Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 14-11-2021 Executado por Danlend (22-11-2021 12:44:50) Run:1 Executando a partir de C:\Users\Danlend\Desktop Perfis Carregados: Danlend Modo da Inicialização: Normal ============================================== fixlist Conteúdo: ***************** closeprocesses: createrestorepoint: SystemRestore: On (Opera Software AS -> Opera Software) C:\Users\Danlend\AppData\Local\Programs\Opera GX\81.0.4196.52\opera_crashreporter.exe (Opera Software AS -> Opera Software) C:\Users\Danlend\AppData\Local\Programs\Opera GX\opera.exe <28> (SUPERAntiSpyware.com -> SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe HKLM\...\Run: [] => [X] HKU\S-1-5-21-1899338128-1328234520-3857979625-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [11224432 2021-08-19] (Support.com Inc -> SUPERAntiSpyware) Task: {645EE7A1-C87F-476C-B232-1C91073A31FB} - System32\Tasks\Opera GX scheduled Autoupdate 1637448252 => C:\Users\Danlend\AppData\Local\Programs\Opera GX\launcher.exe [2201808 2021-11-16] (Opera Software AS -> Opera Software) Task: {8387CADB-798E-4807-B343-78B0FFBF69A1} - System32\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2021-01-09] (SUPERAntiSpyware.com -> SUPERAdBlocker.com) -> "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:cc49d02b-91d8-4694-903f-c9aa8b12bbe3 Task: {91F16A39-17D2-47DC-BCFC-CB50B6A864E2} - System32\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [49944 2021-01-09] (SUPERAntiSpyware.com -> SUPERAdBlocker.com) -> "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:4275e403-6e51-4de6-9936-b732b80d3db7 Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Edge HKU\S-1-5-21-1899338128-1328234520-3857979625-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm StartMenuInternet: (HKU\S-1-5-21-1899338128-1328234520-3857979625-1001) Opera GXStable - "C:\Users\Danlend\AppData\Local\Programs\Opera GX\Launcher.exe" R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [173472 2021-01-09] (SUPERAntiSpyware.com -> SUPERAntiSpyware.com) R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2021-01-09] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2021-01-09] (Support.com, Inc. -> SUPERAdBlocker.com and SUPERAntiSpyware.com) 2021-11-21 22:42 - 2021-11-21 22:50 - 000000546 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3.job 2021-11-21 22:42 - 2021-11-21 22:50 - 000000546 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7.job 2021-11-21 22:42 - 2021-11-21 22:42 - 000003790 _____ C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7 2021-11-21 22:42 - 2021-11-21 22:42 - 000003708 _____ C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3 2021-11-21 22:42 - 2021-11-21 22:42 - 000000000 ____D C:\Users\Danlend\AppData\Roaming\SUPERAntiSpyware.com 2021-11-21 22:41 - 2021-11-21 22:42 - 000000000 ____D C:\Program Files\SUPERAntiSpyware 2021-11-21 22:41 - 2021-11-21 22:41 - 000001849 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk 2021-11-21 22:41 - 2021-11-21 22:41 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com 2021-11-21 22:41 - 2021-11-21 22:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2021-11-21 22:35 - 2021-11-21 22:36 - 206564968 _____ (SUPERAntiSpyware) C:\Users\Danlend\Downloads\SUPERAntiSpyware.exe 2021-11-20 19:44 - 2021-11-20 19:44 - 000004240 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1637448252 2021-11-20 19:44 - 2021-11-20 19:44 - 000001448 _____ C:\Users\Danlend\Desktop\Navegador Opera GX.lnk 2021-11-20 19:44 - 2021-11-20 19:44 - 000001438 _____ C:\Users\Danlend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera GX.lnk 2021-11-20 19:44 - 2021-11-20 19:44 - 000000000 ____D C:\Users\Danlend\AppData\Local\Opera Software 2021-11-20 19:42 - 2021-11-20 19:42 - 003349256 _____ (Opera Software) C:\Users\Danlend\Downloads\OperaGXSetup.exe 2021-11-20 19:42 - 2021-11-20 19:42 - 000000000 ____D C:\Users\Danlend\AppData\Roaming\Opera Software CMD: netsh int ip reset CMD: ipconfig /flushDNS CMD: "%WINDIR%\SYSTEM32\lodctr.exe" /R CMD: "%WINDIR%\SysWOW64\lodctr.exe" /R CMD: "C:\Windows\SYSTEM32\lodctr.exe" /R CMD: "C:\Windows\SysWOW64\lodctr.exe" /R C:\Windows\Temp\*.* C:\WINDOWS\system32\*.tmp C:\WINDOWS\syswow64\*.tmp Reboot: emptytemp: ***************** Processos fechados com sucesso. Erro: (0) Falha ao criar um ponto de restauração. SystemRestore: On => completado C:\Users\Danlend\AppData\Local\Programs\Opera GX\81.0.4196.52\opera_crashreporter.exe => Não foi encontrado em execução o processo C:\Users\Danlend\AppData\Local\Programs\Opera GX\opera.exe => Não foi encontrado em execução o processo C:\Program Files\SUPERAntiSpyware\SASCore64.exe => Não foi encontrado em execução o processo "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\" => removido (a) com sucesso. "HKU\S-1-5-21-1899338128-1328234520-3857979625-1001\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware" => não encontrado (a) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{645EE7A1-C87F-476C-B232-1C91073A31FB}" => não encontrado (a) "C:\Windows\System32\Tasks\Opera GX scheduled Autoupdate 1637448252" => não encontrado (a) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera GX scheduled Autoupdate 1637448252" => não encontrado (a) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8387CADB-798E-4807-B343-78B0FFBF69A1}" => não encontrado (a) "C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3" => não encontrado (a) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3" => não encontrado (a) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91F16A39-17D2-47DC-BCFC-CB50B6A864E2}" => não encontrado (a) "C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7" => não encontrado (a) "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7" => não encontrado (a) "C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7.job" => não encontrado (a) "C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3.job" => não encontrado (a) HKU\S-1-5-21-1899338128-1328234520-3857979625-1001\SOFTWARE\Microsoft\Edge\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm => removido (a) com sucesso. HKLM\SOFTWARE\Google\Chrome\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm => removido (a) com sucesso. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm => removido (a) com sucesso. HKU\S-1-5-21-1899338128-1328234520-3857979625-1001\SOFTWARE\Clients\StartMenuInternet\Opera GXStable\shell\open\command\\"Default"="" => valor restaurado com sucesso !SASCORE => o serviço não encontrado (a). SASDIFSV => o serviço não encontrado (a). SASKUTIL => o serviço não encontrado (a). "C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3.job" => não encontrado (a) "C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7.job" => não encontrado (a) "C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task 4275e403-6e51-4de6-9936-b732b80d3db7" => não encontrado (a) "C:\Windows\system32\Tasks\SUPERAntiSpyware Scheduled Task cc49d02b-91d8-4694-903f-c9aa8b12bbe3" => não encontrado (a) "C:\Users\Danlend\AppData\Roaming\SUPERAntiSpyware.com" => não encontrado (a) "C:\Program Files\SUPERAntiSpyware" => não encontrado (a) "C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk" => não encontrado (a) C:\ProgramData\SUPERAntiSpyware.com => movido com sucesso "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware" => não encontrado (a) C:\Users\Danlend\Downloads\SUPERAntiSpyware.exe => movido com sucesso "C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1637448252" => não encontrado (a) "C:\Users\Danlend\Desktop\Navegador Opera GX.lnk" => não encontrado (a) "C:\Users\Danlend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera GX.lnk" => não encontrado (a) C:\Users\Danlend\AppData\Local\Opera Software => movido com sucesso C:\Users\Danlend\Downloads\OperaGXSetup.exe => movido com sucesso C:\Users\Danlend\AppData\Roaming\Opera Software => movido com sucesso ========= netsh int ip reset ========= Redefinindo Encaminhamento de Compartimento, OK! Redefinindo Compartimento, OK! Redefinindo Protocolo de Controle, OK! Redefinindo Solicita‡Æo de Sequˆncia de Eco, OK! Redefinindo Global, OK! Redefinindo Interface, OK! Redefinindo Endere‡o Anycast, OK! Redefinindo Endere‡o multicast, OK! Redefinindo Endere‡o Unicast, OK! Redefinindo Vizinho, OK! Redefinindo Caminho, OK! Redefinindo Potencial, OK! Redefinindo Pol¡tica de Prefixo, OK! Redefinindo Vizinho de Proxy, OK! Redefinindo Rota, OK! Redefinindo Prefixo do Site, OK! Redefinindo Subinterface, OK! Redefinindo PadrÆo de Ativa‡Æo, OK! Redefinindo Resolver Vizinho, OK! Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Falha ao redefinir . Acesso negado. Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Redefinindo , OK! Reinicie o computador para concluir esta a‡Æo. ========= Fim de CMD: ========= ========= ipconfig /flushDNS ========= Configura‡Æo de IP do Windows Libera‡Æo do Cache do DNS Resolver bem-sucedida. ========= Fim de CMD: ========= ========= "%WINDIR%\SYSTEM32\lodctr.exe" /R ========= Info: Configura‡Æo do contador de desempenho reconstru¡da com sucesso a partir do reposit¢rio de backup do sistema ========= Fim de CMD: ========= ========= "%WINDIR%\SysWOW64\lodctr.exe" /R ========= Info: Configura‡Æo do contador de desempenho reconstru¡da com sucesso a partir do reposit¢rio de backup do sistema ========= Fim de CMD: ========= ========= "C:\Windows\SYSTEM32\lodctr.exe" /R ========= Info: Configura‡Æo do contador de desempenho reconstru¡da com sucesso a partir do reposit¢rio de backup do sistema ========= Fim de CMD: ========= ========= "C:\Windows\SysWOW64\lodctr.exe" /R ========= Info: Configura‡Æo do contador de desempenho reconstru¡da com sucesso a partir do reposit¢rio de backup do sistema ========= Fim de CMD: ========= =========== "C:\Windows\Temp\*.*" ========== C:\Windows\Temp\1b1f45ee-c6c5-4f77-bfd7-f45639422a75.tmp => movido com sucesso C:\Windows\Temp\amc5E2D.tmp => movido com sucesso C:\Windows\Temp\amc5E2D.tmp.LOG1 => movido com sucesso C:\Windows\Temp\amc5E2D.tmp.LOG2 => movido com sucesso C:\Windows\Temp\amc5E3D.tmp => movido com sucesso C:\Windows\Temp\amc5E3D.tmp.LOG1 => movido com sucesso C:\Windows\Temp\amc5E3D.tmp.LOG2 => movido com sucesso C:\Windows\Temp\amc71C5.tmp => movido com sucesso C:\Windows\Temp\amc71C5.tmp.LOG1 => movido com sucesso C:\Windows\Temp\amc71C5.tmp.LOG2 => movido com sucesso C:\Windows\Temp\ASPNETSetup_00000.log => movido com sucesso C:\Windows\Temp\ASPNETSetup_00001.log => movido com sucesso C:\Windows\Temp\FXSAPIDebugLogFile.txt => movido com sucesso C:\Windows\Temp\FXSTIFFDebugLogFile.txt => movido com sucesso C:\Windows\Temp\kav.21.3.10.391_10.22_13.33_4084.apply_patches.drivers_x64.log => movido com sucesso C:\Windows\Temp\kav.21.3.10.391_10.22_13.33_4084.apply_patches.kis2021mr3.log => movido com sucesso C:\Windows\Temp\ksde.21.3.10.391_10.22_13.46_10588.apply_patches.ksde50mr3.log => movido com sucesso C:\Windows\Temp\mat-debug-5504.log => movido com sucesso C:\Windows\Temp\mbamiservice.log => movido com sucesso C:\Windows\Temp\MBAMSERVICE.LOG => movido com sucesso C:\Windows\Temp\mb_errors999.log => movido com sucesso C:\Windows\Temp\MpCmdRun.log => movido com sucesso C:\Windows\Temp\MpSigStub.log => movido com sucesso C:\Windows\Temp\msedge_installer.log => movido com sucesso C:\Windows\Temp\TS_4C2C.tmp => movido com sucesso C:\Windows\Temp\TS_8589.tmp => movido com sucesso C:\Windows\Temp\TS_D1C6.tmp => movido com sucesso C:\Windows\Temp\UpdHealthTools.msi => movido com sucesso C:\Windows\Temp\{3A5F2396-5C8F-4F1F-9B67-6CCA6C990E61}.tmp => movido com sucesso ========= Fim -> "C:\Windows\Temp\*.*" ======== =========== "C:\WINDOWS\system32\*.tmp" ========== não encontrado (a) ========= Fim -> "C:\WINDOWS\system32\*.tmp" ======== =========== "C:\WINDOWS\syswow64\*.tmp" ========== não encontrado (a) ========= Fim -> "C:\WINDOWS\syswow64\*.tmp" ======== =========== EmptyTemp: ========== BITS transfer queue => 1310720 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 16956677 B Java, Flash, Steam htmlcache => 0 B Windows/system/drivers => 9536030 B Edge => 0 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 90428 B NetworkService => 102986 B Danlend => 315309846 B RecycleBin => 24543904 B EmptyTemp: => 350.8 MB de dados temporários Removidos. ================================ O sistema precisou ser reiniciado. ==== Fim de Fixlog 12:44:59 ====