Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 18-07-2017 Executado por Denis (22-07-2017 19:02:42) Executando a partir de C:\Users\Denis\Downloads Windows 7 Home Basic Service Pack 1 (X64) (2012-11-19 16:42:40) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= Administrador (S-1-5-21-2619486037-3001202520-2210169553-500 - Administrator - Disabled) Convidado (S-1-5-21-2619486037-3001202520-2210169553-501 - Limited - Enabled) Denis (S-1-5-21-2619486037-3001202520-2210169553-1000 - Administrator - Enabled) => C:\Users\Denis ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) 64 Bit HP CIO Components Installer (HKLM\...\{C788B026-20BD-4E96-B698-533F1D6C5013}) (Version: 7.2.4 - Hewlett-Packard) Hidden Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.162 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated) Adobe Reader X (10.1.16) - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AA1000000001}) (Version: 10.1.16 - Adobe Systems Incorporated) Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.4.0 - IObit) Advertising Center (HKLM-x32\...\{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}) (Version: 0.0.0.1 - Nero AG) Hidden Arquivo do WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) ASM104xV1.2 (HKLM-x32\...\{4746B4CE-6A62-4195-8B9B-0C487448F200}) (Version: 1.00.0000 - ASMedia Technology) BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden D110 (HKLM-x32\...\{91D3AD6F-09CD-4695-9FA3-8FB15429BE97}) (Version: 140.0.283.000 - Hewlett-Packard) Hidden Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.77.000 - Hewlett-Packard) Hidden DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden DolbyFiles (HKLM-x32\...\{56BE5CC9-95E6-4128-ABEA-968414CA9C80}) (Version: 2.0 - Nero AG) Hidden Driver 1.1 (HKLM\...\{BA56CD60-1D9F-4BE6-AC2F-B7C4A5437C35}) (Version: 1.1 - OEM) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.211.000 - Hewlett-Packard) Hidden Guardião - Itaú 30 horas (HKLM-x32\...\{70e5f739-1d2a-40ae-bbc9-4b3e6af4c831}_is1) (Version: 3.10.0.1 - ) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet 1000 J110 series Ajuda (HKLM-x32\...\{DDDFCC77-7F9C-45E9-B38E-721BA599BA0C}) (Version: 140.0.65.65 - Hewlett Packard) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photosmart D110 All-In-One Driver Software 14.0 Rel. 7 (HKLM\...\{DBC1DE57-B55A-4D57-9769-1DB9BE506AF7}) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HPAppStudio (HKLM-x32\...\{565E7B0E-B76B-4EAD-9753-F1E72A5CF12E}) (Version: 140.0.95.000 - Hewlett-Packard) Hidden HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6289.0 - IDT) ImagXpress (HKLM-x32\...\{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}) (Version: 7.0.74.0 - Nero AG) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3223 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.0.0.1046 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) Java 8 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218065F0}) (Version: 8.0.650.17 - Oracle Corporation) Java 8 Update 74 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218074F0}) (Version: 8.0.740.2 - Oracle Corporation) JMicron Ethernet Adapter NDIS Driver (HKLM-x32\...\{96DCEE2F-98EE-4F80-8C0F-7C04D1FB9D7F}) (Version: 6.0.17.1 - JMicron Technology Corp.) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.45.0 - JMicron Technology Corp.) K-Lite Mega Codec Pack 12.3.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.3.5 - KLCP) MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden Menu Templates - Starter Kit (HKLM-x32\...\{C99C89A3-119A-45E6-B26E-DD5643CAA0C5}) (Version: 9.0.4.0 - Nero AG) Hidden Metric Collection SDK (HKLM-x32\...\{DDAA788F-52E6-44EA-ADB8-92837B11BF26}) (Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Português do Brasil) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1046) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Movie Templates - Starter Kit (HKLM-x32\...\{BCD82AB5-670D-4242-90FA-1F97103C16CD}) (Version: 9.0.4.0 - Nero AG) Hidden MPC-HC 1.7.9 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.9 - MPC-HC Team) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 9 (HKLM-x32\...\{a9d2d190-c72a-45fe-9fb8-707aa304c04e}) (Version: - Nero AG) Network64 (HKLM\...\{48C0866E-57EB-444C-8371-8E4321066BC3}) (Version: 140.0.215.000 - Hewlett-Packard) Hidden Pacote de Idiomas do Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - Português (Brasil) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PTB) (Version: 10.0.50903 - Microsoft Corporation) PS_AIO_07_D110_SW_Min (HKLM-x32\...\{42BBA4CC-EFB6-4653-A2CC-F305D4B399C3}) (Version: 140.0.142.000 - Hewlett-Packard) Hidden QuickTransfer (HKLM-x32\...\{E517094C-06B6-419F-8FFD-EF4F57972130}) (Version: 140.0.98.000 - Hewlett-Packard) Hidden Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.80.000 - Hewlett-Packard) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Software básico do dispositivo HP Deskjet 1000 J110 series (HKLM\...\{5CD4705D-8EED-4C6B-9B52-6A1FFC39332B}) (Version: 22.50.231.0 - Hewlett-Packard Co.) SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.214.000 - Hewlett-Packard) Hidden Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.256.000 - Hewlett-Packard) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.8.0 - Synaptics Incorporated) Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden VirtualDJ PRO Full (HKLM-x32\...\{C515E2A3-4878-4C85-A519-52630C7AB08B}) (Version: 7.3 - Atomix Productions) Warsaw 1.18.1.2 64 bits (HKLM\...\{20E60725-16C8-4FB9-8BC2-AF92C5F8D06D}_is1) (Version: 1.18.1.2 - GAS Tecnologia) WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.212.017 - Hewlett-Packard) Hidden ==================== Exame Personalizado CLSID (Whitelisted): ========================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000_Classes\CLSID\{0783EB25-59F8-4F02-B6B0-F1D4349F0013}\InprocServer32 -> C:\Users\Denis\AppData\Local\GAS Tecnologia\GBBD\npsf_uni_64.dll (GAS Tecnologia) CustomCLSID: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000_Classes\CLSID\{0783EB25-59F8-4F02-B6B1-F1D4349F0013}\InprocServer32 -> C:\Users\Denis\AppData\Local\GAS Tecnologia\GBBD\npsf_uni_64.dll (GAS Tecnologia) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Nenhum Arquivo ContextMenuHandlers01: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers01: [Cover Designer] -> {73FCA462-9BD5-4065-A73F-A8E5F6904EF7} => -> Nenhum Arquivo ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2006-12-11] () ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Nenhum Arquivo ContextMenuHandlers02: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers04: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers04: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2006-12-11] () ContextMenuHandlers04: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Nenhum Arquivo ContextMenuHandlers05: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [1999-12-31] (Intel Corporation) ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2006-12-11] () ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Nenhum Arquivo ==================== Tarefas Agendadas (Whitelisted) ============= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {03D0128C-3383-4238-A0F4-A87417AEE353} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-12] (Google Inc.) Task: {0ECC64E4-C020-45FD-8485-6C2A18D422D1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-12] (Google Inc.) Task: {24ECCE6A-3A49-4EFC-8E34-873CC8228EA8} - System32\Tasks\{3CB1B545-328C-49A0-B995-3AEA0F8F229F} => C:\Windows\system32\pcalua.exe -a "F:\Intel Control Center\SetupICC.exe" -d "F:\Intel Control Center" Task: {368A0420-D99B-4388-A67F-FB2754CF9DA3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-24] (Adobe Systems Incorporated) Task: {4315CD55-A8D7-4B61-A84E-AEA01FC0E392} - System32\Tasks\{D1F35150-2557-49BA-813C-89BF0431CC0C} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\AVAST Software\Avast\aswRunDll.exe" -c "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup Task: {55CEE7A8-C396-42CF-B1B5-AD55B1626001} - \060184C3-9766-46a0-B258-F4518A0B2633 -> Nenhum Arquivo <==== ATENÇÃO Task: {640F3483-2452-4680-B830-DF1D8CE4DDE0} - System32\Tasks\{D687BC01-8B25-4AB0-B1CA-D197CD6752F9} => C:\Windows\system32\pcalua.exe -a "F:\Programas\Net Framework 3.5.exe" -d F:\Programas Task: {9BC2BDB9-4F1D-491E-9128-0DA5A8986B6F} - System32\Tasks\avastBCLRestart_chrome.exe => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Task: {B521E860-F2D2-4384-8716-2CF2C2FB2738} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe Task: {B591A799-09BC-4096-B3E9-97411D103F73} - System32\Tasks\avastBCLRestartS-1-5-21-2619486037-3001202520-2210169553-1000 => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Task: {CD620EE2-E6C8-4DE8-8358-47E21EE61E3A} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-12] (AVAST Software) Task: {D4293AB3-3478-4A81-B5DD-E49535C3D520} - System32\Tasks\ASC10_SkipUac_Denis => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2017-05-31] (IObit) Task: {DE0A5628-5C96-4700-B1D4-F517961CEB24} - System32\Tasks\ASC10_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2017-03-22] (IObit) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Atalhos & WMI ======================== (As entradas podem ser listadas para serem restauradas ou removidas.) Shortcut: C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki Shortcut: C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com ShortcutWithArgument: C:\Users\Denis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> www.123rede.com?oem=mbtkv5&uid=41UGC1M0T_MK5059GSXP&tm=1436476147 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> www.123rede.com?oem=sv1&uid=41UGC1M0T_MK5059GSXP&tm=1491504670 ==================== Módulos Carregados (Whitelisted) ============== 2017-07-18 23:50 - 2017-07-18 23:50 - 03302400 _____ () C:\ProgramData\Windows\System32\Mswapi64.dll 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2015-07-09 18:09 - 2015-06-12 07:58 - 00173848 _____ () C:\Users\Denis\AppData\Roaming\NetService\netservice.exe 2015-12-27 20:05 - 2015-12-16 06:21 - 04845408 _____ () C:\Users\Denis\AppData\Roaming\WinNetSvc\WinNetSvc.exe 2016-03-20 21:05 - 2016-07-16 19:35 - 05098760 _____ () C:\Users\Denis\AppData\Roaming\WMPNetworkAcSvc\WMPNetworkAcSvc.exe 2017-06-14 14:39 - 2017-06-14 14:39 - 00208384 _____ () C:\ProgramData\Microsoft\Network\Dsq\browser\syshostctl.exe 2017-06-26 21:02 - 2017-06-23 00:21 - 03807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll 2017-06-26 21:02 - 2017-06-23 00:21 - 00100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll 2017-07-22 18:00 - 2016-08-18 18:43 - 00442144 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl 2017-07-22 18:00 - 2016-08-18 18:43 - 00210720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl 2017-07-22 18:00 - 2016-08-18 18:43 - 00059680 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl 2017-07-22 18:00 - 2016-11-01 10:11 - 00078624 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\GetProcessDLL.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2015-12-27 20:05 - 2015-11-28 06:45 - 00083456 _____ () C:\Users\Denis\AppData\Roaming\WinNetSvc\Interface.dll 2017-07-18 23:50 - 2017-07-18 23:50 - 02766336 _____ () C:\ProgramData\Windows\System32\Mswapi32.dll 2016-03-20 21:05 - 2015-11-28 06:45 - 00083456 _____ () C:\Users\Denis\AppData\Roaming\WMPNetworkAcSvc\Interface.dll 2017-07-22 18:00 - 2015-12-28 13:50 - 00899872 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\webres.dll 2017-07-22 18:00 - 2017-05-17 13:45 - 00631584 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\ProductStatistics.dll 2017-05-28 18:52 - 2017-05-28 18:52 - 00169984 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\f9a5bf0602eb209ec858fc26fbacc4f4\IsdiInterop.ni.dll 2012-11-19 16:52 - 2010-09-13 17:28 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (Whitelisted) ========= (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\Program Files (x86)\GbPlugin:IncompleteStartProcessProtection.cnt [10] AlternateDataStreams: C:\Program Files (x86)\GbPlugin:u6eBQrM0Z2K3FKLVBMG8dY3IkKT2rqFO+Sf68h8fDg== [32] AlternateDataStreams: C:\Windows\System32:5C678A07_Cef.gbp [2] AlternateDataStreams: C:\Windows\System32:5C678A07_Uni.gbp [2] AlternateDataStreams: C:\Windows\system32\Drivers\gbpddfac64.sys:X5ZN8aGvT4 [1778] AlternateDataStreams: C:\Windows\system32\Drivers\wsddfac.sys:X5ZN8aGXs4 [2410] AlternateDataStreams: C:\ProgramData\GbPlugin:IncompleteStartGbprcm.cnt [10] AlternateDataStreams: C:\Users\Todos os Usuários\GbPlugin:IncompleteStartGbprcm.cnt [10] ==================== Modo de Segurança (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) ==================== Associação (Whitelisted) =============== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) ==================== Internet Explorer confiável/restrito =============== (Se uma entrada for incluída na fixlist, será removida do Registro.) IE trusted site: HKU\.DEFAULT\...\caixa.gov.br -> hxxps://imagem.caixa.gov.br IE trusted site: HKU\.DEFAULT\...\itau.com.br -> hxxps://bankline.itau.com.br IE trusted site: HKU\.DEFAULT\...\itaupersonnalite.com.br -> hxxp://www.itaupersonnalite.com.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\caixa.gov.br -> imagem.caixa.gov.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\caixa.gov.br -> hxxps://imagem.caixa.gov.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\google.com -> www.google.com IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\google.com.br -> www.google.com.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\itau.b.br -> www.itau.b.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\itau.com.br -> hxxps://bankline.itau.com.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\itau.com.br -> bankline.itau.com.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\itaupersonnalite.com.br -> hxxp://www.itaupersonnalite.com.br IE trusted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\itaupersonnalite.com.br -> www.itaupersonnalite.com.br IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\...\100sexlinks.com -> 100sexlinks.com Existem ainda 4788 sites a mais. ==================== Hosts Conteúdo: =============================== (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2009-07-13 23:34 - 2016-12-07 12:34 - 00000871 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Outras Áreas ============================ (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-2619486037-3001202520-2210169553-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Firewall do Windows está desabilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^OSD.lnk => C:\Windows\pss\OSD.lnk.CommonStartup ==================== Regras do Firewall (Whitelisted) =============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{E635E12B-1654-4AC3-AFB9-A5B5024E27BF}] => (Allow) C:\Program Files\HP\HP Deskjet 1000 J110 series\Bin\USBSetup.exe FirewallRules: [{FA81170E-1B6D-4544-BC6F-2850D51BFD7F}] => (Allow) C:\Program Files\HP\HP Deskjet 1000 J110 series\Bin\USBSetup.exe FirewallRules: [{B0C28B74-219E-4570-BEA4-199D352ED132}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{4C5C4E0C-0FD5-4F01-AAD6-0798C89C1C8A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{714EF139-DDAC-4D01-A64B-477B9D2C8D18}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{615789FB-1CDC-49A7-8B9C-40BAEABA14E4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{3DE13B0D-AFA5-4944-BAB3-9714AC8CC7E4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{15ED5ADF-0E62-464D-A9DD-8079496DF871}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{B29C3B14-647F-42B6-B6C2-DBCF87896985}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{E43C40FF-8A2C-4334-A583-EAE65CF222DB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{2EA01AFD-3844-4FB1-AD59-91EE16862A41}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{6FAF28B1-C3DB-4DD6-8490-697BF0EAC239}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{94098EE6-596C-4002-8E82-64FB907980D2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{2D89EA2D-ACE6-47BC-A16B-5019BD06D01A}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{324A0D66-BDED-412F-B9DC-61AE4C81C9B2}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [TCP Query User{9E5DC608-6627-4698-8696-3AFB22A3B5E8}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [UDP Query User{83D6907E-1D42-49B3-BC04-CC86DCCD83E7}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{C1D6060D-4582-450F-83C1-1D665336D8CA}] => (Allow) C:\Program Files\Diebold\Warsaw\core.exe FirewallRules: [{D8D89857-95F7-49A7-99CB-0B4D4725DCCC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{C882354C-CDB1-402E-91E1-317AE92B16D8}C:\programdata\microsoft\network\dsq\network\sysnetwk.exe] => (Block) C:\programdata\microsoft\network\dsq\network\sysnetwk.exe FirewallRules: [UDP Query User{D54187FA-B986-4DA3-B1B7-BCC8049A3AB4}C:\programdata\microsoft\network\dsq\network\sysnetwk.exe] => (Block) C:\programdata\microsoft\network\dsq\network\sysnetwk.exe FirewallRules: [{3CD7A48F-9ADF-4D38-A007-3F7ED0B24D9F}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{E0B2AAEF-C676-487C-8A00-07E902C2286A}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe ==================== Pontos de Restauração ========================= 10-10-2016 21:27:45 Windows Update 11-10-2016 00:20:28 Windows Update 05-12-2016 07:16:38 Windows Update 05-12-2016 18:22:35 Windows Update 06-12-2016 06:22:49 Windows Update 07-12-2016 02:00:20 Windows Update 13-12-2016 08:32:22 Windows Update 13-12-2016 17:34:45 Windows Update 19-12-2016 22:24:48 Windows Update 17-02-2017 10:03:01 Windows Update 06-04-2017 16:38:10 Windows Update 06-04-2017 18:30:33 Windows Update 21-04-2017 22:26:39 Windows Update 02-05-2017 10:42:08 Instalação de Pacote de Driver de Dispositivo: Diebold Network Monitor Serviço de Rede 02-05-2017 11:17:35 Windows Update 02-05-2017 18:33:36 Windows Update 06-05-2017 03:08:08 Windows Defender Checkpoint 15-05-2017 10:06:06 Windows Update 24-05-2017 18:28:18 Windows Update 24-05-2017 22:15:27 Windows Update 27-05-2017 18:12:51 Windows Update 28-05-2017 23:39:32 Windows Update 29-05-2017 22:49:38 Windows Update 31-05-2017 11:50:24 Windows Update 31-05-2017 21:30:25 Windows Update 03-06-2017 00:38:22 Windows Update 03-06-2017 19:36:45 Windows Update 04-06-2017 23:53:20 Windows Update 06-06-2017 03:00:59 Windows Update 06-06-2017 23:30:12 Windows Update 07-06-2017 17:08:19 Windows Update 07-06-2017 20:20:09 Windows Update 08-06-2017 03:00:31 Windows Update 08-06-2017 23:11:48 Windows Update 10-06-2017 03:01:05 Windows Update 10-06-2017 03:59:54 Windows Update 10-06-2017 10:17:52 Windows Update 15-06-2017 11:25:22 Windows Update 15-06-2017 17:20:24 Windows Update 18-06-2017 07:17:08 Windows Update 18-06-2017 23:10:30 Windows Update 19-06-2017 22:45:11 Windows Update 20-06-2017 16:52:14 Windows Update 21-06-2017 19:04:41 Windows Update 23-06-2017 20:43:48 Windows Update 26-06-2017 21:21:58 Windows Update 26-06-2017 23:03:46 Windows Update 29-06-2017 20:30:56 Windows Update 30-06-2017 03:00:33 Windows Update 30-06-2017 08:19:16 Windows Update 07-07-2017 20:51:12 Windows Update 10-07-2017 03:00:55 Windows Update 12-07-2017 07:19:51 Windows Update 12-07-2017 21:45:29 Windows Update 14-07-2017 23:24:06 Windows Update 15-07-2017 18:07:53 Windows Update 15-07-2017 19:30:57 Windows Update 16-07-2017 22:03:48 Windows Update 17-07-2017 12:55:46 Windows Update 17-07-2017 23:02:53 Windows Update 18-07-2017 22:58:01 Windows Update 20-07-2017 22:45:00 Windows Update 22-07-2017 08:43:50 Windows Update 22-07-2017 08:51:38 Windows Defender Checkpoint ==================== Dispositivos Apresentando Falhas No Gerenciador ============= Name: Bnbase Description: Bnbase Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bnbase Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Baidu NetDefense Description: Baidu NetDefense Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bndef Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Baidu Protect Description: Baidu Protect Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Bprotect Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Photosmart D110 series Description: Photosmart D110 series Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Adaptador de Túnel Teredo da Microsoft Description: Adaptador de Túnel Teredo da Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erros no Log de eventos: ========================= Erros em Aplicativos: ================== Error: (07/22/2017 06:49:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/22/2017 06:33:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/22/2017 05:37:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/22/2017 05:37:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome de aplicativo com falha: STacSV64.exe, versão: 1.0.6289.0, carimbo de hora: 0x4c1ad990 Nome do módulo de falhas: STacSV64.exe, versão: 1.0.6289.0, carimbo de hora: 0x4c1ad990 Código de exceção: 0xc0000005 Deslocamento com falha: 0x000000000001bdc4 Identificação do processo com falha: 0x170 Hora de início do aplicativo com falha: 0x01d3032a4bfee213 Caminho do aplicativo com falha: C:\Program Files\IDT\WDM\STacSV64.exe FCaminho do módulo de falhas: C:\Program Files\IDT\WDM\STacSV64.exe Identificação do Relatório: 934e2c66-6f1d-11e7-a01f-80ee7316646d Error: (07/22/2017 05:15:03 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/22/2017 05:14:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/22/2017 05:02:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/21/2017 08:36:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (07/21/2017 08:36:33 AM) (Source: Service1) (EventID: 0) (User: ) Description: Serviço não pode ser iniciado. O processo do serviço não pôde se conectar ao controlador do serviço Error: (07/19/2017 07:15:47 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Erros de Sistema: ============= Error: (07/22/2017 06:48:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (07/22/2017 06:48:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (07/22/2017 06:48:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (07/22/2017 06:48:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Gbpddreg svc devido ao seguinte erro: O sistema não pode encontrar o arquivo especificado. Error: (07/22/2017 06:48:33 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Falha ao carregar o(s) seguinte(s) driver(s) de início do sistema ou de inicialização: Bnbase Bndef Bprotect gbpddreg Error: (07/22/2017 06:45:27 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: O serviço Agente de Diretiva IPsec depende do serviço Mecanismo de Filtragem Básica, mas não foi possível iniciá-lo devido ao seguinte erro: Não foi possível iniciar o serviço ou grupo de dependência. Error: (07/22/2017 06:45:27 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: O serviço Mecanismo de Filtragem Básica depende do serviço Chamada de procedimento remoto (RPC), mas não foi possível iniciá-lo devido ao seguinte erro: Não foi possível iniciar o serviço ou grupo de dependência. Error: (07/22/2017 06:45:27 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: O serviço Chamada de procedimento remoto (RPC) depende do serviço Mapeador de Ponto de Extremidade RPC, mas não foi possível iniciá-lo devido ao seguinte erro: O serviço não foi iniciado. Error: (07/22/2017 06:45:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço Windows Search foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 30000 milissegundos: Reiniciar o serviço. Error: (07/22/2017 06:45:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço ABBYY FineReader 9.0 Sprint Licensing Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). CodeIntegrity: =================================== Date: 2016-09-25 10:03:24.082 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\PROGRA~2\GbPlugin\wsftprp64.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 10:03:23.981 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\GbPlugin\gbprcm64.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 10:02:25.809 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\wsddpp.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 10:02:12.237 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 10:02:11.956 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 09:53:54.093 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\PROGRA~2\GbPlugin\wsftprp64.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 09:53:53.997 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\GbPlugin\gbprcm64.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 09:53:09.766 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\wsddpp.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 09:52:57.270 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-25 09:52:57.223 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. ==================== Informações da Memória =========================== Processador: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz Percentagem de memória em uso: 43% RAM física total: 4006.77 MB RAM física disponível: 2283.11 MB Virtual Total: 8011.72 MB Virtual disponível: 6092.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:455.8 GB) (Free:61.88 GB) NTFS Drive d: (Recuperar) (Fixed) (Total:9.77 GB) (Free:3.48 GB) NTFS Drive e: (Branca de Neve) (CDROM) (Total:3.72 GB) (Free:0 GB) UDF ==================== MBR & Tabela de Partições ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 2F34C33E) Partition 1: (Not Active) - (Size=9.8 GB) - (Type=07 NTFS) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=455.8 GB) - (Type=07 NTFS) ==================== Fim de Addition.txt ============================