Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 27-12-2021 Executado por ANGIOLETTO (09-01-2022 16:21:22) Run:2 Executando a partir de C:\Users\ANGIOLETTO\Desktop Perfis Carregados: ANGIOLETTO Modo da Inicialização: Normal ============================================== fixlist Conteúdo: ***************** CreateRestorePoint: CloseProcesses: HKU\S-1-5-21-3059253328-2993587930-46944393-1001\...\Run: [utweb] => "C:\Users\ANGIOLETTO\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (Nenhum Arquivo) Task: {311CB44B-3952-436F-80D3-2A89A1B306DE} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\9.1.0\AutoUpdate.exe /auto (Nenhum Arquivo) Task: {3C7CA18B-8A07-4199-8E2C-1CC306C43E60} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\9.1.0\Scheduler.exe /scheduler (Nenhum Arquivo) Task: {85FBC0BD-8CAF-4145-AC63-56300035C20B} - System32\Tasks\Driver Booster SkipUAC (ANGIOLETTO) => C:\Program Files (x86)\IObit\Driver Booster\9.1.0\DriverBooster.exe /skipuac (Nenhum Arquivo) S3 Origin Client Service; "D:\Origin\OriginClientService.exe" [X] S2 Origin Web Helper Service; "D:\Origin\OriginWebHelperService.exe" [X] FCheck: C:\WINDOWS\SysWOW64\version_IObitDel.dll [2022-01-01] <==== ATENÇÃO (zero byte Arquivo/Pasta) HKU\S-1-5-21-3059253328-2993587930-46944393-1001\...\StartupApproved\Run: => "utweb" FirewallRules: [{C67803E4-386F-4C5B-A801-98FC96354599}] => (Allow) D:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe => Nenhum Arquivo FirewallRules: [{BBCFA4B3-D23C-423E-9475-99F09551EA65}] => (Allow) D:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe => Nenhum Arquivo FirewallRules: [{B1FD0EAC-DE06-413C-A8FF-C820EEDCA63B}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => Nenhum Arquivo FirewallRules: [{2315E400-3416-44FD-8518-15808389D8FC}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => Nenhum Arquivo FirewallRules: [{BB11AE42-0F6B-47C8-AC63-3DEA3331C0CA}] => (Allow) D:\SteamLibrary\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe => Nenhum Arquivo FirewallRules: [{5B0FA18D-AB8F-4DB5-B81F-46612012FC70}] => (Allow) D:\SteamLibrary\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe => Nenhum Arquivo FirewallRules: [{840245F1-6D0E-48AB-992F-04326BCB52AF}] => (Allow) D:\SteamLibrary\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_Vulkan.exe => Nenhum Arquivo FirewallRules: [{B9F92BCE-D132-496F-B26B-B28911723770}] => (Allow) D:\SteamLibrary\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_Vulkan.exe => Nenhum Arquivo FirewallRules: [{23D12383-6541-41E0-BBBC-BA1230D911BD}] => (Allow) D:\SteamLibrary\steamapps\common\left 4 dead\left4dead.exe => Nenhum Arquivo FirewallRules: [{D7B79A4D-FD92-4B57-ABF2-97C97680BAA8}] => (Allow) D:\SteamLibrary\steamapps\common\left 4 dead\left4dead.exe => Nenhum Arquivo FirewallRules: [{C8BE4827-06CB-4373-A20D-2498BDE92690}] => (Allow) D:\SteamLibrary\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe => Nenhum Arquivo FirewallRules: [{F240F8EC-A342-4C64-B898-BED4FDFB386E}] => (Allow) D:\SteamLibrary\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe => Nenhum Arquivo FirewallRules: [{7216F381-D7C4-4698-8A48-547E30533A18}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => Nenhum Arquivo FirewallRules: [{B27692AD-3C15-4FEF-9CDE-7AEBEF8D9DDF}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => Nenhum Arquivo FirewallRules: [TCP Query User{05065DE9-D18A-4621-9500-F5DCAD54A911}D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe => Nenhum Arquivo FirewallRules: [UDP Query User{F6FF39D7-288F-4890-B324-75CB1D03FA39}D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe => Nenhum Arquivo FirewallRules: [TCP Query User{5DDF8A0A-7E3C-41D8-80B5-CDC2FF5EE797}D:\word war z\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\word war z\worldwarz\en_us\client\bin\pc\wwzretailegs.exe => Nenhum Arquivo FirewallRules: [UDP Query User{73B9C3CA-D846-43D7-BA37-F2F5AD63C532}D:\word war z\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\word war z\worldwarz\en_us\client\bin\pc\wwzretailegs.exe => Nenhum Arquivo FirewallRules: [{4491DFB0-2D67-406F-9988-84FE2DE356CC}] => (Allow) D:\SteamLibrary\steamapps\common\ZombieArmy4\Launcher\za4.exe => Nenhum Arquivo FirewallRules: [{AD70A705-188E-49B5-8754-E8331F900660}] => (Allow) D:\SteamLibrary\steamapps\common\ZombieArmy4\Launcher\za4.exe => Nenhum Arquivo FirewallRules: [TCP Query User{004354AB-9984-496A-B4D7-807737C2C249}D:\steamlibrary\steamapps\common\zombiearmy4\bin\za4_dx12.exe] => (Allow) D:\steamlibrary\steamapps\common\zombiearmy4\bin\za4_dx12.exe => Nenhum Arquivo FirewallRules: [UDP Query User{CFBFD7E3-B39A-4F33-A926-4D74C13216DC}D:\steamlibrary\steamapps\common\zombiearmy4\bin\za4_dx12.exe] => (Allow) D:\steamlibrary\steamapps\common\zombiearmy4\bin\za4_dx12.exe => Nenhum Arquivo EmptyTemp: ***************** Ponto de Restauração criado com sucesso. Processos fechados com sucesso. "HKU\S-1-5-21-3059253328-2993587930-46944393-1001\Software\Microsoft\Windows\CurrentVersion\Run\\utweb" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{311CB44B-3952-436F-80D3-2A89A1B306DE}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{311CB44B-3952-436F-80D3-2A89A1B306DE}" => removido (a) com sucesso. C:\WINDOWS\System32\Tasks\Driver Booster Update => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Update" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3C7CA18B-8A07-4199-8E2C-1CC306C43E60}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C7CA18B-8A07-4199-8E2C-1CC306C43E60}" => removido (a) com sucesso. C:\WINDOWS\System32\Tasks\Driver Booster Scheduler => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{85FBC0BD-8CAF-4145-AC63-56300035C20B}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{85FBC0BD-8CAF-4145-AC63-56300035C20B}" => removido (a) com sucesso. C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (ANGIOLETTO) => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster SkipUAC (ANGIOLETTO)" => removido (a) com sucesso. HKLM\System\CurrentControlSet\Services\Origin Client Service => removido (a) com sucesso. Origin Client Service => o serviço removido (a) com sucesso. HKLM\System\CurrentControlSet\Services\Origin Web Helper Service => removido (a) com sucesso. Origin Web Helper Service => o serviço removido (a) com sucesso. C:\WINDOWS\SysWOW64\version_IObitDel.dll => movido com sucesso "HKU\S-1-5-21-3059253328-2993587930-46944393-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\utweb" => removido (a) com sucesso. "HKU\S-1-5-21-3059253328-2993587930-46944393-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\utweb" => não encontrado (a) "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C67803E4-386F-4C5B-A801-98FC96354599}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BBCFA4B3-D23C-423E-9475-99F09551EA65}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B1FD0EAC-DE06-413C-A8FF-C820EEDCA63B}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2315E400-3416-44FD-8518-15808389D8FC}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BB11AE42-0F6B-47C8-AC63-3DEA3331C0CA}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5B0FA18D-AB8F-4DB5-B81F-46612012FC70}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{840245F1-6D0E-48AB-992F-04326BCB52AF}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B9F92BCE-D132-496F-B26B-B28911723770}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{23D12383-6541-41E0-BBBC-BA1230D911BD}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D7B79A4D-FD92-4B57-ABF2-97C97680BAA8}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C8BE4827-06CB-4373-A20D-2498BDE92690}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F240F8EC-A342-4C64-B898-BED4FDFB386E}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7216F381-D7C4-4698-8A48-547E30533A18}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B27692AD-3C15-4FEF-9CDE-7AEBEF8D9DDF}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{05065DE9-D18A-4621-9500-F5DCAD54A911}D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F6FF39D7-288F-4890-B324-75CB1D03FA39}D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5DDF8A0A-7E3C-41D8-80B5-CDC2FF5EE797}D:\word war z\worldwarz\en_us\client\bin\pc\wwzretailegs.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{73B9C3CA-D846-43D7-BA37-F2F5AD63C532}D:\word war z\worldwarz\en_us\client\bin\pc\wwzretailegs.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4491DFB0-2D67-406F-9988-84FE2DE356CC}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AD70A705-188E-49B5-8754-E8331F900660}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{004354AB-9984-496A-B4D7-807737C2C249}D:\steamlibrary\steamapps\common\zombiearmy4\bin\za4_dx12.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CFBFD7E3-B39A-4F33-A926-4D74C13216DC}D:\steamlibrary\steamapps\common\zombiearmy4\bin\za4_dx12.exe" => removido (a) com sucesso. =========== EmptyTemp: ========== BITS transfer queue => 1048576 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10604051 B Java, Flash, Steam htmlcache => 397582276 B Windows/system/drivers => 5102105 B Edge => 0 B Brave => 427952261 B Firefox => 1115370678 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 8006 B NetworkService => 48490 B ANGIOLETTO => 231683118 B RecycleBin => 0 B EmptyTemp: => 2 GB de dados temporários Removidos. ================================ O sistema precisou ser reiniciado. ==== Fim de Fixlog 16:22:54 ====