Vous êtes sur la page 1sur 17

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-10-2014 01

Ran by maison.souza at 2014-10-20 16:07:08


Running from C:\Users\maison.souza\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3
C}
AS: avast! Antivirus (Enabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB68
1}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF
46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to un
hide them. The adware programs should be uninstalled manually.)
64 Bit HP CIO Components Installer (Version: 15.2.1 - Hewlett-Packard) Hidden
ActiveCheck component for HP Active Support Library (x32 Version: 3.0.0.3 - Hewl
ett-Packard) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorpor
ated)
Adobe AIR (x32 Version: 3.1.0.4880 - Adobe Systems Incorporated) Hidden
Adobe Creative Suite 5 Master Collection (HKLM-x32\...\{288DB08D-0708-4A94-B05555B99E39EB62}) (Version: 5.0 - Adobe Systems Incorporated)
Adobe Creative Suite 5.5 Master Collection (HKLM-x32\...\{D57FC112-312E-4D70-860
F-2DB8FB6858F0}) (Version: 5.5 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version
: 11.3.300.265 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version:
15.0.0.152 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1)
(Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B3204
85DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden
Adobe Photoshop 7.0 (HKLM-x32\...\Adobe Photoshop 7.0) (Version: 7.0 - Adobe Sys
tems, Inc.)
Adobe Reader XI (11.0.06) - Portugus (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AB000
0000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6
.8.638 - Adobe Systems, Inc.)
Advanced IP Scanner 2.3 (HKLM-x32\...\{0585FBE8-9244-4DA6-B3B9-1D912723E942}) (V
ersion: 2.3.2161 - Famatech)
Advanced SystemCare 5 (HKLM-x32\...\Advanced SystemCare 5_is1) (Version: 5.2.0 IObit)
Arquivo do WinRAR (HKLM\...\WinRAR archiver) (Version: - )
AutoCAD 2013 - English (HKLM\...\AutoCAD 2013 - English) (Version: 19.0.55.0 - A
utodesk)
AutoCAD 2013 - English (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 Language Pack - English (Version: 19.0.55.0 - Autodesk) Hidden
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.0.8
4.0 - Autodesk)

Autodesk Content Service (x32 Version: 3.0.84.0 - Autodesk) Hidden


Autodesk Content Service Language Pack (x32 Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Design Review 2013 (HKLM-x32\...\Autodesk Design Review 2013) (Version:
13.0.0.82 - Autodesk, Inc.)
Autodesk Design Review 2013 (x32 Version: 13.0.0.82 - Autodesk, Inc.) Hidden
Autodesk Inventor Fusion plug-in for AutoCAD 2013 (HKLM\...\Autodesk Inventor Fu
sion plug-in for AutoCAD 2013) (Version: 0.2.0.230 - Autodesk)
Autodesk Inventor Fusion plug-in for AutoCAD 2013 (Version: 0.2.0.230 - Autodesk
) Hidden
Autodesk Inventor Fusion plug-in language pack for AutoCAD 2013 (Version: 0.2.0.
230 - Autodesk) Hidden
Autodesk Material Library 2013 (HKLM-x32\...\{117EBEEB-5DB0-43C8-9FD6-DD583DB152
DD}) (Version: 3.0.13 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2013 (HKLM-x32\...\{606E
12B9-641F-4644-A22A-FF38AE980AFD}) (Version: 3.0.13 - Autodesk)
Autodesk Sync (HKLM\...\{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}) (Version: 3.5.24
.0 - Autodesk, Inc.)
avast! Free Antivirus (HKLM-x32\...\avast) (Version: 8.0.1483.0 - AVAST Software
)
B1 Free Archiver (HKLM-x32\...\B1Manager) (Version: - )
BufferChm (x32 Version: 90.0.146.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
CDisplay 1.8 (HKLM-x32\...\CDisplay_is1) (Version: - dvd8n)
Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version: - )
Common Desktop Agent (Version: 1.62.0 - OEM) Hidden
Controle ActiveX do Windows Live Mesh para Conexes Remotas (HKLM-x32\...\{39B3184
E-0BFB-40FA-ADDC-E7E2D535CDA9}) (Version: 15.4.5722.2 - Microsoft Corporation)
Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{B6BFCD02-BA0E-41A9-9C9C
-6624C4BB475F}) (Version: 15.2.0.686 - Corel Corporation)
Corel Graphics - Windows Shell Extension (x32 Version: 15.2.686 - Corel Corporat
ion) Hidden
Corel Graphics - Windows Shell Extension 64 Bit (Version: 15.2.686 - Corel Corpo
ration) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.40.2.0131 - DT So
ft Ltd)
DemoMate (HKLM-x32\...\{4CD52C95-0846-4D6B-8665-B3A80073DEB0}) (Version: 1.0.660
.0 - Morse Best Innovation)
DiscadorOi.exe (HKLM-x32\...\oigsm_is1) (Version: 1.4.1.0 - LightComm Tecnologia
)
doPDF 7.3 printer (HKLM\...\doPDF 7 printer_is1) (Version: - Softland)
Driver Genius Professional Edition (HKLM-x32\...\Driver Genius Professional Edit
ion_is1) (Version: 11.0 - Driver-Soft Inc.)
Driver Magician 3.48 (HKLM-x32\...\Driver Magician_is1) (Version: - GoldSolutio
n Software, Inc.)
Evernote v. 5.0.3 (HKLM-x32\...\{32D39568-3B77-11E3-88CE-00163E98E7D0}) (Version
: 5.0.3.1614 - Evernote Corp.)
Ext2Fsd 0.51 (HKLM\...\Ext2Fsd_is1) (Version: 0.51 - Matt Wu)
Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C80
8CF7}) (Version: 3.1.521 - Skype Limited)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Versio
n: 4.6.58.2 - FARO Scanner Production)
File Sanitizer For HP ProtectTools (HKLM-x32\...\{6D6ADF03-B257-4EA5-BBC1-1D145A
F8D514}) (Version: 5.0.1.2 - Hewlett-Packard)
FormatFactory 2.95 (HKLM-x32\...\FormatFactory) (Version: 2.95 - Free Time)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.0.2.413 - Foxit Corpora
tion)
Free Audio Editor (HKLM-x32\...\Free Audio Editor) (Version: - FAE Inc.)
Free PS Convert driver 8.15 (HKLM-x32\...\Free PS Convert driver_is1) (Version:
- )

GBBD Banco do Brasil (HKCU\...\{36386dc9-8543-4b12-ae6b-220fd52f19f3}_is1) (Vers


ion: GBBD Banco do Brasil - )
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
GlassFish Server Open Source Edition 3.1.2.2 (HKLM\...\nbi-glassfish-mod-3.1.2.2
3.2) (Version: - )
Google Chrome (HKCU\...\Google Chrome) (Version: 38.0.2125.104 - Google Inc.)
Google Drive (HKLM-x32\...\{C6640705-7479-4EE5-BC86-879F05F65E74}) (Version: 1.1
7.7290.4094 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
Google+ Auto Backup (HKCU\...\Google+ Auto Backup) (Version: 1.0.26.151 - Google
, Inc.)
Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Versi
on: 1.0.21.81 - Google)
Hamachi 1.0.1.5 (HKLM-x32\...\Hamachi) (Version: - )
High-Definition Video Playback (x32 Version: 11.1.10400.2.65 - Nero AG) Hidden
HP Auto (Version: 1.0.12494.3472 - Hewlett-Packard Company) Hidden
HP Connect Solutions (HKLM-x32\...\{BE1C9464-DEBB-4DA6-B19A-8EC634F22D73}) (Vers
ion: 1.0.0.4 - Hewlett-Packard)
HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hid
den
HP MediaSmart Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3E
EFE75D}) (Version: 4.2.3303 - Hewlett-Packard)
HP MediaSmart Webcam (x32 Version: 4.2.3303 - Hewlett-Packard) Hidden
HP My Display (HKLM-x32\...\{1F4DDC90-5923-4E49-A4C7-F3CCC954DCA0}) (Version: 1.
02.043 - Portrait Displays, Inc.)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10
.0000 - Hewlett-Packard)
HP ProtectTools Security Manager (HKLM\...\HPProtectTools) (Version: 5.04.669 Hewlett-Packard)
HP ProtectTools Security Manager (Version: 5.04.669 - Hewlett-Packard) Hidden
HP Setup (HKLM-x32\...\{05BA6A83-C7A7-4F85-88F1-150142305229}) (Version: 8.5.448
9.3576 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E02FBF01-0DE3-4BCB-89E8-D300FEFC3289}) (Vers
ion: 5.2.3.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Ve
rsion: 10.1.1000 - Hewlett-Packard)
HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E})
(Version: 2.5.0.0 - Hewlett-Packard)
HPAsset component for HP Active Support Library (x32 Version: 3.0.0.6 - HewlettPackard) Hidden
HSDPA USB Modem (HKLM\...\HSDPA USB Modem_is1) (Version: - )
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (V
ersion: 1.2.1.1007 - Intel Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C7
6-B9AC9A5886EA}) (Version: 8.15.10.2226 - Intel Corporation)
IRPF2014 - Declarao de Ajuste Anual, Final de Esplio e Sada Definitiva do Pas (HKLM-x
32\...\IRPF2014) (Version: 1.0 - Receita Federal do Brasil)
Java 7 Update 9 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417009FF}) (Vers
ion: 7.0.90 - Oracle)
Java 8 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418000FF}) (Version: 8.0.
0 - Oracle Corporation)
Java Auto Updater (x32 Version: 2.8.00.132 - Oracle, Inc.) Hidden
Java SE Development Kit 7 Update 4 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-0
0B0D0170040}) (Version: 1.7.0.40 - Oracle)
Java SE Development Kit 8 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D01800
00}) (Version: 8.0.0 - Oracle Corporation)
Java(TM) 6 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416031FF})
(Version: 6.0.310 - Oracle)
Java(TM) 7 Update 5 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217005FF}) (Versi
on: 7.0.50 - Oracle)

Java(TM) SE Development Kit 6 Update 31 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A


78A-00B0D0160310}) (Version: 1.6.0.310 - Oracle)
JavaFX 2.1.0 (64-bit) (HKLM\...\{1111706F-666A-4037-7777-210648764D10}) (Version
: 2.1.0 - Oracle Corporation)
JavaFX 2.1.0 SDK (64-bit) (HKLM\...\{2222706F-666A-4037-7777-210648764D10}) (Ver
sion: 2.1.0 - Oracle Corporation)
JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1
.1 - Oracle Corporation)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hi
dden
K-Lite Mega Codec Pack 8.7.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 8.7.0 )
LaserJet 1020 series (HKLM-x32\...\HP-LaserJet 1020 series) (Version: - )
LightScribe System Software (HKLM-x32\...\{82EF29B1-9B60-4142-A155-0599216DD053}
) (Version: 1.18.6.1 - LightScribe)
Media Player Classic - Home Cinema 1.6.0.4014 x64 (HKLM\...\{2ACBF1FA-F5C3-4B19A774-B22A31F231B9}_is1) (Version: 1.6.0.4014 - MPC-HC Team)
MediaInfo 0.7.48 (HKLM\...\MediaInfo) (Version: 0.7.48 - MediaArea.net)
Memeo AutoSync (HKLM-x32\...\{75B7F766-7998-44d8-A202-F1EC76A121BA}) (Version:
- Memeo Inc.)
Memeo Backup Premium (HKLM-x32\...\{347DA8D7-B858-421e-A154-5F438A36F1A4}) (Vers
ion: - Memeo Inc.)
Memeo LifeAgent Explorer Extension (HKLM-x32\...\InstallShield_{07537D43-050A-48
32-9435-851F6DD3B606}) (Version: - )
Memeo LifeAgent Explorer Extension (Version: 3.00.71 - Memeo Inc) Hidden
Memeo Send (HKLM-x32\...\{81784157-3D4D-4bc1-B988-B24C32A26DA8}) (Version: - Me
meo Inc.)
Memeo Share (HKLM-x32\...\{1BC77CEF-C52F-4092-BF87-0D4E6B86D860}) (Version: 3.1.
0.3265 - Memeo Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14
.0.4763.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version
: 5.1.10411.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473
D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BF
FD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf
-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2
-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a
-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0
ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-89
1a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-92
7d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE
-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C70
01-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporatio
n)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D

76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporatio


n)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25
302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F
1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corpor
ation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9B
E518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corpor
ation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E
5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C
-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C04
34-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation)
Mni Aurlio (HKLM-x32\...\{676159A7-0A70-4C9C-BAAB-816691BA3A3B}) (Version: 7.00 Positivo Informtica.)
MiraScan 6.3 (5000 series) (HKLM-x32\...\{EA2E8D6D-EE50-4689-B7ED-1E580BC04CC1})
(Version: V6.3(5000 series) - Benq Scan)
Mozilla Firefox 32.0.3 (x86 pt-BR) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 ptBR)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 2
9.0.1 - Mozilla)
MPC-HC 1.6.6.6957 (3975d54) (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}
_is1) (Version: 1.6.6.6957 - MPC-HC Team)
MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (
Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (
Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89
B44}) (Version: 4.30.2107.0 - Microsoft Corporation)
MySQL Server 5.5 (HKLM\...\{5CA882E6-4BF0-4E55-B290-6C4EAD6E586E}) (Version: 5.5
.28 - Oracle Corporation)
MySQL Workbench 5.2 CE (HKLM-x32\...\{23C3EF87-AD08-4F76-982D-1AE137485F08}) (Ve
rsion: 5.2.44 - Oracle Corporation)
NbuExplorer version 3.1 (HKLM-x32\...\{6C58B3E8-0822-490B-BC94-40CC02A6B37F}_is1
) (Version: 3.1 - Petr Vilem)
Nero 11 (HKLM-x32\...\{8A7ABBD4-A617-4AE8-9C6D-1510DE46EC35}) (Version: 11.0.155
00 - Nero AG)
Nero 11 Cliparts (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Disc Menus 1 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Disc Menus 2 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Disc Menus 3 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Disc Menus Basic (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Effects Basic (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Image Samples (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Kwik Themes 1 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Kwik Themes 2 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Kwik Themes 3 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Kwik Themes 4 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Kwik Themes Basic (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden

Nero 11 PiP Effects 1 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden


Nero 11 PiP Effects Basic (x32 Version: 11.0.11300.12.0 - Nero AG) Hidden
Nero 11 Video Samples (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero 11 Video Transitions 1 (x32 Version: 11.0.11200.12.0 - Nero AG) Hidden
Nero Audio Pack 1 (x32 Version: 11.0.11500.110.0 - Nero AG) Hidden
Nero BackItUp 11 (x32 Version: 6.0.16000.13.100 - Nero AG) Hidden
Nero BackItUp 11 Help (CHM) (x32 Version: 11.0.10200 - Nero AG) Hidden
Nero Backup Drivers (HKLM\...\{D600D357-5CB9-4DE9-8FD4-14E208BD1970}) (Version:
1.0.10000.1.0 - Nero AG)
Nero Burning ROM 11 (x32 Version: 11.0.12200.23.100 - Nero AG) Hidden
Nero Burning ROM 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero ControlCenter 11 (x32 Version: 11.0.12300.0.23 - Nero AG) Hidden
Nero ControlCenter 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Core Components 11 (x32 Version: 11.0.15000.1.12 - Nero AG) Hidden
Nero CoverDesigner 11 (x32 Version: 6.0.10800.11.100 - Nero AG) Hidden
Nero CoverDesigner 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Express 11 (x32 Version: 11.0.11700.23.100 - Nero AG) Hidden
Nero Express 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero Kwik Media (x32 Version: 1.10.19300.93.100 - Nero AG) Hidden
Nero Kwik Media Help (CHM) (x32 Version: 11.0.10200 - Nero AG) Hidden
Nero Recode 11 (x32 Version: 5.0.13300.32.100 - Nero AG) Hidden
Nero Recode 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero RescueAgent 11 (x32 Version: 4.0.10600.10.100 - Nero AG) Hidden
Nero RescueAgent 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
Nero SoundTrax 11 (x32 Version: 5.0.10400.4.100 - Nero AG) Hidden
Nero SoundTrax 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
Nero Update (x32 Version: 11.0.10623.22.0 - Nero AG) Hidden
Nero Video 11 (x32 Version: 8.0.14000.21.100 - Nero AG) Hidden
Nero Video 11 Help (CHM) (x32 Version: 11.0.10300 - Nero AG) Hidden
Nero WaveEditor 11 (x32 Version: 6.0.10800.5.100 - Nero AG) Hidden
Nero WaveEditor 11 Help (CHM) (x32 Version: 11.0.10400 - Nero AG) Hidden
nero.prerequisites.msi (x32 Version: 11.0.20007 - Nero AG) Hidden
NetBeans IDE 7.2 (HKLM\...\nbi-nb-base-7.2.0.0.201207171143) (Version: 7.2 - Net
Beans.org)
NetTraffic (HKCU\...\NetTraffic) (Version: 1.23.1.0 - VENEA.NET)
Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C
429}) (Version: 7.1.172.0 - Nokia)
Oracle Instant Client 11g (11.1.0.7) (HKLM-x32\...\{1A32552C-B53F-4175-8B90-0271
7775B8A6}_is1) (Version: - http://eduardolegatti.blogspot.com)
Pacote de Driver do Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0)
(HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0
- Nokia)
Pandion (HKLM-x32\...\{35846BA4-5A5A-433B-B65E-41C324AEFFA4}) (Version: 2.6.106
- Pandion Team)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (
Version: 12.0.109.0 - Nokia)
PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.14 - PDF
Complete, Inc)
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
PDFConverter Printer Driver (HKLM-x32\...\{74669C8B-4D0A-4237-997F-3E1C92331F7D}
) (Version: - )
PDFConverter Printer Driver version 2.00 (HKLM-x32\...\PDFConverter Printer Driv
er_is1) (Version: 2.00 - PDF-Convert, Inc.)
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Pinpad Caixa Aqui Web 1.0 (HKLM-x32\...\Pinpad Caixa Aqui Web 1.0) (Version: 1.0
- Caixa Econmica Federal)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Ve
rsion: 1.3.0 - Microsoft Corporation)
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetwork

s, Inc) Hidden
RealPlayer (HKLM-x32\...\RealPlayer 15.0) (Version: 15.0.4 - RealNetworks)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-9581
08FE7DBC}) (Version: 6.0.1.6387 - Realtek Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Recovery Manager (x32 Version: 5.5.3219 - CyberLink Corp.) Hidden
Recuva (remove only) (HKLM-x32\...\Recuva) (Version: - Piriform)
Samsung Drive Manager (HKLM-x32\...\{9F1A6A24-4901-42F6-A355-5DD2B82E62AE}) (Ver
sion: 1.0.148 - Clarus)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Versio
n: 1.02.84.01(11/12/2012) - Samsung Electronics Co., Ltd.)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A})
(Version: 2.2.0.12014_18 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.2.0.12014_18 - Samsung Electronics Co., Ltd.) Hidde
n
Samsung ML-375x Series (HKLM-x32\...\Samsung ML-375x Series) (Version: 1.07 (18/
02/2013) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version:
1.01.00.04 - Samsung Electronics Co., Ltd.)
Samsung SecretZone (HKLM-x32\...\{66491E5A-7899-4863-A2E9-057E10BCB578}) (Versio
n: 2.1.630.0 - Clarus)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D811
1E44}) (Version: 1.4.103.0 - SAMSUNG Electronics Co., Ltd.)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 1.0.1 - HP)
SDK (x32 Version: 2.22.002 - Portrait Displays, Inc.) Hidden
Seagate Dashboard (HKLM-x32\...\{C3A11907-930D-41AC-A135-CC3B12F92011}) (Version
: 1.0.0.809 - Memeo Inc.)
Seagate Drive Settings Installer (HKLM-x32\...\InstallShield_{91DDF870-EE18-44D8
-9D93-F4C122B80908}) (Version: 1.00.0000 - Seagate Technologies LLC)
Seagate Drive Settings Installer (x32 Version: 1.00.0000 - Seagate Technologies
LLC) Hidden
SeaTools for Windows (HKLM-x32\...\{98613C99-1399-416C-A07C-1EE1C585D872}) (Vers
ion: 1.2.0.6 - Seagate Technology)
SICOF2015 verso 1.0.0.0 (HKLM-x32\...\{D062EB83-A99E-410E-AA17-3A3E93553807}_is1)
(Version: 1.0.0.0 - PMM)
SkyMonk 2 (HKCU\...\Skymonk2) (Version: - Skymonk Solutions Limited)
Skype Toolbars (HKLM-x32\...\{981029E0-7FC9-4CF3-AB39-6F133621921A}) (Version: 1
.0.4051 - Skype Technologies S.A.)
Skype 4.2 (HKLM-x32\...\{D103C4BA-F905-437A-8049-DB24763BBE36}) (Version: 4.2.169
- Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
Subtitle Workshop 2.51 (HKLM-x32\...\SubtitleWorkshop) (Version: - )
Surf & E-Mail-Stick (HKLM-x32\...\Surf & E-Mail-Stick) (Version: 11.301.08.00.35
- Huawei Technologies Co.,Ltd)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Sync Breeze 3.8.24 (HKLM-x32\...\Sync Breeze) (Version: 3.8.24 - Flexense Comput
ing Systems Ltd.)
TIM Communicator (HKLM-x32\...\OrolixCommunicator) (Version: - )
Tweak-7 (HKLM\...\Tweak-7) (Version: 1.0 build 1175 - Totalidea Software)
TweakNow WinSecret (HKLM-x32\...\TweakNow WinSecret_is1) (Version: 4.2.7 - Tweak
Now.com)
Ultimate Windows Customizer (HKLM-x32\...\{C1AE8796-BE88-4630-9301-2F6D56F7A579}
) (Version: 1.0.1.0 - The Windows Club)
Universal Document Converter (Demo) (HKLM-x32\...\Universal Document Converter_i
s1) (Version: 5.3 - fCoder Group, Inc.)
UnloadSupport (x32 Version: 9.0.0 - Hewlett-Packard) Hidden
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
welcome (x32 Version: 11.0.21500.0.4 - Nero AG) Hidden
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34
789}) (Version: 1.0.30 - Microsoft Corporation)

Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Co


rporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - M
icrosoft Corporation)
Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hi
dden
Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hid
den
Windows Live Galeria de Fotos (x32 Version: 15.4.3502.0922 - Microsoft Corporati
on) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation
) Hidden
Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hid
den
Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation)
Hidden
Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hid
den
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft C
orporation) Hidden
Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidd
en
Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) H
idden
Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation)
Hidden
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation)
Hidden
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation)
Hidden
Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporati
on) Hidden
Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidde
n
Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporat
ion) Hidden
Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporati
on) Hidden
Windows Live Sync (HKLM-x32\...\{2DF215E0-BD3C-4C98-8616-AFEF09747285}) (Version
: 14.0.8117.416 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) H
idden
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft
Corporation) Hidden
Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporati
on) Hidden
Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC
9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)
Wondershare Video Editor(Build 4.6.0) (HKLM-x32\...\Wondershare Video Editor_is1
) (Version: - Wondershare Software)
XLS to Image Converter 4.00 (HKLM-x32\...\XLS to Image Converter_is1) (Version:
4.0.0.0 - PDF-Convert, Inc.)
Xls to Jpeg Converter 3000 7.7 (HKLM-x32\...\Xls to Jpeg Converter 3000_is1) (Ve
rsion: - Head Document Tool Software, Inc.)

==================== Custom CLSID (selected items): ==========================


(If an entry is included in the fixlist, it will be removed from registry. Any e
ventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-3979288092-2238760495-555486621-1008_Classes\CLSID\{90
B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\maison.souza\AppD
ata\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3979288092-2238760495-555486621-1008_Classes\CLSID\{E8
CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\maison.souza\AppD
ata\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.)
==================== Restore Points =========================
26-09-2014
04-10-2014
14-10-2014
16-10-2014

03:00:01
03:00:02
14:45:28
13:46:30

Ponto de
Ponto de
Ponto de
ComboFix

Verificao Agendado
Verificao Agendado
Verificao Agendado
created restore point

==================== Hosts content: ==========================


(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-13 23:34 - 2014-08-20 11:49 - 00000027 ____N C:\Windows\system32\Drivers
\etc\hosts
127.0.0.1
localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any a
ssociated file could be listed separately to be moved.)
Task: {004ACA88-E5F6-4A4A-A15C-6A1229997504} - System32\Tasks\FacebookUpdateTask
UserS-1-5-21-3979288092-2238760495-555486621-1008Core => C:\Users\maison.souza\A
ppData\Local\Facebook\Update\FacebookUpdate.exe [2014-02-26] (Facebook Inc.)
Task: {3BDAA9EB-17EE-48BF-BE74-2754EAFBF794} - System32\Tasks\{F71AFCCF-BF30-4B6
0-9C57-F7CCE520661E} => c:\Program Files (x86)\Corel\CorelDRAW Graphics Suite X5
\Programs\CorelDRW.exe
Task: {3C88C709-5789-45D7-ADCE-9394E2094893} - System32\Tasks\Hewlett-Packard\HP
Assistant\HPSA Upgrade => C:\ProgramData\Hewlett-Packard\HPSAUpgrade3\HpSAUpgra
de.exe
Task: {441961B5-938A-45D5-82C4-295CFA646E0E} - System32\Tasks\GoogleUpdateTaskUs
erS-1-5-21-3979288092-2238760495-555486621-1008Core => C:\Users\maison.souza\App
Data\Local\Google\Update\GoogleUpdate.exe [2012-04-20] (Google Inc.)
Task: {59E9038F-3E43-4C5D-9A68-C23A340003E2} - System32\Tasks\AutoKMS => C:\Wind
ows\AutoKMS.exe [2014-09-03] ()
Task: {5C53493F-3BCD-4AC1-BCE4-65FBC186E4DC} - System32\Tasks\{A4C29CC5-6D85-402
E-94A0-4752AD46F287} => C:\Program Files (x86)\BlueStacks\HD-StartLauncher.exe
Task: {5ED599EE-1881-4B9D-950E-12E949BFC41B} - System32\Tasks\SidebarExecute =>
C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corpo
ration)
Task: {66EE939F-F547-4D7E-A9B2-163FE96298ED} - System32\Tasks\AdobeAAMUpdater-1.
0-SMGIN-maison.souza => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA
\UpdaterStartupUtility.exe [2012-12-15] (Adobe Systems Incorporated)
Task: {6D1A15A2-A3DC-4561-9458-57FCA441E505} - System32\Tasks\FacebookUpdateTask
UserS-1-5-21-3979288092-2238760495-555486621-1008UA => C:\Users\maison.souza\App
Data\Local\Facebook\Update\FacebookUpdate.exe [2014-02-26] (Facebook Inc.)
Task: {6E226D6B-87E1-401F-A654-6A1C62270535} - System32\Tasks\CCleanerSkipUAC =>
C:\Program Files\CCleaner\CCleaner.exe
Task: {8557F5DC-7199-4DA5-813B-7BB362675966} - System32\Tasks\{12374F0B-3F16-477

D-A6D4-E7445E5F9A09} => C:\Program Files (x86)\Valve\hl.exe


Task: {90052635-4786-4237-A138-093DB3206B72} - System32\Tasks\Hewlett-Packard\HP
Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP
Health Check\ActiveCheck\product_line\UtilTask.exe
Task: {915892DD-A688-4E25-8B1C-13F8D495A2CF} - System32\Tasks\avast! Emergency U
pdate => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-14] (A
VAST Software)
Task: {943A7F39-5559-46F6-9F6A-941CBDB3CF5F} - System32\Tasks\GoogleUpdateTaskMa
chineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-10-03] (G
oogle Inc.)
Task: {9CF27928-078B-40F6-90E4-BA9BE2682C26} - System32\Tasks\RealUpgradeLogonTa
skS-1-5-21-3979288092-2238760495-555486621-1008 => C:\Program Files (x86)\Real\R
ealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {9D4EF3DE-F822-49AB-BB4F-29F6F226B6EE} - System32\Tasks\RealUpgradeSchedul
edTaskS-1-5-21-3979288092-2238760495-555486621-1008 => C:\Program Files (x86)\Re
al\RealUpgrade\RealUpgrade.exe [2012-04-30] (RealNetworks, Inc.)
Task: {A0DFCAA0-11DB-41A3-AC2B-A26E36D4FDAB} - System32\Tasks\{DA698C41-8000-48D
6-904A-9192DC43A2CD} => C:\Program Files (x86)\Advanced IP Scanner v2\advanced_i
p_scanner.exe
Task: {AFFA88A4-8302-4D54-9D58-2F077C70F3B6} - System32\Tasks\ASC5_PerformanceMo
nitor => C:\Program Files (x86)\IObit\Advanced SystemCare 5\PMonitor.exe [2012-0
3-06] (IObit)
Task: {BA12B1ED-C8C1-4B21-BEEB-E5A91EA28D51} - System32\Tasks\GoogleUpdateTaskUs
erS-1-5-21-3979288092-2238760495-555486621-1008UA => C:\Users\maison.souza\AppDa
ta\Local\Google\Update\GoogleUpdate.exe [2012-04-20] (Google Inc.)
Task: {D3FAF2A6-6609-41EA-BA77-5B22E0ACE39F} - System32\Tasks\{05639B7C-3885-4FC
3-BC0B-70873461DB57} => C:\Program Files (x86)\Valve\hl.exe
Task: {E0F81432-7E3A-49A1-8CDF-BF54B3D6D627} - System32\Tasks\GoogleUpdateTaskMa
chineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-10-03]
(Google Inc.)
Task: {EB7645E0-69BB-4E23-BB1C-BB598C924071} - System32\Tasks\Adobe Flash Player
Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [201
4-09-10] (Adobe Systems Incorporated)
Task: {F3CCCB18-9FCE-4F3D-A98E-7236DDB47065} - System32\Tasks\{351A40A3-BDB8-402
B-8D5C-87F0D544A2C7} => C:\Windows\system32\msiexec.exe [2010-11-20] (Microsoft
Corporation)
Task: {F7CDDA1A-B45C-42DA-9844-6B43C6B995C6} - System32\Tasks\MirageAgent => C:\
Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe [2010-09-03] (Cyb
erLink)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Mac
romed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3979288092-2238760495-5554
86621-1008Core.job => C:\Users\maison.souza\AppData\Local\Facebook\Update\Facebo
okUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3979288092-2238760495-5554
86621-1008UA.job => C:\Users\maison.souza\AppData\Local\Facebook\Update\Facebook
Update.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)
\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\G
oogle\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3979288092-2238760495-555486
621-1008Core.job => C:\Users\maison.souza\AppData\Local\Google\Update\GoogleUpda
te.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3979288092-2238760495-555486
621-1008UA.job => C:\Users\maison.souza\AppData\Local\Google\Update\GoogleUpdate
.exe
==================== Loaded Modules (whitelisted) =============

2012-02-14 09:10 - 2010-05-13 22:48 - 00192512 _____ () C:\Windows\System32\zlhp


1020.dll
2012-04-16 15:10 - 2009-11-20 13:43 - 00405504 _____ () C:\Windows\System32\HPM1
210LM.DLL
2012-06-20 16:32 - 2005-03-12 09:07 - 00087040 _____ () C:\Windows\System32\pdfm
onnt.dll
2011-07-22 08:43 - 2011-07-22 11:43 - 00034304 _____ () C:\Windows\System32\ssi4
mlm.dll
2012-02-14 09:11 - 2010-05-13 22:48 - 00065024 _____ () C:\Windows\system32\spoo
l\PRTPROCS\x64\pphp1020.dll
2012-04-16 15:13 - 2009-11-20 13:43 - 00074240 _____ () C:\Windows\system32\spoo
l\PRTPROCS\x64\HPM1210PP.dll
2012-08-29 11:12 - 2012-08-29 11:12 - 09717760 _____ () C:\Program Files\MySQL\M
ySQL Server 5.5\bin\mysqld.exe
2010-01-30 02:40 - 2010-01-30 02:40 - 04254560 _____ () C:\Program Files\Common
Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2010-07-15 01:44 - 2010-07-15 01:44 - 00020032 _____ () C:\Program Files\Unlocke
r\UnlockerCOM.dll
2012-05-29 10:46 - 2012-05-29 10:46 - 00931840 _____ () C:\Windows\assembly\GAC_
64\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll
2012-02-02 11:18 - 2010-03-15 10:28 - 00166400 _____ () C:\Program Files\WinRAR\
rarext.dll
2012-05-15 09:11 - 2011-11-10 22:43 - 00155480 _____ () C:\Program Files (x86)\I
Obit\Advanced SystemCare 5\ASCv5ExtMenu_64.dll
2012-05-15 09:11 - 2011-04-21 16:54 - 00347024 _____ () C:\Program Files (x86)\I
Obit\Advanced SystemCare 5\madExcept_.bpl
2012-05-15 09:11 - 2011-04-21 16:54 - 00179088 _____ () C:\Program Files (x86)\I
Obit\Advanced SystemCare 5\madBasic_.bpl
2012-05-15 09:11 - 2011-04-21 16:54 - 00046480 _____ () C:\Program Files (x86)\I
Obit\Advanced SystemCare 5\madDisAsm_.bpl
2014-10-20 08:51 - 2014-10-20 06:17 - 02887680 _____ () C:\Program Files\AVAST S
oftware\Avast\defs\14102000\algo.dll
2014-09-24 15:40 - 2014-07-09 12:01 - 01459712 _____ () C:\Program Files (x86)\C
ommon Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2014-09-24 15:40 - 2014-05-19 17:19 - 00137728 _____ () C:\Program Files (x86)\C
ommon Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2014-09-29 10:51 - 2014-09-29 10:52 - 03715184 _____ () C:\Program Files (x86)\M
ozilla Firefox\mozjs.dll
2010-01-30 02:41 - 2010-01-30 02:41 - 04254560 _____ () C:\Program Files (x86)\C
ommon Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-09-10 09:21 - 2014-09-10 09:21 - 16825520 _____ () C:\Windows\SysWOW64\Macr
omed\Flash\NPSWF32_15_0_0_152.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be
removed.)
AlternateDataStreams: C:\Windows\System32:F505788C_Bb.gbp
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Th
e "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\client32 => ""="Service"
==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None defa
ult entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
========================= Accounts: ==========================
Admin (S-1-5-21-3979288092-2238760495-555486621-1016 - Administrator - Enabled)
Administrador (S-1-5-21-3979288092-2238760495-555486621-500 - Administrator - Di
sabled)
Convidado (S-1-5-21-3979288092-2238760495-555486621-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-3979288092-2238760495-555486621-1014 - Limited - Enable
d)
Info (S-1-5-21-3979288092-2238760495-555486621-1012 - Administrator - Enabled) =
> C:\Users\Info
maison.souza (S-1-5-21-3979288092-2238760495-555486621-1008 - Administrator - En
abled) => C:\Users\maison.souza
suporte (S-1-5-21-3979288092-2238760495-555486621-1009 - Administrator - Enabled
) => C:\Users\suporte
==================== Faulty Device Manager Devices =============
Name: HUAWEI Mobile Connect - Bus Enumerate Device
Description: HUAWEI Mobile Connect - Bus Enumerate Device
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: HUAWEI Technologies CO.,LTD
Service: huawei_enumerator
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". T
his starts the Enable Device wizard. Follow the instructions.
Name: 802.11n Wireless LAN Card
Description: 802.11n Wireless LAN Card
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Ralink Technology, Corp.
Service: netr28x
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". T
his starts the Enable Device wizard. Follow the instructions.
Name: Buttons and OSDs ACPI driver gen2
Description: Buttons and OSDs ACPI driver gen2
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: ACPI
Service: ACPIService
Problem: : Windows cannot start this hardware device because its configuration i
nformation (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
This can occur when more than one service is defined for a device, if there is
a failure opening the service subkey, or if the driver name cannot be obtained f
rom the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the
troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable d
river.

==================== Event log errors: =========================


Application errors:
==================
Error: (10/20/2014 04:07:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:07:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:07:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107

) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:04:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:04:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
Error: (10/20/2014 04:04:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: Falha ao extrair lista raiz de terceiros do arquivo cab de atualizao
automtica de: <http://www.download.windowsupdate.com/msdownload/update/v3/static/
trustedr/en/authrootstl.cab> com erro: Um certificado necessrio no est no perodo de
validade ao ser verificado em relao hora atual do sistema ou ao carimbo de data/ho
ra no arquivo assinado.
.
System errors:
=============
Error: (10/20/2014 08:48:49 AM) (Source: DCOM) (EventID: 10016) (User: AUTORIDAD
E NT)
Description: Especfico do aplicativoLocalIniciar{C97FCC79-E628-407D-AE68-A06AD6D8
B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}AUTORIDADE NTSISTEMAS-1-5-18LocalHost
(Usando LRPC)
Error: (10/20/2014 08:46:52 AM) (Source: Service Control Manager) (EventID: 7000
) (User: )
Description: No foi possvel iniciar o servio CDROM_Detect devido ao seguinte erro:
%%2
Microsoft Office Sessions:
=========================
Error: (10/20/2014 04:07:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:07:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107

) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:07:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:06:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:04:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:04:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo
assinado.
Error: (10/20/2014 04:04:32 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107
) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/t
rustedr/en/authrootstl.cabUm certificado necessrio no est no perodo de validade ao s
er verificado em relao hora atual do sistema ou ao carimbo de data/hora no arquivo

assinado.
CodeIntegrity Errors:
===================================
Date: 2014-08-20 11:44:23.617
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on
the system. A recent hardware or software change might have installed a file tha
t is signed incorrectly or damaged, or that might be malicious software from an
unknown source.
Date: 2014-08-20 11:44:23.555
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on
the system. A recent hardware or software change might have installed a file tha
t is signed incorrectly or damaged, or that might be malicious software from an
unknown source.
Date: 2014-08-20 11:44:23.492
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on
the system. A recent hardware or software change might have installed a file tha
t is signed incorrectly or damaged, or that might be malicious software from an
unknown source.
Date: 2014-08-20 11:44:23.430
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on
the system. A recent hardware or software change might have installed a file tha
t is signed incorrectly or damaged, or that might be malicious software from an
unknown source.
Date: 2014-04-09 12:52:10.494
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\Windows\SysWOW64\rserver30\raddrvv3.sys because file hash cou
ld not be found on the system. A recent hardware or software change might have i
nstalled a file that is signed incorrectly or damaged, or that might be maliciou
s software from an unknown source.
Date: 2014-04-09 12:52:10.416
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\Windows\SysWOW64\rserver30\raddrvv3.sys because file hash cou
ld not be found on the system. A recent hardware or software change might have i
nstalled a file that is signed incorrectly or damaged, or that might be maliciou
s software from an unknown source.
Date: 2013-08-19 15:36:08.465
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on
the system. A recent hardware or software change might have installed a file tha
t is signed incorrectly or damaged, or that might be malicious software from an
unknown source.
Date: 2013-08-19 15:36:08.434
Description: Windows is unable to verify the image integrity of the file \Devi
ce\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on
the system. A recent hardware or software change might have installed a file tha
t is signed incorrectly or damaged, or that might be malicious software from an
unknown source.

Vous aimerez peut-être aussi