cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame Adicional Farbar Recovery Scan Tool (x64) Versão: 20.06.2018
Executado por MIG (22-06-2018 17:39:00)
Executando a partir de C:\Users\MIG\Desktop
Windows 7 Professional Service Pack 1 (X64) (2018-02-07 06:23:15)
Modo da Inicialização: Normal
==========================================================


==================== Contas: =============================

Administrador (S-1-5-21-3914178736-1143295093-110231420-500 - Administrator - Disabled)
Convidado (S-1-5-21-3914178736-1143295093-110231420-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3914178736-1143295093-110231420-1002 - Limited - Enabled)
MIG (S-1-5-21-3914178736-1143295093-110231420-1000 - Administrator - Enabled) => C:\Users\MIG

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: Kaspersky Anti-Virus (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98}
AS: Kaspersky Anti-Virus (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

360 Browser (HKU\S-1-5-21-3914178736-1143295093-110231420-1000\...\360Browser) (Version: 7.5.2.110 - 360 Security Center)
Adobe Acrobat Reader DC - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AC0F074E4100}) (Version: 18.011.20040 - Adobe Systems Incorporated)
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.12.36 - Adobe Systems Incorporated)
AssistentePimacoV2_0_0 (HKLM-x32\...\AssistentePimacoV2_0_0) (Version: 2.0.0.0 - Druid Internet Systems)
Brackets (HKLM-x32\...\{73C9B88C-61DF-4DC1-9F38-8FBB2AF45816}) (Version: 1.12.1 - brackets.io)
Cliqz 1.20.2 (x64 en-US) (HKLM\...\Cliqz 1.20.2 (x64 en-US)) (Version: 1.20.2 - Cliqz GmbH)
Cliqz Maintenance Service (HKLM\...\CliqzMaintenanceService) (Version: 1.19.0 - Cliqz GmbH)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.50.4.0 - Conexant)
Custom UI Editor for Microsoft Office (HKLM-x32\...\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}) (Version: 3.14.1592 - Microsoft Corporation)
Dell SupportAssist (HKLM\...\{122666A9-2995-4E47-A75E-6423A827B7AF}) (Version: 2.2.0.253 - Dell Inc.)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS)
Folha de Pagamento HJ (HKLM-x32\...\ST5UNST #1) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.87 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
HD Tune Pro 5.60 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
HDD Regenerator (HKLM-x32\...\{2445981B-A23B-4A0E-AD15-3D391BDAEC3E}) (Version: 1.71.0012 - Abstradrome)
Inno Setup versão 5.5.4 (HKLM-x32\...\Inno Setup 5_is1) (Version: 5.5.4 - jrsoftware.org)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation)
Kaspersky Anti-Virus (HKLM-x32\...\{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden
Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab)
Kaspersky Secure Connection (HKLM-x32\...\{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden
Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab)
Katalon Recorder Extension For IE (HKLM-x32\...\{F031A489-E8E8-48B0-9A38-A5651560632C}) (Version: 1.0.0 - KMS)
Microsoft .NET Framework 4.7.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02558 - Microsoft Corporation)
Microsoft .NET Framework 4.7.1 (Português (Brasil)) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1046) (Version: 4.7.02558 - Microsoft Corporation)
Microsoft Office 365 - pt-br (HKLM\...\O365HomePremRetail - pt-br) (Version: 16.0.9330.2124 - Microsoft Corporation)
Microsoft Office Access database engine 2007 (English) (HKLM-x32\...\{90120000-00D1-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1031 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3914178736-1143295093-110231420-1000\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.1.3 (HKLM-x32\...\{DE46417A-9E9E-4BCD-BBDD-DA21943193BB}_is1) (Version: 1.1.3 - )
Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.5.4 - Motorola Mobility)
Motorola Device Software Update (HKLM-x32\...\{894AB83D-A9AF-4E54-BFF3-A7262A0A6C13}) (Version: 13.09.3001 - Motorola Mobility) Hidden
Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{27986EDD-C9EC-4B52-B92F-06D073F0AA52}) (Version: 6.4.0 - Motorola Mobility LLC)
Mozilla Firefox 60.0.2 (x64 pt-BR) (HKLM\...\Mozilla Firefox 60.0.2 (x64 pt-BR)) (Version: 60.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0.1 - Mozilla)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MySQL Connector/ODBC 3.51 (HKLM\...\{216B40EF-9DFE-4207-A7C1-0DBE818ACE82}) (Version: 3.51.30 - Oracle Corporation)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.5.4 - Notepad++ Team)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9330.2124 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2124 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2124 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0416-0000-0000000FF1CE}) (Version: 16.0.9330.2124 - Microsoft Corporation) Hidden
Rafotech Mustang (HKLM-x32\...\Rafotech Mustang) (Version: 2.56.87.18 - RAFO TECHNOLOGY INC)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.38.113.2011 - Realtek)
Samsung ML-1865W Series (HKLM-x32\...\Samsung ML-1865W Series) (Version: - Samsung Electronics Co., Ltd.)
Selenium Basic (HKU\S-1-5-21-3914178736-1143295093-110231420-1000\...\{0277FC34-FD1B-4616-BB19-1FDB7381B291}_is1) (Version: 2.0.9.0 - Florent BREHERET)
Sigef v.3.0.5e (HKLM-x32\...\{C0A53F4B-109B-4D93-BC8E-6A30FAAA03C6}_is1) (Version: 3.0.5 - xCASE Informática e Automação)
Software Controle de Armas e Armamentos (HKLM-x32\...\Software Controle de Armas e Armamentos CADARM_is1) (Version: 7.9.9 - )
Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.1548 - TeamViewer)
ToolLicensingService (HKLM-x32\...\{BEB960EF-59F8-4E86-B760-DA469C7FBE79}) (Version: 11.9.1.0 - Cummins Inc.)
UR (HKU\S-1-5-21-3914178736-1143295093-110231420-1000\...\URBrowser) (Version: 61.1.3163.24 - Adaptive Bee)
VMware Workstation (HKLM\...\{0D94F75A-0EA6-4951-B3AF-B145FA9E05C6}) (Version: 9.0.2 - VMware, Inc.) Hidden
VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 9.0.2 - VMware, Inc)
VSO ConvertXToDVD 7 (HKLM-x32\...\{A021D003-6933-4EA4-B582-F1D0C3E52409}_is1) (Version: 7.0.0.59 - VSO Software)
Windows API Viewer for MS Excel x64 (HKLM\...\Windows API Viewer for MS Excel x64) (Version: - )
WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
XAMPP (HKLM-x32\...\xampp) (Version: 7.2.0-0 - Bitnami)
XCell Compiler 2.4.3.11 (HKLM-x32\...\XCell Compiler) (Version: 2.4.3.11 - DoneEx)

==================== Exame Personalizado CLSID (Whitelisted): ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2017-12-31] ()
ContextMenuHandlers1: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\ShellEx.dll [2018-05-25] (AO Kaspersky Lab)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers2: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\ShellEx.dll [2018-05-25] (AO Kaspersky Lab)
ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2013-02-26] (VMware, Inc.)
ContextMenuHandlers4: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\ShellEx.dll [2018-05-25] (AO Kaspersky Lab)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2015-06-01] (Intel Corporation)
ContextMenuHandlers6: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\x64\ShellEx.dll [2018-05-25] (AO Kaspersky Lab)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)

==================== Tarefas Agendadas (Whitelisted) =============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {0401E4DC-97A1-4D32-A822-715BC15F42F5} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] ()
Task: {09A1CC23-ED26-48B9-A12A-BD42A8087687} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-06-16] (Microsoft Corporation)
Task: {1FEA3792-3135-49EA-89B7-5A31C3DDFAEF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)
Task: {3BC26DB4-CE20-4BF2-9832-A4D775B77ACD} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-06-16] (Microsoft Corporation)
Task: {40797BC0-C210-4628-AC54-E328155140CA} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [2018-05-11] (Dell Inc.)
Task: {5E1A2180-C8B2-4D01-8A9F-2295EE635C47} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-06-12] (Microsoft Corporation)
Task: {7B45778A-2FBB-4D07-B898-CB881CA97CD7} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2014-10-30] ()
Task: {93D2F89B-261A-4701-9724-A8C32955AE6D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-06-12] (Microsoft Corporation)
Task: {A0798C3F-21A3-4FE5-935A-13DEF5F50DBF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-07] (Google Inc.)
Task: {A418E23E-A71F-4C16-AEDB-EA3BDFF48D0C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-06-16] (Microsoft Corporation)
Task: {D3F3655A-1DCE-4D2E-99E3-0BBF3A9252FD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-07] (Google Inc.)
Task: {DBBDD508-CE27-44EF-A1A6-32B0A4FF7E28} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe [2018-06-16] (Microsoft Corporation)
Task: {E44A3690-8890-45AA-8F85-281BD6A515C3} - System32\Tasks\MustangBrowserTaskCore => C:\Program Files (x86)\Rafotech\Mustang\Update\MustangUpdate.exe [2017-03-01] (Rafotech)
Task: {E7F293AB-535D-4CE1-932C-E64598869815} - System32\Tasks\MustangBrowserTaskUpdate => C:\Program Files (x86)\Rafotech\Mustang\Update\MustangUpdate.exe [2017-03-01] (Rafotech)

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)


==================== Atalhos & WMI ========================

(As entradas podem ser listadas para serem restauradas ou removidas.)


Shortcut: C:\Users\MIG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Selenium Basic\Start Chrome.lnk -> C:\Program Files\SeleniumBasic\Scripts\StartChrome.vbs ()

ShortcutWithArgument: C:\Users\MIG\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome\vGet Cast (DLNA Controller).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=ekdjofnchpbfmnfbedalmbdlhbabiapi

==================== Módulos Carregados (Whitelisted) ==============

2011-06-17 06:49 - 2011-06-17 06:49 - 000034304 _____ () C:\Windows\System32\ssp8ml6.dll
2013-02-26 01:54 - 2013-02-26 01:54 - 013242960 _____ () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
2018-02-07 03:30 - 2015-06-01 20:00 - 000102912 _____ () C:\Windows\System32\IccLibDll_x64.dll
2018-05-25 08:58 - 2018-05-25 08:58 - 000836968 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 18.0.0\kpcengine.2.3.dll
2013-02-26 02:28 - 2013-02-26 02:28 - 001260624 _____ () C:\Program Files (x86)\VMware\VMware Workstation\libxml2.dll

==================== Alternate Data Streams (Whitelisted) =========

(Se uma entrada for incluída na fixlist, somente o ADS será removido.)

AlternateDataStreams: C:\ProgramData\TEMP:1AAB2E68 [183]
AlternateDataStreams: C:\Users\Todos os Usuários\TEMP:1AAB2E68 [183]

==================== Modo de Segurança (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)


==================== Associação (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.)


==================== Internet Explorer confiável/restrito ===============

(Se uma entrada for incluída na fixlist, será removida do Registro.)

IE trusted site: HKU\.DEFAULT\...\dell.com -> dell.com

==================== Hosts Conteúdo: ===============================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2009-07-13 23:34 - 2018-06-17 17:23 - 000000027 _____ C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Outras Áreas ============================

(Atualmente não há nenhuma correção automática para esta seção.)

HKU\S-1-5-21-3914178736-1143295093-110231420-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\MIG\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 187.1.56.50 - 187.1.56.52
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Firewall do Windows está habilitado.

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: CliqzMaintenance => 3
MSCONFIG\Services: DDVCollectorSvcApi => 2
MSCONFIG\Services: DDVDataCollector => 2
MSCONFIG\Services: DDVRulesProcessor => 2
MSCONFIG\Services: Dell Hardware Support => 2
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: MustangU => 2
MSCONFIG\Services: PST Service => 2
MSCONFIG\Services: SupportAssistAgent => 2
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\startupfolder: C:^Users^MIG^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Enviar para o OneNote.lnk => C:\Windows\pss\Enviar para o OneNote.lnk.Startup
MSCONFIG\startupreg: abee_URBrowser => "C:\Users\MIG\AppData\Local\URBrowser\Application\URBrowser.exe" --location=0
MSCONFIG\startupreg: cAudioFilterAgent => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
MSCONFIG\startupreg: OneDrive => "C:\Users\MIG\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
MSCONFIG\startupreg: Samsung PanelMgr => C:\Windows\Samsung\PanelMgr\SSMMgr.exe /autorun
MSCONFIG\startupreg: SmartAudio => C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t

==================== Regras do Firewall (Whitelisted) ===============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{36660709-B010-4B60-92AD-9F8B18A1DCEF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{A0FBAD03-9B48-4FAC-B7B1-76BCBFAED302}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{7826D024-4B1E-4D7B-A48D-9E1BAA71D85E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{63908B26-161A-4820-8EF2-5F667948E437}] => (Allow) C:\Program Files (x86)\Rafotech\Mustang\Update\MustangUpdate.exe
FirewallRules: [{0BB055B4-664A-4C3B-9567-5A3F0B83C10C}] => (Allow) C:\Program Files (x86)\Rafotech\Mustang\Application\mustang.exe
FirewallRules: [{A6B353AA-65F3-4DCE-BC13-DEA4CC2292C7}] => (Allow) C:\Users\MIG\AppData\Local\URBrowser\Application\urbrowser.exe
FirewallRules: [TCP Query User{16AAFE1E-3604-4175-8D71-E1D7DA7BF7AD}C:\users\mig\documents\acervo - excel\internet\katalon_studio_windows_64-5.3.0\katalon.exe] => (Allow) C:\users\mig\documents\acervo - excel\internet\katalon_studio_windows_64-5.3.0\katalon.exe
FirewallRules: [UDP Query User{963532D3-D9E0-48E0-93E9-5122277CE82B}C:\users\mig\documents\acervo - excel\internet\katalon_studio_windows_64-5.3.0\katalon.exe] => (Allow) C:\users\mig\documents\acervo - excel\internet\katalon_studio_windows_64-5.3.0\katalon.exe
FirewallRules: [TCP Query User{CDAD2758-75A1-4A90-84E3-47A1217D2DF8}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{E32534CB-76F9-4EA3-B13E-CE8E04E9BA81}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [{264A1598-D011-4C26-B4DF-5529E3C9B193}] => (Allow) C:\Program Files\Cliqz\cliqz.exe
FirewallRules: [{D9E32E2A-A03C-4368-B937-313F09EA3ACC}] => (Allow) C:\Program Files\Cliqz\cliqz.exe
FirewallRules: [{5C43C6FE-61CB-40BD-8890-E5C074B98226}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{772CA043-6FD9-4440-9778-4F9246B285D3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{9E2F7876-E6F7-4738-9669-97DC0DB8B480}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{1044E473-CF4B-4B9F-83D8-755B13A00DC7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [TCP Query User{088C7CD6-9BF7-4286-A945-87F951D1F2A2}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{B1F55630-9595-43ED-9E63-7CF0A698B041}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{7C81FB20-F2C8-489A-AAA4-11690930A437}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{3750C053-A90E-4165-8FC2-3D9537D78925}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe
FirewallRules: [{2096103C-EBE5-4883-B39B-6729FD1C31E0}] => (Allow) C:\Users\MIG\AppData\Local\URBrowser\Application\urbrowser.exe
FirewallRules: [TCP Query User{3F19D945-D26A-492C-B1EA-E3AE40DB7F77}C:\users\mig\appdata\local\temp\rar$exa46512.9251\stat-ease design expert v11.0.8 x64\crack\statease-rlm-x64\rlm.exe] => (Allow) C:\users\mig\appdata\local\temp\rar$exa46512.9251\stat-ease design expert v11.0.8 x64\crack\statease-rlm-x64\rlm.exe
FirewallRules: [UDP Query User{5B57ECA7-15CC-4419-8374-26C2013094D1}C:\users\mig\appdata\local\temp\rar$exa46512.9251\stat-ease design expert v11.0.8 x64\crack\statease-rlm-x64\rlm.exe] => (Allow) C:\users\mig\appdata\local\temp\rar$exa46512.9251\stat-ease design expert v11.0.8 x64\crack\statease-rlm-x64\rlm.exe
FirewallRules: [{FDC2FA0C-2983-46BD-BC92-574AFDE2C1F8}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{1389BAF4-66BB-4169-8D08-0AE46A2DF26B}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{F81FDAE1-E005-49A8-BF03-E10A23398D66}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{F047900A-4B7B-4317-AA6B-B7F9DC6275D2}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{0FCF98D8-F52F-420F-9792-F72C2968F919}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe

==================== Pontos de Restauração =========================


==================== Dispositivos Apresentando Falhas No Gerenciador =============


==================== Erros no Log de eventos: =========================

Erros em Aplicativos:
==================
Error: (06/22/2018 05:29:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (06/22/2018 05:01:31 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (06/22/2018 01:19:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa firefox.exe versão 60.0.2.6730 parou de interagir com o Windows e foi fechado. Para ver se há mais informações disponíveis sobre o problema, verifique o histórico de problemas no painel de controle da Central de Ações.

ID de Processo: a78

Hora de Início: 01d40a41a07a24e6

Hora de Término: 15

Caminho do Aplicativo: C:\Program Files\Mozilla Firefox\firefox.exe

Id do Relatório:

Error: (06/22/2018 12:56:30 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (06/22/2018 09:57:24 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (06/22/2018 01:49:41 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (06/21/2018 05:01:26 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (06/21/2018 12:40:41 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Falha na geração de contexto de ativação para "C:\Users\MIG\Downloads\URBrowser(1).exe".Erro no arquivo de manifesto ou de diretiva "", na linha.
Uma versão de componente exigida pelo aplicativo está em conflito com outra versão de componente já ativa.
Os componentes conflitantes são:.
Componente 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest.
Componente 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest.


Erros de Sistema:
=============
Error: (06/22/2018 05:25:05 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: O servidor {995C996E-D918-4A8C-A302-45719A6F4EA7} não se registrou com o DCOM dentro do tempo limite requerido.

Error: (06/22/2018 02:49:05 PM) (Source: volsnap) (EventID: 36) (User: )
Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário.

Error: (06/22/2018 12:57:45 PM) (Source: Schannel) (EventID: 4119) (User: AUTORIDADE NT)
Description: O seguinte alerta fatal foi recebido: 70.

Error: (06/22/2018 12:54:54 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: O desligamento anterior do sistema em 12:53:43 às ‎22/‎06/‎2018 não era esperado.

Error: (06/22/2018 11:38:01 AM) (Source: Disk) (EventID: 11) (User: )
Description: O driver detectou um erro de controlador em \Device\Harddisk2\DR8.

Error: (06/22/2018 11:38:01 AM) (Source: Disk) (EventID: 11) (User: )
Description: O driver detectou um erro de controlador em \Device\Harddisk2\DR8.

Error: (06/22/2018 11:38:00 AM) (Source: Disk) (EventID: 11) (User: )
Description: O driver detectou um erro de controlador em \Device\Harddisk2\DR8.

Error: (06/22/2018 11:38:00 AM) (Source: Disk) (EventID: 11) (User: )
Description: O driver detectou um erro de controlador em \Device\Harddisk2\DR8.


Windows Defender:
===================================
Date: 2018-02-11 13:29:08.646
Description:
Digitalização de Windows Defender interrompida antes da conclusão.
ID da Digitalização:{B39F4C3D-5F00-4D48-BD4B-6BF0DEA3CE4F}
Tipo da Digitalização:Anti-spyware
Parâmetros da Digitalização:Verificação Rápida
Usuário:AUTORIDADE NT\SERVIÇO DE REDE

CodeIntegrity:
===================================

Date: 2018-06-17 17:23:27.590
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-06-17 17:23:27.558
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-06-17 17:23:27.527
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-06-17 17:23:27.496
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-27 02:21:18.641
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2018-05-27 02:21:18.581
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Informações da Memória ===========================

Processador: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz
Percentagem de memória em uso: 36%
RAM física total: 10152.63 MB
RAM física disponível: 6471.55 MB
Virtual Total: 20303.43 MB
Virtual disponível: 16461.81 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:1397.17 GB) (Free:63.17 GB) NTFS
Drive d: () (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS
Drive f: (HD NEGUIM) (Fixed) (Total:931.51 GB) (Free:209.45 GB) NTFS

\\?\Volume{8e0c11a0-0bce-11e8-ba1a-806e6f6e6963}\ (Reservado pelo Sistema) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Tabela de Partições ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1397.3 GB) (Disk ID: 3BD8E229)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1397.2 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 3445D21D)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Fim de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité