Resultado do análise da Farbar Recovery Scan Tool (FRST) (x64) Versão: 14-11-2022 Executado por Caldasso (administrador) em CALDASSO (Gigabyte Technology Co., Ltd. X470 AORUS ULTRA GAMING) (14-11-2022 15:31:50) Executando a partir de C:\Users\Caldasso\Desktop Perfis Carregados: Caldasso Plataforma: Microsoft Windows 10 Pro Versão 22H2 19045.2251 (X64) Idioma: Português (Brasil) Navegador padrão: Chrome Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ade64cd54ec2f9ed\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f82b8b1a0b601f77\RtkAudUService64.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2244.7.0_x64__cv1g1gvanyjgm\WhatsApp.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f82b8b1a0b601f77\RtkAudUService64.exe [1343072 2021-08-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [194488 2022-10-28] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [366944 2022-09-27] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) HKLM-x32\...\Run: [USB Gamepad] => C:\WINDOWS\USB Vibration\7906\USB Gamepad.exe [796784 2008-12-10] (Shen Zhen Dragon Rise Macro Technology Limited Company -> ) HKLM-x32\...\Run: [Spectrum] => C:\Program Files (x86)\G.SKILL\Trident Z Lighting Control\HID.exe [1745704 2021-12-02] (G.SKILL International Enterprise Co., Ltd. -> G.SKILL Inc.) HKLM-x32\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Nenhum Arquivo) HKLM-x32\...\RunOnce: [PreRun] => C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [14632 2016-02-26] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restrição <==== ATENÇÃO HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restrição <==== ATENÇÃO HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4234088 2022-10-18] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5650432 2021-10-20] (Tonec Inc.) [Arquivo não assinado] HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [CorsairLink4] => C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe [27146280 2018-12-28] (Corsair Memory, Inc. -> Corsair Components, Inc.) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [com.squirrel.WhatsApp.WhatsApp] => C:\Users\Caldasso\AppData\Local\WhatsApp\Update.exe [2252496 2021-10-02] (WhatsApp, Inc -> ) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [Discord] => C:\Users\Caldasso\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32696784 2022-11-06] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Caldasso\AppData\Local\WebEx\WebexHost.exe [8014024 2022-11-03] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [152025856 2022-10-25] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [AnyTransToolHelper] => C:\Program Files (x86)\AnyTrans for iOS\AnyTransToolHelper.exe (Nenhum Arquivo) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Nenhum Arquivo) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [MicrosoftEdgeAutoLaunch_073CC509C043A9E90FF5B9A187440338] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3892128 2022-11-10] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Policies\Explorer: [DisallowRun] 0 HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-10] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-10-01] ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan) BootExecute: autocheck autochk /m /P \Device\HarddiskVolume24autocheck autochk * GroupPolicy: Restrição ? <==== ATENÇÃO Policies: C:\ProgramData\NTUSER.pol: Restrição <==== ATENÇÃO HKLM\SOFTWARE\Policies\Google: Restrição <==== ATENÇÃO ==================== Tarefas Agendadas (Whitelisted) ============ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {002B6427-0BA2-464C-A885-4B79E4DD53B3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144312 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {053F6312-C4B9-4DD4-81F8-AD7CDC072C61} - System32\Tasks\PCIeBusPower => "vssadmin.exe" delete shadows /all /quiet Task: {09248A02-F77E-4913-9852-72635A7D4B52} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-07-27] (Google Inc -> Google LLC) Task: {0B396149-BBCF-4A2C-8B47-D019A56DD60C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {0E3D0162-2F06-4EDA-AF50-7E119169D592} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {266BF16F-6F6A-46F5-9E8D-9834467B3A0C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {2E8C61ED-AA4A-413B-9C4B-B2748F9B7028} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe /RunningFrom Schedule (Nenhum Arquivo) Task: {333443EB-5210-49EB-860D-14401C5A5CC9} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {3D353B7A-00E8-44F7-A278-5FEAE10C4F3E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {3EA9935B-F71D-40FB-96CC-FD65A9EFE20F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-08-30] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {4D34FEC9-5D67-415A-A4A3-472B1A7B58B1} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {5F18AF47-3AE5-4CCA-BA58-09D7808D4F76} - System32\Tasks\GraphicsCardEngine => C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngineStarter.exe [234880 2021-04-13] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) Task: {696DA830-7DB8-4CDE-A52A-6A2E81D4C662} - System32\Tasks\PCIeBus => "wevtutil.exe" cl Application Task: {8099B0DC-33AA-4983-8B56-15BA2B7B2CDE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {9E875BDE-4D69-476F-8F48-8B0459185664} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-07-27] (Google Inc -> Google LLC) Task: {B246F980-484D-440B-AD3E-0F22F9D89E41} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-10-17] (Nvidia Corporation -> NVIDIA Corporation) Task: {B793E093-9B01-4524-95FD-A406BCFE74B1} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {C4ED5357-AF8D-4108-8B9D-13005C063C12} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {C89E19CA-1817-42CC-87D3-ACD3AE388B59} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {C9EC9198-CB80-456B-AB54-AF8B9D2BE9CE} - System32\Tasks\Apple Diagnostics => C:\Users\Caldasso\AppData\Local\Microsoft\WindowsApps\eReporter-AppX.exe [0 2022-08-24] () [simlink -> ] Task: {E6AA8EF4-6C85-4DD3-BEFD-B07A733EF400} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [66936 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {E75B9BB6-4AE1-4365-9072-4703DE9ABB74} - System32\Tasks\PCIeBusQueue => "wevtutil.exe" cl System Task: {ECE225E1-B946-4652-8717-FDBA2C236967} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144312 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {F953507B-E9A5-4095-8ED7-C2154E2762A4} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\..\Interfaces\{0c0283dc-2c8e-48aa-8f54-281b5d9c4bdb}: [NameServer] 8.8.4.4,200.204.0.138 Tcpip\..\Interfaces\{82b43c52-fc77-40d5-b42e-33315f0cabca}: [DhcpNameServer] 172.20.10.1 Edge: ======= DownloadDir: D:\Caldasso\Downloads Edge Extension: (Sem Nome) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [não encontrado (a)] Edge Extension: (Sem Nome) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [não encontrado (a)] Edge Extension: (Sem Nome) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [não encontrado (a)] Edge Extension: (Sem Nome) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [não encontrado (a)] Edge DefaultProfile: Default Edge Profile: C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-14] Edge Notifications: Default -> hxxps://www.youtube.com Edge HomePage: Default -> hxxp://www.google.com.br/ Edge StartupUrls: Default -> "hxxp://www.google.com.br/","hxxp://www.google.com/","hxxp://field.scopus.com.br/" Edge Extension: (IBM Connections Cloud Meetings) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdcoafpdlfhmdpnnicondenaabcfaokh [2022-08-29] Edge Extension: (iMacros for Chrome) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2022-08-29] Edge Extension: (EditThisCookie) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2022-08-29] Edge Extension: (FastForward) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\icallnadddjmdinamnolclfjanhfoafe [2022-08-29] Edge Extension: (Tampermonkey) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2022-08-29] Edge Extension: (Cisco Webex Extension) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ikdddppdhmjcdfgilpnbkdeggoiicjgo [2022-08-29] Edge Extension: (Chrome Remote Desktop) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2022-08-29] Edge Extension: (IBM Aspera Connect) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbffkbiljjejklcpnfmoiaehplhcifki [2022-08-29] Edge Extension: (IDM Integration Module) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2022-08-29] Edge Extension: (Senhas do iCloud) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mfbcdcnpokpoajjciilocoachedjkima [2022-11-10] Edge Extension: (Senhas do iCloud) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pejdijmoenmkgeppbflobdenhhabjlaj [2022-11-10] Edge HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2021-10-19] FireFox: ======== FF HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Caldasso\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\Caldasso\AppData\Roaming\IDM\idmmzcc5 [2019-07-27] [] [não assinado] FF HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-10-16] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2019-03-14] (Adobe Systems, Inc.) [Arquivo não assinado] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Users\Caldasso\AppData\Roaming\mozilla\plugins\npatgpc.dll [2019-09-04] Chrome: ======= CHR Profile: C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default [2022-11-14] CHR Notifications: Default -> hxxps://app.slack.com; hxxps://apps.na.collabserv.com; hxxps://brastemp.soclminer.com.br; hxxps://cliente.equipeflashmotos.com.br; hxxps://gd.mail.ibm.com; hxxps://m.casasbahia.com.br; hxxps://meet.google.com; hxxps://servicedesk.banrisul.com.br; hxxps://www.costadosauipe.com.br; hxxps://www.instagram.com; hxxps://www.lojadomecanico.com.br; hxxps://www.netflix.com; hxxps://www.reclameaqui.com.br; hxxps://www.soubarato.com.br; hxxps://www.taqi.com.br; hxxps://www.tokstok.com.br CHR HomePage: Default -> hxxp://www.google.com.br/ CHR StartupUrls: Default -> "hxxp://www.google.com.br/","hxxp://www.google.com","hxxp://field.scopus.com.br/" CHR Extension: (IBM Connections Cloud Meetings) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdcoafpdlfhmdpnnicondenaabcfaokh [2019-07-27] CHR Extension: (uBlock Origin) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-11-01] CHR Extension: (iMacros for Chrome) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2021-12-14] CHR Extension: (Tampermonkey) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-10-21] CHR Extension: (EditThisCookie) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2020-11-30] CHR Extension: (Área de trabalho remota do Google Chrome) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2020-02-26] CHR Extension: (Documentos Google off-line) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-05] CHR Extension: (FastForward) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\icallnadddjmdinamnolclfjanhfoafe [2022-06-13] CHR Extension: (Chrome Remote Desktop) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2020-02-26] CHR Extension: (Cisco Webex Extension) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2022-07-29] CHR Extension: (IBM Aspera Connect) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpoecbkildamnnchnlgoboipnblgikpn [2022-02-01] CHR Extension: (IDM Integration Module) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-05-18] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-14] CHR Extension: (Senhas do iCloud) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pejdijmoenmkgeppbflobdenhhabjlaj [2022-11-10] CHR Extension: (burlesco) - D:\Caldasso\Downloads\burlesco-chromium [2022-10-26] [UpdateUrl:hxxps://burlesco.github.io/burlesco-update/chromium.xml] <==== ATENÇÃO CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2021-10-19] CHR HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2021-10-19] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2021-10-19] ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103280 2022-09-01] (Apple Inc. -> Apple Inc.) S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] (Giga-Byte Technology -> ) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-09-30] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12516280 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) R3 CLink4Service; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [34344 2018-12-28] (Corsair Memory, Inc. -> Corsair Components, Inc.) S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [785408 2022-11-11] (Microsoft Windows -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-02-23] (EasyAntiCheat Oy -> Epic Games, Inc) S2 EasyTuneEngineService; C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\EasyTuneEngineService.exe [147840 2022-01-25] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3549656 2022-10-28] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3549656 2022-10-28] (ESET, spol. s r.o. -> ESET) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-07-17] (Epic Games Inc. -> Epic Games, Inc.) S2 Gservice; C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe [19888 2016-12-02] (GIGA-BYTE TECHNOLOGY CO., LTD. -> Microsoft) S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [228848 2022-11-03] (HP Inc. -> HP Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10097408 2022-10-25] (Logitech Inc -> Logitech, Inc.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) S2 MyService1; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [18944 2021-04-08] () [Arquivo não assinado] S2 OCButtonService; C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\OcButtonService.exe [127360 2021-04-13] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579272 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497808 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2022-07-15] (Even Balance, Inc. -> ) S2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [189248 2022-07-15] (Even Balance, Inc. -> ) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2579840 2022-09-09] (Rockstar Games, Inc. -> Rockstar Games) S2 scpbradserv; C:\Program Files (x86)\scpbrad\scpbradserv.exe [2284400 2022-06-28] (Banco Bradesco SA -> Banco Bradesco S.A.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224216 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) S2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-06-25] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [935352 2020-06-25] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12912936 2021-11-16] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe [127648 2021-06-22] (Skutta, Kristjan -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare) S2 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [83232 2019-06-26] (Wondershare Technology Co.,Ltd -> Wondershare) S2 ElevationService; C:\Program Files (x86)\Wondershare\MobileTrans\ElevationService.exe [X] R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ade64cd54ec2f9ed\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ade64cd54ec2f9ed\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem S3 OverwolfUpdater; "C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe" /RunningFrom SCM [X] S3 WsDrvInst; C:\Program Files (x86)\Wondershare\MobileTrans\DriverInstall.exe [X] ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [27256 2022-01-27] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc) R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 athur; C:\WINDOWS\System32\drivers\athurx.sys [1847296 2010-01-05] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Arquivo não assinado] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Arquivo não assinado] R3 cpuz146; C:\WINDOWS\temp\cpuz146\cpuz146_x64.sys [52824 2022-11-14] (CPUID -> CPUID) R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [29200 2021-12-17] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [198400 2022-10-28] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [119896 2022-10-28] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-10-24] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [237672 2022-10-28] (ESET, spol. s r.o. -> ESET) R4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [55400 2022-10-28] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [81696 2022-10-28] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [122504 2022-10-28] (ESET, spol. s r.o. -> ESET) S3 gdrv; C:\Windows\gdrv.sys [26792 2019-07-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R3 gdrv3; C:\WINDOWS\System32\drivers\gdrv3.sys [45248 2022-09-07] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R3 h647906; C:\WINDOWS\System32\drivers\h647906.sys [62576 2008-12-01] (Shen Zhen Dragon Rise Macro Technology Limited Company -> Your Corporation) S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) S3 hid7906; C:\Windows\SysWOW64\drivers\hid7906.sys [41096 2008-12-01] (Shen Zhen Dragon Rise Macro Technology Limited Company -> Your Corporation) S3 libusbK; C:\WINDOWS\System32\drivers\libusbK.sys [47200 2020-08-17] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-23] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-23] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-23] (Logitech Inc -> Logitech) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-13] (Nvidia Corporation -> NVIDIA Corporation) S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19936 2011-09-02] (MT SOLUTION LTD -> ) S3 pwdspio; C:\Windows\system32\pwdspio.sys [13280 2011-09-02] (MT SOLUTION LTD -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [165744 2022-03-14] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49616 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [455968 2022-10-13] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-13] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation) ==================== Um mês (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2022-11-14 15:31 - 2022-11-14 15:33 - 000034577 _____ C:\Users\Caldasso\Desktop\FRST.txt 2022-11-14 15:31 - 2022-11-14 15:33 - 000000000 ____D C:\FRST 2022-11-14 15:26 - 2022-11-14 15:26 - 002375168 _____ (Farbar) C:\Users\Caldasso\Desktop\FRST64.exe 2022-11-14 14:58 - 2022-11-14 14:58 - 000106546 _____ C:\Users\Public\Desktop\mbst-clean-results.txt 2022-11-14 14:23 - 2022-11-14 14:23 - 000000000 ___HD C:\$SysReset 2022-11-14 12:51 - 2022-11-14 12:51 - 1219099180 ____N C:\WINDOWS\MEMORY.DMP 2022-11-14 12:51 - 2022-11-14 12:51 - 001949380 _____ C:\WINDOWS\Minidump\111422-47875-01.dmp 2022-11-14 12:51 - 2022-11-14 12:51 - 000000000 ____D C:\WINDOWS\Minidump 2022-11-14 12:41 - 2022-11-14 12:43 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\IGDump 2022-11-14 12:34 - 2022-11-14 12:34 - 000000000 ____D C:\Program Files\Malwarebytes 2022-11-14 10:03 - 2022-11-14 10:04 - 000000000 ___HD C:\$WinREAgent 2022-11-14 09:47 - 2022-11-14 09:47 - 000000000 ____D C:\Users\Caldasso\AppData\Local\ElevatedDiagnostics 2022-11-11 11:39 - 2022-11-11 11:39 - 000688128 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-11-11 11:39 - 2022-11-11 11:39 - 000073216 _____ C:\WINDOWS\system32\nettraceex.dll 2022-11-11 11:39 - 2022-11-11 11:39 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-11-11 11:38 - 2022-11-11 11:38 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-10-31 16:31 - 2022-10-31 16:31 - 001060657 _____ C:\Users\Caldasso\Desktop\TranslationReport.txt 2022-10-30 20:08 - 2022-10-30 20:08 - 000001783 _____ C:\Users\Public\Desktop\iTunes.lnk 2022-10-30 20:08 - 2022-10-30 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2022-10-30 20:08 - 2022-10-30 20:08 - 000000000 ____D C:\Program Files\iTunes 2022-10-30 01:00 - 2022-10-30 01:00 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\Pine Studio 2022-10-28 17:32 - 2022-10-26 19:26 - 000865272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-10-28 17:32 - 2022-10-26 19:23 - 005816312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 001642600 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 001642600 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 001444448 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 001444448 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-10-28 17:31 - 2022-10-26 19:29 - 001487880 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-10-28 17:31 - 2022-10-26 19:29 - 001226744 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-10-28 17:31 - 2022-10-26 19:26 - 000672280 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-10-28 17:31 - 2022-10-26 19:26 - 000507440 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 002161640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 001618944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 001530864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 001190912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 000950272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 000746496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-10-28 17:31 - 2022-10-26 19:24 - 012451824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 010219016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 005891080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 003334656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 000734720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 000458248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-10-28 17:31 - 2022-10-26 19:23 - 005856760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2022-10-28 17:31 - 2022-10-26 19:23 - 000853016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-10-28 17:31 - 2022-10-25 21:15 - 000100589 _____ C:\WINDOWS\system32\nvinfo.pb 2022-10-28 17:29 - 2022-07-13 20:32 - 000060112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2022-10-27 20:26 - 2022-10-27 20:26 - 000000223 _____ C:\Users\Caldasso\Desktop\Escape Simulator.url 2022-10-26 10:47 - 2022-10-26 10:47 - 000000000 ____D C:\Program Files\LGHUB 2022-10-26 10:46 - 2022-10-26 10:47 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk 2022-10-26 10:46 - 2022-10-26 10:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2022-10-23 23:16 - 2022-10-23 23:16 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Backrooms_Escape 2022-10-23 22:38 - 2022-10-23 22:38 - 000000223 _____ C:\Users\Caldasso\Desktop\Backrooms Escape Together.url 2022-10-15 14:47 - 2022-10-07 00:01 - 000041984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll ==================== Um mês (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2022-11-14 15:30 - 2022-05-30 21:49 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\LGHUB 2022-11-14 15:30 - 2019-07-27 14:13 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-14 15:28 - 2019-07-27 14:15 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-14 15:27 - 2020-11-09 01:25 - 000000000 ____D C:\Users\Caldasso\AppData\Local\LogMeIn Hamachi 2022-11-14 15:26 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-14 15:25 - 2019-07-27 15:10 - 000000000 ____D C:\Program Files (x86)\Steam 2022-11-14 15:03 - 2021-01-02 04:31 - 001893550 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-14 15:03 - 2019-12-07 11:53 - 000791094 _____ C:\WINDOWS\system32\prfh0416.dat 2022-11-14 15:03 - 2019-12-07 11:53 - 000166058 _____ C:\WINDOWS\system32\prfc0416.dat 2022-11-14 15:03 - 2019-12-07 06:13 - 000000000 ____D C:\WINDOWS\INF 2022-11-14 14:57 - 2022-08-24 21:55 - 000000000 ___RD C:\Users\Caldasso\iCloudDrive 2022-11-14 14:57 - 2022-05-30 21:49 - 000000000 ____D C:\Users\Caldasso\AppData\Local\LGHUB 2022-11-14 14:56 - 2021-01-02 04:28 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-14 14:56 - 2019-10-10 23:36 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2022-11-14 14:56 - 2019-09-16 12:38 - 000000441 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2022-11-14 14:55 - 2019-12-07 06:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-11-14 14:55 - 2019-07-27 20:33 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\DMCache 2022-11-14 14:51 - 2021-01-02 04:22 - 000008192 ___SH C:\DumpStack.log.tmp 2022-11-14 14:48 - 2021-01-02 04:22 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-14 14:09 - 2022-09-02 19:53 - 008791352 _____ (Malwarebytes) C:\Users\Caldasso\Desktop\adwcleaner.exe 2022-11-14 14:09 - 2019-12-07 06:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-11-14 12:51 - 2021-01-02 04:23 - 000000000 ____D C:\Users\Caldasso 2022-11-14 12:50 - 2019-07-29 02:53 - 000000000 ____D C:\Users\Caldasso\AppData\Local\CrashDumps 2022-11-14 12:15 - 2020-10-18 00:30 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-11-14 10:14 - 2020-01-29 06:43 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-14 10:14 - 2020-01-29 06:43 - 000002283 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-11-14 10:14 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-14 10:14 - 2019-07-27 14:15 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-11-14 10:12 - 2021-01-02 04:22 - 000441104 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-11-14 10:11 - 2021-01-02 04:09 - 000000000 ____D C:\Program Files\Hyper-V 2022-11-14 10:11 - 2019-12-07 11:56 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-11-14 10:09 - 2019-12-07 06:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-14 03:52 - 2019-09-04 12:03 - 000000000 ____D C:\Users\Caldasso\AppData\Local\WebEx 2022-11-13 18:55 - 2019-07-28 01:37 - 000000000 ____D C:\ProgramData\CLink4 2022-11-13 18:19 - 2019-07-27 14:12 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Packages 2022-11-13 16:02 - 2019-12-07 06:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-12 03:03 - 2019-10-07 22:47 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\Discord 2022-11-12 03:01 - 2019-10-07 22:47 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Discord 2022-11-11 15:36 - 2021-01-02 04:28 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-11 15:36 - 2021-01-02 04:28 - 000003550 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-11 11:38 - 2021-01-02 04:24 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-11-11 11:31 - 2019-07-27 17:03 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-11 11:27 - 2020-07-23 15:41 - 000000468 __RSH C:\ProgramData\ntuser.pol 2022-11-11 11:27 - 2019-07-27 17:03 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-10 12:52 - 2020-07-23 15:41 - 000000100 _____ C:\WINDOWS\SysWOW64\rufus.ini 2022-11-09 17:19 - 2020-10-20 17:28 - 000000000 ____D C:\Users\Caldasso\Downloads\Video 2022-11-09 17:16 - 2019-07-29 15:40 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\vlc 2022-11-07 22:12 - 2019-09-14 00:50 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\qBittorrent 2022-11-07 20:45 - 2020-01-26 14:08 - 000000000 ____D C:\Users\Caldasso\Downloads\torresmo 2022-11-06 21:10 - 2019-07-27 22:35 - 000000000 ____D C:\Program Files\Microsoft Office 2022-11-06 21:09 - 2021-01-02 04:22 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2022-11-04 11:42 - 2022-07-21 22:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2022-11-04 11:42 - 2022-07-21 22:45 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2022-11-04 03:11 - 2019-07-27 16:17 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\Factorio 2022-11-01 00:36 - 2021-01-02 04:28 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{5847B9AB-6082-4AEB-80F4-8C516ABFA085} 2022-10-28 17:51 - 2021-12-08 12:50 - 000119896 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys 2022-10-28 17:51 - 2021-12-08 12:50 - 000081696 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys 2022-10-28 17:51 - 2021-12-08 12:50 - 000055400 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys 2022-10-28 17:51 - 2018-07-12 14:22 - 000237672 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2022-10-28 17:51 - 2018-07-12 14:22 - 000198400 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2022-10-28 17:51 - 2018-07-12 14:22 - 000122504 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2022-10-28 17:36 - 2019-09-23 14:26 - 000000000 ____D C:\Users\Caldasso\AppData\Local\NVIDIA 2022-10-28 17:30 - 2021-01-02 04:28 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2019-07-27 14:13 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-10-28 17:30 - 2019-07-27 14:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-10-28 17:30 - 2019-07-27 14:13 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-10-28 17:29 - 2021-01-02 04:28 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:29 - 2021-01-02 04:28 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-26 19:21 - 2021-06-04 01:33 - 006512336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-10-26 19:21 - 2021-01-02 04:31 - 007642784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-10-26 10:46 - 2022-09-28 08:42 - 000000000 ____D C:\Program Files\LGHUB.28406b57-ad8f-40d9-8b90-a7f5f5236dac 2022-10-25 11:22 - 2019-09-04 12:03 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\WebEx 2022-10-24 14:51 - 2018-07-12 14:22 - 000016336 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys 2022-10-23 23:16 - 2019-10-26 02:56 - 000000000 ____D C:\Users\Caldasso\AppData\Local\UnrealEngine 2022-10-23 23:16 - 2019-07-28 15:12 - 000000000 ____D C:\Users\Caldasso\AppData\Local\D3DSCache 2022-10-23 00:50 - 2022-10-13 21:13 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2022-10-23 00:50 - 2022-10-13 21:13 - 000002028 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2022-10-23 00:50 - 2021-01-02 04:27 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-10-22 20:29 - 2019-10-07 22:48 - 000002253 _____ C:\Users\Caldasso\Desktop\Discord.lnk 2022-10-17 20:40 - 2020-01-05 02:26 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Ubisoft Game Launcher 2022-10-17 03:25 - 2019-07-27 14:23 - 002890296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2022-10-17 03:25 - 2019-07-27 14:23 - 002224696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2022-10-17 03:25 - 2019-07-27 14:23 - 001297464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2022-10-15 14:50 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2022-10-15 14:49 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\Provisioning 2022-10-15 14:49 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions ==================== Arquivos na raiz de alguns diretórios ======== 2020-09-08 16:36 - 2020-09-08 16:36 - 000077765 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-10660.log 2020-08-22 14:03 - 2020-08-22 14:03 - 000077691 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-10997.log 2020-09-08 16:38 - 2020-09-08 16:38 - 000077765 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11052.log 2020-09-26 20:33 - 2020-09-26 20:33 - 000131585 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11058.log 2020-09-28 02:08 - 2020-09-28 02:08 - 000077595 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11165.log 2020-09-19 01:50 - 2020-09-19 01:50 - 000079969 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11581.log 2020-09-19 01:51 - 2020-09-19 01:51 - 000079969 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11708.log 2020-10-27 14:10 - 2020-10-27 14:10 - 000082100 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11842.log 2020-09-19 03:35 - 2020-09-19 03:35 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-12046.log 2020-09-19 03:35 - 2020-09-19 03:35 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-12174.log 2020-09-19 03:38 - 2020-09-19 03:38 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-12676.log 2020-09-19 03:40 - 2020-09-19 03:40 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-13098.log 2020-11-05 22:24 - 2020-11-05 22:24 - 000082156 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-13757.log 2020-10-11 17:38 - 2020-10-11 17:38 - 000076519 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14633.log 2020-09-28 00:44 - 2020-09-28 00:44 - 000131585 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14739.log 2020-11-11 21:29 - 2020-11-11 21:29 - 000082202 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14744.log 2020-08-11 21:56 - 2020-08-11 21:56 - 000077479 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14877.log 2020-09-05 19:24 - 2020-09-05 19:24 - 000078633 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-16378.log 2020-09-28 00:52 - 2020-09-28 00:52 - 000077615 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-16382.log 2020-08-31 19:41 - 2020-08-31 19:41 - 000076631 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-17928.log 2019-09-10 00:28 - 2020-02-12 21:32 - 000000059 _____ () C:\Users\Caldasso\AppData\Roaming\~SiMPLEX.ini 2022-08-02 23:00 - 2022-08-05 19:54 - 000000128 _____ () C:\Users\Caldasso\AppData\Local\PUTTY.RND 2020-02-11 14:18 - 2020-02-11 14:18 - 000007606 _____ () C:\Users\Caldasso\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================