Resultado da análise adicional Farbar Recovery Scan Tool (x64) Versão: 26-11-2022 Executado por Johnny (02-12-2022 13:16:14) Executando a partir de C:\Users\Johnny\Desktop Microsoft Windows 10 Pro Versão 21H2 19044.2251 (X64) (2022-01-04 02:38:40) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= (Se uma entrada for incluída na fixlist, será removida.) Administrador (S-1-5-21-797953015-612477736-2167638035-500 - Administrator - Disabled) Convidado (S-1-5-21-797953015-612477736-2167638035-501 - Limited - Disabled) DefaultAccount (S-1-5-21-797953015-612477736-2167638035-503 - Limited - Disabled) Johnny (S-1-5-21-797953015-612477736-2167638035-1001 - Administrator - Enabled) => C:\Users\Johnny João (S-1-5-21-797953015-612477736-2167638035-1002 - Administrator - Enabled) => C:\Users\João WDAGUtilityAccount (S-1-5-21-797953015-612477736-2167638035-504 - Limited - Disabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1046-1033-7760-BC15014EA700}) (Version: 22.003.20282 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601032}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden AlecaFrame (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Overwolf_afmcagbpgggkpdkokjhjkllpegnadmkignlonpjm) (Version: 2.1.10 - Overwolf app) Apex Legends Tracker (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Overwolf_eobgllocdoafbamifhbngdafgpcognhcpkjlokak) (Version: 1.7.3 - Overwolf app) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.) Cheat Engine 7.4 (HKLM\...\Cheat Engine_is1) (Version: - Cheat Engine) CPUID CPU-Z 2.01 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.01 - CPUID, Inc.) CPUID CPU-Z Gigabyte 1.99 (HKLM\...\CPUID CPU-Z Gigabyte_is1) (Version: 1.99 - CPUID, Inc.) CPUID HWMonitor 1.45 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.45 - CPUID, Inc.) Discord (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Discord) (Version: 1.0.9006 - Discord Inc.) Discord (HKU\S-1-5-21-797953015-612477736-2167638035-1002\...\Discord) (Version: 1.0.9004 - Discord Inc.) EmuSAK (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\emusak_ui) (Version: 2.0.0 - CapitaineJSparrow) Epic Games Launcher (HKLM-x32\...\{ECDCFB08-3C8E-4072-93C1-7A3EFDFCF4F9}) (Version: 1.3.0.0 - Epic Games, Inc.) Epic Online Services (HKLM-x32\...\{32C68D93-D32F-4B01-8250-61642BFC22F8}) (Version: 2.0.28.0 - Epic Games, Inc.) Gameloop (HKLM-x32\...\MobileGamePC) (Version: 1.0.0.1 - Tencent Technology Company) G-Loot (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Overwolf_ilhhbpdpcedbknejiojcocmkjjmbigfbajehlipi) (Version: 6.0.41 - Overwolf app) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 107.0.5304.123 - Google LLC) Intel(R) Extreme Tuning Utility (HKLM-x32\...\{58e22092-9c75-4f73-98fb-1a9b42302540}) (Version: 7.8.1.20 - Intel Corporation) IObit Uninstaller 11 (HKLM-x32\...\IObitUninstall) (Version: 11.5.0.3 - IObit) Keys2XInput (HKLM\...\{4CBF2284-A97D-493C-8B8E-DDCD4EA192AB}) (Version: 2.2.2 - Jeb2Six) Hidden Keys2XInput Installation (HKLM-x32\...\{31a0f1b4-902b-45b1-9ed6-69e25fa6a821}) (Version: 2.2.2 - Jeb2Six) Killer Voices (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Overwolf_jimnpnpoafabdefjjcnkbklckimamlmfdngpbhea) (Version: 3.1.84 - Overwolf app) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.) McAfee Security Scan Plus (HKLM-x32\...\McAfee Security Scan) (Version: 4.1.213.1 - McAfee, LLC) Microsoft .NET Host - 6.0.11 (x64) (HKLM\...\{B92B890A-04F2-4880-BA20-20D4364FB263}) (Version: 48.47.50420 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.11 (x64) (HKLM\...\{5E63E49B-C88C-46C5-855C-A7B07C11CDC8}) (Version: 48.47.50420 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.11 (x64) (HKLM\...\{C3DD1448-513A-4DB8-978D-6991562EA63D}) (Version: 48.47.50420 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.11 (x64) (HKLM-x32\...\{08c3379c-d122-42a4-917e-b3dc470fbcb3}) (Version: 6.0.11.31823 - Microsoft Corporation) Microsoft 365 Apps para Grandes Empresas - pt-br (HKLM\...\O365ProPlusRetail - pt-br) (Version: 16.0.14332.20416 - Microsoft Corporation) Microsoft Office LTSC Professional Plus 2021 - pt-br (HKLM\...\ProPlus2021Volume - pt-br) (Version: 16.0.14332.20416 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 22.227.1030.0001 - Microsoft Corporation) Microsoft Project Professional 2021 - pt-br (HKLM\...\ProjectPro2021Volume - pt-br) (Version: 16.0.14332.20416 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation) Microsoft Visio LTSC Professional 2021 - pt-br (HKLM\...\VisioPro2021Volume - pt-br) (Version: 16.0.14332.20416 - Microsoft Corporation) Microsoft Visual Basic/C++ Runtime (x86) (HKLM-x32\...\{C5E3A69D-D391-45A6-A8FB-00B01E2B010D}) (Version: 1.1.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61135 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61135 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61135 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61135 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 (HKLM-x32\...\{3746f21b-c990-4045-bb33-1cf98cff7a68}) (Version: 14.32.31332.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 (HKLM-x32\...\{a98dc6ff-d360-4878-9f0a-915eba86eaf3}) (Version: 14.32.31332.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\...\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\...\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 (HKLM-x32\...\{8972AC25-452E-4FFE-945A-EB9E28C20322}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 (HKLM-x32\...\{AEAA18F7-9C96-4A43-BC07-8B88A4913EEB}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.11 (x64) (HKLM\...\{A39D4115-3A27-4245-AE92-3214B8B21932}) (Version: 48.47.50419 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.11 (x64) (HKLM-x32\...\{c4846f79-a633-4ae4-92a3-92fdbeb33da2}) (Version: 6.0.11.31823 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MSI Kombustor 4.1.15.0 (64-bit) (HKLM\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D) Nefarius Virtual Gamepad Emulation Bus Driver (HKLM\...\{93D91F60-7C94-4A79-863F-EA713D2EB3F3}) (Version: 1.17.333.0 - Nefarius Software Solutions e.U.) NVIDIA Canvas 1.1.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Canvas) (Version: 1.1.14 - NVIDIA Corporation) NVIDIA Driver de áudio HD 1.3.39.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.16 - NVIDIA Corporation) NVIDIA Driver de gráficos 526.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 526.98 - NVIDIA Corporation) NVIDIA FrameView SDK 1.3.8107.31782123 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8107.31782123 - NVIDIA Corporation) NVIDIA GeForce Experience 3.26.0.154 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.26.0.154 - NVIDIA Corporation) NVIDIA Software do sistema PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation) NVIDIA USBC Driver 1.50.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.50.831.832 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20416 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20416 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0416-1000-0000000FF1CE}) (Version: 16.0.14332.20375 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera GX Stable 88.0.4412.75 (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Opera GX 88.0.4412.75) (Version: 88.0.4412.75 - Opera Software) Opera GX Stable 88.0.4412.75 (HKU\S-1-5-21-797953015-612477736-2167638035-1002\...\Opera GX 88.0.4412.75) (Version: 88.0.4412.75 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 10.5.116.52126 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.204.0.1 - Overwolf Ltd.) ParkControl (HKLM-x32\...\ParkControl) (Version: 2.0.0.22 - Bitsum) PureEldenRing (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Overwolf_cpognjgndmoncijooiacnhjifdgeffdpcmkbhhae) (Version: 1.2.1 - Overwolf app) Python 3.8.8 (64-bit) (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\{ef6306ce-2a12-4d59-887e-ebf00b9e4ab5}) (Version: 3.8.8150.0 - Python Software Foundation) Python 3.8.8 Add to Path (64-bit) (HKLM\...\{FA2F55FF-283B-4F28-BBB8-000F4EBF0836}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Core Interpreter (64-bit) (HKLM\...\{9F4C7FA1-6EBC-4148-AFA5-46732F23D8A3}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Development Libraries (64-bit) (HKLM\...\{54D532CF-48EC-4D35-BEB4-FF7379D4DEDE}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Documentation (64-bit) (HKLM\...\{587B63A8-B810-4B37-AE71-C21CC57AB496}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Executables (64-bit) (HKLM\...\{EEE0D56F-6163-4D51-A174-E219A0D34A2C}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 pip Bootstrap (64-bit) (HKLM\...\{648F3996-8541-4F8C-81A2-BCD4EAB54C5A}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Standard Library (64-bit) (HKLM\...\{4306EC0C-24E8-48F7-9CF0-0410D283D691}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Tcl/Tk Support (64-bit) (HKLM\...\{90107CBA-5485-4E2E-8A40-6C9F73D4B24B}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Test Suite (64-bit) (HKLM\...\{722AB357-E8E0-4090-8BDB-C02BEF288699}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python 3.8.8 Utility Scripts (64-bit) (HKLM\...\{BDF99227-35A8-4E94-91BA-91F6A90F4611}) (Version: 3.8.8150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{3B53E5B7-CFC4-401C-80E9-FF7591C58741}) (Version: 3.8.7354.0 - Python Software Foundation) Quick CPU x64 (HKLM\...\{B1E6D892-9032-4A13-8776-CE21FC573357}) (Version: 4.2.1.0 - CoderBag) r2modman 3.1.31 (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\ac231ef6-6414-5f8d-b36f-3b57705721dd) (Version: 3.1.31 - ebkr) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9205.1 - Realtek Semiconductor Corp.) Resso (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\Resso) (Version: 0.14.1.13390 - Moon Video Inc.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.3.7 - Rockstar Games) Special K (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\{F4A43527-9457-424A-90A6-17CF02ACF677}_is1) (Version: 22.7.19 - The Special K Group) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Streamlabs Desktop 1.6.4 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 1.6.4 - General Workings, Inc.) Sublime Text (HKLM\...\Sublime Text_is1) (Version: - Sublime HQ Pty Ltd) UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden Verificação de integridade do PC Windows (HKLM\...\{2403B2D2-1FDC-497D-B181-F53D079FEAAA}) (Version: 3.6.2204.08001 - Microsoft Corporation) Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.6.14 - Black Tree Gaming Ltd.) wooting-double-movement 1.4.1 (HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\668853ee-8164-5171-bf79-9dbeba964b50) (Version: 1.4.1 - Wooting Technologies B.V.) Packages: ========= NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.963.0_x64__56jybvy8sckqj [2022-11-16] (NVIDIA Corp.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.1.137.0_x64__dt26b99r8h8gj [2022-07-11] (Realtek Semiconductor Corp) ==================== Análise Personalizada CLSID (Whitelisted): ============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-797953015-612477736-2167638035-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-797953015-612477736-2167638035-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-797953015-612477736-2167638035-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-797953015-612477736-2167638035-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-797953015-612477736-2167638035-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-797953015-612477736-2167638035-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [IObitUninstaller] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2021-12-14] (IObit CO., LTD -> IObit) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Arquivos e Downloads\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Arquivos e Downloads\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [IObitUninstaller] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2021-12-14] (IObit CO., LTD -> IObit) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.227.1030.0001\FileSyncShell64.dll [2022-11-29] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_009debfbd2e1619b\nvshext.dll [2022-11-15] (Nvidia Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [IObitUninstaller] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2021-12-14] (IObit CO., LTD -> IObit) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Arquivos e Downloads\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Arquivos e Downloads\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Whitelisted) ==================== ==================== Atalhos & WMI ======================== ==================== Módulos Carregados (Whitelisted) ============= 2022-11-17 16:16 - 2022-11-10 03:19 - 134859776 _____ () [Arquivo não assinado] D:\Steam\bin\cef\cef.win7x64\libcef.dll 2022-11-17 16:16 - 2022-11-07 07:17 - 000387072 _____ () [Arquivo não assinado] D:\Steam\bin\cef\cef.win7x64\libegl.dll 2022-11-17 16:16 - 2022-11-07 07:17 - 008052736 _____ () [Arquivo não assinado] D:\Steam\bin\cef\cef.win7x64\libglesv2.dll 2022-11-17 16:16 - 2022-11-07 07:17 - 000992256 _____ (The Chromium Authors) [Arquivo não assinado] D:\Steam\bin\cef\cef.win7x64\chrome_elf.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Arquivo não assinado] D:\Origin\LIBEAY32.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Arquivo não assinado] D:\Origin\ssleay32.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 001611264 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\platforms\qwindows.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 005487104 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\Qt5Core.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 005841920 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\Qt5Gui.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 001179136 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\Qt5Network.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 000146432 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\Qt5WebSockets.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 005089792 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\Qt5Widgets.dll 2022-11-14 16:49 - 2022-01-04 03:19 - 000184832 _____ (The Qt Company Ltd) [Arquivo não assinado] D:\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Whitelisted) ======== (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\WINDOWS\System32:tdsrinu.gfc [5882] AlternateDataStreams: C:\Users\Johnny\Dados de Aplicativos:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\Johnny\Dados de Aplicativos:a8f96ed9f548b3497db5ddd233a8b439 [394] AlternateDataStreams: C:\Users\Johnny\Dados de Aplicativos:d988fd1ce0beed92b2bcb751f85f2bf5 [394] AlternateDataStreams: C:\Users\Johnny\Dados de Aplicativos:eb92b835a834003ac00ee2632de0e925 [394] AlternateDataStreams: C:\Users\Johnny\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\Johnny\AppData\Roaming:a8f96ed9f548b3497db5ddd233a8b439 [394] AlternateDataStreams: C:\Users\Johnny\AppData\Roaming:d988fd1ce0beed92b2bcb751f85f2bf5 [394] AlternateDataStreams: C:\Users\Johnny\AppData\Roaming:eb92b835a834003ac00ee2632de0e925 [394] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [6320] ==================== Modo de Segurança (Whitelisted) ================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Associação (Whitelisted) ================= ==================== Internet Explorer (Whitelisted) ========== BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2020-01-31] (IObit Information Technology -> IObit) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-09-25] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Conteúdo: ========================= (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2022-01-03 23:25 - 2022-05-30 21:54 - 000002586 _____ C:\WINDOWS\system32\drivers\etc\hosts 109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site 109.94.209.70 fitgirlrepacks.in # Fake FitGirl site 109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site 109.94.209.70 fitgirlrepacks.co # Fake FitGirl site 109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site 109.94.209.70 fitgirl-repacks.to # Fake FitGirl site 109.94.209.70 fitgirl-repack.com # Fake FitGirl site 109.94.209.70 fitgirl-repacks.website # Fake FitGirl site 109.94.209.70 fitgirlrepack.games # Fake FitGirl site 109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site 109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site 109.94.209.70 www.fitgirl-repacks.to # Fake FitGirl site 109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site 109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site 109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site 109.94.209.70 www.fitgirlrepack.games # Fake FitGirl site 109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site 109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site 109.94.209.70 fitgirl-repack.net # Fake FitGirl site 109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site 109.94.209.70 fitgirlpack.site # Fake FitGirl site 109.94.209.70 www.fitgirlpack.site # Fake FitGirl site 109.94.209.70 fitgirl-repack.org # Fake FitGirl site 109.94.209.70 www.fitgirl-repack.org # Fake FitGirl site 0.0.0.1 mssplus.mcafee.com ==================== Outras Áreas =========================== (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-797953015-612477736-2167638035-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Johnny\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img13.jpg HKU\S-1-5-21-797953015-612477736-2167638035-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.100.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == (Se uma entrada for incluída na fixlist, será removida.) HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "Overwolf" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "appnhost" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "Microsoft Edge Update" HKU\S-1-5-21-797953015-612477736-2167638035-1001\...\StartupApproved\Run: => "Battle.net" ==================== Regras do Firewall (Whitelisted) ================ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{2048CD81-D22C-4E91-89E6-488FBF0925A5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{C8242BD3-FB0F-43DC-97F6-99AB8D110F7A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{D0C02729-0EE0-46C9-9186-B99141FD7EF4}] => (Allow) D:\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{57E88003-5F22-4BBB-A3CD-3F149DB36F8D}] => (Allow) D:\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{5C058226-F74E-443E-B06C-B4569A975763}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{D9C02D0C-B9F2-438B-8130-9C51134D9B76}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{60572D43-133F-4FE4-AE64-1FFAAF96C656}] => (Allow) D:\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{4BDBC3E1-5097-4228-9584-9DE6638373ED}] => (Allow) D:\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{962E76DF-1EB7-4817-BA10-ECED631F9156}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve Corp. -> ) FirewallRules: [{F8A3C3E6-23FF-46CD-93B2-F2271C510EF1}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve Corp. -> ) FirewallRules: [{05CE397B-98C9-47D7-BA8B-D6C756CFCCE8}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta, Kristjan -> ) FirewallRules: [{74BC13E1-9D5A-48C2-A7ED-043F0D8258E9}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta, Kristjan -> ) FirewallRules: [{AEA443DC-D5E2-45BB-825C-A0BE348D405A}] => (Allow) D:\Steam\steamapps\common\Apex Legends\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{A750D113-8D80-48C7-930F-D0C4521C61C7}] => (Allow) D:\Steam\steamapps\common\Apex Legends\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{3BFC4591-EDBD-42B4-914B-3EF1317E08EB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{96206E84-5A08-4389-9BFB-5A78AE063121}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3028EC34-E37B-446B-A1E8-1C2ED2DB31B2}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{212701A3-69DD-4E14-97C9-EE4F3D22E979}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E90224CD-AB34-4B23-96A3-D50DB12AC04D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{57C5920F-CED0-4222-ADA2-ED5F0DECE8F6}] => (Allow) D:\Steam\steamapps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{D65E6AFA-D87E-4BA1-B7A2-5EEE390063F5}] => (Allow) D:\Steam\steamapps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{BE937315-77EC-40FB-BA62-0966D81355F7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{CFAC1093-EE06-4B2C-AF47-483B1A29F911}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{1B544ECF-4374-4331-831B-8F9CC10B032C}] => (Allow) D:\Steam\steamapps\common\Despot's Game\Despot's Game.exe () [Arquivo não assinado] FirewallRules: [{4B3D01B1-E407-44F6-9540-720A93D9FDF4}] => (Allow) D:\Steam\steamapps\common\Despot's Game\Despot's Game.exe () [Arquivo não assinado] FirewallRules: [{0E3C1467-8DE4-4C7F-B1FA-973F579079CB}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe (Nox Limited -> Nox Limited Corporation) FirewallRules: [{E8F0D999-A29C-4A5D-A71A-9EB71C5403E3}] => (Allow) D:\Steam\steamapps\common\Source SDK Base 2013 Multiplayer\hl2.exe (Valve -> ) FirewallRules: [{1D3DD3DC-7720-446C-B469-F9CC46212D85}] => (Allow) D:\Steam\steamapps\common\Source SDK Base 2013 Multiplayer\hl2.exe (Valve -> ) FirewallRules: [TCP Query User{AD1FFBC2-01AC-4E67-BA6A-185C1E28E635}D:\gtav\gta5.exe] => (Allow) D:\gtav\gta5.exe (Rockstar Games, Inc. -> TODO: ) FirewallRules: [UDP Query User{346BC2F7-E124-4FD0-A8DC-8CDCF0757E69}D:\gtav\gta5.exe] => (Allow) D:\gtav\gta5.exe (Rockstar Games, Inc. -> TODO: ) FirewallRules: [{CD769461-4873-42B6-A0C9-2978A9A1C10E}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [Arquivo não assinado] FirewallRules: [{77A811A7-3539-411A-822A-FF605271FCA1}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [Arquivo não assinado] FirewallRules: [{85580B8B-AE5D-463D-8595-E953AA4ED3FF}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [Arquivo não assinado] FirewallRules: [{983D0204-AD7A-447B-A3A2-8F79E04F18B5}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [Arquivo não assinado] FirewallRules: [{761181BD-A3B4-40D7-A441-6DF1265896B8}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> ) FirewallRules: [{FE8F2723-587E-4373-A9DB-30540236A4D4}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> ) FirewallRules: [{B8CF9229-FA9B-42E8-8C0A-237F6454C09F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{E601F29A-6277-4F3F-BD1D-45EABE57C643}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{10EA97D9-CFDD-414E-BDD6-83C25DB81143}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{E3044263-01A1-4CEB-B1A7-4308AFF45396}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [TCP Query User{1CB4643B-A090-48CD-8913-B9C41F804D0D}C:\users\johnny\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\johnny\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{D6D4128D-E015-4162-A56F-AE3BF5597379}C:\users\johnny\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\johnny\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{DCD679C5-E97B-41D1-9BED-3F7FE7AB4E97}] => (Allow) d:\program files\txgameassistant\appmarket\AppMarket.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{B0303320-00C6-4C46-A65F-8CAA5A13C8F2}] => (Allow) d:\program files\txgameassistant\appmarket\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{362618B2-4F36-42B7-81B1-1C783AC77C21}] => (Allow) d:\program files\txgameassistant\appmarket\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{9A63428D-7E2E-4B3D-91D8-D37FC67DAF68}] => (Allow) d:\program files\txgameassistant\appmarket\QQExternal.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{0539A74A-C31E-4CCB-BCC8-9F42D3786672}] => (Allow) d:\program files\txgameassistant\appmarket\GameDownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{A605722E-DB1A-4434-A7C3-04F9388E83D9}] => (Allow) d:\program files\txgameassistant\appmarket\GF186\TUpdate.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{9E328B46-1B68-472C-A7E5-DFE06BBE1C02}] => (Allow) D:\program files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{7823DD11-D5A3-4932-967F-A5C7DFFDE52C}] => (Allow) D:\program files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{13AEF880-50D2-49DF-AEA2-96865885D83C}] => (Allow) D:\program files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{7DDA1F66-8E5C-425E-850D-472E64CA5F4B}] => (Allow) D:\program files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{6743EFBA-8319-49DE-B753-2356EC46121B}] => (Allow) D:\program files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{BEDCE129-5B54-4FBA-97A8-0957F1F15044}] => (Allow) D:\program files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{6A3409A9-CB01-4D46-B080-C303A11AEB08}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{BA6E70F6-3E05-4897-960B-A6CB079994F4}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEx.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{4DB7FE19-D3D6-43EA-82E6-6505286583C1}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEn.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [{93D5781A-C211-4DF0-85FD-6103174133A3}] => (Allow) d:\program files\txgameassistant\ui\adb.exe () [Arquivo não assinado] FirewallRules: [{9967F2F2-8DD8-485D-8A05-7020557E81DB}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{492ABBEB-EA6F-4350-985C-191ED45F19F7}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> ) FirewallRules: [{063E5B99-A72A-4CDA-A693-7DCB92D2AC5C}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent) FirewallRules: [TCP Query User{186836B1-5664-4494-B5A2-820439478247}D:\arquivos e downloads\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\arquivos e downloads\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{99E15AC4-9ECE-40B4-B285-AEE77378E24B}D:\arquivos e downloads\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\arquivos e downloads\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{FB1DF03C-3945-4334-821D-8C9D4C9D38FB}] => (Block) D:\arquivos e downloads\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{D291EE33-F257-40A8-9FF0-D4ECF736B2FA}] => (Block) D:\arquivos e downloads\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{522D1E6E-3F3F-4EB2-9E78-81CC00DFC66E}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{FFDE913A-A194-47D6-A75C-FB864EA61078}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{064BB02F-1256-4EB3-8B05-19683E8F12FD}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{924B2E70-DD4D-4D0C-B522-4A88F79E9588}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> ) FirewallRules: [{936FE792-57B8-46C5-9D8F-155F243B5EF6}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{5E83AD1B-D285-404E-B2AF-7B04C00BC382}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{9CBD27B4-207B-4A8A-A72C-DCE887B94AA1}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe (Digital Extremes Ltd. -> Digital Extremes) FirewallRules: [{C045E8AA-58A9-414C-8955-0CF1DD34EFDC}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe (Digital Extremes Ltd. -> ) FirewallRules: [{20B0D986-8ED3-4A2B-83EC-475A358EFBF6}] => (Allow) D:\Steam\steamapps\common\Yokus Island Express\Yoku.exe () [Arquivo não assinado] FirewallRules: [{C75C0FD0-F0D7-4F97-B1B3-F4B63F175450}] => (Allow) D:\Steam\steamapps\common\Yokus Island Express\Yoku.exe () [Arquivo não assinado] FirewallRules: [{7D868B77-3D2B-4B03-A622-177391386793}] => (Allow) D:\Steam\steamapps\common\MultiVersus\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{5DA2899A-B160-46BC-AF7C-5CF10F9B4263}] => (Allow) D:\Steam\steamapps\common\MultiVersus\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{FC33240D-A2A6-41A5-82F1-F41FA3C20C9F}] => (Allow) D:\Steam\steamapps\common\POSTAL Brain Damaged\POSTAL Brain Damaged.exe (Unity Technologies ApS) [Arquivo não assinado] FirewallRules: [{204388C9-0289-4E9E-88E1-98BE9BABCB70}] => (Allow) D:\Steam\steamapps\common\POSTAL Brain Damaged\POSTAL Brain Damaged.exe (Unity Technologies ApS) [Arquivo não assinado] FirewallRules: [{3CF90328-9D43-4E7B-B471-6FA19AE7C507}] => (Allow) D:\Arquivos e Downloads\Overwolf\0.204.0.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{6C89EEE7-A631-4B4C-A3D2-738C4C780451}] => (Allow) D:\Arquivos e Downloads\Overwolf\0.204.0.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [TCP Query User{57D9A758-991D-46DF-B1F4-9EB72CCD00F5}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{EEE53386-7005-4A31-BC6A-5093257A3C7E}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{4D099436-9172-4F38-9E57-CB5991AC4EA0}] => (Block) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{5787A229-F476-4DE9-A6B6-FC7D615E62F3}] => (Block) D:\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [TCP Query User{6C2EAB4C-C882-4142-9067-335D2D6D5754}D:\roguecompany\roguecompany\binaries\win64\roguecompany.exe] => (Allow) D:\roguecompany\roguecompany\binaries\win64\roguecompany.exe (Hi-Rez Studios, Inc.) [Arquivo não assinado] FirewallRules: [UDP Query User{EF36B2EF-FE1D-4530-8226-0038057AEAFB}D:\roguecompany\roguecompany\binaries\win64\roguecompany.exe] => (Allow) D:\roguecompany\roguecompany\binaries\win64\roguecompany.exe (Hi-Rez Studios, Inc.) [Arquivo não assinado] FirewallRules: [TCP Query User{FEF4CE28-8FDD-454B-B783-6492717C8A9E}D:\steam\steamapps\common\fallout new vegas\nvmp_storyserver.exe] => (Allow) D:\steam\steamapps\common\fallout new vegas\nvmp_storyserver.exe () [Arquivo não assinado] FirewallRules: [UDP Query User{7D4C75B8-5655-4976-A021-DC2A00D49129}D:\steam\steamapps\common\fallout new vegas\nvmp_storyserver.exe] => (Allow) D:\steam\steamapps\common\fallout new vegas\nvmp_storyserver.exe () [Arquivo não assinado] FirewallRules: [{C14A6C2E-2178-4084-8FA2-2BBF3F463211}] => (Block) D:\steam\steamapps\common\fallout new vegas\nvmp_storyserver.exe () [Arquivo não assinado] FirewallRules: [{5DD8C1AD-A98B-4BEF-BDE7-8540EA1418D3}] => (Block) D:\steam\steamapps\common\fallout new vegas\nvmp_storyserver.exe () [Arquivo não assinado] FirewallRules: [{F2D5C5B2-A930-48A8-B83C-9C566BDE7F48}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> ) FirewallRules: [{C43E3AC4-9F24-4476-8466-CAFDDD04FAC9}] => (Allow) D:\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> ) FirewallRules: [{4A4BE02E-EC88-4BDE-BC0E-67530435A935}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{7A7B7934-E871-4F86-9810-993A7108ADA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{5B27D92A-987F-4FF0-A80D-C6D62A465725}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{52D4D2EC-7AC9-47EE-9B71-70197F1224C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{44A0383F-D939-4A72-B173-EF68B7E85137}] => (Allow) D:\Steam\steamapps\common\BioShock 2 Remastered\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) FirewallRules: [{55F97AEB-56E7-4923-91C1-4CC22C8D9F86}] => (Allow) D:\Steam\steamapps\common\BioShock 2 Remastered\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) FirewallRules: [TCP Query User{C2923D26-024B-4C9B-B8D3-83E427171F8F}D:\borderlandsthepresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\borderlandsthepresequel\binaries\win32\borderlandspresequel.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) [Arquivo não assinado] FirewallRules: [UDP Query User{FF00EF62-F92A-4A67-A4C0-0E2A793DD1C2}D:\borderlandsthepresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\borderlandsthepresequel\binaries\win32\borderlandspresequel.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) [Arquivo não assinado] FirewallRules: [{AA9AAED3-2CC4-40F7-A421-31BB7F47D672}] => (Block) D:\borderlandsthepresequel\binaries\win32\borderlandspresequel.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) [Arquivo não assinado] FirewallRules: [{37AA01E2-123A-4942-99A1-DA03087D8D1D}] => (Block) D:\borderlandsthepresequel\binaries\win32\borderlandspresequel.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) [Arquivo não assinado] FirewallRules: [{BE91BA7C-4596-472D-8CC1-72B92073C128}] => (Allow) D:\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe (Bethesda Softworks -> Bethesda Softworks, Obsidian Entertainment) FirewallRules: [{96467D48-2428-410D-9947-1367DA201982}] => (Allow) D:\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe (Bethesda Softworks -> Bethesda Softworks, Obsidian Entertainment) FirewallRules: [{F21C0321-5D09-4793-88FC-523E65CC1225}] => (Allow) D:\Steam\steamapps\common\Deep Rock Galactic\FSD.exe (Epic Games, Inc.) [Arquivo não assinado] FirewallRules: [{6B0CEE99-A86F-4147-B40B-737E335C5052}] => (Allow) D:\Steam\steamapps\common\Deep Rock Galactic\FSD.exe (Epic Games, Inc.) [Arquivo não assinado] FirewallRules: [{625ADEAD-38E8-410B-BA38-C03A9F73A8BE}] => (Allow) D:\Steam\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision) FirewallRules: [{DA03C796-EF2E-4ECC-A799-BD9E974E7459}] => (Allow) D:\Steam\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision) FirewallRules: [TCP Query User{CCFDEB75-89E8-48EB-BA80-522B039E58E6}D:\steam\steamapps\common\insurgency2\insurgency_x64.exe] => (Allow) D:\steam\steamapps\common\insurgency2\insurgency_x64.exe => Nenhum Arquivo FirewallRules: [UDP Query User{F95B608B-5F2D-4215-8677-5859BA05AAD3}D:\steam\steamapps\common\insurgency2\insurgency_x64.exe] => (Allow) D:\steam\steamapps\common\insurgency2\insurgency_x64.exe => Nenhum Arquivo FirewallRules: [{52395DDF-D246-4386-B72D-801AB1901AFE}] => (Block) D:\steam\steamapps\common\insurgency2\insurgency_x64.exe => Nenhum Arquivo FirewallRules: [{299FC1AF-4994-461E-8D73-1300549E3052}] => (Block) D:\steam\steamapps\common\insurgency2\insurgency_x64.exe => Nenhum Arquivo FirewallRules: [{3F8A4D67-9304-4CE3-B950-7A43CC8A2478}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{659BC561-FEB5-43C6-BE28-B81E97B9DFA0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{3084F587-CDDF-43EF-873F-0C6A434AD516}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{FBFDB9A0-7DFE-4FDD-839F-4F1464139398}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{CEA1E130-DFDC-439E-8312-D8FDFB2A0C5C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) ==================== Pontos de Restauração ========================= ==================== Dispositivos Apresentando Falhas No Gerenciador ============ ==================== Erros no Log de eventos: ======================== Erros em Aplicativos: ================== Error: (12/02/2022 12:32:13 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erro do serviço de cópias de sombra de volume: erro inesperado ao chamar a rotina CoCreateInstance. hr = 0x8007045b, O sistema está sendo desligado. . Error: (12/02/2022 12:32:13 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informações sobre o Serviço de Cópias de Sombra de Volume: não é possível iniciar o Servidor COM com CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} e nome CEventSystem. [0x8007045b, O sistema está sendo desligado. ] Error: (12/02/2022 12:32:13 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erro do serviço de cópias de sombra de volume: erro inesperado ao chamar a rotina CoCreateInstance. hr = 0x8007045b, O sistema está sendo desligado. . Error: (12/02/2022 12:32:13 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informações sobre o Serviço de Cópias de Sombra de Volume: não é possível iniciar o Servidor COM com CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} e nome CEventSystem. [0x8007045b, O sistema está sendo desligado. ] Error: (12/01/2022 11:45:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome do aplicativo com falha: FalloutNV.exe, versão: 1.4.0.525, carimbo de data/hora: 0x4e0d50ed Nome do módulo com falha: MessageBus.dll, versão: 1.22.2758.1620, carimbo de data/hora: 0x5dc56367 Código de exceção: 0xc0000005 Deslocamento da falha: 0x004b6bca ID do processo com falha: 0x2c38 Hora de início do aplicativo com falha: 0x01d905e8ee1d1b4c Caminho do aplicativo com falha: D:\Steam\steamapps\common\Fallout New Vegas\FalloutNV.exe Caminho do módulo com falha: C:\Program Files (x86)\NVIDIA Corporation\NvContainer\MessageBus.dll ID do Relatório: ef01974b-229c-4331-955d-006834acaa85 Nome completo do pacote com falha: ID do aplicativo relativo ao pacote com falha: Error: (12/01/2022 09:52:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome do aplicativo com falha: FalloutNV.exe, versão: 1.4.0.525, carimbo de data/hora: 0x4e0d50ed Nome do módulo com falha: unknown, versão: 0.0.0.0, carimbo de data/hora: 0x00000000 Código de exceção: 0x80000004 Deslocamento da falha: 0x6e6b6e76 ID do processo com falha: 0xfc0 Hora de início do aplicativo com falha: 0x01d905e57d24ebc8 Caminho do aplicativo com falha: D:\Steam\steamapps\common\Fallout New Vegas\FalloutNV.exe Caminho do módulo com falha: unknown ID do Relatório: 4a478b08-5e64-48fc-af70-23714991d351 Nome completo do pacote com falha: ID do aplicativo relativo ao pacote com falha: Error: (11/30/2022 12:16:31 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erro do serviço de cópias de sombra de volume: erro inesperado ao chamar a rotina CoCreateInstance. hr = 0x8007045b, O sistema está sendo desligado. . Error: (11/30/2022 12:16:31 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informações sobre o Serviço de Cópias de Sombra de Volume: não é possível iniciar o Servidor COM com CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} e nome CEventSystem. [0x8007045b, O sistema está sendo desligado. ] Erros de Sistema: ============= Error: (12/02/2022 01:09:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço NVIDIA LocalSystem Container foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 6000 milissegundos: Reiniciar o serviço. Error: (12/02/2022 01:09:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço Microsoft Office Click-to-Run Service foi finalizado inesperadamente. Isto aconteceu 2 vez(es). A seguinte ação corretiva será tomada em 0 milissegundos: Reiniciar o serviço. Error: (12/02/2022 01:09:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço NVIDIA Display Container LS foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 6000 milissegundos: Reiniciar o serviço. Error: (12/02/2022 01:09:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço Realtek Audio Universal Service foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 0 milissegundos: Reiniciar o serviço. Error: (12/02/2022 01:09:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Steam Client Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (12/02/2022 01:09:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço NVIDIA LocalSystem Container foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 6000 milissegundos: Reiniciar o serviço. Error: (12/02/2022 01:09:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço Microsoft Office Click-to-Run Service foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 0 milissegundos: Reiniciar o serviço. Error: (12/02/2022 01:09:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Intel(R) Dynamic Application Loader Host Interface Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Windows Defender: ================ Date: 2022-12-01 23:37:32 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {F2FC9CC3-6B5E-4BFF-AE89-457553BDEE60} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-12-01 21:08:08 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {F0988116-A546-4DD1-97FC-370306577ABE} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-11-29 20:08:05 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {F7134B67-D57E-43A3-9757-4F3E526D69E8} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-11-27 18:36:58 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {8DF0DD5F-0E57-4C8B-B9B0-D92B06273F39} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-11-17 20:44:34 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {26A176EF-A88D-486D-853C-3D9BBE63819B} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Event[0]: Date: 2022-11-24 08:41:10 Description: Microsoft Defender Antivírus encontrou um erro ao tentar atualizar a inteligência de segurança. Nova Versão da Inteligência de Segurança: Versão da Inteligência de Segurança anterior: 1.379.859.0 Fonte da Atualização: Servidor do Microsoft Update Tipo da Inteligência de Segurança: Antivírus Tipo da atualização: Completa Usuário: AUTORIDADE NT\SISTEMA Versão Atual do Mecanismo: Versão Anterior do Mecanismo: 1.1.19800.4 Código de Erro: 0x80240438 Descrição do Erro: Erro inesperado ao verificar atualizações. Para obter informações sobre como instalar ou solucionar problemas de atualizações, consulte Ajuda e Suporte. CodeIntegrity: =============== Date: 2022-12-02 11:41:24 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements. ==================== Informações da Memória =========================== BIOS: American Megatrends Inc. F4 04/03/2018 placa-mãe: Gigabyte Technology Co., Ltd. Z370M DS3H-CF Processador: Intel(R) Core(TM) i5-8600K CPU @ 3.60GHz Percentagem de memória em uso: 41% RAM física total: 16334.04 MB RAM física disponível: 9612.09 MB Virtual Total: 96334.04 MB Virtual disponível: 87483.77 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.22 GB) (Free:11.22 GB) (Model: KINGSTON SA400S37120G) NTFS Drive d: (Disco Local ) (Fixed) (Total:931.51 GB) (Free:111.97 GB) (Model: ST1000DM010-2EP102) NTFS \\?\Volume{32ae52b2-0000-0000-0000-100000000000}\ (Reservado pelo Sistema) (Fixed) (Total:0.57 GB) (Free:0.11 GB) NTFS ==================== MBR & Tabela de Partições ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: EA060342) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 32AE52B2) Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS) ==================== Fim de Addition.txt =======================