Advertisement
Guest User

Untitled

a guest
Oct 16th, 2016
98
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 32.64 KB | None | 0 0
  1. 29634 21:12:16 (0) ** WMIDiag v2.2 started on sábado, 15 de outubro de 2016 at 21:07.
  2. 29635 21:12:16 (0) **
  3. 29636 21:12:16 (0) ** Copyright (c) Microsoft Corporation. All rights reserved - July 2007.
  4. 29637 21:12:16 (0) **
  5. 29638 21:12:16 (0) ** This script is not supported under any Microsoft standard support program or service.
  6. 29639 21:12:16 (0) ** The script is provided AS IS without warranty of any kind. Microsoft further disclaims all
  7. 29640 21:12:16 (0) ** implied warranties including, without limitation, any implied warranties of merchantability
  8. 29641 21:12:16 (0) ** or of fitness for a particular purpose. The entire risk arising out of the use or performance
  9. 29642 21:12:16 (0) ** of the scripts and documentation remains with you. In no event shall Microsoft, its authors,
  10. 29643 21:12:16 (0) ** or anyone else involved in the creation, production, or delivery of the script be liable for
  11. 29644 21:12:16 (0) ** any damages whatsoever (including, without limitation, damages for loss of business profits,
  12. 29645 21:12:16 (0) ** business interruption, loss of business information, or other pecuniary loss) arising out of
  13. 29646 21:12:16 (0) ** the use of or inability to use the script or documentation, even if Microsoft has been advised
  14. 29647 21:12:16 (0) ** of the possibility of such damages.
  15. 29648 21:12:16 (0) **
  16. 29649 21:12:16 (0) **
  17. 29650 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  18. 29651 21:12:16 (0) ** ----------------------------------------------------- WMI REPORT: BEGIN ----------------------------------------------------------
  19. 29652 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  20. 29653 21:12:16 (0) **
  21. 29654 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  22. 29655 21:12:16 (0) ** Windows 7 - Service Pack 1 - 64-bit (7601) - User 'PAULOSTAVIS-DPC\PAULO STAVIS' on computer 'PAULOSTAVIS-DPC'.
  23. 29656 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  24. 29657 21:12:16 (0) ** INFO: Environment: .................................................................................................. 1 ITEM(S)!
  25. 29658 21:12:16 (0) ** INFO: => 1 possible incorrect shutdown(s) detected on:
  26. 29659 21:12:16 (0) ** - Shutdown on 06 October 2016 10:33:04 (GMT-0).
  27. 29660 21:12:16 (0) **
  28. 29661 21:12:16 (0) ** System drive: ....................................................................................................... C: (Disk #0 Partition #1).
  29. 29662 21:12:16 (0) ** Drive type: ......................................................................................................... IDE (ST1000DM003-1CH162 ATA Device).
  30. 29663 21:12:16 (0) ** There are no missing WMI system files: .............................................................................. OK.
  31. 29664 21:12:16 (0) ** There are no missing WMI repository files: .......................................................................... OK.
  32. 29665 21:12:16 (0) ** WMI repository state: ............................................................................................... N/A.
  33. 29666 21:12:16 (0) ** AFTER running WMIDiag:
  34. 29667 21:12:16 (0) ** The WMI repository has a size of: ................................................................................... 23 MB.
  35. 29668 21:12:16 (0) ** - Disk free space on 'C:': .......................................................................................... 291202 MB.
  36. 29669 21:12:16 (0) ** - INDEX.BTR, 5087232 bytes, 15/10/2016 21:10:54
  37. 29670 21:12:16 (0) ** - MAPPING1.MAP, 62700 bytes, 15/10/2016 16:29:08
  38. 29671 21:12:16 (0) ** - MAPPING2.MAP, 62700 bytes, 15/10/2016 21:04:43
  39. 29672 21:12:16 (0) ** - OBJECTS.DATA, 18980864 bytes, 15/10/2016 21:10:54
  40. 29673 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  41. 29674 21:12:16 (2) !! WARNING: Windows Firewall: .......................................................................................... DISABLED.
  42. 29675 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  43. 29676 21:12:16 (0) ** DCOM Status: ........................................................................................................ OK.
  44. 29677 21:12:16 (0) ** WMI registry setup: ................................................................................................. OK.
  45. 29678 21:12:16 (0) ** INFO: WMI service has dependents: ................................................................................... 2 SERVICE(S)!
  46. 29679 21:12:16 (0) ** - Security Center (WSCSVC, StartMode='Automatic')
  47. 29680 21:12:16 (0) ** - Internet Connection Sharing (ICS) (SHAREDACCESS, StartMode='Disabled')
  48. 29681 21:12:16 (0) ** => If the WMI service is stopped, the listed service(s) will have to be stopped as well.
  49. 29682 21:12:16 (0) ** Note: If the service is marked with (*), it means that the service/application uses WMI but
  50. 29683 21:12:16 (0) ** there is no hard dependency on WMI. However, if the WMI service is stopped,
  51. 29684 21:12:16 (0) ** this can prevent the service/application to work as expected.
  52. 29685 21:12:16 (0) **
  53. 29686 21:12:16 (0) ** RPCSS service: ...................................................................................................... OK (Already started).
  54. 29687 21:12:16 (0) ** WINMGMT service: .................................................................................................... OK (Already started).
  55. 29688 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  56. 29689 21:12:16 (0) ** WMI service DCOM setup: ............................................................................................. OK.
  57. 29690 21:12:16 (2) !! WARNING: WMI DCOM components registration is missing for the following EXE/DLLs: .................................... 2 WARNING(S)!
  58. 29691 21:12:16 (0) ** - C:\WINDOWS\SYSTEM32\WBEM\IPMIPRV.DLL (\CLSID\{FD209E2E-813B-41C0-8646-4C3E9C917511}\InProcServer32)
  59. 29692 21:12:16 (0) ** - C:\WINDOWS\SYSTEM32\WBEM\SERVERCOMPPROV.DLL (\CLSID\{9042E1B1-8FD4-4008-89FE-4040CC74575A}\InProcServer32)
  60. 29693 21:12:16 (0) ** => WMI System components are not properly registered as COM objects, which could make WMI to
  61. 29694 21:12:16 (0) ** fail depending on the operation requested.
  62. 29695 21:12:16 (0) ** => For a .DLL, you can correct the DCOM configuration by executing the 'REGSVR32.EXE <Filename.DLL>' command.
  63. 29696 21:12:16 (0) **
  64. 29697 21:12:16 (0) ** WMI ProgID registrations: ........................................................................................... OK.
  65. 29698 21:12:16 (0) ** WMI provider DCOM registrations: .................................................................................... OK.
  66. 29699 21:12:16 (0) ** WMI provider CIM registrations: ..................................................................................... OK.
  67. 29700 21:12:16 (0) ** WMI provider CLSIDs: ................................................................................................ OK.
  68. 29701 21:12:16 (0) ** WMI providers EXE/DLL availability: ................................................................................. OK.
  69. 29702 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  70. 29703 21:12:16 (0) ** INFO: User Account Control (UAC): ................................................................................... DISABLED.
  71. 29704 21:12:16 (0) ** INFO: Local Account Filtering: ...................................................................................... ENABLED.
  72. 29705 21:12:16 (0) ** => WMI tasks remotely accessing WMI information on this computer and requiring Administrative
  73. 29706 21:12:16 (0) ** privileges MUST use a DOMAIN account part of the Local Administrators group of this computer
  74. 29707 21:12:16 (0) ** to ensure that administrative privileges are granted. If a Local User account is used for remote
  75. 29708 21:12:16 (0) ** accesses, it will be reduced to a plain user (filtered token), even if it is part of the Local Administrators group.
  76. 29709 21:12:16 (0) **
  77. 29710 21:12:16 (0) ** DCOM security for 'My Computer' (Access Permissions/Edit Limits): ................................................... MODIFIED.
  78. 29711 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\ANONYMOUS LOGON' has been REMOVED!
  79. 29712 21:12:16 (0) ** - REMOVED ACE:
  80. 29713 21:12:16 (0) ** ACEType: &h0
  81. 29714 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  82. 29715 21:12:16 (0) ** ACEFlags: &h0
  83. 29716 21:12:16 (0) ** ACEMask: &h3
  84. 29717 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  85. 29718 21:12:16 (0) ** DCOM_RIGHT_ACCESS_LOCAL
  86. 29719 21:12:16 (0) **
  87. 29720 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  88. 29721 21:12:16 (0) ** Removing default security will cause some operations to fail!
  89. 29722 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  90. 29723 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  91. 29724 21:12:16 (0) **
  92. 29725 21:12:16 (0) ** DCOM security for 'My Computer' (Access Permissions/Edit Limits): ................................................... MODIFIED.
  93. 29726 21:12:16 (1) !! ERROR: Default trustee 'BUILTIN\PERFORMANCE LOG USERS' has been REMOVED!
  94. 29727 21:12:16 (0) ** - REMOVED ACE:
  95. 29728 21:12:16 (0) ** ACEType: &h0
  96. 29729 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  97. 29730 21:12:16 (0) ** ACEFlags: &h0
  98. 29731 21:12:16 (0) ** ACEMask: &h7
  99. 29732 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  100. 29733 21:12:16 (0) ** DCOM_RIGHT_ACCESS_LOCAL
  101. 29734 21:12:16 (0) ** DCOM_RIGHT_ACCESS_REMOTE
  102. 29735 21:12:16 (0) **
  103. 29736 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  104. 29737 21:12:16 (0) ** Removing default security will cause some operations to fail!
  105. 29738 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  106. 29739 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  107. 29740 21:12:16 (0) **
  108. 29741 21:12:16 (0) ** DCOM security for 'My Computer' (Access Permissions/Edit Limits): ................................................... MODIFIED.
  109. 29742 21:12:16 (1) !! ERROR: Default trustee 'EVERYONE' has been REMOVED!
  110. 29743 21:12:16 (0) ** - REMOVED ACE:
  111. 29744 21:12:16 (0) ** ACEType: &h0
  112. 29745 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  113. 29746 21:12:16 (0) ** ACEFlags: &h0
  114. 29747 21:12:16 (0) ** ACEMask: &h7
  115. 29748 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  116. 29749 21:12:16 (0) ** DCOM_RIGHT_ACCESS_LOCAL
  117. 29750 21:12:16 (0) ** DCOM_RIGHT_ACCESS_REMOTE
  118. 29751 21:12:16 (0) **
  119. 29752 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  120. 29753 21:12:16 (0) ** Removing default security will cause some operations to fail!
  121. 29754 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  122. 29755 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  123. 29756 21:12:16 (0) **
  124. 29757 21:12:16 (0) ** DCOM security for 'My Computer' (Launch & Activation Permissions/Edit Default): ..................................... MODIFIED.
  125. 29758 21:12:16 (1) !! ERROR: Default trustee 'BUILTIN\ADMINISTRATORS' has been REMOVED!
  126. 29759 21:12:16 (0) ** - REMOVED ACE:
  127. 29760 21:12:16 (0) ** ACEType: &h0
  128. 29761 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  129. 29762 21:12:16 (0) ** ACEFlags: &h0
  130. 29763 21:12:16 (0) ** ACEMask: &h1F
  131. 29764 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  132. 29765 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  133. 29766 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  134. 29767 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  135. 29768 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  136. 29769 21:12:16 (0) **
  137. 29770 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  138. 29771 21:12:16 (0) ** Removing default security will cause some operations to fail!
  139. 29772 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  140. 29773 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  141. 29774 21:12:16 (0) **
  142. 29775 21:12:16 (0) ** DCOM security for 'My Computer' (Launch & Activation Permissions/Edit Default): ..................................... MODIFIED.
  143. 29776 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\INTERACTIVE' has been REMOVED!
  144. 29777 21:12:16 (0) ** - REMOVED ACE:
  145. 29778 21:12:16 (0) ** ACEType: &h0
  146. 29779 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  147. 29780 21:12:16 (0) ** ACEFlags: &h0
  148. 29781 21:12:16 (0) ** ACEMask: &h1F
  149. 29782 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  150. 29783 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  151. 29784 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  152. 29785 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  153. 29786 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  154. 29787 21:12:16 (0) **
  155. 29788 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  156. 29789 21:12:16 (0) ** Removing default security will cause some operations to fail!
  157. 29790 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  158. 29791 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  159. 29792 21:12:16 (0) **
  160. 29793 21:12:16 (0) ** DCOM security for 'My Computer' (Launch & Activation Permissions/Edit Default): ..................................... MODIFIED.
  161. 29794 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\SYSTEM' has been REMOVED!
  162. 29795 21:12:16 (0) ** - REMOVED ACE:
  163. 29796 21:12:16 (0) ** ACEType: &h0
  164. 29797 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  165. 29798 21:12:16 (0) ** ACEFlags: &h0
  166. 29799 21:12:16 (0) ** ACEMask: &h1F
  167. 29800 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  168. 29801 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  169. 29802 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  170. 29803 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  171. 29804 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  172. 29805 21:12:16 (0) **
  173. 29806 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  174. 29807 21:12:16 (0) ** Removing default security will cause some operations to fail!
  175. 29808 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  176. 29809 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  177. 29810 21:12:16 (0) **
  178. 29811 21:12:16 (0) ** DCOM security for 'My Computer' (Launch & Activation Permissions/Edit Limits): ...................................... MODIFIED.
  179. 29812 21:12:16 (1) !! ERROR: Default trustee 'BUILTIN\ADMINISTRATORS' has been REMOVED!
  180. 29813 21:12:16 (0) ** - REMOVED ACE:
  181. 29814 21:12:16 (0) ** ACEType: &h0
  182. 29815 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  183. 29816 21:12:16 (0) ** ACEFlags: &h0
  184. 29817 21:12:16 (0) ** ACEMask: &h1F
  185. 29818 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  186. 29819 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  187. 29820 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  188. 29821 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  189. 29822 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  190. 29823 21:12:16 (0) **
  191. 29824 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  192. 29825 21:12:16 (0) ** Removing default security will cause some operations to fail!
  193. 29826 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  194. 29827 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  195. 29828 21:12:16 (0) **
  196. 29829 21:12:16 (0) ** DCOM security for 'My Computer' (Launch & Activation Permissions/Edit Limits): ...................................... MODIFIED.
  197. 29830 21:12:16 (1) !! ERROR: Default trustee 'BUILTIN\PERFORMANCE LOG USERS' has been REMOVED!
  198. 29831 21:12:16 (0) ** - REMOVED ACE:
  199. 29832 21:12:16 (0) ** ACEType: &h0
  200. 29833 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  201. 29834 21:12:16 (0) ** ACEFlags: &h0
  202. 29835 21:12:16 (0) ** ACEMask: &h1F
  203. 29836 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  204. 29837 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  205. 29838 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  206. 29839 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  207. 29840 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  208. 29841 21:12:16 (0) **
  209. 29842 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  210. 29843 21:12:16 (0) ** Removing default security will cause some operations to fail!
  211. 29844 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  212. 29845 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  213. 29846 21:12:16 (0) **
  214. 29847 21:12:16 (0) ** DCOM security for 'My Computer' (Launch & Activation Permissions/Edit Limits): ...................................... MODIFIED.
  215. 29848 21:12:16 (1) !! ERROR: Default trustee 'EVERYONE' has been REMOVED!
  216. 29849 21:12:16 (0) ** - REMOVED ACE:
  217. 29850 21:12:16 (0) ** ACEType: &h0
  218. 29851 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  219. 29852 21:12:16 (0) ** ACEFlags: &h0
  220. 29853 21:12:16 (0) ** ACEMask: &hB
  221. 29854 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  222. 29855 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  223. 29856 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  224. 29857 21:12:16 (0) **
  225. 29858 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  226. 29859 21:12:16 (0) ** Removing default security will cause some operations to fail!
  227. 29860 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  228. 29861 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  229. 29862 21:12:16 (0) **
  230. 29863 21:12:16 (0) ** DCOM security for 'Microsoft WMI Provider Subsystem Host' (Launch & Activation Permissions): ........................ MODIFIED.
  231. 29864 21:12:16 (1) !! ERROR: Default trustee 'BUILTIN\ADMINISTRATORS' has been REMOVED!
  232. 29865 21:12:16 (0) ** - REMOVED ACE:
  233. 29866 21:12:16 (0) ** ACEType: &h0
  234. 29867 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  235. 29868 21:12:16 (0) ** ACEFlags: &h0
  236. 29869 21:12:16 (0) ** ACEMask: &h1F
  237. 29870 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  238. 29871 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  239. 29872 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  240. 29873 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  241. 29874 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  242. 29875 21:12:16 (0) **
  243. 29876 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  244. 29877 21:12:16 (0) ** Removing default security will cause some operations to fail!
  245. 29878 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  246. 29879 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  247. 29880 21:12:16 (0) **
  248. 29881 21:12:16 (0) ** DCOM security for 'Microsoft WMI Provider Subsystem Host' (Launch & Activation Permissions): ........................ MODIFIED.
  249. 29882 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\INTERACTIVE' has been REMOVED!
  250. 29883 21:12:16 (0) ** - REMOVED ACE:
  251. 29884 21:12:16 (0) ** ACEType: &h0
  252. 29885 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  253. 29886 21:12:16 (0) ** ACEFlags: &h0
  254. 29887 21:12:16 (0) ** ACEMask: &h1F
  255. 29888 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  256. 29889 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  257. 29890 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  258. 29891 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  259. 29892 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  260. 29893 21:12:16 (0) **
  261. 29894 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  262. 29895 21:12:16 (0) ** Removing default security will cause some operations to fail!
  263. 29896 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  264. 29897 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  265. 29898 21:12:16 (0) **
  266. 29899 21:12:16 (0) ** DCOM security for 'Microsoft WMI Provider Subsystem Host' (Launch & Activation Permissions): ........................ MODIFIED.
  267. 29900 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\SYSTEM' has been REMOVED!
  268. 29901 21:12:16 (0) ** - REMOVED ACE:
  269. 29902 21:12:16 (0) ** ACEType: &h0
  270. 29903 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  271. 29904 21:12:16 (0) ** ACEFlags: &h0
  272. 29905 21:12:16 (0) ** ACEMask: &h1F
  273. 29906 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  274. 29907 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  275. 29908 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  276. 29909 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  277. 29910 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  278. 29911 21:12:16 (0) **
  279. 29912 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  280. 29913 21:12:16 (0) ** Removing default security will cause some operations to fail!
  281. 29914 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  282. 29915 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  283. 29916 21:12:16 (0) **
  284. 29917 21:12:16 (0) ** DCOM security for 'Microsoft WMI Provider Subsystem Host' (Launch & Activation Permissions): ........................ MODIFIED.
  285. 29918 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\NETWORK SERVICE' has been REMOVED!
  286. 29919 21:12:16 (0) ** - REMOVED ACE:
  287. 29920 21:12:16 (0) ** ACEType: &h0
  288. 29921 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  289. 29922 21:12:16 (0) ** ACEFlags: &h0
  290. 29923 21:12:16 (0) ** ACEMask: &h1F
  291. 29924 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  292. 29925 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  293. 29926 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  294. 29927 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  295. 29928 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  296. 29929 21:12:16 (0) **
  297. 29930 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  298. 29931 21:12:16 (0) ** Removing default security will cause some operations to fail!
  299. 29932 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  300. 29933 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  301. 29934 21:12:16 (0) **
  302. 29935 21:12:16 (0) ** DCOM security for 'Microsoft WMI Provider Subsystem Host' (Launch & Activation Permissions): ........................ MODIFIED.
  303. 29936 21:12:16 (1) !! ERROR: Default trustee 'NT AUTHORITY\LOCAL SERVICE' has been REMOVED!
  304. 29937 21:12:16 (0) ** - REMOVED ACE:
  305. 29938 21:12:16 (0) ** ACEType: &h0
  306. 29939 21:12:16 (0) ** ACCESS_ALLOWED_ACE_TYPE
  307. 29940 21:12:16 (0) ** ACEFlags: &h0
  308. 29941 21:12:16 (0) ** ACEMask: &h1F
  309. 29942 21:12:16 (0) ** DCOM_RIGHT_EXECUTE
  310. 29943 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_LOCAL
  311. 29944 21:12:16 (0) ** DCOM_RIGHT_LAUNCH_REMOTE
  312. 29945 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_LOCAL
  313. 29946 21:12:16 (0) ** DCOM_RIGHT_ACTIVATE_REMOTE
  314. 29947 21:12:16 (0) **
  315. 29948 21:12:16 (0) ** => The REMOVED ACE was part of the DEFAULT setup for the trustee.
  316. 29949 21:12:16 (0) ** Removing default security will cause some operations to fail!
  317. 29950 21:12:16 (0) ** It is possible to fix this issue by editing the security descriptor and adding the ACE.
  318. 29951 21:12:16 (0) ** For DCOM objects, this can be done with 'DCOMCNFG.EXE'.
  319. 29952 21:12:16 (0) **
  320. 29953 21:12:16 (0) **
  321. 29954 21:12:16 (0) ** DCOM security warning(s) detected: .................................................................................. 0.
  322. 29955 21:12:16 (0) ** DCOM security error(s) detected: .................................................................................... 14.
  323. 29956 21:12:16 (0) ** WMI security warning(s) detected: ................................................................................... 0.
  324. 29957 21:12:16 (0) ** WMI security error(s) detected: ..................................................................................... 0.
  325. 29958 21:12:16 (0) **
  326. 29959 21:12:16 (1) !! ERROR: Overall DCOM security status: ................................................................................ ERROR!
  327. 29960 21:12:16 (0) ** Overall WMI security status: ........................................................................................ OK.
  328. 29961 21:12:16 (0) ** - Started at 'Root' --------------------------------------------------------------------------------------------------------------
  329. 29962 21:12:16 (0) ** INFO: WMI permanent SUBSCRIPTION(S): ................................................................................ 2.
  330. 29963 21:12:16 (0) ** - ROOT/SUBSCRIPTION, CommandLineEventConsumer.Name="BVTConsumer".
  331. 29964 21:12:16 (0) ** 'SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99'
  332. 29965 21:12:16 (0) ** - ROOT/SUBSCRIPTION, NTEventLogEventConsumer.Name="SCM Event Log Consumer".
  333. 29966 21:12:16 (0) ** 'select * from MSFT_SCMEventLogEvent'
  334. 29967 21:12:16 (0) **
  335. 29968 21:12:16 (0) ** WMI TIMER instruction(s): ........................................................................................... NONE.
  336. 29969 21:12:16 (0) ** INFO: WMI namespace(s) requiring PACKET PRIVACY: .................................................................... 4 NAMESPACE(S)!
  337. 29970 21:12:16 (0) ** - ROOT/CIMV2/SECURITY/MICROSOFTTPM.
  338. 29971 21:12:16 (0) ** - ROOT/CIMV2/SECURITY/MICROSOFTVOLUMEENCRYPTION.
  339. 29972 21:12:16 (0) ** - ROOT/CIMV2/TERMINALSERVICES.
  340. 29973 21:12:16 (0) ** - ROOT/SERVICEMODEL.
  341. 29974 21:12:16 (0) ** => When remotely connecting, the namespace(s) listed require(s) the WMI client to
  342. 29975 21:12:16 (0) ** use an encrypted connection by specifying the PACKET PRIVACY authentication level.
  343. 29976 21:12:16 (0) ** (RPC_C_AUTHN_LEVEL_PKT_PRIVACY or PktPrivacy flags)
  344. 29977 21:12:16 (0) ** i.e. 'WMIC.EXE /NODE:"PAULOSTAVIS-DPC" /AUTHLEVEL:Pktprivacy /NAMESPACE:\\ROOT\SERVICEMODEL Class __SystemSecurity'
  345. 29978 21:12:16 (0) **
  346. 29979 21:12:16 (0) ** WMI MONIKER CONNECTIONS: ............................................................................................ OK.
  347. 29980 21:12:16 (0) ** WMI CONNECTIONS: .................................................................................................... OK.
  348. 29981 21:12:16 (0) ** WMI GET operations: ................................................................................................. OK.
  349. 29982 21:12:16 (0) ** WMI MOF representations: ............................................................................................ OK.
  350. 29983 21:12:16 (0) ** WMI QUALIFIER access operations: .................................................................................... OK.
  351. 29984 21:12:16 (0) ** WMI ENUMERATION operations: ......................................................................................... OK.
  352. 29985 21:12:16 (0) ** WMI EXECQUERY operations: ........................................................................................... OK.
  353. 29986 21:12:16 (1) !! ERROR: WMI GET VALUE operation errors reported: ..................................................................... 1 ERROR(S)!
  354. 29987 21:12:16 (0) ** - Root/CIMV2, Instance: Win32_Service='WSCSVC', Property: Displayname='Central de Segurança' (Expected default='Security Center').
  355. 29988 21:12:16 (0) **
  356. 29989 21:12:16 (0) ** WMI WRITE operations: ............................................................................................... NOT TESTED.
  357. 29990 21:12:16 (0) ** WMI PUT operations: ................................................................................................. NOT TESTED.
  358. 29991 21:12:16 (0) ** WMI DELETE operations: .............................................................................................. NOT TESTED.
  359. 29992 21:12:16 (0) ** WMI static instances retrieved: ..................................................................................... 1788.
  360. 29993 21:12:16 (0) ** WMI dynamic instances retrieved: .................................................................................... 0.
  361. 29994 21:12:16 (0) ** WMI instance request cancellations (to limit performance impact): ................................................... 1.
  362. 29995 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  363. 29996 21:12:16 (0) ** # of Event Log events BEFORE WMIDiag execution since the last 20 day(s):
  364. 29997 21:12:16 (0) ** DCOM: ............................................................................................................. 0.
  365. 29998 21:12:16 (0) ** WINMGMT: .......................................................................................................... 0.
  366. 29999 21:12:16 (0) ** WMIADAPTER: ....................................................................................................... 0.
  367. 30000 21:12:16 (0) **
  368. 30001 21:12:16 (0) ** # of additional Event Log events AFTER WMIDiag execution:
  369. 30002 21:12:16 (0) ** DCOM: ............................................................................................................. 0.
  370. 30003 21:12:16 (0) ** WINMGMT: .......................................................................................................... 0.
  371. 30004 21:12:16 (0) ** WMIADAPTER: ....................................................................................................... 0.
  372. 30005 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  373. 30006 21:12:16 (0) ** WMI Registry key setup: ............................................................................................. OK.
  374. 30007 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  375. 30008 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  376. 30009 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  377. 30010 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  378. 30011 21:12:16 (0) **
  379. 30012 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  380. 30013 21:12:16 (0) ** ------------------------------------------------------ WMI REPORT: END -----------------------------------------------------------
  381. 30014 21:12:16 (0) ** ----------------------------------------------------------------------------------------------------------------------------------
  382. 30015 21:12:16 (0) **
  383. 30016 21:12:16 (0) ** ERROR: WMIDiag detected issues that could prevent WMI to work properly!. Check 'C:\USERS\PAULO STAVIS\APPDATA\LOCAL\TEMP\WMIDIAG-V2.2_WIN7_.CLI.SP1.64_PAULOSTAVIS-DPC_2016.10.15_21.07.24.LOG' for details.
  384. 30017 21:12:16 (0) **
  385. 30018 21:12:16 (0) ** WMIDiag v2.2 ended on sábado, 15 de outubro de 2016 at 21:12 (W:86 E:25 S:1).
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement