Resultado do análise da Farbar Recovery Scan Tool (FRST) (x64) Versão: 04-07-2022 Executado por Diego (administrador) em COMPUTADOR (Micro-Star International Co., Ltd. MS-7D09) (04-07-2022 20:14:38) Executando a partir de C:\Users\Diego\Desktop Perfis Carregados: Diego Plataforma: Microsoft Windows 11 Pro Versão 21H2 22000.778 (X64) Idioma: Inglês (Estados Unidos) -> Português (Brasil) Navegador padrão: Opera Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.425.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\103.0.1264.44\msedgewebview2.exe <6> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe (DriverStore\FileRepository\cui_dch.inf_amd64_95bc605201b64517\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_95bc605201b64517\igfxEMN.exe (explorer.exe ->) (Adobe Inc. -> Adobe Systems Inc.) [Arquivo não assinado] C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe (explorer.exe ->) (Appwork GmbH -> AppWork GmbH) C:\Users\Diego\AppData\Local\JDownloader 2.0\JDownloader2.exe (explorer.exe ->) (F.lux Software LLC -> f.lux Software LLC) C:\Users\Diego\AppData\Local\FluxSoftware\Flux\flux.exe (explorer.exe ->) (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIRWE.EXE (explorer.exe ->) (Tonec Inc.) [Arquivo não assinado] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (explorer.exe ->) (Travis Nickles -> Ryochan7) C:\Program Files\DS4Windows\DS4Windows.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Users\Diego\AppData\Local\Google\Update\1.3.36.132\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Users\Diego\AppData\Local\Google\Update\1.3.36.132\GoogleCrashHandler64.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <12> (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (services.exe ->) (ABBYY Production LLC -> ABBYY Production LLC) C:\Program Files (x86)\Common Files\ABBYY\FineReader\15\Licensing\NetworkLicenseServer.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\FoxitPDFEditorUpdateService.exe (services.exe ->) (GuinpinSoft inc) [Arquivo não assinado] C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.2.0_x64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_95bc605201b64517\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_03b951be52cd2aa9\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_3ad50285c3647623\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe (services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe <2> (services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (services.exe ->) (Shenzhen Moyea Software -> Leawo Software) C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe (svchost.exe ->) () [Arquivo não assinado] C:\Program Files\Ceiridge\ChromeDllInjector\ChromeDllInjector.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.425.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe (WordWeb Software -> WordWeb Software) C:\Program Files (x86)\WordWeb\wweb32.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_05fe713c4fadacd3\RtkAudUService64.exe [3477960 2022-04-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3427104 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2018-08-27] (Apple Inc. -> Apple Inc.) HKLM\...\Run: [PowerDVD21Agent] => C:\Program Files\CyberLink\PowerDVD21\PowerDVD21Agent.exe [564904 2021-08-19] (CyberLink Corp. -> CyberLink Corp.) HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [445800 2021-10-08] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [6607584 2022-03-07] (Adobe Inc. -> Adobe Systems Inc.) [Arquivo não assinado] HKLM\...\Run: [] => [X] HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [105280 2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1092304 2016-03-14] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [WordWeb] => C:\Program Files (x86)\WordWeb\wweb32.exe [106352 2022-05-05] (WordWeb Software -> WordWeb Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [708840 2022-04-26] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [289560 2022-06-29] (Intel Corporation -> Intel) HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [f.lux] => C:\Users\Diego\AppData\Local\FluxSoftware\Flux\flux.exe [1515848 2021-06-17] (F.lux Software LLC -> f.lux Software LLC) HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [346712 2020-07-27] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5861376 2022-04-16] (Tonec Inc.) [Arquivo não assinado] HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [BandwidthMonitor] => C:\Program Files (x86)\BandwidthMonitor\BWMonitor.exe [585728 2022-05-04] (BWMONITOR.COM) [Arquivo não assinado] HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [MicrosoftEdgeAutoLaunch_E645C02DD85363918E4F96458C83B102] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-06-30] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIRWE.EXE [417776 2014-11-13] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [36976728 2022-06-14] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\MountPoints2: {16f6bf82-605b-11ec-a33d-d8bbc1478807} - "D:\setup.exe" HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\SCREEN~1.SCR [28672 2020-02-04] (Brett Bartholomew - bartdart.com) [Arquivo não assinado] HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2022-03-02] (Adobe Inc. -> Adobe Systems Inc) HKLM\...\Print\Monitors\EPSON L395 Series 64MonitorBE: C:\Windows\system32\E_YLMBRWE.DLL [187392 2018-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2015-12-24] (SEIKO EPSON CORPORATION) [Arquivo não assinado] HKLM\...\Print\Monitors\PDF-XChange5-ABBYY-FR15: C:\Windows\system32\pxc50pmaf15.dll [57328 2018-12-04] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\103.0.5060.114\Installer\chrmstp.exe [2022-07-04] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\103.1.40.109\Installer\chrmstp.exe [2022-06-28] (Brave Software, Inc. -> Brave Software, Inc.) IFEO\osppsvc.exe: [VerifierDlls] SppExtComObjHook.dll IFEO\SppExtComObj.exe: [VerifierDlls] SppExtComObjHook.dll Startup: C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DS4Windows.lnk [2022-03-04] ShortcutTarget: DS4Windows.lnk -> C:\Program Files\DS4Windows\DS4Windows.exe (Travis Nickles -> Ryochan7) Startup: C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Lingvanex Translator.lnk [2021-12-28] ShortcutTarget: Lingvanex Translator.lnk -> C:\Users\Diego\AppData\Local\Apps\Lingvanex Translator\Translator.WPF.exe (Lingvanex) [Arquivo não assinado] Startup: C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\REDRAGON Gaming Mouse.lnk [2022-06-13] ShortcutTarget: REDRAGON Gaming Mouse.lnk -> C:\Program Files (x86)\REDRAGON Gaming Mouse\RDCfg.exe () [Arquivo não assinado] Policies: C:\ProgramData\NTUSER.pol: Restrição <==== ATENÇÃO ==================== Tarefas Agendadas (Whitelisted) ============ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {09C100BD-F871-428D-A876-2FB93CB9165F} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2022-06-24] (Bluestack Systems, Inc -> BlueStack Systems, Inc.) Task: {1010612D-64F1-4534-89FF-6D8F571AA5E8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {11BEF13F-8547-4496-B165-616CC8CB16C9} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2022-05-12] () [Arquivo não assinado] Task: {14E0365B-2AB9-4E17-8851-01CF3E474F64} - System32\Tasks\Opera scheduled Autoupdate 1639868093 => C:\Program Files\Opera\launcher.exe [2518000 2022-06-23] (Opera Norway AS -> Opera Software) Task: {18DFA9EA-25FA-4143-8D1A-56F9B98422FB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-18] (Google LLC -> Google LLC) Task: {202B26E0-3DA3-472D-8AEC-1BF5D5BF824F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2829915707-2987789524-1347783848-1001UA{D1952002-AE6D-4CF5-885C-507F2DD1BA21} => C:\Users\Diego\AppData\Local\Google\Update\GoogleUpdate.exe [156232 2022-03-23] (Google LLC -> Google LLC) Task: {2C6946F0-5347-4AE3-AA05-2C5B7E266A20} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-19] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {3D87F3CF-616A-4F43-B73A-6E25BDBD5EEF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-06-14] (Piriform Software Ltd -> Piriform) Task: {44FBF8A7-6845-4F5C-8827-5E2A52968F08} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4CF8D7EB-D525-4B9E-9E04-B6FE8B8A7AA5} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141232 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {4E99F00C-D638-4A52-B1B7-33E6B529A1D0} - System32\Tasks\CLToastRun => C:\Program Files (x86)\CyberLink\Shared files\CLToast.exe [2320256 2021-03-19] (CyberLink Corp. -> ) Task: {56190E6C-AA31-4ABB-B19B-D987A2EC7E72} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22797704 2021-12-10] (Microsoft Corporation -> Microsoft Corporation) Task: {6090FB50-DF34-4096-979E-85DC34B38AC9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22797704 2021-12-10] (Microsoft Corporation -> Microsoft Corporation) Task: {66AF6C80-3824-4F30-8591-51D22F5C938F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7644D854-A561-419B-9780-A4F8AF391645} - System32\Tasks\ChromeDllInjector => C:\Program Files\Ceiridge\ChromeDllInjector\ChromeDllInjector.exe [13824 2021-12-19] () [Arquivo não assinado] Task: {77FFFF4B-62FE-4D91-ADDF-313118C51A69} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2829915707-2987789524-1347783848-1001Core{64690DA6-4E48-4731-AF1F-F30035D96989} => C:\Users\Diego\AppData\Local\Google\Update\GoogleUpdate.exe [156232 2022-03-23] (Google LLC -> Google LLC) Task: {7A3A0B3A-3E3F-489A-8A16-11AEA97E3B79} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3427104 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {7D865BC9-3999-49B7-9D48-4D8A1D436503} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141232 2022-06-19] (Microsoft Corporation -> Microsoft Corporation) Task: {82074485-D448-47FE-AF43-40E3B28FF233} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-19] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {8CBD1D77-CAF4-4DBF-B7CC-812DAC573A05} - \Microsoft\Windows\NetService\Network\NetServices -> Nenhum Arquivo <==== ATENÇÃO Task: {92010152-C901-4B31-B2E3-23C4BF6154B8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [7053720 2021-12-19] (Microsoft Corporation -> Microsoft Corporation) Task: {A2FD6E80-9DFA-4F5F-9CE9-D00B7780C207} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A3CACA51-D764-4C2E-9B80-90C25255942B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {ACB34D59-10EE-4457-ADFA-365F72FB8C5A} - System32\Tasks\CLToast => C:\Program Files (x86)\CyberLink\Shared files\CLToast.exe [2320256 2021-03-19] (CyberLink Corp. -> ) Task: {ACB43EAE-7EFF-49F2-AE0A-7DB3CF0A6132} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [7053720 2021-12-19] (Microsoft Corporation -> Microsoft Corporation) Task: {BCA91CFD-288E-41F3-A645-4796E95F25C1} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {C5D9EF83-5FF0-409B-8822-7669A236B387} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-12-18] (Google LLC -> Google LLC) Task: {F21FDB5A-BC14-46D3-8F34-A325AF71EC31} - System32\Tasks\EPSON L395 Series Update {79890B40-EB93-4E38-8E75-D2660D466C02} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRWE.EXE [690536 2013-11-21] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {FABA60E7-4196-43B3-AE16-D5BD8079AA97} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2829915707-2987789524-1347783848-1001 => C:\ProgramData\MEGAsync\MEGAupdater.exe [2531496 2022-04-19] (Mega Limited -> ) Task: {FB36DFA8-0C50-4E26-8E7C-2953E509A8E3} - System32\Tasks\CCleanerSkipUAC - Diego => C:\Program Files\CCleaner\CCleaner.exe [31027800 2022-06-14] (Piriform Software Ltd -> Piriform Software Ltd) Task: {FFFB485C-2B9A-4678-B9B5-7BB9EEEE5BED} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe Task: C:\Windows\Tasks\EPSON L395 Series Update {79890B40-EB93-4E38-8E75-D2660D466C02}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSRWE.EXE:/EXE:{79890B40-EB93-4E38-8E75-D2660D466C02} /F:UpdateWORKGROUP\COMPUTADOR$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{4ac38aa6-1299-4f8b-a9e3-4a0d1730b952}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default [2022-07-04] Edge DownloadDir: Default -> C:\Users\Diego\Desktop Edge Extension: (uBlock Origin) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-06-19] Edge Extension: (Adobe Acrobat: ferramentas de edição, conversão e assinatura de PDFs) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-13] Edge Extension: (Dark Reader) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2022-06-29] Edge Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-05-27] Edge Extension: (IDM Integration Module) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2022-05-19] Edge Extension: (Autofill) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nlmmgnhgdeffjkdckmikfpnddkbbfkkk [2022-04-19] Edge Extension: (Open Multiple URLs) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oifijhaokejakekmnjmphonojcfkpbbh [2022-06-09] Edge Extension: (Google Sheets) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extension\aiokncckakibkfefmrkdfpjraolemmco\5.3.6._0 [2022-07-04] Edge Extension: (Update Manager) - C:\Users\Diego\AppData\Local\Microsoft\Edge\User Data\Default\Extension\iemjinpmpdjnfpennjqcjjmfiiiqockp\4.8.4._0 [2022-07-04] Edge Extension: (Bypass Paywalls Clean) - C:\Program Files\Google\Chrome\bypass-paywalls-chrome-clean-master [2021-12-19] [UpdateUrl:hxxps://gitlab.com/magnolia1234/bypass-paywalls-chrome-clean/-/raw/master/updates.xml] <==== ATENÇÃO Edge HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2022-03-24] FireFox: ======== FF DefaultProfile: ncnmu7zw.default FF ProfilePath: C:\Users\Diego\AppData\Roaming\Nvu\Profiles\9t7otw0z.default [2022-05-28] FF ProfilePath: C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\ncnmu7zw.default [2022-07-04] FF ProfilePath: C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release [2022-07-04] FF DownloadDir: C:\Users\Diego\Desktop FF Homepage: Mozilla\Firefox\Profiles\kdh3ln3w.default-release -> about:blank FF Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\@windscribeff.xpi [2022-06-29] FF Extension: (Dark Reader) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\addon@darkreader.org.xpi [2022-06-29] FF Extension: (IDM Integration Module) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\mozilla_cc3@internetdownloadmanager.com.xpi [2022-05-27] FF Extension: (Open Multiple URLs) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\openmultipleurls@ustat.de.xpi [2022-05-27] FF Extension: (uBlock Origin) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-07-02] FF Extension: (Adobe Acrobat) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\web2pdfextension.17@acrobat.adobe.com.xpi [2021-12-19] FF Extension: (Capturar imagem da página inteira - FireShot) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}.xpi [2022-06-29] FF Extension: (Autofill) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\{143f479b-4cb2-4d8c-8c31-ae8653bc6054}.xpi [2022-05-27] FF Extension: (Hide YouTube Metrics) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\{38da5a4c-5b6b-4fc4-980f-39e88f8725d0}.xpi [2021-12-19] FF Extension: (NoScript) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2022-06-29] FF Extension: (Bypass Paywalls Clean) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\{d133e097-46d9-4ecc-9903-fa6a722a6e0e}.xpi [2022-06-29] FF Extension: (Flag Cookies) - C:\Users\Diego\AppData\Roaming\Mozilla\Firefox\Profiles\kdh3ln3w.default-release\Extensions\{d8d0bc2b-45c2-404d-bb00-ce54305fc39c}.xpi [2022-06-29] FF HKLM\...\Firefox\Extensions: [FFExtnHTML2PDF@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi FF Extension: (Foxit PDF Creator) - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2021-09-25] [] FF HKLM\...\Firefox\Extensions: [FireFoxNew-WebExtensions@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\FirefoxAddin\FireFoxNew-WebExtensions@foxitsoftware.com.xpi FF Extension: (Foxit PDF Creator) - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\FirefoxAddin\FireFoxNew-WebExtensions@foxitsoftware.com.xpi [2021-09-25] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01] FF HKLM-x32\...\Firefox\Extensions: [FFExtnHTML2PDF@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi FF HKLM-x32\...\Firefox\Extensions: [FireFoxNew-WebExtensions@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\FirefoxAddin\FireFoxNew-WebExtensions@foxitsoftware.com.xpi FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Diego\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\Diego\AppData\Roaming\IDM\idmmzcc5 [2022-04-16] [] [não assinado] FF HKU\S-1-5-21-2829915707-2987789524-1347783848-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [] FF Plugin: @java.com/DTPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\dtplugin\npDeployJava1.dll [2022-06-23] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\plugin2\npjp2.dll [2022-06-23] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-12-19] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-03-02] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Nenhum Arquivo] FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [2021-11-05] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [2021-11-05] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [2021-11-05] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [2021-11-05] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [2021-11-05] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-12-19] (Microsoft Corporation -> Microsoft Corporation) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2018-08-27] Chrome: ======= CHR Profile: C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default [2022-07-04] CHR DownloadDir: C:\Users\Diego\Desktop CHR Extension: (uBlock Origin) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-06-21] CHR Extension: (Tampermonkey) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-05-12] CHR Extension: (Adobe Acrobat: ferramentas de edição, conversão e assinatura de PDFs) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-14] CHR Extension: (Dark Reader) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2022-06-30] CHR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-06-01] CHR Extension: (Documentos Google off-line) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-15] CHR Extension: (Hide Youtube Viewers and Ratings) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibdkcdjfoahbpcoajafabdokfdgcjijd [2022-05-19] CHR Extension: (Free VPN for Chrome - VPN Proxy VeePN) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2022-06-25] CHR Extension: (IDM Integration Module) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-05-09] CHR Extension: (Autofill) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmmgnhgdeffjkdckmikfpnddkbbfkkk [2022-04-19] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-18] CHR Extension: (Open Multiple URLs) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extensions\oifijhaokejakekmnjmphonojcfkpbbh [2022-06-09] CHR Extension: (Update Manager) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extension\aifnbdrrkiionmealkjqpncjnlcmqbfi\7.5.8._0 [2022-07-04] CHR Extension: (Google Sheets) - C:\Users\Diego\AppData\Local\Google\Chrome\User Data\Default\Extension\akqmfdarrbfnqieklrrecicrenkajqnq\7.8.1._0 [2022-07-03] CHR HKLM\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\ChromeAddin\ChromeAddin.crx [2021-09-25] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2022-03-24] CHR HKLM-x32\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\Creator\ChromeAddin\ChromeAddin.crx [2021-09-25] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2022-03-24] Opera: ======= OPR Profile: C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable [2022-07-04] OPR DownloadDir: C:\Users\Diego\Desktop OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Google Tradutor) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-09] OPR Extension: (Autoplay Settings for YouTube™) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\aogbgdnkcjgamgglpikcenliinchedel [2022-03-03] OPR Extension: (Foxit PDF Creator) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\cifnddnffldieaamihfkhkdgnbhfmaci [2021-12-23] OPR Extension: (uBlock Origin) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-06-19] OPR Extension: (Adobe Acrobat: ferramentas de edição, conversão e assinatura de PDFs) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-13] OPR Extension: (Dark Reader) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2022-06-29] OPR Extension: (Rich Hints Agent) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-07-01] OPR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-05-27] OPR Extension: (Opera Crypto Wallet) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-06-30] OPR Extension: (Hide Youtube Viewers and Ratings) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibdkcdjfoahbpcoajafabdokfdgcjijd [2022-05-17] OPR Extension: (Amazon Assistant Promotion) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-12-18] OPR Extension: (Install Chrome Extensions) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2021-12-21] OPR Extension: (Linkclump) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\lfpjkncokllnfokkgpkobnkbkmelfefj [2021-12-21] OPR Extension: (Bypass Paywalls Clean) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\lkbebcjgcmobigpeffafkodonchffocl [2022-07-03] [UpdateUrl:hxxps://gitlab.com/magnolia1234/bypass-paywalls-chrome-clean/-/raw/master/updates.xml] <==== ATENÇÃO OPR Extension: (IDM Integration Module) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-05-10] OPR Extension: (Autofill) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\nlmmgnhgdeffjkdckmikfpnddkbbfkkk [2022-04-18] OPR Extension: (Open Multiple URLs) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\oifijhaokejakekmnjmphonojcfkpbbh [2022-06-09] OPR Extension: (Flag Cookies) - C:\Users\Diego\AppData\Roaming\Opera Software\Opera Stable\Extensions\phcaemipbgodliopfijmcmlbdhpkbndb [2022-07-01] Brave: ======= BRA Profile: C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-07-04] BRA DownloadDir: C:\Users\Diego\Desktop BRA Extension: (uBlock Origin) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-06-27] BRA Extension: (Adobe Acrobat: ferramentas de edição, conversão e assinatura de PDFs) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-27] BRA Extension: (Dark Reader) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2022-07-02] BRA Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2022-06-27] BRA Extension: (Hide Youtube Viewers and Ratings) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ibdkcdjfoahbpcoajafabdokfdgcjijd [2022-05-27] BRA Extension: (IDM Integration Module) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-05-27] BRA Extension: (Autofill) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\nlmmgnhgdeffjkdckmikfpnddkbbfkkk [2022-04-19] BRA Extension: (Open Multiple URLs) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\oifijhaokejakekmnjmphonojcfkpbbh [2022-06-27] BRA Extension: (Bypass Paywalls Clean) - C:\Program Files\Google\Chrome\bypass-paywalls-chrome-clean-master [2021-12-19] [UpdateUrl:hxxps://gitlab.com/magnolia1234/bypass-paywalls-chrome-clean/-/raw/master/updates.xml] <==== ATENÇÃO BRA Extension: (Brave Local Data Files Updater) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-07-02] BRA Extension: (Brave NTP background images) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-03-10] BRA Extension: (Brave NTP sponsored images) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\bpndlkddhgpmjengabcakadpcabgflca [2022-07-02] BRA Extension: (Wallet Data Files Updater) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-06-27] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-07-02] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-10] BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese)) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\jpolmkeojnkicccihhepfbkhcbicimpa [2022-07-02] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Diego\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-07-02] ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 ABBYY.Licensing.FineReader.15.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\15\Licensing\NetworkLicenseServer.exe [1050864 2020-08-06] (ABBYY Production LLC -> ABBYY Production LLC) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3815712 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3580200 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-08-23] (Apple Inc. -> Apple Inc.) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-19] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-19] (Brave Software, Inc. -> BraveSoftware Inc.) R2 CdRomAccessAgentService; C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe [105672 2022-02-01] (Shenzhen Moyea Software -> Leawo Software) R2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.2.0_x64.exe [9728 2021-12-18] (GuinpinSoft inc) [Arquivo não assinado] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12129128 2021-12-10] (Microsoft Corporation -> Microsoft Corporation) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [40728 2022-06-29] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [189208 2022-06-29] (Intel Corporation -> Intel) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2022-03-03] (Epic Games Inc. -> Epic Games, Inc.) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) R2 FoxitPhantomPDFUpdateService; C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\FoxitPDFEditorUpdateService.exe [2363008 2021-09-24] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2133968 2022-05-24] (Rockstar Games, Inc. -> Rockstar Games) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6207688 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-22] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-22] (Microsoft Windows Publisher -> Microsoft Corporation) S2 EpsonCustomerResearchParticipation; "C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe" [X] ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 AcxHdAudio; C:\Windows\System32\drivers\AcxHdAudio.sys [552960 2022-06-23] (Microsoft Windows -> Microsoft Corporation) R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [321792 2022-06-24] (Bluestack Systems, Inc -> Bluestack System Inc.) R2 CLFCL5.21; C:\Windows\System32\drivers\CLFCL5.21\000.fcl [46752 2021-08-19] (CyberLink Corp. -> CyberLink Corp.) S3 e2f68; C:\Windows\System32\drivers\e2f68.sys [523120 2021-03-11] (INTELEPGSW2022 -> Intel Corporation) R1 ElbyCDIO; C:\Windows\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG) S3 Hsp; C:\Windows\System32\drivers\Hsp.sys [111960 2022-05-10] (Microsoft Windows -> Microsoft Corporation) R3 iaLPSS2_GPIO2_TGL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_cb8dd04b85ac9a58\iaLPSS2_GPIO2_TGL.sys [128680 2020-12-23] (Intel Corporation -> Intel Corporation) R3 MpKsl3091acc5; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4A076AD6-FE2A-4BC4-BCB2-FD11722D2075}\MpKslDrv.sys [141568 2022-07-04] (Microsoft Windows -> Microsoft Corporation) S3 tapwindscribe0901; C:\Windows\System32\drivers\tapwindscribe0901.sys [57768 2022-01-13] (Windscribe Limited -> The OpenVPN Project) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2018-05-04] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) R3 VClone; C:\Windows\System32\drivers\VClone.sys [44544 2020-02-22] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG) R1 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [165744 2020-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49576 2022-06-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [452856 2022-06-22] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-22] (Microsoft Windows -> Microsoft Corporation) S3 windtun420; C:\Windows\System32\drivers\windtun420.sys [47544 2022-01-13] (Windscribe Limited -> WireGuard LLC) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um mês (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2022-07-04 20:14 - 2022-07-04 20:14 - 000046753 _____ C:\Users\Diego\Desktop\FRST.txt 2022-07-04 20:12 - 2022-07-04 20:12 - 000009404 _____ C:\Users\Diego\Desktop\RELATOS.txt 2022-07-04 18:36 - 2022-07-04 18:36 - 002369024 _____ (Farbar) C:\Users\Diego\Desktop\FRST64.exe 2022-07-04 18:35 - 2022-07-04 18:35 - 000001438 _____ C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2022-07-04 18:35 - 2022-07-04 18:35 - 000001332 _____ C:\Users\Diego\Desktop\ESET Online Scanner.lnk 2022-07-04 18:35 - 2022-07-04 18:35 - 000000000 ____D C:\Users\Diego\AppData\Local\ESET 2022-07-04 18:21 - 2022-07-04 18:21 - 000249486 _____ C:\Users\Diego\Desktop\Informações sobre consulta .pdf 2022-07-04 14:41 - 2022-07-04 14:41 - 000000008 __RSH C:\ProgramData\ntuser.pol 2022-07-04 11:38 - 2022-07-04 11:38 - 000083764 _____ C:\ProgramData\agent.uninstall.1656945478.bdinstall.v2.bin 2022-07-03 23:22 - 2022-07-03 23:22 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2022-07-03 23:22 - 2022-07-03 23:22 - 000002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk 2022-07-03 23:22 - 2022-07-03 23:22 - 000002089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-07-03 23:22 - 2022-07-03 23:22 - 000002077 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk 2022-07-03 22:14 - 2022-07-03 22:17 - 000000000 ____D C:\AdwCleaner 2022-07-03 22:11 - 2022-07-04 20:14 - 000000000 ____D C:\FRST 2022-07-03 21:56 - 2022-07-03 21:56 - 000422164 _____ C:\ProgramData\cl.uninstall.1656896158.bdinstall.v2.bin 2022-07-03 21:24 - 2022-07-03 21:24 - 000000318 _____ C:\Windows\system32\httpproxy.json 2022-07-03 21:24 - 2022-07-03 21:24 - 000000027 _____ C:\Windows\system32\ctc.json 2022-07-03 21:13 - 2022-07-03 21:13 - 000628768 _____ C:\ProgramData\cl.1656893325.bdinstall.v2.bin 2022-07-03 21:13 - 2022-07-03 21:13 - 000110808 _____ C:\ProgramData\cl.kit.1656893322.bdinstall.v2.bin 2022-07-03 21:13 - 2022-07-03 21:13 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4 2022-07-03 21:10 - 2022-07-03 21:10 - 000000000 ____D C:\Windows\system32\elambkup 2022-07-03 21:10 - 2022-07-03 21:10 - 000000000 ____D C:\ProgramData\Gemma 2022-07-03 21:10 - 2022-07-03 21:10 - 000000000 ____D C:\ProgramData\BDLogging 2022-07-03 21:10 - 2022-07-03 21:10 - 000000000 ____D C:\ProgramData\Atc 2022-07-03 17:52 - 2022-07-03 21:49 - 002125634 _____ C:\Windows\ntbtlog.txt 2022-07-03 17:52 - 2022-07-03 21:49 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2022-06-30 13:37 - 2022-06-30 13:37 - 000001526 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2022-06-28 02:44 - 2022-07-01 20:23 - 000005933 _____ C:\Users\Diego\Desktop\VER HOJE.txt 2022-06-27 12:37 - 2022-07-01 15:53 - 010800780 _____ C:\Users\Diego\Desktop\ROTEIRO DIÁRIO - DIETA ATUAL - DIEGO.pdf 2022-06-26 03:36 - 2022-07-02 17:45 - 000000000 ____D C:\ProgramData\BlueStacks_nxt 2022-06-26 03:36 - 2022-06-26 03:36 - 000000000 ____D C:\Program Files\BlueStacks_nxt 2022-06-25 03:10 - 2022-06-25 03:10 - 000000071 _____ C:\Users\Diego\Desktop\VER.txt 2022-06-23 19:19 - 2022-06-23 19:19 - 000335872 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-06-23 19:19 - 2022-06-23 19:19 - 000015024 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-06-23 19:16 - 2022-06-23 19:16 - 000000000 ___HD C:\$WinREAgent 2022-06-23 19:12 - 2022-06-23 19:12 - 000193816 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2022-06-23 19:12 - 2022-06-23 19:12 - 000000000 ____D C:\Users\Diego\AppData\Roaming\Sun 2022-06-23 19:12 - 2022-06-23 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2022-06-23 19:12 - 2022-06-23 19:12 - 000000000 ____D C:\Program Files\Java 2022-06-23 01:19 - 2022-06-23 01:19 - 000000000 ____D C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MakeMKV 2022-06-23 01:19 - 2022-06-23 01:19 - 000000000 ____D C:\Program Files (x86)\MakeMKV 2022-06-16 23:05 - 2022-06-16 23:05 - 133731735 _____ C:\Users\Diego\Desktop\The Book of Cheese - Liz Thorpe.pdf 2022-06-16 23:02 - 2022-06-16 23:02 - 129992918 _____ C:\Users\Diego\Desktop\Thorpe, Liz - The book of cheese_ the essential guide to discovering cheeses you'll love (2017, Flatiron Books) - libgen.lc.epub 2022-06-15 21:36 - 2022-06-15 21:36 - 000768037 _____ C:\Windows\system32\0h0af4do.weg 2022-06-14 22:44 - 2022-06-14 22:44 - 000002352 _____ C:\Users\Diego\Desktop\Kindle.lnk 2022-06-14 22:44 - 2022-06-14 22:44 - 000000000 ____D C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon 2022-06-13 23:51 - 2022-06-13 23:51 - 000002027 _____ C:\Users\Diego\Desktop\SmartersPlayerLite.lnk 2022-06-13 21:00 - 2022-06-13 21:00 - 000001168 _____ C:\Users\Diego\Desktop\REDRAGON Gaming Mouse.lnk 2022-06-13 21:00 - 2022-06-13 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REDRAGON Gaming Mouse 2022-06-13 20:59 - 2022-06-17 17:51 - 000000000 ____D C:\Users\Diego\AppData\Roaming\REDRAGON Gaming Mouse 2022-06-13 20:59 - 2022-06-13 21:00 - 000217893 _____ C:\Windows\unins001.dat 2022-06-13 20:59 - 2022-06-13 21:00 - 000000000 ____D C:\Program Files (x86)\REDRAGON Gaming Mouse 2022-06-13 20:59 - 2022-06-13 20:59 - 001510111 _____ C:\Windows\unins001.exe 2022-06-13 20:54 - 2022-06-23 19:59 - 000000000 ____D C:\Windows\Minidump 2022-06-10 01:44 - 2022-06-26 03:32 - 000537926 _____ C:\Users\Diego\Desktop\Lista-completa-de-ebooks-armazenados.txt 2022-06-04 20:06 - 2022-06-04 20:06 - 000002225 _____ C:\Users\Public\Desktop\Epson Printer Connection Checker.lnk ==================== Um mês (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2022-07-04 20:13 - 2021-12-19 02:31 - 000000000 ___RD C:\Users\Diego\Desktop\BIBLIOTECA 2022-07-04 20:13 - 2021-12-18 19:54 - 000000000 ____D C:\Program Files (x86)\Google 2022-07-04 18:40 - 2021-12-18 22:42 - 000000000 ____D C:\Users\Diego\AppData\LocalLow\Mozilla 2022-07-04 18:34 - 2021-12-19 04:25 - 000000000 ____D C:\Users\Diego\AppData\Roaming\WhatsApp 2022-07-04 18:01 - 2021-12-18 21:41 - 000000000 ____D C:\Program Files\CCleaner 2022-07-04 17:32 - 2021-12-19 01:05 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2022-07-04 17:14 - 2021-12-18 20:53 - 000000000 ____D C:\Users\Diego\AppData\Roaming\qBittorrent 2022-07-04 17:14 - 2021-12-18 19:54 - 000002527 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-07-04 17:14 - 2021-12-18 19:54 - 000002486 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-07-04 16:51 - 2021-06-05 09:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-07-04 16:45 - 2022-03-23 09:54 - 000002872 _____ C:\Users\Diego\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome Canary.lnk 2022-07-04 16:45 - 2022-03-23 09:54 - 000002835 _____ C:\Users\Diego\Desktop\Google Chrome Canary.lnk 2022-07-04 15:39 - 2022-04-16 01:13 - 000000000 ____D C:\Users\Diego\AppData\Roaming\DMCache 2022-07-04 15:36 - 2021-12-18 20:03 - 000000000 ____D C:\Users\Diego\AppData\Local\JDownloader 2.0 2022-07-04 15:10 - 2021-12-18 23:43 - 000000000 ____D C:\Users\Diego\AppData\Roaming\MPC-BE 2022-07-04 14:58 - 2021-12-18 19:36 - 000000000 ____D C:\Users\Diego\AppData\Local\D3DSCache 2022-07-04 14:51 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\SystemTemp 2022-07-04 14:47 - 2021-12-18 19:49 - 000775738 _____ C:\Windows\system32\prfh0416.dat 2022-07-04 14:47 - 2021-12-18 19:49 - 000153686 _____ C:\Windows\system32\prfc0416.dat 2022-07-04 14:47 - 2021-12-18 19:29 - 001768650 _____ C:\Windows\system32\PerfStringBackup.INI 2022-07-04 14:47 - 2021-06-05 09:09 - 000000000 ____D C:\Windows\INF 2022-07-04 14:41 - 2021-12-19 01:58 - 000000000 ____D C:\Users\Diego\AppData\Roaming\DS4Windows 2022-07-04 14:41 - 2021-12-19 00:24 - 000012288 ___SH C:\DumpStack.log.tmp 2022-07-04 14:41 - 2021-12-19 00:24 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-07-04 14:41 - 2021-12-18 20:04 - 000000000 __SHD C:\Users\Diego\IntelGraphicsProfiles 2022-07-04 14:41 - 2021-12-18 20:04 - 000000000 ____D C:\Intel 2022-07-04 14:40 - 2021-06-05 09:01 - 000524288 _____ C:\Windows\system32\config\BBI 2022-07-04 14:39 - 2021-06-05 09:01 - 000000000 ____D C:\Windows\CbsTemp 2022-07-04 14:36 - 2021-06-05 09:10 - 000000000 ___HD C:\Windows\system32\GroupPolicy 2022-07-04 14:36 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2022-07-04 14:35 - 2021-12-19 01:56 - 000000000 ____D C:\Program Files\DS4Windows 2022-07-03 23:31 - 2021-12-19 00:24 - 000588264 _____ C:\Windows\system32\FNTCACHE.DAT 2022-07-03 23:28 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\AppReadiness 2022-07-03 23:22 - 2022-04-02 13:03 - 000000000 ____D C:\Program Files\Adobe 2022-07-03 23:22 - 2021-12-18 21:40 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-07-03 23:22 - 2021-12-18 21:39 - 000000000 ____D C:\ProgramData\Adobe 2022-07-03 23:22 - 2021-12-18 19:36 - 000000000 ____D C:\Users\Diego\AppData\Local\Packages 2022-07-03 23:22 - 2021-12-18 19:36 - 000000000 ____D C:\ProgramData\Packages 2022-07-03 23:22 - 2021-06-05 09:10 - 000000000 ___HD C:\Program Files\WindowsApps 2022-07-03 22:17 - 2021-12-18 22:05 - 000000000 ____D C:\Program Files\epson 2022-07-03 21:57 - 2021-12-19 00:24 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-07-03 21:56 - 2022-01-15 12:06 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-07-03 21:52 - 2021-12-21 09:52 - 000000000 ____D C:\Users\Diego\AppData\Local\CrashDumps 2022-07-03 21:10 - 2021-06-05 09:01 - 000032768 _____ C:\Windows\system32\config\ELAM 2022-07-03 21:09 - 2021-06-05 09:10 - 000000000 ___HD C:\Windows\ELAMBKUP 2022-07-03 18:32 - 2021-12-18 20:06 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2022-07-03 17:58 - 2021-12-19 00:23 - 000000000 ____D C:\Windows\Panther 2022-07-03 17:30 - 2021-12-18 22:20 - 000000000 ____D C:\Users\Diego\Documents\LiveUpdate 2022-07-03 13:29 - 2021-12-19 01:14 - 000000000 ____D C:\Users\Diego\AppData\Roaming\calibre 2022-07-03 13:09 - 2021-12-19 01:14 - 000001099 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2022-07-03 13:09 - 2021-12-19 01:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management 2022-07-03 13:09 - 2021-12-19 01:14 - 000000000 ____D C:\Program Files (x86)\Calibre2 2022-07-02 17:17 - 2021-12-18 22:42 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-07-02 16:32 - 2021-12-18 22:44 - 000000000 ____D C:\Users\Diego\AppData\Local\vback 2022-07-02 11:08 - 2021-12-19 00:24 - 000002724 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-07-02 11:08 - 2021-12-19 00:24 - 000002582 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-07-01 13:47 - 2021-12-19 10:24 - 000002674 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2022-07-01 13:47 - 2021-12-19 10:24 - 000002655 _____ C:\Users\Public\Desktop\Brave.lnk 2022-06-30 13:37 - 2021-12-18 20:05 - 000000000 ____D C:\Program Files (x86)\Intel 2022-06-30 13:37 - 2021-12-18 19:57 - 000000000 ____D C:\ProgramData\Package Cache 2022-06-29 01:57 - 2022-01-15 12:05 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2022-06-29 01:57 - 2021-12-18 22:42 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-06-26 03:36 - 2021-12-19 11:28 - 000003928 _____ C:\Windows\system32\Tasks\BlueStacksHelper_nxt 2022-06-26 03:36 - 2021-12-19 11:28 - 000002113 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5.lnk 2022-06-26 03:36 - 2021-12-19 11:28 - 000002111 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks 5 Multi-Instance Manager.lnk 2022-06-26 03:36 - 2021-12-19 11:28 - 000001995 _____ C:\Users\Public\Desktop\BlueStacks 5.lnk 2022-06-26 03:36 - 2021-12-19 11:28 - 000000000 ____D C:\Program Files (x86)\BlueStacks X 2022-06-26 03:36 - 2021-12-19 11:27 - 000000000 ____D C:\Users\Diego\AppData\Local\BlueStacksSetup 2022-06-26 03:36 - 2021-12-19 11:27 - 000000000 ____D C:\Users\Diego\AppData\Local\Bluestacks 2022-06-26 03:35 - 2021-12-19 11:27 - 000000000 ____D C:\Users\Public\BlueStacks 2022-06-23 21:47 - 2022-04-21 21:24 - 000000000 ____D C:\Users\Diego\AppData\Local\WhatsApp 2022-06-23 20:15 - 2021-12-19 01:56 - 000003528 _____ C:\Users\Diego\Desktop\MOBILISM.txt 2022-06-23 20:00 - 2021-11-10 00:12 - 000000000 ____D C:\Program Files\Reference Assemblies 2022-06-23 20:00 - 2021-11-10 00:12 - 000000000 ____D C:\Program Files\MSBuild 2022-06-23 20:00 - 2021-11-10 00:12 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2022-06-23 20:00 - 2021-11-10 00:12 - 000000000 ____D C:\Program Files (x86)\MSBuild 2022-06-23 19:49 - 2021-12-18 19:54 - 000000000 ____D C:\Program Files\Opera 2022-06-23 19:49 - 2021-06-05 11:30 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\SysWOW64\eu-ES 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\SystemResources 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\system32\oobe 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\system32\eu-ES 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\system32\Dism 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\system32\appraiser 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\ShellExperiences 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\Provisioning 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\PolicyDefinitions 2022-06-23 19:49 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\bcastdvr 2022-06-23 19:19 - 2021-12-18 19:26 - 003101184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2022-06-23 19:11 - 2021-12-18 19:54 - 000003954 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1639868093 2022-06-23 19:11 - 2021-12-18 19:54 - 000001129 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk 2022-06-23 01:19 - 2021-12-18 21:28 - 000001080 _____ C:\Users\Diego\Desktop\MakeMKV.lnk 2022-06-23 00:17 - 2021-12-19 10:44 - 000000000 ____D C:\Users\Diego\AppData\Roaming\VEGAS 2022-06-22 23:31 - 2021-12-19 00:24 - 000000000 ____D C:\Windows\system32\Drivers\wd 2022-06-19 23:58 - 2021-12-23 16:07 - 000003300 _____ C:\Windows\system32\Tasks\klcp_update 2022-06-19 23:58 - 2021-12-23 16:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2022-06-19 23:58 - 2021-12-23 16:07 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2022-06-19 23:57 - 2021-12-18 21:07 - 000001787 _____ C:\Users\Public\Desktop\MPC-BE x64.lnk 2022-06-19 23:57 - 2021-12-18 21:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-BE x64 2022-06-19 23:57 - 2021-12-18 21:07 - 000000000 ____D C:\Program Files\MPC-BE x64 2022-06-19 10:49 - 2021-12-18 23:59 - 000000000 ____D C:\Program Files\Microsoft Office 2022-06-18 22:05 - 2021-12-19 02:24 - 000000000 ____D C:\Users\Diego\Desktop\Manter offline 2022-06-16 23:07 - 2021-12-19 01:14 - 000000000 ____D C:\Users\Diego\Biblioteca do calibre 2022-06-16 23:07 - 2021-12-18 19:36 - 000000000 ____D C:\Users\Diego 2022-06-16 15:04 - 2021-12-18 22:00 - 000000893 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2022-06-16 15:04 - 2021-12-18 22:00 - 000000881 _____ C:\Users\Public\Desktop\Notepad++.lnk 2022-06-16 15:04 - 2021-12-18 22:00 - 000000000 ____D C:\Users\Diego\AppData\Roaming\Notepad++ 2022-06-15 21:28 - 2021-12-19 00:24 - 000003536 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-06-15 21:28 - 2021-12-19 00:24 - 000003412 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-06-15 11:46 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\system32\DDFs 2022-06-15 11:12 - 2021-12-18 19:39 - 000000000 ____D C:\Windows\system32\MRT 2022-06-15 11:10 - 2021-12-18 19:39 - 145918784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2022-06-15 11:07 - 2021-12-19 01:57 - 000000000 ____D C:\Program Files\dotnet 2022-06-15 11:03 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\system32\SecurityHealth 2022-06-14 22:44 - 2021-12-18 22:52 - 000000000 ____D C:\Users\Diego\AppData\Local\Amazon 2022-06-14 22:41 - 2021-12-18 22:52 - 000000000 ____D C:\Users\Diego\Documents\My Kindle Content 2022-06-14 11:27 - 2022-04-16 01:13 - 000000000 ____D C:\Users\Diego\AppData\Roaming\IDM 2022-06-13 23:52 - 2021-12-19 11:32 - 000002003 _____ C:\Users\Diego\Desktop\AdobeAcrobat.lnk 2022-06-13 02:09 - 2021-06-05 09:10 - 000000000 ____D C:\Windows\LiveKernelReports 2022-06-09 23:04 - 2021-12-18 21:22 - 000000000 ____D C:\Users\Diego\AppData\Local\MediaHuman 2022-06-07 23:56 - 2021-12-18 22:00 - 000000000 ____D C:\Users\Diego\Documents\My Digital Editions 2022-06-06 22:03 - 2021-12-18 22:09 - 000000000 ____D C:\Program Files (x86)\3uTools 2022-06-06 01:04 - 2021-12-18 21:48 - 000001933 _____ C:\Users\Public\Desktop\Subtitle Edit.lnk 2022-06-06 01:04 - 2021-12-18 21:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subtitle Edit 2022-06-06 01:04 - 2021-12-18 21:48 - 000000000 ____D C:\Program Files\Subtitle Edit 2022-06-04 20:06 - 2021-12-18 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software 2022-06-04 20:06 - 2021-12-18 22:05 - 000000000 ____D C:\Program Files (x86)\EPSON Software ==================== Arquivos na raiz de alguns diretórios ======== 2021-12-28 20:45 - 2021-12-28 20:40 - 009007207 _____ (fcportables.com) C:\Program Files (x86)\PowerISO.exe 2007-10-04 12:00 - 2007-10-04 12:00 - 000003134 __RSH () C:\Program Files (x86)\Common Files\Logo.ico 2021-12-18 22:20 - 2021-12-18 22:20 - 000000171 _____ () C:\Users\Diego\AppData\Roaming\822f02e4-9e9a-4077-a765-71edfca16ad0 2022-04-25 02:25 - 2022-04-25 02:25 - 000013972 _____ () C:\Users\Diego\AppData\Roaming\plugin_scan_state_VST2_x32.scan 2022-04-25 02:25 - 2022-04-25 02:25 - 000017437 _____ () C:\Users\Diego\AppData\Roaming\plugin_scan_state_VST2_x64.scan 2022-04-25 02:25 - 2022-04-25 02:25 - 000001366 _____ () C:\Users\Diego\AppData\Roaming\plugin_scan_state_VST3_x32.scan 2022-04-25 02:25 - 2022-04-25 02:25 - 000004472 _____ () C:\Users\Diego\AppData\Roaming\plugin_scan_state_VST3_x64.scan 2021-12-28 20:19 - 2021-12-28 20:19 - 000000407 _____ () C:\Users\Diego\AppData\Roaming\u_data.lgvnx 2021-12-19 01:16 - 2021-12-19 01:16 - 000000000 _____ () C:\Users\Diego\AppData\Local\oobelibMkey.log ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================