Logo Hardware.com.br
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas

como configurar diretiva de segurança local?

#1 Por johnny1406 22/06/2010 - 19:08
Como posso aumentar a segurança interna usando essa ferramenta?? Alguém entende de código binário? Pois eu já postei um tópico aqui sobre conta desconhecida após formatar o windows e o problema ainda continua aparecendo que o propietário do disco local C: é
S-1-5-21-647415592-1238355543-1152292295-1001 e nas pastas de amostra de imagens, amostra de vídeos diz que o proprietário é Conta desconhecida(S-1-5-21-1707938003-3620065225-122919045-1000). Vcs não acham isso estranho??
Responder
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas
#3 Por johnny1406
25/06/2010 - 11:43
não consegui identificar nada e uma coisa que eu acho interessante é que formatei a máquina e instalei o windows 64bits e acredito eu que por padrão o proprietário do diretório c: tá como trustedinstaller. segue um log de varredura do registro feito após formatação, no caso de ter postado errado isso por favor me encaminhe para o local correto.

Logfile of Advanced SystemCare 3 Registry Scan
Scan Date: 24/06/2010
OS Platform: Windows 7
x64 Bit: Yes
ASC Version: 3.6.0.712
Problems Count: 339
-----------------------------
[Extensões não usadas]
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\Directory N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Network\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Network\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Network\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Printers\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Printers\DevModePerUser\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Printers\DevModes2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\AppDataLow\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Printers\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Printers\DevModePerUser\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Printers\DevModes2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\AppDataLow\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Keyboard Layout\Toggle\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Printers\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Printers\DevModePerUser\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Printers\DevModes2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Keyboard Layout\Toggle\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Printers\DevModePerUser\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Control Panel\Appearance\Schemes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Control Panel\Desktop\LanguageConfiguration\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Remote Assistance\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Control Panel\Appearance\Schemes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Control Panel\Desktop\LanguageConfiguration\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Remote Assistance\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Control Panel\Desktop\LanguageConfiguration\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Control Panel\Personalization\Desktop Slideshow\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Remote Assistance\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\System\CurrentControlSet\Policies\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\CTF\HiddenDummyLayouts\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\CTF\TIP\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Fax\FaxOptions\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Fax\Setup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Fax\UserInfo\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\InternetRegistry\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\LowRegistry\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchUrl\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Services\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\PeerNet\Event_Config\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\SideShow\Gadgets\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\wfs\DraftsView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\wfs\InboxView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\wfs\IncomingView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\wfs\OutboxView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\wfs\SentItemsView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Wisp\MultiTouch\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\SystemCertificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Policies\Power\PowerSettings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\CTF\HiddenDummyLayouts\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\CTF\TIP\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Fax\FaxOptions\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Fax\Setup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Fax\UserInfo\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\InternetRegistry\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\LowRegistry\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchUrl\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Services\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\PeerNet\Event_Config\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\SideShow\Gadgets\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\wfs\DraftsView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\wfs\InboxView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\wfs\IncomingView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\wfs\OutboxView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\wfs\SentItemsView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Wisp\MultiTouch\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\SystemCertificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Policies\Power\PowerSettings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\CTF\DirectSwitchHotkeys\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\CTF\HiddenDummyLayouts\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\CTF\TIP\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\EventSystem\{26c409cc-ae86-11d1-b616-00805fc79216}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Fax\FaxOptions\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Fax\Setup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Fax\UserInfo\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\Help_Menu_URLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\IntelliForms\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\InternetRegistry\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\PageSetup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\SearchUrl\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\TypedURLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\Zoom\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Microsoft Management Console\Settings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\PeerNet\Event_Config\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\RAS AutoDial\Default\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SideShow\Gadgets\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\My\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\wfs\DraftsView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\wfs\InboxView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\wfs\IncomingView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\wfs\OutboxView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\wfs\SentItemsView\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows Script Host\Settings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Wisp\MultiTouch\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Power\PowerSettings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Cryptography\CertificateTemplateCache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\CTF\DirectSwitchHotkeys\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\CTF\HiddenDummyLayouts\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\CTF\TIP\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\My\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\AppEvents\Schemes\Apps\Explorer\ActivatingDocument\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\AppEvents\Schemes\Apps\Explorer\MoveMenuItem\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\CTF\SortOrder\Language\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Fax\fxsclnt\Archive\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Fax\fxsclnt\Confirm\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\TabletPC\TabSetup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\Windows Error Reporting\Hangs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows NT\CurrentVersion\EFS\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\System\CurrentControlSet\Control\Network\NetworkLocationWizard\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\AppEvents\Schemes\Apps\Explorer\ActivatingDocument\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\AppEvents\Schemes\Apps\Explorer\MoveMenuItem\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\CTF\SortOrder\Language\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Fax\fxsclnt\Archive\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Fax\fxsclnt\Confirm\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\TabletPC\TabSetup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\Windows Error Reporting\Hangs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows NT\CurrentVersion\EFS\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\System\CurrentControlSet\Control\Network\NetworkLocationWizard\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\CTF\SortOrder\Language\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Fax\fxsclnt\Archive\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Fax\fxsclnt\Confirm\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\BrowserEmulation\LowMic\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\IETld\LowMic\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\LowRegistry\DontShowMeThisDialogAgain\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\MediaPlayer\Health\{59836042-5DCB-45FD-BAF0-5C82ACD16FEA}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\MediaPlayer\Preferences\VideoSettings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\MSF\Registration\Listen\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\CA\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\CA\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\CA\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\Disallowed\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\Disallowed\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\Disallowed\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\Root\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\Root\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\Root\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\SmartCardRoot\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\SmartCardRoot\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\SmartCardRoot\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\trust\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\trust\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\trust\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\TrustedPeople\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\TrustedPeople\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\TrustedPeople\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\TrustedPublisher\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\SystemCertificates\TrustedPublisher\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Run\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\RunOnceEx\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\TabletPC\TabSetup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\Windows Error Reporting\Hangs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows Mail\Trident\Main\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows Mail\Trident\Settings\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows NT\CurrentVersion\EFS\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\CTF\SortOrder\Language\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\CA\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\CA\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\CA\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Disallowed\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Disallowed\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Disallowed\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Root\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Root\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\Root\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\SmartCardRoot\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\SmartCardRoot\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\SmartCardRoot\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\trust\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\trust\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\trust\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\TrustedPeople\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\TrustedPeople\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\SystemCertificates\TrustedPeople\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\Devices\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows NT\CurrentVersion\PrinterPorts\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\SYSTEM\CurrentControlSet\Control\NetTrace\Session\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Wisp\Pen\SysEventParameters\CustomFlickCommands\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Wisp\Pen\SysEventParameters\FlickCommands\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Wisp\Pen\SysEventParameters\CustomFlickCommands\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Wisp\Pen\SysEventParameters\FlickCommands\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\LowRegistry\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\HomeGroup\Printers\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wpad\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Wisp\Pen\SysEventParameters\CustomFlickCommands\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Wisp\Pen\SysEventParameters\FlickCommands\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\CA\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\CA\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\CA\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\Disallowed\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\Disallowed\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\Disallowed\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\trust\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\trust\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\trust\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\TrustedPeople\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\TrustedPeople\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\TrustedPeople\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\SystemCertificates\TrustedPublisher\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\Windows\System\Scripts\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Wow6432Node\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\CA\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\CA\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\CA\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\Disallowed\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\Disallowed\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\Disallowed\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\trust\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\trust\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\trust\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\TrustedPeople\Certificates\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\TrustedPeople\CRLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Policies\Microsoft\SystemCertificates\TrustedPeople\CTLs\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Http Filters\RPA\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\Bubbles\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\Bubbles\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\Mystify\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\Mystify\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\Ribbons\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\Ribbons\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\ssText3d\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Screensavers\ssText3d\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Telephony\HandoffPriorities\MediaModes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Http Filters\RPA\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\P3P\History\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\Bubbles\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\Bubbles\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\Mystify\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\Mystify\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\Ribbons\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\Ribbons\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\ssText3d\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Screensavers\ssText3d\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Telephony\HandoffPriorities\MediaModes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{01979c6a-42fa-414c-b8aa-eee2c8202018}.check.100\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{01979c6a-42fa-414c-b8aa-eee2c8202018}.check.101\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{11CD958A-C507-4EF3-B3F2-5FD9DFBD2C78}.check.101\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{A5268B8E-7DB5-465b-BAB7-BDCDA39A394A}.check.100\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{DAB69A6A-4D2A-4D44-94BF-E0091898C881}.check.100\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{E8433B72-5842-4d43-8645-BC2C35960837}.check.101\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{E8433B72-5842-4d43-8645-BC2C35960837}.check.102\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{E8433B72-5842-4d43-8645-BC2C35960837}.check.104\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Checks\{E8433B72-5842-4d43-8645-BC2C35960837}.check.106\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Favorites\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{35be3244-7fea-11df-ac46-806e6f6e6963}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{35be3245-7fea-11df-ac46-806e6f6e6963}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\FontSmoothing\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\Themes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\LowCache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Http Filters\RPA\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Passport\LowDAMap\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\Bubbles\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\Bubbles\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\Mystify\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\Mystify\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\Ribbons\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\Ribbons\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\ssText3d\Screen 1\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Screensavers\ssText3d\Screen 2\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Telephony\HandoffPriorities\MediaModes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Telephony\HandoffPriorities\MediaModes\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-19\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-20\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Providers\EventLog\{01979c6a-42fa-414c-b8aa-eee2c8202018}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Providers\EventLog\{11CD958A-C507-4EF3-B3F2-5FD9DFBD2C78}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Providers\EventLog\{945a8954-c147-4acd-923f-40c45405a658}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Providers\EventLog\{A5268B8E-7DB5-465b-BAB7-BDCDA39A394A}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Action Center\Providers\EventLog\{DAB69A6A-4D2A-4D44-94BF-E0091898C881}\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\OpenWithList\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\Directory\OpenWithList\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\LogonSoundHasBeenPlayed\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\RunStuffHasBeenRun\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\StartupHasBeenRun\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\SessionInfo\1\WHCIconStartup\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ N/A
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\Cache\ N/A
[Deep Scan]
HKEY_CURRENT_USER\Software\Microsoft\Windows Media\WMSDK\Namespace\ LocalDelta C:\Users\joao\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNSD.XML
[Deep Scan]
HKEY_CURRENT_USER\Software\Microsoft\Windows Media\WMSDK\Namespace\ RemoteDelta C:\Users\joao\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNSR.XML
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MediaPlayer\ MetadataTemplatesDir %ProgramFiles%\Windows Media Player\Templates
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\IE UserData NT\ BackupFileName C:\Program Files (x86)\Uninstall Information\IE UserData NT\IE UserData NT.DAT
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\IE UserData NT\ BackupPath C:\Program Files (x86)\Uninstall Information\IE UserData NT
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\IE.HKCUZoneInfo\ BackupFileName C:\Program Files (x86)\Uninstall Information\IE.HKCUZoneInfo\IE.HKCUZoneInfo.DAT
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\IE.HKCUZoneInfo\ InstallINFFile C:\Users\ADMINI~1\AppData\Local\Temp\RGI7DD.tmp
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\IE40.UserAgent\ BackupFileName C:\Program Files (x86)\Uninstall Information\IE40.UserAgent\IE40.UserAgent.DAT
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\IE40.UserAgent\ InstallINFFile C:\Users\ADMINI~1\AppData\Local\Temp\RGI7CC.tmp
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Advanced INF Setup\mshtml.Install\ BackupFileName C:\Program Files (x86)\Uninstall Information\mshtml.Install\mshtml.Install.DAT
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\MAIN\ Local Page C:\Windows\SysWOW64\blank.htm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{7d3830aa-e69e-4e17-8bd1-1b87b97099da}\ HelpTopic C:\Windows\Help\tpmadmin.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{7d3830aa-e69e-4e17-8bd1-1b87b97099da}\ LinkedHelpTopics C:\Windows\Help\tpmadmin.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{8A1A4AD2-7F9F-492c-9E1D-F725E3CBF2F0}\ HelpTopic %WINDIR%\Help\applocker_help.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{a1bc4eca-66b2-44e8-9915-be02e84438ba}\ HelpTopic C:\Windows\Help\nap.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{a1bc4eca-66b2-44e8-9915-be02e84438ba}\ LinkHelpTopic C:\Windows\Help\nap.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{a1bc4ecb-66b2-44e8-9915-be02e84438ba}\ HelpTopic C:\Windows\Help\nap.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{a1bc4ecb-66b2-44e8-9915-be02e84438ba}\ LinkHelpTopic C:\Windows\Help\nap.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba12}\ HelpTopic C:\Windows\Help\AuthFW.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba12}\ LinkedHelpTopics C:\Windows\Help\AuthFW.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba13}\ HelpTopic C:\Windows\Help\AuthFW.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be01-7a4cbb6cba13}\ LinkedHelpTopics C:\Windows\Help\AuthFW.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be02-7a4cbb7cbe11}\ HelpTopic C:\Windows\Help\AuthFW.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ac-fe9c-4368-be02-7a4cbb7cbe11}\ LinkedHelpTopics C:\Windows\Help\AuthFW.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ad-fe9c-4363-be05-7a4cbb7cb510}\ HelpTopic C:\Windows\Help\eventviewer.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ad-fe9c-4363-be05-7a4cbb7cb510}\ LinkedHelpTopics C:\Windows\Help\eventviewer.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}\ HelpTopic C:\Windows\Help\eventviewer.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{b05566ae-fe9c-4363-be05-7a4cbb7cb510}\ LinkedHelpTopics C:\Windows\Help\eventviewer.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{c7b8fb06-bfe1-4c2e-9217-7a69a95bbac4}\ HelpTopic C:\Windows\Help\taskscheduler.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{c7b8fb06-bfe1-4c2e-9217-7a69a95bbac4}\ LinkedHelpTopics C:\Windows\Help\taskscheduler.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}\ HelpTopic C:\Windows\Help\taskscheduler.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\MMC\SnapIns\FX:{c7b8fb07-bfe1-4c2e-9217-7a69a95bbac4}\ LinkedHelpTopic C:\Windows\Help\taskscheduler.chm
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a5a2d52a-4944-47c4-a3e0-8bd92e14d953}\ AppPath C:\Windows\SysWOW64\xpsviewer
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Url History\ Directory C:\Windows\History
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RenameFiles\Sys\ %systemroot%\ime\shared
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\explorer\VolumeCaches\System error minidump files\ Folder %WINDIR%\Minidump
[Deep Scan]
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\ Directory C:\Windows\Temporary Internet Files
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows Media\WMSDK\Namespace\ LocalDelta C:\Users\joao\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNSD.XML
[Deep Scan]
HKEY_USERS\S-1-5-21-2693014143-4082403371-1572729054-1000\Software\Microsoft\Windows Media\WMSDK\Namespace\ RemoteDelta C:\Users\joao\AppData\Local\Microsoft\Windows Media\12.0\WMSDKNSR.XML
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas
#5 Por johnny1406
25/06/2010 - 11:57
dando um F12 ao ligar a máquina e escolhendo pra iniciar com onboard usb or cd room, nas opções de pasta escolhendo pra mostrar pastas ocultas protegidas pelo sistema nesse local "C:\ProgramData\Microsoft\Crypto\RSA" há duas subpastas, "MachineKeys" e "S-1-5-18" sendo que na S-1-5-18 dá acesso negado e tbm nesse outro local "D:\$RECYCLE.BIN" onde mostra a lixeira oculta e uma pasta "S-1-5-21-4154979339-1786972493-1150926165-1000" com acesso negado ao abrir.
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas
#7 Por johnny1406
26/06/2010 - 01:58
eu to fazendo a formatação da seguinte forma, reinicio a máquina com o cd de instalação do windows no drive e do F12 pra entrar no FAST BOOT e escolho pra iniciar "Onboard or USB CD ROOM drive" aí pressionar qqr tecla pra iniciar, já na tela onde mostra as partições escolho pra mostrar as opções avançadas para escolher o que fazer nas partições, formatar, excluir, extender, escolho pra formatar e começo a instalação. seguindo esses mesmos passos, eu já formatei os dois volumes deletei ambos e criei um novo e de nd adiantou pois a primeira coisa que faço é scanear com o system care e sempre aparece esses erros
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas
#9 Por johnny1406
26/06/2010 - 08:36
nesse caso de ser original ou não a manifestação disso acredito eu que não vem daí pois qdo descobri isso >>>> "D:\$RECYCLE.BIN" + "S-1-5-21-4154979339-1786972493-1150926165-1000", eu ainda usava o windows vista e que era software original, desde então ainda com o vista formatei a máquina algumas vezes pois comecei a perceber que em algumas pastas aparecia "S-1-5-21-4154979339-1786972493-1150926165-1000". esse caminho >>> "C:\ProgramData\Microsoft\Crypto\RSA" há duas subpastas, "MachineKeys", S-1-5-18, o manifesto não seria daí o início pra criar essa combinação??? e tem outro fato bem curioso é que usando o S.O 32bits com o Vista original acontecia a mesma coisa mostrando que o propietário do disco local C: é
S-1-5-21-647415592-1238355543-1152292295-1001 e nas pastas de amostra de imagens, amostra de vídeos diz que o proprietário é Conta desconhecida(S-1-5-21-1707938003-3620065225-122919045-1000) e no seven 32bits igual, o seven não é orginal mas no CD tem a opção pra x86 ou x64, vendo que não tava tendo resultado eu resolvi instalar o x64 e não criou no disco C:\ as permissões pra essa combinação e sim o padrão sendo proprietário do C:\ trustedinstaller e em todo seu conteúdo, esse log que postei foi logo após ter instalado o 64bits.
boslotim
boslotim Tô em todas Registrado
1.4K Mensagens 107 Curtidas
#13 Por boslotim
26/06/2010 - 09:29
Amigo,

Já pensou na possibilidade de ser vírus?

Mesmo você deletando todas as partições e criando de novo, um vírus poderia contaminar o pc através de um backup, pendriver, etc.

Em caso de ser vírus, seria bom instalar um bom antivírus e atualizar ele antes de fazer qualquer backup para qualquer partição deste hd. Seria bom uma instalação de um programa de proteção contra pendrive contaminados por vírus que usam o autorum como meio de infeçção. Ou desabilitar o atutorun do windows para evitar a contaminação direta ao espetar um pendrive na USB.

Rode o programa hijackthis em seu pc e coloque aqui o log para que os colegas entendidos possa analizar para você.
Assim, um "sábio" discorda do outro e expoe também suas idéias, que se tornam vagas, se analisadas por um 3º sábio. E isso não tem fim...Muito diferente de toda essa confusão, é o Perfeito pensamento e Palavras de Deus.
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas
#14 Por johnny1406
30/06/2010 - 16:25
todoas as minhas músicas e fotos que eu tinha na partição D: eu gravei tudo em dvd, há a possibilidade no caso de ser vírus ele ter sido gravado junto no backup? nesse caso de meus backups estarem contaminados tem algum jeito de não contaminar o computador ao passar os arquivos do dvd pro hd? que antivirus vcs recomendam? eu to usando o microsoft security essencials que na minha opinião não é dos melhores, dos que oferecem pra testar por 30 dias eu já usei o avast, o avg, o avira, o panda e o norton, o avg foi o único que encontrou vírus, no caso da proteção de pendrive qual indicam tbm? eu formatei a máquina novamente e ainda não encontrei vestígios dessa combinação como sendo proprietário ou como havia ocorrendo, porém neste caminho "C:\ProgramData\Microsoft\Crypto\RSA\S-1-5-18" na pasta S-1-5-18 tem um arquivo com esse nome e tive que alterar as permissões pois negava acesso "5d91c0b736f4f8dbdd317cf8a037fced_be269ca2-ae74-4a6d-a2f1-3ba20d3fcf7c" nas propriedades diz que é arquivo do sistema, abrindo ele com o bloco de notas ele diz isso "HomeGroupEncryptionKeyContainer" nesse outro "C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys" na pasta machinekeys tem 9 arquivos dizendo ser do sistema mas tbm dá acesso negado ao abrir nesse "b875f0688c65aa4fbe46599856799f95_be269ca2-ae74-4a6d-a2f1-3ba20d3fcf7c" apareceu isso " % œ À ü b41abee6-54d8-4386-b85c-43dc35303e94 RSA1ˆ K”}aö÷˜ÄBzÍ…{ñþ;µD³÷“ K…;ä¡!íB†súu]µÖœªzòÏýÜæá0Xø9{W´Ÿ«aáX+‰0ÊAà9 Š”
Ãß^½64wÛsƒh…H†ï_n-õ‡#ª·É²ÅÑ*Lð‹0ÝÅ ÐŒßÑŒz ÀO—ë
Ç0¥QE™ÇŒg¯™‚¡ , C r y p t o A P I P r i v a t e K e y f rÚ¨Àc¹q>›0øl2a!J3Ä#¡Ï™Ì¸« € W½-”–T¹™Q·‡
zï½±[H¡øþf’iQ÷ÎL'À [¦„;õ’ø‹ºÇÊf¸Hš)_Mº¤
¯Lx/êßãñ”®iŒ¦_î-âtÒB½ž†ZTžÿ»­·ËÔRßíµìó¾È¿\ûlSV8[>7yGéÊK,}E Y÷U9ùù»üö‹¬áy¿E‰@çqìv¹ýî¡s•[þºê“€7ìò;@Gηíiõ6—0÷•_aóÝŸäc’+ÃÙ+<Œ•ä‹ÆðH”è<ÜóéþOç䯯ˆq+&Íü€*BÙÞwɃ|5Ôýø·ô4bRÈŸ—ÖI½s9ÛãìÒ¦ø¹P=Óan¡×™zrbï¦H‹iäÎÛjô8xÕÊ…÷§ØyW^Þ“
5kŽÉŽôekõt{µ[
‰ðR+“®¼'¥˜ï4ñVÑŠ2•Ád1Óà_Zkúy¦Ó…³!ëQ·þ´ Þ¶kDf|µsC¬á:&À®ˆ‚+øDµpWú ‹Y‘ýGȆ¦ßƒøZáÄ®¾ÜŠ¾z¤
hæ¶5§o‰ÌŒb³irý5²ÂG8è §¹K© yB΃O¶æZïQ‡7‡#IÇj3ààŽA‘ëÕ?賚r^8“¶5¦Ã‚¡KŽÍ¦ÁTæ¿Ñs)ïƼ³’ç÷ßß
la Mqž¦ªkÛ±M4_Ö7†¤
O¥ ˡШwì\ši‹v)ÃØÎ#§Ìê+1¹«ó×¹¢ª«L±K'²”­×°ÚsÂ2Ašv“‰›‡åíÈËî¼g÷j+מ3g+Ê}P™D³L/'ýd0‰òíVÆ¡Q¬&V
~Ž¦÷Úg±MIŒdY·ÏÏ›áÖ_
ÔåXÑCÍ­
ÜzÀF«®2üqDž÷ÇbÝçÊÝ'"wÜG—èaŠjÓªLü"F@ ™¹‘²c(í”Úê:¶>K‹Én›Øý¸uƒ[2mÔ6±×û|mˆxŒ*€ ùm¡§z“5Ò»ªV´_h¹~ ÐŒßÑŒz ÀO—ë
Ç0¥QE™ÇŒg¯™‚¡ E x p o r t F l a g f 9_hàPé·}ð¯Õß =\~K‡¡ŠÏ‹PhpæíÓ € úÿC<,¨Ôê¤Ã^¬j!’µcSDîÍ:ÁD A†g ´P+s¾ŸüUÖ¡A@ Š¬r‰æ®œÌ
johnny1406
johnny1406 Membro Junior Registrado
77 Mensagens 0 Curtidas
#15 Por johnny1406
30/06/2010 - 16:33
segue log do hijack o malwarebytes não encontrou nd

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:25:29, on 30/06/2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\joao\Desktop\HiJackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO DE REDE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO DE REDE')
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 4795 bytes
Responder Tópico
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal