Resultado do análise da Farbar Recovery Scan Tool (FRST) (x64) Versão: 06-10-2023 Executado por Admin (administrador) em FAMILIASILVA-PC (25-10-2023 15:33:38) Executando a partir de C:\Users\Admin\OneDrive\Área de Trabalho\FRST64.exe Perfis Carregados: Admin & vitor Plataforma: Microsoft Windows 10 Pro Versão 22H2 19045.3570 (X64) Idioma: Português (Brasil) Navegador padrão: Opera Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (C:\Users\Admin\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Admin\AppData\Local\Programs\Opera\103.0.4928.34\opera_crashreporter.exe (explorer.exe ->) (CERTIF_NICOLAS_COOLMAN -> Nicolas Coolman) [Arquivo não assinado] C:\Users\Admin\OneDrive\Área de Trabalho\ZHPCleaner.exe (explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Admin\AppData\Local\Programs\Opera\opera.exe <28> (Famatech Corp. -> Famatech Corp.) C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2340.9.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM-x32\...\Run: [RadminVPN] => C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe [2089536 2023-07-10] (Famatech Corp. -> Famatech Corp.) HKU\S-1-5-21-582402091-274298181-220733823-1001\...\Run: [MicrosoftEdgeAutoLaunch_5EFC0ECB77A7585FE9DCDD0B2E946A2B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187176 2023-10-24] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-582402091-274298181-220733823-1001\...\Run: [Opera Stable] => C:\Users\Admin\AppData\Local\Programs\Opera\launcher.exe [2820000 2023-10-16] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-582402091-274298181-220733823-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37113808 2023-10-25] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-582402091-274298181-220733823-1005\...\Run: [MicrosoftEdgeAutoLaunch_344E2977EA21231574B0FD960BE2991E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187176 2023-10-24] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-582402091-274298181-220733823-1005\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\mdgls\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [42164600 2023-10-16] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-582402091-274298181-220733823-1005\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\mdgls\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Nenhum Arquivo) HKU\S-1-5-21-582402091-274298181-220733823-1006\...\Run: [MicrosoftEdgeAutoLaunch_B57531330ACA2147919ECA1B16FA65E8] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187176 2023-10-24] (Microsoft Corporation -> Microsoft Corporation) ==================== Tarefas Agendadas (Whitelisted) ================= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {207240D3-B2F6-4C47-8345-DF6BBAD06BC9} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation) Task: {8875677B-B404-432E-9B11-BA6682D7828F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E8EFCA7C-3916-41CB-87DC-85C80856213E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0C129192-1648-4CFB-B831-EACA64D61E40} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {36E7E03B-D872-49E1-AD0A-9B55C5712A81} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {072F38E1-5E91-4D9C-A0E9-E00766A9A58A} - System32\Tasks\Opera scheduled Autoupdate 1697229064 => C:\Users\Admin\AppData\Local\Programs\Opera\launcher.exe [2820000 2023-10-16] (Opera Norway AS -> Opera Software) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 192.168.15.1 Tcpip\..\Interfaces\{a1bba48c-7834-46fb-af53-f51ec0ee7de8}: [DhcpNameServer] 192.168.15.1 Edge: ======= Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default [2023-10-25] Edge Extension: (Documentos Google off-line) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-13] Edge Extension: (Edge relevant text changes) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-10-13] Edge Extension: (Unhook - Remove YouTube Recommended Videos) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\khncfooichmfjbepaaaebmommgaepoid [2023-10-24] Opera: ======= OPR DefaultProfile: Default ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.) S2 RvControlSvc; C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe [1179712 2023-07-10] (Famatech Corp. -> Famatech Corp.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402264 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\NisSrv.exe [3116904 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MsMpEng.exe [133584 2023-10-13] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [42256 2022-07-02] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [59344 2022-07-02] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 HidGuardian; C:\WINDOWS\System32\drivers\HidGuardian.sys [35728 2018-12-02] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) R3 RvNetMP60; C:\WINDOWS\System32\drivers\RvNetMP60.sys [58288 2023-07-10] (Microsoft Windows Hardware Compatibility Publisher -> Famatech Corp.) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [76832 2022-09-30] (Samsung Electronics CO., LTD. -> QUALCOMM Incorporated) R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [165744 2022-03-14] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [572712 2023-10-13] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105872 2023-10-13] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um mês (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2023-10-25 15:33 - 2023-10-25 15:33 - 000000000 ____D C:\FRST 2023-10-25 15:19 - 2023-10-25 15:31 - 000000000 ____D C:\Users\Admin\AppData\Roaming\ZHP 2023-10-25 15:19 - 2023-10-25 15:19 - 000000000 ____D C:\Users\Admin\AppData\Local\ZHP 2023-10-24 16:20 - 2023-10-24 16:27 - 000000000 ____D C:\AdwCleaner 2023-10-24 16:20 - 2023-10-24 16:20 - 000000000 ____D C:\Users\vitor\AppData\Local\Avast Software 2023-10-24 14:45 - 2023-10-24 14:45 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Avast Software 2023-10-24 14:45 - 2023-10-24 14:45 - 000000000 ____D C:\Users\vitor\AppData\Local\CEF 2023-10-24 13:26 - 2023-10-24 13:26 - 000000000 ____D C:\Users\Admin\AppData\Local\Avast Software 2023-10-24 13:25 - 2023-10-24 13:25 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Avast Software 2023-10-24 13:24 - 2023-10-24 13:24 - 000313240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2023-10-24 13:24 - 2023-10-24 13:24 - 000000000 ____D C:\Program Files\Common Files\Avast Software 2023-10-24 13:24 - 2023-10-24 13:24 - 000000000 ____D C:\Program Files\Avast Software 2023-10-24 13:23 - 2023-10-24 16:21 - 000000000 ____D C:\ProgramData\Avast Software 2023-10-24 13:13 - 2023-10-24 13:13 - 000000000 ____D C:\Users\Admin\AppData\Local\DBG 2023-10-24 13:13 - 2023-10-24 13:13 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashReportClient 2023-10-20 09:36 - 2023-10-20 09:36 - 000257114 _____ C:\Users\vitor\Downloads\xampu.pdf 2023-10-20 09:36 - 2023-10-20 09:36 - 000000000 ____D C:\Users\vitor\AppData\LocalLow\Temp 2023-10-20 09:34 - 2023-10-20 09:32 - 000086150 _____ C:\Users\vitor\OneDrive\Documentos\Monetizze.mhtml 2023-10-20 09:26 - 2023-10-20 09:26 - 000000448 _____ C:\Users\vitor\Downloads\Este Computador - Atalho.lnk 2023-10-20 09:14 - 2023-10-20 09:14 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2023-10-19 19:04 - 2023-10-19 19:06 - 1390549015 _____ C:\Users\Admin\Downloads\fivenightsatfreddys2doom-64bit.rar 2023-10-19 14:28 - 2023-10-19 14:28 - 000015017 _____ C:\Users\Admin\Downloads\boruto.jpeg 2023-10-19 14:28 - 2023-10-19 14:28 - 000015017 _____ C:\Users\Admin\Downloads\boruto.jfif 2023-10-19 14:28 - 2023-10-19 14:28 - 000015017 _____ C:\Users\Admin\Downloads\borut.jfif 2023-10-18 21:08 - 2023-10-18 21:08 - 000916548 _____ C:\Users\Admin\Downloads\FACEBOOK A ESTRATÉGICA.epub 2023-10-18 21:07 - 2023-10-18 21:07 - 001777840 _____ C:\Users\Admin\Downloads\Minha vida de rata.epub 2023-10-17 23:27 - 2023-10-17 23:28 - 069286995 _____ C:\Users\Admin\Downloads\202310172326.mp4 2023-10-17 23:27 - 2023-10-17 23:28 - 069286995 _____ C:\Users\Admin\Downloads\202310172326 (2).mp4 2023-10-17 23:27 - 2023-10-17 23:27 - 000279554 _____ C:\Users\Admin\Downloads\202310172326_capa.jpeg 2023-10-17 23:27 - 2023-10-17 23:27 - 000279554 _____ C:\Users\Admin\Downloads\202310172326_capa (2).jpeg 2023-10-17 23:27 - 2023-10-17 23:27 - 000279554 _____ C:\Users\Admin\Downloads\202310172326_capa (1).jpeg 2023-10-17 19:15 - 2023-10-17 19:15 - 000000000 ____D C:\Users\Admin\AppData\Local\zdoom 2023-10-17 17:51 - 2023-10-17 17:52 - 580673059 _____ C:\Users\Admin\Downloads\SnapInsta.io-CHEGUEI EM ISRAEL 🇮🇱.mp4 2023-10-17 16:34 - 2023-10-17 16:35 - 696277853 _____ C:\Users\Admin\Downloads\SnapInsta.io-AQUI MATARAM JESUS EM ISRAEL 🇮🇱.mp4 2023-10-17 11:34 - 2023-10-17 11:35 - 845634133 _____ C:\Users\Admin\Downloads\fivenightsatfreddys1doom-64bit.rar 2023-10-17 11:29 - 2023-10-17 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Radmin VPN 2023-10-17 11:29 - 2023-10-17 11:29 - 000000000 ____D C:\ProgramData\Famatech 2023-10-17 11:29 - 2023-10-17 11:29 - 000000000 ____D C:\Program Files (x86)\Radmin VPN 2023-10-17 11:28 - 2023-10-17 11:28 - 021775888 _____ (Famatech Corp. ) C:\Users\Admin\Downloads\Radmin_VPN_1.4.4642.1.exe 2023-10-17 11:23 - 2023-10-17 11:23 - 000000000 ____D C:\Users\Admin\AppData\Roaming\WinRAR 2023-10-17 11:23 - 2023-10-17 11:23 - 000000000 ____D C:\Program Files\WinRAR 2023-10-17 11:22 - 2023-10-17 11:22 - 006060176 _____ (Alexander Roshal) C:\Users\Admin\Downloads\winrar-x64-624br.exe 2023-10-16 21:59 - 2023-10-16 21:59 - 000000000 ____D C:\Users\mdgls\AppData\Local\PlaceholderTileLogoFolder 2023-10-16 21:59 - 2023-10-16 21:59 - 000000000 ____D C:\Users\mdgls\AppData\Local\D3DSCache 2023-10-16 21:58 - 2023-10-16 21:58 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-582402091-274298181-220733823-1005 2023-10-16 21:58 - 2023-10-16 21:58 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-582402091-274298181-220733823-1005 2023-10-16 21:57 - 2023-10-16 22:09 - 000000000 ____D C:\Users\mdgls\AppData\Local\Packages 2023-10-16 21:57 - 2023-10-16 21:57 - 000000020 ___SH C:\Users\mdgls\ntuser.ini 2023-10-16 21:57 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls\AppData\Roaming\Microsoft\Network 2023-10-16 21:57 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls\AppData\Roaming\Adobe 2023-10-16 21:57 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls\AppData\Local\VirtualStore 2023-10-16 21:57 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls\AppData\Local\Publishers 2023-10-16 21:57 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls\AppData\Local\ConnectedDevicesPlatform 2023-10-16 17:49 - 2023-10-16 17:49 - 000268447 _____ C:\Users\Admin\Downloads\Maria Vitória Lima e Silva.pdf 2023-10-16 00:04 - 2023-10-16 00:23 - 000127667 _____ C:\Users\Admin\Downloads\WhatsApp Image 2023-10-15 at 20.12.32 (1).jpeg 2023-10-16 00:04 - 2023-10-16 00:23 - 000115740 _____ C:\Users\Admin\Downloads\WhatsApp Image 2023-10-15 at 20.12.32.jpeg 2023-10-16 00:04 - 2023-10-16 00:23 - 000101548 _____ C:\Users\Admin\Downloads\WhatsApp Image 2023-10-15 at 20.12.31 (2).jpeg 2023-10-16 00:04 - 2023-10-16 00:23 - 000085885 _____ C:\Users\Admin\Downloads\WhatsApp Image 2023-10-15 at 20.12.32 (2).jpeg 2023-10-16 00:04 - 2023-10-16 00:23 - 000075499 _____ C:\Users\Admin\Downloads\WhatsApp Image 2023-10-15 at 20.12.31.jpeg 2023-10-16 00:04 - 2023-10-16 00:23 - 000074842 _____ C:\Users\Admin\Downloads\WhatsApp Image 2023-10-15 at 20.12.31 (1).jpeg 2023-10-16 00:04 - 2023-10-16 00:04 - 000582195 _____ C:\Users\Admin\Downloads\WhatsApp Unknown 2023-10-16 at 00.04.44.zip 2023-10-15 21:52 - 2023-10-15 21:52 - 000000000 ____D C:\Users\vitor\AppData\Local\Comms 2023-10-15 11:01 - 2023-10-15 11:07 - 000000000 ____D C:\Users\Admin\AppData\Roaming\.minecraft 2023-10-15 11:00 - 2023-10-15 11:00 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2023-10-15 11:00 - 2023-10-15 11:00 - 000000000 ____D C:\Program Files (x86)\Windows Kits 2023-10-15 11:00 - 2023-10-15 11:00 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput 2023-10-15 10:13 - 2023-10-15 10:13 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2023-10-15 10:11 - 2023-10-15 10:11 - 000000000 ____D C:\Users\Admin\AppData\Local\PeerDistRepub 2023-10-15 09:58 - 2023-10-15 09:58 - 000000000 ____D C:\Users\Admin\AppData\Local\Backup 2023-10-14 23:16 - 2023-10-14 23:16 - 000000000 ____D C:\ProgramData\PLUG 2023-10-14 19:00 - 2023-10-14 19:00 - 000000000 ____D C:\Program Files\RUXIM 2023-10-14 18:58 - 2023-10-14 19:00 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-10-14 13:19 - 2023-10-14 13:19 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2023-10-14 13:13 - 2023-10-14 13:13 - 000000000 ____D C:\Users\vitor\AppData\Local\Backup 2023-10-13 23:04 - 2023-10-20 22:13 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-582402091-274298181-220733823-1006 2023-10-13 23:04 - 2023-10-13 23:04 - 000000000 ____D C:\Users\vitor\AppData\Local\OneDrive 2023-10-13 20:48 - 2023-10-13 20:48 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\MMC 2023-10-13 20:45 - 2023-10-13 20:45 - 000000000 ____D C:\Users\Admin\AppData\Local\Rocket League 2023-10-13 20:40 - 2023-10-25 15:09 - 000000000 ____D C:\Users\Admin\AppData\Roaming\discord 2023-10-13 20:40 - 2023-10-25 14:58 - 000000000 ____D C:\Users\Admin\AppData\Local\Discord 2023-10-13 20:40 - 2023-10-13 20:40 - 000000000 ____D C:\Users\Admin\AppData\Local\SquirrelTemp 2023-10-13 18:51 - 2023-10-13 18:51 - 000000000 ____D C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder 2023-10-13 18:31 - 2023-10-13 18:31 - 000000000 ____D C:\Users\vitor\AppData\Local\PlaceholderTileLogoFolder 2023-10-13 18:25 - 2023-10-13 19:46 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Microsoft\Spelling 2023-10-13 18:24 - 2023-10-13 18:24 - 000000000 ____D C:\Users\vitor\AppData\Local\D3DSCache 2023-10-13 18:23 - 2023-10-20 22:13 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-582402091-274298181-220733823-1006 2023-10-13 18:22 - 2023-10-16 21:23 - 000000000 ____D C:\Users\vitor\AppData\Local\Packages 2023-10-13 18:22 - 2023-10-13 18:40 - 000000000 ____D C:\Users\vitor\AppData\Local\Publishers 2023-10-13 18:22 - 2023-10-13 18:22 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Microsoft\Network 2023-10-13 18:22 - 2023-10-13 18:22 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Adobe 2023-10-13 18:22 - 2023-10-13 18:22 - 000000000 ____D C:\Users\vitor\AppData\Local\VirtualStore 2023-10-13 18:21 - 2023-10-13 23:00 - 000000000 ____D C:\Users\vitor\AppData\Local\ConnectedDevicesPlatform 2023-10-13 18:21 - 2023-10-13 18:21 - 000000020 ___SH C:\Users\vitor\ntuser.ini 2023-10-13 17:50 - 2023-10-13 17:50 - 000000000 ____D C:\Program Files\Epic Games 2023-10-13 17:49 - 2023-10-13 20:45 - 000000000 ____D C:\Users\Admin\AppData\Local\Epic Games 2023-10-13 17:36 - 2023-10-17 11:43 - 000000000 ____D C:\ProgramData\Package Cache 2023-10-13 17:36 - 2023-10-13 17:36 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA Corporation 2023-10-13 17:36 - 2023-10-13 17:36 - 000000000 ____D C:\Users\Admin\AppData\Local\CEF 2023-10-13 17:33 - 2023-10-13 17:33 - 000000000 ____D C:\Users\Admin\AppData\Local\OneDrive 2023-10-13 17:31 - 2023-10-18 11:41 - 000004212 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1697229064 2023-10-13 17:31 - 2023-10-18 11:41 - 000001401 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk 2023-10-13 17:31 - 2023-10-13 17:31 - 000000000 ____D C:\Users\Admin\AppData\Local\Opera Software 2023-10-13 17:30 - 2023-10-13 17:30 - 002952944 _____ (Opera Software) C:\Users\Admin\Downloads\OperaSetup.exe 2023-10-13 17:30 - 2023-10-13 17:30 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Opera Software 2023-10-13 17:12 - 2023-10-13 17:12 - 000000000 ____D C:\Users\Admin\AppData\Local\UnrealEngineLauncher 2023-10-13 17:12 - 2023-10-13 17:12 - 000000000 ____D C:\Users\Admin\AppData\Local\UnrealEngine 2023-10-13 17:12 - 2023-10-13 17:12 - 000000000 ____D C:\Users\Admin\AppData\Local\EpicGamesLauncher 2023-10-13 17:09 - 2023-10-13 17:49 - 000000000 ____D C:\ProgramData\Epic 2023-10-13 17:09 - 2023-10-13 17:49 - 000000000 ____D C:\Program Files (x86)\Epic Games 2023-10-13 17:08 - 2023-10-13 21:28 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Spelling 2023-10-13 17:07 - 2023-10-13 17:07 - 000000000 ____D C:\Users\Admin\AppData\Local\Comms 2023-10-13 16:53 - 2023-10-23 23:01 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache 2023-10-13 16:53 - 2023-10-23 22:47 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-582402091-274298181-220733823-1001 2023-10-13 16:53 - 2023-10-23 22:47 - 000003374 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-582402091-274298181-220733823-1001 2023-10-13 16:53 - 2023-10-13 16:53 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2023-10-13 16:51 - 2023-10-15 11:01 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages 2023-10-13 16:51 - 2023-10-15 11:01 - 000000000 ____D C:\ProgramData\Packages 2023-10-13 16:51 - 2023-10-15 09:54 - 000000000 ____D C:\Users\Admin\AppData\Local\ConnectedDevicesPlatform 2023-10-13 16:51 - 2023-10-13 16:51 - 000000020 ___SH C:\Users\Admin\ntuser.ini 2023-10-13 16:51 - 2023-10-13 16:51 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Network 2023-10-13 16:51 - 2023-10-13 16:51 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Adobe 2023-10-13 16:51 - 2023-10-13 16:51 - 000000000 ____D C:\Users\Admin\AppData\Local\VirtualStore 2023-10-13 16:51 - 2023-10-13 16:51 - 000000000 ____D C:\Users\Admin\AppData\Local\Publishers 2023-10-13 15:49 - 2023-10-24 12:45 - 001651882 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\Users\Usuário Padrão 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\Users\Todos os Usuários 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dados de Aplicativos 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\ProgramData\Modelos 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\ProgramData\Menu Iniciar 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\ProgramData\Documentos 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\ProgramData\Dados de Aplicativos 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\Program Files\Common Files\Sistema 2023-10-13 15:47 - 2023-10-13 15:47 - 000000000 _SHDL C:\Program Files\Arquivos Comuns 2023-10-13 15:45 - 2023-10-13 15:45 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Microsoft\SystemCertificates 2023-10-13 15:45 - 2023-10-13 15:45 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Microsoft\Crypto 2023-10-13 15:45 - 2023-10-13 15:45 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\SystemCertificates 2023-10-13 15:45 - 2023-10-13 15:45 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Crypto 2023-10-13 15:44 - 2023-10-13 15:44 - 000003840 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2023-10-13 15:43 - 2023-10-13 15:43 - 000000000 ____D C:\Users\mdgls\AppData\Roaming\Microsoft\SystemCertificates 2023-10-13 15:43 - 2023-10-13 15:43 - 000000000 ____D C:\Users\mdgls\AppData\Roaming\Microsoft\Crypto 2023-10-13 15:41 - 2023-10-24 22:11 - 000000000 ____D C:\Users\Admin 2023-10-13 15:41 - 2023-10-23 22:47 - 000002381 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-10-13 15:41 - 2023-10-23 21:02 - 000000000 ____D C:\Users\vitor 2023-10-13 15:41 - 2023-10-20 22:13 - 000002381 _____ C:\Users\vitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-10-13 15:41 - 2023-10-16 21:58 - 000002365 _____ C:\Users\mdgls\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-10-13 15:41 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls\AppData\Roaming\Microsoft\Windows 2023-10-13 15:41 - 2023-10-16 21:57 - 000000000 ____D C:\Users\mdgls 2023-10-13 15:41 - 2023-10-13 18:22 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Microsoft\Windows 2023-10-13 15:41 - 2023-10-13 16:51 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Modelos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Meus Documentos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Menu Iniciar 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Dados de Aplicativos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Configurações Locais 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\AppData\Local\Histórico 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\AppData\Local\Dados de Aplicativos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Ambiente de Rede 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\vitor\Ambiente de Impressão 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Modelos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Meus Documentos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Menu Iniciar 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Dados de Aplicativos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Configurações Locais 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\AppData\Local\Histórico 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\AppData\Local\Dados de Aplicativos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Ambiente de Rede 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\mdgls\Ambiente de Impressão 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Modelos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Meus Documentos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Menu Iniciar 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Dados de Aplicativos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Configurações Locais 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\AppData\Local\Histórico 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\AppData\Local\Dados de Aplicativos 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Ambiente de Rede 2023-10-13 15:41 - 2023-10-13 15:41 - 000000000 _SHDL C:\Users\Admin\Ambiente de Impressão 2023-10-13 15:38 - 2023-10-24 12:40 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-10-13 15:38 - 2023-10-13 18:53 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-10-13 15:38 - 2023-10-13 15:43 - 000000000 ____D C:\ProgramData\Intel 2023-10-13 15:38 - 2023-10-13 15:39 - 000003674 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-10-13 15:38 - 2023-10-13 15:39 - 000003550 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-10-13 15:38 - 2023-10-13 15:38 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2023-10-13 15:37 - 2023-10-25 13:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-10-13 15:37 - 2023-10-13 15:37 - 000259824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-10-13 15:36 - 2023-10-13 15:59 - 000000000 ____D C:\WINDOWS\Panther 2023-10-13 15:35 - 2023-10-13 17:04 - 000000000 ____D C:\Windows.old 2023-10-13 15:34 - 2023-10-13 15:34 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2023-10-13 15:31 - 2023-10-13 15:31 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-10-13 15:31 - 2023-10-13 15:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\mde 2023-10-13 15:31 - 2023-10-13 15:31 - 000000000 ____D C:\ProgramData\ssh 2023-10-13 15:24 - 2023-10-13 15:24 - 000016059 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2023-10-13 15:12 - 2023-10-13 15:12 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2023-10-12 19:31 - 2022-09-30 05:24 - 000076832 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\ssudqcfilter.sys 2023-10-12 19:31 - 2022-09-30 05:23 - 000167440 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys 2023-10-12 16:13 - 2023-10-12 16:13 - 001190802 _____ C:\Users\vitor\Downloads\Cópia de Math Subject for Elementary - 4th Grade_ Practice Standards XL by Slidesgo (1).pptx 2023-10-12 16:13 - 2023-10-12 16:13 - 000478507 _____ C:\Users\vitor\Downloads\Cópia de Math Subject for Elementary - 4th Grade_ Practice Standards XL by Slidesgo (1).pdf 2023-10-12 13:10 - 2023-10-12 13:10 - 008090637 _____ C:\Users\vitor\Downloads\Math Subject for Elementary - 5th Grade_ Fractions I _ by Slidesgo.pptx 2023-10-12 12:07 - 2023-10-12 12:07 - 000000000 ___HD C:\$WinREAgent 2023-10-11 19:22 - 2023-10-13 17:10 - 000001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2023-10-07 20:36 - 2023-10-07 20:37 - 000000000 ____D C:\Users\vitor\OneDrive\Documentos\Gravações de som 2023-10-01 16:15 - 2023-10-01 16:15 - 002296488 _____ C:\Users\Admin\Downloads\SteamSetup.exe 2023-09-29 20:31 - 2023-09-29 20:31 - 185040896 _____ C:\Users\Admin\Downloads\EpicInstaller-15.7.0-035103fa6799448cb2b7bf4f3e54e8c1.msi 2023-09-29 14:07 - 2023-09-29 14:07 - 009804159 _____ C:\Users\Admin\Downloads\Vade_mecum_2023.pdf ==================== Um mês (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2023-10-25 15:30 - 2019-12-07 06:13 - 000000000 ____D C:\WINDOWS\INF 2023-10-25 14:43 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-10-25 10:57 - 2019-12-07 06:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-10-25 10:57 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-10-25 09:57 - 2020-05-19 14:57 - 000000000 ___RD C:\Users\Admin\OneDrive 2023-10-25 09:41 - 2020-07-17 21:27 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-10-25 09:40 - 2020-05-24 00:08 - 000000000 ___RD C:\Users\vitor\OneDrive 2023-10-24 16:27 - 2020-05-22 22:05 - 000000000 ____D C:\Users\Admin\AppData\LocalLow\IObit 2023-10-24 14:34 - 2020-05-24 00:06 - 000000000 __SHD C:\Users\vitor\IntelGraphicsProfiles 2023-10-24 13:24 - 2019-12-07 06:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-10-24 12:45 - 2019-12-07 11:53 - 000715446 _____ C:\WINDOWS\system32\prfh0416.dat 2023-10-24 12:45 - 2019-12-07 11:53 - 000140602 _____ C:\WINDOWS\system32\prfc0416.dat 2023-10-24 12:41 - 2020-05-19 15:22 - 000000000 __SHD C:\Users\Admin\IntelGraphicsProfiles 2023-10-24 12:40 - 2021-09-22 15:41 - 000000000 ____D C:\Intel 2023-10-23 23:23 - 2019-12-07 06:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-10-23 22:57 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-10-23 18:12 - 2021-04-20 15:36 - 000008192 ___SH C:\DumpStack.log.tmp 2023-10-17 11:23 - 2020-05-19 15:01 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2023-10-17 11:23 - 2020-05-19 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2023-10-16 21:58 - 2020-05-23 23:20 - 000000000 ___RD C:\Users\mdgls\OneDrive 2023-10-16 21:57 - 2020-05-23 23:19 - 000000000 __SHD C:\Users\mdgls\IntelGraphicsProfiles 2023-10-16 21:57 - 2020-05-23 23:19 - 000000000 ___RD C:\Users\mdgls\3D Objects 2023-10-16 21:57 - 2020-05-19 14:55 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-10-16 21:57 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-10-16 21:57 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-10-15 23:38 - 2019-12-07 06:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-10-15 11:01 - 2022-05-14 14:47 - 000000000 ____D C:\XboxGames 2023-10-14 13:09 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\appcompat 2023-10-13 23:04 - 2020-05-23 23:21 - 000000000 ___HD C:\OneDriveTemp 2023-10-13 18:52 - 2019-12-07 06:14 - 000000000 ____D C:\Program Files\Windows Defender 2023-10-13 18:39 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-10-13 18:22 - 2020-05-24 00:06 - 000000000 ___RD C:\Users\vitor\3D Objects 2023-10-13 16:51 - 2020-05-19 14:55 - 000000000 ___RD C:\Users\Admin\3D Objects 2023-10-13 15:59 - 2019-12-07 11:54 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2023-10-13 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\spool 2023-10-13 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-10-13 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\USOPrivate 2023-10-13 15:47 - 2019-12-07 06:14 - 000000000 ____D C:\Program Files\Windows NT 2023-10-13 15:46 - 2023-01-30 22:18 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop 2023-10-13 15:46 - 2022-10-23 14:03 - 000000000 ____D C:\Users\vitor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2023-10-13 15:46 - 2020-11-01 21:24 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2023-10-13 15:45 - 2021-06-25 15:26 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio 2023-10-13 15:45 - 2019-12-07 06:14 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2023-10-13 15:38 - 2019-12-07 06:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2023-10-13 15:36 - 2019-12-07 06:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2023-10-13 15:35 - 2023-08-31 14:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 10 2023-10-13 15:35 - 2022-09-13 17:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2023-10-13 15:35 - 2020-05-19 15:01 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office 2016 2023-10-13 15:35 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2023-10-13 15:34 - 2020-05-24 15:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\@Last Software 2023-10-13 15:34 - 2019-12-07 06:14 - 000000000 __RHD C:\Users\Public\Libraries 2023-10-13 15:31 - 2019-12-07 11:56 - 000000000 ___SD C:\WINDOWS\system32\AppV 2023-10-13 15:31 - 2019-12-07 11:56 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-10-13 15:31 - 2019-12-07 11:56 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-10-13 15:31 - 2019-12-07 11:56 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-10-13 15:31 - 2019-12-07 11:54 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SystemApps 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Com 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\Provisioning 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\IME 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\Program Files\Common Files\System 2023-10-13 15:31 - 2019-12-07 06:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2023-10-13 15:31 - 2019-12-07 06:03 - 000000000 ____D C:\WINDOWS\servicing 2023-10-13 15:30 - 2019-12-07 11:56 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2023-10-13 15:30 - 2019-12-07 11:56 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2023-10-13 15:30 - 2019-12-07 06:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2023-10-13 15:30 - 2019-12-07 06:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2023-10-13 15:17 - 2019-12-07 11:55 - 000000000 ____D C:\WINDOWS\OCR 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\system32\winrm 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\system32\WCN 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\system32\slmgr 2023-10-13 15:16 - 2019-12-07 11:53 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2023-10-13 15:16 - 2019-12-07 06:14 - 000000000 ___SD C:\WINDOWS\system32\dsc 2023-10-13 14:49 - 2020-05-19 14:55 - 000000000 ___SD C:\Users\Admin\AppData\Roaming\Microsoft\Credentials 2023-10-09 20:50 - 2023-09-20 11:27 - 000002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-10-09 17:10 - 2023-08-08 18:53 - 000002166 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================