Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Internet problems and bluescreen


  • Please log in to reply

#1
Vicdd

Vicdd

    Member

  • Member
  • PipPip
  • 19 posts

I can't get my internet (cable) to work. The wi-fi connection works "fine" (keeps shutting off but maybe that's related to my distance to my internet modem).

Also, i get bluescreens out of nowhere. Tried doin an otl scan but i don't know if the bluscreen stopped the scan or not. Tried doing it again but the bluescreen don't let me do it.  Here it is anyway:

 

OTL logfile created on: 04/01/2015 22:05:09 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Victor\Downloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 00000416 | Country: Brasil | Language: PTB | Date Format: dd/MM/yyyy
 
3,93 Gb Total Physical Memory | 1,57 Gb Available Physical Memory | 39,86% Memory free
7,48 Gb Paging File | 4,92 Gb Available in Paging File | 65,76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,40 Gb Total Space | 2,01 Gb Free Space | 0,67% Space Free | Partition Type: NTFS
Drive D: | 287,67 Gb Total Space | 3,23 Gb Free Space | 1,12% Space Free | Partition Type: NTFS
 
Computer Name: WIN7-PC | User Name: Victor | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\Victor\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe (Adobe Systems, Inc.)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Program Files\AVAST Software\Avast\avastui.exe (AVAST Software)
PRC - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
PRC - C:\Program Files (x86)\foobar2000\foobar2000.exe (Piotr Pawlowski)
PRC - C:\Users\Victor\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe (SanDisk Corporation)
PRC - C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent, Inc.)
PRC - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation)
PRC - C:\Users\Victor\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC)
PRC - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation)
PRC - C:\Windows\SysWOW64\PnkBstrA.exe ()
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ()
MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
MOD - C:\Program Files\AVAST Software\Avast\aswProperty.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\foobar2000\components\foo_input_std.dll ()
MOD - C:\Program Files (x86)\foobar2000\shared.dll ()
MOD - C:\Program Files (x86)\foobar2000\components\foo_ui_std.dll ()
MOD - C:\Program Files (x86)\foobar2000\zlib1.dll ()
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software)
SRV:64bit: - (IEEtwCollectorService) -- C:\Windows\SysNative\IEEtwCollector.exe (Microsoft Corporation)
SRV:64bit: - (NvStreamSvc) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (Steam Client Service) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (NvNetworkService) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation)
SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe ()
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - (aswSnx) -- C:\Windows\SysNative\drivers\aswsnx.sys (AVAST Software)
DRV:64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswsp.sys (AVAST Software)
DRV:64bit: - (aswVmm) -- C:\Windows\SysNative\drivers\aswVmm.sys ()
DRV:64bit: - (aswStm) -- C:\Windows\SysNative\drivers\aswStm.sys (AVAST Software)
DRV:64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (AVAST Software)
DRV:64bit: - (aswRvrt) -- C:\Windows\SysNative\drivers\aswRvrt.sys ()
DRV:64bit: - (aswHwid) -- C:\Windows\SysNative\drivers\aswHwid.sys ()
DRV:64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr2.sys (AVAST Software)
DRV:64bit: - (nvvad_WaveExtensible) -- C:\Windows\SysNative\drivers\nvvad64v.sys (NVIDIA Corporation)
DRV:64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (dtsoftbus01) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys (DT Soft Ltd)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys (Duplex Secure Ltd.)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (PxHlpa64) -- C:\Windows\SysNative\drivers\PxHlpa64.sys (Corel Corporation)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (rtl8192se) -- C:\Windows\SysNative\drivers\rtl8192se.sys (Realtek Semiconductor Corporation                           )
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (npf) -- C:\Windows\SysNative\drivers\npf.sys (CACE Technologies, Inc.)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (xusb21) -- C:\Windows\SysNative\drivers\xusb21.sys (Microsoft Corporation)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (L1C) -- C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}: "URL" = http://start.iminent...q={searchTerms}
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://br.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pt-BR
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E2 E8 75 FC B2 C4 CF 01  [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IESR02
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
========== FireFox ==========
 
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.25.2: C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.25.2: C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@t.garena.com/garenatalk: C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Victor\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\Iminent\[email protected]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015/01/04 11:33:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 34.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 34.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 
[2014/01/26 11:42:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\Extensions
[2014/12/23 12:55:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\Firefox\Profiles\mknxlisv.default\extensions
[2014/12/22 18:42:47 | 000,433,727 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\[email protected]
[2014/12/23 12:55:51 | 004,178,155 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\[email protected]
[2014/10/21 20:40:47 | 000,537,656 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
[2014/06/07 21:30:00 | 000,013,460 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\{1fc895a6-2042-46ec-a61b-233165b4c218}.xpi
[2014/12/08 21:54:54 | 000,202,127 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
[2014/11/12 21:29:02 | 000,979,699 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2014/10/30 13:24:55 | 000,304,000 | ---- | M] () (No name found) -- C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
[2014/12/09 16:31:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2014/12/09 16:32:02 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014/12/09 16:31:43 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\[email protected]
 
========== Chrome  ==========
 
CHR - default_search_provider:  (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Extensions\eecoahjklhopckkiefihjloeidikepdh\0.4.2_0\
CHR - Extension: No name found = C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
 
O1 HOSTS File: ([2009/06/10 19:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:64bit: - BHO: (no name) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - No CLSID value found.
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (no name) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - No CLSID value found.
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (no name) - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - No CLSID value found.
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [Nvtmru] C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Iminent] C:\Program Files (x86)\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C" File not found
O4 - HKLM..\Run: [IminentMessenger] C:\Program Files (x86)\Iminent\Iminent.Messengers.exe File not found
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [f.lux] C:\Users\Victor\AppData\Local\FluxSoftware\Flux\flux.exe (Flux Software LLC)
O4 - HKCU..\Run: [SansaDispatch] C:\Users\Victor\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe (SanDisk Corporation)
O4 - HKCU..\Run: [uTorrent] C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 91 00 00 00  [binary data]
O9 - Extra Button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CE9E0649-6612-489D-9CD2-EAF341CC01D4}: DhcpNameServer = 10.0.0.1
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2015/01/02 18:39:07 | 000,000,000 | ---D | C] -- C:\Users\Victor\Documents\Klei
[2015/01/02 12:54:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by Decepticon
[2015/01/02 12:53:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\by Decepticon
[2014/12/19 13:26:27 | 000,000,000 | ---D | C] -- C:\Users\Victor\AppData\Roaming\Siggy Holiday - Freebird Games
[2014/12/15 12:33:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FTL
[2014/12/11 22:23:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2014/12/09 16:31:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/12/08 20:58:49 | 000,000,000 | ---D | C] -- C:\Users\Victor\AppData\Local\gtk-2.0
[2014/12/08 20:55:21 | 000,000,000 | ---D | C] -- C:\Users\Victor\AppData\Roaming\HexChat
[2014/12/08 20:55:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HexChat
[2014/12/08 20:55:05 | 000,000,000 | ---D | C] -- C:\Program Files\HexChat
[2014/05/15 15:24:48 | 000,607,664 | ---- | C] (Neople inc) -- C:\Users\Victor\AppData\Local\DFOIns.exe
[2014/05/15 15:24:21 | 000,477,104 | ---- | C] (Neople inc) -- C:\Users\Victor\AppData\Local\NeopleCustomURLStarter.exe
[3 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2015/01/04 22:02:01 | 000,000,902 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/01/04 21:47:02 | 000,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/01/04 21:40:26 | 000,017,168 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/01/04 21:40:26 | 000,017,168 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/01/04 21:32:16 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/01/04 21:32:12 | 523,996,821 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2015/01/04 21:32:11 | 3162,918,912 | -HS- | M] () -- C:\hiberfil.sys
[2015/01/02 12:54:59 | 000,001,070 | ---- | M] () -- C:\Users\Victor\Desktop\Dont Starve.lnk
[2014/12/27 11:28:32 | 001,643,894 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/12/27 11:28:32 | 000,708,998 | ---- | M] () -- C:\Windows\SysNative\prfh0416.dat
[2014/12/27 11:28:32 | 000,657,414 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/12/27 11:28:32 | 000,148,738 | ---- | M] () -- C:\Windows\SysNative\prfc0416.dat
[2014/12/27 11:28:32 | 000,123,226 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/12/16 21:06:42 | 000,048,582 | ---- | M] () -- C:\Users\Victor\Documents\xin1.jpg
[2014/12/16 21:06:34 | 000,038,402 | ---- | M] () -- C:\Users\Victor\Documents\xin2.jpg
[2014/12/08 21:34:07 | 000,000,761 | ---- | M] () -- C:\Users\Victor\AppData\Local\recently-used.xbel
[3 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2015/01/04 21:32:12 | 523,996,821 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2015/01/03 21:52:58 | 000,001,995 | ---- | C] () -- C:\Users\Public\Desktop\This War of Mine.lnk
[2015/01/02 12:54:59 | 000,001,070 | ---- | C] () -- C:\Users\Victor\Desktop\Dont Starve.lnk
[2014/12/16 21:06:41 | 000,048,582 | ---- | C] () -- C:\Users\Victor\Documents\xin1.jpg
[2014/12/16 21:06:33 | 000,038,402 | ---- | C] () -- C:\Users\Victor\Documents\xin2.jpg
[2014/12/11 22:23:10 | 000,000,902 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/12/08 21:34:07 | 000,000,761 | ---- | C] () -- C:\Users\Victor\AppData\Local\recently-used.xbel
[2014/08/17 21:45:15 | 000,112,640 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2014/07/07 17:12:38 | 000,000,057 | ---- | C] () -- C:\Windows\sierra.ini
[2014/06/04 21:48:47 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\IN_SPC.DLL
[2014/06/04 21:48:47 | 000,122,880 | ---- | C] () -- C:\Windows\SysWow64\SPC700EMU.DLL
[2014/06/04 21:48:47 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\MCISPCDLG.DLL
[2014/06/04 21:48:47 | 000,013,824 | ---- | C] () -- C:\Windows\SysWow64\OUT_WAVE.DLL
[2014/04/08 15:42:56 | 000,021,764 | ---- | C] () -- C:\Windows\SysWow64\CoreAAC-uninstall.exe
[2014/01/29 21:53:44 | 000,007,680 | ---- | C] () -- C:\Users\Victor\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/07/23 16:40:36 | 000,191,860 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2013/06/16 20:08:05 | 000,281,688 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013/06/16 20:07:40 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013/03/10 23:41:35 | 000,000,266 | ---- | C] () -- C:\Windows\n02.ini
[2013/01/10 22:02:05 | 001,609,168 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
 
========== ZeroAccess Check ==========
 
[2009/07/14 02:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/06/25 00:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/24 23:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 23:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 10:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 23:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2014/11/22 20:40:48 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\11bitstudios
[2014/09/02 21:32:53 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\AVAST Software
[2014/08/17 21:31:25 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\avidemux
[2014/07/13 23:59:16 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Awesomium
[2014/10/06 11:05:11 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Battle.net
[2014/05/12 16:34:50 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Bioshock
[2013/05/27 00:18:37 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Bioshock Infinite
[2013/05/26 16:09:27 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Bioshock2
[2014/05/13 18:08:34 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Bioshock2Steam
[2014/10/25 19:46:31 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\CDisplayEx
[2014/11/22 20:36:11 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\CUE Tools
[2014/04/18 13:38:17 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\CUERipper
[2014/06/04 14:50:48 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Curse
[2014/06/07 21:42:19 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Curse Client
[2015/01/04 17:30:21 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\DAEMON Tools Lite
[2014/04/30 16:24:48 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\DarkSoulsII
[2013/01/10 08:47:11 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Dustforce
[2014/10/29 20:20:54 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\EAC
[2013/07/16 19:26:05 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Emulation
[2013/08/20 22:40:39 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\FEZ
[2014/01/08 07:37:12 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\FileZilla
[2013/07/05 21:29:36 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\FLT
[2015/01/04 21:25:27 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\foobar2000
[2014/01/26 11:06:47 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\GarenaPlus
[2014/12/10 22:40:42 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\HexChat
[2014/08/31 02:18:53 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Hotspot Shield
[2014/08/01 20:29:02 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\ImgBurn
[2014/12/05 00:13:57 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\IrfanView
[2013/01/04 16:40:38 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\LolClient
[2014/01/23 03:24:58 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\LoneSurvivor
[2014/02/06 23:39:46 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\LS
[2014/04/12 15:57:04 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\MediaMonkey
[2014/12/20 15:58:24 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Mp3tag
[2014/08/31 21:12:09 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\NetworkTunnel
[2014/04/06 10:29:49 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Nitroplus
[2014/09/02 16:48:41 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\OBS
[2014/05/22 14:46:33 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Oracle
[2014/09/02 20:47:06 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\PFStaticIP
[2014/09/02 20:16:29 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\PortForward.com
[2015/01/04 17:30:22 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\puush
[2014/08/15 21:23:54 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\qBittorrent
[2014/01/26 11:36:36 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\raidcall
[2014/08/31 15:40:39 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Riot Games
[2014/01/31 02:51:35 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\rockbox.org
[2014/11/29 23:57:46 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Rogue Legacy
[2014/01/31 02:38:19 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\SanDisk
[2014/05/11 17:43:11 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\ShanghaiAlice
[2014/12/19 13:26:27 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Siggy Holiday - Freebird Games
[2013/01/30 15:58:10 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\StepMania 5
[2014/07/08 12:16:33 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\TLDCEPC
[2014/05/22 00:36:21 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Transistor
[2014/08/30 21:44:27 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Trine1
[2014/04/28 15:11:03 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Unity
[2015/01/04 22:24:37 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\uTorrent
[2014/10/06 11:05:02 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\XnView
[2014/08/01 21:58:35 | 000,000,000 | ---D | M] -- C:\Users\Victor\AppData\Roaming\Yacht Club Games
 
========== Purity Check ==========
 
 

< End of report >

I beg for help.


Edited by Vicdd, 04 January 2015 - 06:54 PM.

  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP
What Make and model is the PC?
 
 
Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer
 
NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.
 
Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).
 
scan-results.jpg
 
Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.
 
The report will be saved in the C:\AdwCleaner folder.
 
 
 
Junkware-Removal-Tool
 
Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site
  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
 
 
 
 
Please download Farbar Recovery Scan Tool and save it to your Desktop. 
 
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
 
  •  
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer. 
  • Press Scan button. 
  • It will produce a log called FRST.txt in the same directory the tool is run from.  
  • Please copy and paste log back here. 
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply. 
 
 
 

 
Download BlueScreenView
 
Double click on BlueScreenView.exe file to run the program.
When scanning is done, go Edit, Select All.
 
Go File, Save Selected Items, and save the report as BSOD.txt.
Open BSOD.txt in Notepad, copy all content, and paste it into your next reply.
 
 

  • 0

#3
Vicdd

Vicdd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 19 posts

In the AdwCleaner report, there are some words in portuguese, if there's any problem i can try to run it with applocale. Also, i may have cleaned the file that was unticked in your image by accident.

Edit: hm, the reports are mixed. i will put the order here: (i did the process in the order, though): FRST report, AdwCLeaner (clean), AdwCLeaner (scan), JRT, Bluescreenview.

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-01-2015
Ran by Victor (administrator) on WIN7-PC on 05-01-2015 23:23:37
Running from C:\Users\Victor\Desktop
Loaded Profile: Victor (Available profiles: Valmir & Victor)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Português (Brasil)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(SanDisk Corporation) C:\Users\Victor\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-08-27] (NVIDIA Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [UCam_Menu] => C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [218408 2009-02-17] (CyberLink Corp.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-09-02] (AVAST Software)
HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Run: [uTorrent] => C:\Users\Victor\AppData\Roaming\uTorrent\uTorrent.exe [969104 2014-01-29] (BitTorrent, Inc.)
HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Run: [SansaDispatch] => C:\Users\Victor\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe [613888 2014-01-31] (SanDisk Corporation)
HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Run: [f.lux] => C:\Users\Victor\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x91000000
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://br.msn.com/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin HKU\S-1-5-21-3226518602-2015988684-2284767806-1003: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Victor\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\buscape.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mercadolivre.xml
FF Extension: Classic Theme Restorer - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\[email protected] [2014-05-11]
FF Extension: MEGA - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\[email protected] [2014-07-13]
FF Extension: Session Manager - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi [2013-01-08]
FF Extension: StreamBurner - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\{1fc895a6-2042-46ec-a61b-233165b4c218}.xpi [2014-06-07]
FF Extension: Stylish - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2014-08-06]
FF Extension: Adblock Plus - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-10-12]
FF Extension: Greasemonkey - C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2013-11-07]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\[email protected] [2014-12-09]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-09-02]

Chrome:
=======
CHR HomePage: Default -> www.google.com
CHR StartupUrls: Default -> "www.google.com"
CHR Profile: C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (NicoNico Audio Extractor) - C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Extensions\eecoahjklhopckkiefihjloeidikepdh [2014-07-12]
CHR Extension: (Google Wallet) - C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-28]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-09-02]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-09-02] (AVAST Software)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-06-16] ()
S2 HiPatchService; D:\Hi-Rez Studios\HiPatchService.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-09-02] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-09-02] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-09-02] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-09-02] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-11-21] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-09-02] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-09-02] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-09-02] ()
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-05-12] (DT Soft Ltd)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-01-04] (Duplex Secure Ltd.)
U3 ajx8vw4l; C:\Windows\System32\Drivers\ajx8vw4l.sys [0 ] (Advanced Micro Devices)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [X]
S3 RSUSBSTOR; System32\Drivers\RtsUStor.sys [X]
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-05 23:23 - 2015-01-05 23:24 - 00014230 _____ () C:\Users\Victor\Desktop\FRST.txt
2015-01-05 23:21 - 2015-01-05 23:21 - 00001554 _____ () C:\Users\Victor\Desktop\JRT.txt
2015-01-05 23:08 - 2015-01-05 23:08 - 00000000 ____D () C:\Windows\ERUNT
2015-01-05 22:53 - 2015-01-05 22:59 - 00000000 ____D () C:\AdwCleaner
2015-01-05 22:51 - 2015-01-05 22:51 - 00000000 ____D () C:\Users\Victor\Downloads\bluescreenview
2015-01-05 22:50 - 2015-01-05 23:23 - 00000000 ____D () C:\FRST
2015-01-05 22:50 - 2015-01-05 22:50 - 00066913 _____ () C:\Users\Victor\Downloads\bluescreenview.zip
2015-01-05 22:49 - 2015-01-05 22:49 - 02123776 _____ (Farbar) C:\Users\Victor\Desktop\FRST64.exe
2015-01-05 22:48 - 2015-01-05 22:48 - 01707939 _____ (Thisisu) C:\Users\Victor\Desktop\JRT.exe
2015-01-05 22:46 - 2015-01-05 22:47 - 02173952 _____ () C:\Users\Victor\Desktop\AdwCleaner.exe
2015-01-05 17:50 - 2015-01-05 17:50 - 00000000 ____D () C:\Users\Usuário Padrão\AppData\Local\Microsoft Help
2015-01-05 17:50 - 2015-01-05 17:50 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-01-05 17:50 - 2015-01-05 17:50 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-01-05 17:49 - 2014-10-18 00:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-01-05 17:49 - 2014-10-17 23:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-01-05 17:49 - 2014-07-07 00:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-01-05 17:49 - 2014-07-07 00:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-01-05 17:49 - 2014-07-07 00:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-01-05 17:49 - 2014-07-07 00:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-01-05 17:49 - 2014-07-06 23:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-01-05 17:49 - 2014-07-06 23:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-01-05 17:49 - 2014-07-06 23:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-01-05 17:49 - 2014-07-06 23:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-01-05 17:40 - 2014-06-27 00:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-01-05 17:40 - 2014-06-26 23:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-01-04 22:50 - 2014-08-01 09:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-01-04 22:50 - 2014-08-01 09:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2015-01-04 22:36 - 2014-10-14 00:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-01-04 22:36 - 2014-10-14 00:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-01-04 22:36 - 2014-10-14 00:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-01-04 22:36 - 2014-10-13 23:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-01-04 22:36 - 2014-10-13 23:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-01-04 22:36 - 2014-06-24 01:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-01-04 22:36 - 2014-06-24 00:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-01-04 22:35 - 2014-11-11 01:09 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-01-04 22:35 - 2014-11-11 00:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-01-04 22:35 - 2014-11-10 23:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-01-04 22:35 - 2014-08-21 04:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-01-04 22:35 - 2014-08-21 04:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-01-04 22:35 - 2014-08-21 04:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-01-04 22:35 - 2014-08-21 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-01-04 22:35 - 2014-07-09 00:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-01-04 22:35 - 2014-07-09 00:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-01-04 22:35 - 2014-07-09 00:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-01-04 22:35 - 2014-07-09 00:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-01-04 22:35 - 2014-07-09 00:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-01-04 22:35 - 2014-07-08 23:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-01-04 22:35 - 2014-07-08 23:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-01-04 22:35 - 2014-07-08 23:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-01-04 22:35 - 2014-07-08 23:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-01-04 22:35 - 2014-07-08 23:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-01-04 22:35 - 2014-07-08 20:38 - 00419992 _____ () C:\Windows\system32\locale.nls
2015-01-04 22:35 - 2014-07-08 20:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls
2015-01-04 22:35 - 2013-11-26 23:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-01-04 22:35 - 2013-11-26 23:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-01-04 22:35 - 2013-11-26 23:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-01-04 22:35 - 2013-11-26 23:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-01-04 22:35 - 2013-11-26 23:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-01-04 22:35 - 2013-11-26 23:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-01-04 22:35 - 2013-11-26 23:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-01-04 22:30 - 2015-01-04 22:30 - 00292216 _____ () C:\Windows\Minidump\010415-89872-01.dmp
2015-01-04 22:25 - 2015-01-04 22:25 - 00068996 _____ () C:\Users\Victor\Documents\OTL.Txt
2015-01-04 22:25 - 2014-09-25 00:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-01-04 22:25 - 2014-09-24 23:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-01-04 22:25 - 2014-08-12 00:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-01-04 22:25 - 2014-08-11 23:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2015-01-04 22:23 - 2014-11-11 01:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-01-04 22:23 - 2014-11-11 01:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-01-04 22:23 - 2014-11-11 00:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-01-04 22:23 - 2014-11-11 00:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-01-04 22:23 - 2014-10-14 00:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-01-04 22:23 - 2014-10-14 00:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-01-04 22:23 - 2014-10-13 23:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-01-04 22:23 - 2014-10-13 23:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-01-04 22:23 - 2014-10-03 00:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-01-04 22:23 - 2014-10-03 00:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-01-04 22:23 - 2014-10-03 00:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-01-04 22:23 - 2014-10-03 00:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-01-04 22:23 - 2014-10-03 00:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-01-04 22:23 - 2014-10-02 23:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-01-04 22:23 - 2014-10-02 23:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-01-04 22:23 - 2014-10-02 23:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-01-04 22:23 - 2014-08-29 00:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-01-04 22:22 - 2014-10-30 00:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-01-04 22:22 - 2014-10-29 23:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2015-01-04 22:22 - 2014-10-03 00:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-01-04 22:22 - 2014-10-03 00:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-01-04 22:22 - 2014-10-02 23:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-01-04 22:22 - 2014-09-04 03:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-01-04 22:22 - 2014-09-04 03:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-01-04 22:21 - 2014-11-08 01:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-01-04 22:21 - 2014-11-08 00:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-01-04 22:21 - 2014-10-24 23:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-01-04 22:21 - 2014-10-24 23:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-01-04 22:21 - 2014-10-03 00:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-01-04 22:21 - 2014-10-03 00:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-01-04 22:21 - 2014-10-03 00:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-01-04 22:21 - 2014-10-02 23:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2015-01-04 22:21 - 2014-10-02 23:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-01-04 22:21 - 2014-10-02 23:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2015-01-04 22:21 - 2014-10-02 23:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2015-01-04 22:21 - 2014-09-19 07:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-01-04 22:21 - 2014-09-19 07:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-01-04 22:21 - 2014-09-19 07:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-01-04 22:21 - 2014-09-19 07:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-01-04 22:21 - 2014-09-19 07:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-01-04 22:21 - 2014-09-19 07:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-01-04 22:21 - 2014-09-19 07:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-01-04 22:21 - 2014-09-19 07:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-01-04 22:21 - 2014-09-19 07:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-01-04 22:21 - 2014-09-19 07:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-01-04 22:21 - 2014-09-19 07:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-01-04 22:21 - 2014-09-19 07:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-01-04 22:20 - 2014-10-14 00:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-01-04 22:20 - 2014-10-13 23:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-01-04 22:20 - 2014-10-09 22:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-01-04 22:20 - 2014-07-17 00:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-01-04 22:20 - 2014-07-17 00:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-01-04 22:20 - 2014-07-17 00:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-01-04 22:20 - 2014-07-16 23:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2015-01-04 22:20 - 2014-07-16 23:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-01-04 22:20 - 2014-07-16 23:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-01-04 22:15 - 2014-09-05 00:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-01-04 22:15 - 2014-09-04 23:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-01-04 22:14 - 2014-10-18 00:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-01-04 22:14 - 2014-10-17 23:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-01-04 22:00 - 2015-01-04 22:00 - 00602112 _____ (OldTimer Tools) C:\Users\Victor\Downloads\OTL.exe
2015-01-04 21:32 - 2015-01-04 21:32 - 00289360 _____ () C:\Windows\Minidump\010415-32261-01.dmp
2015-01-03 21:52 - 2014-11-28 21:09 - 00001995 _____ () C:\Users\Public\Desktop\This War of Mine.lnk
2015-01-02 19:48 - 2015-01-02 19:48 - 00000013 _____ () C:\Users\Victor\Documents\fak tel.txt
2015-01-02 18:39 - 2015-01-03 14:43 - 00000000 ____D () C:\Users\Victor\Documents\Klei
2015-01-02 18:38 - 2015-01-03 00:09 - 00000000 ____D () C:\Users\Victor\Downloads\Marasy
2015-01-02 12:56 - 2015-01-02 12:56 - 00063419 _____ () C:\Users\Victor\Downloads\[kickass.so]this.war.of.mine.v.1.2.2.multi.whitepulcibox.torrent
2015-01-02 12:54 - 2015-01-02 12:54 - 00001070 _____ () C:\Users\Victor\Desktop\Dont Starve.lnk
2015-01-02 12:54 - 2015-01-02 12:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by Decepticon
2015-01-02 12:53 - 2015-01-02 12:53 - 00000000 ____D () C:\Program Files (x86)\by Decepticon
2015-01-02 11:29 - 2015-01-02 11:29 - 00015993 _____ () C:\Users\Victor\Downloads\[kickass.so]don.t.starve.together.beta.v121979.torrent
2015-01-02 11:27 - 2015-01-02 11:27 - 00018563 _____ () C:\Users\Victor\Downloads\[kickass.so]don.t.starve.v.1.115739.dlc.2013.pc.repack.by.let.splay.torrent
2015-01-02 11:25 - 2015-01-02 11:25 - 00012135 _____ () C:\Users\Victor\Downloads\[kickass.so]don.t.starve.v.1.103987.dlc.2013.pc.repack.by.decepticon.torrent
2014-12-31 22:41 - 2014-12-31 22:41 - 00012274 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Tsukimonogatari - (01-04) [720p].mkv.torrent
2014-12-30 22:50 - 2014-12-30 22:50 - 00013541 _____ () C:\Users\Victor\Downloads\[rutracker.org].t561510.torrent
2014-12-30 22:45 - 2014-12-30 22:45 - 00036474 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1240191.torrent
2014-12-30 22:33 - 2014-12-30 22:33 - 00019972 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4387915.torrent
2014-12-30 22:33 - 2014-12-30 22:33 - 00011628 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3517678.torrent
2014-12-30 16:51 - 2014-12-30 16:51 - 00052250 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Fate Stay Night - Unlimited Blade Works - 12 [720p].mkv.torrent
2014-12-29 14:54 - 2014-12-29 14:54 - 00017018 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3837513.torrent
2014-12-29 14:32 - 2014-12-29 14:32 - 00016233 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1753818.torrent
2014-12-29 11:18 - 2014-12-29 11:18 - 00016106 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4463789.torrent
2014-12-29 11:18 - 2014-12-29 11:18 - 00014904 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3907608.torrent
2014-12-29 11:17 - 2014-12-29 11:17 - 00023307 _____ () C:\Users\Victor\Downloads\[rutracker.org].t2471307.torrent
2014-12-29 11:07 - 2014-12-29 11:07 - 00012314 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4881769.torrent
2014-12-29 11:06 - 2014-12-29 11:06 - 00019974 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3854554.torrent
2014-12-29 11:03 - 2014-12-29 11:03 - 00017093 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4339172.torrent
2014-12-28 21:44 - 2014-12-28 21:45 - 00027245 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1692965.torrent
2014-12-28 21:28 - 2014-12-28 21:42 - 00000000 ____D () C:\Users\Victor\Downloads\Se7en [1995] 720p Blu-Ray x264 7.1 Ch AAC - ExtraTorrentRG
2014-12-28 21:26 - 2014-12-28 21:26 - 00057882 _____ () C:\Users\Victor\Downloads\[kickass.so]se7en.1995.720p.blu.ray.x264.7.1.ch.aac.extratorrentrg.torrent
2014-12-28 21:23 - 2014-12-28 21:23 - 00015902 _____ () C:\Users\Victor\Downloads\[kickass.so]siedem.se7en.1995.remastered.mini.hd.720p.aac.bluray.x264.leon.345.lektor.pl.torrent
2014-12-28 20:06 - 2014-12-28 20:06 - 00027408 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4822444.torrent
2014-12-28 19:44 - 2014-12-28 19:44 - 00030134 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1445215.torrent
2014-12-27 21:15 - 2014-12-27 21:15 - 00023706 _____ () C:\Users\Victor\Downloads\[rutracker.org].t2939645.torrent
2014-12-27 21:13 - 2014-12-27 21:13 - 00016673 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3748940.torrent
2014-12-27 21:13 - 2014-12-27 21:13 - 00014270 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3748935.torrent
2014-12-24 09:42 - 2014-12-24 09:42 - 00039343 _____ () C:\Users\Victor\Downloads\[kickass.so]the.hobbit.the.desolation.of.smaug.2013.720p.bluray.dts.x264.publichd.torrent
2014-12-22 21:28 - 2014-12-22 21:29 - 00000051 _____ () C:\Users\Victor\Documents\kirigiri badass.txt
2014-12-22 15:13 - 2014-12-22 15:13 - 00895326 _____ () C:\Users\Victor\Downloads\[Coalgirls]_Hunter_X_Hunter_(1280x720_H.264_AAC)(2).torrent
2014-12-22 15:13 - 2014-12-22 15:13 - 00161688 _____ () C:\Users\Victor\Downloads\[Hatsuyuki]Hunter_x_Hunter_001-148_[10bit_1280x720](1).torrent
2014-12-22 09:57 - 2014-12-22 09:57 - 00026381 _____ () C:\Users\Victor\Downloads\Tsukimonogatari OP (1080p).mp4.torrent
2014-12-20 16:39 - 2014-12-20 16:42 - 199680000 _____ () C:\Users\Victor\Downloads\Metal Gear Solid 3 ~ Snake Eater.part3.rar
2014-12-20 16:39 - 2014-12-20 16:39 - 00026250 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Fate Stay Night - Unlimited Blade Works - 11 [720p].mkv.torrent
2014-12-20 16:32 - 2014-12-20 16:35 - 199680000 _____ () C:\Users\Victor\Downloads\Metal Gear Solid 3 ~ Snake Eater.part2.rar
2014-12-20 16:29 - 2014-12-20 16:32 - 199680000 _____ () C:\Users\Victor\Downloads\Metal Gear Solid 3 ~ Snake Eater.part1.rar
2014-12-20 15:05 - 2014-12-20 15:05 - 00015308 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4274221.torrent
2014-12-19 13:26 - 2014-12-19 13:26 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\Siggy Holiday - Freebird Games
2014-12-19 13:26 - 2013-12-31 07:53 - 00000000 ____D () C:\Users\Victor\Downloads\SigCorp - Holiday Special
2014-12-18 15:34 - 2014-12-18 15:35 - 00013921 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4893394.torrent
2014-12-18 15:34 - 2014-12-18 15:34 - 00018440 _____ () C:\Users\Victor\Downloads\[rutracker.org].t2130650.torrent
2014-12-18 15:34 - 2014-12-18 15:34 - 00015708 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1138725.torrent
2014-12-18 15:17 - 2014-12-18 15:17 - 00018261 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4225612.torrent
2014-12-18 14:49 - 2014-12-18 14:49 - 00019482 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4481629.torrent
2014-12-17 21:59 - 2014-12-17 21:59 - 00000000 ____D () C:\Users\Victor\Downloads\Fargo.S01.720p.WEB-DL.DD5.1.H.264-BS
2014-12-17 21:56 - 2014-12-17 21:56 - 00173238 _____ () C:\Users\Victor\Downloads\[kickass.so]fargo.s01.season.1.complete.720p.web.dl.dd5.1.h.264.bs.torrent
2014-12-17 21:46 - 2014-12-17 21:47 - 00000000 ____D () C:\Users\Victor\Downloads\Firefly.2002.[ Ep1-14 ].1080p.BluRay.x264.anoXmous
2014-12-17 21:44 - 2014-12-17 21:44 - 00044224 _____ () C:\Users\Victor\Downloads\[kickass.so]firefly.2002.ep.1.14.1080p.bluray.x264.anoxmous.torrent
2014-12-17 21:44 - 2014-12-17 21:44 - 00020875 _____ () C:\Users\Victor\Downloads\[kickass.so]firefly.complete.series.720p.mkv.compression.mkvgod.torrent
2014-12-16 22:31 - 2014-12-16 22:31 - 00015240 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3904094.torrent
2014-12-16 22:29 - 2014-12-16 22:29 - 00015563 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4605689.torrent
2014-12-16 22:04 - 2014-12-17 12:57 - 00000000 ____D () C:\Users\Victor\Downloads\Twin.Peaks.S01.720p.WEB-DL.x264.anoXmous
2014-12-16 22:01 - 2014-12-16 22:01 - 00059365 _____ () C:\Users\Victor\Downloads\[kickass.so]twin.peaks.s02.720p.web.dl.x264.anoxmous.torrent
2014-12-16 22:01 - 2014-12-16 22:01 - 00019839 _____ () C:\Users\Victor\Downloads\[kickass.so]twin.peaks.s01.720p.web.dl.x264.anoxmous.torrent
2014-12-15 21:49 - 2014-12-15 21:49 - 00018179 _____ () C:\Users\Victor\Downloads\[Empornium][Compilation of the final 10 Favorite Female  Orgasm Contest].torrent
2014-12-15 21:47 - 2014-12-15 21:47 - 00015097 _____ () C:\Users\Victor\Downloads\[Empornium]60 Minutes #2-An Hour Long Porn Compilation.torrent
2014-12-15 12:33 - 2014-12-16 15:52 - 00000000 ____D () C:\Program Files (x86)\FTL
2014-12-15 12:18 - 2014-12-15 12:18 - 00014995 _____ () C:\Users\Victor\Downloads\[kickass.so]ftl.faster.than.light.1.5.13.advanced.edition.drm.free.windows.torrent
2014-12-15 11:54 - 2014-12-15 11:54 - 00017569 _____ () C:\Users\Victor\Downloads\[kickass.so]electronic.super.joy.2013.pc.eng.torrent
2014-12-14 11:57 - 2014-12-14 11:57 - 00021428 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1965286.torrent
2014-12-13 20:31 - 2014-12-13 20:31 - 00026230 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Fate Stay Night - Unlimited Blade Works - 10 [720p].mkv.torrent
2014-12-11 23:02 - 2014-12-11 23:02 - 17340080 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-12-11 22:41 - 2014-12-11 22:42 - 00026250 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Fate Stay Night - Unlimited Blade Works - 09 [720p].mkv.torrent
2014-12-11 22:24 - 2014-12-11 22:21 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-12-11 22:24 - 2014-12-11 22:21 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-12-11 22:24 - 2014-12-11 22:21 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-12-11 22:23 - 2015-01-05 22:02 - 00000902 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-11 22:23 - 2014-12-11 23:02 - 00003840 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-11 22:04 - 2014-12-11 22:04 - 00017483 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1300111.torrent
2014-12-11 21:50 - 2014-12-11 21:50 - 00017766 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3855138.torrent
2014-12-11 21:49 - 2014-12-11 21:49 - 00018738 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4043442.torrent
2014-12-11 21:35 - 2014-12-11 21:35 - 00024194 _____ () C:\Users\Victor\Downloads\[kickass.so]the.shins.discography.2001.2012.flac.torrent
2014-12-11 21:33 - 2014-12-11 21:34 - 00020493 _____ () C:\Users\Victor\Downloads\[rutracker.org].t2246365.torrent
2014-12-11 21:23 - 2014-12-11 21:23 - 00019790 _____ () C:\Users\Victor\Downloads\[rutracker.org].t2207537.torrent
2014-12-11 15:13 - 2014-12-11 15:13 - 00037502 _____ () C:\Users\Victor\Downloads\[kickass.filesoup.com]queens.of.the.stone.age.songs.for.the.deaf.flac.tntvillage.torrent
2014-12-11 15:13 - 2014-12-11 15:13 - 00029129 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3599388.torrent
2014-12-11 15:07 - 2014-12-11 15:07 - 00103775 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4558629.torrent
2014-12-11 14:34 - 2014-12-11 14:34 - 00016084 _____ () C:\Users\Victor\Downloads\[Empornium]Czech GangbangPornoakce 16 - Nikola (Moderator of Pornoakce).torrent
2014-12-11 14:34 - 2014-12-11 14:34 - 00013002 _____ () C:\Users\Victor\Downloads\[Empornium]Indecentes-Voisines - Adeline [Super Sexy MILF does Double Anal, Double Pussy Penetration, Triple Penetration in this AWESOME Sweaty Rough Gangbang].torrent
2014-12-11 14:33 - 2014-12-11 14:33 - 00021991 _____ () C:\Users\Victor\Downloads\[Empornium]Gang Bang Video - Gwen Gets a Creampie - Creampie Facial.torrent
2014-12-11 14:28 - 2014-12-11 14:28 - 00012465 _____ () C:\Users\Victor\Downloads\[Empornium]60 Minutes-An Hour Long Porn Compilation.torrent
2014-12-11 14:27 - 2014-12-11 14:27 - 00030950 _____ () C:\Users\Victor\Downloads\[Empornium]Yui Hatano the cute JAV actress with AMAZING perfect body and tits, uncensored hardcore pack(1).torrent
2014-12-10 13:23 - 2014-12-10 13:26 - 40124921 _____ () C:\Users\Victor\Downloads\12 - Cry For Love (Original Mix).flac
2014-12-10 13:22 - 2014-12-10 13:22 - 00020131 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4179252.torrent
2014-12-09 16:31 - 2014-12-09 20:01 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-08 22:21 - 2014-12-08 22:21 - 00049324 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1253360.torrent
2014-12-08 22:18 - 2014-12-08 22:18 - 00012340 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1391936.torrent
2014-12-08 22:09 - 2014-12-08 22:09 - 00015367 _____ () C:\Users\Victor\Downloads\[rutracker.org].t892475.torrent
2014-12-08 22:07 - 2014-12-08 22:07 - 00032050 _____ () C:\Users\Victor\Downloads\[rutracker.org].t3923444.torrent
2014-12-08 22:05 - 2014-12-08 22:05 - 00034449 _____ () C:\Users\Victor\Downloads\[rutracker.org].t295681.torrent
2014-12-08 21:44 - 2014-12-08 21:44 - 00039037 _____ () C:\Users\Victor\Downloads\[rutracker.org].t2697990.torrent
2014-12-08 21:34 - 2014-12-08 21:34 - 00000761 _____ () C:\Users\Victor\AppData\Local\recently-used.xbel
2014-12-08 20:58 - 2014-12-08 21:34 - 341545864 _____ () C:\Users\Victor\Downloads\mushishi_13[h264.vorbis][niizk].mkv
2014-12-08 20:58 - 2014-12-08 20:58 - 00000000 ____D () C:\Users\Victor\AppData\Local\gtk-2.0
2014-12-08 20:55 - 2014-12-10 22:40 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\HexChat
2014-12-08 20:55 - 2014-12-08 20:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HexChat
2014-12-08 20:55 - 2014-12-08 20:55 - 00000000 ____D () C:\Program Files\HexChat
2014-12-07 18:00 - 2014-12-07 18:00 - 00030458 _____ () C:\Users\Victor\Downloads\[rutracker.org].t1654268.torrent
2014-12-07 17:55 - 2014-12-07 17:55 - 00374056 _____ () C:\Users\Victor\Downloads\[rutracker.org].t4521492.torrent
2014-12-07 12:58 - 2014-12-07 12:58 - 00026094 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Fate Stay Night - Unlimited Blade Works - 08 [720p].mkv.torrent
2014-12-07 12:58 - 2014-12-07 12:58 - 00026074 _____ () C:\Users\Victor\Downloads\[HorribleSubs] Fate Stay Night - Unlimited Blade Works - 07 [720p].mkv.torrent

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-05 23:17 - 2013-01-04 09:05 - 01180926 _____ () C:\Windows\WindowsUpdate.log
2015-01-05 23:13 - 2009-07-14 02:45 - 00017168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-05 23:13 - 2009-07-14 02:45 - 00017168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-05 23:08 - 2013-02-28 22:20 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\uTorrent
2015-01-05 23:06 - 2009-07-14 03:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-05 23:06 - 2009-07-14 02:51 - 00118018 _____ () C:\Windows\setupact.log
2015-01-05 23:02 - 2013-01-04 09:37 - 00391950 _____ () C:\Windows\PFRO.log
2015-01-05 23:02 - 2009-07-14 02:45 - 00439528 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-05 22:52 - 2014-04-12 14:40 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\Skype
2015-01-05 22:52 - 2014-01-26 11:55 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\foobar2000
2015-01-05 22:47 - 2013-01-04 13:08 - 00001070 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-05 18:35 - 2009-07-14 01:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-05 18:23 - 2013-01-10 22:02 - 01609232 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2015-01-05 18:23 - 2009-07-29 14:08 - 00708998 _____ () C:\Windows\system32\prfh0416.dat
2015-01-05 18:23 - 2009-07-29 14:08 - 00148738 _____ () C:\Windows\system32\prfc0416.dat
2015-01-05 18:23 - 2009-07-14 03:13 - 01609232 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-05 18:15 - 2013-01-04 09:31 - 00000000 ____D () C:\Users\Todos os Usuários\Microsoft Help
2015-01-05 18:15 - 2013-01-04 09:31 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-01-05 18:08 - 2014-08-30 17:13 - 00000000 ____D () C:\Windows\system32\MRT
2015-01-05 17:37 - 2013-01-04 13:55 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-01-04 22:30 - 2013-03-17 09:38 - 00000000 ____D () C:\Windows\Minidump
2015-01-04 17:30 - 2014-11-28 21:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\This War of Mine
2015-01-04 17:30 - 2014-11-28 21:05 - 00000000 ____D () C:\Program Files (x86)\This War of Mine
2015-01-04 17:30 - 2014-03-21 21:55 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\puush
2015-01-04 17:30 - 2014-02-05 20:33 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\DAEMON Tools Lite
2015-01-04 17:30 - 2013-01-04 15:46 - 00000000 ____D () C:\Users\Todos os Usuários\DAEMON Tools Lite
2015-01-04 17:30 - 2013-01-04 15:46 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-01-04 17:30 - 2009-07-14 01:20 - 00000000 ____D () C:\Windows\registration
2015-01-04 11:33 - 2014-01-26 11:34 - 00000000 ____D () C:\Users\Victor
2015-01-03 20:09 - 2014-08-27 14:29 - 00000000 ____D () C:\Users\Victor\AppData\Local\Adobe
2015-01-03 13:55 - 2014-03-09 15:59 - 00000000 ____D () C:\Users\Victor\AppData\Local\Battle.net
2015-01-03 09:49 - 2013-02-05 23:15 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-02 15:56 - 2014-11-04 14:51 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-01-02 15:56 - 2013-01-25 20:37 - 00000000 ____D () C:\Users\Todos os Usuários\Skype
2015-01-02 15:56 - 2013-01-25 20:37 - 00000000 ____D () C:\ProgramData\Skype
2015-01-02 12:55 - 2013-01-04 15:33 - 00000000 ___HD () C:\Windows\msdownld.tmp
2015-01-02 12:55 - 2013-01-04 15:33 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-12-20 15:58 - 2014-10-29 20:25 - 00000000 ____D () C:\Users\Victor\AppData\Roaming\Mp3tag
2014-12-15 12:34 - 2012-09-22 15:32 - 00000000 ____D () C:\Users\Victor\Documents\My Games
2014-12-15 12:32 - 2013-10-27 09:12 - 00000000 ____D () C:\Games
2014-12-12 21:45 - 2014-03-09 15:59 - 00000000 ____D () C:\Program Files (x86)\Battle.net
2014-12-11 23:02 - 2013-01-04 13:15 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-11 23:02 - 2013-01-04 13:15 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-11 22:24 - 2014-05-22 14:45 - 00000000 ____D () C:\Users\Todos os Usuários\Oracle
2014-12-11 22:24 - 2014-05-22 14:45 - 00000000 ____D () C:\ProgramData\Oracle
2014-12-11 22:21 - 2014-05-22 14:45 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-12-11 22:21 - 2014-05-22 14:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-12-11 22:19 - 2013-03-17 14:02 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-06 20:47 - 2014-03-09 16:10 - 00000000 ____D () C:\Program Files (x86)\Hearthstone

Some content of TEMP:
====================
C:\Users\Victor\AppData\Local\Temp\130590723560305610.exe
C:\Users\Victor\AppData\Local\Temp\13059072374209607132.exe
C:\Users\Victor\AppData\Local\Temp\AutoUI.exe
C:\Users\Victor\AppData\Local\Temp\DTLite4491-0356.exe
C:\Users\Victor\AppData\Local\Temp\FreemakeVideoDownloader_3.7.0.1.exe
C:\Users\Victor\AppData\Local\Temp\Hola-Setup-Plugin-x64-1.5.411.exe
C:\Users\Victor\AppData\Local\Temp\Hola-Setup-Plugin-x64-1.5.432.exe
C:\Users\Victor\AppData\Local\Temp\Hola-Setup-Plugin-x64-1.5.459.exe
C:\Users\Victor\AppData\Local\Temp\Hola-Setup-Plugin-x64-1.5.466.exe
C:\Users\Victor\AppData\Local\Temp\Hola-Setup-Plugin-x64-1.5.487.exe
C:\Users\Victor\AppData\Local\Temp\hsspk.exe
C:\Users\Victor\AppData\Local\Temp\ICReinstall_13059072374209607132.exe
C:\Users\Victor\AppData\Local\Temp\nsd8A99.exe
C:\Users\Victor\AppData\Local\Temp\nse873C.exe
C:\Users\Victor\AppData\Local\Temp\nsfE90E.exe
C:\Users\Victor\AppData\Local\Temp\nshD523.exe
C:\Users\Victor\AppData\Local\Temp\nskD6E3.exe
C:\Users\Victor\AppData\Local\Temp\nso1842.exe
C:\Users\Victor\AppData\Local\Temp\nso73AE.exe
C:\Users\Victor\AppData\Local\Temp\nspDE53.exe
C:\Users\Victor\AppData\Local\Temp\nst359.exe
C:\Users\Victor\AppData\Local\Temp\nst7F62.exe
C:\Users\Victor\AppData\Local\Temp\nsuDF58.exe
C:\Users\Victor\AppData\Local\Temp\nsyE23.exe
C:\Users\Victor\AppData\Local\Temp\nsz7743.exe
C:\Users\Victor\AppData\Local\Temp\nsz7F7E.exe
C:\Users\Victor\AppData\Local\Temp\proxy_vole2603130493427503090.dll
C:\Users\Victor\AppData\Local\Temp\Quarantine.exe
C:\Users\Victor\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Victor\AppData\Local\Temp\sqlite3.dll
C:\Users\Victor\AppData\Local\Temp\SRLDetectionLibrary4999752079562603060.dll
C:\Users\Victor\AppData\Local\Temp\swt-win32-3349.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-27 11:55

==================== End Of Log ============================

 

# AdwCleaner v4.106 - Relatorio criado 05/01/2015 as 22:58:43
# Atualizado 21/12/2014 por Xplode
# Database : 2015-01-03.1 [Live]
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuario : Victor - WIN7-PC
# Executando de : C:\Users\Victor\Desktop\AdwCleaner.exe
# Opcao : Limpar

***** [ Servicos ] *****

[#] Servico Deletada : hsswd

***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\Save
Pasta Deletada : C:\ProgramData\Ask
Pasta Deletada : C:\ProgramData\hotspot shield
Pasta Deletada : C:\ProgramData\Tarma Installer
Pasta Deletada : C:\Windows\SysWOW64\SearchProtect
Pasta Deletada : C:\Users\Victor\AppData\Local\Temp\hotspot shield
Pasta Deletada : C:\Users\Victor\AppData\Local\Hola
Pasta Deletada : C:\Users\Victor\AppData\Roaming\hotspot shield
Arquivo Deletada : C:\Users\Victor\AppData\Local\Temp\Uninstall.exe
Arquivo Deletada : C:\Windows\System32\roboot64.exe
Arquivo Deletada : C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\user.js
Arquivo Deletada : C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage

***** [ Tarefas ] *****


***** [ Atalhos ] *****


***** [ Registro ] *****

Valor Deletedo : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [[email protected]]
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Chave Deletedo : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Chave Deletedo : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Chave Deletedo : HKLM\SOFTWARE\Classes\YontooIEClient.Api
Chave Deletedo : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
Chave Deletedo : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
Chave Deletedo : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
Chave Deletedo : HKCU\Software\Iminent
Chave Deletedo : HKLM\SOFTWARE\Iminent
Chave Deletedo : HKLM\SOFTWARE\PIP
Chave Deletedo : HKLM\SOFTWARE\SweetIM
Chave Deletedo : HKLM\SOFTWARE\Umbrella
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{118D6CE9-5F18-42F9-958A-14676A629FDE}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\The Cave © SEGA_is1
Chave Deletedo : [x64] HKLM\SOFTWARE\Iminent
Chave Deletedo : [x64] HKLM\SOFTWARE\Tarma Installer
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Installer\Features\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : HKLM\SOFTWARE\Classes\Installer\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17207


-\\ Mozilla Firefox v34.0.5 (x86 pt-BR)

[mknxlisv.default\prefs.js] - Linha deletada : user_pref("extensions.skipscreen.hostMatchStr", "hxxp://www.4shared.com/(getaudiofiledocumentdir)/.*hxxp://.*depositfiles.com/(([a-z]{2})/files/auth-).*hxxp://(www.)*digg.com/(.{5}.{6})$hxxp:[...]
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("[email protected]", true);
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("extentions.y2layers.installId", "358b2f1b-ba5a-49e4-aee0-900f815ef14d");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.LayoutId", "1");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.ShowThankyouPixel", "0");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent._oaZGabJJ8Q_", "{\"cpt\":0,\"cpr\":0,\"s\":0,\"es\":3}");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.adapters", "{\"www.facebook.com\":{\"CountryCode\":\"BR\",\"NoAds\":false,\"Status\":1,\"AdapterKey\":\"facebook\",\"v\":true,\"p\":0,\"t\":1,\"th\":1.1,\"expireTime\":\"14075387671[...]
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.enableToolbar", "true");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.newtabredirect", "false");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.registerToolbarEvent109", "1407947340738");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.registerToolbarEvent111", "1407947339601");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.registerToolbarEvent122", "1407947340984");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.searchindex", "0");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.trackingInfo", "{\"state\":0,\"samplingRate\":0}");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.version", "8.31.1.1");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.versioning", "{\"CurrentVersion\":\"8.31.1.1\",\"InstallEventCTime\":1407947298623,\"InstallEvent\":\"True\"}");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.LayoutId", "1");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.Services.BHPCode", "01");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultEvent", "000");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultWebSite", "000");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.Services.IminentClientCode", "11");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.Services.SmartFavCode", "02");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.ShowThankyouPixel", "0");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.displayFavLinks", "1");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.enabledAds", "false");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent101", "1372864356599");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent109", "1372807375547");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent111", "1372807375579");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent112", "1372807392094");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent122", "1372807375603");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent134", "1372807089309");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.LayoutId", "1");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.Services.BHPCode", "01");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultEvent", "000");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultWebSite", "000");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.Services.IminentClientCode", "11");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.Services.SmartFavCode", "02");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.ShowThankyouPixel", "0");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.displayFavLinks", "1");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.enabledAds", "false");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent102", "1372807266609");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent109", "1372859721044");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent111", "1372859721069");
[mknxlisv.default\prefs.js] - Linha deletada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent122", "1372859721090");

-\\ Google Chrome v39.0.2171.95

[C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deletedo [Search Provider] : hxxp://br.ask.com/web?q={searchTerms}
[C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deletedo [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3321848&octid=EB_ORIGINAL_CTID&ISID=M50D57584-8786-4366-97C4-17C89D1D40AD&SearchSource=58&CUI=&UM=6&UP=SP91AA671F-C2E6-427E-9353-78031845A723&q={searchTerms}&SSPV=
[C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deletedo [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3321848&octid=EB_ORIGINAL_CTID&ISID=M50D57584-8786-4366-97C4-17C89D1D40AD&SearchSource=58&CUI=&UM=6&UP=SP91AA671F-C2E6-427E-9353-78031845A723&q={searchTerms}&SSPV=

*************************

AdwCleaner[R0].txt - [314 octets] - [05/01/2015 22:54:00]
AdwCleaner[R1].txt - [47030 octets] - [05/01/2015 22:55:29]
AdwCleaner[S0].txt - [45787 octets] - [05/01/2015 22:58:43]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [45848 octets] ##########
 

 

# AdwCleaner v4.106 - Relatorio criado 05/01/2015 as 22:55:29
# Atualizado 21/12/2014 por Xplode
# Database : 2015-01-03.1 [Live]
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuario : Victor - WIN7-PC
# Executando de : C:\Users\Victor\Desktop\AdwCleaner.exe
# Opcao : Examinar

***** [ Servicos ] *****

Servico Encontrado : hsswd

***** [ Arquivos / Pastas ] *****

Arquivo Encontrado : C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage
Arquivo Encontrado : C:\Users\Victor\AppData\Local\Temp\Uninstall.exe
Arquivo Encontrado : C:\Users\Victor\AppData\Roaming\Mozilla\Firefox\Profiles\mknxlisv.default\user.js
Arquivo Encontrado : C:\Windows\System32\roboot64.exe
Pasta Encontrado : C:\ProgramData\Ask
Pasta Encontrado : C:\ProgramData\hotspot shield
Pasta Encontrado : C:\ProgramData\Tarma Installer
Pasta Encontrado : C:\Save
Pasta Encontrado : C:\Users\Victor\AppData\Local\Hola
Pasta Encontrado : C:\Users\Victor\AppData\Local\Temp\hotspot shield
Pasta Encontrado : C:\Users\Victor\AppData\Roaming\hotspot shield
Pasta Encontrado : C:\Windows\SysWOW64\SearchProtect

***** [ Tarefas ] *****


***** [ Atalhos ] *****


***** [ Registro ] *****

Chave Encontrada : HKCU\Software\Iminent
Chave Encontrada : [x64] HKCU\Software\Iminent
Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\{CFDAFE39-20CE-451D-BD45-A37452F39CF0}
Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\YontooIEClient.DLL
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{7E84186E-B5DE-4226-8A66-6E49C6B511B4}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{99066096-8989-4612-841F-621A01D54AD7}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{FE9271F2-6EFD-44B0-A826-84C829536E93}
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
Chave Encontrada : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
Chave Encontrada : HKLM\SOFTWARE\Classes\Installer\Features\9EC6D81181F59F2459A84176A626F9ED
Chave Encontrada : HKLM\SOFTWARE\Classes\Installer\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{D372567D-67C1-4B29-B3F0-159B52B3E967}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Chave Encontrada : HKLM\SOFTWARE\Classes\YontooIEClient.Api
Chave Encontrada : HKLM\SOFTWARE\Classes\YontooIEClient.Api.1
Chave Encontrada : HKLM\SOFTWARE\Classes\YontooIEClient.Layers
Chave Encontrada : HKLM\SOFTWARE\Classes\YontooIEClient.Layers.1
Chave Encontrada : HKLM\SOFTWARE\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje
Chave Encontrada : HKLM\SOFTWARE\Google\Chrome\Extensions\niapdbllcanepiiimjjndipklodoedlc
Chave Encontrada : HKLM\SOFTWARE\Iminent
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{118D6CE9-5F18-42F9-958A-14676A629FDE}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\The Cave © SEGA_is1
Chave Encontrada : HKLM\SOFTWARE\PIP
Chave Encontrada : HKLM\SOFTWARE\SweetIM
Chave Encontrada : HKLM\SOFTWARE\Umbrella
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Encontrada : [x64] HKLM\SOFTWARE\Iminent
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{889DF117-14D1-44EE-9F31-C5FB5D47F68B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Tarma Installer
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
Valor Encontrada : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [[email protected]]

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17207


-\\ Mozilla Firefox v34.0.5 (x86 pt-BR)

[mknxlisv.default] - Linha encontrada : user_pref("extensions.skipscreen.hostMatchStr", "hxxp://www.4shared.com/(get|audio|file|document|dir)/.*|hxxp://.*depositfiles.com/(([a-z]{2})/files/|auth-).*|hxxp://(www.)*digg.com/(.{5}|.{6})$|hxxp:[...]
[mknxlisv.default] - Linha encontrada : user_pref("[email protected]", true);
[mknxlisv.default] - Linha encontrada : user_pref("extentions.y2layers.defaultEnableAppsList", "twittube,buzzdock,YontooNewOffers");
[mknxlisv.default] - Linha encontrada : user_pref("extentions.y2layers.installId", "358b2f1b-ba5a-49e4-aee0-900f815ef14d");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.LayoutId", "1");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.ShowThankyouPixel", "0");
[mknxlisv.default] - Linha encontrada : user_pref("iminent._oaZGabJJ8Q_", "{\"cpt\":0,\"cpr\":0,\"s\":0,\"es\":3}");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.adapters", "{\"www.facebook.com\":{\"CountryCode\":\"BR\",\"NoAds\":false,\"Status\":1,\"AdapterKey\":\"facebook\",\"v\":true,\"p\":0,\"t\":1,\"th\":1.1,\"expireTime\":\"14075387671[...]
[mknxlisv.default] - Linha encontrada : user_pref("iminent.enableToolbar", "true");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.newtabredirect", "false");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.registerToolbarEvent109", "1407947340738");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.registerToolbarEvent111", "1407947339601");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.registerToolbarEvent122", "1407947340984");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.searchindex", "0");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.trackingInfo", "{\"state\":0,\"samplingRate\":0}");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.version", "8.31.1.1");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.versioning", "{\"CurrentVersion\":\"8.31.1.1\",\"InstallEventCTime\":1407947298623,\"InstallEvent\":\"True\"}");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.LayoutId", "1");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.Services.BHPCode", "01");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultEvent", "000");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultWebSite", "000");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.Services.IminentClientCode", "11");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.Services.SmartFavCode", "02");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.ShowThankyouPixel", "0");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.displayFavLinks", "1");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.enabledAds", "false");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent101", "1372864356599");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent109", "1372807375547");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent111", "1372807375579");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent112", "1372807392094");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent122", "1372807375603");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent134", "1372807089309");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.LayoutId", "1");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.Services.BHPCode", "01");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultEvent", "000");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultWebSite", "000");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.Services.IminentClientCode", "11");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.Services.SmartFavCode", "02");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.ShowThankyouPixel", "0");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.displayFavLinks", "1");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.enabledAds", "false");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent102", "1372807266609");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent109", "1372859721044");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent111", "1372859721069");
[mknxlisv.default] - Linha encontrada : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent122", "1372859721090");

-\\ Google Chrome v39.0.2171.95

[C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Web data] - Encontrada [Search Provider] : hxxp://br.ask.com/web?q={searchTerms}
[C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Web data] - Encontrada [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3321848&octid=EB_ORIGINAL_CTID&ISID=M50D57584-8786-4366-97C4-17C89D1D40AD&SearchSource=58&CUI=&UM=6&UP=SP91AA671F-C2E6-427E-9353-78031845A723&q={searchTerms}&SSPV=
[C:\Users\Victor\AppData\Local\Google\Chrome\User Data\Default\Web data] - Encontrada [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3321848&octid=EB_ORIGINAL_CTID&ISID=M50D57584-8786-4366-97C4-17C89D1D40AD&SearchSource=58&CUI=&UM=6&UP=SP91AA671F-C2E6-427E-9353-78031845A723&q={searchTerms}&SSPV=

*************************

AdwCleaner[R0].txt - [314 octets] - [05/01/2015 22:54:00]
AdwCleaner[R1].txt - [46200 octets] - [05/01/2015 22:55:29]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [46261 octets] ##########
 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.1 (12.28.2014:1)
OS: Windows 7 Ultimate x64
Ran by Victor on 05/01/2015 at 23:08:50,55
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3226518602-2015988684-2284767806-1003\Software\Microsoft\Internet Explorer\Main\\Start Page



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"



~~~ FireFox

Emptied folder: C:\Users\Victor\AppData\Roaming\mozilla\firefox\profiles\mknxlisv.default\minidumps [436 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 05/01/2015 at 23:21:21,75
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 

 

==================================================
Dump File         : 010415-89872-01.dmp
Crash Time        : 04/01/2015 22:27:23
Bug Check String  : SYSTEM_THREAD_EXCEPTION_NOT_HANDLED
Bug Check Code    : 0x1000007e
Parameter 1       : ffffffff`c0000005
Parameter 2       : fffff800`033c3123
Parameter 3       : fffff880`033fc548
Parameter 4       : fffff880`033fbda0
Caused By Driver  : aswMonFlt.sys
Caused By Address : aswMonFlt.sys+18b80
File Description  :
Product Name      :
Company           :
File Version      :
Processor         : x64
Crash Address     : ntoskrnl.exe+1a9123
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\010415-89872-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 292.216
Dump File Time    : 04/01/2015 22:30:09
==================================================

==================================================
Dump File         : 010415-32261-01.dmp
Crash Time        : 04/01/2015 21:30:13
Bug Check String  : REGISTRY_ERROR
Bug Check Code    : 0x00000051
Parameter 1       : 00000000`00000001
Parameter 2       : fffff8a0`054f0010
Parameter 3       : 00000000`1a00faff
Parameter 4       : 00000000`00000465
Caused By Driver  : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75bc0
File Description  : NT Kernel & System
Product Name      : Microsoft® Windows® Operating System
Company           : Microsoft Corporation
File Version      : 6.1.7601.18409 (win7sp1_gdr.140303-2144)
Processor         : x64
Crash Address     : ntoskrnl.exe+75bc0
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\010415-32261-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 289.360
Dump File Time    : 04/01/2015 21:32:32
==================================================

==================================================
Dump File         : 083014-38922-01.dmp
Crash Time        : 30/08/2014 21:00:07
Bug Check String  : DRIVER_IRQL_NOT_LESS_OR_EQUAL
Bug Check Code    : 0x000000d1
Parameter 1       : 00000000`00000028
Parameter 2       : 00000000`00000002
Parameter 3       : 00000000`00000000
Parameter 4       : fffff880`01700360
Caused By Driver  : ndis.sys
Caused By Address : ndis.sys+19360
File Description  :
Product Name      :
Company           :
File Version      :
Processor         : x64
Crash Address     : ntoskrnl.exe+75bc0
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\083014-38922-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 292.160
Dump File Time    : 30/08/2014 21:20:36
==================================================

==================================================
Dump File         : 022814-37487-01.dmp
Crash Time        : 28/02/2014 07:27:35
Bug Check String  : DRIVER_POWER_STATE_FAILURE
Bug Check Code    : 0x0000009f
Parameter 1       : 00000000`00000003
Parameter 2       : fffffa80`049dba10
Parameter 3       : fffff800`00b9c518
Parameter 4       : fffffa80`05228780
Caused By Driver  : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75c00
File Description  : NT Kernel & System
Product Name      : Microsoft® Windows® Operating System
Company           : Microsoft Corporation
File Version      : 6.1.7601.18409 (win7sp1_gdr.140303-2144)
Processor         : x64
Crash Address     : ntoskrnl.exe+75c00
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\022814-37487-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 949.344
Dump File Time    : 28/02/2014 14:26:05
==================================================

==================================================
Dump File         : 121913-20326-01.dmp
Crash Time        : 19/12/2013 22:09:44
Bug Check String  : PAGE_FAULT_IN_NONPAGED_AREA
Bug Check Code    : 0x00000050
Parameter 1       : fffff900`c2dd8000
Parameter 2       : 00000000`00000000
Parameter 3       : fffff960`0011c2f0
Parameter 4       : 00000000`00000000
Caused By Driver  : Ntfs.sys
Caused By Address : Ntfs.sys+a3066
File Description  :
Product Name      :
Company           :
File Version      :
Processor         : x64
Crash Address     : ntoskrnl.exe+75c00
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\121913-20326-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 292.144
Dump File Time    : 19/12/2013 22:11:07
==================================================

==================================================
Dump File         : 112113-38126-01.dmp
Crash Time        : 21/11/2013 20:12:45
Bug Check String  : DRIVER_IRQL_NOT_LESS_OR_EQUAL
Bug Check Code    : 0x000000d1
Parameter 1       : 00000000`00000010
Parameter 2       : 00000000`00000002
Parameter 3       : 00000000`00000000
Parameter 4       : fffff880`0767d686
Caused By Driver  : nvvad64v.sys
Caused By Address : nvvad64v.sys+1686
File Description  :
Product Name      :
Company           :
File Version      :
Processor         : x64
Crash Address     : ntoskrnl.exe+75c00
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\112113-38126-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 282.344
Dump File Time    : 21/11/2013 20:14:05
==================================================

==================================================
Dump File         : 060913-29796-01.dmp
Crash Time        : 09/06/2013 19:39:26
Bug Check String  : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code    : 0x0000000a
Parameter 1       : fffffb29`96d90ab8
Parameter 2       : 00000000`00000002
Parameter 3       : 00000000`00000000
Parameter 4       : fffff800`031411cb
Caused By Driver  : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+75c00
File Description  : NT Kernel & System
Product Name      : Microsoft® Windows® Operating System
Company           : Microsoft Corporation
File Version      : 6.1.7601.18409 (win7sp1_gdr.140303-2144)
Processor         : x64
Crash Address     : ntoskrnl.exe+75c00
Stack Address 1   :
Stack Address 2   :
Stack Address 3   :
Computer Name     :
Full Path         : C:\Windows\Minidump\060913-29796-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 292.184
Dump File Time    : 09/06/2013 19:41:52
==================================================
 


Edited by Vicdd, 05 January 2015 - 07:42 PM.

  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

Did you not get an Addition log from FRST?

 

What make and model PC is this?

 

Your bluescreens are all from legitimate programs which normally do not cause problems so you may have a RAM or hard drive problem.

 

 
Run the memory test per:
 
 
 
1. Double-click My Computer, and then right-click the hard disk that you want to check. C:
2. Click Properties, and then click Tools.
3. Under Error-checking, click Check Now. A dialog box that shows the Check disk options is displayed,
4. Check both boxes and then click Start.
You will receive the following message:
The disk check could not be performed because the disk check utility needs exclusive access to some Windows files on the disk. These files can be accessed by restarting Windows. Do you want to schedule the disk check to occur the next time you restart the computer?
Click Yes to schedule the disk check, but don't restart yet.
 
Right click on (My) Computer and select Manage (Continue) Then the Event Viewer. Next select Windows Logs.  Right click on System and Clear Log, Clear. Repeat for Application. Reboot. The disk check will run and will probably take an hour or more to finish.
 
 
Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator.  Then type (with an Enter after each line).
 
sfc /scannow
 
(SPACE after sfc.  This will check your critical system files. Does this finish without complaint?  IF it says it couldn't fix everything then:
 
Copy the next two lines:
 
findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  \windows\logs\cbs\junk.txt 
notepad \windows\logs\cbs\junk.txt 
 
Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.  Close nOtepad.  Close the Command Window.
 
 
1. Please download the Event Viewer Tool by Vino Rosso
and save it to your Desktop:
2. Right-click VEW.exe and Run AS Administrator
3. Under 'Select log to query', select:
 
* System
4. Under 'Select type to list', select:
* Error
* Warning
 
 
Then use the 'Number of events' as follows:
 
 
1. Click the radio button for 'Number of events'
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.
 
 
Please post the Output log in your next reply then repeat but select Application.
 
 
 
 
Get the free version of Speccy:
 
http://www.filehippo...download_speccy  (Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  Download, Save and Install it.  Run Speccy.  When it finishes (the little icon in the bottom left will stop moving), File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  (It will be near the top about 10 lines down.) Attach the file to your next post.  Uninstall Speccy.
 
 
 
 
Get Process Explorer
 
Save it to your desktop then run it (Vista or Win7 - right click and Run As Administrator).  
 
View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures
 
 
Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
 
Wait a full minute then:
 
File, Save As, Save.  Open the file Procexp.txt on your desktop and copy and paste the text to a reply.
 
 
 
Ron

  • 0

#5
Vicdd

Vicdd

    Member

  • Topic Starter
  • Member
  • PipPip
  • 19 posts

Couldn't scan with event viewer, he sent a message that he does not code my language (japanese). I should change my locale and restart right?

Also the filetext from process explorer is named "System Idle Process" not "Procexp.txt"

Also, now sometimes i get an error out of nowhere saying that COM Surrogater stopped working.

And there's something i forgot to mention before all the tests, my computer created many invisible folders all around my folders with a lock icon on them, i can click some of them bot others give me a message saying that the acess is negated.

Well, here are the logs:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-01-2015
Ran by Victor at 2015-01-05 23:25:18
Running from C:\Users\Victor\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

«Dark Souls - Prepare to Die»  1.0.0.1 (HKLM-x32\...\{1744E95A-53A5-9D5F-9935-A1CF739879A4}_is1) (Version: 1.0.0.1 - NAMCO BANDAI Games Inc.)
«Trine 2»  2.0 (HKLM-x32\...\Trine 2_is1) (Version: 2.0 - Frozenbyte)
µTorrent (HKLM-x32\...\uTorrent) (Version: 3.2.3.28705 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
AAC ACM Codec 1.9 (HKLM-x32\...\AACACM) (Version: 1.9 - fccHandler)
AAC ACM Codec x64 1.9 (HKLM\...\AACACM) (Version: 1.9 - fccHandler)
AC-3 ACM Codec 2.2 (HKLM-x32\...\AC3ACM) (Version: 2.2 - fccHandler)
AC-3 ACM Codec x64 2.2 (HKLM\...\AC3ACM) (Version: 2.2 - fccHandler)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.5.0.880 - Adobe Systems Incorporated)
Adobe Audition CC (HKLM-x32\...\{DE1E055B-679C-42F8-B114-7B6ED0B8ED95}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.03) - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.0.112 - Adobe Systems, Inc.)
Another World 20th Anniversary Edition © Focus Home Interactive version 1 (HKLM-x32\...\QW5vdGhlciBXb3JsZA==_is1) (Version: 1 - )
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ASIO Proxy for foobar2000 (HKLM-x32\...\ASIOProxy) (Version: 0.7.1.2 - Maxim V.Anisiutkin)
Atualizações da NVIDIA 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden
Atualiza鈬o do produto Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0416-0000-0000000FF1CE}_ENTERPRISE_{717C9095-8AAE-41CB-B046-BD6E8399F4F3}) (Version:  - Microsoft)
Atualiza鈬o do produto Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0416-0000-0000000FF1CE}_ENTERPRISE_{5016CB22-B9A7-44FB-AA72-AF28B27B15EA}) (Version:  - Microsoft)
Atualiza鈬o do produto Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0416-0000-0000000FF1CE}_ENTERPRISE_{BE3A7C0C-0081-4694-B5F9-980DD66BDDF8}) (Version:  - Microsoft)
Atualiza鈬o do produto Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0416-0000-0000000FF1CE}_ENTERPRISE_{7297E3A9-FCD4-4E0E-A306-7A90359E50E3}) (Version:  - Microsoft)
AutoHotkey 1.1.14.04 (HKLM\...\AutoHotkey) (Version: 1.1.14.04 - Lexikos)
avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software)
Bastion (HKLM-x32\...\Steam App 107100) (Version:  - Supergiant Games)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BioShock 2 (HKLM-x32\...\Steam App 8850) (Version:  - 2K Marin)
Bioshock Infinite (HKLM-x32\...\Bioshock Infinite_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
bl (x32 Version: 1.0.0 - Your Company Name) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version:  - Starbreeze Studios AB)
Castle Crashers (HKLM-x32\...\Steam App 204360) (Version:  - The Behemoth)
CDisplay 1.8 (HKLM-x32\...\CDisplay_is1) (Version:  - dvd8n)
CDisplayEx 1.10.29 (HKLM\...\CDisplayEx_is1) (Version:  - Progdigy Software S.A.R.L.)
Child of Light (HKLM-x32\...\Q2hpbGRvZkxpZ2h0_is1) (Version: 1 - )
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
CoreAAC Audio Decoder (remove only) (HKLM-x32\...\CoreAAC Audio Decoder) (Version:  - )
Curse (HKLM-x32\...\{A20BFF62-AE3C-42BD-9C52-841CAB96BC49}) (Version: 6.0.0.0 - Curse)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3304a - CyberLink Corp.)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd)
Dark Souls 2 (HKLM-x32\...\Dark Souls 2_is1) (Version:  - R.G. Freedom)
Dead Space version 1.0.0.222 (HKLM-x32\...\Dead Space_is1) (Version: 1.0.0.222 - )
Dont Starve (HKLM-x32\...\Dont Starve_is1) (Version: 1.103987 - Decepticon)
Dungeon Fighter Online (HKLM-x32\...\DFO) (Version:  - )
Dust: An Elysian Tail (HKLM-x32\...\Dust: An Elysian Tail_is1) (Version:  - Microsoft Studios)
Dustforce (HKLM-x32\...\Steam App 65300) (Version:  - Hitbox Team)
Exact Audio Copy 1.0beta3 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta3 - Andre Wiethoff)
f.lux (HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Flux) (Version:  - )
FEZ (HKLM-x32\...\FEZ_is1) (Version:  - R.G. Origami)
ffdshow v1.3.4532 [2014-07-17] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4532.0 - )
FileZilla Client 3.6.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.6.0.2 - FileZilla Project)
FLAC 1.2.1b (remove only) (HKLM-x32\...\FLAC) (Version: 1.2.1b - Xiph.org)
foobar2000 v1.3.2 (HKLM-x32\...\foobar2000) (Version: 1.3.2 - Peter Pawlowski)
GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
G-Senjou no Maou English (HKLM-x32\...\G-Senjou_no_Maou_Aegis) (Version: 1.1.2.721 - AKABEiSOFT2)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
Half Minute Hero Super Mega Neo Climax Ultimate Boy (HKLM-x32\...\Half Minute Hero Super Mega Neo Climax Ultimate Boy_is1) (Version:  - )
Half-Life (HKLM-x32\...\Half-Life) (Version:  - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
HexChat (HKLM\...\HexChat_is1) (Version: 2.10.2 - HexChat)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Kentucky Route Zero (HKLM-x32\...\GOGPACKKENTUCKYROUTEZERO_is1) (Version: 2.1.0.3 - GOG.com)
LAV Filters 0.59.1 (HKLM-x32\...\lavfilters_is1) (Version: 0.59.1 - Hendrik Leppkes)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.5.2 - www.leaguereplays.com)
Lone Survivor - The Director's Cut (HKLM-x32\...\GOGPACKLONESURVIVORDC_is1) (Version: 2.0.0.2 - GOG.com)
Luftrausers 1.0.0.1 (HKLM-x32\...\Luftrausers 1.0.0.1) (Version: 1.0.0.1 - Devolver Digital)
Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version:  - Klei Entertainment)
Mark of the Ninja Special Edition (HKLM-x32\...\Mark of the Ninja Special Edition_is1) (Version:  - )
Melty Blood Actress Again Current Code English v0.52 (HKLM-x32\...\Melty Blood Actress Again Current Code English) (Version:  - )
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт)
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Monaco What's Yours Is Mine (HKLM-x32\...\Monaco What's Yours Is Mine_is1) (Version: Monaco What's Yours Is Mine - )
Mozilla Firefox 34.0.5 (x86 pt-BR) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 pt-BR)) (Version: 34.0.5 - Mozilla)
Mp3tag v2.65a (HKLM-x32\...\Mp3tag) (Version: v2.65a - Florian Heidenreich)
MPC-HC 1.6.5.6366 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.6.5.6366 - MPC-HC Team)
NVIDIA Driver de áudio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Driver de gráficos 332.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 332.21 - NVIDIA Corporation)
NVIDIA GeForce Experience 1.8.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.1 - NVIDIA Corporation)
NVIDIA Software do sistema PhysX 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
NVIDIA Virtual Audio 1.2.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.19 - NVIDIA Corporation)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
osu! (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284C}) (Version: 0.0.0.0 - peppy)
Pacote de Idiomas do Microsoft .NET Framework 4.5 - Português (Brasil) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1046) (Version: 4.5.50709 - Microsoft Corporation)
Painel de controle da NVIDIA 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden
PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.213.0 - Tracker Software Products Ltd)
PFPortChecker 1.0.39 (HKLM-x32\...\PFPortChecker) (Version: 1.0.39 - Portforward.com)
ph (x32 Version: 1.0.0 - Your Company Name) Hidden
Port Forward Network Utilities 2.0.1 (HKLM-x32\...\Port Forward Network Utilities) (Version: 2.0.1 - Portforward.com)
Portal 2 (HKLM-x32\...\Steam App 620) (Version:  - Valve)
Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert)
qBittorrent 3.1.11 (HKLM-x32\...\qBittorrent) (Version: 3.1.11 - The qBittorrent project)
Rayman Legends (HKLM-x32\...\UmF5bWFuTGVnZW5kcw==_is1) (Version: 1 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30101 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}) (Version: 1.00.0179 - REALTEK Semiconductor Corp.)
Rogue Legacy (HKLM-x32\...\Steam App 241600) (Version:  - Cellar Door Games)
Sansa Updater (HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\Sansa Updater) (Version: 1.406 - SanDisk Corporation)
SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden
Shovel Knight (HKLM-x32\...\1207664823_is1) (Version: 2.3.0.9 - GOG.com)
Simple Port Tester (HKLM-x32\...\Simple Port Tester2.1.5) (Version: 2.1.5 - PcWinTech.com)
Skullgirls (HKLM-x32\...\Steam App 245170) (Version:  - Lab Zero Games)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Sonic Generations (HKLM-x32\...\Sonic Generations_is1) (Version: 1.0 - SEGA)
Spelunky (HKLM-x32\...\Steam App 239350) (Version:  - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Steins;Gate version 1.0 (HKLM\...\{2A05A52B-BDD8-4FD5-A65A-687CB10D98DF}_is1) (Version: 1.0 - JAST USA)
StepMania v5.0 beta 1a (remove only) (HKLM-x32\...\StepMania 5) (Version:  - StepMania Team)
Super Jukebox (Remove Only) (HKLM-x32\...\Super Jukebox) (Version:  - )
Suporte para Aplicativos Apple (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
The Binding of Isaac Rebirth 1.0 (HKLM-x32\...\The Binding of Isaac Rebirth 1.0) (Version: 1.0 - Games on Cat-A-Cat.Net)
The Swapper (HKLM-x32\...\The Swapper_is1) (Version:  - Facepalm Games)
The Walking Dead Season 2 EP 2 (HKLM-x32\...\The Walking Dead Season 2 EP 2_is1) (Version:  - )
The Walking Dead: Season 2 (HKLM-x32\...\VGhlV2Fsa2luZ0RlYWRTZWFzb24y_is1) (Version: 1 - )
The Wolf Among Us (HKLM-x32\...\VGhlV29sZkFtb25nVXM=_is1) (Version: 1 - )
The Wolf Among Us Episode 2 (HKLM-x32\...\The Wolf Among Us Episode 2_is1) (Version:  - CODEX)
The Wolf Among Us Episode 3 (HKLM-x32\...\The Wolf Among Us Episode 3_is1) (Version:  - )
Thief Gold (HKLM-x32\...\Thief Gold_is1) (Version:  - GOG.com)
This War of Mine (HKLM-x32\...\This War of Mine_is1) (Version: 1.1.1 - Релиз от R.G. Steamgames)
Transistor (HKLM-x32\...\Transistor_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
Trine (HKLM-x32\...\Steam App 35700) (Version:  - Frozenbyte)
Unity Web Player (HKU\S-1-5-21-3226518602-2015988684-2284767806-1003\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 3.0 - Ubisoft)
Valdis Sory - Abyssal City v1.0.0.22 (HKLM-x32\...\{085957E0-56FD-4640-9B2B-A560CB52526C}_is1) (Version:  - Endlessfluff Games)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
東方心綺楼 Ver1.20 (HKLM-x32\...\{B641E348-377C-4819-B92F-03F1D35A7EE3}_is1) (Version:  - 黄昏フロンティア)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

05-01-2015 17:38:11 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 00:34 - 2009-06-10 19:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {077AEE3C-7CED-42DF-8426-6AE8457E3C1F} - System32\Tasks\{40ABF494-1541-4A6F-800F-48BD9415A88D} => pcalua.exe -a C:\Users\Victor\Downloads\Electri-Q_posihfopit_Install.exe -d C:\Users\Victor\Downloads
Task: {0EEF31B6-F050-4857-98B3-F68DB664DDC3} - System32\Tasks\{E40FB8F7-26BE-4FD1-8EDA-2B89DEDAB42D} => D:\Half-Life 2 3in1\Strogino CS Portal\Half-Life 2 3in1\Half-Life_2.exe
Task: {0F963415-94B9-4664-89A8-B0DD9A87B1D3} - System32\Tasks\{4D381A77-05F0-4D8B-9A17-F02C48C5461B} => Firefox.exe http://ui.skype.com/...?LastError=1603
Task: {17215490-1E64-4D6C-A2C4-8DD51F88EE65} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-09-02] (AVAST Software)
Task: {19EBC148-5C96-496C-BEAE-011EE8662303} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-11] (Adobe Systems Incorporated)
Task: {1D627BD2-E567-4FE3-9EC3-E6C82E5666E6} - System32\Tasks\{1280E2C5-2D05-4413-9263-4180C007817B} => pcalua.exe -a C:\Users\Victor\Downloads\Samp334.exe -d C:\Users\Victor\Downloads
Task: {33D05613-9B1F-4AD0-BD72-A8EC1D3D8C00} - System32\Tasks\Steam-S-1-8-22-9865GUI => C:\Users\Victor\AppData\Roaming\CUE Tools\Reversed\steam.exe [2014-11-22] ()
Task: {4D8041A9-609F-4E83-BE80-2C758D599939} - System32\Tasks\{E9AC1964-B772-4CF2-A2B6-E65D83523B07} => pcalua.exe -a C:\Users\Valmir\Downloads\madFlac\InstallFilter.exe -d C:\Users\Valmir\Downloads\madFlac
Task: {505471E1-883F-41A7-8940-38A504902E37} - System32\Tasks\{5FC84BB2-C7DF-421C-85E3-F3909B3EAED3} => Firefox.exe http://ui.skype.com/...l?page=tsPlugin
Task: {6D4DF3CF-EC50-42BF-A948-976B914B8E1A} - System32\Tasks\{A0774542-D92C-43B5-81E3-F54CD3DDC9D2} => Firefox.exe http://ui.skype.com/...?LastError=1603
Task: {6DFBFE85-14B7-4F29-AE44-D40B2E5953CF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.)
Task: {7E6C0A9C-4AB7-4255-9018-BEB2AEED8219} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-04] (Google Inc.)
Task: {8024FB61-4646-4891-B390-CDB2E47E9BA6} - System32\Tasks\AdobeAAMUpdater-1.0-win7-PC-Valmir => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-03-21] (Adobe Systems Incorporated)
Task: {9C166C40-BA93-49E1-B1AD-2424FB3F47C9} - System32\Tasks\{4341DF29-5009-42E8-823E-E70517493025} => Firefox.exe http://ui.skype.com/...l?page=tsPlugin
Task: {A1BB3DAD-D922-45C1-A005-E57AED011F63} - System32\Tasks\{7A04AE9D-BB96-4B4E-8111-E68C1FF2782E} => D:\Half-Life 2 3in1\Strogino CS Portal\Half-Life 2 3in1\Half-Life_2.exe
Task: {A4E2FC33-F5C1-419A-B974-712AEE3B2CD0} - System32\Tasks\{D86E1D28-B72C-43D2-9539-D19B1C40CC0F} => pcalua.exe -a "C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe" -d "C:\Program Files (x86)\VS Revo Group\Revo Uninstaller" -c -hunter
Task: {B5ACBDAC-986C-4C1A-972F-275A7241823D} - System32\Tasks\{247C7F0B-1FC0-4D1B-BFE7-869A20167424} => Firefox.exe http://ui.skype.com/...all?page=tsMain
Task: {E74746D7-D0AD-46C9-B61A-36C449E2601C} - System32\Tasks\{3481F3F2-31DC-4703-8942-F7859CB01767} => pcalua.exe -a D:\DFO\DFOIns.exe -d D:\DFO
Task: {E96BFD7C-4D51-4764-8AC7-1094432B61D6} - System32\Tasks\{7B99197F-0C4A-4970-89B9-12F30F7FE096} => Firefox.exe http://ui.skype.com/...?LastError=1603
Task: {F97B79D9-6649-40B4-9FAB-ACE9D7F5AFA4} - System32\Tasks\{384FBD80-46D5-4458-948C-FF9424DBE869} => Firefox.exe http://ui.skype.com/...?LastError=1603
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-06-16 20:07 - 2013-06-16 20:07 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2010-01-02 12:42 - 2010-01-02 12:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2013-05-05 11:52 - 2013-12-19 16:53 - 00117536 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-09-02 21:30 - 2014-09-02 21:30 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2015-01-05 17:37 - 2015-01-05 17:37 - 02909696 _____ () C:\Program Files\AVAST Software\Avast\defs\15010501\algo.dll
2014-04-23 17:05 - 2014-04-23 17:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 17:04 - 2014-04-23 17:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-09-02 21:30 - 2014-09-02 21:30 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrador (S-1-5-21-3226518602-2015988684-2284767806-500 - Administrator - Disabled)
Convidado (S-1-5-21-3226518602-2015988684-2284767806-501 - Limited - Disabled)
Valmir (S-1-5-21-3226518602-2015988684-2284767806-1001 - Administrator - Enabled) => C:\Users\Valmir
Victor (S-1-5-21-3226518602-2015988684-2284767806-1003 - Administrator - Enabled) => C:\Users\Victor

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============

Microsoft Office Sessions:
=========================

CodeIntegrity Errors:
===================================
  Date: 2013-02-10 17:22:48.350
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\PeerGuardian2\pgfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2013-02-10 17:22:48.250
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\PeerGuardian2\pgfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel® Core™ i5 CPU M 520 @ 2.40GHz
Percentage of memory in use: 31%
Total physical RAM: 4021.86 MB
Available physical RAM: 2763.8 MB
Total Pagefile: 8041.9 MB
Available Pagefile: 6653.45 MB
Total Virtual: 8192 MB
Available Virtual: 8191.86 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:298.4 GB) (Free:4.92 GB) NTFS
Drive d: () (Fixed) (Total:287.67 GB) (Free:1.72 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: D9EA3401)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=298.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=287.7 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=10 GB) - (Type=12)

==================== End Of Log ============================

 

Summary
        Operating System
            Windows 7 Ultimate 64-bit SP1
        CPU
            Intel Core i5 520M @ 2.40GHz    67 °C
            Arrandale 32nm Technology
        RAM
            4,00GB Dual-Channel DDR3 @ 531MHz (7-7-7-20)
        Motherboard
            Intel Corp. Base Board Product Name (CPU)    72 °C
        Graphics
            Monitor Generico PnP ([email protected])
            1024MB NVIDIA GeForce GT 335M (LG Electronics)    62 °C
        Storage
            596GB TOSHIBA MK6465GSX ATA Device (SATA)    45 °C
        Optical Drives
            HL-DT-ST BDDVDRW CT21N ATA Device
        Audio
            NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Operating System
    Windows 7 Ultimate 64-bit SP1
    Computer type: Other
    Installation Date: 2013/01/04 09:08:54
        Windows Security Center
            User Account Control (UAC)    Disabled
            Firewall    Enabled
        Windows Update
            AutoUpdate    Download Automatically and Install at Set Scheduled time
            Schedule Frequency    Every Day
            Schedule Time    03:00
        Windows Defender
            Windows Defender    Enabled
        Antivirus
            Antivirus    Disabled
            Company Name    AVAST Software
            Display Name    avast! Antivirus
            Product Version    9.0.2021
            Virus Signature Database    Up to date
        .NET Frameworks installed
            v4.5 Full
            v4.5 Client
            v3.5 SP1
            v3.0 SP2
            v2.0 SP2
        Internet Explorer
            Version    11.0.9600.17207
        PowerShell
            Version    2.0
        Java
                Java Runtime Environment
                    Path    C:\Program Files (x86)\Java\jre1.8.0_25\bin\java.exe
                    Version    8.0
                    Update    25
                    Build    18
        Environment Variables
            USERPROFILE    C:\Users\Victor
            SystemRoot    C:\Windows
                User Variables
                    AV_APPDATA    C:\Users\Victor\AppData\Roaming
                    TEMP    C:\Users\Victor\AppData\Local\Temp
                    TMP    C:\Users\Victor\AppData\Local\Temp
                Machine Variables
                    asl.log    Destination=file
                    ComSpec    C:\Windows\system32\cmd.exe
                    FP_NO_HOST_CHECK    NO
                    NUMBER_OF_PROCESSORS    4
                    OS    Windows_NT
                    Path    C:\ProgramData\Oracle\Java\javapath
                    C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
                    %CommonProgramFiles%\Microsoft Shared\Windows Live
                    C:\Windows\system32
                    C:\Windows
                    C:\Windows\System32\Wbem
                    C:\Windows\System32\WindowsPowerShell\v1.0\
                    PATHEXT    .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
                    PROCESSOR_ARCHITECTURE    AMD64
                    PROCESSOR_IDENTIFIER    Intel64 Family 6 Model 37 Stepping 2, GenuineIntel
                    PROCESSOR_LEVEL    6
                    PROCESSOR_REVISION    2502
                    PSModulePath    C:\Windows\system32\WindowsPowerShell\v1.0\Modules\
                    TEMP    C:\Windows\TEMP
                    TMP    C:\Windows\TEMP
                    USERNAME    SYSTEM
                    windir    C:\Windows
        Battery
            AC Line    Online
            Battery Charge %    100 %
            Battery State    High
            Remaining Battery Time    Unknown
        Power Profile
            Active power scheme    Alto desempenho
            Hibernation    Enabled
            Turn Off Monitor after: (On AC Power)    15 min
            Turn Off Monitor after: (On Battery Power)    10 min
            Turn Off Hard Disk after: (On AC Power)    20 min
            Turn Off Hard Disk after: (On Battery Power)    20 min
            Suspend after: (On AC Power)    Never
            Suspend after: (On Battery Power)    Never
            Screen saver    Disabled
        Uptime
                Current Session
                    Current Time    2015/01/06 18:39:38
                    Current Uptime    13.207 sec (0 d, 03 h, 40 m, 07 s)
                    Last Boot Time    2015/01/06 14:59:31
        Services
            Running    Acesso a Dispositivo de Interface Humana
            Running    Adobe Acrobat Update Service
            Running    Agendador de Classes de Multimidia
            Running    Agendador de Tarefas
            Running    Apple Mobile Device
            Running    Arquivos Offline
            Running    Auxiliar de IP
            Running    Auxiliar NetBIOS TCP/IP
            Running    avast! Antivirus
            Running    Central de Seguranca
            Running    Chamada de procedimento remoto (RPC)
            Running    Cliente da Diretiva de Grupo
            Running    Cliente de rastreamento de link distribuido
            Running    Cliente DHCP
            Running    Cliente DNS
            Running    COM+ evento do sistema
            Running    Conexoes de Rede
            Running    Configuracao Automatica de WLAN
            Running    Construtor de Pontos de Extremidade de Audio do Windows
            Running    Descoberta SSDP
            Running    Deteccao do hardware do shell
            Running    Energia
            Running    Estacao de trabalho
            Running    Experiencia com Aplicativo
            Running    Firewall do Windows
            Running    Gerenciador de Identidades de Rede de Mesmo Nivel
            Running    Gerenciador de Sessao do Gerenciador de Janelas da Area de Trabalho
            Running    Gerente de Contas de Seguranca
            Running    Host de dispositivo UPnP
            Running    Host de Provedor da Descoberta de Funcao
            Running    Host do Servico de Diagnostico
            Running    Inicializador de Processo de Servidor DCOM
            Running    iPod Service
            Running    Isolamento de Chave CNG
            Running    Log de Eventos do Windows
            Running    Mapeador de Ponto de Extremidade RPC
            Running    Mecanismo de Filtragem Basica
            Running    Modulos de Criacao de Chaves IKE e AuthIP do IPSec
            Running    NVIDIA Display Driver Service
            Running    NVIDIA Network Service
            Running    NVIDIA Streamer Service
            Running    Pesquisador de Computadores
            Running    Plug and Play
            Running    PnkBstrA
            Running    Protocolo de Autenticacao Extensivel
            Running    Protocolo PNRP
            Running    Provedor do Grupo Domestico
            Running    Publicacao de Recursos de Descoberta de Funcao
            Running    Reconhecimento de Locais de Rede
            Running    Server
            Running    Servico Auxiliar de Compatibilidade de Programas
            Running    Servico da Lista de Redes
            Running    Servico de Cache de Fontes do Windows
            Running    Servico de Compartilhamento de Rede do Windows Media Player
            Running    Servico de Descoberta Automatica de Proxy da Web do WinHTTP
            Running    Servico de Diretiva de Diagnostico
            Running    Servico de Interface de Repositorio de Rede
            Running    Servico de Notificacao de Eventos do Sistema
            Running    Servico de Perfil de Usuario
            Running    Servico de Relatorios de Erro do Windows
            Running    Servico de Suporte a Bluetooth
            Running    Servico de transferencia inteligente de plano de fundo
            Running    Servico do Bonjour
            Running    Servicos de criptografia
            Running    Spooler de Impressao
            Running    Superfetch
            Running    Temas
            Running    Testador de instrumentacao de gerenciam. do Windows
            Running    Windows Defender
            Running    Windows Live ID Sign-in Assistant
            Running    Windows Search
            Running    Windows Update
            Running    Audio do Windows
            Stopped    Adobe Flash Player Update Service
            Stopped    Agente de Diretiva IPsec
            Stopped    Agente de Protecao de Acesso a Rede
            Stopped    Agrupamento de Rede de Mesmo Nivel
            Stopped    Alocador Remote Procedure Call (RPC)
            Stopped    Armazenamento Protegido
            Stopped    Assistente de aquisicao de imagens do Windows (WIA)
            Stopped    Backup do Windows
            Stopped    BranchCache
            Stopped    Brilho Adaptavel
            Stopped    Cartao inteligente
            Stopped    Cliente da Web
            Stopped    Coletor de Eventos do Windows
            Stopped    COM+ System Application
            Stopped    Conexao Facil do Windows - Registrador de Configuracao
            Stopped    Configuracao Automatica com Fio
            Stopped    Configuracao Automatica de WWAN
            Stopped    Configuracao da Area de Trabalho Remota
            Stopped    Coordenador de transacoes distribuidas
            Stopped    Copia de Sombra de Volume
            Stopped    Desfragmentador de Disco
            Stopped    Deteccao de Servicos Interativos
            Stopped    Diretiva de Remocao de Cartao Inteligente
            Stopped    Disco Virtual
            Stopped    EFS (Encrypting File System)
            Stopped    Enumerador de Barramento PnP-X IP
            Stopped    Escuta do Grupo Domestico
            Stopped    Fax
            Stopped    Gerenciador de conexao de acesso remoto
            Stopped    Gerenciador de conexao de acesso remoto automatico
            Stopped    Gerenciador de Credenciais
            Stopped    Gerenciamento de aplicativo
            Stopped    Gerenciamento de Chaves e Certificados de Integridade
            Stopped    Hi-Rez Studios Authenticate and Update Service
            Stopped    Horario do Windows
            Stopped    Host de DLL de Contador de Desempenho
            Stopped    Host do Sistema de Diagnosticos
            Stopped    ICS (Compartilhamento de Conexao com a Internet)
            Stopped    Identidade do Aplicativo
            Stopped    Informacoes sobre Aplicativos
            Stopped    Instalador de Modulos do Windows
            Stopped    Instalador do ActiveX (AxInstSV)
            Stopped    Interceptacao SNMP
            Stopped    Internet Explorer ETW Collector Service
            Stopped    KtmRm para Coordenador de Transacoes Distribuidas
            Stopped    Listener Adapter do Net.Msmq
            Stopped    Listener Adapter do Net.Pipe
            Stopped    Listener Adapter Net.Tcp
            Stopped    Logon de rede
            Stopped    Logon secundario
            Stopped    Logs e alertas de desempenho
            Stopped    Mapeador da Descoberta de Topologia da Camada de Link
            Stopped    Microsoft .NET Framework NGEN v2.0.50727_X64
            Stopped    Microsoft .NET Framework NGEN v2.0.50727_X86
            Stopped    Microsoft .NET Framework NGEN v4.0.30319_X64
            Stopped    Microsoft .NET Framework NGEN v4.0.30319_X86
            Stopped    Microsoft Office Diagnostics Service
            Stopped    Microsoft Office Groove Audit Service
            Stopped    Office Source Engine
            Stopped    Parental Controls
            Stopped    Propagacao de Certificado
            Stopped    Protecao de Software
            Stopped    Provedor de Copia de Sombra de Software da Microsoft
            Stopped    Quality Windows Audio Video Experience
            Stopped    Redirecionador de Portas do Modo do Usuario dos Servicos de Area de Trabalho
            Stopped    Registro remoto
            Stopped    Roteamento e Acesso Remoto
            Stopped    Servico de estado do ASP.NET
            Stopped    Servidor de Ordem de Thread
            Stopped    Servico Agendador do Windows Media Center
            Stopped    Servico de Biometria do Windows
            Stopped    Servico de Compartilhamento de Porta Net.Tcp
            Stopped    Servico de Criptografia de Unidade de Disco BitLocker
            Stopped    Servico de Entrada de Tablet PC
            Stopped    Servico de Mecanismo de Backup em Nivel de Bloco
            Stopped    Servico de Notificacao da SPP
            Stopped    Servico de Publicacao de Nome de Computador do PNRP
            Stopped    Servico de Tecnologias de Ativacao do Windows
            Stopped    Servico do Google Update (gupdate)
            Stopped    Servico do Google Update (gupdatem)
            Stopped    Servico do Media Center Extender
            Stopped    Servico Enumerador de Dispositivos Portateis
            Stopped    Servico Gateway de Camada de Aplicativo
            Stopped    Servico Iniciador Microsoft iSCSI
            Stopped    Servico Receptor do Windows Media Center
            Stopped    Servico SSTP
            Stopped    Servicos Base de TPM
            Stopped    Servicos de Area de Trabalho Remota
            Stopped    Sistema de Cores do Windows
            Stopped    Skype Updater
            Stopped    Steam Client Service
            Stopped    Suporte do Painel de Controle Relatorios de Problemas e Solucoes
            Stopped    Telefonia
            Stopped    Windows CardSpace
            Stopped    Windows Driver Foundation - Estrutura do Driver de Modo de Usuario
            Stopped    Windows Installer
            Stopped    Windows Presentation Foundation Font Cache 3.0.0.0
            Stopped    Windows Remote Management (WS-Management)
            Stopped    WMI Performance Adapter
        TimeZone
            TimeZone    GMT -3:00 Hours
            Language    Japones (Japao)
            Location    Brasil
            Format    Portugues (Brasil)
            Currency    R$
            Date Format    yyyy/MM/dd
            Time Format    HH:mm:ss
        Scheduler
            2015/01/06 18:47;    GoogleUpdateTaskMachineUA
            2015/01/06 19:02;    Adobe Flash Player Updater
            2015/01/06 20:47;    GoogleUpdateTaskMachineCore
            2015/01/07 02:00;    AdobeAAMUpdater-1.0-win7-PC-Valmir
            SidebarExecute
            Steam-S-1-8-22-9865GUI
        System Folders
            Application Data    C:\ProgramData
            Cookies    C:\Users\Victor\AppData\Roaming\Microsoft\Windows\Cookies
            Desktop    C:\Users\Victor\Desktop
            Documents    C:\Users\Public\Documents
            Fonts    C:\Windows\Fonts
            Global Favorites    C:\Users\Victor\Favorites
            Internet History    C:\Users\Victor\AppData\Local\Microsoft\Windows\History
            Local Application Data    C:\Users\Victor\AppData\Local
            Music    C:\Users\Public\Music
            Path for burning CD    C:\Users\Victor\AppData\Local\Microsoft\Windows\Burn\Burn
            Physical Desktop    C:\Users\Victor\Desktop
            Pictures    C:\Users\Public\Pictures
            Program Files    C:\Program Files
            Public Desktop    C:\Users\Public\Desktop
            Start Menu    C:\ProgramData\Microsoft\Windows\Start Menu
            Start Menu Programs    C:\ProgramData\Microsoft\Windows\Start Menu\Programs
            Startup    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
            Templates    C:\ProgramData\Microsoft\Windows\Templates
            Temporary Internet Files    C:\Users\Victor\AppData\Local\Microsoft\Windows\Temporary Internet Files
            User Favorites    C:\Users\Victor\Favorites
            Videos    C:\Users\Public\Videos
            Windows Directory    C:\Windows
            Windows/System    C:\Windows\system32
        Process List
                AppleMobileDeviceService.exe
                    Process ID    1836
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                    Memory Usage    9,41 MB
                    Peak Memory Usage    9,50 MB
                armsvc.exe
                    Process ID    1692
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
                    Memory Usage    3,92 MB
                    Peak Memory Usage    3,97 MB
                audiodg.exe
                    Process ID    1352
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Memory Usage    16 MB
                    Peak Memory Usage    16 MB
                AvastSvc.exe
                    Process ID    1432
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\AVAST Software\Avast\AvastSvc.exe
                    Memory Usage    18 MB
                    Peak Memory Usage    70 MB
                avastui.exe
                    Process ID    3508
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files\AVAST Software\Avast\avastui.exe
                    Memory Usage    15 MB
                    Peak Memory Usage    24 MB
                conhost.exe
                    Process ID    3056
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\conhost.exe
                    Memory Usage    4,97 MB
                    Peak Memory Usage    4,98 MB
                csrss.exe
                    Process ID    528
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\csrss.exe
                    Memory Usage    5,67 MB
                    Peak Memory Usage    8,43 MB
                csrss.exe
                    Process ID    588
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\csrss.exe
                    Memory Usage    17 MB
                    Peak Memory Usage    20 MB
                dllhost.exe
                    Process ID    5960
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\system32\DllHost.exe
                    Memory Usage    9,68 MB
                    Peak Memory Usage    9,68 MB
                dwm.exe
                    Process ID    1108
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\system32\Dwm.exe
                    Memory Usage    34 MB
                    Peak Memory Usage    34 MB
                explorer.exe
                    Process ID    452
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\Explorer.EXE
                    Memory Usage    70 MB
                    Peak Memory Usage    70 MB
                firefox.exe
                    Process ID    3168
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
                    Memory Usage    426 MB
                    Peak Memory Usage    532 MB
                FlashPlayerPlugin_16_0_0_235.exe
                    Process ID    3968
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
                    Memory Usage    117 MB
                    Peak Memory Usage    251 MB
                FlashPlayerPlugin_16_0_0_235.exe
                    Process ID    3684
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
                    Memory Usage    10 MB
                    Peak Memory Usage    10 MB
                flux.exe
                    Process ID    3256
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Users\Victor\AppData\Local\FluxSoftware\Flux\flux.exe
                    Memory Usage    24 MB
                    Peak Memory Usage    31 MB
                foobar2000.exe
                    Process ID    5264
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\foobar2000\foobar2000.exe
                    Memory Usage    32 MB
                    Peak Memory Usage    32 MB
                iPodService.exe
                    Process ID    4072
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\iPod\bin\iPodService.exe
                    Memory Usage    7,02 MB
                    Peak Memory Usage    7,13 MB
                iTunesHelper.exe
                    Process ID    3492
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\iTunes\iTunesHelper.exe
                    Memory Usage    12 MB
                    Peak Memory Usage    12 MB
                lsass.exe
                    Process ID    704
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\lsass.exe
                    Memory Usage    12 MB
                    Peak Memory Usage    12 MB
                lsm.exe
                    Process ID    712
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\lsm.exe
                    Memory Usage    4,54 MB
                    Peak Memory Usage    4,55 MB
                mDNSResponder.exe
                    Process ID    1872
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\Bonjour\mDNSResponder.exe
                    Memory Usage    6,07 MB
                    Peak Memory Usage    6,12 MB
                notepad.exe
                    Process ID    124
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\system32\notepad.exe
                    Memory Usage    6,02 MB
                    Peak Memory Usage    6,03 MB
                notepad.exe
                    Process ID    4696
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\system32\notepad.exe
                    Memory Usage    5,94 MB
                    Peak Memory Usage    5,94 MB
                NvBackend.exe
                    Process ID    1948
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
                    Memory Usage    10 MB
                    Peak Memory Usage    23 MB
                NvNetworkService.exe
                    Process ID    1920
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
                    Memory Usage    5,16 MB
                    Peak Memory Usage    5,24 MB
                nvstreamsvc.exe
                    Process ID    1980
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
                    Memory Usage    8,95 MB
                    Peak Memory Usage    9,83 MB
                nvstreamsvc.exe
                    Process ID    228
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
                    Memory Usage    11 MB
                    Peak Memory Usage    11 MB
                NvTmru.exe
                    Process ID    3116
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
                    Memory Usage    7,70 MB
                    Peak Memory Usage    8,20 MB
                nvtray.exe
                    Process ID    3736
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
                    Memory Usage    12 MB
                    Peak Memory Usage    12 MB
                nvvsvc.exe
                    Process ID    896
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\nvvsvc.exe
                    Memory Usage    7,36 MB
                    Peak Memory Usage    7,42 MB
                nvvsvc.exe
                    Process ID    1188
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\nvvsvc.exe
                    Memory Usage    14 MB
                    Peak Memory Usage    14 MB
                nvxdsync.exe
                    Process ID    1180
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
                    Memory Usage    19 MB
                    Peak Memory Usage    19 MB
                plugin-container.exe
                    Process ID    1588
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
                    Memory Usage    19 MB
                    Peak Memory Usage    22 MB
                PnkBstrA.exe
                    Process ID    2028
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\SysWOW64\PnkBstrA.exe
                    Memory Usage    4,17 MB
                    Peak Memory Usage    4,22 MB
                PrintIsolationHost.exe
                    Process ID    5816
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\PrintIsolationHost.exe
                    Memory Usage    4,74 MB
                    Peak Memory Usage    4,74 MB
                RAVCpl64.exe
                    Process ID    3108
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
                    Memory Usage    10 MB
                    Peak Memory Usage    12 MB
                rundll32.exe
                    Process ID    2136
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\rundll32.exe
                    Memory Usage    8,29 MB
                    Peak Memory Usage    8,33 MB
                SansaDispatch.exe
                    Process ID    3204
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Users\Victor\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
                    Memory Usage    6,74 MB
                    Peak Memory Usage    6,75 MB
                SearchIndexer.exe
                    Process ID    2384
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\SearchIndexer.exe
                    Memory Usage    23 MB
                    Peak Memory Usage    24 MB
                services.exe
                    Process ID    648
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\services.exe
                    Memory Usage    11 MB
                    Peak Memory Usage    15 MB
                Skype.exe
                    Process ID    4180
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files (x86)\Skype\Phone\Skype.exe
                    Memory Usage    200 MB
                    Peak Memory Usage    203 MB
                smss.exe
                    Process ID    344
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    \SystemRoot\System32\smss.exe
                    Memory Usage    1,15 MB
                    Peak Memory Usage    1,19 MB
                Speccy64.exe
                    Process ID    4132
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Program Files\Speccy\Speccy64.exe
                    Memory Usage    30 MB
                    Peak Memory Usage    30 MB
                spoolsv.exe
                    Process ID    1564
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\System32\spoolsv.exe
                    Memory Usage    13 MB
                    Peak Memory Usage    14 MB
                svchost.exe
                    Process ID    1608
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    19 MB
                    Peak Memory Usage    20 MB
                svchost.exe
                    Process ID    2564
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    4,77 MB
                    Peak Memory Usage    4,79 MB
                svchost.exe
                    Process ID    164
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    42 MB
                    Peak Memory Usage    47 MB
                svchost.exe
                    Process ID    2808
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    11 MB
                    Peak Memory Usage    11 MB
                svchost.exe
                    Process ID    2080
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\System32\svchost.exe
                    Memory Usage    26 MB
                    Peak Memory Usage    185 MB
                svchost.exe
                    Process ID    812
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    9,82 MB
                    Peak Memory Usage    9,99 MB
                svchost.exe
                    Process ID    936
                    User    SERVICO DE REDE
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    9,27 MB
                    Peak Memory Usage    9,31 MB
                svchost.exe
                    Process ID    128
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\System32\svchost.exe
                    Memory Usage    25 MB
                    Peak Memory Usage    25 MB
                svchost.exe
                    Process ID    5128
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\System32\svchost.exe
                    Memory Usage    4,25 MB
                    Peak Memory Usage    4,34 MB
                svchost.exe
                    Process ID    276
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\System32\svchost.exe
                    Memory Usage    155 MB
                    Peak Memory Usage    203 MB
                svchost.exe
                    Process ID    448
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    19 MB
                    Peak Memory Usage    32 MB
                svchost.exe
                    Process ID    1028
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    6,86 MB
                    Peak Memory Usage    6,88 MB
                svchost.exe
                    Process ID    5784
                    User    SERVICO LOCAL
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\System32\svchost.exe
                    Memory Usage    6,75 MB
                    Peak Memory Usage    6,75 MB
                svchost.exe
                    Process ID    1340
                    User    SERVICO DE REDE
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\svchost.exe
                    Memory Usage    30 MB
                    Peak Memory Usage    42 MB
                System
                    Process ID    4
                    Memory Usage    4,89 MB
                    Peak Memory Usage    13 MB
                System Idle Process
                    Process ID    0
                unsecapp.exe
                    Process ID    3956
                    User    Victor
                    Domain    win7-PC
                    Path    C:\Windows\system32\wbem\unsecapp.exe
                    Memory Usage    6,16 MB
                    Peak Memory Usage    6,18 MB
                wininit.exe
                    Process ID    596
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\wininit.exe
                    Memory Usage    4,90 MB
                    Peak Memory Usage    5,00 MB
                winlogon.exe
                    Process ID    672
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\winlogon.exe
                    Memory Usage    7,61 MB
                    Peak Memory Usage    9,29 MB
                WLIDSVC.EXE
                    Process ID    1468
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
                    Memory Usage    12 MB
                    Peak Memory Usage    13 MB
                WLIDSVCM.EXE
                    Process ID    2624
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
                    Memory Usage    3,43 MB
                    Peak Memory Usage    3,47 MB
                WmiPrvSE.exe
                    Process ID    2104
                    User    SERVICO DE REDE
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\wbem\wmiprvse.exe
                    Memory Usage    15 MB
                    Peak Memory Usage    16 MB
                WmiPrvSE.exe
                    Process ID    3520
                    User    SISTEMA
                    Domain    AUTORIDADE NT
                    Path    C:\Windows\system32\wbem\wmiprvse.exe
                    Memory Usage    16 MB
                    Peak Memory Usage    16 MB
                wmpnetwk.exe
                    Process ID    4852
                    User    SERVICO DE REDE
                    Domain    AUTORIDADE NT
                    Path    C:\Program Files\Windows Media Player\wmpnetwk.exe
                    Memory Usage    11 MB
                    Peak Memory Usage    13 MB
        Security Options
            Acesso a rede: caminhos do Registro acessiveis remotamente    System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion
            Acesso a rede: caminhos e subcaminhos do Registro acessiveis remotamente    System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog
            Acesso a rede: compartilhamentos acessiveis anonimamente    Nao definida
            Acesso a rede: deixar que as permissoes de todos os usuarios sejam aplicadas a usuarios anonimos    Desabilitada
            Acesso a rede: modelo de compartilhamento e seguranca para contas locais    Classico - os usuarios locais sao autenticados como eles proprios
            Acesso a rede: nao permitir enumeracao anonima de contas e compartilhamentos SAM    Desabilitada
            Acesso a rede: nao permitir enumeracao anonima de contas SAM    Habilitada
            Acesso a rede: nao permitir o armazenamento de senhas e credenciais para autenticacao de rede    Desabilitada
            Acesso a rede: permitir SID anonimo/Conversao de nomes    Desabilitada
            Acesso a rede: pipes nomeados acessiveis anonimamente
            Acesso de rede: acesso anonimo restrito a pipes nomeados e compartilhamentos    Habilitada
            Auditoria: desligar o sistema imediatamente se nao for possivel o log de auditorias de seguranca    Desabilitada
            Auditoria: fazer auditoria do acesso a objetos do sistema global    Desabilitada
            Auditoria: fazer auditoria do uso dos privilegios Backup e Restauracao    Desabilitada
            Auditoria: forcar configuracoes de subcategorias de diretivas de auditoria (Windows Vista ou superior) para substituir configuracoes de categorias de diretivas de auditoria    Nao definida
            Cliente de rede Microsoft: assinar digitalmente a comunicacao (se o servidor concordar)    Habilitada
            Cliente de rede Microsoft: assinar digitalmente a comunicacao (sempre)    Desabilitada
            Cliente de rede Microsoft: enviar senha nao criptografada para conectar-se a servidores SMB de outro fabricante    Desabilitada
            Configuracoes do sistema: subsistemas opcionais    Posix
            Configuracoes do sistema: usar regras de certificado em arquivos executaveis do Windows para diretivas de restricao de software    Desabilitada
            Console de recuperacao: permite copia em disquete e acesso a todas as unidades e pastas    Desabilitada
            Console de recuperacao: permitir logon administrativo automatico    Desabilitada
            Contas: limite o uso em contas locais de senhas em branco somente ao logon no console    Habilitada
            Contas: renomear conta do administrador    Administrador
            Contas: renomear conta do convidado    Convidado
            Contas: status de conta de administrador    Desabilitada
            Contas: status de conta de convidado    Desabilitada
            Controlador de dominio: requisitos de assinatura de servidor LDAP    Nao definida
            Controlador do dominio: permitir que operadores do servidor agendem tarefas    Nao definida
            Controlador do dominio: recusar alteracoes de senha de conta de computador    Nao definida
            Controle de Conta de Usuario: alternar para a area de trabalho segura ao pedir elevacao    Desabilitada
            Controle de Conta de Usuario: comportamento da solicitacao de elevacao de administradores no Modo de Aprovacao de Administrador    Elevar sem aviso
            Controle de Conta de Usuario: comportamento da solicitacao de elevacao de usuarios padrao    Pedir credenciais
            Controle de Conta de Usuario: detectar instalacoes de aplicativos e perguntar se deseja elevar    Habilitada
            Controle de Conta de Usuario: elevar somente executaveis assinados e validados    Desabilitada
            Controle de Conta de Usuario: eleve apenas aplicativos UIAccess que estejam instalados em locais seguros    Habilitada
            Controle de Conta de Usuario: executar todos os administradores no Modo de Aprovacao de Administrador    Desabilitada
            Controle de Conta de Usuario: Modo de Aprovacao de Administrador para a conta interna Administrador    Desabilitada
            Controle de Conta de Usuario: permitir que aplicativos UIAccess solicitem elevacao sem usar a area de trabalho protegida    Desabilitada
            Controle de Conta de Usuario: virtualizar falhas de gravacao de arquivos e Registros para locais por usuario    Habilitada
            Criptografia de sistema: usar algoritmos compativeis com FIPS para criptografia, hash e assinatura    Desabilitada
            Criptografia do sistema: forcar protecao de chave forte para chaves do usuario armazenadas no computador    Nao definida
            DCOM: Restricoes de Acesso ao Computador na sintaxe da Linguagem de Definicao do Descritor de Seguranca (SDDL)    Nao definida
            DCOM: Restricoes de Inicializacao de Computador na sintaxe da Linguagem de Definicao do Descritor de Seguranca (SDDL)    Nao definida
            Desligamento: limpar arquivo de paginacao de memoria virtual    Desabilitada
            Desligamento: permitir que o sistema seja encerrado sem a necessidade de fazer logon    Habilitada
            Dispositivos: evita que usuarios instalem drivers de impressora    Desabilitada
            Dispositivos: permite formatar e ejetar a midia removivel    Nao definida
            Dispositivos: permitir desencaixe sem fazer logon    Habilitada
            Dispositivos: restringir acesso ao CD-ROM apenas aos usuarios com logon local    Nao definida
            Dispositivos: restringir acesso ao disquete apenas aos usuarios com logon local    Nao definida
            Logon interativo: comportamento de remocao de cartao inteligente    Nenhuma acao
            Logon interativo: exibir informacoes do usuario quando a sessao estiver bloqueada    Nao definida
            Logon interativo: exigir autenticacao de controlador de dominio para desbloqueio de estacao de trabalho    Desabilitada
            Logon interativo: nao exibir o ultimo nome do usuario    Desabilitada
            Logon interativo: nao exigir Ctrl+Alt+Del    Nao definida
            Logon interativo: numero de logons anteriores para armazenar em cache (caso o controlador de dominio nao esteja disponivel)    10 logons
            Logon interativo: pedir que o usuario altere a senha antes que ela expire    5 Dias
            Logon interativo: requer um cartao inteligente    Desabilitada
            Logon interativo: texto de mensagem para usuarios tentando fazer logon
            Logon interativo: titulo da mensagem para usuarios tentando fazer logon
            Membro de dominio: duracao maxima de senha de conta de computador    30 Dias
            Membro do dominio: assinar digitalmente dados do canal seguro (quando for possivel)    Habilitada
            Membro do dominio: criptografar digitalmente dados do canal seguro (quando for possivel)    Habilitada
            Membro do dominio: criptografar ou assinar digitalmente os dados de canal seguro (sempre)    Habilitada
            Membro do dominio: desativar alteracoes de senha de conta da maquina    Desabilitada
            Membro do dominio: requer uma chave de sessao de alta seguranca (Windows 2000 ou posterior)    Habilitada
            Objetos de sistema: restringir permissoes padrao de objetos do sistema interno (por exemplo: Ligacoes simbolicas)    Habilitada
            Objetos do sistema: exigir distincao entre maiusculas e minusculas para subsistemas nao-Windows    Habilitada
            Seguranca de rede: Configurar tipos de criptografia permitidos para Kerberos    Nao definida
            Seguranca de rede: forcar logoff quando o horario de logon terminar    Desabilitada
            Seguranca de rede: nao armazenar o valor de hash do LAN Manager na proxima alteracao de senha    Habilitada
            Seguranca de rede: nivel de autenticacao LAN Manager    Nao definida
            Seguranca de Rede: permitir fallback de sessao NULA do LocalSystem    Nao definida
            Seguranca de Rede: permitir que o LocalSystem use a identidade do computador para NTLM    Nao definida
            Seguranca de Rede: permitir solicitacoes de autenticacao PKU2U a este computador para o uso de identidades online    Nao definida
            Seguranca de rede: requisitos de assinatura de cliente LDAP    Negociar assinatura
            Seguranca de Rede: Restringir NTLM: Adicionar excecoes de servidor neste dominio    Nao definida
            Seguranca de rede: Restringir NTLM: Adicionar excecoes de servidor remoto para autenticacao NTLM    Nao definida
            Seguranca de Rede: Restringir NTLM: Autenticacao NTLM neste dominio    Nao definida
            Seguranca de Rede: Restringir NTLM: fazer auditoria da autenticacao NTLM neste dominio    Nao definida
            Seguranca de Rede: Restringir NTLM: fazer auditoria do trafego NTLM de entrada    Nao definida
            Seguranca de rede: Restringir NTLM: Trafego NTLM de entrada    Nao definida
            Seguranca de rede: Restringir NTLM: Trafego NTLM de saida para servidores remotos    Nao definida
            Seguranca de rede: seguranca minima de sessao para clientes baseados em NTLM SSP (incluindo RPC seguro)    Exigir criptografia de 128 bits
            Seguranca de rede: seguranca minima de sessao para servidores baseados em NTLM SSP (incluindo RPC seguro)    Exigir criptografia de 128 bits
            Servidor da rede Microsoft: periodo de tempo ocioso necessario antes de desconectar a sessao    15 minutos
            Servidor de rede Microsoft: assinar digitalmente a comunicacao (se o cliente concordar)    Desabilitada
            Servidor de rede Microsoft: assinar digitalmente a comunicacao (sempre)    Desabilitada
            Servidor de rede Microsoft: desconectar clientes apos o termino do tempo de logon    Habilitada
            Servidor de rede Microsoft: nivel de validacao do nome do destino do Server SPN    Nao definida
        Device Tree
                ACPI x64-based PC
                    Watchdog da Microsoft
                        Microsoft ACPI-Compliant System
                            Adaptador de CA da Microsoft
                            Bateria de Metodo de Controle Compativel com ACPI da Microsoft
                            Botao de recurso fixo ACPI
                            Botao ligar/desligar ACPI
                            Botao Suspender ACPI
                            Intel Core i5 CPU M 520 @ 2.40GHz
                            Intel Core i5 CPU M 520 @ 2.40GHz
                            Intel Core i5 CPU M 520 @ 2.40GHz
                            Intel Core i5 CPU M 520 @ 2.40GHz
                            Microsoft Windows Management Interface for ACPI
                            Tampa ACPI
                            Zona termal ACPI
                                PCI bus
                                    Intel 5 Series/3400 Series Chipset Family PCI Express Root Port 5 - 3B4A
                                    Intel 5 Series/3400 Series Chipset Family SMBus Controller - 3B30
                                    Intel 5 Series/3400 Series Chipset Family Thermal Subsystem - 3B32
                                    Intel 82801 PCI Bridge - 2448
                                    Microsoft Windows Management Interface for ACPI
                                    PCI standard host CPU bridge
                                    Recursos da placa-mae
                                        PCI standard PCI-to-PCI bridge
                                                NVIDIA GeForce GT 335M   
                                                    Monitor Generico PnP
                                                Controlador de High Definition Audio
                                                    NVIDIA High Definition Audio
                                                    NVIDIA High Definition Audio
                                                    NVIDIA High Definition Audio
                                                    NVIDIA High Definition Audio
                                        Standard Enhanced PCI to USB Host Controller
                                                USB Root Hub
                                                        Generic USB Hub
                                                                Generic Bluetooth Adapter
                                                                    Dispositivo Bluetooth (Rede Pessoal)
                                                                    Dispositivo Bluetooth (TDI de Protocolo RFCOMM)
                                                                    Enumerador Bluetooth da Microsoft
                                        Controlador de High Definition Audio
                                            Realtek High Definition Audio
                                        Intel® 5 Series/3400 Series Chipset Family PCI Express Root Port 1 - 3B42
                                            Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
                                        Intel® 5 Series/3400 Series Chipset Family PCI Express Root Port 2 - 3B44
                                            Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
                                        Standard Enhanced PCI to USB Host Controller
                                                USB Root Hub
                                                        Generic USB Hub
                                                                Dispositivo de Entrada USB
                                                                    Mouse compativel com HID
                                                                USB Composite Device
                                                                    FiiO USB DAC-E07K
                                                                        Dispositivo de Entrada USB
                                                                            HID-compliant consumer control device
                                                                USB Composite Device
                                                                    LG Webcam
                                        Intel® HM55 Express Chipset LPC Interface Controller - 3B09
                                            CMOS do sistema/relogio em tempo real
                                            Controlador de acesso direto a memoria
                                            Controlador de interrupcao programavel
                                            Intel 82802 Firmware Hub Device
                                            Microsoft ACPI-Compliant Embedded Controller
                                            Microsoft Windows Management Interface for ACPI
                                            Mouse compativel com PS/2
                                            Processador de dados numericos
                                            Recursos da placa-mae
                                            Teclado Padrao PS/2
                                            Timer de eventos de alta precisao
                                            Timer do sistema
                                        Standard AHCI 1.0 Serial ATA Controller
                                            ATA Channel 4
                                            ATA Channel 5
                                                ATA Channel 0
                                                    TOSHIBA MK6465GSX ATA Device
                                                ATA Channel 1
                                                    HL-DT-ST BDDVDRW CT21N ATA Device
                                        Barramento de E/S estendido
                                            AQ9RSAP3 IDE Controller
                                PCI bus
                                    PCI standard host CPU bridge
                                    PCI standard host CPU bridge
                                    PCI standard host CPU bridge
                                    PCI standard host CPU bridge
                                    PCI standard host CPU bridge
                                    PCI standard host CPU bridge
CPU
        Intel Core i5 520M
            Cores    2
            Threads    4
            Name    Intel Core i5 520M
            Code Name    Arrandale
            Package    Socket 989 rPGA
            Technology    32nm
            Specification    Intel Core i5 CPU M 520 @ 2.40GHz
            Family    6
            Extended Family    6
            Model    5
            Extended Model    25
            Stepping    2
            Revision    C2
            Instructions    MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, VMX
            Virtualization    Supported, Disabled
            Hyperthreading    Supported, Enabled
            Bus Speed    133,0 MHz
            Rated Bus Speed    2394,3 MHz
            Stock Core Speed    2400 MHz
            Stock Bus Speed    133 MHz
            Average Temperature    67 °C
                Caches
                    L1 Data Cache Size    2 x 32 KBytes
                    L1 Instructions Cache Size    2 x 32 KBytes
                    L2 Unified Cache Size    2 x 256 KBytes
                    L3 Unified Cache Size    3072 KBytes
                Cores
                        Core 0
                            Core Speed    2660,3 MHz
                            Multiplier    x 20,0
                            Bus Speed    133,0 MHz
                            Rated Bus Speed    2394,3 MHz
                            Temperature    71 °C
                            Threads    APIC ID: 0, 1
                        Core 1
                            Core Speed    2660,3 MHz
                            Multiplier    x 20,0
                            Bus Speed    133,0 MHz
                            Rated Bus Speed    2394,3 MHz
                            Temperature    63 °C
                            Threads    APIC ID: 4, 5
RAM
        Memory slots
            Total memory slots    2
            Used memory slots    2
            Free memory slots    0
        Memory
            Type    DDR3
            Size    4096 MBytes
            Channels #    Dual
            DRAM Frequency    532,1 MHz
            CAS# Latency (CL)    7 clocks
            RAS# to CAS# Delay (tRCD)    7 clocks
            RAS# Precharge (tRP)    7 clocks
            Cycle Time (tRAS)    20 clocks
            Command Rate (CR)    1T
        Physical Memory
            Memory Usage    57 %
            Total Physical    3,93 GB
            Available Physical    1,67 GB
            Total Virtual    7,85 GB
            Available Virtual    5,19 GB
        SPD
            Number Of SPD Modules    2
                Slot #1
                    Type    DDR3
                    Size    2048 MBytes
                    Manufacturer    Hyundai Electronics
                    Max Bandwidth    PC3-8500F (533 MHz)
                    Part Number    HMT125S6BFR8C-G7
                    Serial Number    2C11BCC8
                    Week/year    36 / 10
                        Timing table
                                JEDEC #1
                                    Frequency    381,0 MHz
                                    CAS# Latency    5,0
                                    RAS# To CAS#    5
                                    RAS# Precharge    5
                                    tRAS    15
                                    tRC    20
                                    Voltage    1,500 V
                                JEDEC #2
                                    Frequency    457,1 MHz
                                    CAS# Latency    6,0
                                    RAS# To CAS#    6
                                    RAS# Precharge    6
                                    tRAS    18
                                    tRC    24
                                    Voltage    1,500 V
                                JEDEC #3
                                    Frequency    533,3 MHz
                                    CAS# Latency    7,0
                                    RAS# To CAS#    7
                                    RAS# Precharge    7
                                    tRAS    20
                                    tRC    27
                                    Voltage    1,500 V
                                JEDEC #4
                                    Frequency    533,3 MHz
                                    CAS# Latency    8,0
                                    RAS# To CAS#    7
                                    RAS# Precharge    7
                                    tRAS    20
                                    tRC    27
                                    Voltage    1,500 V
                Slot #2
                    Type    DDR3
                    Size    2048 MBytes
                    Manufacturer    Hyundai Electronics
                    Max Bandwidth    PC3-8500F (533 MHz)
                    Part Number    HMT125S6BFR8C-G7
                    Serial Number    2C51BC88
                    Week/year    36 / 10
                        Timing table
                                JEDEC #1
                                    Frequency    381,0 MHz
                                    CAS# Latency    5,0
                                    RAS# To CAS#    5
                                    RAS# Precharge    5
                                    tRAS    15
                                    tRC    20
                                    Voltage    1,500 V
                                JEDEC #2
                                    Frequency    457,1 MHz
                                    CAS# Latency    6,0
                                    RAS# To CAS#    6
                                    RAS# Precharge    6
                                    tRAS    18
                                    tRC    24
                                    Voltage    1,500 V
                                JEDEC #3
                                    Frequency    533,3 MHz
                                    CAS# Latency    7,0
                                    RAS# To CAS#    7
                                    RAS# Precharge    7
                                    tRAS    20
                                    tRC    27
                                    Voltage    1,500 V
                                JEDEC #4
                                    Frequency    533,3 MHz
                                    CAS# Latency    8,0
                                    RAS# To CAS#    7
                                    RAS# Precharge    7
                                    tRAS    20
                                    tRC    27
                                    Voltage    1,500 V
Motherboard
    Manufacturer    Intel Corp.
    Model    Base Board Product Name (CPU)
    Version    TBD
    Chipset Vendor    Intel
    Chipset Model    Havendale/Clarkdale Host Bridge
    Chipset Revision    02
    Southbridge Vendor    Intel
    Southbridge Model    HM55
    Southbridge Revision    05
    System Temperature    72 °C
        BIOS
            Brand    INSYDE
            Version    QL4L3H23
            Date    2010/06/29
        PCI Data
                Slot PCI-E x16
                    Slot Type    PCI-E x16
                    Slot Usage    Available
                    Data lanes    x16
                    Slot Designation    J5C1
                    Characteristics    PME, Hot Plug
                    Slot Number    0
                Slot PCI-E x1
                    Slot Type    PCI-E x1
                    Slot Usage    Available
                    Data lanes    x1
                    Slot Designation    J6C1
                    Characteristics    PME, Hot Plug
                    Slot Number    1
                Slot PCI-E x1
                    Slot Type    PCI-E x1
                    Slot Usage    Available
                    Data lanes    x1
                    Slot Designation    J6C2
                    Characteristics    PME, Hot Plug
                    Slot Number    2
                Slot PCI-E x1
                    Slot Type    PCI-E x1
                    Slot Usage    Available
                    Data lanes    x1
                    Slot Designation    J6D2
                    Characteristics    PME, Hot Plug
                    Slot Number    3
                Slot PCI-E x1
                    Slot Type    PCI-E x1
                    Slot Usage    Available
                    Data lanes    x1
                    Slot Designation    J7C1
                    Characteristics    PME, Hot Plug
                    Slot Number    4
                Slot PCI-E x1
                    Slot Type    PCI-E x1
                    Slot Usage    Available
                    Data lanes    x1
                    Slot Designation    J7D2
                    Characteristics    PME, Hot Plug
                    Slot Number    5
                Slot PCI-E x16
                    Slot Type    PCI-E x16
                    Slot Usage    Available
                    Data lanes    x16
                    Slot Designation    J8C2
                    Characteristics    PME, Hot Plug
                    Slot Number    6
                Slot PCI-E x1
                    Slot Type    PCI-E x1
                    Slot Usage    Available
                    Data lanes    x1
                    Slot Designation    J8C1
                    Characteristics    PME, Hot Plug
                    Slot Number    7
Graphics
        Monitor
            Name    Monitor Generico PnP on NVIDIA GeForce GT 335M
            Current Resolution    1600x900 pixels
            Work Resolution    1600x860 pixels
            State    Enabled, Primary
            Monitor Width    1600
            Monitor Height    900
            Monitor BPP    32 bits per pixel
            Monitor Frequency    60 Hz
            Device    \\.\DISPLAY1\Monitor0
        NVIDIA GeForce GT 335M
            Manufacturer    NVIDIA
            Model    GeForce GT 335M
            GPU    GT215
            Device ID    10DE-0CAF
            Revision    A3
            Subvendor    LG Electronics (1854)
            Current Performance Level    Level 2
            Current GPU Clock    405 MHz
            Current Memory Clock    324 MHz
            Current Shader Clock    810 MHz
            Voltage    0,850 V
            Technology    40 nm
            Die Size    133 mm2
            Release Date    2010
            DirectX Support    10.1
            OpenGL Support    4.1
            Bus Interface    PCI Express x16
            Temperature    62 °C
            Driver version    9.18.13.3221
            BIOS Version    70.15.15.00.0b
            ROPs    8
            Shaders    72 unified
            Memory    1024 MB
                Count of performance levels : 3
                        Level 1 - "Default"
                            GPU Clock    135 MHz
                            Memory Clock    135 MHz
                            Shader Clock    270 MHz
                        Level 2 - "2D Desktop"
                            GPU Clock    405 MHz
                            Memory Clock    324 MHz
                            Shader Clock    810 MHz
                        Level 3 - "3D Applications"
                            GPU Clock    450 MHz
                            Memory Clock    790 MHz
                            Shader Clock    1080 MHz
Storage
        Hard drives
                TOSHIBA MK6465GSX ATA Device
                    Manufacturer    TOSHIBA
                    Heads    16
                    Cylinders    77.825
                    Tracks    19.845.375
                    Sectors    1.250.258.625
                    SATA type    SATA-II 3.0Gb/s
                    Device type    Fixed
                    ATA Standard    ATA8-ACS
                    Serial Number    90D1P05IT
                    Firmware Version Number    GJ003A
                    LBA Size    48-bit LBA
                    Power On Count    2956 times
                    Power On Time    614,7 days
                    Speed    5400 RPM
                    Features    S.M.A.R.T., APM, NCQ
                    Max. Transfer Mode    SATA II 3.0Gb/s
                    Used Transfer Mode    SATA II 3.0Gb/s
                    Interface    SATA
                    Capacity    596 GB
                    Real size    640.135.028.736 bytes
                    RAID Type    None
                        S.M.A.R.T
                            Status    Good
                            Temperature    45 °C
                            Temperature Range    OK (less than 50 °C)
                                S.M.A.R.T attributes
                                        01
                                            Attribute?name    Read Error Rate
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    50
                                            Raw Value    0000000000
                                            Status    Good
                                        02
                                            Attribute?name    Throughput Performance
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    50
                                            Raw Value    0000000000
                                            Status    Good
                                        03
                                            Attribute?name    Spin-Up Time
                                            Real value    1693 ms
                                            Current    100
                                            Worst    100
                                            Threshold    1
                                            Raw Value    000000069D
                                            Status    Good
                                        04
                                            Attribute?name    Start/Stop Count
                                            Real value    3.198
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000C7E
                                            Status    Good
                                        05
                                            Attribute?name    Reallocated Sectors Count
                                            Real value    36
                                            Current    100
                                            Worst    100
                                            Threshold    50
                                            Raw Value    0000000024
                                            Status    Good
                                        07
                                            Attribute?name    Seek Error Rate
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    50
                                            Raw Value    0000000000
                                            Status    Good
                                        08
                                            Attribute?name    Seek Time Performance
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    50
                                            Raw Value    0000000000
                                            Status    Good
                                        09
                                            Attribute?name    Power-On Hours (POH)
                                            Real value    614d 16h
                                            Current    64
                                            Worst    64
                                            Threshold    0
                                            Raw Value    00000039A0
                                            Status    Good
                                        0A
                                            Attribute?name    Spin Retry Count
                                            Real value    0
                                            Current    163
                                            Worst    100
                                            Threshold    30
                                            Raw Value    0000000000
                                            Status    Good
                                        0C
                                            Attribute?name    Device Power Cycle Count
                                            Real value    2.956
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000B8C
                                            Status    Good
                                        BF
                                            Attribute?name    G-sense error rate
                                            Real value    42
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    000000002A
                                            Status    Good
                                        C0
                                            Attribute?name    Power-off Retract Count
                                            Real value    204
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    00000000CC
                                            Status    Good
                                        C1
                                            Attribute?name    Load/Unload Cycle Count
                                            Real value    100.559
                                            Current    90
                                            Worst    90
                                            Threshold    0
                                            Raw Value    00000188CF
                                            Status    Good
                                        C2
                                            Attribute?name    Temperature
                                            Real value    45 °C
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    000010002D
                                            Status    Good
                                        C4
                                            Attribute?name    Reallocation Event Count
                                            Real value    6
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000006
                                            Status    Good
                                        C5
                                            Attribute?name    Current Pending Sector Count
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000000
                                            Status    Good
                                        C6
                                            Attribute?name    Uncorrectable Sector Count
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000000
                                            Status    Good
                                        C7
                                            Attribute?name    UltraDMA CRC Error Count
                                            Real value    0
                                            Current    200
                                            Worst    200
                                            Threshold    0
                                            Raw Value    0000000000
                                            Status    Good
                                        DC
                                            Attribute?name    Disk Shift
                                            Real value    40
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000028
                                            Status    Good
                                        DE
                                            Attribute?name    Loaded Hours
                                            Real value    7.064
                                            Current    83
                                            Worst    83
                                            Threshold    0
                                            Raw Value    0000001B98
                                            Status    Good
                                        DF
                                            Attribute?name    Load/Unload Retry Count
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000000
                                            Status    Good
                                        E0
                                            Attribute?name    Load Friction
                                            Real value    0
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    0000000000
                                            Status    Good
                                        E2
                                            Attribute?name    Load 'In'-time
                                            Real value    301
                                            Current    100
                                            Worst    100
                                            Threshold    0
                                            Raw Value    000000012D
                                            Status    Good
                                        F0
                                            Attribute?name    Head Flying Hours
                                            Real value    0h
                                            Current    100
                                            Worst    100
                                            Threshold    1
                                            Raw Value    0000000000
                                            Status    Good
                        Partition 0
                            Partition ID    Disk #0, Partition #0
                            File System    NTFS
                            Volume Serial Number    EAC57911
                            Size    99 MB
                            Used Space    29,9 MB (29%)
                            Free Space    70 MB (71%)
                        Partition 1
                            Partition ID    Disk #0, Partition #1
                            Disk Letter    C:
                            File System    NTFS
                            Volume Serial Number    242C6CBA
                            Size    298 GB
                            Used Space    294 GB (98%)
                            Free Space    3,58 GB (2%)
                        Partition 2
                            Partition ID    Disk #0, Partition #2
                            Disk Letter    D:
                            File System    NTFS
                            Volume Serial Number    70CD4FCA
                            Size    287 GB
                            Used Space    286 GB (99%)
                            Free Space    1,52 GB (1%)
                        Partition 3
                            Partition ID    Disk #0, Partition #3
                            Size    10,0 GB
Optical Drives
        HL-DT-ST BDDVDRW CT21N ATA Device
            Media Type    BD Reader
            Name    HL-DT-ST BDDVDRW CT21N ATA Device
            Availability    Running/Full Power
            Capabilities    Random Access, Supports Writing, Supports Removable Media
            Read capabilities    CD-R, CD-RW, CD-ROM, DVD-RAM, DVD-ROM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL, BD-R, BD-ROM, BD-RE
            Write capabilities    CD-R, CD-RW, DVD-RAM, DVD-R, DVD-RW, DVD+R, DVD+RW, DVD-R DL, DVD+R DL
            Config Manager Error Code    Device is working properly
            Config Manager User Config    FALSE
            Drive    E:
            Media Loaded    FALSE
            SCSI Bus    1
            SCSI Logical Unit    0
            SCSI Port    1
            SCSI Target Id    0
            Status    OK
Audio
        Sound Cards
            Dispositivo de audio USB
            NVIDIA High Definition Audio
            NVIDIA High Definition Audio
            NVIDIA High Definition Audio
            NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
            NVIDIA High Definition Audio
            Realtek High Definition Audio
        Playback Devices
            Alto-falantes (Realtek High Definition Audio)
            Interface SPDIF (FiiO USB DAC-E07K)    (default)
        Recording Device
            Microfone (Realtek High Definition Audio)
        Speaker Configuration
            Speaker type    Stereo
Peripherals
        Teclado Padrao PS/2
            Device Kind    Keyboard
            Device Name    Teclado Padrao PS/2
            Vendor    (teclados padroes)
            Location    conectado a porta do teclado
                Driver
                    Date    6-21-2006
                    Version    6.1.7601.17514
                    File    C:\Windows\system32\DRIVERS\i8042prt.sys
                    File    C:\Windows\system32\DRIVERS\kbdclass.sys
        Mouse compativel com PS/2
            Device Kind    Mouse
            Device Name    Mouse compativel com PS/2
            Vendor    Microsoft
            Location    conectado a porta PS/2 para mouse
                Driver
                    Date    6-21-2006
                    Version    6.1.7600.16385
                    File    C:\Windows\system32\DRIVERS\i8042prt.sys
                    File    C:\Windows\system32\DRIVERS\mouclass.sys
        Mouse compativel com HID
            Device Kind    Mouse
            Device Name    Mouse compativel com HID
            Vendor    PixArt Imaging
            Location    Dispositivo de Entrada USB
                Driver
                    Date    6-21-2006
                    Version    6.1.7600.16385
                    File    C:\Windows\system32\DRIVERS\mouhid.sys
                    File    C:\Windows\system32\DRIVERS\mouclass.sys
        Dispositivo de video USB
            Device Kind    Camera/scanner
            Device Name    Dispositivo de video USB
            Vendor    Chicony Electronics Co Ltd
            Comment    LG Webcam
            Location    0000.001d.0000.001.006.000.000.000.000
                Driver
                    Date    6-21-2006
                    Version    6.1.7601.18208
                    File    C:\Windows\system32\drivers\usbvideo.sys
        Dispositivo de audio USB
            Device Kind    Audio device
            Device Name    Dispositivo de audio USB
            Vendor    Anritsu
            Comment    FiiO USB DAC-E07K
            Location    0000.001d.0000.001.003.000.000.000.000
                Driver
                    Date    7-12-2013
                    Version    6.1.7601.18208
                    File    C:\Windows\system32\drivers\USBAUDIO.sys
                    File    C:\Windows\system32\drivers\drmk.sys
                    File    C:\Windows\system32\drivers\portcls.sys
                    File    C:\Windows\system32\WMALFXGFXDSP.dll
                    File    C:\Windows\system32\SysFxUI.dll
        Printers
                Fax
                    Printer Port    SHRFAX:
                    Print Processor    winprint
                    Availability    Always
                    Priority    1
                    Duplex    None
                    Print Quality    200 * 200 dpi Monochrome
                    Status    Unknown
                        Driver
                            Driver Name    Microsoft Shared Fax Driver (v4.00)
                            Driver Path    C:\Windows\system32\spool\DRIVERS\x64\3\FXSDRV.DLL
                HP Officejet J5700 series (Default Printer)
                    Printer Port    USB001
                    Print Processor    hpzppw71
                    Availability    Always
                    Priority    1
                    Duplex    None
                    Print Quality    600 * 600 dpi Color
                    Status    Unknown
                        Driver
                            Driver Name    HP Officejet J5700 series (v6.00)
                            Driver Path    C:\Windows\system32\spool\DRIVERS\x64\3\UNIDRV.DLL
                Microsoft XPS Document Writer
                    Printer Port    XPSPort:
                    Print Processor    winprint
                    Availability    Always
                    Priority    1
                    Duplex    None
                    Print Quality    600 * 600 dpi Color
                    Status    Unknown
                        Driver
                            Driver Name    Microsoft XPS Document Writer (v6.00)
                            Driver Path    C:\Windows\system32\spool\DRIVERS\x64\3\mxdwdrv.dll
Network
    You are connected to the internet
    Connected through    Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
    IP Address    10.0.0.102
    Subnet mask    255.255.255.0
    Gateway server    10.0.0.1
    Preferred DNS server    10.0.0.1
    DHCP    Enabled
    DHCP server    10.0.0.1
    External IP Address    187.106.185.19
    Adapter Type    IEEE 802.11 wireless
    NetBIOS over TCP/IP    Enabled via DHCP
    NETBIOS Node Type    Hybrid node
    Link Speed    0 Bps
        Computer Name
            NetBIOS Name    WIN7-PC
            DNS Name    win7-PC
            Membership    Part of workgroup
            Workgroup    WORKGROUP
        Remote Desktop
            Disabled
                Console
                    State    Active
                    Domain    win7-PC
        WinInet Info
            Conexao de rede local
            Local system uses a local area network to connect to the Internet
            Local system has RAS to connect to the Internet
        Wi-Fi Info
            Using native Wi-Fi API version    2
            Available access points count    7
                Wi-Fi (FARLED)
                    SSID    FARLED
                    Frequency    2412000 kHz
                    Channel Number    1
                    Name    FARLED
                    Signal Strength/Quality    18
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    There is a profile for this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    802.11i RSNA algorithm that uses PSK
                Wi-Fi (Familia Net)
                    SSID    Familia Net
                    Frequency    2472000 kHz
                    Channel Number    13
                    Name    Familia Net
                    Signal Strength/Quality    18
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    There is a profile for this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    802.11i RSNA algorithm that uses PSK
                Wi-Fi (Home)
                    SSID    Home
                    Frequency    2462000 kHz
                    Channel Number    11
                    Name    Home
                    Signal Strength/Quality    18
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    There is a profile for this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    802.11i RSNA algorithm that uses PSK
                Wi-Fi (Net Virtua 134)
                    SSID    Net Virtua 134
                    Frequency    2412000 kHz
                    Channel Number    1
                    Name    Net Virtua 134
                    Signal Strength/Quality    18
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    There is a profile for this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    WPA algorithm that uses preshared keys (PSK)
                Wi-Fi (Rafael)
                    SSID    Rafael
                    Frequency    2437000 kHz
                    Channel Number    6
                    Name    Rafael
                    Signal Strength/Quality    18
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    There is a profile for this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    802.11i RSNA algorithm that uses PSK
                Wi-Fi (amilton)
                    SSID    amilton
                    Frequency    2452000 kHz
                    Channel Number    9
                    Name    amilton
                    Signal Strength/Quality    18
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    There is a profile for this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    802.11i RSNA algorithm that uses PSK
                Wi-Fi (dlink)
                    SSID    dlink
                    Frequency    2462000 kHz
                    Channel Number    11
                    Name    dlink
                    Signal Strength/Quality    58
                    Security    Enabled
                    State    The interface is connected to a network
                    Dot11 Type    Infrastructure BSS network
                    Network    Connectible
                    Network Flags    Currently Connected to this network
                    Cipher Algorithm to be used when joining this network    AES-CCMP algorithm
                    Default Auth used to join this network for the first time    802.11i RSNA algorithm that uses PSK
        WinHTTPInfo
            WinHTTPSessionProxyType    No proxy
            Session Proxy
            Session Proxy Bypass
            Connect Retries    5
            Connect Timeout (ms)    60.000
            HTTP Version    HTTP 1.1
            Max Connects Per 1.0 Servers    INFINITE
            Max Connects Per Servers    INFINITE
            Max HTTP automatic redirects    10
            Max HTTP status continue    10
            Send Timeout (ms)    30.000
            IEProxy Auto Detect    Yes
            IEProxy Auto Config
            IEProxy
            IEProxy Bypass
            Default Proxy Config Access Type    No proxy
            Default Config Proxy
            Default Config Proxy Bypass
        Sharing and Discovery
            File and printer sharing service    Enabled
            Simple File Sharing    Enabled
            Administrative Shares    Enabled
            Acesso a rede: modelo de compartilhamento e seguranca para contas locais    Classico - os usuarios locais sao autenticados como eles proprios
                Private profile
                    Network Discovery    Enabled
                    File and Printer Sharing    Enabled
                Public profile
                    Network Discovery    Disabled
                    File and Printer Sharing    Enabled
        Adapters List
                Enabled
                        Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
                            Connection Name    Conexao local
                            NetBIOS over TCPIP    Yes
                            DHCP enabled    Yes
                            MAC Address    60-EB-69-34-2E-E8
                            IP Address    169.254.246.65
                            Subnet mask    255.255.0.0
                        Dispositivo Bluetooth (Rede Pessoal)
                            Connection Name    Conexao de Rede Bluetooth
                            DHCP enabled    Yes
                            MAC Address    00-0D-F0-8B-7F-53
                        Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
                            Connection Name    Conexao de Rede sem Fio
                            NetBIOS over TCPIP    Yes
                            DHCP enabled    Yes
                            MAC Address    20-7C-8F-1A-EF-28
                            IP Address    10.0.0.102
                            Subnet mask    255.255.255.0
                            Gateway server    10.0.0.1
                            DHCP    10.0.0.1
                            DNS Server    10.0.0.1
        Network Shares
            Users    C:\Users
        Current TCP Connections
                AppleMobileDeviceService.exe (1836)
                    Local 127.0.0.1:27015    ESTABLISHED Remote 127.0.0.1:49168 (Querying... )
                    Local 127.0.0.1:27015    LISTEN
                    Local 127.0.0.1:49156    ESTABLISHED Remote 127.0.0.1:5354 (Querying... )
                    Local 127.0.0.1:49157    ESTABLISHED Remote 127.0.0.1:5354 (Querying... )
                AvastSvc.exe (1432)
                    Local 0.0.0.0:27275    LISTEN
                    Local 10.0.0.102:51226    ESTABLISHED Remote 77.234.41.63:80 (Querying... ) (HTTP)
                    Local 127.0.0.1:27275    LISTEN
                C:\Program Files (x86)\iTunes\iTunesHelper.exe (3492)
                    Local 127.0.0.1:49168    ESTABLISHED Remote 127.0.0.1:27015 (Querying... )
                C:\Program Files (x86)\Mozilla Firefox\firefox.exe (3168)
                    Local 10.0.0.102:51196    ESTABLISHED Remote 31.13.71.96:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51310    ESTABLISHED Remote 187.106.140.38:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51344    SYN-SENT Remote 23.235.46.175:80 (Querying... ) (HTTP)
                    Local 10.0.0.102:51268    ESTABLISHED Remote 187.106.140.45:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51248    ESTABLISHED Remote 108.168.208.206:80 (Querying... ) (HTTP)
                    Local 10.0.0.102:51225    FIN-WAIT-2 Remote 54.165.19.43:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51313    ESTABLISHED Remote 67.228.177.87:80 (Querying... ) (HTTP)
                    Local 127.0.0.1:49170    ESTABLISHED Remote 127.0.0.1:49171 (Querying... )
                    Local 127.0.0.1:49171    ESTABLISHED Remote 127.0.0.1:49170 (Querying... )
                C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (1948)
                    Local 127.0.0.1:23401    LISTEN
                C:\Program Files (x86)\Skype\Phone\Skype.exe (4180)
                    Local 0.0.0.0:443 (HTTPS)    LISTEN
                    Local 0.0.0.0:55063    LISTEN
                    Local 0.0.0.0:80 (HTTP)    LISTEN
                    Local 10.0.0.102:51326    ESTABLISHED Remote 191.238.33.2:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51327    ESTABLISHED Remote 96.54.124.156:31235 (Querying... )
                    Local 10.0.0.102:51328    ESTABLISHED Remote 159.224.12.82:58141 (Querying... )
                    Local 10.0.0.102:51340    SYN-SENT Remote 177.92.28.145:56496 (Querying... )
                    Local 10.0.0.102:51341    SYN-SENT Remote 177.92.28.145:56496 (Querying... )
                    Local 10.0.0.102:51342    SYN-SENT Remote 177.92.28.145:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51343    SYN-SENT Remote 177.92.28.145:80 (Querying... ) (HTTP)
                    Local 10.0.0.102:51314    ESTABLISHED Remote 65.55.223.31:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51231    ESTABLISHED Remote 157.56.53.46:12350 (Querying... )
                    Local 10.0.0.102:51324    ESTABLISHED Remote 134.170.18.135:443 (Querying... ) (HTTPS)
                C:\Windows\Explorer.EXE (452)
                    Local 10.0.0.102:51322    ESTABLISHED Remote 187.106.140.122:80 (Querying... ) (HTTP)
                    Local 10.0.0.102:51323    ESTABLISHED Remote 23.4.43.27:80 (Querying... ) (HTTP)
                lsass.exe (704)
                    Local 0.0.0.0:49154    LISTEN
                mDNSResponder.exe (1872)
                    Local 127.0.0.1:5354    ESTABLISHED Remote 127.0.0.1:49156 (Querying... )
                    Local 127.0.0.1:5354    ESTABLISHED Remote 127.0.0.1:49157 (Querying... )
                    Local 127.0.0.1:5354    LISTEN
                NvNetworkService.exe (1920)
                    Local 127.0.0.1:9990    LISTEN
                services.exe (648)
                    Local 0.0.0.0:49158    LISTEN
                svchost.exe (128)
                    Local 0.0.0.0:49153    LISTEN
                svchost.exe (164)
                    Local 0.0.0.0:49155    LISTEN
                svchost.exe (936)
                    Local 0.0.0.0:135 (DCE)    LISTEN
                System Process
                    Local 10.0.0.102:51335    TIME-WAIT Remote 173.252.107.17:5222 (Querying... )
                    Local 10.0.0.102:51312    TIME-WAIT Remote 10.0.0.102:55063 (Querying... )
                    Local 10.0.0.102:51325    TIME-WAIT Remote 10.0.0.102:55063 (Querying... )
                    Local 127.0.0.1:5357    TIME-WAIT Remote 127.0.0.1:51309 (Querying... )
                    Local 10.0.0.102:51255    TIME-WAIT Remote 187.106.140.57:443 (Querying... ) (HTTPS)
                    Local 10.0.0.102:51282    TIME-WAIT Remote 23.235.46.196:80 (Querying... ) (HTTP)
                    Local 10.0.0.102:51293    TIME-WAIT Remote 10.0.0.102:55063 (Querying... )
                    Local 10.0.0.102:51300    TIME-WAIT Remote 65.55.223.31:80 (Querying... ) (HTTP)
                    Local 10.0.0.102:51303    TIME-WAIT Remote 65.55.223.27:80 (Querying... ) (HTTP)
                System Process
                    Local 0.0.0.0:445 (Windows shares)    LISTEN
                    Local 0.0.0.0:5357    LISTEN
                    Local 10.0.0.102:139 (NetBIOS session service)    LISTEN
                    Local 169.254.246.65:139 (NetBIOS session service)    LISTEN
                wininit.exe (596)
                    Local 0.0.0.0:49152    LISTEN
Generated with Speccy v1.27.703

 

Process    CPU    Private Bytes    Working Set    PID    Description    Company Name    Verified Signer
System Idle Process    93.11    0 K    24 K    0            
procexp64.exe    3.16    26.152 K    46.504 K    4748    Sysinternals Process Explorer    Sysinternals - www.sysinternals.com    (Verified) Sysinternals
WmiPrvSE.exe    3.03    8.248 K    16.608 K    2104    WMI Provider Host    Microsoft Corporation    (Verified) Microsoft Windows
Interrupts    1.52    0 K    0 K    n/a    Hardware Interrupts and DPCs        
dwm.exe    0.98    31.228 K    35.052 K    1108    Gerenciador de Janelas da Área de Trabalho    Microsoft Corporation    (Verified) Microsoft Windows
System    0.47    208 K    5.008 K    4            
csrss.exe    0.36    3.108 K    17.480 K    588    Processo do tempo de Execução do Servidor do Cliente    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe    0.32    163.272 K    160.952 K    276    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe    0.22    27.364 K    42.996 K    164    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
FlashPlayerPlugin_16_0_0_235.exe    0.11    95.560 K    80.752 K    3968    Adobe Flash Player 16.0 r0    Adobe Systems, Inc.    (Verified) Adobe Systems Incorporated
firefox.exe    0.05    373.488 K    388.332 K    3168    Firefox    Mozilla Corporation    (Verified) Mozilla Corporation
explorer.exe    0.03    50.148 K    77.528 K    452    Windows Explorer    Microsoft Corporation    (Verified) Microsoft Windows
AppleMobileDeviceService.exe    0.03    3.316 K    9.644 K    1836    YSLoader.exe    Apple Inc.    (Verified) Apple Inc.
flux.exe    0.02    38.388 K    24.300 K    3256    f.lux    Flux Software LLC    (Verified) Michael Herf
plugin-container.exe    0.02    14.796 K    17.600 K    1588    Plugin Container for Firefox    Mozilla Corporation    (Verified) Mozilla Corporation
audiodg.exe    0.02    15.320 K    16.092 K    1352    Isolamento de Gráfico de Dispositivo de Áudio do Windows     Microsoft Corporation    (Verified) Microsoft Windows
rundll32.exe    0.02    7.344 K    8.520 K    2136    Processo de host do Windows (Rundll32)    Microsoft Corporation    (Verified) Microsoft Windows
lsass.exe    0.02    6.736 K    12.612 K    704    Local Security Authority Process    Microsoft Corporation    (Verified) Microsoft Windows
AvastSvc.exe    0.02    35.176 K    18.736 K    1432    avast! Service    AVAST Software    (Verified) AVAST Software a.s.
FlashPlayerPlugin_16_0_0_235.exe    0.01    4.732 K    10.432 K    3684    Adobe Flash Player 16.0 r0    Adobe Systems, Inc.    (Verified) Adobe Systems Incorporated
iPodService.exe    0.01    2.720 K    7.212 K    4072    iPodService Module (64-bit)    Apple Inc.    (Verified) Apple Inc.
PnkBstrA.exe    0.01    1.244 K    4.272 K    2028            (Verified) Even Balance
csrss.exe    0.01    2.516 K    5.888 K    528    Processo do tempo de Execução do Servidor do Cliente    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe    < 0.01    15.092 K    19.636 K    1608    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
dllhost.exe    < 0.01    6.752 K    9.488 K    5960    COM Surrogate    Microsoft Corporation    (Verified) Microsoft Windows
SearchIndexer.exe    < 0.01    44.988 K    28.816 K    2384    Indexador do Microsoft Windows Search    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe    < 0.01    40.012 K    20.888 K    448    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
avastui.exe    < 0.01    16.444 K    16.072 K    3508    avast! Antivirus    AVAST Software    (Verified) AVAST Software a.s.
NvBackend.exe    < 0.01    5.232 K    10.500 K    1948    NVIDIA GeForce Experience Backend    NVIDIA Corporation    (Verified) NVIDIA Corporation
NvTmru.exe    < 0.01    3.328 K    7.888 K    3116    NVIDIA NvTmru Application    NVIDIA Corporation    (Verified) NVIDIA Corporation
svchost.exe    < 0.01    6.420 K    11.324 K    2808    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
conhost.exe    < 0.01    1.760 K    5.124 K    3056    Host da Janela do Console    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe    < 0.01    30.296 K    32.648 K    1340    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
NvNetworkService.exe    < 0.01    1.648 K    5.280 K    1920    NVIDIA Network Service    NVIDIA Corporation    (Verified) NVIDIA Corporation
WLIDSVC.EXE    < 0.01    5.360 K    12.732 K    1468    Microsoft® Windows Live ID Service    Microsoft Corporation    (Verified) Microsoft Corporation
wmpnetwk.exe    < 0.01    6.504 K    11.432 K    4852    Serviço de Compartilhamento de Rede do Windows Media Player    Microsoft Corporation    (Verified) Microsoft Windows
WmiPrvSE.exe    < 0.01    21.600 K    27.756 K    3520    WMI Provider Host    Microsoft Corporation    (Verified) Microsoft Windows
nvvsvc.exe    < 0.01    5.796 K    13.948 K    1188    NVIDIA Driver Helper Service, Version 332.21    NVIDIA Corporation    (Verified) NVIDIA Corporation
SansaDispatch.exe    < 0.01    4.164 K    6.900 K    3204    Sansa Dispatcher    SanDisk Corporation    (Nenhuma assinatura presente no requerente) SanDisk Corporation
iTunesHelper.exe    < 0.01    3.824 K    11.796 K    3492    iTunesHelper    Apple Inc.    (Verified) Apple Inc.
WLIDSVCM.EXE        1.456 K    3.540 K    2624    Microsoft® Windows Live ID Service Monitor    Microsoft Corporation    (Verified) Microsoft Corporation
winlogon.exe        3.396 K    7.864 K    672    Aplicativo de Logon do Windows    Microsoft Corporation    (Verified) Microsoft Windows
wininit.exe        1.996 K    5.044 K    596    Aplicativo de Inicialização do Windows    Microsoft Corporation    (Verified) Microsoft Windows
unsecapp.exe        2.472 K    6.432 K    3956    Sink to receive asynchronous callbacks for WMI client application    Microsoft Corporation    (Verified) Microsoft Windows
taskeng.exe        2.148 K    5.524 K    1240    Mecanismo do Agendador de Tarefas    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        124.228 K    26.088 K    2080    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        26.712 K    25.380 K    128    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        5.604 K    9.476 K    936    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        5.076 K    10.016 K    812    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        2.356 K    6.872 K    5784    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        1.924 K    4.916 K    2564    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
svchost.exe        3.124 K    7.192 K    1028    Processo de Host para Serviços do Windows    Microsoft Corporation    (Verified) Microsoft Windows
spoolsv.exe        7.812 K    13.500 K    1564    Aplicativo de subsistema de spooler    Microsoft Corporation    (Verified) Microsoft Windows
smss.exe        540 K    1.204 K    344    Gerenciador de Sessão do Windows    Microsoft Corporation    (Verified) Microsoft Windows
services.exe        7.592 K    11.324 K    648    Aplicativo de serviços e controle    Microsoft Corporation    (Verified) Microsoft Windows
RAVCpl64.exe        8.668 K    10.860 K    3108    Gerenciador de áudio HD Realtek    Realtek Semiconductor    (Verified) Microsoft Windows Hardware Compatibility Publisher
procexp.exe        2.364 K    7.572 K    5940    Sysinternals Process Explorer    Sysinternals - www.sysinternals.com    (Verified) Microsoft Corporation
nvxdsync.exe        8.432 K    19.880 K    1180    NVIDIA User Experience Driver Component    NVIDIA Corporation    (Verified) NVIDIA Corporation
nvvsvc.exe        2.756 K    7.536 K    896    NVIDIA Driver Helper Service, Version 332.21    NVIDIA Corporation    (Verified) NVIDIA Corporation
nvtray.exe        5.368 K    12.648 K    3736    NVIDIA Settings    NVIDIA Corporation    (Verified) NVIDIA Corporation
nvstreamsvc.exe        3.568 K    9.196 K    1980    NVIDIA Streamer Service    NVIDIA Corporation    (Verified) NVIDIA Corporation
nvstreamsvc.exe        5.516 K    10.792 K    228    NVIDIA Streamer Service    NVIDIA Corporation    (Verified) NVIDIA Corporation
mDNSResponder.exe        2.804 K    6.264 K    1872    Bonjour Service    Apple Inc.    (Verified) Apple Inc.
lsm.exe        2.868 K    4.692 K    712    Serviço do Gerenciador de Sessão Local    Microsoft Corporation    (Verified) Microsoft Windows
armsvc.exe        1.216 K    4.016 K    1692    Adobe Acrobat Update Service    Adobe Systems Incorporated    (Verified) Adobe Systems
 


  • 0

#6
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,025 posts
  • MVP

Let's try this one.  I think it works with any language:

 

Please download MiniToolbox
 
http://www.bleepingc...oad/minitoolbox save it to your desktop and run it.
 
Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer Errors
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files
  • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.
     
    Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
     
    Speccy is telling me that it's running too hot.  Expect that's why you get the blue screens.  Hot components make errors and run slow.
     
    Let's uninstall Speccy and install Speedfan which will give you the temps in real time:
     
     
    Download, save and Install it (Win 7 or Vista right click and Run As Admin.) then run it (Win 7 or Vista right click and Run As Admin.).
     
    This will give us a second opinion but I expect you will find it runs hot (over 55 C for a laptop).  This is usually caused by dust clogging the heat sink tho a bad fan or running it on a soft surface like a bed (or  your lap) can block the vents and cause the same problem.  If you need to remove the heatsink and heatpipe assembly to clean it then make sure you clean off the old thermal paste and apply new.  I always use Arctic Silver 5 and its cleaner (tho you can use alcohol).  http://www.amazon.co...duct/B002DILLMS is the kit I use.
     
    For the Ethernet problem, Speccy says you are not getting DHCP and windows is making up a 169 address.
     
    Try manually assigning  via the instructions here:
     
    IP Address    10.0.0.125
    Subnet mask    255.255.255.0
    Gateway server    10.0.0.1
     DNS Server    10.0.0.1
     
    To your Ethernet connection.  Then disable the wireless, hook up the Ethernet and test it.
     

    • 0

    #7
    Vicdd

    Vicdd

      Member

    • Topic Starter
    • Member
    • PipPip
    • 19 posts

    I will try to clean the vent later. The internet problem was not solved.

    This one has some parts in portuguese too, sadly. Did this test after chaning internet settings

    Ps: applocale doesn't work for the logs.

     

    MiniToolBox by Farbar  Version: 30-11-2014
    Ran by Victor (administrator) on 06-01-2015 at 22:22:37
    Running from "C:\Users\Victor\Desktop"
    Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
    Boot Mode: Normal
    ***************************************************************************

    ========================= Flush DNS: ===================================

    Configuracao de IP do Windows

    Liberacao do Cache do DNS Resolver bem-sucedida.

    ========================= IE Proxy Settings: ==============================

    Proxy is not enabled.
    No Proxy Server is set.

    "Reset IE Proxy Settings": IE Proxy Settings were reset.

    ========================= FF Proxy Settings: ==============================


    "Reset FF Proxy Settings": Firefox Proxy settings were reset.

    ========================= Hosts content: =================================



    ========================= IP Configuration: ================================

    Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20) = Conexão local (Connected)
    Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC = Conexão de Rede sem Fio (Connected)
    Dispositivo Bluetooth (Rede Pessoal) = Conexão de Rede Bluetooth (Media disconnected)


    # ----------------------------------
    # Configuracao de IPv4
    # ----------------------------------
    pushd interface ipv4

    reset
    set global icmpredirects=enabled
    add route prefix=0.0.0.0/0 interface="Conexao local" nexthop=10.0.0.1 publish=Sim
    add address name="Conexao local" address=10.0.0.125 mask=255.255.255.0


    popd
    # Final da configuracao IPv4



    Configuracao de IP do Windows

       Nome do host. . . . . . . . . . . . . . . . : win7-PC
       Sufixo DNS primario . . . . . . . . . . . . :
       Tipo de no. . . . . . . . . . . . . . . . . : hibrido
       Roteamento de IP ativado. . . . . . . . . . : nao
       Proxy WINS ativado. . . . . . . . . . . . . : nao

    Adaptador de Rede sem Fio Conexao de Rede sem Fio:

       Sufixo DNS especifico de conexao. . . . . . :
       Descricao . . . . . . . . . . . . . . . . . : Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
       Endereco Fisico . . . . . . . . . . . . . . : 20-7C-8F-1A-EF-28
       DHCP Habilitado . . . . . . . . . . . . . . : Sim
       Configuracao Automatica Habilitada. . . . . : Sim
       Endereco IPv6 de link local . . . . . . . . : fe80::4d2e:4bb8:659e:2cb7%13(Preferencial)
       Endereco IPv4. . . . . . . .  . . . . . . . : 10.0.0.102(Preferencial)
       Mascara de Sub-rede . . . . . . . . . . . . : 255.255.255.0
       Concessao Obtida. . . . . . . . . . . . . . : terca-feira, 6 de janeiro de 2015 18:33:47
       Concessao Expira. . . . . . . . . . . . . . : quarta-feira, 7 de janeiro de 2015 00:22:00
       Gateway Padrao. . . . . . . . . . . . . . . : 10.0.0.1
       Servidor DHCP . . . . . . . . . . . . . . . : 10.0.0.1
       IAID de DHCPv6. . . . . . . . . . . . . . . : 354450575
       DUID de Cliente DHCPv6. . . . . . . . . . . : 00-01-00-01-18-78-6F-C3-60-EB-69-34-2E-E8
       Servidores DNS. . . . . . . . . . . . . . . : 10.0.0.1
       NetBIOS em Tcpip. . . . . . . . . . . . . . : Habilitado

    Adaptador Ethernet Conexao de Rede Bluetooth:

       Estado da midia. . . . . . . . . . . . . .  : midia desconectada
       Sufixo DNS especifico de conexao. . . . . . :
       Descricao . . . . . . . . . . . . . . . . . : Dispositivo Bluetooth (Rede Pessoal)
       Endereco Fisico . . . . . . . . . . . . . . : 00-0D-F0-8B-7F-53
       DHCP Habilitado . . . . . . . . . . . . . . : Sim
       Configuracao Automatica Habilitada. . . . . : Sim

    Adaptador Ethernet Conexao local:

       Sufixo DNS especifico de conexao. . . . . . :
       Descricao . . . . . . . . . . . . . . . . . : Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
       Endereco Fisico . . . . . . . . . . . . . . : 60-EB-69-34-2E-E8
       DHCP Habilitado . . . . . . . . . . . . . . : Nao
       Configuracao Automatica Habilitada. . . . . : Sim
       Endereco IPv6 de link local . . . . . . . . : fe80::a961:4cbc:a52c:f641%10(Preferencial)
       Endereco IPv4. . . . . . . .  . . . . . . . : 10.0.0.125(Preferencial)
       Mascara de Sub-rede . . . . . . . . . . . . : 255.255.255.0
       Gateway Padrao. . . . . . . . . . . . . . . : 10.0.0.1
       IAID de DHCPv6. . . . . . . . . . . . . . . : 241232745
       DUID de Cliente DHCPv6. . . . . . . . . . . : 00-01-00-01-18-78-6F-C3-60-EB-69-34-2E-E8
       Servidores DNS. . . . . . . . . . . . . . . : 10.0.0.1
       NetBIOS em Tcpip. . . . . . . . . . . . . . : Habilitado

    Adaptador de tunel isatap.{CE9E0649-6612-489D-9CD2-EAF341CC01D4}:

       Estado da midia. . . . . . . . . . . . . .  : midia desconectada
       Sufixo DNS especifico de conexao. . . . . . :
       Descricao . . . . . . . . . . . . . . . . . : Adaptador do Microsoft ISATAP
       Endereco Fisico . . . . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Habilitado . . . . . . . . . . . . . . : Nao
       Configuracao Automatica Habilitada. . . . . : Sim

    Adaptador de tunel isatap.{A5237987-B4C2-4685-9497-BAA8B24F72B5}:

       Estado da midia. . . . . . . . . . . . . .  : midia desconectada
       Sufixo DNS especifico de conexao. . . . . . :
       Descricao . . . . . . . . . . . . . . . . . : Adaptador do Microsoft ISATAP #3
       Endereco Fisico . . . . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Habilitado . . . . . . . . . . . . . . : Nao
       Configuracao Automatica Habilitada. . . . . : Sim

    Adaptador de tunel Teredo Tunneling Pseudo-Interface:

       Estado da midia. . . . . . . . . . . . . .  : midia desconectada
       Sufixo DNS especifico de conexao. . . . . . :
       Descricao . . . . . . . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
       Endereco Fisico . . . . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Habilitado . . . . . . . . . . . . . . : Nao
       Configuracao Automatica Habilitada. . . . . : Sim
    Servidor:  UnKnown
    Address:  10.0.0.1

    Nome:    google.com
    Addresses:  2800:3f0:4001:813::1006
          187.106.140.42
          187.106.140.45
          187.106.140.57
          187.106.140.53
          187.106.140.19
          187.106.140.29
          187.106.140.34
          187.106.140.59
          187.106.140.23
          187.106.140.15
          187.106.140.30
          187.106.140.49
          187.106.140.27
          187.106.140.44
          187.106.140.38


    Disparando google.com [187.106.140.19] com 32 bytes de dados:
    Resposta de 187.106.140.19: bytes=32 tempo=41ms TTL=61
    Resposta de 187.106.140.19: bytes=32 tempo=17ms TTL=61

    Estatisticas do Ping para 187.106.140.19:
        Pacotes: Enviados = 2, Recebidos = 2, Perdidos = 0 (0% de
                 perda),
    Aproximar um numero redondo de vezes em milissegundos:
        Minimo = 17ms, Maximo = 41ms, Media = 29ms
    Servidor:  UnKnown
    Address:  10.0.0.1

    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.

    Disparando yahoo.com [98.138.253.109] com 32 bytes de dados:
    Resposta de 98.138.253.109: bytes=32 tempo=238ms TTL=50
    Resposta de 98.138.253.109: bytes=32 tempo=213ms TTL=50

    Estatisticas do Ping para 98.138.253.109:
        Pacotes: Enviados = 2, Recebidos = 2, Perdidos = 0 (0% de
                 perda),
    Aproximar um numero redondo de vezes em milissegundos:
        Minimo = 213ms, Maximo = 238ms, Media = 225ms

    Disparando 127.0.0.1 com 32 bytes de dados:
    Resposta de 127.0.0.1: bytes=32 tempo<1ms TTL=128
    Resposta de 127.0.0.1: bytes=32 tempo<1ms TTL=128

    Estatisticas do Ping para 127.0.0.1:
        Pacotes: Enviados = 2, Recebidos = 2, Perdidos = 0 (0% de
                 perda),
    Aproximar um numero redondo de vezes em milissegundos:
        Minimo = 0ms, Maximo = 0ms, Media = 0ms
    ===========================================================================
    Lista de interfaces
     13...20 7c 8f 1a ef 28 ......Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
     12...00 0d f0 8b 7f 53 ......Dispositivo Bluetooth (Rede Pessoal)
     10...60 eb 69 34 2e e8 ......Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
      1...........................Software Loopback Interface 1
     18...00 00 00 00 00 00 00 e0 Adaptador do Microsoft ISATAP
     17...00 00 00 00 00 00 00 e0 Adaptador do Microsoft ISATAP #3
     15...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
    ===========================================================================

    Tabela de rotas IPv4
    ===========================================================================
    Rotas ativas:
    Endereco de rede          Mascara   Ender. gateway       Interface   Custo
              0.0.0.0          0.0.0.0         10.0.0.1       10.0.0.102     30
              0.0.0.0          0.0.0.0         10.0.0.1       10.0.0.125    276
             10.0.0.0    255.255.255.0      No vinculo        10.0.0.102    286
             10.0.0.0    255.255.255.0      No vinculo        10.0.0.125    276
           10.0.0.102  255.255.255.255      No vinculo        10.0.0.102    286
           10.0.0.125  255.255.255.255      No vinculo        10.0.0.125    276
           10.0.0.255  255.255.255.255      No vinculo        10.0.0.102    286
           10.0.0.255  255.255.255.255      No vinculo        10.0.0.125    276
            127.0.0.0        255.0.0.0      No vinculo         127.0.0.1    306
            127.0.0.1  255.255.255.255      No vinculo         127.0.0.1    306
      127.255.255.255  255.255.255.255      No vinculo         127.0.0.1    306
            224.0.0.0        240.0.0.0      No vinculo         127.0.0.1    306
            224.0.0.0        240.0.0.0      No vinculo        10.0.0.125    276
            224.0.0.0        240.0.0.0      No vinculo        10.0.0.102    286
      255.255.255.255  255.255.255.255      No vinculo         127.0.0.1    306
      255.255.255.255  255.255.255.255      No vinculo        10.0.0.125    276
      255.255.255.255  255.255.255.255      No vinculo        10.0.0.102    286
    ===========================================================================
    Rotas persistentes:
      Endereco de rede         Mascara  Ender. gateway    Custo
              0.0.0.0          0.0.0.0         10.0.0.1  Padrao
    ===========================================================================

    Tabela de rotas IPv6
    ===========================================================================
    Rotas ativas:
     Se destino de rede de metrica      Gateway
      1    306 ::1/128                  No vinculo
     10    276 fe80::/64                No vinculo
     13    286 fe80::/64                No vinculo
     13    286 fe80::4d2e:4bb8:659e:2cb7/128
                                        No vinculo
     10    276 fe80::a961:4cbc:a52c:f641/128
                                        No vinculo
      1    306 ff00::/8                 No vinculo
     10    276 ff00::/8                 No vinculo
     13    286 ff00::/8                 No vinculo
    ===========================================================================
    Rotas persistentes:
      Nenhuma
    ========================= Winsock entries =====================================

    Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
    Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
    Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
    Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
    Catalog5 05 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation)
    Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [134528] (Microsoft Corporation)
    Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [134528] (Microsoft Corporation)
    Catalog5 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog5 09 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
    Catalog5 10 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
    Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation)
    x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
    x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
    x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
    x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
    x64-Catalog5 05 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation)
    x64-Catalog5 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [168304] (Microsoft Corporation)
    x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [168304] (Microsoft Corporation)
    x64-Catalog5 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog5 09 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
    x64-Catalog5 10 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
    x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)
    x64-Catalog9 11 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation)

    ========================= Event log errors: ===============================

    Application errors:
    ==================
    Error: (01/06/2015 08:21:57 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0xe94
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:55 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x152c
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:52 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x1338
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:50 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x828
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:37 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x17fc
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:36 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x1174
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:34 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x17a8
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:21:32 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x1538
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:05:55 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x1430
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3

    Error: (01/06/2015 08:05:53 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54
    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba
    Código de exceção: 0xc0000005
    Deslocamento com falha: 0x000000000010ca4c
    Identificação do processo com falha: 0x1748
    Hora de início do aplicativo com falha: 0xDllHost.exe0
    Caminho do aplicativo com falha: DllHost.exe1
    FCaminho do módulo de falhas: DllHost.exe2
    Identificação do Relatório: DllHost.exe3


    System errors:
    =============
    Error: (01/06/2015 06:09:12 PM) (Source: Schannel) (User: AUTORIDADE NT)
    Description: O seguinte alerta fatal foi recebido: 40.


    Microsoft Office Sessions:
    =========================

    CodeIntegrity Errors:
    ===================================
      Date: 2013-02-10 17:22:48.350
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\PeerGuardian2\pgfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

      Date: 2013-02-10 17:22:48.250
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\PeerGuardian2\pgfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.



    =========================== Installed Programs ============================
    ≪Dark Souls - Prepare to Die≫  1.0.0.1 (HKLM-x32\...\{1744E95A-53A5-9D5F-9935-A1CF739879A4}_is1) (Version: 1.0.0.1 - NAMCO BANDAI Games Inc.)
    ≪Trine 2≫  2.0 (HKLM-x32\...\Trine 2_is1) (Version: 2.0 - Frozenbyte)
    μTorrent (HKLM-x32\...\uTorrent) (Version: 3.2.3.28705 - BitTorrent Inc.)
    7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
    AAC ACM Codec 1.9 (HKLM-x32\...\AACACM) (Version: 1.9 - fccHandler)
    AAC ACM Codec x64 1.9 (HKLM\...\AACACM) (Version: 1.9 - fccHandler)
    AC-3 ACM Codec 2.2 (HKLM-x32\...\AC3ACM) (Version: 2.2 - fccHandler)
    AC-3 ACM Codec x64 2.2 (HKLM\...\AC3ACM) (Version: 2.2 - fccHandler)
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.5.0.880 - Adobe Systems Incorporated)
    Adobe AIR (x32 Version: 3.5.0.880 - Adobe Systems Incorporated) Hidden
    Adobe Audition CC (HKLM-x32\...\{DE1E055B-679C-42F8-B114-7B6ED0B8ED95}) (Version: 6.0 - Adobe Systems Incorporated)
    Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated)
    Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
    Adobe Reader XI (11.0.03) - Portugues (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated)
    Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.0.112 - Adobe Systems, Inc.)
    Another World 20th Anniversary Edition © Focus Home Interactive version 1 (HKLM-x32\...\QW5vdGhlciBXb3JsZA==_is1) (Version: 1 - )
    Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
    Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
    ASIO Proxy for foobar2000 (HKLM-x32\...\ASIOProxy) (Version: 0.7.1.2 - Maxim V.Anisiutkin)
    Atualizacoes da NVIDIA 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden
    Atualiza鈬o do produto Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0416-0000-0000000FF1CE}_ENTERPRISE_{717C9095-8AAE-41CB-B046-BD6E8399F4F3}) (Version:  - Microsoft)
    Atualiza鈬o do produto Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0416-0000-0000000FF1CE}_ENTERPRISE_{5016CB22-B9A7-44FB-AA72-AF28B27B15EA}) (Version:  - Microsoft)
    Atualiza鈬o do produto Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0416-0000-0000000FF1CE}_ENTERPRISE_{BE3A7C0C-0081-4694-B5F9-980DD66BDDF8}) (Version:  - Microsoft)
    Atualiza鈬o do produto Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0416-0000-0000000FF1CE}_ENTERPRISE_{7297E3A9-FCD4-4E0E-A306-7A90359E50E3}) (Version:  - Microsoft)
    AutoHotkey 1.1.14.04 (HKLM\...\AutoHotkey) (Version: 1.1.14.04 - Lexikos)
    avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software)
    Bastion (HKLM-x32\...\Steam App 107100) (Version:  - Supergiant Games)
    Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
    BioShock 2 (HKLM-x32\...\Steam App 8850) (Version:  - 2K Marin)
    Bioshock Infinite (HKLM-x32\...\Bioshock Infinite_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
    bl (x32 Version: 1.0.0 - Your Company Name) Hidden
    Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
    Brothers - A Tale of Two Sons (HKLM-x32\...\Steam App 225080) (Version:  - Starbreeze Studios AB)
    Castle Crashers (HKLM-x32\...\Steam App 204360) (Version:  - The Behemoth)
    CDisplay 1.8 (HKLM-x32\...\CDisplay_is1) (Version:  - dvd8n)
    CDisplayEx 1.10.29 (HKLM\...\CDisplayEx_is1) (Version:  - Progdigy Software S.A.R.L.)
    Child of Light (HKLM-x32\...\Q2hpbGRvZkxpZ2h0_is1) (Version: 1 - )
    Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
    Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
    Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
    CoreAAC Audio Decoder (remove only) (HKLM-x32\...\CoreAAC Audio Decoder) (Version:  - )
    Curse (HKLM-x32\...\{A20BFF62-AE3C-42BD-9C52-841CAB96BC49}) (Version: 6.0.0.0 - Curse)
    CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3304a - CyberLink Corp.)
    CyberLink YouCam (x32 Version: 2.0.3304a - CyberLink Corp.) Hidden
    DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd)
    Dark Souls 2 (HKLM-x32\...\Dark Souls 2_is1) (Version:  - R.G. Freedom)
    Dead Space version 1.0.0.222 (HKLM-x32\...\Dead Space_is1) (Version: 1.0.0.222 - )
    Dont Starve (HKLM-x32\...\Dont Starve_is1) (Version: 1.103987 - Decepticon)
    Dungeon Fighter Online (HKLM-x32\...\DFO) (Version:  - )
    Dust: An Elysian Tail (HKLM-x32\...\Dust: An Elysian Tail_is1) (Version:  - Microsoft Studios)
    Dustforce (HKLM-x32\...\Steam App 65300) (Version:  - Hitbox Team)
    Exact Audio Copy 1.0beta3 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta3 - Andre Wiethoff)
    f.lux (HKCU\...\Flux) (Version:  - )
    FEZ (HKLM-x32\...\FEZ_is1) (Version:  - R.G. Origami)
    ffdshow v1.3.4532 [2014-07-17] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4532.0 - )
    FileZilla Client 3.6.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.6.0.2 - FileZilla Project)
    FLAC 1.2.1b (remove only) (HKLM-x32\...\FLAC) (Version: 1.2.1b - Xiph.org)
    foobar2000 v1.3.2 (HKLM-x32\...\foobar2000) (Version: 1.3.2 - Peter Pawlowski)
    GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden
    Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    G-Senjou no Maou English (HKLM-x32\...\G-Senjou_no_Maou_Aegis) (Version: 1.1.2.721 - AKABEiSOFT2)
    Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version:  - )
    Half Minute Hero Super Mega Neo Climax Ultimate Boy (HKLM-x32\...\Half Minute Hero Super Mega Neo Climax Ultimate Boy_is1) (Version:  - )
    Half-Life (HKLM-x32\...\Half-Life) (Version:  - )
    Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
    HexChat (HKLM\...\HexChat_is1) (Version: 2.10.2 - HexChat)
    Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
    ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
    IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
    iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)
    Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
    Java Auto Updater (x32 Version: 2.8.25.18 - Oracle Corporation) Hidden
    Kentucky Route Zero (HKLM-x32\...\GOGPACKKENTUCKYROUTEZERO_is1) (Version: 2.1.0.3 - GOG.com)
    LAV Filters 0.59.1 (HKLM-x32\...\lavfilters_is1) (Version: 0.59.1 - Hendrik Leppkes)
    League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
    League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
    Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
    LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.5.2 - www.leaguereplays.com)
    Lone Survivor - The Director's Cut (HKLM-x32\...\GOGPACKLONESURVIVORDC_is1) (Version: 2.0.0.2 - GOG.com)
    Luftrausers 1.0.0.1 (HKLM-x32\...\Luftrausers 1.0.0.1) (Version: 1.0.0.1 - Devolver Digital)
    Mark of the Ninja (HKLM-x32\...\Steam App 214560) (Version:  - Klei Entertainment)
    Mark of the Ninja Special Edition (HKLM-x32\...\Mark of the Ninja Special Edition_is1) (Version:  - )
    Melty Blood Actress Again Current Code English v0.52 (HKLM-x32\...\Melty Blood Actress Again Current Code English) (Version:  - )
    Microsoft .NET Framework 4.5 PTB Language Pack (Version: 4.5.50709 - Microsoft Corporation) Hidden
    Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
    Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
    Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
    Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
    Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
    Microsoft Office Access MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
    Microsoft Office Enterprise 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
    Microsoft Office Excel MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Groove MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office InfoPath MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Office 64-bit Components 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
    Microsoft Office OneNote MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Outlook MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office PowerPoint MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Proof (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
    Microsoft Office Proof (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
    Microsoft Office Proofing (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Publisher MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Shared 64-bit MUI (Portuguese (Brazil)) 2007 (Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Shared MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Office Word MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.4518.1019 - Microsoft Corporation) Hidden
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
    Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (Version: 11.0.61030 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт)
    Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden
    Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
    Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
    Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
    Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
    Monaco What's Yours Is Mine (HKLM-x32\...\Monaco What's Yours Is Mine_is1) (Version: Monaco What's Yours Is Mine - )
    Mozilla Firefox 34.0.5 (x86 pt-BR) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 pt-BR)) (Version: 34.0.5 - Mozilla)
    Mp3tag v2.65a (HKLM-x32\...\Mp3tag) (Version: v2.65a - Florian Heidenreich)
    MPC-HC 1.6.5.6366 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.6.5.6366 - MPC-HC Team)
    NVIDIA Driver de audio HD 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
    NVIDIA Driver de graficos 332.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 332.21 - NVIDIA Corporation)
    NVIDIA GeForce Experience 1.8.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.1 - NVIDIA Corporation)
    NVIDIA Install Application (Version: 2.1002.142.992 - NVIDIA Corporation) Hidden
    NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
    NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
    NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden
    NVIDIA ShadowPlay 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden
    NVIDIA Software do sistema PhysX 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
    NVIDIA Update Core (Version: 10.11.15 - NVIDIA Corporation) Hidden
    NVIDIA Virtual Audio 1.2.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.19 - NVIDIA Corporation)
    Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
    OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
    osu! (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284C}) (Version: 0.0.0.0 - peppy)
    Pacote de Idiomas do Microsoft .NET Framework 4.5 - Portugues (Brasil) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1046) (Version: 4.5.50709 - Microsoft Corporation)
    Painel de controle da NVIDIA 332.21 (Version: 332.21 - NVIDIA Corporation) Hidden
    PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.213.0 - Tracker Software Products Ltd)
    PFPortChecker 1.0.39 (HKLM-x32\...\PFPortChecker) (Version: 1.0.39 - Portforward.com)
    ph (x32 Version: 1.0.0 - Your Company Name) Hidden
    Port Forward Network Utilities 2.0.1 (HKLM-x32\...\Port Forward Network Utilities) (Version: 2.0.1 - Portforward.com)
    Portal 2 (HKLM-x32\...\Steam App 620) (Version:  - Valve)
    Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
    puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert)
    qBittorrent 3.1.11 (HKLM-x32\...\qBittorrent) (Version: 3.1.11 - The qBittorrent project)
    Rayman Legends (HKLM-x32\...\UmF5bWFuTGVnZW5kcw==_is1) (Version: 1 - )
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
    Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30101 - Realtek Semiconductor Corp.)
    REALTEK Wireless LAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173F09590E16}) (Version: 1.00.0179 - REALTEK Semiconductor Corp.)
    Rogue Legacy (HKLM-x32\...\Steam App 241600) (Version:  - Cellar Door Games)
    Sansa Updater (HKCU\...\Sansa Updater) (Version: 1.406 - SanDisk Corporation)
    SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden
    Shovel Knight (HKLM-x32\...\1207664823_is1) (Version: 2.3.0.9 - GOG.com)
    Simple Port Tester (HKLM-x32\...\Simple Port Tester2.1.5) (Version: 2.1.5 - PcWinTech.com)
    Skullgirls (HKLM-x32\...\Steam App 245170) (Version:  - Lab Zero Games)
    Skype? 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
    Sonic Generations (HKLM-x32\...\Sonic Generations_is1) (Version: 1.0 - SEGA)
    SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
    Spelunky (HKLM-x32\...\Steam App 239350) (Version:  - )
    Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
    Steins;Gate version 1.0 (HKLM\...\{2A05A52B-BDD8-4FD5-A65A-687CB10D98DF}_is1) (Version: 1.0 - JAST USA)
    StepMania v5.0 beta 1a (remove only) (HKLM-x32\...\StepMania 5) (Version:  - StepMania Team)
    Super Jukebox (Remove Only) (HKLM-x32\...\Super Jukebox) (Version:  - )
    Suporte para Aplicativos Apple (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
    swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
    System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
    The Binding of Isaac Rebirth 1.0 (HKLM-x32\...\The Binding of Isaac Rebirth 1.0) (Version: 1.0 - Games on Cat-A-Cat.Net)
    The Swapper (HKLM-x32\...\The Swapper_is1) (Version:  - Facepalm Games)
    The Walking Dead Season 2 EP 2 (HKLM-x32\...\The Walking Dead Season 2 EP 2_is1) (Version:  - )
    The Walking Dead: Season 2 (HKLM-x32\...\VGhlV2Fsa2luZ0RlYWRTZWFzb24y_is1) (Version: 1 - )
    The Wolf Among Us (HKLM-x32\...\VGhlV29sZkFtb25nVXM=_is1) (Version: 1 - )
    The Wolf Among Us Episode 2 (HKLM-x32\...\The Wolf Among Us Episode 2_is1) (Version:  - CODEX)
    The Wolf Among Us Episode 3 (HKLM-x32\...\The Wolf Among Us Episode 3_is1) (Version:  - )
    Thief Gold (HKLM-x32\...\Thief Gold_is1) (Version:  - GOG.com)
    This War of Mine (HKLM-x32\...\This War of Mine_is1) (Version: 1.1.1 - Релиз от R.G. Steamgames)
    Transistor (HKLM-x32\...\Transistor_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
    Trine (HKLM-x32\...\Steam App 35700) (Version:  - Frozenbyte)
    Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
    Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
    Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version:  - Microsoft)
    Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2920789) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{9913305E-D4AC-4D26-B30F-799D529FB282}) (Version:  - Microsoft)
    Uplay (HKLM-x32\...\Uplay) (Version: 3.0 - Ubisoft)
    Valdis Sory - Abyssal City v1.0.0.22 (HKLM-x32\...\{085957E0-56FD-4640-9B2B-A560CB52526C}_is1) (Version:  - Endlessfluff Games)
    Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
    Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
    WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
    WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
    東方心綺楼 Ver1.20 (HKLM-x32\...\{B641E348-377C-4819-B92F-03F1D35A7EE3}_is1) (Version:  - 黄昏フロンティア)

    ========================= Devices: ================================


    ========================= Memory info: ===================================

    Percentage of memory in use: 49%
    Total physical RAM: 4021.86 MB
    Available physical RAM: 2036.5 MB
    Total Pagefile: 8041.9 MB
    Available Pagefile: 5652.47 MB
    Total Virtual: 4095.88 MB
    Available Virtual: 3965.99 MB

    ========================= Partitions: =====================================

    1 Drive c: () (Fixed) (Total:298.4 GB) (Free:3.65 GB) NTFS
    2 Drive d: () (Fixed) (Total:287.67 GB) (Free:0.41 GB) NTFS

    ========================= Users: ========================================

    Contas de usuario para \\WIN7-PC

    Administrador            Convidado                Valmir                   
    Victor                   
    Comando concluido com exito.

    ========================= Minidump Files ==================================

    No minidump file found


    **** End of log ****
     


    Edited by Vicdd, 06 January 2015 - 06:35 PM.

    • 0

    #8
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,025 posts
    • MVP

    Don't worry about the language.  I can puzzle it out.

     

    You have a lot of these errors:

     

    Error: (01/06/2015 08:05:53 PM) (Source: Application Error) (User: )
    Description: Nome de aplicativo com falha: DllHost.exe, versão: 6.1.7600.16385, carimbo de hora: 0x4a5bca54

    Nome do módulo de falhas: ESENT.dll, versão: 6.1.7601.17577, carimbo de hora: 0x4d79bfba

     

    I don't think I've seen this before.  I found this page on the error:

     

    http://www.howtogeek...error-in-vista/

     

    and based on what it says I would uninstall these:

     

     

    AAC ACM Codec 1.9 (HKLM-x32\...\AACACM) (Version: 1.9 - fccHandler)
    AAC ACM Codec x64 1.9 (HKLM\...\AACACM) (Version: 1.9 - fccHandler)
    AC-3 ACM Codec 2.2 (HKLM-x32\...\AC3ACM) (Version: 2.2 - fccHandler)
    AC-3 ACM Codec x64 2.2 (HKLM\...\AC3ACM) (Version: 2.2 - fccHandler)

     

     

    Right click on (My) Computer and select Manage (Continue) Then the Event Viewer. Next select Windows Logs.  Right click on System and Clear Log, Clear. Repeat for Application. Reboot. 

     

    and then run minitoolkit again (with just the List last 10 Event Viewer Errors checked).

     

    For the Ethernet problem:

     

    Disconnect/Disable your wireless.  Run Minitoolkit again with List IP configuration checked.


    • 0

    #9
    Vicdd

    Vicdd

      Member

    • Topic Starter
    • Member
    • PipPip
    • 19 posts

    Here:

    MiniToolBox by Farbar  Version: 30-11-2014
    Ran by Victor (administrator) on 07-01-2015 at 09:48:17
    Running from "C:\Users\Victor\Desktop"
    Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
    Boot Mode: Normal
    ***************************************************************************

    ========================= Event log errors: ===============================

    Application errors:
    ==================
    Error: (01/07/2015 09:43:49 AM) (Source: NvStreamSvc) (User: )
    Description: NvStreamSvcNvVAD initialization failed [6]

    Error: (01/07/2015 09:43:49 AM) (Source: NvStreamSvc) (User: )
    Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0]

    Error: (01/07/2015 09:39:41 AM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (User: )
    Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008]


    System errors:
    =============
    Error: (01/07/2015 09:42:06 AM) (Source: volsnap) (User: )
    Description: As cópias de sombra do volume C: foram excluídas porque o armazenamento de cópia de sombra não pôde ser expandido. Reduza a carga de E/S do sistema ou escolha um volume de armazenamento de cópia de sombra do qual não esteja sendo feita uma cópia de sombra.

    Error: (01/07/2015 09:39:35 AM) (Source: DCOM) (User: )
    Description: {3EB3C877-1F16-487C-9050-104DBCD66683}


    Microsoft Office Sessions:
    =========================

    CodeIntegrity Errors:
    ===================================
      Date: 2013-02-10 17:22:48.350
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\PeerGuardian2\pgfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

      Date: 2013-02-10 17:22:48.250
      Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\PeerGuardian2\pgfilter.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


    **** End of log ****
     

     

    MiniToolBox by Farbar  Version: 30-11-2014
    Ran by Victor (administrator) on 07-01-2015 at 09:49:18
    Running from "C:\Users\Victor\Desktop"
    Microsoft Windows 7 Ultimate  Service Pack 1 (X64)
    Boot Mode: Normal
    ***************************************************************************
    ========================= IP Configuration: ================================

    Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20) = Conexão local (Connected)
    Dispositivo Bluetooth (Rede Pessoal) = Conexão de Rede Bluetooth (Media disconnected)
    Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC = Conexão de Rede sem Fio (Media disconnected)


    # ----------------------------------
    # Configura��o de IPv4
    # ----------------------------------
    pushd interface ipv4

    reset
    set global icmpredirects=enabled
    add route prefix=0.0.0.0/0 interface="Conex�o local" nexthop=10.0.0.1 publish=Sim
    add address name="Conex�o local" address=10.0.0.125 mask=255.255.255.0


    popd
    # Final da configura��o IPv4



    Configura��o de IP do Windows

       Nome do host. . . . . . . . . . . . . . . . : win7-PC
       Sufixo DNS prim�rio . . . . . . . . . . . . :
       Tipo de n�. . . . . . . . . . . . . . . . . : h�brido
       Roteamento de IP ativado. . . . . . . . . . : n�o
       Proxy WINS ativado. . . . . . . . . . . . . : n�o

    Adaptador de Rede sem Fio Conex�o de Rede sem Fio:

       Estado da m�dia. . . . . . . . . . . . . .  : m�dia desconectada
       Sufixo DNS espec�fico de conex�o. . . . . . :
       Descri��o . . . . . . . . . . . . . . . . . : Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
       Endere�o F�sico . . . . . . . . . . . . . . : 20-7C-8F-1A-EF-28
       DHCP Habilitado . . . . . . . . . . . . . . : Sim
       Configura��o Autom�tica Habilitada. . . . . : Sim

    Adaptador Ethernet Conex�o de Rede Bluetooth:

       Estado da m�dia. . . . . . . . . . . . . .  : m�dia desconectada
       Sufixo DNS espec�fico de conex�o. . . . . . :
       Descri��o . . . . . . . . . . . . . . . . . : Dispositivo Bluetooth (Rede Pessoal)
       Endere�o F�sico . . . . . . . . . . . . . . : 00-0D-F0-8B-7F-53
       DHCP Habilitado . . . . . . . . . . . . . . : Sim
       Configura��o Autom�tica Habilitada. . . . . : Sim

    Adaptador Ethernet Conex�o local:

       Sufixo DNS espec�fico de conex�o. . . . . . :
       Descri��o . . . . . . . . . . . . . . . . . : Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
       Endere�o F�sico . . . . . . . . . . . . . . : 60-EB-69-34-2E-E8
       DHCP Habilitado . . . . . . . . . . . . . . : N�o
       Configura��o Autom�tica Habilitada. . . . . : Sim
       Endere�o IPv6 de link local . . . . . . . . : fe80::a961:4cbc:a52c:f641%10(Preferencial)
       Endere�o IPv4. . . . . . . .  . . . . . . . : 10.0.0.125(Preferencial)
       M�scara de Sub-rede . . . . . . . . . . . . : 255.255.255.0
       Gateway Padr�o. . . . . . . . . . . . . . . : 10.0.0.1
       IAID de DHCPv6. . . . . . . . . . . . . . . : 241232745
       DUID de Cliente DHCPv6. . . . . . . . . . . : 00-01-00-01-18-78-6F-C3-60-EB-69-34-2E-E8
       Servidores DNS. . . . . . . . . . . . . . . : 10.0.0.1
       NetBIOS em Tcpip. . . . . . . . . . . . . . : Habilitado

    Adaptador de t�nel isatap.{CE9E0649-6612-489D-9CD2-EAF341CC01D4}:

       Estado da m�dia. . . . . . . . . . . . . .  : m�dia desconectada
       Sufixo DNS espec�fico de conex�o. . . . . . :
       Descri��o . . . . . . . . . . . . . . . . . : Adaptador do Microsoft ISATAP #2
       Endere�o F�sico . . . . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Habilitado . . . . . . . . . . . . . . : N�o
       Configura��o Autom�tica Habilitada. . . . . : Sim

    Adaptador de t�nel isatap.{A5237987-B4C2-4685-9497-BAA8B24F72B5}:

       Estado da m�dia. . . . . . . . . . . . . .  : m�dia desconectada
       Sufixo DNS espec�fico de conex�o. . . . . . :
       Descri��o . . . . . . . . . . . . . . . . . : Adaptador do Microsoft ISATAP #3
       Endere�o F�sico . . . . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Habilitado . . . . . . . . . . . . . . : N�o
       Configura��o Autom�tica Habilitada. . . . . : Sim

    Adaptador de t�nel Teredo Tunneling Pseudo-Interface:

       Estado da m�dia. . . . . . . . . . . . . .  : m�dia desconectada
       Sufixo DNS espec�fico de conex�o. . . . . . :
       Descri��o . . . . . . . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
       Endere�o F�sico . . . . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
       DHCP Habilitado . . . . . . . . . . . . . . : N�o
       Configura��o Autom�tica Habilitada. . . . . : Sim
    DNS request timed out.
        timeout was 2 seconds.
    Servidor:  UnKnown
    Address:  10.0.0.1

    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.
    A solicita��o ping n�o p�de encontrar o host google.com. Verifique o nome e tente
    novamente.
    DNS request timed out.
        timeout was 2 seconds.
    Servidor:  UnKnown
    Address:  10.0.0.1

    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.
    DNS request timed out.
        timeout was 2 seconds.
    A solicita��o ping n�o p�de encontrar o host yahoo.com. Verifique o nome e tente
    novamente.

    Disparando 127.0.0.1 com 32 bytes de dados:
    Resposta de 127.0.0.1: bytes=32 tempo<1ms TTL=128
    Resposta de 127.0.0.1: bytes=32 tempo<1ms TTL=128

    Estat�sticas do Ping para 127.0.0.1:
        Pacotes: Enviados = 2, Recebidos = 2, Perdidos = 0 (0% de
                 perda),
    Aproximar um n�mero redondo de vezes em milissegundos:
        M�nimo = 0ms, M�ximo = 0ms, M�dia = 0ms
    ===========================================================================
    Lista de interfaces
     13...20 7c 8f 1a ef 28 ......Realtek RTL8191SE Wireless LAN 802.11n PCI-E NIC
     12...00 0d f0 8b 7f 53 ......Dispositivo Bluetooth (Rede Pessoal)
     10...60 eb 69 34 2e e8 ......Atheros AR8131 PCI-E Gigabit Ethernet Controller (NDIS 6.20)
      1...........................Software Loopback Interface 1
     19...00 00 00 00 00 00 00 e0 Adaptador do Microsoft ISATAP #2
     17...00 00 00 00 00 00 00 e0 Adaptador do Microsoft ISATAP #3
     15...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
    ===========================================================================

    Tabela de rotas IPv4
    ===========================================================================
    Rotas ativas:
    Endere�o de rede          M�scara   Ender. gateway       Interface   Custo
              0.0.0.0          0.0.0.0         10.0.0.1       10.0.0.125    276
             10.0.0.0    255.255.255.0      No v�nculo        10.0.0.125    276
           10.0.0.125  255.255.255.255      No v�nculo        10.0.0.125    276
           10.0.0.255  255.255.255.255      No v�nculo        10.0.0.125    276
            127.0.0.0        255.0.0.0      No v�nculo         127.0.0.1    306
            127.0.0.1  255.255.255.255      No v�nculo         127.0.0.1    306
      127.255.255.255  255.255.255.255      No v�nculo         127.0.0.1    306
            224.0.0.0        240.0.0.0      No v�nculo         127.0.0.1    306
            224.0.0.0        240.0.0.0      No v�nculo        10.0.0.125    276
      255.255.255.255  255.255.255.255      No v�nculo         127.0.0.1    306
      255.255.255.255  255.255.255.255      No v�nculo        10.0.0.125    276
    ===========================================================================
    Rotas persistentes:
      Endere�o de rede         M�scara  Ender. gateway    Custo
              0.0.0.0          0.0.0.0         10.0.0.1  Padr�o
    ===========================================================================

    Tabela de rotas IPv6
    ===========================================================================
    Rotas ativas:
     Se destino de rede de m�trica      Gateway
      1    306 ::1/128                  No v�nculo
     10    276 fe80::/64                No v�nculo
     10    276 fe80::a961:4cbc:a52c:f641/128
                                        No v�nculo
      1    306 ff00::/8                 No v�nculo
     10    276 ff00::/8                 No v�nculo
    ===========================================================================
    Rotas persistentes:
      Nenhuma

    **** End of log ****
     

    The ipconfig scan is after trying manually to change the ipv4 settings like you said.

    Also, I am still getting the COM Surrogate problem but the bluescreen problem is apparently gone (it's been a while)

    Edit: Nevermind, i still get bluescreens, but i think that's related to the heat like you said, i will clean later.


    Edited by Vicdd, 07 January 2015 - 07:08 AM.

    • 0

    #10
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,025 posts
    • MVP

    I would not wait too long to clean it.  Heat can damage things.

     

    Let's try reinstalling your network driver.

     

    Right click on Computer and select Manage (yes) then Device Manager.  In the right pane find Network Adapters and click on the arrow in front of it to open it up.  You should see one from Atheros  below Network Adapters.  Right click on it and Uninstall.  Then reboot.  Windows should find it again and reinstall it automatically.  See if it is working now.

     

    For the COM Surrogate problem get

     

    InstalledCodec v1.30
     

     

    from

     

    http://www.nirsoft.n...lled_codec.html

     

    The download link is near the bottom of the page.  You want the one that says:

    Download InstalledCodec 64-bit

    Save the file and then Right click and Extract All.  Then right click on the .exe file and Run As Admin.

     

    Once it is up, Edit, Select All, then File, Disable Selected Items.  

     

    Reboot and see if you still get the Com Surrogate error.  If not then it was one of the codecs.  Go back in and select half of them (click on the first one.  Scroll down, hold the shift down and click on one near the halfway point.  Then File, Enable Selected Items.  Reboot.  IF the error comes back then disable half of the ones you just enabled and try again.  You have to keep at it until you find the culprit.  

     

    If the error does not go away then reenable all  and reboot and we will look for something else.


    • 0

    Advertisements


    #11
    Vicdd

    Vicdd

      Member

    • Topic Starter
    • Member
    • PipPip
    • 19 posts

    I disabled them all and the surrogate error persists.

    Also, windows couldn't download atheros driver.


    • 0

    #12
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,025 posts
    • MVP

    OK so it appears the codecs are not at fault so you can reenable them if you haven't already.

     

    What make and model number is this PC?  Hopefully the maker has a driver for the  AR8131.  The website for Qualcomm (makers of the atheros) is not working.


    • 0

    #13
    Vicdd

    Vicdd

      Member

    • Topic Starter
    • Member
    • PipPip
    • 19 posts

    LG R590.

    I see where this is going: Format.


    Edited by Vicdd, 07 January 2015 - 10:23 AM.

    • 0

    #14
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 20,025 posts
    • MVP

    A reformat won't make it run cooler!  Need to fix that first.

     

     Can't believe how poor LG's site is.  No drivers for your laptop at all.  Perhaps because your laptop is not sold here.  Maybe a different story if I went to a Brazilian LG site.  Anyway I have found a site with the drivers for your atheros on a Czech site:

     

    https://www.atheros....set=48&system=5

     

    Click on the first Click for Download button and the download should start.  It's a zip file so save it then right click and Extract All.  Then right click on 

    L1C62x64.inf The second one in the list - has a gear on a piece of paper as its icon in case you can't see the extensions.  Select Install.

     

    Reboot then go into device manager again and see if atheros shows up under your Network Adapters.  Does it claim to be working or does it have a yellow flag?

     

    If it says it's working then disable the wireless, connect up the Ethernet and try it.


    • 0

    #15
    Vicdd

    Vicdd

      Member

    • Topic Starter
    • Member
    • PipPip
    • 19 posts

    When i click the inf file

    "The INF File You selected does not support this method of installation"

     

    rip


    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP