OTL Extras logfile created on: 18-10-2015 19:55:26 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Hugo Lucas\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.18059) Locale: 00000816 | Country: Portugal | Language: PTG | Date Format: dd-MM-yyyy 5,91 Gb Total Physical Memory | 3,60 Gb Available Physical Memory | 60,91% Memory free 11,83 Gb Paging File | 9,51 Gb Available in Paging File | 80,44% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 574,58 Gb Total Space | 492,25 Gb Free Space | 85,67% Space Free | Partition Type: NTFS Computer Name: HL-PC | User Name: Hugo Lucas | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Windows\system32\rundll32.exe" "C:\Windows\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htafile [open] -- "%1" %* htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{020E49D6-4C3A-4E9E-B1D7-5F72ADE7CCE5}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{13B1F24D-E9FB-4DC9-A77D-1D298FA97850}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe | "{2EB23D82-B5B9-4FFE-8462-1B435A145EE9}" = lport=8298 | protocol=6 | dir=in | name=techsmith snagit | "{40BCB730-7248-4911-A014-68D4865373DB}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{AAC2E242-C976-4DD6-8248-A75EE89E8C08}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{BADA37C0-34D5-4A0F-9CCD-871037BDEF68}" = lport=1688 | protocol=6 | dir=in | name=kms emulator port | "{BC89BCBC-356B-4751-8E60-A15FF7E16B37}" = lport=47995 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{C7DB3659-D601-4F4F-A13E-0765BF8BF1EB}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe | "{DF83A48F-B2C0-4102-9245-10E4CAF996D0}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\outlook.exe | "{F131B954-C46B-4AB2-9102-212EC51A13BA}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0DC534A7-C96F-43E6-9021-58D210228295}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer_service.exe | "{19142796-64B4-431A-BEFE-F56BA4DE485F}" = protocol=6 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe | "{1CD5E076-D5BC-4A21-B3A6-DC865E4D19D1}" = protocol=6 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe | "{3287557B-74A2-4232-9D2B-7596408C1BC2}" = protocol=6 | dir=in | app=c:\program files\corel\coreldraw graphics suite x7\programs64\coreldrw.exe | "{364CC6F7-FDDC-464E-ACD6-49AC7C3B9AD0}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office15\ucmapi.exe | "{3F100FD7-6685-48FA-A795-4F393C7F548A}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer.exe | "{4574EF0E-F455-4196-A377-38DC92D75994}" = protocol=17 | dir=in | app=c:\users\hugo lucas\appdata\roaming\dropbox\bin\dropbox.exe | "{5A37D06F-1EFB-4021-8DC1-2CBA157EE3E4}" = dir=out | app=%programfiles%\corel\coreldraw graphics suite x7\programs64\corelpp.exe | "{615251A2-E6F1-4B77-AC9E-913446C097D0}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{6369237B-CEA6-4105-B9B8-D0B42CAF4A22}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\lync.exe | "{652736A2-26A9-4F85-ABDE-0372D991FC5C}" = dir=out | app=%programfiles%\ccleaner\ccleaner64.exe | "{69F4A4A7-A3DB-4103-BAC2-2FDDF9F3A735}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office15\lync.exe | "{6CCC5DE9-6AB8-4718-A308-D9612FE714BD}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{7004AF84-0D2C-4607-9112-3CFF751243FE}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{7A9B56D4-8171-4049-B9BD-13F5F7905D88}" = dir=out | app=%programfiles%\corel\coreldraw graphics suite x7\programs64\coreldrw.exe | "{7F1AAF7B-8EA5-400A-8E50-D0DF1D562D38}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{A20287EA-DFDE-4E30-8B40-60233B1E4615}" = protocol=17 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe | "{AF81CD1B-1A7D-416D-A7AD-E4BBBCB90559}" = protocol=17 | dir=in | app=c:\users\hugo lucas\appdata\roaming\utorrent\utorrent.exe | "{B9CB45FA-B38A-4AE6-AAED-F88B569C58BE}" = protocol=17 | dir=in | app=c:\program files (x86)\checkpoint\zonealarm\vsmon.exe | "{D385767E-04CC-4389-A788-DD4BDA80308A}" = protocol=6 | dir=in | app=c:\program files\kmspico\service_kms.exe | "{DB044F98-1CAA-4D08-9259-E3C6A1BB32B1}" = protocol=6 | dir=in | app=c:\program files\corel\coreldraw graphics suite x7\programs64\corelpp.exe | "{E0F63587-C800-4DB6-9EE6-874A8DF0B013}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer.exe | "{E6C211F0-A422-4A2F-A9A7-DB43ADDF0CC1}" = dir=out | app=%programfiles% (x86)\easeus\easeus mobisaver for android\bin\ems4android.exe | "{E7FE90BF-552C-44CA-B39D-2BC260C45013}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\teamviewer_service.exe | "{EABA2BEC-12E7-4902-B375-884FF2A1C4BD}" = protocol=17 | dir=in | app=c:\program files\kmspico\service_kms.exe | "{EB11A117-5612-4179-BAF8-A2457FFCF1A3}" = protocol=6 | dir=in | app=c:\users\hugo lucas\appdata\roaming\dropbox\bin\dropbox.exe | "{EB2740CC-C377-490C-B9AE-6126316B7DA0}" = protocol=6 | dir=in | app=c:\users\hugo lucas\appdata\roaming\utorrent\utorrent.exe | "{F15C0840-85D8-47B4-9F3D-F881ABCD1E9F}" = dir=out | app=%programfiles% (x86)\foxit software\foxit phantompdf\foxitphantompdf.exe | "{FF87DF8E-5DAC-491D-B86B-A1D3EEB80F90}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office15\ucmapi.exe | "TCP Query User{374AABAF-EE30-41F0-A5E3-8B01136B0D02}C:\users\hugo lucas\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\hugo lucas\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{9DCB675E-279B-4BD8-B225-19EA710975E4}C:\users\hugo lucas\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\hugo lucas\appdata\roaming\dropbox\bin\dropbox.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "_{4AB916EE-ABA8-4079-9889-745798B6D809}" = Corel Graphics - Windows Shell Extension "_{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}" = CorelDRAW Graphics Suite X7 (64-Bit) "{13179AB2-69FD-459B-800F-81865A501AD4}" = CorelDRAW Graphics Suite X7 - IPM T (x64) "{13F4A7F3-EABC-4261-AF6B-1317777F0755}" = Fast Boot "{1A73168F-5983-46A6-AAAB-FD83BC231E02}" = CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) "{2C0DDC74-5234-43DD-BB5A-0645B8FE5289}" = CorelDRAW Graphics Suite X7 - Draw (x64) "{2C91CB9D-323D-43E5-A433-229B71CFB773}" = CorelDRAW Graphics Suite X7 - Capture (x64) "{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}" = Monitor da tecnologia Intel® Turbo Boost "{3C41721F-AF0F-4086-AA1C-4C7F29076228}" = Software Intel(R) PROSet/Wireless WiFi "{4AB916EE-ABA8-4079-9889-745798B6D809}" = Corel Graphics - Windows Shell Extension "{50C961A1-889F-4A4E-9587-2772A45B6AAD}" = O&O Defrag Professional "{5162E418-BB43-4C8F-ACD6-069645EF98C3}" = CorelDRAW Graphics Suite X7 - Custom Data (x64) "{5406029B-67AD-4F8E-9F2D-F1959CD9CD86}" = CorelDRAW Graphics Suite X7 - FontNav (x64) "{5672E0DC-7489-4EAC-8CFD-E01B3868FCB5}" = CorelDRAW Graphics Suite X7 - VBA (x64) "{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}" = CorelDRAW Graphics Suite X7 - Setup Files (x64) "{64A3A4F4-B792-11D6-A78A-00B0D0180050}" = Java SE Development Kit 8 Update 5 (64-bit) "{65168D5C-A6DD-4C1B-BF5C-860A39CDD05E}" = CorelDRAW Graphics Suite X7 - ES (x64) "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{83646B67-A878-4E95-BB4B-AF4A6E61F28C}" = CGS17_Setup_x64 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1" = KMSpico v9.3.3 "{90120064-0070-0000-0000-4000000FF1CE}" = Microsoft Visual Basic for Applications 7.1 (x64) "{90150000-002A-0000-1000-0000000FF1CE}" = Microsoft Office 64-bit Components 2013 "{90150000-002A-0816-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Portuguese (Portugal)) 2013 "{90F60409-7000-11D3-8CFE-0150048383C9}" = Microsoft Visual Basic for Applications 7.1 (x64) English "{90F60C0A-7000-11D3-8CFE-0150048383C9}" = Microsoft Visual Basic for Applications 7.1 (x64) Spanish "{9178F0A8-B6F6-4DA7-AD63-317CC4875F4B}" = CorelDRAW Graphics Suite X7 - Common (x64) "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 2070" = Microsoft .NET Framework 4.5.1 (Português) "{966996DC-D67C-40E3-8BD4-31FA0F093571}" = CorelDRAW Graphics Suite X7 - VideoBrowser (x64) "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Painel de controlo da NVIDIA 347.88 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Controlador gráfico 347.88 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.4.1.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 2.4.1.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA O software do sistema PhysX 9.14.0702 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Actualizações da NVIDIA 2.4.1.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 2.4.1.21 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.27 "{BD036E95-A9CD-4DED-B744-95AB1DCAFF0C}" = CorelDRAW Graphics Suite X7 - Connect (x64) "{C27E55C0-A796-31EC-8919-1EA39B4FD8E7}" = Microsoft .NET Framework 4.5.1 (PTG) "{C57EDB5A-AC8E-4E03-9F1A-DC013A2BB9B2}" = CorelDRAW Graphics Suite X7 - Redist (x64) "{C922F325-DD52-4E22-B204-431A06E63E51}" = CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D10A5CFA-FE33-4F06-AE37-554604F00A52}" = CorelDRAW Graphics Suite X7 - Filters (x64) "{D63404AC-C2F1-4B3D-96EA-9727AC9D994C}" = CorelDRAW Graphics Suite X7 - Writing Tools (x64) "{EF44BCCD-13F9-4974-862C-CCFAF43EE082}" = CorelDRAW Graphics Suite X7 - IPM Content (x64) "{FD4A43CE-ABAE-4161-83AC-314A3C804F42}" = Corel Graphics - Windows Shell Extension 32 Bit "9CA77E2A8332A0824C54DA611BBE4CA24AB1F750" = Pacote de controladores do Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (01/27/2014 9.0.0000.00000) "CCleaner" = CCleaner "Elantech" = ETDWare PS/2-X64 8.0.5.0_WHQL "EPSON SX235 Series" = EPSON SX235 Series Printer Uninstall "ProInst" = Intel PROSet Wireless [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}" = Sonic Focus "{11F99CA2-21D8-4E53-817B-615AF60E7594}" = ZoneAlarm Find My Laptop "{1295E43F-382A-4CB2-9E0F-079C0D7401BB}_is1" = iRoot "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}" = Wireless Console 3 "{26A24AE4-039D-4CA4-87B4-2F83218045F0}" = Java 8 Update 45 "{2B81872B-A054-48DA-BE3B-FA5C164C303A}" = ASUS FancyStart "{38253529-D97D-4901-AE53-5CC9736D3A2E}" = ASUS AI Recovery "{4490D1EE-D71E-459D-89F1-15002DEF89BF}" = ZoneAlarm Antivirus "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{50542AEE-76BD-4BCD-A890-E2FF4D4E051A}" = Camtasia Studio 8 "{55A41219-9B22-4098-BAE7-AE289B3C569A}_is1" = Panda USB Vaccine 1.0.1.4 "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{62BBB2F0-E220-4821-A564-730807D2C34D}" = Realtek USB 2.0 Reader Driver "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon "{6A0549A9-1B96-498C-ACBC-3943001FEB19}" = Skype™ 7.8 "{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD}" = Adobe AIR "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{90150000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{90150000-0015-0816-0000-0000000FF1CE}" = Microsoft Access MUI (Portuguese (Portugal)) 2013 "{90150000-0016-0816-0000-0000000FF1CE}" = Microsoft Excel MUI (Portuguese (Portugal)) 2013 "{90150000-0018-0816-0000-0000000FF1CE}" = Microsoft PowerPoint MUI (Portuguese (Portugal)) 2013 "{90150000-0019-0816-0000-0000000FF1CE}" = Microsoft Publisher MUI (Portuguese (Portugal)) 2013 "{90150000-001A-0816-0000-0000000FF1CE}" = Microsoft Outlook MUI (Portuguese (Portugal)) 2013 "{90150000-001B-0816-0000-0000000FF1CE}" = Microsoft Word MUI (Portuguese (Portugal)) 2013 "{90150000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-040C-0000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office - Français "{90150000-001F-0816-0000-0000000FF1CE}" = Ferramentas de Verificação do Microsoft Office 2013 - Português "{90150000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español "{90150000-002C-0816-0000-0000000FF1CE}" = Microsoft Office Proofing (Portuguese (Portugal)) 2013 "{90150000-0044-0816-0000-0000000FF1CE}" = Microsoft InfoPath MUI (Portuguese (Portugal)) 2013 "{90150000-006E-0816-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Portuguese (Portugal)) 2013 "{90150000-0090-0816-0000-0000000FF1CE}" = Microsoft DCF MUI (Portuguese (Portugal)) 2013 "{90150000-00A1-0816-0000-0000000FF1CE}" = Microsoft OneNote MUI (Portuguese (Portugal)) 2013 "{90150000-00BA-0816-0000-0000000FF1CE}" = Microsoft Groove MUI (Portuguese (Portugal)) 2013 "{90150000-00E1-0816-0000-0000000FF1CE}" = Microsoft Office OSM MUI (Portuguese (Portugal)) 2013 "{90150000-00E2-0816-0000-0000000FF1CE}" = Microsoft Office OSM UX MUI (Portuguese (Portugal)) 2013 "{90150000-012B-0816-0000-0000000FF1CE}" = Microsoft Lync MUI (Portuguese (Portugal)) 2013 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A56D0602-1968-4136-B925-B91007BEC614}" = Passware Kit Professional 11.1 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC76BA86-0804-1033-1959-001824157129}" = Adobe Refresh Manager "{AC76BA86-7AD7-1046-7B44-AB0000000001}" = Adobe Reader XI (11.0.13) - Português "{AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1" = Kingo ROOT version 1.4.0.2390 "{B298CE4A-880B-4D6E-8987-2D8A616BF568}" = Snagit 12 "{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX "{B8936C0A-26EB-4133-956D-DF6F0D7175E5}" = ZoneAlarm Security "{bdac23f5-7943-42cf-ba56-4732fc20b6a7}" = Snagit 12 "{C25B092B-C340-43B9-8065-650DC8BABF1F}" = TunnelBear "{C923C463-4A5B-4B27-A400-F4B22A7D7E71}" = Foxit PhantomPDF Business "{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 "{D2437C5C-2D8C-40D2-8059-689AD7239FA3}" = Intel(R) C++ Redistributables for Windows* on Intel(R) 64 "{e0f2a0a0-0c9a-4732-b06a-c7b175d785d5}" = TunnelBear "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update "{EC2ABCAA-0616-4A3E-8227-599DB484C54E}" = ZoneAlarm Firewall "{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{FBD68E88-2999-43B7-B249-E1B08FA2B065}_is1" = SysTools PDF Unlocker - v3.1 "Adobe Flash Player NPAPI" = Adobe Flash Player 19 NPAPI "Adobe Shockwave Player" = Adobe Shockwave Player 12.1 "ASUS K3 Series ScreenSaver" = ASUS K3 Series ScreenSaver "BSPlayerf" = BS.Player FREE "EasyBCD" = EasyBCD 2.2 "EPSON Scanner" = EPSON Scan "Google Chrome" = Google Chrome "KaraFun Player 2_is1" = KaraFun Player 2 "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware versão 2.2.0.1024 "Mozilla Firefox 41.0.2 (x86 pt-PT)" = Mozilla Firefox 41.0.2 (x86 pt-PT) "MozillaMaintenanceService" = Mozilla Maintenance Service "Office15.PROPLUS" = Microsoft Office Professional Plus 2013 "PC Tune-Up" = PC Tune-Up "RealAlt_is1" = Real Alternative 1.8.0 "SpyHunter" = SpyHunter 4 "TeamViewer" = TeamViewer 10 "TeamViewer 8.0.19045 Final Enterprise8.0.19045" = TeamViewer 8.0.19045 Final Enterprise "UltraISO_is1" = UltraISO Premium V8.63 "WinRAR archiver" = WinRAR 5.10 beta 4 (32-bit) [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Kodi" = Kodi "uTorrent" = µTorrent "zonealarm" = ZoneAlarm Security Toolbar [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 03-05-2015 10:49:54 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 03-05-2015 13:51:29 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 03-05-2015 14:28:14 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 03-05-2015 18:35:28 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 05-05-2015 20:54:26 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 06-05-2015 07:46:08 | Computer Name = HL-PC | Source = .NET Runtime | ID = 1026 Description = Error - 06-05-2015 07:46:10 | Computer Name = HL-PC | Source = Application Error | ID = 1000 Description = Nome da aplicação com falha: SnagitEditor.exe, versão: 12.0.0.1001, carimbo de data/hora: 0x535185dc Nome do módulo com falha: MSVCR80.dll, versão: 8.0.50727.6195, carimbo de data/hora: 0x4dcddbf3 Código de excepção: 0xc0000005 Desvio de falha: 0x0001500a ID do processo com falha: 0x1e20 Data/hora de início da aplicação com falha: 0x01d087f219b99fe2 Caminho da aplicação com falha: C:\Program Files (x86)\TechSmith\Snagit 12\SnagitEditor.exe Caminho do módulo com falha: C:\Program Files (x86)\TechSmith\Snagit 12\MSVCR80.dll ID do Relatório: 7cec0861-f3e5-11e4-8c69-14dae92b49a2 Error - 06-05-2015 08:17:42 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 06-05-2015 13:15:06 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = Error - 09-05-2015 10:36:47 | Computer Name = HL-PC | Source = NvStreamSvc | ID = 133073 Description = [ System Events ] Error - 26-05-2015 07:29:39 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7009 Description = Foi atingido o tempo limite (30000 milissegundos) ao aguardar pela ligação do serviço Service KMSELDI. Error - 26-05-2015 07:29:39 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7000 Description = O serviço Service KMSELDI falhou o arranque devido ao seguinte erro: %%1053 Error - 26-05-2015 07:29:42 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7011 Description = Foi atingido o tempo limite (30000 milissegundos) ao aguardar por uma resposta de transacção por parte do serviço EvtEng. Error - 26-05-2015 07:30:10 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7009 Description = Foi atingido o tempo limite (30000 milissegundos) ao aguardar pela ligação do serviço TunnelBear Maintenance. Error - 26-05-2015 07:30:10 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7000 Description = O serviço TunnelBear Maintenance falhou o arranque devido ao seguinte erro: %%1053 Error - 30-05-2015 06:49:44 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7034 Description = O serviço Service KMSELDI terminou inesperadamente. Isto aconteceu 1 vez(es). Error - 31-05-2015 07:31:35 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7034 Description = O serviço Service KMSELDI terminou inesperadamente. Isto aconteceu 1 vez(es). Error - 08-06-2015 21:15:29 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7034 Description = O serviço Service KMSELDI terminou inesperadamente. Isto aconteceu 1 vez(es). Error - 09-06-2015 07:45:14 | Computer Name = HL-PC | Source = EventLog | ID = 6008 Description = O anterior encerramento do sistema, ?09-?06-?2015 às 03:20:41, foi inesperado. Error - 09-06-2015 07:56:13 | Computer Name = HL-PC | Source = Service Control Manager | ID = 7034 Description = O serviço Service KMSELDI terminou inesperadamente. Isto aconteceu 1 vez(es). < End of report >