Resultado da análise adicional Farbar Recovery Scan Tool (x64) Versão: 01-08-2023 Executado por maria (01-08-2023 22:20:29) Executando a partir de C:\Users\maria\OneDrive\Área de Trabalho Microsoft Windows 11 Pro Versão 22H2 22621.2070 (X64) (2023-07-30 15:34:27) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= (Se uma entrada for incluída na fixlist, será removida.) Administrador (S-1-5-21-145306588-200938627-1835766639-500 - Administrator - Disabled) Convidado (S-1-5-21-145306588-200938627-1835766639-501 - Limited - Disabled) DefaultAccount (S-1-5-21-145306588-200938627-1835766639-503 - Limited - Disabled) maria (S-1-5-21-145306588-200938627-1835766639-1001 - Administrator - Enabled) => C:\Users\maria WDAGUtilityAccount (S-1-5-21-145306588-200938627-1835766639-504 - Limited - Disabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Malwarebytes (Disabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Kaspersky (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} FW: Kaspersky (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 23.Q1.1 - Advanced Micro Devices, Inc.) Discord (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\Discord) (Version: 1.0.9015 - Discord Inc.) Genshin Impact (HKLM\...\Genshin Impact) (Version: 2.27.0.0 - COGNOSPHERE PTE. LTD.) Gmail (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\acb8866b99d09fbc1278d88cef323564) (Version: 1.0 - Google\Chrome) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 115.0.5790.110 - Google LLC) Google Drive (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\42f18f0a361a6d44e63a46d3eefa792a) (Version: 1.0 - Google\Chrome) League of Legends (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2023.6.430723 - Logitech) Malwarebytes version 4.5.34.275 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.34.275 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 115.0.1901.188 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 115.0.1901.188 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{43D501A5-E5E3-46EC-8F33-9E15D2A2CBD5}) (Version: 5.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30133 (HKLM-x32\...\{295d1583-fdb9-414b-a4c8-da539362a26b}) (Version: 14.29.30133.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30133 (HKLM\...\{E699E009-1C3C-4E50-9B57-2B39F0954C7F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30133 (HKLM\...\{6CD9E9ED-906D-4196-8DC3-F987D2F6615F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127 (HKLM-x32\...\{EAC73207-74BD-4B13-AACF-8C0E751FA4E8}) (Version: 14.24.28127 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127 (HKLM-x32\...\{2E72FA1F-BADB-4337-B8AE-F7C17EC57D1D}) (Version: 14.24.28127 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9102.1 - Realtek Semiconductor Corp.) Riot Client (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\Riot Game Riot_Client.) (Version: - Riot Games, Inc) Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.) Roblox Player for maria (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\roblox-player) (Version: - Roblox Corporation) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) VALORANT (HKU\S-1-5-21-145306588-200938627-1835766639-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc) WinRAR 6.22 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.22.0 - win.rar GmbH) Packages: ========= AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2023-07-30] (Advanced Micro Devices Inc.) [Startup Task] Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2023-07-30] (Microsoft Corporation) Power Automate -> C:\Program Files\WindowsApps\Microsoft.PowerAutomateDesktop_10.0.7204.0_x64__8wekyb3d8bbwe [2023-08-01] (Microsoft Corporation) [Startup Task] Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.16.3140.0_x64__8wekyb3d8bbwe [2023-07-30] (Microsoft Studios) [MS Ad] Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0 [2023-07-30] (Spotify AB) [Startup Task] Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2023-07-30] (Microsoft Corporation) WinRAR -> C:\Program Files\WinRAR [2023-07-30] (win.rar GmbH) ==================== Análise Personalizada CLSID (Whitelisted): ============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-08-01] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-08-01] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Whitelisted) ==================== ==================== Atalhos & WMI ======================== (As entradas podem ser listadas para serem restauradas ou removidas.) ShortcutWithArgument: C:\Users\maria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apps do Chrome\Gmail.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\maria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apps do Chrome\Google Drive.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=aghbiahbpaijignceidepookljebhfak ==================== Módulos Carregados (Whitelisted) ============= ==================== Alternate Data Streams (Whitelisted) ======== (Se uma entrada for incluída na fixlist, somente o ADS será removido.) AlternateDataStreams: C:\ProgramData\DP45977C.lfl:677104FCAA [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat:D4F6BC83AF [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat.LOG1:94949E25BC [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat.LOG2:CCE2DBB696 [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat{4ccd685a-2ef7-11ee-a408-e935d0f65e44}.TM.blf:2308574E8B [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat{4ccd685a-2ef7-11ee-a408-e935d0f65e44}.TMContainer00000000000000000001.regtrans-ms:5F19C8ACEC [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat{4ccd685a-2ef7-11ee-a408-e935d0f65e44}.TMContainer00000000000000000002.regtrans-ms:B700B84811 [3442] AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442] AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini:41964AA945 [3442] AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk:8096E45125 [3442] AlternateDataStreams: C:\Users\maria\Downloads\adwcleaner.exe:MBAM.Zone.Identifier [140] ==================== Modo de Segurança (Whitelisted) ================== (Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Associação (Whitelisted) ================= ==================== Internet Explorer (Whitelisted) ========== ==================== Hosts Conteúdo: ========================= (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2022-05-07 02:24 - 2022-05-07 02:22 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Outras Áreas =========================== (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-145306588-200938627-1835766639-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1) Firewall do Windows está habilitado. ==================== MSCONFIG/TASK MANAGER ítens desabilitados == ==================== Regras do Firewall (Whitelisted) ================ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{62E4AA69-E40C-40EF-A639-AFA456CBCFDA}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\115.0.1901.188\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C203856C-8124-4D52-87D6-8F354422F82C}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{0498E328-F70F-46C3-BAFB-A746400B486D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{EE54371C-9220-4BD1-AC85-58412BE87178}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{FAA25024-F3DF-4D79-A3C1-6A066C81DCD9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{BCE0F1E4-B71E-4C64-A86A-F2CC85D15DF4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{DC92B931-3382-4265-98B4-3EAF236E9686}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{D15AAEB5-1B97-40AF-B925-4FC640548E7A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{80499D40-10F0-4101-9EBE-205D765D6FF9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6F0C60DA-26BB-44E9-8226-5635DF78E950}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{979B1C11-697C-4845-A406-28CEC949EAD6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{0CB34A9E-FD04-4A71-AA44-D686479AE099}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [TCP Query User{5FDF6784-4E38-4B7A-85F7-E1C4546193ED}C:\users\maria\appdata\local\discord\app-1.0.9015\discord.exe] => (Allow) C:\users\maria\appdata\local\discord\app-1.0.9015\discord.exe (Discord Inc. -> Discord Inc.) FirewallRules: [UDP Query User{77006A59-36F0-4040-AE7C-5E1EFDEF8AF4}C:\users\maria\appdata\local\discord\app-1.0.9015\discord.exe] => (Allow) C:\users\maria\appdata\local\discord\app-1.0.9015\discord.exe (Discord Inc. -> Discord Inc.) FirewallRules: [{B98BC40D-E970-47C5-8CB4-2529916D0CCE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{838EE06B-8E84-4E8D-A22A-6E22F45AB0EA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{9DD8D3B1-C579-4DDF-8938-3C709B74C05D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{60EAE02A-BF16-4C39-BA92-F20803B518ED}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [TCP Query User{CE29AB1E-37A8-4A68-9DAF-6C678E50110C}D:\riot games\riot client\riotclientservices.exe] => (Allow) D:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [UDP Query User{43D4CA36-A0D6-4532-A12A-ADF47EA1F0F4}D:\riot games\riot client\riotclientservices.exe] => (Allow) D:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [{6796B088-53E1-4595-8F88-A4F3182A5D14}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23195.1511.2279.823_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{FB742896-D244-4BAF-9B82-215D242B5FD1}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23195.1511.2279.823_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Pontos de Restauração ========================= ==================== Dispositivos Apresentando Falhas No Gerenciador ============ Name: Teclado Padrão PS/2 Description: Teclado Padrão PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (teclados padrões) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erros no Log de eventos: ======================== Erros em Aplicativos: ================== Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3256, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3256, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3256, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3256, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3256, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3256, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 5288, ProfSvc PID: 1948. Error: (08/01/2023 11:17:34 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORIDADE NT) Description: O hive do usuário é carregado por outro processo (Bloqueio de Registro). Nome do processo: C:\Windows\System32\svchost.exe, PID: 3240, ProfSvc PID: 1948. Erros de Sistema: ============= Error: (08/01/2023 10:15:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço LGHUB Updater Service foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 5000 milissegundos: Reiniciar o serviço. Error: (08/01/2023 10:15:30 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço AMD External Events Utility foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (08/01/2023 10:15:30 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço AMD Crash Defender Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (08/01/2023 09:06:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Não foi possível iniciar o serviço Steam Client Service devido ao seguinte erro: O serviço não respondeu à requisição de início ou controle em tempo hábil. Error: (08/01/2023 09:06:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Tempo limite esgotado (30000 milissegundos) ao aguardar a conexão do serviço Steam Client Service. Error: (08/01/2023 08:18:17 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-N65U6F6) Description: O servidor {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} não se registrou no DCOM dentro do tempo limite necessário. Error: (08/01/2023 08:15:13 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-N65U6F6) Description: O servidor {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} não se registrou no DCOM dentro do tempo limite necessário. Error: (08/01/2023 08:10:26 PM) (Source: TPM) (EventID: 14) (User: AUTORIDADE NT) Description: O driver de dispositivo do TPM (Trusted Platform Module) encontrou um erro irrecuperável no hardware TPM, o que impede que os serviços do TPM (como criptografia de dados) sejam usados. Para obter mais ajuda, contate o fabricante do computador. Windows Defender: ================ Date: 2023-07-30 14:45:59 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {9E5A7C60-C174-4549-9406-49A66DA1315B} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: DESKTOP-N65U6F6\maria  CodeIntegrity: =============== Date: 2023-07-31 20:55:14 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\fcon.dll because the set of per-page image hashes could not be found on the system. Date: 2023-07-31 20:51:15 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky 21.14\x64\com_antivirus.dll that did not meet the Windows signing level requirements. ==================== Informações da Memória =========================== BIOS: American Megatrends International, LLC. 5.17 05/05/2022 placa-mãe: BIOSTAR Group B450MHP Processador: AMD Ryzen 5 5500 Percentagem de memória em uso: 65% RAM física total: 8081.13 MB RAM física disponível: 2811.17 MB Virtual Total: 11012.27 MB Virtual disponível: 1988.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:222.83 GB) (Free:141.41 GB) (Model: KINGSTON SA400S37240G) NTFS Drive d: (Documentos) (Fixed) (Total:465.76 GB) (Free:443.47 GB) (Model: ST500DM002-1BD142) NTFS \\?\Volume{b40ab6e7-7845-4d73-9d8d-d7402284f2c3}\ () (Fixed) (Total:0.62 GB) (Free:0.08 GB) NTFS \\?\Volume{66dca800-5d66-4c49-80dd-5f5e9b83aa8c}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32 ==================== MBR & Tabela de Partições ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 5F1410D7) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (Protective MBR) (Size: 223.6 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fim de Addition.txt =======================