F218-DDDC-469E-93E3-F9566697360E} - System32\Tasks\HPCustParticipation HP Deskjet 1510 series => C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe [2013-02-08] (Hewlett-Packard Co.) Task: {4D35FAB1-EFB8-4306-8724-8ED5F17C2FD2} - \DealPlyUpdate -> Nenhum Arquivo <==== ATENÇÃO Task: {4D44AD5C-90CD-4E87-A90B-04ED6D42A70A} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: {65C16D52-B82A-44D6-B9D7-0CF4C21F62CB} - System32\Tasks\ASC8_SkipUac_Usuario => C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe Task: {71167EA3-A93F-4A02-ADC8-F6D39A9DDDA8} - System32\Tasks\AviraSpeedup => C:\Program Files\Avira\AviraSpeedup\avira_system_speedup.exe [2015-10-16] (Avira Operations GmbH & Co. KG) Task: {9648D7A5-DE15-4420-8AFE-31E21DE75571} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {B15BE7E1-C8E4-4571-BB37-F45EC17C93E1} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe Task: {B66AF769-EA1B-4D1D-8EB2-40A9E65EC6B2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-12-08] (Piriform Ltd) Task: {BD343448-BC7E-4A61-8D7A-35CFCAD39258} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {C314B72E-F3C1-4887-A9FC-FB90766DF7CC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {C772EEBA-D032-41FA-A3BC-805251509FA8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: {E324BA33-8DA5-45AE-BC61-DC2B054A22E8} - System32\Tasks\{2AC082B0-5449-4B94-ADF5-D667ABA38D45} => C:\Users\Usuario\Downloads\IE11-Windows6.1-x86-pt-br.exe [2017-01-12] (Microsoft Corporation) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ==================== Módulos Carregados (Whitelisted) ============== 2006-10-26 20:30 - 2006-10-26 20:30 - 00065312 _____ () C:\Program Files\Microsoft Office\Office12\ADDINS\ColleagueImport.dll 2006-10-27 14:35 - 2006-10-27 14:35 - 00436512 _____ () C:\Program Files\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll 2006-10-26 12:56 - 2006-10-26 12:56 - 00757008 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL 2016-06-20 11:16 - 2016-06-20 11:16 - 00010240 _____ () C:\Program Files\Linx Sistemas\Linx Microvix POS\LinxSSL.DLL 2017-02-06 19:38 - 2017-02-01 06:01 - 01870168 _____ () C:\Program Files\Google\Chrome\Application\56.0.2924.87\libglesv2.dll 2017-02-06 19:38 - 2017-02-01 06:01 - 00085848 _____ () C:\Program Files\Google\Chrome\Application\56.0.2924.87\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\Windows\System32:5449270E_Bb.gbp [2] AlternateDataStreams: C:\Windows\system32\drivers:GbpKmAp.lst [208] ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SMPCHelper => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tvnserver => ""="" ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) IE trusted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\microvix.com.br -> microvix.com.br IE trusted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\microvixerp.com.br -> microvixerp.com.br IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-2207622508-2808302335-582593149-1000\...\100sexlinks.com -> 100sexlinks.com Existem ainda 4788 sites a mais. ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-13 23:04 - 2013-04-12 16:51 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-2207622508-2808302335-582593149-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Firewall do Windows está desabilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AMD External Events Utility => 2 MSCONFIG\Services: AMD FUEL Service => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: gusvc => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: PopMuzFileConverterService => 2 MSCONFIG\Services: PopMuzFileTransferService => 2 MSCONFIG\Services: scpVista => 2 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: TeamViewer7 => 2 MSCONFIG\Services: TeamViewer9 => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^PopMuz.lnk => C:\Windows\pss\PopMuz.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Usuario^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Recorte de tela e Iniciador do OneNote 2007.lnk => C:\Windows\pss\Recorte de tela e Iniciador do OneNote 2007.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" MSCONFIG\startupreg: HP Software Update => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: msnmsgr => "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Spotify => "C:\Users\Usuario\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Usuario\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: StartCCC => "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Yontoo Desktop => "C:\Users\Usuario\AppData\Roaming\Yontoo\YontooDesktop.exe" ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{E3E5623B-6162-4A76-9D3B-5C6752DBF2CE}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{1ACD840B-8541-4BDA-9615-7646F5D644FB}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe FirewallRules: [{A315A866-5EDA-43D9-B216-EFE6B31089DD}] => (Allow) LPort=2869 FirewallRules: [{4A76F894-50AC-4839-8FFF-DBA6D5B9F3AB}] => (Allow) LPort=1900 FirewallRules: [{5DE13DD0-DA43-4075-B541-044A26195244}] => (Allow) C:\Users\Usuario\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{ABFB0632-1251-49F3-B429-9795F894A211}] => (Allow) C:\Users\Usuario\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C3B0078B-19FB-4039-9FC1-02E94E03A5B1}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\USBSetup.exe FirewallRules: [{C7077F17-BE9E-42BF-8747-001BE7C603AE}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{A6CA8F5B-4BA0-4C4B-9FA4-7C97192CAB1E}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{1A19AFEC-71D4-4027-A2BF-21228C104039}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{21E53B03-1DC2-4801-99AC-CFD1D11BAD0F}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{7B4D7D8D-9985-45CA-B5AA-41A523D6F26D}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{6F87527B-26E3-4B18-99AE-577B1A6677C2}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{DB7B2F9E-08DB-4E9C-B159-E6024ABD885F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{32170BDB-6B47-47B1-A587-A2F4B4E7A39B}C:\users\usuario\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\usuario\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{3DFBAD3F-FA89-4A10-9F57-1F77F8243F1C}C:\users\usuario\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\usuario\appdata\roaming\spotify\spotify.exe FirewallRules: [{CF82FF8E-BDE7-4487-B890-4B2A78A72A0A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{22A667AA-E45A-41FE-B7CA-BE4229C206DA}C:\program files\linx sistemas\linx microvix pos\microvix.pos.exe] => (Allow) C:\program files\linx sistemas\linx microvix pos\microvix.pos.exe FirewallRules: [UDP Query User{56E135A1-9103-4879-8A6B-F5D3FAACAB9C}C:\program files\linx sistemas\linx microvix pos\microvix.pos.exe] => (Allow) C:\program files\linx sistemas\linx microvix pos\microvix.pos.exe FirewallRules: [{F0387442-6585-452A-B059-9DF9232908A0}] => (Allow) C:\Users\Usuario\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{97950D31-D4BF-4857-AFB1-48150359A1B8}] => (Allow) C:\Users\Usuario\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E64DE2FC-F149-4BA4-8C1F-C16BBAC127B4}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Pontos de Restauração ========================= 04-03-2017 19:41:30 Ponto de Verificação Agendado 13-03-2017 14:03:37 Ponto de Verificação Agendado 21-03-2017 11:06:47 Ponto de Verificação Agendado 28-03-2017 11:19:40 Ponto de Verificação Agendado ==================== Dispositivos Apresentando Falhas No Gerenciador ============= Name: Unknown Device Description: Unknown Device Class Guid: {36fc9e60-c465-11cf-8056-444553540000} Manufacturer: (Standard USB Host Controller) Service: Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: Bnbase Description: Bnbase Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bnbase Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Baidu NetDefense Description: Baidu NetDefense Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bndef Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Baidu Protect Description: Baidu Protect Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bprotect Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (03/28/2017 11:13:04 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files\HP\HP Deskjet 1510 series\DriverStore\Yeti\V3\amd64\hpinkinsc111.exe". Assembly dependente Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" não pôde ser localizado. Use o arquivo sxstrace.exe para obter um diagnóstico detalhado. Error: (03/27/2017 12:51:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: Microvix.POS.exe, versão: 4.0.0.0, carimbo de hora: 0x57618d00 Nome do módulo de falhas: KERNELBASE.dll, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bdaae Código de exceção: 0xe0434352 Deslocamento com falha: 0x00009617 Identificação do processo com falha: 0xe2c Hora de início do aplicativo com falha: 0x01d2a6fb43b70011 Caminho do aplicativo com falha: C:\Program Files\Linx Sistemas\Linx Microvix POS\Microvix.POS.exe FCaminho do módulo de falhas: C:\Windows\system32\KERNELBASE.dll Identificação do Relatório: 34af4fbe-1305-11e7-93f6-c89cdcc6be36 Error: (03/27/2017 12:51:12 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: Microvix.POS.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.Data.SqlClient.SqlException Stack: at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.DispatcherOperation.InvokeImpl() at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) at System.Windows.Threading.DispatcherOperation.Invoke() at System.Windows.Threading.Dispatcher.ProcessQueue() at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.Run() at System.Windows.Application.RunDispatcher(System.Object) at System.Windows.Application.RunInternal(System.Windows.Window) at System.Windows.Application.Run(System.Windows.Window) at Microvix.POS_.App.Main() Error: (03/24/2017 04:26:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: Microvix.POS.exe, versão: 4.0.0.0, carimbo de hora: 0x57618d00 Nome do módulo de falhas: KERNELBASE.dll, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bdaae Código de exceção: 0xe0434352 Deslocamento com falha: 0x00009617 Identificação do processo com falha: 0xad4 Hora de início do aplicativo com falha: 0x01d2a4b45ebfc351 Caminho do aplicativo com falha: C:\Program Files\Linx Sistemas\Linx Microvix POS\Microvix.POS.exe FCaminho do módulo de falhas: C:\Windows\system32\KERNELBASE.dll Identificação do Relatório: cb591496-10c7-11e7-8f6f-c89cdcc6be36 Error: (03/24/2017 04:26:33 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: Microvix.POS.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.Data.SqlClient.SqlException Stack: at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at System.Windows.Threading.Dispatcher.Invoke(System.Windows.Threading.DispatcherPriority, System.Delegate, System.Object) at System.Windows.Interop.HwndSource.OnPreprocessMessageThunk(System.Windows.Interop.MSG ByRef, Boolean ByRef) at System.Windows.Interop.HwndSource+WeakEventPreprocessMessage.OnPreprocessMessage(System.Windows.Interop.MSG ByRef, Boolean ByRef) at System.Windows.Interop.ComponentDispatcherThread.RaiseThreadMessage(System.Windows.Interop.MSG ByRef) at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.Run() at System.Windows.Application.RunDispatcher(System.Object) at System.Windows.Application.RunInternal(System.Windows.Window) at System.Windows.Application.Run(System.Windows.Window) at Microvix.POS_.App.Main() Error: (03/24/2017 12:35:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: Microvix.POS.exe, versão: 4.0.0.0, carimbo de hora: 0x57618d00 Nome do módulo de falhas: KERNELBASE.dll, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bdaae Código de exceção: 0xe0434352 Deslocamento com falha: 0x00009617 Identificação do processo com falha: 0x140 Hora de início do aplicativo com falha: 0x01d2a4a17f28ca7c Caminho do aplicativo com falha: C:\Program Files\Linx Sistemas\Linx Microvix POS\Microvix.POS.exe FCaminho do módulo de falhas: C:\Windows\system32\KERNELBASE.dll Identificação do Relatório: 871e903e-10a7-11e7-8f6f-c89cdcc6be36 Error: (03/24/2017 12:35:36 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: Microvix.POS.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.Data.SqlClient.SqlException Stack: at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.DispatcherOperation.InvokeImpl() at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) at System.Windows.Threading.DispatcherOperation.Invoke() at System.Windows.Threading.Dispatcher.ProcessQueue() at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.Run() at System.Windows.Application.RunDispatcher(System.Object) at System.Windows.Application.RunInternal(System.Windows.Window) at System.Windows.Application.Run(System.Windows.Window) at Microvix.POS_.App.Main() Error: (03/23/2017 06:55:16 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Falha na geração de contexto de ativação para "C:\Program Files\HP\HP Deskjet 1510 series\DriverStore\Yeti\V3\amd64\hpinkinsc111.exe". Assembly dependente Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0" não pôde ser localizado. Use o arquivo sxstrace.exe para obter um diagnóstico detalhado. Error: (03/22/2017 12:22:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: Microvix.POS.exe, versão: 4.0.0.0, carimbo de hora: 0x57618d00 Nome do módulo de falhas: KERNELBASE.dll, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bdaae Código de exceção: 0xe0434352 Deslocamento com falha: 0x00009617 Identificação do processo com falha: 0x1628 Hora de início do aplicativo com falha: 0x01d2a30e9581f99d Caminho do aplicativo com falha: C:\Program Files\Linx Sistemas\Linx Microvix POS\Microvix.POS.exe FCaminho do módulo de falhas: C:\Windows\system32\KERNELBASE.dll Identificação do Relatório: 6b1b713c-0f13-11e7-9760-c89cdcc6be36 Error: (03/22/2017 12:22:46 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: Microvix.POS.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.Data.SqlClient.SqlException Stack: at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.DispatcherOperation.InvokeImpl() at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) at System.Windows.Threading.DispatcherOperation.Invoke() at System.Windows.Threading.Dispatcher.ProcessQueue() at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.Run() at System.Windows.Application.RunDispatcher(System.Object) at System.Windows.Application.RunInternal(System.Windows.Window) at System.Windows.Application.Run(System.Windows.Window) at Microvix.POS_.App.Main() Erros de Sistema: ============= Error: (03/29/2017 10:21:18 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Falha ao carregar o(s) seguinte(s) driver(s) de início do sistema ou de inicialização: Bhbase Bnbase Bndef Bprotect Error: (03/29/2017 10:19:42 AM) (Source: Parvdm) (EventID: 2) (User: ) Description: Não foi possível obter o ponteiro de objeto de dispositivo para o objeto porta. Error: (03/29/2017 10:19:33 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Advanced SystemCare Service 8 devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (03/28/2017 11:20:39 AM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk0\DR0, possui um bloco defeituoso. Error: (03/28/2017 11:20:36 AM) (Source: Disk) (EventID: 7) (User: ) Description: O dispositivo, \Device\Harddisk0\DR0, possui um bloco defeituoso. Error: (03/28/2017 10:11:15 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Falha ao carregar o(s) seguinte(s) driver(s) de início do sistema ou de inicialização: Bhbase Bnbase Bndef Bprotect Error: (03/28/2017 10:11:07 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Serviço TeamViewer 9 suspenso ao iniciar. Error: (03/28/2017 10:09:10 AM) (Source: Parvdm) (EventID: 2) (User: ) Description: Não foi possível obter o ponteiro de objeto de dispositivo para o objeto porta. Error: (03/28/2017 10:09:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Advanced SystemCare Service 8 devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (03/28/2017 10:09:03 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: O desligamento anterior do sistema em 21:53:21 às ‎27/‎03/‎2017 não era esperado. CodeIntegrity: =================================== Date: 2015-01-23 23:07:09.578 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 23:07:09.551 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 22:41:14.026 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 22:41:13.985 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 21:06:29.057 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 21:06:29.010 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 18:30:27.187 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-23 18:30:27.142 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\GbPlugin\gbpinj.dll because the set of per-page image hashes could not be found on the system. ==================== Informações da Memória =========================== Processador: AMD C-60 APU with Radeon(tm) HD Graphics Percentagem de memória em uso: 74% RAM física total: 1645.7 MB RAM física disponível: 415.6 MB Virtual Total: 3291.41 MB Virtual disponível: 1134.45 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:372.51 GB) (Free:313.72 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 372.6 GB) (Disk ID: 40C017E0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=372.5 GB) - (Type=07 NTFS) ==================== Fim de Addition.txt ============================