I'm using two anti-virus softwares, the free avast one and McAffee but its payed functionalities have expired a while ago.
I used MBAM to remove the detections but I'd like to make sure they're gone:
MBAM found Trojan.EORezo, PUP.Tuto4PC, Trojan.Downloader, PUP.AdBundle and Worm.SFDC.
If you need me to post the log file, let me know.
OTL logs below:
OTL logfile created on: 12-01-2013 01:05:45 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Utilizador\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000816 | Country: Portugal | Language: PTG | Date Format: dd-MM-yyyy
3,80 Gb Total Physical Memory | 2,08 Gb Available Physical Memory | 54,78% Memory free
7,60 Gb Paging File | 4,90 Gb Available in Paging File | 64,42% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 284,39 Gb Total Space | 211,23 Gb Free Space | 74,27% Space Free | Partition Type: NTFS
Drive D: | 13,41 Gb Total Space | 1,90 Gb Free Space | 14,20% Space Free | Partition Type: NTFS
Drive E: | 99,34 Mb Total Space | 90,99 Mb Free Space | 91,60% Space Free | Partition Type: FAT32
Drive F: | 4,34 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Computer Name: UTILIZADOR-PC | User Name: Utilizador | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2013-01-12 01:05:33 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Utilizador\Downloads\OTL (2).exe
PRC - [2012-10-30 22:50:59 | 004,297,136 | ---- | M] (AVAST Software) -- C:\Programas\AVAST Software\Avast\AvastUI.exe
PRC - [2012-10-30 22:50:59 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Programas\AVAST Software\Avast\AvastSvc.exe
PRC - [2012-09-17 17:19:48 | 000,719,720 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\tuto4pc_pt_4\upt4pcpt4.exe
PRC - [2012-08-14 12:58:58 | 000,646,800 | ---- | M] (McAfee, Inc.) -- c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
PRC - [2012-06-06 02:33:58 | 002,160,536 | ---- | M] (ManyCam LLC) -- C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe
PRC - [2010-03-18 04:57:00 | 002,320,920 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
PRC - [2010-01-25 11:00:00 | 000,514,232 | ---- | M] (EasyBits Software AS) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe
PRC - [2010-01-25 11:00:00 | 000,514,232 | ---- | M] (EasyBits Software AS) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe
PRC - [2009-11-04 21:45:44 | 000,268,824 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
PRC - [2009-10-13 10:25:54 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009-10-13 10:25:30 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
========== Modules (No Company Name) ==========
MOD - [2013-01-12 00:20:16 | 000,033,792 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\YTMP7MC8AA\TAAB305.tmp
MOD - [2013-01-12 00:20:15 | 000,085,504 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMAC17.tmp
MOD - [2013-01-12 00:20:14 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMAA88.tmp
MOD - [2013-01-12 00:20:14 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMAA18.tmp
MOD - [2013-01-12 00:20:14 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA97A.tmp
MOD - [2013-01-12 00:20:14 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA90B.tmp
MOD - [2013-01-12 00:20:14 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA85E.tmp
MOD - [2013-01-12 00:20:14 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA80E.tmp
MOD - [2013-01-12 00:20:14 | 000,085,504 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMAB88.tmp
MOD - [2013-01-12 00:20:14 | 000,085,504 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMAB67.tmp
MOD - [2013-01-12 00:20:14 | 000,085,504 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMAAF8.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA7BE.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA74E.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA6DF.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA612.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA5A3.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA4A8.tmp
MOD - [2013-01-12 00:20:13 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA458.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA3BA.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA34A.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA30A.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA2AA.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA26A.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA17E.tmp
MOD - [2013-01-12 00:20:12 | 000,120,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA12D.tmp
MOD - [2013-01-12 00:20:12 | 000,072,704 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9E4A.tmp
MOD - [2013-01-12 00:20:12 | 000,072,192 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA09F.tmp
MOD - [2013-01-12 00:20:12 | 000,072,192 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEMA07D.tmp
MOD - [2013-01-12 00:20:11 | 000,072,192 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9987.tmp
MOD - [2013-01-12 00:20:10 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9826.tmp
MOD - [2013-01-12 00:20:10 | 000,064,000 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9868.tmp
MOD - [2013-01-12 00:20:10 | 000,057,344 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM98BA.tmp
MOD - [2013-01-12 00:20:10 | 000,053,760 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM98A9.tmp
MOD - [2013-01-12 00:20:10 | 000,053,760 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9847.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9805.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM97D4.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9753.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9722.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9701.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9690.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM95E2.tmp
MOD - [2013-01-12 00:20:09 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM95C1.tmp
MOD - [2013-01-12 00:20:09 | 000,068,608 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM935F.tmp
MOD - [2013-01-12 00:20:09 | 000,056,832 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM96E0.tmp
MOD - [2013-01-12 00:20:09 | 000,056,320 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9774.tmp
MOD - [2013-01-12 00:20:08 | 000,075,776 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM90D9.tmp
MOD - [2013-01-12 00:20:08 | 000,056,320 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM9187.tmp
MOD - [2013-01-12 00:20:08 | 000,055,296 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Temp\XTMP1MC3VE\DEM91A8.tmp
MOD - [2013-01-10 19:29:36 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\302207b4fa3083899fd8ab4db98cecc5\System.Management.ni.dll
MOD - [2013-01-10 14:14:23 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d7d20811a7ce7cc589153648cbb1ce5c\PresentationFramework.Aero.ni.dll
MOD - [2013-01-10 14:14:01 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\90b89f6e8032310e9ac72a309fd49e83\System.Runtime.Remoting.ni.dll
MOD - [2013-01-10 14:13:58 | 006,611,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Data\dd20416f723ee13ffb4173ec1afc4ec4\System.Data.ni.dll
MOD - [2013-01-10 14:13:45 | 014,340,608 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ff7c9a4f41f7cccc47e696c11b9f8469\PresentationFramework.ni.dll
MOD - [2013-01-10 14:13:27 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\865d2bf19a7af7fab8660a42d92550fe\System.Windows.Forms.ni.dll
MOD - [2013-01-10 14:13:19 | 001,592,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\eead6629e384a5b69f9ae35284b7eeed\System.Drawing.ni.dll
MOD - [2013-01-10 14:13:15 | 012,237,824 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\19b3d17c3ce0e264c4fb62028161adf7\PresentationCore.ni.dll
MOD - [2013-01-10 14:13:02 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\cf827fe7bc99d9bcf0ba3621054ef527\WindowsBase.ni.dll
MOD - [2013-01-10 14:12:56 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\f687c43e9fdec031988b33ae722c4613\System.Xml.ni.dll
MOD - [2013-01-10 14:12:51 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\195a77fcc6206f8bb35d419ff2cf0d72\System.Configuration.ni.dll
MOD - [2013-01-10 14:12:50 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\369f8bdca364e2b4936d18dea582912c\System.ni.dll
MOD - [2013-01-10 14:12:43 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\7150b9136fad5b79e88f6c7f9d3d2c39\mscorlib.ni.dll
MOD - [2013-01-08 00:06:22 | 000,460,392 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\ppGoogleNaClPluginChrome.dll
MOD - [2013-01-08 00:06:21 | 012,459,624 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\PepperFlash\pepflashplayer.dll
MOD - [2013-01-08 00:06:19 | 004,012,648 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\pdf.dll
MOD - [2013-01-08 00:05:29 | 000,598,120 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\libglesv2.dll
MOD - [2013-01-08 00:05:28 | 000,124,520 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\libegl.dll
MOD - [2013-01-08 00:05:25 | 001,553,000 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\ffmpegsumo.dll
MOD - [2012-11-23 17:42:19 | 000,037,280 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\HP.ActiveSupportLibrary\2.0.0.1__01a974bc1760f423\HP.ActiveSupportLibrary.dll
MOD - [2012-09-17 17:19:48 | 000,719,720 | ---- | M] () -- C:\Users\Utilizador\AppData\Local\tuto4pc_pt_4\upt4pcpt4.exe
MOD - [2012-06-06 02:34:00 | 000,124,312 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\CrashRpt.dll
MOD - [2010-12-05 02:38:12 | 000,241,152 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_objdetect220.dll
MOD - [2010-12-05 02:38:06 | 000,776,192 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_highgui220.dll
MOD - [2010-12-05 02:38:06 | 000,201,216 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_video220.dll
MOD - [2010-12-05 02:38:04 | 001,242,112 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_imgproc220.dll
MOD - [2010-12-05 02:38:02 | 002,010,624 | ---- | M] () -- C:\Program Files (x86)\ManyCam\Bin\opencv_core220.dll
MOD - [2010-11-05 01:58:05 | 002,927,616 | ---- | M] () -- C:\Windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
MOD - [2010-11-05 01:54:47 | 000,307,200 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010-02-22 10:19:10 | 007,745,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
MOD - [2010-02-22 10:19:08 | 002,121,728 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
MOD - [2010-02-22 10:19:08 | 000,135,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
MOD - [2010-02-09 17:58:30 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Pillars\PCAlerts\PCAlertsPillar.dll
MOD - [2010-02-09 17:58:28 | 000,131,072 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Pillars\ECenter\ECLibrary.dll
MOD - [2010-02-09 17:58:24 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingServer.dll
MOD - [2010-02-09 17:58:24 | 000,007,680 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\RemotingClient.dll
MOD - [2010-02-09 17:58:22 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingClients.dll
MOD - [2010-02-09 17:58:22 | 000,005,632 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingInterface.dll
MOD - [2010-02-09 17:58:18 | 000,018,944 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingMessages.dll
MOD - [2010-02-09 17:58:14 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.Logging.dll
========== Services (SafeList) ==========
SRV:64bit: - [2011-10-06 15:37:32 | 000,199,008 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe -- (McShield)
SRV:64bit: - [2011-08-19 14:59:28 | 000,158,832 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:64bit: - [2011-08-19 14:50:56 | 000,208,272 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McProxy)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McOobeSv)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNASvc)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (mcmscsvc)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:64bit: - [2011-01-27 17:28:20 | 000,249,936 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe -- (McAfee SiteAdvisor Service)
SRV:64bit: - [2010-03-03 07:12:14 | 000,202,752 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2013-01-09 18:33:28 | 000,251,400 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012-11-09 11:21:24 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012-10-30 22:50:59 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Programas\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2012-09-27 11:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe -- (HP Support Assistant Service)
SRV - [2011-03-28 20:11:06 | 002,292,096 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Programas\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2011-03-17 15:39:40 | 000,501,768 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Programas\McAfee\VirusScan\mcods.exe -- (McODS)
SRV - [2010-03-18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-03-18 04:57:00 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010-01-27 13:01:04 | 000,102,968 | ---- | M] (Hewlett-Packard) [Auto | Running] -- C:\Programas\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV - [2010-01-18 14:04:08 | 000,020,480 | ---- | M] () [Auto | Running] -- C:\Programas\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010-01-04 18:03:42 | 000,238,328 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2009-11-18 02:14:26 | 000,098,208 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Programas\Realtek\Audio\HDA\AERTSr64.exe -- (AERTFilters)
SRV - [2009-11-04 21:45:44 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009-10-13 10:25:30 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe -- (IAANTMON)
SRV - [2009-06-10 21:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012-10-30 22:51:56 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012-10-30 22:51:55 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012-10-30 22:51:55 | 000,370,288 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012-10-30 22:51:55 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012-10-30 22:51:53 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012-10-15 16:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012-03-01 06:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012-02-22 10:34:36 | 000,028,160 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcaudrv_x64.sys -- (mcaudrv_simple)
DRV:64bit: - [2012-01-11 06:11:20 | 000,034,304 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcvidrv_x64.sys -- (ManyCam)
DRV:64bit: - [2011-08-15 09:00:06 | 000,642,824 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:64bit: - [2011-08-15 09:00:06 | 000,481,504 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:64bit: - [2011-08-15 09:00:06 | 000,283,744 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:64bit: - [2011-08-15 09:00:06 | 000,228,752 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:64bit: - [2011-08-15 09:00:06 | 000,158,584 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:64bit: - [2011-08-15 09:00:06 | 000,100,904 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mferkdet.sys -- (mferkdet)
DRV:64bit: - [2011-08-15 09:00:06 | 000,075,672 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mfenlfk.sys -- (mfenlfk)
DRV:64bit: - [2011-08-15 09:00:06 | 000,065,128 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:64bit: - [2011-03-11 06:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011-03-11 06:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011-01-21 06:36:02 | 000,413,800 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010-11-20 13:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010-11-20 11:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010-11-20 09:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010-05-30 21:29:27 | 003,058,168 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:64bit: - [2010-05-27 21:32:56 | 000,320,560 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2010-03-03 07:23:12 | 006,402,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atipmdag.sys -- (amdkmdag)
DRV:64bit: - [2010-03-03 06:08:12 | 007,843,040 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdpmd64.sys -- (intelkmd)
DRV:64bit: - [2010-03-03 06:08:12 | 007,843,040 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2010-03-03 06:07:34 | 000,188,928 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010-02-10 23:02:00 | 000,158,720 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:64bit: - [2010-01-28 17:33:38 | 000,116,736 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2009-10-13 10:16:40 | 000,409,624 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2009-09-23 01:39:56 | 000,225,280 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2009-09-17 20:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64)
DRV:64bit: - [2009-07-14 01:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009-07-14 01:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009-07-14 01:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009-06-10 21:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009-06-10 21:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009-06-10 21:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009-06-10 21:01:06 | 001,146,880 | ---- | M] (LSI Corp) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:64bit: - [2009-06-10 20:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009-06-10 20:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64)
DRV:64bit: - [2009-06-10 20:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009-06-10 20:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009-06-10 20:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009-06-10 20:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009-09-23 01:39:56 | 000,225,280 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV - [2009-07-14 01:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPALL/35
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/HPALL/35
IE - HKLM\..\SearchScopes,DefaultScope = {F45E8D99-1123-48F0-A8C3-E9CD96B3EC30}
IE - HKLM\..\SearchScopes\{F45E8D99-1123-48F0-A8C3-E9CD96B3EC30}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPALL/35
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pt/
IE - HKCU\..\SearchScopes,DefaultScope = {F45E8D99-1123-48F0-A8C3-E9CD96B3EC30}
IE - HKCU\..\SearchScopes\{F45E8D99-1123-48F0-A8C3-E9CD96B3EC30}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\progra~2\mcafee\msc\npmcsn~1.dll ()
FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Utilizador\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Utilizador\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files (x86)\McAfee\SiteAdvisor [2012-08-23 17:00:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{D19CA586-DD6C-4a0a-96F8-14644F340D60}: C:\Program Files (x86)\Common Files\McAfee\SystemCore [2011-10-12 16:18:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2012-10-27 13:36:36 | 000,000,000 | ---D | M]
========== Chrome ==========
CHR - homepage: http://www.google.com
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.google.com
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Utilizador\AppData\Local\Google\Chrome\Application\24.0.1312.52\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll
CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Facebook Video Calling Plugin (Enabled) = C:\Users\Utilizador\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Utilizador\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: McAfee SecurityCenter (Enabled) = c:\progra~2\mcafee\msc\npmcsn~1.dll
CHR - Extension: YouTube = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
CHR - Extension: Adblock Plus = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.3.4_0\
CHR - Extension: Pesquisa do Google = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
CHR - Extension: SiteAdvisor = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.2_0\
CHR - Extension: We Heart It = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblenkmcolcdonmlfknbpbgjebabcoae\2.6.3_0\
CHR - Extension: avast! WebRep = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1474_0\
CHR - Extension: Yontoo = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.3_0\
CHR - Extension: Gmail = C:\Users\Utilizador\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2009-06-10 21:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\MSKAPB~1.DLL File not found
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Programas\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Programas\Common Files\McAfee\SystemCore\ScriptSn.20111011212527.dll (McAfee, Inc.)
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programas\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Programas\McAfee\MSK\mskapbho.dll ()
O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111011212527.dll (McAfee, Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programas\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O2 - BHO: (Yontoo) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo\YontooIEClient.dll (Yontoo LLC)
O3:64bit: - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Programas\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Programas\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [HP Quick Launch] C:\Programas\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Hewlett-Packard Company)
O4:64bit: - HKLM..\Run: [HPWirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe ()
O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [RtkOSD] C:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Easybits Recovery] C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe (EasyBits Software AS)
O4 - HKLM..\Run: [mcui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [HPAdvisorDock] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe ()
O4 - HKCU..\Run: [ManyCam] C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe (ManyCam LLC)
O4 - HKLM..\RunOnce: [upt4pcpt4.exe] C:\Users\Utilizador\AppData\Local\tuto4pc_pt_4\upt4pcpt4.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: EnableShellExecuteHooks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:64bit: - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programas\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Programas\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zon...kr.cab56986.cab (Checkers Class)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} http://trial.trymicr...osoft/wrc32.ocx (WRC Class)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zon...nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{49376E0D-04CC-4295-B604-57EA4CFF1161}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18:64bit: - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Programas\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programas\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~2\mcafee\msc\mcsniepl.dll (McAfee, Inc.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll (EasyBits Software Corp.)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008-03-13 01:03:05 | 000,000,000 | R--D | M] - F:\AutoRun -- [ UDF ]
O32 - AutoRun File - [2008-03-13 01:10:26 | 000,703,552 | R--- | M] (Electronic Arts Inc.) - F:\AutoRun.exe -- [ UDF ]
O32 - AutoRun File - [2008-03-13 01:10:26 | 000,670,784 | R--- | M] (Electronic Arts Inc.) - F:\AutoRunGUI.dll -- [ UDF ]
O32 - AutoRun File - [2008-03-13 01:10:07 | 000,000,164 | R--- | M] () - F:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{3288177e-614b-11e0-9dc7-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{3288177e-614b-11e0-9dc7-806e6f6e6963}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2008-03-13 01:10:26 | 000,703,552 | R--- | M] (Electronic Arts Inc.)
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013-01-12 00:24:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
[2013-01-11 23:45:28 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Roaming\Malwarebytes
[2013-01-11 23:44:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013-01-11 23:44:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013-01-11 23:44:04 | 000,024,176 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2013-01-11 23:44:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2013-01-11 19:20:44 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{5D5EA085-0530-4E9F-8172-FF47F1A3CDFA}
[2013-01-10 14:06:37 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{D18092F6-59C5-4433-AC51-DDB44714FFB9}
[2013-01-09 17:18:40 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{8B509A69-281F-4154-B22E-C1D346579382}
[2013-01-08 14:04:07 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{8AA882C9-8F89-44B7-BE1B-60AFE204D0E9}
[2013-01-07 17:19:24 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{ACE4A18A-B12D-4AA0-9BB5-1F4B02B765C7}
[2013-01-06 13:48:31 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{5680AD09-7949-4C40-B4B1-C5E878A32042}
[2013-01-05 16:55:01 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{EFA07514-FD92-4961-AE84-EB4B0FD6D31A}
[2013-01-04 14:13:40 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{23A7B0A6-6BEB-44C8-8D9C-9703A8847FC0}
[2013-01-03 19:05:27 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{F09EE048-44E5-4478-BB57-E525C0F5091D}
[2013-01-02 14:18:47 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{894E469F-0032-4414-B19F-9D015CA5B1D0}
[2013-01-01 19:14:37 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{E931A121-F7B8-4437-9F04-7E07C011A41A}
[2012-12-31 16:07:25 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{982B9F3D-E66A-47BB-9721-EB0CAA31C660}
[2012-12-31 00:23:45 | 000,370,288 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2012-12-31 00:23:45 | 000,025,232 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2012-12-31 00:23:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
[2012-12-31 00:23:44 | 000,054,072 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2012-12-31 00:23:42 | 000,984,144 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2012-12-31 00:23:42 | 000,059,728 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2012-12-31 00:23:41 | 000,071,600 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2012-12-31 00:23:40 | 000,285,328 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2012-12-31 00:23:08 | 000,041,224 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2012-12-31 00:23:07 | 000,227,648 | ---- | C] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2012-12-31 00:22:51 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2012-12-31 00:22:51 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2012-12-30 15:48:36 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{1FA16BB7-47F8-46BE-849F-DC0DEB9D3CE0}
[2012-12-30 03:48:13 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{85A425D6-3975-4F15-BDCB-91D600EBCE3C}
[2012-12-29 15:48:01 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{6D5CB1D2-0740-4144-B3E7-80FFB1457EB6}
[2012-12-29 01:04:51 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{86C1F289-12CA-4353-94A4-2ECF3D5A2055}
[2012-12-28 13:04:27 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{F44BCB81-94EE-479D-8269-B305B1F5B143}
[2012-12-27 19:29:39 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{D2170410-70B6-4EDB-8D83-A6BDA61DAD0F}
[2012-12-26 15:40:58 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{7DEB5718-0C0B-410E-B9A0-89C620B92C14}
[2012-12-25 20:11:27 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{F7A57D61-3106-4FB3-A978-1E42CCD92C39}
[2012-12-24 16:05:39 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{92EB5D87-63FC-47D5-A160-3FB8CBBC8EC4}
[2012-12-23 15:26:18 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{9FA5F9C4-573B-4126-8EBF-31879A2CF9C1}
[2012-12-23 02:18:45 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{BDA6E438-6548-4226-BFE8-96989109912C}
[2012-12-22 14:18:21 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{954E769A-2CD4-45A8-A53C-70608EA101E9}
[2012-12-21 17:02:08 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{669998F8-4672-4295-A8EE-40A54CC9D39A}
[2012-12-20 17:29:58 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{CC2B6F8B-24D0-4E41-8316-F0A0A685EE8F}
[2012-12-19 14:53:14 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{C5D68DAF-F559-43DA-A213-9D1E7D049771}
[2012-12-18 20:22:23 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{C4186A80-FAE3-4246-8753-D5B714306EE4}
[2012-12-17 15:38:19 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{FF1150F8-FD89-41A5-822C-47EFDBEA299F}
[2012-12-17 02:03:45 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{C38178E9-7AC0-454D-972B-A7200A06C04C}
[2012-12-16 14:03:22 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{E50BC10D-0CD0-4655-B6FF-9F933CE0E756}
[2012-12-16 02:02:58 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{B1CCCDE4-9A1D-4162-9FEE-91759E6F7E40}
[2012-12-15 14:02:32 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{6536AA89-4ED3-4A39-9E04-C3B8DC40DE63}
[2012-12-14 14:14:48 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{86ACDD25-EF8F-4FF8-BB77-2C345230261F}
[2012-12-14 14:08:49 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{4A4432BB-8874-43A0-BF3C-4AEEC6D023B2}
[2012-12-13 19:41:04 | 000,000,000 | ---D | C] -- C:\Users\Utilizador\AppData\Local\{06E01835-80C0-4253-B047-B5E568849210}
========== Files - Modified Within 30 Days ==========
[2013-01-12 00:40:03 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3156712834-2365250696-4273806998-1000UA.job
[2013-01-12 00:33:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013-01-12 00:26:18 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013-01-12 00:26:18 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013-01-12 00:24:02 | 000,001,828 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Total Protection.lnk
[2013-01-12 00:18:41 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013-01-12 00:18:34 | 3062,255,616 | -HS- | M] () -- C:\hiberfil.sys
[2013-01-11 23:44:12 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013-01-11 19:42:23 | 000,002,398 | ---- | M] () -- C:\Users\Utilizador\Desktop\Google Chrome.lnk
[2013-01-10 14:04:46 | 000,438,296 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013-01-09 22:55:06 | 001,550,190 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013-01-09 22:55:06 | 000,679,576 | ---- | M] () -- C:\Windows\SysNative\prfh0816.dat
[2013-01-09 22:55:06 | 000,616,242 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013-01-09 22:55:06 | 000,133,986 | ---- | M] () -- C:\Windows\SysNative\prfc0816.dat
[2013-01-09 22:55:06 | 000,106,622 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013-01-08 15:40:00 | 000,000,990 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3156712834-2365250696-4273806998-1000Core.job
[2013-01-05 16:53:03 | 435,051,267 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2013-01-04 00:26:51 | 001,283,648 | ---- | M] () -- C:\Users\Utilizador\Desktop\100_1846 33.jpg
[2012-12-31 00:23:45 | 000,001,958 | ---- | M] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012-12-31 00:23:41 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2012-12-28 13:04:00 | 000,000,352 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForUtilizador.job
[2012-12-15 14:37:13 | 000,001,304 | ---- | M] () -- C:\Windows\tasks\hpwebreg_CN07M2P2DJ05HW.job
[2012-12-14 16:49:28 | 000,024,176 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
========== Files Created - No Company Name ==========
[2013-01-11 23:44:12 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013-01-04 00:26:51 | 001,283,648 | ---- | C] () -- C:\Users\Utilizador\Desktop\100_1846 33.jpg
[2012-12-31 00:23:45 | 000,001,958 | ---- | C] () -- C:\Users\Public\Desktop\avast! Free Antivirus.lnk
[2012-12-31 00:23:40 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt
[2012-12-13 19:51:49 | 000,000,352 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForUtilizador.job
[2011-04-30 10:50:42 | 000,003,584 | ---- | C] () -- C:\Users\Utilizador\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
========== ZeroAccess Check ==========
[2009-07-14 04:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012-06-09 05:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012-06-09 04:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 01:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 12:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 01:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2012-12-09 17:03:26 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\DAEMON Tools Lite
[2012-10-19 19:25:49 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\Dropbox
[2012-04-21 15:22:51 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\gtk-2.0
[2012-10-21 18:26:14 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\ManyCam
[2012-04-14 17:47:48 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\PhotoScape
[2011-06-29 20:54:25 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\SecondLife
[2011-04-10 09:11:48 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\WildTangent
[2011-08-26 20:47:04 | 000,000,000 | ---D | M] -- C:\Users\Utilizador\AppData\Roaming\Windows Live Writer
========== Purity Check ==========
< End of report >
OTL Extras logfile created on: 12-01-2013 01:05:45 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Utilizador\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000816 | Country: Portugal | Language: PTG | Date Format: dd-MM-yyyy
3,80 Gb Total Physical Memory | 2,08 Gb Available Physical Memory | 54,78% Memory free
7,60 Gb Paging File | 4,90 Gb Available in Paging File | 64,42% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 284,39 Gb Total Space | 211,23 Gb Free Space | 74,27% Space Free | Partition Type: NTFS
Drive D: | 13,41 Gb Total Space | 1,90 Gb Free Space | 14,20% Space Free | Partition Type: NTFS
Drive E: | 99,34 Mb Total Space | 90,99 Mb Free Space | 91,60% Space Free | Partition Type: FAT32
Drive F: | 4,34 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Computer Name: UTILIZADOR-PC | User Name: Utilizador | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== Firewall Settings ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04E42019-B2AA-43A7-9316-D817BBBDD93B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{205DEFE7-4207-4638-B163-D7AA727A218D}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{384160EB-33B7-4058-B565-2683DDC4948C}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{3B646EDB-7012-42E6-A68B-54B0EA4E732B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{3F6923E6-E52D-4683-B2F1-ED395B47C195}" = rport=138 | protocol=17 | dir=out | app=system |
"{41575234-D5CE-48BE-A16F-B0F93AC0DCDF}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{436F3D77-9353-4EF5-8D4F-5B5160793234}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{483B7E23-D3F3-4640-A22C-82DA98403C82}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{505ED6F6-5A94-4796-A86D-A54558F04E59}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{50AD18F1-FB36-4DDC-93D3-9C8864BA93D8}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{511E9234-13AF-4C5B-A18B-560DCB375018}" = rport=10243 | protocol=6 | dir=out | app=system |
"{5B838534-BD81-417C-9132-D2C2A5710C7F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{60F67B40-6852-442A-AC08-15C1076C80CE}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{67D10CD5-F546-4816-814C-B1271AEBAD83}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{6C921A02-E175-42C0-886B-24F94E8126AE}" = rport=139 | protocol=6 | dir=out | app=system |
"{6D7F3C07-6785-4A64-AC49-064656575873}" = lport=137 | protocol=17 | dir=in | app=system |
"{72C28287-879B-40A5-BFF3-E0F9724CD74D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{819B56D4-23C2-4580-86CB-ACFE858D62C1}" = lport=139 | protocol=6 | dir=in | app=system |
"{84DDB9E0-FFA7-45A5-8FAB-262BB328EF2D}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{863922C9-6354-41BD-B527-74A54DE47075}" = lport=138 | protocol=17 | dir=in | app=system |
"{9C906437-9543-4E58-80D1-C8899738ABFD}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{A21F1E05-DE2C-4F24-8F41-A46DBC093FBB}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A82FB253-8868-474E-973F-E5976D013DC6}" = lport=10243 | protocol=6 | dir=in | app=system |
"{ADE777DF-35AB-4AA2-A433-6DB356BCD5D6}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{BD009177-996F-4A46-9A6F-6E9A6A02909C}" = lport=445 | protocol=6 | dir=in | app=system |
"{C90D0B8F-AA38-40CC-946B-C6111C856906}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{CE875DE5-C724-4E48-8D3D-283240F997CE}" = lport=2869 | protocol=6 | dir=in | app=system |
"{D519674D-8392-4210-8C05-A16417CD6956}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{D53AC21A-8F08-4564-A5E5-B98D7543F772}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{D53F756B-6496-4F4E-90C7-7D4ECFD2392A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{DD0A86CF-778A-4016-9E19-452223E258E1}" = rport=137 | protocol=17 | dir=out | app=system |
"{E3A00C56-9C81-4A79-B36F-8FB4DF3C561E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E709B5C5-14F2-4B51-8AA3-7BF912C056A1}" = rport=445 | protocol=6 | dir=out | app=system |
"{E9C8BE79-1350-4758-AA2F-B1EB4ABB5BBA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{EC3ECDF4-9FB7-4A36-869C-63C7DE42EE21}" = lport=2869 | protocol=6 | dir=in | app=system |
"{ED5AEA10-6D0E-47E8-9FD4-86BE599BDFC2}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00B4F782-3CBB-4A94-A828-446C4183E39D}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{05F056EB-3CE5-4BC5-BC92-D8B5E835AAAD}" = protocol=6 | dir=in | app=c:\users\utilizador\appdata\roaming\dropbox\bin\dropbox.exe |
"{131636E9-C892-469A-9ACA-9D7EEF41E221}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{189B1554-E165-4E13-9500-35287AF34652}" = protocol=58 | dir=out | [email protected],-28546 |
"{1C580F31-D829-4B00-B94A-1685F3172E4B}" = protocol=17 | dir=in | app=c:\users\utilizador\appdata\roaming\dropbox\bin\dropbox.exe |
"{2F536643-6D39-4F56-AA9B-ADF6A84C5227}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{32A1266D-0B27-4B5A-9BFF-B8DCC01F6269}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{419430B5-DA8D-4613-9911-12565A0436E9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{45D9EE99-0C42-4BA7-B7EE-EAD7777085CA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{46504AA6-CCBE-45F0-B76A-945C0AE3F759}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{4A33E7D3-2087-4269-9A5E-84817C5D2B74}" = protocol=17 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe |
"{4C37F795-6F09-47FA-80CD-59C36EAB922C}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{588EB5AB-C381-429B-B5B7-F8EABF2568AF}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{6919E919-579E-4D7C-82FD-4E783164CAD6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{6B54CAB8-F227-4307-9B2D-C7B97182B871}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{74989CF7-63C7-46FA-AE60-3B25EC1B41B5}" = protocol=6 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe |
"{766B4306-06DB-49E5-9D1E-EC715EF9D4C5}" = protocol=1 | dir=in | [email protected],-28543 |
"{79FBA7EA-CFDC-4F9D-90DA-BEA611EE9638}" = protocol=1 | dir=out | [email protected],-28544 |
"{7E95502C-54EA-4979-8741-3D30744C3D24}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd9\powerdvd9.exe |
"{7ED8C2F8-275E-4A61-B0C9-554620994389}" = protocol=58 | dir=in | [email protected],-28545 |
"{83BB25B5-DE98-4966-BA8C-20AF9400001B}" = protocol=17 | dir=in | app=c:\program files (x86)\easybits for kids\programs\my first browser\myfirstbrowser.exe |
"{849ADDBF-6915-4096-9845-2FC267C7097A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{967115F5-2583-491E-8A2F-6D1213E0D86C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9684A9DD-44E7-4087-8242-3E302389A4FA}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{A1D63DE0-35CC-4609-9505-C3C336DCE511}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{A56F37A5-AE0A-49D2-9E29-74E4A58DAEF4}" = protocol=6 | dir=in | app=c:\program files (x86)\easybits for kids\programs\my first browser\myfirstbrowser.exe |
"{B79825FB-8612-4125-A47F-FDAEC8A262F8}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe |
"{BEE3CA9A-4969-4A39-8CDF-1FDC127A0C03}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{C2483037-6DC2-4625-BB67-790A83B000AD}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{C25B45E2-D1AC-4C85-B550-8FBCB9897BC5}" = protocol=17 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe |
"{C77E2B2C-67B4-43CC-842F-727D910EDE71}" = protocol=6 | dir=out | app=system |
"{D027654D-E411-4DEE-B46B-7286821060DF}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{DE5BACD9-158A-43A0-9969-3FE35C960D75}" = protocol=6 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe |
"{E3D4D579-B02E-4A7E-80E1-6A8A6110C874}" = protocol=6 | dir=in | app=c:\program files\hp\hp deskjet 1050 j410 series\bin\usbsetup.exe |
"{E77ED528-E7F5-424B-B745-10BB844CE176}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{EE21FA65-E886-44A6-A434-5D6254A1F4FB}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F84CB273-8DE5-48B8-8043-E5EF67290C73}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{FF137018-DA2F-404C-86E5-7DF57275D545}" = protocol=17 | dir=in | app=c:\program files (x86)\imesh applications\imesh\imesh.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
"{06A5A3AF-AFA5-4278-868E-BFD494A9B08B}" = Software básico do dispositivo HP Deskjet 1050 J410 series
"{10DF1C63-C8F0-41BE-A9AF-5E4132891B64}" = HP Wireless Assistant
"{10F539B1-31AF-43BF-9F0C-0EB66E918922}" = HP Quick Launch
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{26A24AE4-039D-4CA4-87B4-2F86416017FF}" = Java 6 Update 17 (64-bit)
"{42FBA9A9-A14D-3918-BFE1-4FC8FEDDEF5C}" = Microsoft .NET Framework 4 Client Profile PTG Language Pack
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{55A4978B-CC3A-E5C2-5567-95B70A1D1432}" = ccc-utility64
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{635F1CD2-00BC-4613-AAA6-3DCD1986767C}" = Estudo de melhoria do produto HP Deskjet 1050 J410 series
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 1.10.03
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0816-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Portuguese (Portugal)) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{C9083B9D-9092-FF22-DDCC-9776E69BE816}" = ATI Catalyst Install Manager
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Broadcom 802.11 Wireless LAN Adapter" = Broadcom 802.11 Wireless LAN Adapter
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PTG Language Pack" = Microsoft .NET Framework 4 Client Profile PTG Language Pack
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WinRAR archiver" = WinRAR 4.20 (64-bit)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00FF3F93-F2CE-BFBE-347E-C49F3A1780D9}" = CCC Help Dutch
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{062E4D94-8306-46D5-81B6-45E6AD09C799}" = Windows Live Messenger
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0EC0B576-90F9-43C3-8FAD-A4902DF4B8F4}" = Galeria de Fotografias do Windows Live
"{198EA334-8A3F-4CB2-9D61-6C10B8168A6F}" = Windows Live Writer
"{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}" = Microsoft Default Manager
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{223B6018-B8A2-7090-7BA9-4E2002DCAB86}" = Catalyst Control Center InstallProxy
"{25A381E1-0AB9-4E7A-ACCE-BA49D519CF4E}" = Windows Live Mail
"{26A24AE4-039D-4CA4-87B4-2F83216024FF}" = Java 6 Update 24
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2D37F6AE-D201-4580-B91A-6BF9BB93ED2D}" = Os Sims™ 2 Double Deluxe
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{370F888E-42A7-4911-9E34-7D74632E17EB}" = Windows Live Photo Common
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7
"{3ECBC47D-7913-8D9D-8703-DC1969CB252A}" = CCC Help Danish
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}" = HP Advisor
"{43861B2A-0548-46B7-56E3-F2AB01311C7E}" = CCC Help Greek
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4EDCB0CC-305A-2D52-E9A5-E6CA59DFF2F7}" = CCC Help Turkish
"{4F80ACED-DE98-ECF3-0559-098936A13994}" = Catalyst Control Center Graphics Full New
"{506FC723-8E6C-4417-9CFF-351F99130425}" = Windows Live UX Platform Language Pack
"{51343725-98F7-D613-E46D-3C2198DF0162}" = Catalyst Control Center Core Implementation
"{587139F5-9B76-4D5A-94C6-76E6B219BF7F}" = Windows Live Sync
"{5B368D4C-738B-49AF-9624-ED5273735756}" = HP Software Framework
"{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}" = HP Deskjet 1050 J410 series Ajuda
"{621E909B-9AD0-8E66-336F-5B0284145719}" = CCC Help Japanese
"{63CE9AEA-F3F7-C1DC-EC4E-27A0DF0B9261}" = Catalyst Control Center Graphics Previews Common
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel® Management Engine Components
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6AFDE3BE-BC01-45A4-9D06-BBF5AD207313}" = LightScribe System Software
"{6B78BA3C-795D-C47D-5DD3-BEA98FF7CD6C}" = CCC Help Norwegian
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{6F4B5D6B-6FA4-ACDE-F89C-BF437D2302AF}" = Catalyst Control Center Graphics Light
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{76E108BF-C1B2-A945-9EFC-FFA030D20E1E}" = CCC Help Russian
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{8354E8D3-B6FF-079F-E82F-73128A84A354}" = CCC Help Hungarian
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{90120000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2007
"{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0015-0816-0000-0000000FF1CE}" = Microsoft Office Access MUI (Portuguese (Portugal)) 2007
"{90120000-0015-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0816-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Portuguese (Portugal)) 2007
"{90120000-0016-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0816-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Portuguese (Portugal)) 2007
"{90120000-0018-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0816-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Portuguese (Portugal)) 2007
"{90120000-0019-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0816-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Portuguese (Portugal)) 2007
"{90120000-001A-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0816-0000-0000000FF1CE}" = Microsoft Office Word MUI (Portuguese (Portugal)) 2007
"{90120000-001B-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0816-0000-0000000FF1CE}" = Microsoft Office Proof (Portuguese (Portugal)) 2007
"{90120000-001F-0816-0000-0000000FF1CE}_PROPLUS_{C8246FCF-12F8-4212-BC89-6ED049BA2FB8}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0816-1000-0000000FF1CE}_PROPLUS_{5E03E01D-304F-474D-B85F-06B2C9AE0583}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0816-0000-0000000FF1CE}" = Microsoft Office Proofing (Portuguese (Portugal)) 2007
"{90120000-0044-0816-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Portuguese (Portugal)) 2007
"{90120000-0044-0816-0000-0000000FF1CE}_PROPLUS_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0816-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Portuguese (Portugal)) 2007
"{90120000-006E-0816-0000-0000000FF1CE}_PROPLUS_{5E03E01D-304F-474D-B85F-06B2C9AE0583}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{934B3B9F-8B5F-AA7F-770E-117C9B7B4DCA}" = CCC Help Czech
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{99CFB83D-D10A-F740-2EE5-02BB86F79BBB}" = CCC Help Chinese Standard
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9B90C530-7A5F-7997-6275-A66AB973148B}" = CCC Help Italian
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAC22E56-5466-8E1E-4533-81E0AC51120B}" = CCC Help Spanish
"{AB4CE98A-220A-1F05-A513-6CA5C9F34A8A}" = Catalyst Control Center Graphics Previews Vista
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.4.6 MUI
"{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update
"{B618C3BF-5142-4630-81DD-F96864F97C7E}" = Windows Live Essentials
"{C1A0D5F7-02F3-4D95-872A-0E56CF968DC6}" = Catalyst Control Center - Branding
"{C2483D27-D725-95FD-6EBF-8AAE23A8342C}" = CCC Help Portuguese
"{C388F68C-5AA9-ECE2-6FD7-73EB09FD5130}" = CCC Help Korean
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C829AA7D-3113-0942-06D1-1A2CFA850920}" = CCC Help French
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CC639DE4-356A-B032-BE59-52ED46879591}" = CCC Help Thai
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D3058349-D2ED-4A3B-651B-9882B3BD7F8D}" = Catalyst Control Center Localization All
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"{D3E9CA09-20E8-F218-15F3-3E1CA0EEFB4D}" = PX Profile Update
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}" = Intel® Turbo Boost Technology Driver
"{D7A1C3CB-1F27-4EAA-98DF-D266CA6B67D3}" = Microsoft Works
"{D895ACBB-697F-1C12-6E3F-3A6229D19857}" = CCC Help German
"{D8DFA46A-39F7-4368-810D-18AFCFDDAEAF}" = Adobe Shockwave Player
"{D9ABACA0-5C8B-6D8E-6881-65EF2F13B987}" = CCC Help Polish
"{DAEF48AD-89C8-4A93-B1DD-45B7E4FB6071}" = Windows Live Movie Maker
"{DE22695F-CB6A-B64F-8477-275C1FCF3001}" = Catalyst Control Center Graphics Full Existing
"{DE8F99FD-2FC7-4C98-AA67-2729FDE1F040}" = Windows Live Writer Resources
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E10AD9B8-1A7C-87E9-2ABE-8F852A89A369}" = CCC Help English
"{E2831862-F131-4327-B9CC-FA30F587EB6C}" = HP Setup
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{EA17F4FC-FDBF-4CF8-A529-2D983132D053}" = Skype™ 6.0
"{EAA941D9-93E7-2C0B-0754-0806755CD5F3}" = ccc-core-static
"{EE202411-2C26-49E8-9784-1BC1DBF7DE96}" = HP Support Assistant
"{EF0970F3-19FE-CDA9-837B-C9EA53D5DBED}" = CCC Help Finnish
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F37935A0-AFC8-47F9-8B7D-D09E88FCA0B8}" = HP User Guides 0211
"{F580D6C2-140E-143A-1013-3C3A4FCCB3A1}" = CCC Help Chinese Traditional
"{F9842DD1-81B6-AF2C-72C2-F28B56A5B6DF}" = CCC Help Swedish
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"avast" = avast! Free Antivirus
"EasyBits Magic Desktop" = Magic Desktop
"HP Photo Creations" = HP Photo Creations
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versão 1.70.0.1100
"ManyCam" = ManyCam 3.0.79 (remove only)
"MSC" = McAfee Total Protection
"My HP Game Console" = HP Game Console
"PROPLUS" = Microsoft Office Professional Plus 2007
"TUTO4PC_PT_4_is1" = TUTO4PC
"WildTangent hp Master Uninstall" = HP Games
"WinLiveSuite" = Windows Live Essentials
"WT082122" = Blackhawk Striker 2
"WT082124" = Blasterball 3
"WT082133" = Dora's Carnival Adventure
"WT082141" = FATE
"WT082168" = Penguins!
"WT082170" = Plants vs. Zombies
"WT082171" = Poker Superstars III
"WT082172" = Polar Bowler
"WT082173" = Polar Golfer
"WT082188" = Virtual Families
"WT082192" = Bejeweled 2 Deluxe
"WT082200" = Chuzzle Deluxe
"WT082241" = Virtual Villagers - The Secret City
"WT082439" = Bus Driver
"WT082442" = Faerie Solitaire
"WT082443" = Jewel Quest 3
"WT082463" = Zuma's Revenge
"WT083484" = Escape Rosecliff Island
"WT083492" = Agatha Christie - Death on the Nile
========== HKEY_CURRENT_USER Uninstall List ==========
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Google Chrome" = Google Chrome
========== Last 20 Event Log Errors ==========
[ Application Events ]
Error - 24-12-2012 18:40:56 | Computer Name = Utilizador-PC | Source = Microsoft-Windows-Defrag | ID = 257
Description =
Error - 27-12-2012 17:06:45 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 28-12-2012 14:01:06 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 29-12-2012 22:47:10 | Computer Name = Utilizador-PC | Source = Application Error | ID = 1000
Description = Nome da aplicação com falha: CCC.exe, versão: 2.0.0.0, carimbo de
data/hora: 0x49ef8e09 Nome do módulo com falha: mscorwks.dll, versão: 2.0.50727.5466,
carimbo de data/hora: 0x503ef7aa Código de excepção: 0xc0000409 Desvio de falha:
0x0000000000506519 ID do processo com falha: 0x14d4 Data/hora de início da aplicação
com falha: 0x01cde5dbf5610822 Caminho da aplicação com falha: C:\Program Files (x86)\ATI
Technologies\ATI.ACE\Core-Static\CCC.exe Caminho do módulo com falha: C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorwks.dll
ID
do Relatório: 34721c7a-522b-11e2-99f0-8acfc7e156b5
Error - 31-12-2012 14:08:33 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 06-01-2013 16:04:36 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 07-01-2013 15:42:44 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 09-01-2013 17:21:12 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 11-01-2013 18:13:30 | Computer Name = Utilizador-PC | Source = SideBySide | ID = 16842815
Description = A geração do contexto de activação falhou para "c:\Program Files (x86)\Common
Files\Adobe AIR\Versions\1.0\Adobe AIR.dll". Ocorreu um erro no manifesto ou ficheiro
de política "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll"
na linha 3. O valor "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR"
do atributo "version" no elemento "assemblyIdentity" é inválido.
Error - 11-01-2013 21:05:01 | Computer Name = Utilizador-PC | Source = Application Hang | ID = 1002
Description = O programa OTL (1).exe versão 3.2.69.0 deixou de interagir com o Windows
e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema,
consulte o histórico de problemas no painel de controlo do Centro de Acção. ID do
Processo: 1068 Hora de Início: 01cdf06071296ae5 Hora de Fim: 3 Caminho da Aplicação:
C:\Users\Utilizador\Downloads\OTL (1).exe ID do Relatório:
[ Hewlett-Packard Events ]
Error - 17-05-2012 06:27:59 | Computer Name = Utilizador-PC | Source = hpsa_service.exe | ID = 2000
Description = HP Error ID: -2146233088 em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()
em HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Message: Failed to perform update. StackTrace: em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()
em HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Source: HP.ActiveCheckLocalMode.SessionManager InnerException.Message:
O objecto '/efd35a31_e1dd_43f6_a584_a56673b289d8/b17tnnfcowdfa+k2ncnjavcr_5.rem'
foi desligado ou não existe no servidor. Name: hpsa_service.exe Version: 06.00.01.01
Path:
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe Format:
pt-PT RAM: 3893 Ram Utilization: 40 TargetSite: Void UpdateDetail(System.String)
Error - 12-06-2012 20:00:23 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2146233088 em HPSFConfigReader.ConfigHelper.loadXML()
em HPSFConfigReader.ConfigHelper..ctor() em HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean
isOnAppLoad) Message: Tipo de excepção 'System.Exception' accionado. StackTrace:
em HPSFConfigReader.ConfigHelper.loadXML() em HPSFConfigReader.ConfigHelper..ctor()
em HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean
isOnAppLoad) Source: HPSFConfigReader Name: HPSF.exe Version: 06.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pt-PT RAM: 3893
Ram
Utilization: 40 TargetSite: Void loadXML()
Error - 12-06-2012 20:00:25 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 2000
Description =
Error - 12-06-2012 20:00:33 | Computer Name = Utilizador-PC | Source = HPSFMsgr.exe | ID = 2000
Description = HP Error ID: -2146233087 Server stack trace: em System.ServiceModel.Channels.CommunicationObject.ThrowIfDisposedOrNotOpen()
em System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway,
ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout)
em System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage
methodCall, ProxyOperationRuntime operation) em System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage
message) Exception rethrown at [0] Message: O objecto de comunicação, System.ServiceModel.Channels.ServiceChannel,
não pode ser utilizado para comunicação porque foi Abortado. StackTrace: Server stack
trace: em System.ServiceModel.Channels.CommunicationObject.ThrowIfDisposedOrNotOpen()
em System.ServiceModel.Channels.ServiceChannel.Call(String action, Boolean oneway,
ProxyOperationRuntime operation, Object[] ins, Object[] outs, TimeSpan timeout)
em System.ServiceModel.Channels.ServiceChannelProxy.InvokeService(IMethodCallMessage
methodCall, ProxyOperationRuntime operation) em System.ServiceModel.Channels.ServiceChannelProxy.Invoke(IMessage
message) Exception rethrown at [0]: em System.Runtime.Remoting.Proxies.RealProxy.HandleReturnMessage(IMessage
reqMsg, IMessage retMsg) em System.Runtime.Remoting.Proxies.RealProxy.PrivateInvoke(MessageData&
msgData, Int32 type) em HP.SupportFramework.Communicator.MessengerComm.IMessengerCommunicatorCallback.PostponeTuneup(PostponeTime
time) em HPSA_Messenger.MessengerPopUpWindow.btnStackRemindMeLater_Click(Object
sender, RoutedEventArgs e) Source: mscorlib Name: HPSFMsgr.exe Version: 01.00.00.00
Path:
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe
Format:
pt-PT RAM: 3893 Ram Utilization: 40 TargetSite: Void HandleReturnMessage(System.Runtime.Remoting.Messaging.IMessage,
System.Runtime.Remoting.Messaging.IMessage)
Error - 14-06-2012 09:22:22 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2146233088 em HPSFConfigReader.ConfigHelper.loadXML()
em HPSFConfigReader.ConfigHelper..ctor() em HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean
isOnAppLoad) Message: Tipo de excepção 'System.Exception' accionado. StackTrace:
em HPSFConfigReader.ConfigHelper.loadXML() em HPSFConfigReader.ConfigHelper..ctor()
em HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean
isOnAppLoad) Source: HPSFConfigReader Name: HPSF.exe Version: 06.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pt-PT RAM: 3893
Ram
Utilization: 50 TargetSite: Void loadXML()
Error - 14-06-2012 09:22:24 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261HPSF.exe em HP.SupportAssistant.Common.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
A referência de objecto não foi definida como uma instância de um objecto. StackTrace:
em HP.SupportAssistant.Common.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportAssistant.Common Name: HPSF.exe Version: 06.00.01.01 Path: C:\Program Files
(x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pt-PT RAM: 3893 Ram Utilization:
50 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 14-06-2012 09:22:25 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2147467261HPSF.exe em HP.SupportAssistant.Common.CustomerExperience.HPSASession.AddNavigationProperties()
Message:
A referência de objecto não foi definida como uma instância de um objecto. StackTrace:
em HP.SupportAssistant.Common.CustomerExperience.HPSASession.AddNavigationProperties()
Source:
HP.SupportAssistant.Common Name: HPSF.exe Version: 06.00.01.01 Path: C:\Program Files
(x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pt-PT RAM: 3893 Ram Utilization:
50 TargetSite: HP.SupportFramework.HPSFReporting._Property[] AddNavigationProperties()
Error - 21-06-2012 08:59:24 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 2000
Description = HP Error ID: -2146233088 em HPSFConfigReader.ConfigHelper.loadXML()
em HPSFConfigReader.ConfigHelper..ctor() em HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean
isOnAppLoad) Message: Tipo de excepção 'System.Exception' accionado. StackTrace:
em HPSFConfigReader.ConfigHelper.loadXML() em HPSFConfigReader.ConfigHelper..ctor()
em HP.SupportAssistant.Engine.Resources.ResourceTasks.LoadApplicationResources(Boolean
isOnAppLoad) Source: HPSFConfigReader Name: HPSF.exe Version: 06.00.01.01 Path: C:\Program
Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe Format: pt-PT RAM: 3893
Ram
Utilization: 40 TargetSite: Void loadXML()
Error - 06-09-2012 10:24:19 | Computer Name = Utilizador-PC | Source = hpsa_service.exe | ID = 2000
Description = HP Error ID: -2146233088 em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()
em HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Message: Failed to perform update. StackTrace: em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String
category) em HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore()
em HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan,
Boolean localScan) Source: HP.ActiveCheckLocalMode.SessionManager InnerException.Message:
O objecto '/a0ecacbe_23b2_43fa_8909_d0a4ab2a2740/z6_f1vt91ni0ig_njsebilz3_5.rem'
foi desligado ou não existe no servidor. Name: hpsa_service.exe Version: 06.00.01.01
Path:
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe Format:
pt-PT RAM: 3893 Ram Utilization: TargetSite: Void UpdateDetail(System.String)
Error - 20-09-2012 07:26:19 | Computer Name = Utilizador-PC | Source = HPSF.exe | ID = 4000
Description =
[ HP Software Framework Events ]
Error - 06-09-2012 10:24:25 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-09-06 15:24:25.164|00001B3C|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 06-09-2012 10:24:28 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-09-06 15:24:28.348|00000C60|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 06-09-2012 10:24:35 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-09-06 15:24:35.537|00001850|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 06-09-2012 10:24:36 | Computer Name = Utilizador-PC | Source = hpCasl | ID = 5
Description = 2012-09-06 15:24:36.175|00001850|Error |[hpcasl]Global::CheckforValidSignature{bool()}|Calling
process C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Warranty\CASLExec.exe
does not have a valid signature. HP CASL loading aborted
Error - 20-09-2012 07:26:34 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-09-20 12:26:34.840|00002478|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 20-09-2012 07:26:38 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-09-20 12:26:38.328|00002AFC|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 20-09-2012 07:26:39 | Computer Name = Utilizador-PC | Source = hpCasl | ID = 5
Description = 2012-09-20 12:26:39.783|00002AFC|Error |[hpcasl]Global::CheckforValidSignature{bool()}|Calling
process C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Warranty\CASLExec.exe
does not have a valid signature. HP CASL loading aborted
Error - 27-09-2012 14:17:50 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-09-27 19:17:50.806|00001AD4|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 11-10-2012 09:31:24 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-10-11 14:31:24.045|00001548|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
Error - 01-11-2012 10:57:41 | Computer Name = Utilizador-PC | Source = CaslWmi | ID = 5
Description = 2012-11-01 14:57:41.619|00000E60|Error |[CaslWmi]CommandFolio::A{hpCasl.enReturnCode(int&)}|Error
0xe_BIOS_INVALID_COMMAND_TYPE from BIOS WMI call Read/2Eh while getting Folio state
[ HP Wireless Assistant Events ]
Error - 22-05-2011 13:05:34 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 23-05-2011 12:37:42 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 24-05-2011 09:14:45 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 25-05-2011 12:25:40 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 26-05-2011 09:01:42 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 26-05-2011 12:18:15 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 27-05-2011 12:12:54 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 27-05-2011 15:24:52 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 27-05-2011 17:23:11 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
Error - 28-05-2011 06:23:59 | Computer Name = Utilizador-PC | Source = HP WA Service | ID = 0
Description = GetPanelBrightnessTables() failed : e_BIOS_INVALID_COMMAND_TYPE
[ System Events ]
Error - 11-01-2013 20:17:36 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7001
Description = O serviço Agrupamento de Redes Ponto a Ponto depende do serviço Protocolo
PNRP (Peer Name Resolution Protocol) o qual falhou o arranque devido ao seguinte
erro: %%-2140993535
Error - 11-01-2013 20:20:01 | Computer Name = Utilizador-PC | Source = PNRPSvc | ID = 102
Description =
Error - 11-01-2013 20:20:01 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7023
Description = O serviço Protocolo PNRP (Peer Name Resolution Protocol) terminou
com o seguinte erro: %%-2140993535
Error - 11-01-2013 20:20:01 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7001
Description = O serviço Agrupamento de Redes Ponto a Ponto depende do serviço Protocolo
PNRP (Peer Name Resolution Protocol) o qual falhou o arranque devido ao seguinte
erro: %%-2140993535
Error - 11-01-2013 20:20:11 | Computer Name = Utilizador-PC | Source = PNRPSvc | ID = 102
Description =
Error - 11-01-2013 20:20:11 | Computer Name = Utilizador-PC | Source = PNRPSvc | ID = 102
Description =
Error - 11-01-2013 20:20:11 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7023
Description = O serviço Protocolo PNRP (Peer Name Resolution Protocol) terminou
com o seguinte erro: %%-2140993535
Error - 11-01-2013 20:20:11 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7001
Description = O serviço Agrupamento de Redes Ponto a Ponto depende do serviço Protocolo
PNRP (Peer Name Resolution Protocol) o qual falhou o arranque devido ao seguinte
erro: %%-2140993535
Error - 11-01-2013 20:20:11 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7023
Description = O serviço Protocolo PNRP (Peer Name Resolution Protocol) terminou
com o seguinte erro: %%-2140993535
Error - 11-01-2013 20:20:11 | Computer Name = Utilizador-PC | Source = Service Control Manager | ID = 7001
Description = O serviço Agrupamento de Redes Ponto a Ponto depende do serviço Protocolo
PNRP (Peer Name Resolution Protocol) o qual falhou o arranque devido ao seguinte
erro: %%-2140993535
< End of report >