Resultado do análise da Farbar Recovery Scan Tool (FRST) (x64) Versão: 18-11-2022 Executado por Caldasso (administrador) em CALDASSO (Gigabyte Technology Co., Ltd. X470 AORUS ULTRA GAMING) (24-11-2022 09:38:12) Executando a partir de C:\Users\Caldasso\Desktop Perfis Carregados: Caldasso Plataforma: Microsoft Windows 10 Pro Versão 22H2 19045.2251 (X64) Idioma: Português (Brasil) Navegador padrão: Chrome Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Banco Bradesco S.A. -> Scopus Soluções em TI Ltda) C:\Program Files (x86)\scpbrad\scpbradguard.exe (C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (C:\Program Files (x86)\G.SKILL\Trident Z Lighting Control\hid.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe (C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe ->) (Skutta, Kristjan -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (C:\Program Files\LGHUB\lghub_agent.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe <2> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe (C:\Users\Caldasso\AppData\Local\WebEx\WebexHost.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Caldasso\AppData\Local\WebEx\WebEx64\Meetings\atmgr.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginThinSetupInternal.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe (explorer.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Caldasso\AppData\Local\WebEx\WebexHost.exe (explorer.exe ->) (Corsair Memory, Inc. -> Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe (explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <11> (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <4> (explorer.exe ->) (Tonec Inc.) [Arquivo não assinado] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (G.SKILL International Enterprise Co., Ltd. -> G.SKILL Inc.) C:\Program Files (x86)\G.SKILL\Trident Z Lighting Control\hid.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) () [Arquivo não assinado] C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Banco Bradesco SA -> Banco Bradesco S.A.) C:\Program Files (x86)\scpbrad\scpbradserv.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrB.exe (services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe (services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> Microsoft) C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ade64cd54ec2f9ed\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f82b8b1a0b601f77\RtkAudUService64.exe <2> (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (services.exe ->) (Skutta, Kristjan -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (services.exe ->) (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe (services.exe ->) (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe (Shen Zhen Dragon Rise Macro Technology Limited Company -> ) C:\Windows\USB Vibration\7906\USB Gamepad.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe (svchost.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.4.101.0_x86__nzyj5cx40ttqa\iCloud\secd.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.211.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2245.5.0_x64__cv1g1gvanyjgm\WhatsApp.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f82b8b1a0b601f77\RtkAudUService64.exe [1343072 2021-08-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [194488 2022-10-28] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [366944 2022-09-27] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) HKLM-x32\...\Run: [USB Gamepad] => C:\WINDOWS\USB Vibration\7906\USB Gamepad.exe [796784 2008-12-10] (Shen Zhen Dragon Rise Macro Technology Limited Company -> ) HKLM-x32\...\Run: [Spectrum] => C:\Program Files (x86)\G.SKILL\Trident Z Lighting Control\HID.exe [1745704 2021-12-02] (G.SKILL International Enterprise Co., Ltd. -> G.SKILL Inc.) HKLM-x32\...\RunOnce: [PreRun] => C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe [14632 2016-02-26] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4245352 2022-11-16] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5650432 2021-10-20] (Tonec Inc.) [Arquivo não assinado] HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [CorsairLink4] => C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe [27146280 2018-12-28] (Corsair Memory, Inc. -> Corsair Components, Inc.) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [com.squirrel.WhatsApp.WhatsApp] => C:\Users\Caldasso\AppData\Local\WhatsApp\Update.exe [2252496 2021-10-02] (WhatsApp, Inc -> ) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [Discord] => C:\Users\Caldasso\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32696784 2022-11-15] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Caldasso\AppData\Local\WebEx\WebexHost.exe [8021200 2022-11-10] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [152025856 2022-10-25] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\Policies\Explorer: [DisallowRun] 0 HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-10] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-10-01] ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan) BootExecute: autocheck autochk /m /P \Device\HarddiskVolume24autocheck autochk * GroupPolicy: Restrição ? <==== ATENÇÃO Policies: C:\ProgramData\NTUSER.pol: Restrição <==== ATENÇÃO ==================== Tarefas Agendadas (Whitelisted) ============ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {02F8BDC7-F406-4F12-A9EE-BB6096080B7B} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154376 2022-11-17] (Microsoft Corporation -> Microsoft Corporation) Task: {053F6312-C4B9-4DD4-81F8-AD7CDC072C61} - System32\Tasks\PCIeBusPower => "vssadmin.exe" delete shadows /all /quiet Task: {09248A02-F77E-4913-9852-72635A7D4B52} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-07-27] (Google Inc -> Google LLC) Task: {0B396149-BBCF-4A2C-8B47-D019A56DD60C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {16E0F5D7-2F1C-449C-B409-B43480775258} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154376 2022-11-17] (Microsoft Corporation -> Microsoft Corporation) Task: {2BCBD421-0BA4-46C0-83F7-B651AE140EA0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2022-11-17] (Microsoft Corporation -> Microsoft Corporation) Task: {333443EB-5210-49EB-860D-14401C5A5CC9} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {3D353B7A-00E8-44F7-A278-5FEAE10C4F3E} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {3EA9935B-F71D-40FB-96CC-FD65A9EFE20F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-08-30] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {4BC77A44-B5DA-4720-9194-3329C6B32714} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [66936 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {4D34FEC9-5D67-415A-A4A3-472B1A7B58B1} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {5F18AF47-3AE5-4CCA-BA58-09D7808D4F76} - System32\Tasks\GraphicsCardEngine => C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngineStarter.exe [234880 2021-04-13] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) Task: {84779001-C456-4A5B-B677-B5E788BA252C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144280 2022-11-17] (Microsoft Corporation -> Microsoft Corporation) Task: {9E875BDE-4D69-476F-8F48-8B0459185664} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-07-27] (Google Inc -> Google LLC) Task: {B246F980-484D-440B-AD3E-0F22F9D89E41} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-10-17] (Nvidia Corporation -> NVIDIA Corporation) Task: {B793E093-9B01-4524-95FD-A406BCFE74B1} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {C1DE7A54-6DCF-4867-BD79-81F6D01DFD47} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {C4ED5357-AF8D-4108-8B9D-13005C063C12} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {C89E19CA-1817-42CC-87D3-ACD3AE388B59} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation) Task: {C9EC9198-CB80-456B-AB54-AF8B9D2BE9CE} - System32\Tasks\Apple Diagnostics => C:\Users\Caldasso\AppData\Local\Microsoft\WindowsApps\eReporter-AppX.exe [0 2022-08-24] () [simlink -> ] Task: {F953507B-E9A5-4095-8ED7-C2154E2762A4} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\..\Interfaces\{0c0283dc-2c8e-48aa-8f54-281b5d9c4bdb}: [NameServer] 8.8.4.4,200.204.0.138 Tcpip\..\Interfaces\{82b43c52-fc77-40d5-b42e-33315f0cabca}: [DhcpNameServer] 172.20.10.1 Edge: ======= DownloadDir: D:\Caldasso\Downloads Edge Extension: (Sem Nome) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [não encontrado (a)] Edge Extension: (Sem Nome) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [não encontrado (a)] Edge Extension: (Sem Nome) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [não encontrado (a)] Edge Extension: (Sem Nome) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [não encontrado (a)] Edge DefaultProfile: Default Edge Profile: C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-20] Edge Notifications: Default -> hxxps://www.youtube.com Edge HomePage: Default -> hxxp://www.google.com.br/ Edge StartupUrls: Default -> "hxxp://www.google.com.br/","hxxp://www.google.com/","hxxp://field.scopus.com.br/" Edge Extension: (IBM Connections Cloud Meetings) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdcoafpdlfhmdpnnicondenaabcfaokh [2022-08-29] Edge Extension: (iMacros for Chrome) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2022-08-29] Edge Extension: (EditThisCookie) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2022-08-29] Edge Extension: (FastForward) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\icallnadddjmdinamnolclfjanhfoafe [2022-08-29] Edge Extension: (Tampermonkey) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2022-08-29] Edge Extension: (Cisco Webex Extension) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ikdddppdhmjcdfgilpnbkdeggoiicjgo [2022-08-29] Edge Extension: (Chrome Remote Desktop) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2022-08-29] Edge Extension: (IBM Aspera Connect) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbffkbiljjejklcpnfmoiaehplhcifki [2022-08-29] Edge Extension: (IDM Integration Module) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2022-08-29] Edge Extension: (Senhas do iCloud) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mfbcdcnpokpoajjciilocoachedjkima [2022-11-10] Edge Extension: (Senhas do iCloud) - C:\Users\Caldasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pejdijmoenmkgeppbflobdenhhabjlaj [2022-11-10] Edge HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2021-10-19] FireFox: ======== FF HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Caldasso\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\Caldasso\AppData\Roaming\IDM\idmmzcc5 [2019-07-27] [] [não assinado] FF HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-11-14] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2019-03-14] (Adobe Systems, Inc.) [Arquivo não assinado] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Users\Caldasso\AppData\Roaming\mozilla\plugins\npatgpc.dll [2019-09-04] Chrome: ======= CHR Profile: C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default [2022-11-24] CHR Notifications: Default -> hxxps://app.slack.com; hxxps://apps.na.collabserv.com; hxxps://brastemp.soclminer.com.br; hxxps://cliente.equipeflashmotos.com.br; hxxps://gd.mail.ibm.com; hxxps://m.casasbahia.com.br; hxxps://meet.google.com; hxxps://servicedesk.banrisul.com.br; hxxps://www.costadosauipe.com.br; hxxps://www.instagram.com; hxxps://www.lojadomecanico.com.br; hxxps://www.netflix.com; hxxps://www.reclameaqui.com.br; hxxps://www.soubarato.com.br; hxxps://www.taqi.com.br; hxxps://www.tokstok.com.br CHR HomePage: Default -> hxxp://www.google.com.br/ CHR StartupUrls: Default -> "hxxp://www.google.com.br/","hxxp://www.google.com","hxxp://field.scopus.com.br/" CHR Extension: (IBM Connections Cloud Meetings) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdcoafpdlfhmdpnnicondenaabcfaokh [2019-07-27] CHR Extension: (uBlock Origin) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-11-23] CHR Extension: (iMacros for Chrome) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp [2021-12-14] CHR Extension: (Tampermonkey) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-11-24] CHR Extension: (EditThisCookie) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2020-11-30] CHR Extension: (Área de trabalho remota do Google Chrome) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2020-02-26] CHR Extension: (Documentos Google off-line) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-05] CHR Extension: (FastForward) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\icallnadddjmdinamnolclfjanhfoafe [2022-06-13] CHR Extension: (Chrome Remote Desktop) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2020-02-26] CHR Extension: (Cisco Webex Extension) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2022-07-29] CHR Extension: (IBM Aspera Connect) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpoecbkildamnnchnlgoboipnblgikpn [2022-11-23] CHR Extension: (IDM Integration Module) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-05-18] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-14] CHR Extension: (Senhas do iCloud) - C:\Users\Caldasso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pejdijmoenmkgeppbflobdenhhabjlaj [2022-11-10] CHR Extension: (burlesco) - D:\Caldasso\Downloads\burlesco-chromium [2022-10-26] [UpdateUrl:hxxps://burlesco.github.io/burlesco-update/chromium.xml] <==== ATENÇÃO CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2021-10-19] CHR HKU\S-1-5-21-1778824841-2599155517-4135782226-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2021-10-19] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2021-10-19] ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103280 2022-09-01] (Apple Inc. -> Apple Inc.) S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] (Giga-Byte Technology -> ) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-09-30] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12515768 2022-11-17] (Microsoft Corporation -> Microsoft Corporation) R3 CLink4Service; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [34344 2018-12-28] (Corsair Memory, Inc. -> Corsair Components, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-02-23] (EasyAntiCheat Oy -> Epic Games, Inc) R2 EasyTuneEngineService; C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\EasyTuneEngineService.exe [147840 2022-01-25] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3549656 2022-10-28] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3549656 2022-10-28] (ESET, spol. s r.o. -> ESET) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-07-17] (Epic Games Inc. -> Epic Games, Inc.) R2 Gservice; C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe [19888 2016-12-02] (GIGA-BYTE TECHNOLOGY CO., LTD. -> Microsoft) R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [228848 2022-11-03] (HP Inc. -> HP Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10097408 2022-10-25] (Logitech Inc -> Logitech, Inc.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) R2 MyService1; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [18944 2021-04-08] () [Arquivo não assinado] S2 OCButtonService; C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\OcButtonService.exe [127360 2021-04-13] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579272 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497808 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2022-07-15] (Even Balance, Inc. -> ) R2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [189248 2022-07-15] (Even Balance, Inc. -> ) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2579840 2022-09-09] (Rockstar Games, Inc. -> Rockstar Games) R2 scpbradserv; C:\Program Files (x86)\scpbrad\scpbradserv.exe [2284400 2022-06-28] (Banco Bradesco SA -> Banco Bradesco S.A.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224216 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-06-25] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [935352 2020-06-25] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12912936 2021-11-16] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\wallpaperservice32_c.exe [127648 2021-06-22] (Skutta, Kristjan -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare) R2 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [83232 2019-06-26] (Wondershare Technology Co.,Ltd -> Wondershare) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ade64cd54ec2f9ed\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ade64cd54ec2f9ed\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [27256 2022-01-27] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc) R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 athur; C:\WINDOWS\System32\drivers\athurx.sys [1847296 2010-01-05] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.) R3 cpuz146; C:\WINDOWS\temp\cpuz146\cpuz146_x64.sys [52824 2022-11-24] (CPUID -> CPUID) R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [29200 2021-12-17] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [198400 2022-10-28] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [119896 2022-10-28] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-10-24] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [237672 2022-10-28] (ESET, spol. s r.o. -> ESET) S4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [55400 2022-10-28] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [81696 2022-10-28] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [122504 2022-10-28] (ESET, spol. s r.o. -> ESET) S3 gdrv; C:\Windows\gdrv.sys [26792 2019-07-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R3 gdrv3; C:\WINDOWS\System32\drivers\gdrv3.sys [45248 2022-09-07] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R3 h647906; C:\WINDOWS\System32\drivers\h647906.sys [62576 2008-12-01] (Shen Zhen Dragon Rise Macro Technology Limited Company -> Your Corporation) S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) S3 hid7906; C:\Windows\SysWOW64\drivers\hid7906.sys [41096 2008-12-01] (Shen Zhen Dragon Rise Macro Technology Limited Company -> Your Corporation) S3 libusbK; C:\WINDOWS\System32\drivers\libusbK.sys [47200 2020-08-17] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-23] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-23] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-23] (Logitech Inc -> Logitech) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-13] (Nvidia Corporation -> NVIDIA Corporation) S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19936 2011-09-02] (MT SOLUTION LTD -> ) S3 pwdspio; C:\Windows\system32\pwdspio.sys [13280 2011-09-02] (MT SOLUTION LTD -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [165744 2022-03-14] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49616 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [455968 2022-10-13] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-13] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um mês (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2022-11-24 09:32 - 2022-11-24 09:32 - 000000000 ____D C:\Users\Caldasso\Desktop\FRST-OlderVersion 2022-11-23 16:39 - 2022-11-23 16:39 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\Louqou 2022-11-23 16:37 - 2022-11-23 16:37 - 000000223 _____ C:\Users\Caldasso\Desktop\Travellers Rest.url 2022-11-21 15:36 - 2022-11-21 15:36 - 000002220 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2022-11-21 15:36 - 2022-11-21 15:36 - 000002208 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk 2022-11-21 15:36 - 2022-11-21 15:36 - 000000000 ____D C:\Program Files\Google 2022-11-15 03:57 - 2022-11-15 03:57 - 000000789 _____ C:\Users\Public\Desktop\Big Pharma.lnk 2022-11-15 03:57 - 2022-11-15 03:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Big Pharma [GOG.com] 2022-11-14 23:01 - 2022-11-23 16:32 - 000000468 __RSH C:\ProgramData\ntuser.pol 2022-11-14 18:13 - 2022-11-24 09:34 - 000001759 _____ C:\Users\Caldasso\Desktop\Fixlog.txt 2022-11-14 15:33 - 2022-11-14 15:35 - 000105620 _____ C:\Users\Caldasso\Desktop\Addition.txt 2022-11-14 15:31 - 2022-11-24 09:39 - 000037714 _____ C:\Users\Caldasso\Desktop\FRST.txt 2022-11-14 15:31 - 2022-11-24 09:39 - 000000000 ____D C:\FRST 2022-11-14 15:26 - 2022-11-24 09:32 - 002375680 _____ (Farbar) C:\Users\Caldasso\Desktop\FRST64.exe 2022-11-14 14:23 - 2022-11-14 14:23 - 000000000 ___HD C:\$SysReset 2022-11-14 12:51 - 2022-11-14 12:51 - 1219099180 ____N C:\WINDOWS\MEMORY.DMP 2022-11-14 12:51 - 2022-11-14 12:51 - 001949380 _____ C:\WINDOWS\Minidump\111422-47875-01.dmp 2022-11-14 12:51 - 2022-11-14 12:51 - 000000000 ____D C:\WINDOWS\Minidump 2022-11-14 12:41 - 2022-11-14 12:43 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\IGDump 2022-11-14 12:34 - 2022-11-14 12:34 - 000000000 ____D C:\Program Files\Malwarebytes 2022-11-14 10:03 - 2022-11-14 10:04 - 000000000 ___HD C:\$WinREAgent 2022-11-14 09:47 - 2022-11-14 09:47 - 000000000 ____D C:\Users\Caldasso\AppData\Local\ElevatedDiagnostics 2022-11-11 11:39 - 2022-11-11 11:39 - 000688128 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-11-11 11:39 - 2022-11-11 11:39 - 000073216 _____ C:\WINDOWS\system32\nettraceex.dll 2022-11-11 11:39 - 2022-11-11 11:39 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-11-11 11:38 - 2022-11-11 11:38 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-10-30 20:08 - 2022-10-30 20:08 - 000001783 _____ C:\Users\Public\Desktop\iTunes.lnk 2022-10-30 20:08 - 2022-10-30 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2022-10-30 20:08 - 2022-10-30 20:08 - 000000000 ____D C:\Program Files\iTunes 2022-10-30 01:00 - 2022-10-30 01:00 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\Pine Studio 2022-10-28 17:32 - 2022-10-26 19:26 - 000865272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-10-28 17:32 - 2022-10-26 19:23 - 005816312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 001642600 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 001642600 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-10-28 17:31 - 2022-10-26 19:30 - 001444448 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 001444448 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-10-28 17:31 - 2022-10-26 19:30 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-10-28 17:31 - 2022-10-26 19:29 - 001487880 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-10-28 17:31 - 2022-10-26 19:29 - 001226744 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-10-28 17:31 - 2022-10-26 19:26 - 000672280 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-10-28 17:31 - 2022-10-26 19:26 - 000507440 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 002161640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 001618944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 001530864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 001190912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 000950272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-10-28 17:31 - 2022-10-26 19:25 - 000746496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-10-28 17:31 - 2022-10-26 19:24 - 012451824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 010219016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 005891080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 003334656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 000734720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-10-28 17:31 - 2022-10-26 19:24 - 000458248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-10-28 17:31 - 2022-10-26 19:23 - 005856760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2022-10-28 17:31 - 2022-10-26 19:23 - 000853016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-10-28 17:31 - 2022-10-25 21:15 - 000100589 _____ C:\WINDOWS\system32\nvinfo.pb 2022-10-28 17:29 - 2022-07-13 20:32 - 000060112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2022-10-27 20:26 - 2022-10-27 20:26 - 000000223 _____ C:\Users\Caldasso\Desktop\Escape Simulator.url 2022-10-26 10:47 - 2022-10-26 10:47 - 000000000 ____D C:\Program Files\LGHUB 2022-10-26 10:46 - 2022-10-26 10:47 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk 2022-10-26 10:46 - 2022-10-26 10:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi ==================== Um mês (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2022-11-24 09:37 - 2019-07-27 14:15 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-24 09:36 - 2022-08-24 21:55 - 000000000 ___RD C:\Users\Caldasso\iCloudDrive 2022-11-24 09:36 - 2022-05-30 21:49 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\LGHUB 2022-11-24 09:36 - 2022-05-30 21:49 - 000000000 ____D C:\Users\Caldasso\AppData\Local\LGHUB 2022-11-24 09:36 - 2020-11-09 01:25 - 000000000 ____D C:\Users\Caldasso\AppData\Local\LogMeIn Hamachi 2022-11-24 09:36 - 2019-07-27 15:10 - 000000000 ____D C:\Program Files (x86)\Steam 2022-11-24 09:36 - 2019-07-27 14:13 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-24 09:35 - 2021-01-02 04:28 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-24 09:35 - 2021-01-02 04:23 - 000000000 ____D C:\Users\Caldasso 2022-11-24 09:35 - 2021-01-02 04:22 - 000008192 ___SH C:\DumpStack.log.tmp 2022-11-24 09:35 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-24 09:35 - 2019-12-07 06:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-11-24 09:35 - 2019-10-10 23:36 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2022-11-24 09:35 - 2019-09-16 12:38 - 000000441 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2022-11-24 09:29 - 2021-01-02 04:22 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-24 03:51 - 2019-09-04 12:03 - 000000000 ____D C:\Users\Caldasso\AppData\Local\WebEx 2022-11-24 00:05 - 2019-07-29 02:53 - 000000000 ____D C:\Users\Caldasso\AppData\Local\CrashDumps 2022-11-23 20:32 - 2022-08-10 20:51 - 000000000 ____D C:\Program Files\Cheat Engine 7.4 2022-11-23 16:36 - 2021-01-02 04:31 - 001929834 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-23 16:36 - 2019-12-07 11:53 - 000819538 _____ C:\WINDOWS\system32\prfh0416.dat 2022-11-23 16:36 - 2019-12-07 11:53 - 000179582 _____ C:\WINDOWS\system32\prfc0416.dat 2022-11-23 16:36 - 2019-12-07 06:13 - 000000000 ____D C:\WINDOWS\INF 2022-11-23 14:08 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2022-11-23 14:08 - 2019-03-19 01:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2022-11-23 10:04 - 2020-01-29 06:43 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-23 10:04 - 2020-01-29 06:43 - 000002283 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-11-23 10:04 - 2019-12-07 06:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-23 10:04 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-22 03:05 - 2019-07-27 14:15 - 000000000 ____D C:\Users\Caldasso\AppData\Local\PlaceholderTileLogoFolder 2022-11-22 03:05 - 2019-07-27 14:12 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Packages 2022-11-22 02:28 - 2020-11-29 02:45 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Arma 3 Launcher 2022-11-21 18:04 - 2020-10-20 17:28 - 000000000 ____D C:\Users\Caldasso\Downloads\Video 2022-11-21 18:04 - 2019-07-29 15:40 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\vlc 2022-11-20 22:49 - 2022-09-12 11:37 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\com.adobe.dunamis 2022-11-19 19:33 - 2019-07-27 20:33 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\DMCache 2022-11-19 04:46 - 2022-10-13 21:13 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2022-11-19 04:46 - 2022-10-13 21:13 - 000002028 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2022-11-19 04:46 - 2021-01-02 04:27 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-11-19 03:42 - 2020-01-26 14:08 - 000000000 ____D C:\Users\Caldasso\Downloads\torresmo 2022-11-19 03:32 - 2019-09-14 00:50 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\qBittorrent 2022-11-18 23:01 - 2019-10-07 22:47 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\Discord 2022-11-18 22:59 - 2019-10-07 22:47 - 000000000 ____D C:\Users\Caldasso\AppData\Local\Discord 2022-11-17 11:11 - 2019-07-27 22:35 - 000000000 ____D C:\Program Files\Microsoft Office 2022-11-14 18:55 - 2019-08-09 14:41 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\Temp 2022-11-14 18:17 - 2019-12-07 06:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-14 14:09 - 2022-09-02 19:53 - 008791352 _____ (Malwarebytes) C:\Users\Caldasso\Desktop\adwcleaner.exe 2022-11-14 14:09 - 2019-12-07 06:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-11-14 12:15 - 2020-10-18 00:30 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-11-14 10:14 - 2019-07-27 14:15 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-11-14 10:12 - 2021-01-02 04:22 - 000441104 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-11-14 10:11 - 2021-01-02 04:09 - 000000000 ____D C:\Program Files\Hyper-V 2022-11-14 10:11 - 2019-12-07 11:56 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-11-14 10:11 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-11-13 18:55 - 2019-07-28 01:37 - 000000000 ____D C:\ProgramData\CLink4 2022-11-11 15:36 - 2021-01-02 04:28 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-11 15:36 - 2021-01-02 04:28 - 000003550 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-11 11:38 - 2021-01-02 04:24 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-11-11 11:31 - 2019-07-27 17:03 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-11 11:27 - 2019-07-27 17:03 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-10 12:52 - 2020-07-23 15:41 - 000000100 _____ C:\WINDOWS\SysWOW64\rufus.ini 2022-11-06 21:09 - 2021-01-02 04:22 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2022-11-04 11:42 - 2022-07-21 22:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2022-11-04 11:42 - 2022-07-21 22:45 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2022-11-04 03:11 - 2019-07-27 16:17 - 000000000 ____D C:\Users\Caldasso\AppData\Roaming\Factorio 2022-11-01 00:36 - 2021-01-02 04:28 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{5847B9AB-6082-4AEB-80F4-8C516ABFA085} 2022-10-28 17:51 - 2021-12-08 12:50 - 000119896 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys 2022-10-28 17:51 - 2021-12-08 12:50 - 000081696 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys 2022-10-28 17:51 - 2021-12-08 12:50 - 000055400 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys 2022-10-28 17:51 - 2018-07-12 14:22 - 000237672 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2022-10-28 17:51 - 2018-07-12 14:22 - 000198400 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2022-10-28 17:51 - 2018-07-12 14:22 - 000122504 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2022-10-28 17:36 - 2019-09-23 14:26 - 000000000 ____D C:\Users\Caldasso\AppData\Local\NVIDIA 2022-10-28 17:30 - 2021-01-02 04:28 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2021-01-02 04:28 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:30 - 2019-07-27 14:13 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-10-28 17:30 - 2019-07-27 14:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-10-28 17:30 - 2019-07-27 14:13 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-10-28 17:29 - 2021-01-02 04:28 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-28 17:29 - 2021-01-02 04:28 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-10-26 19:21 - 2021-06-04 01:33 - 006512336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-10-26 19:21 - 2021-01-02 04:31 - 007642784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-10-26 10:46 - 2022-09-28 08:42 - 000000000 ____D C:\Program Files\LGHUB.28406b57-ad8f-40d9-8b90-a7f5f5236dac 2022-10-25 11:22 - 2019-09-04 12:03 - 000000000 ____D C:\Users\Caldasso\AppData\LocalLow\WebEx ==================== Arquivos na raiz de alguns diretórios ======== 2020-09-08 16:36 - 2020-09-08 16:36 - 000077765 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-10660.log 2020-08-22 14:03 - 2020-08-22 14:03 - 000077691 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-10997.log 2020-09-08 16:38 - 2020-09-08 16:38 - 000077765 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11052.log 2020-09-26 20:33 - 2020-09-26 20:33 - 000131585 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11058.log 2020-09-28 02:08 - 2020-09-28 02:08 - 000077595 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11165.log 2020-09-19 01:50 - 2020-09-19 01:50 - 000079969 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11581.log 2020-09-19 01:51 - 2020-09-19 01:51 - 000079969 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11708.log 2020-10-27 14:10 - 2020-10-27 14:10 - 000082100 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-11842.log 2020-09-19 03:35 - 2020-09-19 03:35 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-12046.log 2020-09-19 03:35 - 2020-09-19 03:35 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-12174.log 2020-09-19 03:38 - 2020-09-19 03:38 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-12676.log 2020-09-19 03:40 - 2020-09-19 03:40 - 000077599 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-13098.log 2020-11-05 22:24 - 2020-11-05 22:24 - 000082156 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-13757.log 2020-10-11 17:38 - 2020-10-11 17:38 - 000076519 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14633.log 2020-09-28 00:44 - 2020-09-28 00:44 - 000131585 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14739.log 2020-11-11 21:29 - 2020-11-11 21:29 - 000082202 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14744.log 2020-08-11 21:56 - 2020-08-11 21:56 - 000077479 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-14877.log 2020-09-05 19:24 - 2020-09-05 19:24 - 000078633 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-16378.log 2020-09-28 00:52 - 2020-09-28 00:52 - 000077615 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-16382.log 2020-08-31 19:41 - 2020-08-31 19:41 - 000076631 _____ () C:\Users\Caldasso\AppData\Roaming\TNod-17928.log 2019-09-10 00:28 - 2020-02-12 21:32 - 000000059 _____ () C:\Users\Caldasso\AppData\Roaming\~SiMPLEX.ini 2022-08-02 23:00 - 2022-08-05 19:54 - 000000128 _____ () C:\Users\Caldasso\AppData\Local\PUTTY.RND 2020-02-11 14:18 - 2020-02-11 14:18 - 000007606 _____ () C:\Users\Caldasso\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================