Don't like ads? PRO users don't see any ads ;-)
Guest

Untitled

By: a guest on Jun 27th, 2012  |  syntax: None  |  size: 38.76 KB  |  hits: 11  |  expires: Never
download  |  raw  |  embed  |  report abuse  |  print
Text below is selected. Please press Ctrl+C to copy to your clipboard. (⌘+C on Mac)
  1. OTL Extras logfile created on: 26/06/2012 21:57:55 - Run 1
  2. OTL by OldTimer - Version 3.2.53.0     Folder = C:\Users\Moraes\Desktop
  3. 64bit- Home Basic Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
  4. Internet Explorer (Version = 9.0.8112.16421)
  5. Locale: 00000416 | Country: Brasil | Language: PTB | Date Format: dd/MM/yyyy
  6.  
  7. 3,93 Gb Total Physical Memory | 2,37 Gb Available Physical Memory | 60,14% Memory free
  8. 7,87 Gb Paging File | 6,28 Gb Available in Paging File | 79,88% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
  12. Drive C: | 252,89 Gb Total Space | 74,78 Gb Free Space | 29,57% Space Free | Partition Type: NTFS
  13. Drive D: | 30,25 Gb Total Space | 30,16 Gb Free Space | 99,71% Space Free | Partition Type: NTFS
  14.  
  15. Computer Name: MORAES-PC | User Name: Moraes | Logged in as Administrator.
  16. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
  17. Company Name Whitelist: On | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
  18.  
  19. [color=#E56717]========== Extra Registry (SafeList) ==========[/color]
  20.  
  21.  
  22. [color=#E56717]========== File Associations ==========[/color]
  23.  
  24. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
  25. .url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)
  26.  
  27. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
  28. .cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
  29.  
  30. [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
  31. .html [@ = ChromeHTML] -- Reg Error: Key error. File not found
  32.  
  33. [color=#E56717]========== Shell Spawning ==========[/color]
  34.  
  35. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
  36. batfile [open] -- "%1" %*
  37. cmdfile [open] -- "%1" %*
  38. comfile [open] -- "%1" %*
  39. exefile [open] -- "%1" %*
  40. helpfile [open] -- Reg Error: Key error.
  41. htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
  42. https [open] -- Reg Error: Key error.
  43. inffile [install] -- %SystemRoot%\System32\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 (Microsoft Corporation)
  44. InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
  45. InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
  46. piffile [open] -- "%1" %*
  47. regfile [merge] -- Reg Error: Key error.
  48. scrfile [config] -- "%1"
  49. scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
  50. scrfile [open] -- "%1" /S
  51. txtfile [edit] -- Reg Error: Key error.
  52. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
  53. Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
  54. Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  55. Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
  56. Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  57. Folder [explore] -- Reg Error: Value error.
  58. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  59.  
  60. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
  61. batfile [open] -- "%1" %*
  62. cmdfile [open] -- "%1" %*
  63. comfile [open] -- "%1" %*
  64. cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
  65. exefile [open] -- "%1" %*
  66. helpfile [open] -- Reg Error: Key error.
  67. https [open] -- Reg Error: Key error.
  68. piffile [open] -- "%1" %*
  69. regfile [merge] -- Reg Error: Key error.
  70. scrfile [config] -- "%1"
  71. scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
  72. scrfile [open] -- "%1" /S
  73. txtfile [edit] -- Reg Error: Key error.
  74. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
  75. Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
  76. Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  77. Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
  78. Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  79. Folder [explore] -- Reg Error: Value error.
  80. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
  81.  
  82. [color=#E56717]========== Security Center Settings ==========[/color]
  83.  
  84. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
  85. "cval" = 1
  86. "FirewallDisableNotify" = 0
  87. "AntiVirusDisableNotify" = 0
  88. "UpdatesDisableNotify" = 0
  89.  
  90. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
  91.  
  92. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
  93. "VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
  94. "AntiVirusOverride" = 0
  95. "AntiSpywareOverride" = 0
  96. "FirewallOverride" = 0
  97.  
  98. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
  99.  
  100. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
  101. "UpdatesDisableNotify" = 0
  102.  
  103. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
  104.  
  105. [color=#E56717]========== System Restore Settings ==========[/color]
  106.  
  107. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
  108. "DisableSR" = 0
  109.  
  110. [color=#E56717]========== Firewall Settings ==========[/color]
  111.  
  112. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
  113.  
  114. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
  115.  
  116. [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
  117.  
  118. [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
  119.  
  120. [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
  121.  
  122. [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
  123.  
  124. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
  125. "DisableNotifications" = 0
  126. "EnableFirewall" = 1
  127.  
  128. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
  129. "DisableNotifications" = 0
  130. "EnableFirewall" = 1
  131.  
  132. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
  133.  
  134. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
  135. "DisableNotifications" = 0
  136. "EnableFirewall" = 1
  137.  
  138. [color=#E56717]========== Authorized Applications List ==========[/color]
  139.  
  140. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
  141.  
  142. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
  143.  
  144.  
  145. [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
  146.  
  147. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
  148. "{0C8FFAAB-7C03-4187-BCDC-F9FBAAFEEEDD}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
  149. "{0E1BCE71-46B1-4936-9E33-534458860221}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  150. "{0F2E2077-E0E4-44C5-84E4-51E7EEFDDCF5}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  151. "{1C73DA97-B61D-4B13-9483-FDF877F2ECE8}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
  152. "{2F442120-719C-4B29-9F56-AB3186751861}" = rport=445 | protocol=6 | dir=out | app=system |
  153. "{31133483-57ED-4792-9ECC-2EEB9E8E9F56}" = rport=138 | protocol=17 | dir=out | app=system |
  154. "{37036692-1B5E-4F62-8093-CD1A477E0C82}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
  155. "{3C2213A7-DF85-4E3D-A64F-105C9D05106E}" = lport=2869 | protocol=6 | dir=in | app=system |
  156. "{4214520B-6711-4BBE-81AA-32193A3F98CD}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
  157. "{48C8712C-BAC9-4234-81BF-EEC9768BAEDA}" = lport=139 | protocol=6 | dir=in | app=system |
  158. "{4A546389-F3A6-4EE1-A442-F8357D034AB6}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
  159. "{4EBF6D01-A308-42E2-A8E2-6FD6B07755F6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
  160. "{528EA4E4-F2BF-4C41-A5BB-D561416EEAF4}" = lport=445 | protocol=6 | dir=in | app=system |
  161. "{53DD7F33-1092-496C-9F81-87AF3B4664E7}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  162. "{54EF68D5-DFCB-455F-BED2-21DFD507887E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
  163. "{614A41B4-1D22-45E9-BBB4-7AB848B14682}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
  164. "{6B78F7F9-B0EB-47CC-A857-71C77F602C4E}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
  165. "{75F4CB54-FB02-41A9-8827-2E2298ECCC2C}" = lport=137 | protocol=17 | dir=in | app=system |
  166. "{841ACE59-2086-4B75-82E2-29F9C0699661}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
  167. "{889698D4-1312-4244-BDD0-ED1CB371A7F4}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
  168. "{8EE7CB93-BFE6-46DE-8E6B-BC2454AC46D7}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
  169. "{9C03B71E-4891-4C81-844E-D8F55C89EBA8}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
  170. "{B2FC619B-5591-4FDB-803A-01E056ECC907}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
  171. "{B771E3BF-4118-40F5-BF82-9B8B767D3D3C}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
  172. "{B893632E-A761-40F3-8EEF-4615DA135D92}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
  173. "{BE0EB328-C135-4A0E-882B-D7B208C7DF1C}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
  174. "{C18FC4B0-C173-4983-93FE-49B2865C5891}" = rport=2869 | protocol=6 | dir=out | app=system |
  175. "{C2B1BBEE-F925-4876-A267-67E07FC319D8}" = rport=139 | protocol=6 | dir=out | app=system |
  176. "{CAB19C34-4509-4916-B576-76F31A39786D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
  177. "{D6639E67-365A-4AD2-B0EE-7F0C939BCB99}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
  178. "{EF585C80-45AE-43E7-B417-242A5B483D0F}" = lport=138 | protocol=17 | dir=in | app=system |
  179. "{F139B9DF-E8DF-4799-AAF9-73A76EC7709A}" = rport=137 | protocol=17 | dir=out | app=system |
  180. "{F5CB3A3F-3A92-471C-AC92-45C159424A3F}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  181. "{F5D45E5E-3A6D-4A42-AD73-0A700A850C3D}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe |
  182.  
  183. [color=#E56717]========== Vista Active Application Exception List ==========[/color]
  184.  
  185. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
  186. "{01D4A158-84BD-47CC-93CE-53431BA27703}" = dir=in | app=c:\program files\lenovo\readycomm\connsvc.exe |
  187. "{08DD87F9-2184-4D81-B723-EF29791BDA46}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe |
  188. "{0E372504-EEE6-4490-BCD5-A7CA7267C530}" = dir=in | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
  189. "{10788B5D-150B-4850-8BC8-7F821954FEB3}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs7aee\hpdiagnosticcoreui.exe |
  190. "{1186C97E-A2AC-4815-B2E0-980FD09214E8}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs32de\hpdiagnosticcoreui.exe |
  191. "{14C7CEE4-8674-43EA-A534-02A247B8C3A9}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
  192. "{1652C5B5-AF0D-404D-A06A-BC9E3DC55CFC}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  193. "{16611765-F3B4-4B29-8329-E2F8CCEB94EF}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs577e\hppiw.exe |
  194. "{1E1B3A84-BDDA-4713-9428-B9BB49494885}" = dir=in | app=c:\program files (x86)\hp\digital imaging\{4945f319-a24d-454c-a411-f3689987315d}\setup\hpznui40.exe |
  195. "{1E320238-F72F-4BB4-80EC-D8093E322707}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpse.exe |
  196. "{250BD889-B035-437E-BC9C-E4C99A9D713F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe |
  197. "{29735F81-01D9-4C72-A13C-0EC33704B49E}" = dir=in | app=c:\program files\lenovo\readycomm\projectionist.exe |
  198. "{2BD2C7E6-1605-4DD2-A80D-98DF833D095A}" = dir=out | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
  199. "{2D0E5143-545D-44BC-B787-5E334FE4EB7F}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
  200. "{3386168B-7F97-4AD0-B7C5-8D229F347BFA}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  201. "{343F9539-34DE-440D-97C7-31CF7133ABC0}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs44db\hpdiagnosticcoreui.exe |
  202. "{36804B57-A1AD-486D-820E-B31F1222081E}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs25d9\hpdiagnosticcoreui.exe |
  203. "{3768E44A-77AD-4EEE-AFA8-EA66C5B59EE3}" = dir=out | app=c:\windows\system32\igrssvcs.exe |
  204. "{3926E09F-4B9E-4E59-9813-189F026D4A17}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqpsapp.exe |
  205. "{3C86AF29-6C7E-428C-BCC4-8A9B02263B61}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs577e\hppiw.exe |
  206. "{400B2E65-3D98-4F81-B22A-81BB988E791E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe |
  207. "{421CCC47-82D6-47F1-872D-EBCA538C7B2E}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
  208. "{4574A221-98D1-47A3-9F1E-3B0A1439586F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe |
  209. "{4B644175-23C4-4056-B4C8-D2E447CF0479}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs21b3\hpdiagnosticcoreui.exe |
  210. "{5283B843-58FE-4F5D-A80B-7E073DBF249B}" = dir=in | app=c:\program files\lenovo\readycomm\appsvc.exe |
  211. "{54268280-3985-43FB-A2A8-5698B05E02AE}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  212. "{5A540B56-0E94-4F31-A291-83B7C1508720}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
  213. "{6179E1FB-4ED7-4B2E-A828-1874E7700870}" = dir=out | app=c:\program files\lenovo\readycomm\appsvc.exe |
  214. "{628D44FA-18D6-40D9-B6F5-6074CC5CB8F3}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
  215. "{62EB7438-9E0E-4B7E-933E-8170E8587802}" = dir=out | app=c:\program files\lenovo\readycomm\readycomm.exe |
  216. "{62F6ADDF-1295-4571-B15A-8D4740710E1B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe |
  217. "{68A17433-F2D7-4532-8BA8-63BA8A9F16C6}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe |
  218. "{705C43FC-E6AE-4C85-847E-4BA3C7E35F59}" = dir=in | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
  219. "{70D1A2AA-415E-4961-B311-6817B5F7F5D2}" = dir=in | app=c:\program files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe |
  220. "{718DD2DE-FDDA-405C-8B15-647666D7864D}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe |
  221. "{7272F39F-A483-429D-8F4F-CA716135A7D6}" = dir=in | app=c:\windows\system32\igrssvcs.exe |
  222. "{74102A6A-D949-4CF0-9F98-8D6441260669}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe |
  223. "{76552FED-EAC5-4181-9B14-1D11FEBF96E2}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs25d9\hpdiagnosticcoreui.exe |
  224. "{7E7208E5-8214-4278-B491-FACC156FC7DD}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe |
  225. "{87DAE851-1B84-45CB-972A-9CF38A1BB84E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
  226. "{8844718E-A40E-4E27-A1BA-07F18CF35F2E}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
  227. "{8935D37B-02F0-4DDC-9DBC-0CB664C1C3BA}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
  228. "{8AC6E146-A352-404C-A841-A501FC1EC3B7}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe |
  229. "{8B2D8359-6C54-4304-B0F9-E96BCAC3268C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe |
  230. "{8E4FA983-16BE-40B3-8EEA-440AAC55FDB6}" = dir=out | app=c:\program files\lenovo\readycomm\connsvc.exe |
  231. "{928403D1-9A6D-4802-9AEF-7DEA38429598}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqsudi.exe |
  232. "{9530D631-3E34-4197-828D-B6C9C8260924}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs7aee\hpdiagnosticcoreui.exe |
  233. "{9B16DCBE-AE4F-42A6-B379-30C291E08E0A}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
  234. "{9E680F5C-2CE2-461E-A96D-38E57FB17590}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
  235. "{A024D403-387B-4CC5-B370-3D44AE13F0A4}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
  236. "{A0994B7D-E45C-457A-8198-1CD63A38498F}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs250e\hpdiagnosticcoreui.exe |
  237. "{A2A5A952-7F22-48FB-97AC-3371F3258EE5}" = dir=out | app=c:\program files (x86)\lenovo\readycomm\common\igrs.exe |
  238. "{A6BDECD9-C3D5-4033-831A-C2B0818A2B62}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs21b3\hpdiagnosticcoreui.exe |
  239. "{A75AC2F5-0267-4302-9F8C-F780BB3AB3FA}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  240. "{A8E4847C-11A9-4547-A4D7-879477D6DB73}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe |
  241. "{AAA84153-67EE-4EF4-968B-5EBF4A581A61}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  242. "{AB28D87B-F851-4CBB-8682-141F29ABED8E}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe |
  243. "{B4BA4259-E387-4B89-9C70-9A65B7D3C28B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe |
  244. "{B53E8212-6BCD-4DDF-8F51-B598E5CE7477}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs03bc\hpdiagnosticcoreui.exe |
  245. "{B83C35B5-42EB-4012-8011-C5AA4C4A1DEF}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe |
  246. "{BF46BAB9-A4B8-421C-AF4F-61D8A4DDD065}" = dir=in | app=c:\users\moraes\appdata\local\facebook\video\skype\facebookvideocalling.exe |
  247. "{C2B24677-CF17-40C7-8FA1-3C85169F22BA}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs250e\hpdiagnosticcoreui.exe |
  248. "{C4ED2CC2-CCC2-4DA1-83EC-AE0B5174F188}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe |
  249. "{C5D98BEB-1D0B-4FD3-BC16-FD09E2D75453}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
  250. "{C773A547-7691-4E40-916A-1FF82B472737}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe |
  251. "{C93FE8A0-F9F3-49CC-8BA5-4CA0397BAD8A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
  252. "{CA7BC1F5-5F6F-44CA-9D6E-0634780BAFE5}" = dir=out | app=c:\program files\lenovo\readycomm\projectionist.exe |
  253. "{D07344A5-8C9A-4C13-8427-4C956FC2ED9B}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs03bc\hpdiagnosticcoreui.exe |
  254. "{D7B2F33C-9C79-40D0-956A-72FE17F7DAA8}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
  255. "{DC7B2E54-8C4D-4888-AC56-0838F2FE8417}" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs32de\hpdiagnosticcoreui.exe |
  256. "{DCE4654C-AB14-470B-BDA5-57A79894BD19}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  257. "{E4839E03-A2E7-4534-A8BB-06E928D0425F}" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs44db\hpdiagnosticcoreui.exe |
  258. "{E944D58D-8AC9-4889-9AB4-4FBB7F1F445C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe |
  259. "{EBD33E3E-D723-45BB-A5F0-B45DE43B48B8}" = protocol=6 | dir=in | app=c:\ongame\pointblank\pointblank.exe |
  260. "{F1547BD4-58CE-42B3-8D36-6E695E298085}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
  261. "{F9616B62-B1CA-4D7C-A4E8-145BD4CBAA41}" = protocol=17 | dir=in | app=c:\ongame\pointblank\pointblank.exe |
  262. "TCP Query User{01D8FFB4-382F-4D91-9C61-BAEA292281B1}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
  263. "TCP Query User{5A4C188E-A773-478C-92AE-688C623A6BA8}C:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=6 | dir=in | app=c:\programdata\electronic arts\need for speed world\data\nfsw.exe |
  264. "TCP Query User{5C8771CF-F50F-4859-A94B-E25BE7A297E9}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
  265. "TCP Query User{A874B619-32D8-4351-BEE9-317C44C83FE6}C:\windows\system32\java.exe" = protocol=6 | dir=in | app=c:\windows\system32\java.exe |
  266. "TCP Query User{B9C13538-B5FD-410F-B0F4-1CE9AEE53D17}C:\users\moraes\appdata\local\temp\7zs03bc\hpdiagnosticcoreui.exe" = protocol=6 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs03bc\hpdiagnosticcoreui.exe |
  267. "UDP Query User{43AB8DB4-B991-4666-83DA-FED52109D962}C:\windows\system32\java.exe" = protocol=17 | dir=in | app=c:\windows\system32\java.exe |
  268. "UDP Query User{4D5898A3-BC09-4FE1-BE8D-C4CB724A13D9}C:\program files (x86)\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files (x86)\google\google earth\client\googleearth.exe |
  269. "UDP Query User{ACC08BB9-E9FD-49C4-8C78-FDF4ED8914F7}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
  270. "UDP Query User{B7A39833-3A52-493E-B5CB-68E34F3AE65D}C:\users\moraes\appdata\local\temp\7zs03bc\hpdiagnosticcoreui.exe" = protocol=17 | dir=in | app=c:\users\moraes\appdata\local\temp\7zs03bc\hpdiagnosticcoreui.exe |
  271. "UDP Query User{C402AB54-B2C7-44B2-AB00-3C412890C928}C:\programdata\electronic arts\need for speed world\data\nfsw.exe" = protocol=17 | dir=in | app=c:\programdata\electronic arts\need for speed world\data\nfsw.exe |
  272.  
  273. [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
  274.  
  275. 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  276. "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector
  277. "{0D87AE67-14EB-4C10-88A5-DA6C3181EB18}" = Windows Live Family Safety
  278. "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
  279. "{46CCB0D4-A98F-4009-B5A5-DE38A667D068}" = Windows Live Family Safety
  280. "{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery
  281. "{49F3D04B-B849-4C89-AB31-2366A004EA28}" = Broadcom Gigabit Integrated Controller
  282. "{792920BD-8D8D-4868-AE2F-16F4B05D3AE9}" = Lenovo Solution Center
  283. "{79BF7CB8-1E09-489F-9547-DB3EE8EA3F16}" = Microsoft SQL Server Native Client
  284. "{86177DAE-38B1-49DD-912E-35CB703AB779}" = Microsoft SQL Server VSS Writer
  285. "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
  286. "{90120000-002A-0416-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Portuguese (Brazil)) 2007
  287. "{90120000-002A-0816-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Portuguese (Portugal)) 2007
  288. "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
  289. "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
  290. "{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = Lenovo Bluetooth with Enhanced Data Rate Software
  291. "{A508D5A2-3AC1-4594-A718-A663D6D3CF11}" = Windows Live Remote Service Resources
  292. "{a9264802-8a7a-40fe-a135-5c6d204aed7a}.sdb" = Internet Explorer (Enable DEP)
  293. "{B7693CDE-074B-301C-9584-FC4343696C8B}" = Microsoft .NET Framework 4 Client Profile PTB Language Pack
  294. "{CFF3C688-2198-4BC3-A399-598226949C39}" = Windows Live Remote Client Resources
  295. "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
  296. "{DE274C2F-D9E5-4DE7-96FC-5D18DC5A71FD}" = Broadcom Management Programs
  297. "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
  298. "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
  299. "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
  300. "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer
  301. "3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass  (07/28/2009 6.2.0.9800)
  302. "6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth  (07/30/2009 6.2.0.9405)
  303. "6B8550A319DDC8B17F35F4A89988705E4592349B" = Windows Driver Package - Broadcom Bluetooth  (06/15/2009 6.2.0.9000)
  304. "92F4CDC794E6E4E29DC063D292D1C94F6FA1EA1E" = Pacote de Driver do Windows - Lenovo (ACPIVPC) System  (05/19/2009 4.4.0.1)
  305. "CCleaner" = CCleaner
  306. "CNXT_AUDIO_HDA" = Conexant HD Audio
  307. "Defraggler" = Defraggler
  308. "HDMI" = Intel(R) Graphics Media Accelerator Driver
  309. "Lenovo EasyCamera" = Lenovo EasyCamera
  310. "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
  311. "Microsoft .NET Framework 4 Client Profile PTB Language Pack" = Pacote de Idiomas do Microsoft .NET Framework 4 Client Profile - Português (Brasil)
  312.  
  313. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  314. "{06E6E30D-B498-442F-A943-07DE41D7F785}" = Microsoft Search Enhancement Pack
  315. "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
  316. "{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
  317. "{17542DBF-E17C-4562-BC4D-FA3EF3076C45}" = Lenovo ReadyComm 5
  318. "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
  319. "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
  320. "{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
  321. "{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 29
  322. "{26A24AE4-039D-4CA4-87B4-2F83217005FF}" = Java(TM) 7 Update 5
  323. "{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
  324. "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
  325. "{3889988F-762B-4B85-AB17-71C9CC3AE445}" = Messenger Companion
  326. "{39B3184E-0BFB-40FA-ADDC-E7E2D535CDA9}" = Controle ActiveX do Windows Live Mesh para Conexões Remotas
  327. "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
  328. "{43B43577-2514-4CE0-B14A-7E85C17C0453}" = Windows Live Essentials
  329. "{4664ED39-C80A-48F7-93CD-EBDCAFAB6CC5}" = Windows Live Writer Resources
  330. "{489337CC-B52A-45DC-A3C3-1C2AECF1AEC8}_is1" = Planagri versão 6.0
  331. "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
  332. "{4F7177E9-2B54-48B4-AAFD-03FA1F87A542}" = Bing Bar Platform
  333. "{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}" = Google Earth
  334. "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
  335. "{644063FA-ABA3-42AC-A8AC-3EDC0706018B}" = Windows Live Mesh
  336. "{65CB4C08-C47B-4A7E-A6A4-50C06ADA5FC6}" = Adobe AIR
  337. "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
  338. "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
  339. "{76C66170-C538-4E77-B54D-48E136B5B533}" = Lenovo ReadyComm 5.0 Service
  340. "{78A96B4C-A643-4D0F-98C2-A8E16A6669F9}" = Windows Live Messenger Companion Core
  341. "{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1" = Need For Speed™ World
  342. "{7CAC6A44-C3DE-4153-ACA6-7524602C789E}" = Facebook Video Calling 1.2.0.159
  343. "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
  344. "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
  345. "{8991E763-21F5-4DEA-A938-5D9D77DCB488}" = Broadcom 802.11 Wireless Driver
  346. "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
  347. "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
  348. "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
  349. "{90120000-0015-0816-0000-0000000FF1CE}" = Microsoft Office Access MUI (Portuguese (Portugal)) 2007
  350. "{90120000-0015-0816-0000-0000000FF1CE}_PROHYBRIDR_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
  351. "{90120000-0016-0416-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Portuguese (Brazil)) 2007
  352. "{90120000-0016-0416-0000-0000000FF1CE}_HOMESTUDENTR_{AD3E8EF1-E885-4068-BC73-16C0649FEBF0}" = Microsoft Office 2007 Service Pack 3 (SP3)
  353. "{90120000-0016-0816-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Portuguese (Portugal)) 2007
  354. "{90120000-0016-0816-0000-0000000FF1CE}_PROHYBRIDR_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
  355. "{90120000-0018-0416-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Portuguese (Brazil)) 2007
  356. "{90120000-0018-0416-0000-0000000FF1CE}_HOMESTUDENTR_{AD3E8EF1-E885-4068-BC73-16C0649FEBF0}" = Microsoft Office 2007 Service Pack 3 (SP3)
  357. "{90120000-0018-0816-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Portuguese (Portugal)) 2007
  358. "{90120000-0018-0816-0000-0000000FF1CE}_PROHYBRIDR_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
  359. "{90120000-0019-0816-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Portuguese (Portugal)) 2007
  360. "{90120000-0019-0816-0000-0000000FF1CE}_PROHYBRIDR_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
  361. "{90120000-001A-0816-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Portuguese (Portugal)) 2007
  362. "{90120000-001A-0816-0000-0000000FF1CE}_PROHYBRIDR_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
  363. "{90120000-001B-0416-0000-0000000FF1CE}" = Microsoft Office Word MUI (Portuguese (Brazil)) 2007
  364. "{90120000-001B-0416-0000-0000000FF1CE}_HOMESTUDENTR_{AD3E8EF1-E885-4068-BC73-16C0649FEBF0}" = Microsoft Office 2007 Service Pack 3 (SP3)
  365. "{90120000-001B-0816-0000-0000000FF1CE}" = Microsoft Office Word MUI (Portuguese (Portugal)) 2007
  366. "{90120000-001B-0816-0000-0000000FF1CE}_PROHYBRIDR_{F812A9CD-23C6-4BBC-B168-ED2C68B0F003}" = Microsoft Office 2007 Service Pack 3 (SP3)
  367. "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
  368. "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  369. "{90120000-001F-0409-0000-0000000FF1CE}_PROHYBRIDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  370. "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
  371. "{90120000-001F-040C-0000-0000000FF1CE}_PROHYBRIDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  372. "{90120000-001F-0416-0000-0000000FF1CE}" = Microsoft Office Proof (Portuguese (Brazil)) 2007
  373. "{90120000-001F-0416-0000-0000000FF1CE}_HOMESTUDENTR_{8A524694-0CA4-476A-9301-B1E9D70FC952}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  374. "{90120000-001F-0816-0000-0000000FF1CE}" = Microsoft Office Proof (Portuguese (Portugal)) 2007
  375. "{90120000-001F-0816-0000-0000000FF1CE}_PROHYBRIDR_{C8246FCF-12F8-4212-BC89-6ED049BA2FB8}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  376. "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
  377. "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  378. "{90120000-001F-0C0A-0000-0000000FF1CE}_PROHYBRIDR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
  379. "{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
  380. "{90120000-002A-0000-1000-0000000FF1CE}_PROHYBRIDR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
  381. "{90120000-002A-0416-1000-0000000FF1CE}_HOMESTUDENTR_{51530CD1-8244-4E0F-B536-BCCC05325C7F}" = Microsoft Office 2007 Service Pack 3 (SP3)
  382. "{90120000-002A-0816-1000-0000000FF1CE}_PROHYBRIDR_{5E03E01D-304F-474D-B85F-06B2C9AE0583}" = Microsoft Office 2007 Service Pack 3 (SP3)
  383. "{90120000-002C-0416-0000-0000000FF1CE}" = Microsoft Office Proofing (Portuguese (Brazil)) 2007
  384. "{90120000-002C-0816-0000-0000000FF1CE}" = Microsoft Office Proofing (Portuguese (Portugal)) 2007
  385. "{90120000-006E-0416-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Portuguese (Brazil)) 2007
  386. "{90120000-006E-0416-0000-0000000FF1CE}_HOMESTUDENTR_{51530CD1-8244-4E0F-B536-BCCC05325C7F}" = Microsoft Office 2007 Service Pack 3 (SP3)
  387. "{90120000-006E-0816-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Portuguese (Portugal)) 2007
  388. "{90120000-006E-0816-0000-0000000FF1CE}_PROHYBRIDR_{5E03E01D-304F-474D-B85F-06B2C9AE0583}" = Microsoft Office 2007 Service Pack 3 (SP3)
  389. "{90120000-00A1-0416-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Portuguese (Brazil)) 2007
  390. "{90120000-00A1-0416-0000-0000000FF1CE}_HOMESTUDENTR_{AD3E8EF1-E885-4068-BC73-16C0649FEBF0}" = Microsoft Office 2007 Service Pack 3 (SP3)
  391. "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
  392. "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
  393. "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
  394. "{91120000-0031-0000-0000-0000000FF1CE}" = Microsoft Office Professional Hybrid 2007
  395. "{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
  396. "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
  397. "{95140000-007A-0416-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
  398. "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
  399. "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
  400. "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
  401. "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
  402. "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
  403. "{9DA3F03B-2CEE-4344-838E-117861E61FAF}" = Windows Live Mail
  404. "{A199DB88-E22D-4CE7-90AC-B8BE396D7BF4}" = Windows Live Movie Maker
  405. "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
  406. "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
  407. "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
  408. "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.5
  409. "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
  410. "{AC76BA86-7AD7-1046-7B44-A95000000001}" = Adobe Reader 9.5.1 - Português
  411. "{B33B61FE-701F-425F-98AB-2B85725CBF68}" = Windows Live Photo Common
  412. "{B3BE54A4-8DFE-4593-8E66-56AB7133B812}" = Windows Live Writer
  413. "{B95B1BA9-F887-4B3C-8D3A-CCD4C4675120}" = Microsoft Default Manager
  414. "{C9E1343D-E21E-4508-A1BE-04A089EC137D}" = Windows Live Messenger
  415. "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
  416. "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
  417. "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
  418. "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
  419. "{DF71ABBB-B834-41C0-BB58-80B0545D754C}" = Windows Live UX Platform Language Pack
  420. "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
  421. "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
  422. "{EC7FE03D-239A-4E36-9907-0E327922D2A2}" = bpd_scan
  423. "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
  424. "{F7A46527-DF1F-4B0F-9637-98547E189442}" = Windows Live Galeria de Fotos
  425. "{FE7AD27A-62B1-44F6-B69C-25D1ECA94F5D}" = Lenovo EasyCamera
  426. "Adobe AIR" = Adobe AIR
  427. "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
  428. "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
  429. "Adobe Shockwave Player" = Adobe Shockwave Player 11.6
  430. "EasyCapture4.0" = EasyCapture
  431. "HijackThis" = HijackThis 1.99.1
  432. "HOMESTUDENTR" = Microsoft Office Home and Student 2007
  433. "InstallShield_{20471B27-D702-4FE8-8DEC-0702CC8C0A85}" = InterVideo WinDVD 8
  434. "InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}" = Lenovo OneKey Recovery
  435. "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware versão 1.61.0.1400
  436. "P.R. Vade-mécum Brasil 2008-09" = P.R. Vade-mécum Brasil 2008-09
  437. "PROHYBRIDR" = 2007 Microsoft Office system
  438. "RuralPro 2010_is1" = RuralPro 2010
  439. "The Proxomitron - Universal Web Filter_is1" = The Proxomitron Ver. Naoko-4.5
  440. "VeriFace" = VeriFace
  441. "WinLiveSuite" = Windows Live Essentials
  442. "WinRAR archiver" = Arquivo do WinRAR
  443.  
  444. [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color]
  445.  
  446. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
  447. "PointBlank" = PointBlank
  448.  
  449. [color=#E56717]========== Last 20 Event Log Errors ==========[/color]
  450.  
  451. [ Application Events ]
  452. Error - 23/06/2012 09:45:32 | Computer Name = Moraes-PC | Source = VSS | ID = 13
  453. Description =
  454.  
  455. Error - 23/06/2012 09:45:32 | Computer Name = Moraes-PC | Source = VSS | ID = 12292
  456. Description =
  457.  
  458. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = VSS | ID = 13
  459. Description =
  460.  
  461. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = VSS | ID = 12292
  462. Description =
  463.  
  464. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = VSS | ID = 8193
  465. Description =
  466.  
  467. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = System Restore | ID = 8193
  468. Description =
  469.  
  470. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = VSS | ID = 13
  471. Description =
  472.  
  473. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = VSS | ID = 12292
  474. Description =
  475.  
  476. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = VSS | ID = 8193
  477. Description =
  478.  
  479. Error - 23/06/2012 10:51:23 | Computer Name = Moraes-PC | Source = System Restore | ID = 8193
  480. Description =
  481.  
  482. [ OSession Events ]
  483. Error - 04/06/2011 07:26:57 | Computer Name = Moraes-PC | Source = Microsoft Office 12 Sessions | ID = 7001
  484. Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
  485.  12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3189085
  486.  seconds with 660 seconds of active time.  This session ended with a crash.
  487.  
  488. [ System Events ]
  489. Error - 26/06/2012 12:23:59 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 31004
  490. Description =
  491.  
  492. Error - 26/06/2012 12:30:38 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 31004
  493. Description =
  494.  
  495. Error - 26/06/2012 12:30:41 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 31004
  496. Description =
  497.  
  498. Error - 26/06/2012 12:30:41 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 31004
  499. Description =
  500.  
  501. Error - 26/06/2012 12:43:21 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 31004
  502. Description =
  503.  
  504. Error - 26/06/2012 12:43:21 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 30013
  505. Description =
  506.  
  507. Error - 26/06/2012 12:43:21 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 34001
  508. Description =
  509.  
  510. Error - 26/06/2012 12:51:14 | Computer Name = Moraes-PC | Source = DCOM | ID = 10016
  511. Description =
  512.  
  513. Error - 26/06/2012 12:51:14 | Computer Name = Moraes-PC | Source = DCOM | ID = 10016
  514. Description =
  515.  
  516. Error - 26/06/2012 15:54:01 | Computer Name = Moraes-PC | Source = ipnathlp | ID = 30013
  517. Description =
  518.  
  519.  
  520. < End of report >