Resultado do exame Adicional Farbar Recovery Scan Tool (x86) Versão: 15-03-2017 Executado por Bruninho du pf (16-03-2017 18:38:30) Executando a partir de C:\Users\Bruninho du pf\Downloads Microsoft Windows 7 Ultimate Service Pack 1 (X86) (2017-03-16 21:06:39) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-4136867909-2142469912-1522429513-500 - Administrator - Disabled) Bruninho du pf (S-1-5-21-4136867909-2142469912-1522429513-1000 - Administrator - Enabled) => C:\Users\Bruninho du pf Convidado (S-1-5-21-4136867909-2142469912-1522429513-501 - Limited - Disabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Atualizações da NVIDIA 2.11.4.125 (Version: 2.11.4.125 - NVIDIA Corporation) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.28 - Piriform) Google Chrome (HKLM\...\Google Chrome) (Version: 57.0.2987.110 - Google Inc.) Google Update Helper (Version: 1.3.32.7 - Google Inc.) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) NVIDIA Driver de áudio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Driver de controle do 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA Driver de gráficos 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) NVIDIA Driver do 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation) NVIDIA Software do sistema PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) Pacote de Idiomas do Microsoft .NET Framework 4 Client Profile - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Client Profile PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Pacote de Idiomas do Microsoft .NET Framework 4 Extended - Português (Brasil) (HKLM\...\Microsoft .NET Framework 4 Extended PTB Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Painel de controle da NVIDIA 342.01 (Version: 342.01 - NVIDIA Corporation) Hidden SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.125 - NVIDIA Corporation) Hidden TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.1 - TeamSpeak Systems GmbH) ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {2C078F81-A652-4CD7-B72F-549885B155C6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-03-03] (Piriform Ltd) Task: {B6004884-8336-4983-B34A-6CD6CD2CC045} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-03-16] (Google Inc.) Task: {FF0018DE-DF49-4D33-A787-BD33D7E6A7D1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-03-16] (Google Inc.) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) ==================== Atalhos ============================= (As entradas podem ser listadas para serem restauradas ou removidas.) ==================== Módulos Carregados (Whitelisted) ============== 2017-03-16 18:20 - 2016-11-14 08:00 - 00123448 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00310720 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00900032 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 03037120 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00220608 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00018880 _____ () C:\Program Files\NVIDIA Corporation\Update Core\detoured.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 02122688 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 01608128 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 01502656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00167872 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00031680 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00749504 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2017-03-16 18:21 - 2016-11-14 09:35 - 00015808 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\icudt53.dll 2017-03-16 18:13 - 2017-03-16 00:21 - 02187096 _____ () C:\Program Files\Google\Chrome\Application\57.0.2987.110\libglesv2.dll 2017-03-16 18:13 - 2017-03-16 00:21 - 00086360 _____ () C:\Program Files\Google\Chrome\Application\57.0.2987.110\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-13 23:04 - 2009-06-10 18:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-4136867909-2142469912-1522429513-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Bruninho du pf\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{7C95CC05-94DF-4D6F-BA07-E2A128DD2041}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{4D33ACFA-1EA4-494E-BA6F-24D97E15C97A}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{53F7BF3D-5A48-46F0-9B06-210240FA9ECE}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{C95BA0EC-F868-4F0E-B4E8-A9E31E99368C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C0174116-5E3C-4433-A8D2-2B7B9C2818D6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{E7008850-3C4C-4748-BFBA-3A9C3DFEC997}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{F3252F20-6E5B-4FCD-B6FB-6895868D51E8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{735F814F-AA0C-467A-AE00-E9330813F528}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{65950975-06E0-46BF-9700-22C251963167}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe ==================== Pontos de Restauração ========================= 16-03-2017 18:18:54 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 16-03-2017 18:19:01 Windows Update 16-03-2017 18:19:54 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 16-03-2017 18:22:58 Windows Update 16-03-2017 18:34:36 Windows Update ==================== Dispositivos Apresentando Falhas No Gerenciador ============= ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (03/16/2017 06:25:25 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.IdentityModel.Selectors, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070005 Erros de Sistema: ============= Error: (03/16/2017 06:19:53 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: O servidor {E60687F7-01A1-40AA-86AC-DB1CBF673334} não se registrou com o DCOM dentro do tempo limite requerido. ==================== Informações da Memória =========================== Processador: Pentium(R) Dual-Core CPU E5800 @ 3.20GHz Percentagem de memória em uso: 51% RAM física total: 2047.24 MB RAM física disponível: 988.15 MB Virtual Total: 4094.48 MB Virtual disponível: 2786.74 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:243.6 GB) (Free:228.11 GB) NTFS ==>[drive com componentes de inicialização (obtido através de BCD)] Drive d: () (Fixed) (Total:221.62 GB) (Free:221.25 GB) NTFS Drive f: () (Removable) (Total:14.56 GB) (Free:2.04 GB) NTFS ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E4F1E4F1) Partition 1: (Active) - (Size=243.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) Partition 3: (Not Active) - (Size=221.6 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 14.6 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fim de Addition.txt ============================