123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508
Additional scan result of Farbar Recovery Scan Tool (x64) Version:06-09-2015 01
Ran by Américo (2015-09-07 13:07:43)
Running from C:\Users\Américo\Downloads
Windows 8.1 (X64) (2015-09-01 03:57:36)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrador (S-1-5-21-3592306595-23714473-1056629956-500 - Administrator - Disabled)
Américo (S-1-5-21-3592306595-23714473-1056629956-1001 - Administrator - Enabled) => C:\Users\Américo
Convidado (S-1-5-21-3592306595-23714473-1056629956-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3592306595-23714473-1056629956-1003 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 4.8.1245.73583 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 4.8.1245.73583 - Alcor Micro Corp.) Hidden
Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden
Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros)
AutoHotkey 1.1.22.04 (HKLM\...\AutoHotkey) (Version: 1.1.22.04 - Lexikos)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Camtasia Studio 8 (HKLM-x32\...\{A2A41B60-D51F-4C04-BC94-B4C94F7B6DC0}) (Version: 8.6.0.2054 - TechSmith Corporation)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
DTS Sound (HKLM-x32\...\{2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4}) (Version: 1.01.2700 - DTS, Inc.)
Empress of the Deep - The Darkest Secret (x32 Version: 2.2.0.98 - WildTangent) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.85 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.13 - Google Inc.) Hidden
Gyazo 3.1.6 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.)
IDT Audio Driver (HKLM\...\{588A747E-CFF6-46B3-9207-CD754F9473AF}) (Version: 6.10.6491.0 - IDT)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3282 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Island Tribe (x32 Version: 2.2.0.98 - WildTangent) Hidden
Java 8 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218060F0}) (Version: 8.0.600.27 - Oracle Corporation)
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Memory Cleaner 2.00 (HKLM-x32\...\MemClean) (Version: 2.00 - KoshyJohn.com)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Preview Redistributable (x64) - 12.0.20617 (HKLM-x32\...\{448652c1-f5f3-4230-98c6-68c10c88b1fb}) (Version: 12.0.20617.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617 (HKLM-x32\...\{1f407217-9aec-4146-8504-e64ac959c534}) (Version: 12.0.20617.1 - Microsoft Corporation)
Mozilla Firefox 40.0.3 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 40.0.3 (x86 en-US)) (Version: 40.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.3 - Mozilla)
Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.300 - Qualcomm Atheros)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.)
Sandboxie 5.01.13 (64-bit) (HKLM\...\Sandboxie) (Version: 5.01.13 - Sandboxie Holdings, LLC)
ShareX (HKLM\...\82E6AC09-0FEF-4390-AD9F-0DD3F5561EFC_is1) (Version: 10.2.0 - ShareX Team)
Skype™ 7.8 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.5.1333.g822e0de8 - Spotify AB)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.10.51 - Synaptics Incorporated)
TOSHIBA Addendum (HKLM-x32\...\{CE0374A6-B204-4336-8293-63FBB1DADBF4}) (Version: 1.00 - TOSHIBA)
TOSHIBA Desktop Assist (HKLM\...\{95CCACF0-010D-45F0-82BF-858643D8BC02}) (Version: 1.02.01.6407 - Toshiba Corporation)
TOSHIBA Display Utility (HKLM\...\{84FA4D2D-4273-4C66-BD3D-ADD3FE48DFA2}) (Version: 1.1.5.0 - Toshiba Corporation)
TOSHIBA eco Utility (HKLM\...\{5944B9D4-3C2A-48DE-931E-26B31714A2F7}) (Version: 2.2.0.6404 - Toshiba Corporation)
TOSHIBA Function Key (HKLM\...\{16562A90-71BC-41A0-B890-D91B0C267120}) (Version: 1.1.0001.6403 - Toshiba Corporation)
TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.10 - TOSHIBA)
TOSHIBA Password Utility (HKLM-x32\...\InstallShield_{78931270-BC9E-441A-A52B-73ECD4ACFAB5}) (Version: 3.00.344 - Toshiba Corporation)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.9.09.6400 - Toshiba Corporation)
TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.1.02.55065006 - Toshiba Corporation)
TOSHIBA Service Station (HKLM\...\{FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413}) (Version: 2.6.8 - Toshiba Corporation)
TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0030 - Toshiba Corporation)
TOSHIBA System Settings (HKLM-x32\...\{05A55927-DB9B-4E26-BA44-828EBFF829F0}) (Version: 1.1.2.32001 - Toshiba Corporation)
Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.5.0 - Toshiba Europe GmbH)
TOSHIBA VIDEO PLAYER (HKLM\...\{FF07604E-C860-40E9-A230-E37FA41F103A}) (Version: 5.3.27.102 - Toshiba Corporation)
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent)
WildTangent Games App (Toshiba Games) (x32 Version: 4.0.9.7 - WildTangent) Hidden
WinRAR 5.30 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.3 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
07-09-2015 12:15:24 AA11
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 06:25 - 2013-08-22 06:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {039C440C-F2BD-4EAB-828B-24BA7DBCB350} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-07-28] (Microsoft Corporation)
Task: {0C795FCB-1EAB-4B76-8ADB-EFC936AA5AE0} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2015-08-19] ()
Task: {4605B971-5B0F-4078-8ED1-0E603E5D284E} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2013-07-18] (Toshiba Europe GmbH)
Task: {5D86D8C7-92B6-46E5-8C05-D09DC9414630} - System32\Tasks\TOSHIBA\Service Station => C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [2013-07-31] (TOSHIBA Corporation)
Task: {78916602-35A2-442E-A0C3-5AB2B0FD432B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {9C6234AE-D1B1-44C1-B4C5-DF60E398B0B0} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-09-07] (AVAST Software)
Task: {C7FF7F87-BB1A-4F56-959D-1066B31F908B} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2015-08-19] ()
Task: {D748DF9F-7E33-4919-BD4C-4377CB611988} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {FEE81BF9-5E30-4E75-A312-4250281CE4B3} - System32\Tasks\Resolution+ Setting Task => C:\Program Files\Toshiba\TOSHIBA Smart View Utility\Plugins\ResolutionPlus\TosRegPermissionChg.exe [2013-08-28] (TODO: <Company name>)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (Whitelisted) ==============
2013-03-27 12:53 - 2013-03-27 12:53 - 00163168 _____ () C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe
2013-09-10 12:54 - 2013-09-10 12:54 - 00019792 _____ () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
2013-09-16 14:59 - 2013-08-12 10:52 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-07-18 18:38 - 2012-07-18 18:38 - 00020904 _____ () C:\Program Files\TOSHIBA\Hotkey\SmoothView.dll
2013-08-22 00:19 - 2013-08-21 23:54 - 00174592 _____ () C:\WINDOWS\system32\WinMetadata\Windows.UI.winmd
2013-08-22 00:19 - 2013-08-21 23:54 - 00050176 _____ () C:\WINDOWS\system32\WinMetadata\Windows.Data.winmd
2013-08-22 00:19 - 2013-08-21 23:54 - 00030208 _____ () C:\WINDOWS\system32\WinMetadata\Windows.Foundation.winmd
2015-09-01 17:50 - 2014-05-23 18:51 - 00260096 _____ () C:\Program Files\ShareX\ImageListView.dll
2015-08-31 22:29 - 2015-08-18 20:14 - 01320960 _____ () C:\Program Files\AutoHotkey\AutoHotkey.exe
2013-10-07 17:44 - 2013-09-03 16:52 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-09-03 19:17 - 2015-08-27 17:17 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\libglesv2.dll
2015-09-03 19:17 - 2015-08-27 17:17 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\libegl.dll
2015-09-07 12:04 - 2015-09-07 12:04 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-09-07 12:04 - 2015-09-07 12:04 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-09-07 12:04 - 2015-09-07 12:04 - 02964480 _____ () C:\Program Files\AVAST Software\Avast\defs\15090700\algo.dll
2015-09-07 12:04 - 2015-09-07 12:04 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-09-03 19:17 - 2015-08-27 17:17 - 16393032 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Américo\SkyDrive:ms-properties
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3592306595-23714473-1056629956-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Américo\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\hlmwdmu.jpg
HKU\S-1-5-21-3592306595-23714473-1056629956-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Américo\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\hlmwdmu.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{2282E0D8-85D2-4BAA-81B5-81F313D7D201}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{63BFCFE1-28C5-4F3B-822C-9AED89F2B033}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{2832B372-A1FD-4E98-A402-3D90CF74397B}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{56CFC51A-6184-423D-BC1F-3F225BF970E9}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{64F2338B-B60B-46F0-8202-B86439492BB7}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{10D1718B-4112-4C40-86F0-4DAEF982D9EC}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [TCP Query User{632B53E8-EF13-457C-879E-21E349FACAED}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{A64CE6BB-1A52-4CC0-A102-82CC09472228}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{A224FA5F-B238-4192-BA1E-614AB881E2AA}] => (Block) LPort=32535
FirewallRules: [{BE110FBD-5AE9-4E92-BD03-5A5B95431024}] => (Block) LPort=32535
FirewallRules: [{FD82D4FC-A11B-45D3-93E6-F696F2C03626}] => (Block) LPort=40031
FirewallRules: [{C4B1ED0F-40F0-43B7-A8F9-FE1EA398264C}] => (Block) LPort=40031
FirewallRules: [{20ADA233-B9ED-43C5-B395-B212AA6CFCAE}] => (Block) LPort=32535
FirewallRules: [{4542E4E4-05E6-4CE2-A8AB-F21EE9245E03}] => (Block) LPort=32535
FirewallRules: [{F86EC6B0-1566-4CF1-977F-509D3B563020}] => (Block) LPort=40031
FirewallRules: [{364D24C3-401D-47E8-BB73-31DC5C9B40CF}] => (Block) LPort=40031
FirewallRules: [{70C4C4D2-1FBD-476A-89E8-9B1E2664F667}] => (Block) LPort=32535
FirewallRules: [{9233ED76-FD90-4E0B-9FC0-CEB8E642B31B}] => (Block) LPort=32535
FirewallRules: [{22E59617-C694-43D4-A770-6625EA4FAD46}] => (Block) LPort=40031
FirewallRules: [{C00E6999-C7CF-42B0-A474-10F9A1874029}] => (Block) LPort=40031
FirewallRules: [{919391E2-403B-4576-9750-0FA60DFCB881}] => (Block) LPort=32535
FirewallRules: [{CE53B40D-1515-44C6-9743-A1EA343D3FDE}] => (Block) LPort=32535
FirewallRules: [{DF36994E-01C7-4C7E-8833-9F947123C277}] => (Block) LPort=40031
FirewallRules: [{1BE7E46F-7589-4A64-B5EB-0E0F07E2EF44}] => (Block) LPort=40031
FirewallRules: [{49EAD6BB-3303-4AAB-883F-C8A8C9750235}] => (Allow) LPort=8317
FirewallRules: [{9D49646D-E442-4108-9923-3D14B7CB628E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{0EA3ABF0-CF66-4B48-B31E-57EF80CABA1D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8C265071-7D2E-4BD0-B43A-0071E7C907CD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{D8F71FAD-1BE8-4DC4-8C77-E33E6BA867DE}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{402C69C3-A700-452B-BB86-22AAB9CDCF11}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
==================== Faulty Device Manager Devices =============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Qualcomm Atheros AR956x Wireless Network Adapter
Description: Qualcomm Atheros AR956x Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/07/2015 12:49:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa LiveComm.exe versão 17.5.9600.20911 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.
ID do Processo: 1e54
Hora de Início: 01d0e9a589a31885
Hora de Cessação: 4294967295
Caminho da Aplicação: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe
ID do Relatório: 7e90672c-5599-11e5-8260-a4db30363d6a
Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe
ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1
Error: (09/06/2015 08:23:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa LiveComm.exe versão 17.5.9600.20911 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.
ID do Processo: 1bf8
Hora de Início: 01d0e9171450bc5c
Hora de Cessação: 4294967295
Caminho da Aplicação: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe
ID do Relatório: 0585e535-550b-11e5-8260-a4db30363d6a
Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe
ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1
Error: (09/06/2015 02:29:00 AM) (Source: Microsoft-Windows-Spell-Checking) (EventID: 31) (User: CODEQ)
Description: Falha ao atualizar a lista de palavras personalizada do utilizador 1: -2147024864. A verificação ortográfica permanecerá disponível, mas a lista de palavras deste utilizador não será atualizada.
Error: (09/05/2015 03:38:07 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Falha ao gerar o contexto de ativação para "45.0.2454.85,language="*",type="win32",version="45.0.2454.85"1".
Não foi possível localizar a Assemblagem Dependente 45.0.2454.85,language="*",type="win32",version="45.0.2454.85".
Utilize sxstrace.exe para obter um diagnóstico detalhado.
Error: (09/05/2015 03:12:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome da aplicação com falha: CamRecorder.exe, versão: 8.6.0.2054, carimbo de data/hora: 0x55d3d8dc
Nome do módulo com falha: CamRecorder.exe, versão: 8.6.0.2054, carimbo de data/hora: 0x55d3d8dc
Código de exceção: 0xc0000005
Desvio de falha: 0x0010662c
ID do processo com falha: 0x1188
Hora de início da aplicação com falha: 0xCamRecorder.exe0
Caminho da aplicação com falha: CamRecorder.exe1
Caminho do módulo com falha: CamRecorder.exe2
ID do Relatório: CamRecorder.exe3
Nome completo do pacote com falha: CamRecorder.exe4
ID da aplicação relativa ao pacote com falha: CamRecorder.exe5
Error: (09/05/2015 03:12:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nome da aplicação com falha: CamRecorder.exe, versão: 8.6.0.2054, carimbo de data/hora: 0x55d3d8dc
Nome do módulo com falha: CamRecorder.exe, versão: 8.6.0.2054, carimbo de data/hora: 0x55d3d8dc
Código de exceção: 0xc0000005
Desvio de falha: 0x0010662c
ID do processo com falha: 0x1014
Hora de início da aplicação com falha: 0xCamRecorder.exe0
Caminho da aplicação com falha: CamRecorder.exe1
Caminho do módulo com falha: CamRecorder.exe2
ID do Relatório: CamRecorder.exe3
Nome completo do pacote com falha: CamRecorder.exe4
ID da aplicação relativa ao pacote com falha: CamRecorder.exe5
Error: (09/05/2015 01:56:52 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa LiveComm.exe versão 17.5.9600.20911 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.
ID do Processo: 1aa4
Hora de Início: 01d0e7b8183fa858
Hora de Cessação: 4294967295
Caminho da Aplicação: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe
ID do Relatório: 0be4eb9e-53ac-11e5-825d-a4db30363d6a
Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe
ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1
Error: (09/05/2015 01:55:12 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa LiveComm.exe versão 17.5.9600.20911 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.
ID do Processo: eb4
Hora de Início: 01d0e7b6c2439deb
Hora de Cessação: 4294967295
Caminho da Aplicação: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe
ID do Relatório: b83abc96-53aa-11e5-825d-a4db30363d6a
Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe
ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1
Error: (09/03/2015 11:15:16 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Falha nos Serviços de Criptografia ao processar a chamada OnIdentity() no Objeto Escritor de Sistema.
Details:
AddWin32ServiceFiles: Unable to back up image of service McAfee Home Network since QueryServiceConfig API failed
System Error:
O sistema não conseguiu localizar o ficheiro especificado.
.
Error: (09/03/2015 11:15:16 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Falha nos Serviços de Criptografia ao processar a chamada OnIdentity() no Objeto Escritor de Sistema.
Details:
AddLegacyDriverFiles: Unable to back up image of binary McAfee Inc. mfencbdc.
System Error:
O sistema não conseguiu localizar o ficheiro especificado.
.
System errors:
=============
Error: (09/07/2015 01:05:35 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Foi recebido um alerta fatal a partir do ponto final remoto. O código de alerta fatal definido pelo protocolo TLS é 40.
Error: (09/07/2015 10:19:40 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: específico/a(s) da aplicaçãoLocalAtivação{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Com LRPC)IndisponívelIndisponível
Error: (09/05/2015 10:51:39 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: O serviço Intel(R) Dynamic Application Loader Host Interface Service desligou-se ao iniciar.
Error: (09/05/2015 10:48:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: O serviço Serviço Google Update (gupdate) falhou o arranque devido ao seguinte erro:
%%1053
Error: (09/05/2015 10:48:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Foi atingido o tempo limite (30000 milissegundos) ao aguardar pela ligação do serviço Serviço Google Update (gupdate).
Error: (09/05/2015 10:43:28 PM) (Source: Microsoft-Windows-HAL) (EventID: 13) (User: NT AUTHORITY)
Description: O temporizador watchdog do sistema foi acionado.
Error: (09/05/2015 10:44:01 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: O anterior encerramento do sistema, 05/09/2015 às 22:23:30, foi inesperado.
Error: (09/05/2015 06:26:00 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {752073A1-23F2-4396-85F0-8FDB879ED0ED}
Error: (09/05/2015 03:35:45 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Falha na instalação: O Windows falhou a instalação da seguinte atualização com o erro 0x80246007: Actualização para Windows 8.1 para Sistemas baseados em x64 (KB2990967).
Error: (09/05/2015 03:35:44 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Falha na instalação: O Windows falhou a instalação da seguinte atualização com o erro 0x80246007: Actualização para Windows 8.1 para Sistemas baseados em x64 (KB3063843).
Microsoft Office:
=========================
Error: (09/07/2015 12:49:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: LiveComm.exe17.5.9600.209111e5401d0e9a589a318854294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe7e90672c-5599-11e5-8260-a4db30363d6amicrosoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1
Error: (09/06/2015 08:23:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: LiveComm.exe17.5.9600.209111bf801d0e9171450bc5c4294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe0585e535-550b-11e5-8260-a4db30363d6amicrosoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1
Error: (09/06/2015 02:29:00 AM) (Source: Microsoft-Windows-Spell-Checking) (EventID: 31) (User: CODEQ)
Description: 1-2147024864
Error: (09/05/2015 03:38:07 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: 45.0.2454.85,language="*",type="win32",version="45.0.2454.85"C:\Sandbox\Américo\DefaultBox\drive\C\Program Files (x86)\Google\Chrome\Application\chrome.exe
Error: (09/05/2015 03:12:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: CamRecorder.exe8.6.0.205455d3d8dcCamRecorder.exe8.6.0.205455d3d8dcc00000050010662c118801d0e7c35bfc2187C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamRecorder.exeC:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamRecorder.exea6d7ee9d-53b6-11e5-825d-a4db30363d6a
Error: (09/05/2015 03:12:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: CamRecorder.exe8.6.0.205455d3d8dcCamRecorder.exe8.6.0.205455d3d8dcc00000050010662c101401d0e7c360ace400C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamRecorder.exeC:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamRecorder.exea0b67ea2-53b6-11e5-825d-a4db30363d6a
Error: (09/05/2015 01:56:52 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: LiveComm.exe17.5.9600.209111aa401d0e7b8183fa8584294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe0be4eb9e-53ac-11e5-825d-a4db30363d6amicrosoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1
Error: (09/05/2015 01:55:12 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: LiveComm.exe17.5.9600.20911eb401d0e7b6c2439deb4294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exeb83abc96-53aa-11e5-825d-a4db30363d6amicrosoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1
Error: (09/03/2015 11:15:16 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Details:
AddWin32ServiceFiles: Unable to back up image of service McAfee Home Network since QueryServiceConfig API failed
System Error:
O sistema não conseguiu localizar o ficheiro especificado.
Error: (09/03/2015 11:15:16 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Details:
AddLegacyDriverFiles: Unable to back up image of binary McAfee Inc. mfencbdc.
System Error:
O sistema não conseguiu localizar o ficheiro especificado.
==================== Memory info ===========================
Processor: Intel(R) Celeron(R) CPU 1005M @ 1.90GHz
Percentage of memory in use: 71%
Total physical RAM: 3971.27 MB
Available physical RAM: 1124.01 MB
Total Virtual: 7802.76 MB
Available Virtual: 2604.39 MB
==================== Drives ================================
Drive c: (TI31214900A) (Fixed) (Total:232.12 GB) (Free:194.49 GB) NTFS
Drive e: (Backup's) (Fixed) (Total:221.58 GB) (Free:221.46 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================