Resultado da análise adicional Farbar Recovery Scan Tool (x64) Versão: 09.01.2024 Executado por camil (10-01-2024 12:29:43) Executando a partir de C:\Users\camil\Desktop Microsoft Windows 10 Home Single Language Versão 22H2 19045.3803 (X64) (2021-09-04 13:47:36) Modo da Inicialização: Normal ========================================================== ==================== Contas: ============================= (Se uma entrada for incluída na fixlist, será removida.) Administrador (S-1-5-21-2802108633-1272194193-1000986518-500 - Administrator - Disabled) camil (S-1-5-21-2802108633-1272194193-1000986518-1001 - Administrator - Enabled) => C:\Users\camil Convidado (S-1-5-21-2802108633-1272194193-1000986518-501 - Limited - Disabled) DefaultAccount (S-1-5-21-2802108633-1272194193-1000986518-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-2802108633-1272194193-1000986518-504 - Limited - Disabled) ==================== Central de Segurança ======================== (Se uma entrada for incluída na fixlist, será removida.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Kaspersky (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} FW: Kaspersky (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58} ==================== Programas Instalados ====================== (Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.) Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer) Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer) Acer Network Optimizer (HKLM-x32\...\{3C8FA4F4-8471-4C60-9002-9B9F78B7B483}) (Version: 4 - Acer) Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 21.005.20060 - Adobe Systems Incorporated) Adobe Audition 2021 (HKLM-x32\...\AUDT_14_4) (Version: 14.4 - Adobe Inc.) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.5.0.617 - Adobe Inc.) Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: - Adobe) Adobe Media Encoder 2021 (HKLM-x32\...\AME_15_4_1) (Version: 15.4.1 - Adobe Inc.) Adobe Photoshop 2021 (HKLM-x32\...\PHSP_22_5) (Version: 22.5.0.384 - Adobe Inc.) Adobe Premiere Pro 2021 (HKLM-x32\...\PPRO_15_4_1) (Version: 15.4.1 - Adobe Inc.) AdsPower Global 5.9.14 (HKLM\...\db821d47-7b3f-5a6f-afe8-6a107e22d1c8) (Version: 5.9.14 - AdsPower) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\0692672b6cb3c644d2ccb77fde71e5a1) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\0bca6b3d8f0fa501856906047c37c31f) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\2adc85da05c61e798b868c108e506f42) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\3a50592403190c017a82521cfcc0aed4) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\6978ad7b1d1e9a4f5628fdb0add1ff11) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\bce04b4bbb0e6f7e731090216e6e8481) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\bcf9f0c638db5ca1d1d6b545a1b74dec) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\cb4e13e76702e5112ed81982c0e04fc0) (Version: 1.0 - Google\Chrome) Apresentações (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\fe1cc50436efac8a74b0582186f61139) (Version: 1.0 - Google\Chrome) Audacity 3.2.5 (HKLM\...\Audacity_is1) (Version: 3.2.5 - Audacity Team) Documentos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\89c090bfc57879f69909bd3cbf95c4d3) (Version: 1.0 - Google\Chrome) DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3026 - Acer Incorporated) Dynamic Application Loader Host Interface Service (HKLM\...\{D492644D-815B-48F6-B079-6E1FE92FCFDE}) (Version: 1.0.0.0 - Intel Corporation) Hidden Everything 1.4.1.1022 (x64) (HKLM\...\Everything) (Version: 1.4.1.1022 - voidtools) FFmpeg (Windows) for Audacity versão 2.2.2 (HKLM-x32\...\{9C7E31E3-017F-434C-AC40-24431A354A1E}_is1) (Version: 2.2.2 - ) FFmpeg 5.0.0 for Audacity - x86 (HKLM-x32\...\FFmpeg for Audacity_is1) (Version: - ) FFmpeg 5.0.0 for Audacity - x86_64 (64-bit) (HKLM\...\FFmpeg for Audacity_is1) (Version: - ) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\0a751f7775a75b69a94c403ab50b8a69) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\0d06aeba96239adb01d03ce118217c63) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\227124d857a56dc01210ca6d54ac6369) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\2347055259089c3988d4902ae54ef03b) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\37d67a0654ac0551eebfee78f0fb949c) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\848b2fc686d1bdb5b0cecfc6c867f38e) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\86078884c23549e1edd1590cbccc48be) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\a2eeec53597a95b98e29866c7bee1d50) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\c07c6bf679f75bd47e42964443342e56) (Version: 1.0 - Google\Chrome) Google Ads Editor (HKLM-x32\...\{58B3BF01-8F10-11EE-9CAD-E04F43E69459}) (Version: 14.5.5.0 - Google) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 120.0.6099.200 - Google LLC) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\07b3e1f9c5517e1f3c967e1d73eb79d4) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\26426700908ef03d7762c6dc9e43b0c7) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\521e2e3a200dba1be50fca3051b7eeca) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\70a084778010c65868ee21339ced205d) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\79c400688dfbfbf7ee184b43731cee04) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\9c02d98aaf884d6f7ba8894819c6462b) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\b41fa15942aff2721820fc75352e5d5d) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\d39e229ae13d388760c231b4302094b9) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\ddc7788faea55fb30d54b833d2cba002) (Version: 1.0 - Google\Chrome) GoTrust ID Plugin 2.0.12.36 (HKLM\...\GoTrust ID Plugin) (Version: 2.0.12.36 - GoTrust ID Inc.) Icecream Ebook Reader versão 5.31 (HKLM-x32\...\{B8C30F0F-1F23-49E1-A3ED-44DE17660EE2}_is1) (Version: 5.31 - Icecream Apps) Intel(R) Chipset Device Software (HKLM\...\{351A0D24-F6F1-4105-AA50-5D2CCC71E0DD}) (Version: 10.1.18019.8144 - Intel Corporation) Hidden Intel(R) Icls (HKLM\...\{FAAE0394-ABCB-4F37-92BB-D3C13D1E5985}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) LMS (HKLM\...\{EFB39384-98DF-4AF3-BB36-C0FE040ED65C}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1946.12.0.1328 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{BBAB3E9C-40B0-4313-AB14-6E9C3EE18E84}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{E39976AA-3238-4B09-9B64-FD91FE76CA69}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{099DEF6A-8427-43D8-A38A-54A097E94C85}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) OEM Extension (HKLM\...\{069F5815-595A-463E-B3BF-84346E949BFD}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.6911 - Intel Corporation) Kaspersky (HKLM-x32\...\{59D11F0A-ACA9-3CE7-8227-267AA4900780}) (Version: 21.15.8.493 - Kaspersky) Hidden Kaspersky (HKLM-x32\...\InstallWIX_{59D11F0A-ACA9-3CE7-8227-267AA4900780}) (Version: 21.15.8.493 - Kaspersky) Kaspersky Password Manager (HKLM-x32\...\{8EB91B7C-28B6-453E-8EA8-F1D8BEE3716E}) (Version: 23.2.0.242 - Kaspersky) Hidden Kaspersky Password Manager (HKLM-x32\...\InstallWIX_{8EB91B7C-28B6-453E-8EA8-F1D8BEE3716E}) (Version: 23.2.0.242 - Kaspersky) Kaspersky VPN (HKLM-x32\...\{836E6477-FBFF-3ACE-983C-94E91D6FA845}) (Version: 21.14.5.462 - Kaspersky) Hidden Kaspersky VPN (HKLM-x32\...\InstallWIX_{836E6477-FBFF-3ACE-983C-94E91D6FA845}) (Version: 21.14.5.462 - Kaspersky) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Microsoft .NET Framework 4.6.2 Developer Pack (HKLM-x32\...\{ed7373e5-d579-4663-83e1-28d41ada77fe}) (Version: 4.6.1590 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.6.2 SDK (HKLM-x32\...\{5F01B3C4-9BEC-465D-9C68-BB97D381FFAD}) (Version: 4.6.01590 - Microsoft Corporation) Microsoft .NET Framework 4.6.2 Targeting Pack (ENU) (HKLM-x32\...\{C80951BD-6904-474F-BBC5-03A6C777F37C}) (Version: 4.6.01590 - Microsoft Corporation) Microsoft .NET Framework 4.6.2 Targeting Pack (HKLM-x32\...\{A18D4C2A-07A8-40E4-9797-DD324E6EA4FC}) (Version: 4.6.01590 - Microsoft Corporation) Microsoft .NET Host - 5.0.17 (x86) (HKLM-x32\...\{54DE7EA9-E391-4BD2-A373-3A72A18EBDB5}) (Version: 40.68.31213 - Microsoft Corporation) Hidden Microsoft .NET Host - 6.0.21 (x86) (HKLM-x32\...\{A9F8F2E3-D3A4-4D90-9800-F689932ECE89}) (Version: 48.87.64667 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 5.0.17 (x86) (HKLM-x32\...\{AF01038B-6523-4EA7-9D9E-4F1E2927D88B}) (Version: 40.68.31213 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.21 (x86) (HKLM-x32\...\{EF4A37DD-21FE-43E9-89D1-1C699CC197AC}) (Version: 48.87.64667 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 5.0.17 (x86) (HKLM-x32\...\{59650A2A-3839-46EC-9D9C-6B3B1C743C55}) (Version: 40.68.31213 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.21 (x86) (HKLM-x32\...\{B8ED272B-5F2D-4FF5-A7CA-C73552D7FB0F}) (Version: 48.87.64667 - Microsoft Corporation) Hidden Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.17126.20126 - Microsoft Corporation) Microsoft 365 - pt-br (HKLM\...\O365HomePremRetail - pt-br) (Version: 16.0.17126.20126 - Microsoft Corporation) Microsoft 365 Apps for enterprise - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.17126.20126 - Microsoft Corporation) Microsoft 365 Apps para Grandes Empresas - pt-br (HKLM\...\O365ProPlusRetail - pt-br) (Version: 16.0.17126.20126 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 120.0.2210.121 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 120.0.2210.121 - Microsoft Corporation) Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.246.1127.0002 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\Teams) (Version: 1.6.00.20074 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation) Microsoft VC++ redistributables repacked. (HKLM\...\{BACA8ED0-DB44-468A-9D76-7D4588B90D60}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM-x32\...\{3FED85F2-4004-4F8A-B65B-DDC1F6013FAA}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61135 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61135 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61135 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61135 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 (HKLM-x32\...\{65e650ff-30be-469d-b63a-418d71ea1765}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual C++ 2019 X64 Additional Runtime - 14.23.27820 (HKLM\...\{9CA7111B-263D-45DE-B898-61FAD30B3237}) (Version: 14.23.27820 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.23.27820 (HKLM\...\{A94EC1B2-932B-49D7-8AF2-4FBD29FF314B}) (Version: 14.23.27820 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Additional Runtime - 14.25.28508 (HKLM-x32\...\{0FA68574-690B-4B00-89AA-B28946231449}) (Version: 14.25.28508 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.25.28508 (HKLM-x32\...\{2BC3BD4D-FABA-4394-93C7-9AC82A263FE2}) (Version: 14.25.28508 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{FD9D64F4-CAF5-3D23-845A-B843C78CC1A5}) (Version: 10.0.60830 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 5.0.17 (x86) (HKLM-x32\...\{098c6ff7-1af1-4c4a-b86f-c60608c98e31}) (Version: 5.0.17.31219 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 5.0.17 (x86) (HKLM-x32\...\{0D02D706-44F2-4957-A448-E7259A0B56B9}) (Version: 40.68.31219 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.21 (x86) (HKLM-x32\...\{33e692e6-1f06-4c3d-8981-738c129e0b2c}) (Version: 6.0.21.32717 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 6.0.21 (x86) (HKLM-x32\...\{F25834D2-0460-4995-8585-8E41BD074159}) (Version: 48.87.64723 - Microsoft Corporation) Hidden Movavi Video Converter 23 (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\Movavi Video Converter 23) (Version: 23.1.0 - Movavi) Movavi Video Suite 21 (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\Movavi Video Suite 21) (Version: 21.4.0 - Movavi) NitroSense Service (HKLM\...\{6FC78E80-6385-43D6-8A43-FA80094F1A2E}) (Version: 3.01.3016 - Acer Incorporated) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 8.6.1 - Notepad++ Team) NVIDIA Driver de áudio HD 1.3.38.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.60 - NVIDIA Corporation) NVIDIA Driver de gráficos 471.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 471.96 - NVIDIA Corporation) NVIDIA FrameView SDK 1.1.4923.29968894 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29968894 - NVIDIA Corporation) NVIDIA Software do sistema PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) Obsidian (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\bd400747-f0c1-5638-a859-982036102edf) (Version: 1.4.16 - Obsidian) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17126.20126 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.17126.20126 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0416-1000-0000000FF1CE}) (Version: 16.0.17126.20126 - Microsoft Corporation) Hidden OnScreen Control (HKLM-x32\...\{E5C1B339-0E4E-49A5-859E-5E1DE1938706}) (Version: 8.04.0 - LG Electronics Inc) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\14ca26e2570b98b3a410cfc1678a58e7) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\39eee5432adbecc6830c870f931b8be2) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\3b77c98d138623d4608b210b0529f174) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\4940f6f78e84a6fc5b507901d8e23f53) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\a4d364728ebb27782cfd493019e00006) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\adb4dc87e0138c4add79d8fb86c472bb) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\cb821689db2275d5ee78c1b1daa66e7f) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\ce7425aa768552cbef55cd2a8b17dbed) (Version: 1.0 - Google\Chrome) Planilhas (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\fd0c469987779af4602039881eb469c2) (Version: 1.0 - Google\Chrome) PowerToys (Preview) (HKLM\...\{6F3910F2-DA29-490C-811F-D3691B134A61}) (Version: 0.77.0 - Microsoft Corporation) Hidden PowerToys (Preview) x64 (HKLM-x32\...\{1aada4d0-ca73-4389-8f63-73923c771fd4}) (Version: 0.77.0 - Microsoft Corporation) Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8929.1 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.35.510.2019 - Realtek) Software de dispositivo do Chipset Intel® (HKLM-x32\...\{4551f75f-3c54-4f09-8221-8c8a061bad00}) (Version: 10.1.18019.8144 - Intel(R) Corporation) Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.4.0.19572 - Microsoft Corporation) Telegram Desktop (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 4.14.4 - Telegram FZ-LLC) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\1ad992516eead6193c52f94a66ec8b18) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\22cd96a8d2cb53fadf648040a445acdf) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\417df2f970534bbc504736398944bfea) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\857e1014e4b398b2383458001004274e) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\9130f24e2e0b38ef8843e48626f1a00c) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\b9cc9d0112f0c1af88c4129206b40cea) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\c24a7eea7b1b257a9bea99e9743532d4) (Version: 1.0 - Google\Chrome) Textos (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\fa3c9afcb6bec0cf840695d019af20ad) (Version: 1.0 - Google\Chrome) Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.93 - Samsung Electronics CO., LTD.) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation) User Experience Improvement Program Service (HKLM\...\{323EA05D-046D-449D-9D7C-89243C957CCE}) (Version: 5.00.3010 - Acer Incorporated) UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.) Verificação de integridade do PC Windows (HKLM\...\{2403B2D2-1FDC-497D-B181-F53D079FEAAA}) (Version: 3.6.2204.08001 - Microsoft Corporation) WinRAR 6.24 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.24.0 - win.rar GmbH) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\2ef34ef4eb60138cef1c648cd019a3c4) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\77749e9eeab81a3fd155b6f4bf226d02) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\8881160c162dc30fced588ed7e85ef49) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\8fd06ae2174228618ac35ffd5a003de7) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\920eb7bc6dbb602954a5b0b8c186a98b) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\9910053abe3cad0491e9d52f5ae64f67) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\997fe332e9583c4b334d0421456b14c1) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\a8b3136d537ecd74d68a14add52de373) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\c5c04727e79c761760babce889dbb0c7) (Version: 1.0 - Google\Chrome) Zoom (HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\ZoomUMX) (Version: 5.16.10 (26186) - Zoom Video Communications, Inc.) Packages: ========= Acer Product Registration -> C:\Program Files\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4 [2023-06-03] (Acer Incorporated) Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2021-09-04] (Adobe Systems Incorporated) Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc [2021-09-04] (Adobe Systems Incorporated) AV1 Video Extension -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.1.61781.0_x64__8wekyb3d8bbwe [2023-07-21] (Microsoft Corporation) Care Center S -> C:\Program Files\WindowsApps\AcerIncorporated.AcerCareCenterS_4.0.3042.0_x64__48frkmn4z8aw4 [2022-01-10] (Acer Incorporated) Complemento do Mecanismo de Mídia de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-03-18] (Microsoft Corporation) freda epub ebook reader -> C:\Program Files\WindowsApps\5957Turnipsoft.freda_5.1.0.0_x64__ypmq2qh89vmny [2023-10-25] (Turnipsoft) GoTrust ID -> C:\Program Files\WindowsApps\GOTrustTechnologyInc.GO-TrustAuthenticator_3.1.21.0_x64__0r04f53sqacg6 [2023-12-23] (GoTrustID Inc.) Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2021-09-04] (INTEL CORP) Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-12-23] (INTEL CORP) Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2311.21001.0_x64__8wekyb3d8bbwe [2023-12-07] (Microsoft Corporation) [Startup Task] Microsoft Teams (work or school) -> C:\Program Files\WindowsApps\MSTeams_23306.3315.2560.6525_x64__8wekyb3d8bbwe [2023-12-13] (Microsoft) [Startup Task] Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_53.10829.535.0_x64__8wekyb3d8bbwe [2023-12-23] (Microsoft Corporation) NitroSense_V31 -> C:\Program Files\WindowsApps\AcerIncorporated.NitroSenseV31_3.1.3016.0_x64__48frkmn4z8aw4 [2021-09-04] (Acer Incorporated) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-03-10] (NVIDIA Corp.) PhotoDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PhotoDirectorforacerDesktop_8.0.6428.0_x64__ypz87dpxkv292 [2021-09-04] (CYBERLINK COM CORP) PowerDirector for acer -> C:\Program Files\WindowsApps\CyberLinkCorp.ac.PowerDirectorforacerDesktop_14.0.4304.0_x64__ypz87dpxkv292 [2021-09-04] (CYBERLINK COM CORP) QuickAccess -> C:\Program Files\WindowsApps\AcerIncorporated.QuickAccess_3.0.3038.0_x64__48frkmn4z8aw4 [2022-02-10] (Acer Incorporated) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.10.216.0_x64__dt26b99r8h8gj [2023-11-14] (Realtek Semiconductor Corp) Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2021-10-22] (Samsung Electronics Co. Ltd.) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-12-23] (Microsoft Studios) [MS Ad] User Experience Improvement Program V5 -> C:\Program Files\WindowsApps\AcerIncorporated.UserExperienceImprovementProgramV_5.0.3010.0_x64__48frkmn4z8aw4 [2021-09-04] (Acer Incorporated) Waves MaxxAudio For Acer -> C:\Program Files\WindowsApps\WavesAudio.20761030F5EAC_1.0.67.0_x64__fh4rh281wavaa [2021-09-04] (Waves Audio) ==================== Análise Personalizada CLSID (Whitelisted): ============== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{10144713-1526-46C9-88DA-1FB52807A9FF}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.SvgThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\camil\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.23199.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{5ea9a442-5352-ed6e-d37f-9d511e7e2caa}\localserver32 -> C:\Program Files\PowerToys\PowerToys.PowerLauncher.exe (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{60789D87-9C3C-44AF-B18C-3DE2C2820ED3}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.MarkdownPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{729B72CD-B72E-4FE9-BCBF-E954B33FE699}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.QoiPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{77257004-6F25-4521-B602-50ECC6EC62A6}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.StlThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\camil\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{8D422533-936A-4A82-B15C-BD5319AB0026}\InprocServer32 -> C:\Users\camil\AppData\Local\Google\Update\1.3.36.332\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{A0257634-8812-4CE8-AF11-FA69ACAEAFAE}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.GcodePreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{AD856B15-D25E-4008-AFB7-AFAA55586188}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.QoiThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{B9C751AA-D9CF-4E09-A270-E5BBD2194F83}\InprocServer32 -> C:\Users\camil\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> C:\Users\camil\AppData\Local\Microsoft\Teams\current\Teams.exe (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{D8034CFA-F34B-41FE-AD45-62FCBB52A6DA}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.MonacoPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{E4949BE6-C9FF-4AFA-8672-6127D857418B}\InprocServer32 -> C:\Users\camil\AppData\Local\Google\Update\1.3.36.312\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\camil\AppData\Local\Google\Update\1.3.36.352\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{ED0BC9DB-3CE6-49E5-9B2F-590DCEF8C016}\InprocServer32 -> C:\Users\camil\AppData\Local\Google\Update\1.3.36.342\psuser_64.dll => Nenhum Arquivo CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{F2847CBE-CD03-4C83-A359-1A8052C1B9D5}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.GcodeThumbnailProviderCpp.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2802108633-1272194193-1000986518-1001_Classes\CLSID\{FCDD4EED-41AA-492F-8A84-31A1546226E0}\InprocServer32 -> C:\Program Files\PowerToys\PowerToys.SvgPreviewHandlerCpp.dll (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-08-03] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-08-03] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-08-03] (Adobe Inc. -> ) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-08-03] (Adobe Inc. -> ) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\contextMenu\NppShell.dll [2024-01-04] (Notepad++ -> Bjarke I. Pedersen gurli@gurlinet.dk) ContextMenuHandlers1: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll [2023-11-14] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Program Files\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2024-01-05] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers2: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll [2023-11-14] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers3: [FileLocksmithExt] -> {84D68575-E186-46AD-B0CB-BAEB45EE29C0} => C:\Program Files\PowerToys\WinUI3Apps\PowerToys.FileLocksmithExt.dll [2024-01-05] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers3: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Program Files\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2024-01-05] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll [2023-11-14] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2023-12-16] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_7ad8fe0656374cf6\nvshext.dll [2021-08-28] (Nvidia Corporation -> NVIDIA Corporation) ContextMenuHandlers5: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Program Files\PowerToys\WinUI3Apps\PowerToys.PowerRenameExt.dll [2024-01-05] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-08-03] (Adobe Inc. -> ) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers6: [Kaspersky Plus 21.15] -> {AE81D5A2-A34B-4D93-8DF8-540DBCE48043} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\shellex.dll [2023-11-14] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Whitelisted) ==================== ==================== Atalhos & WMI ======================== (As entradas podem ser listadas para serem restauradas ou removidas.) ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Apresentações (1).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 45" --app-id=kefjledonklijopmnomlcbpllchaibag ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Apresentações (2).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 46" --app-id=kefjledonklijopmnomlcbpllchaibag ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Apresentações (3).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 47" --app-id=kefjledonklijopmnomlcbpllchaibag ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Apresentações.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 41" --app-id=kefjledonklijopmnomlcbpllchaibag ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Documentos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 45" --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Gmail (1).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 45" --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Gmail (2).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 46" --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Gmail (3).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 47" --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Gmail.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 41" --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Google Drive (1).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 45" --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Google Drive (2).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 46" --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Google Drive (3).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 47" --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Google Drive.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 41" --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Planilhas (1).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 45" --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Planilhas (2).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 46" --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Planilhas (3).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 47" --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Planilhas.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 41" --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Textos (1).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 46" --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Textos (2).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 47" --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\Textos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 41" --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\YouTube (1).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 45" --app-id=agimnkijcaahngcdmfeangaknmldooml ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\YouTube (2).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 46" --app-id=agimnkijcaahngcdmfeangaknmldooml ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\YouTube (3).lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 47" --app-id=agimnkijcaahngcdmfeangaknmldooml ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\apps do Chrome\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 41" --app-id=agimnkijcaahngcdmfeangaknmldooml ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\ff13ca23fee04978\Claudia (Perfil Claudia) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 5" ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\f752873d46a04d14\Cursos e Mentorias (GPT Cursos e Mentorias) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 37" ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\f0936695556e8bf\FDA - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 21" ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Anna Camila - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1" ShortcutWithArgument: C:\Users\camil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\225bb61db2f318c1\Anna Camila (Perfil de Estudo) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 3" ==================== Módulos Carregados (Whitelisted) ============= 2021-09-04 11:34 - 2023-12-12 05:47 - 000634880 _____ (Microsoft Corporation) [Arquivo não assinado] C:\Windows\SYSTEM32\gameplatformservices.dll ==================== Alternate Data Streams (Whitelisted) ======== ==================== Modo de Segurança (Whitelisted) ================== ==================== Associação (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido.) HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\Software\Classes\regfile: <==== ATENÇÃO HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\Software\Classes\.reg: => <==== ATENÇÃO HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\Software\Classes\.bat: => <==== ATENÇÃO HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\Software\Classes\.cmd: => <==== ATENÇÃO ==================== Internet Explorer (Whitelisted) ========== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2021-07-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2021-07-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2021-07-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2021-07-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2021-07-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2021-07-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-01-08] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Conteúdo: ========================= (Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.) 2019-12-07 06:14 - 2019-12-07 06:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Outras Áreas =========================== (Atualmente não há nenhuma correção automática para esta seção.) HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\Control Panel\Desktop\\Wallpaper -> c:\users\camil\desktop\nosso carro novo\volvo interior.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Firewall do Windows está habilitado. Network Binding: ============= Wi-Fi: Realtek LightWeight Filter (NDIS6.40) -> nt_rtf64 (enabled) Ethernet: Realtek LightWeight Filter (NDIS6.40) -> nt_rtf64 (enabled) ==================== MSCONFIG/TASK MANAGER ítens desabilitados == (Se uma entrada for incluída na fixlist, será removida.) HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Everything" HKLM\...\StartupApproved\Run: => "WavesSvc" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "OnScreen Control" HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\StartupFolder: => "AdsPower.lnk" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_058F8E8258CCAEDA7776EEA8AB9F83AC" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\Run: => "kpm.exe" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_652EAB98DC2D5168503E3D07D524743B" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\Run: => "movavi_suite_agent" HKU\S-1-5-21-2802108633-1272194193-1000986518-1001\...\StartupApproved\Run: => "Google Update" ==================== Regras do Firewall (Whitelisted) ================ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) FirewallRules: [{DE76FB80-69D7-4BD1-B21B-6BB4E09FAB75}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => Nenhum Arquivo FirewallRules: [{0F2614E6-82E5-4659-A9F6-C669269BFF6F}] => (Block) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AcroRd32.exe (Adobe Inc. -> Adobe Systems Incorporated) FirewallRules: [{0B47EE89-7A5E-46D9-AFD6-BC19BAFB2E03}] => (Block) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe (Adobe Inc. -> Adobe Systems Incorporated) FirewallRules: [{1685E88F-5F3B-4EFB-B1D8-94EC14919985}] => (Block) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe (Adobe Inc. -> Adobe Systems Inc.) FirewallRules: [{3D5A377A-C329-47B2-88A1-3681E9A756CA}] => (Block) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AcroRd32.exe (Adobe Inc. -> Adobe Systems Incorporated) FirewallRules: [{19F37B42-E7EF-42DE-937C-818093D0D2CF}] => (Block) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe (Adobe Inc. -> Adobe Systems Incorporated) FirewallRules: [{22739C93-EBB0-4B19-8A52-77499E9BB9F0}] => (Block) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe (Adobe Inc. -> Adobe Systems Inc.) FirewallRules: [{068C8241-675B-4E77-9981-40E8984863CF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{514C0C5E-B9AF-4A94-A661-EF32BB2F2ED5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4D9E3C60-0AC4-45F5-9CAC-683FDE3F3219}] => (Allow) C:\Users\camil\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{9DA350CE-BA3B-4107-B560-C7E1ABAF0BFC}] => (Allow) C:\Users\camil\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{272FC7B4-77C1-4811-9B43-3F39411B89AA}] => (Allow) C:\Users\camil\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{94E51917-7C90-493D-8363-54EEA49A9BAD}C:\users\camil\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\camil\appdata\roaming\spotify\spotify.exe => Nenhum Arquivo FirewallRules: [UDP Query User{2B7EEA11-0CED-42A4-AD50-EB07CB6F819E}C:\users\camil\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\camil\appdata\roaming\spotify\spotify.exe => Nenhum Arquivo FirewallRules: [TCP Query User{3601E57C-99B1-4F36-BBE0-565CFB151D77}C:\users\camil\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\camil\appdata\roaming\spotify\spotify.exe => Nenhum Arquivo FirewallRules: [UDP Query User{BFF3D888-06F8-4D6E-B0D7-3464A4A21A72}C:\users\camil\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\camil\appdata\roaming\spotify\spotify.exe => Nenhum Arquivo FirewallRules: [TCP Query User{6D160864-F0E8-456C-9C24-42EAA38ADEB4}C:\users\camil\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\camil\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{2D99AAD4-82C2-4C28-888E-AD94908B8383}C:\users\camil\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\camil\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9F10A737-246F-46C2-AB7A-53C5ABB3FFA6}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe (HP Inc. -> Samsung Electronics Co., Ltd.) FirewallRules: [{8D654F77-EB9B-4D96-99BE-B00470E2A8C4}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{B610D2CB-8983-4D53-97A5-83A7C211A99E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{73F1FE59-AF82-4A86-B67F-86C2B423AC4F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D2DC30EC-83E1-4EE8-B807-43EFA6154AAB}] => (Allow) C:\Program Files\WindowsApps\MSTeams_23306.3315.2560.6525_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6C0F4A0F-145D-4A59-9671-89BE5B382A2D}] => (Allow) C:\Program Files\WindowsApps\MSTeams_23306.3315.2560.6525_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{445B48A1-D585-4497-A035-E365652AAF57}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{BF15E4B1-5694-402E-BED2-8F4019EEF585}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{674305EB-BC5A-4BBD-A7BC-2EE6BF8E51EB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{4A281CFF-5DC4-4155-AEAA-B6380BD19826}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{D9E07EE9-1D2A-461E-BFE4-081752D58195}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\120.0.2210.121\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{8A69B34D-77BD-4951-9E67-49F8C30C6FAA}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{D22FDBB9-5DA3-4F32-BEF1-757D7D5FA78C}] => (Allow) C:\Program Files\PowerToys\PowerToys.MouseWithoutBorders.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Pontos de Restauração ========================= 10-01-2024 12:17:15 ZHPcleaner ==================== Dispositivos Apresentando Falhas No Gerenciador ============ ==================== Erros no Log de eventos: ======================== Erros em Aplicativos: ================== Error: (01/10/2024 11:29:54 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-22VNMADN) Description: Não foi possível abrir o objeto de desempenho do serviço do Servidor. Os primeiros quatro bytes (DWORD) da seção de dados contém o código do status. Error: (01/08/2024 12:06:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nome do aplicativo com falha: ACCStd.exe, versão: 4.0.3042.0, carimbo de data/hora: 0x61cc5d9c Nome do módulo com falha: unknown, versão: 0.0.0.0, carimbo de data/hora: 0x00000000 Código de exceção: 0xc0000005 Deslocamento da falha: 0x00007ffa4c1de657 ID do processo com falha: 0x18f0 Hora de início do aplicativo com falha: 0x01da420f3b482368 Caminho do aplicativo com falha: C:\Program Files (x86)\Acer\Care Center\ACCStd.exe Caminho do módulo com falha: unknown ID do Relatório: 32a5d6e7-1073-4c7b-a4d7-eb83f8d176a6 Nome completo do pacote com falha: ID do aplicativo relativo ao pacote com falha: Error: (01/08/2024 12:06:07 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplicativo: ACCStd.exe Versão do Framework: v4.0.30319 Descrição: O processo foi terminado devido a uma exceção sem tratamento. Informações da Exceção: System.NullReferenceException em Acer.CareCenter.Diagnostic.DiagnosticController.GetAllTestItems() em Acer.CareCenter.ACCStd.DiagnosticManager_ACCStd.GetSpecificTestItems(DeviceType) em Acer.CareCenter.ACCStd.DiagnosticManager_ACCStd.DeviceInfoUpdate(System.Object, Acer.CareCenter.Diagnostic.DeviceInfoUpdateEventArgs) em Acer.CareCenter.Diagnostic.ADSPlgSimpleCtl.InfoUpdate(System.Object, DiagnosticEvent.InformationUpdateEventArgs) em EthernetDevice.EthernetManager.NetworkChange_NetworkAddressChanged(System.Object, System.EventArgs) em System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) em System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) em System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) em System.Net.NetworkInformation.NetworkChange+AddressChangeListener.AddressChangedCallback(System.Object, Boolean) em System.Threading._ThreadPoolWaitOrTimerCallback.PerformWaitOrTimerCallback(System.Object, Boolean) Error: (01/07/2024 10:05:16 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-22VNMADN) Description: Não foi possível abrir o objeto de desempenho do serviço do Servidor. Os primeiros quatro bytes (DWORD) da seção de dados contém o código do status. Error: (01/05/2024 10:17:13 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erro do serviço de cópias de sombra de volume: erro inesperado ao chamar a rotina CoCreateInstance. hr = 0x8007045b, O sistema está sendo desligado.. Error: (01/05/2024 10:17:13 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informações sobre o Serviço de Cópias de Sombra de Volume: não é possível iniciar o Servidor COM com CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} e nome CEventSystem. [0x8007045b, O sistema está sendo desligado.] Error: (01/05/2024 10:17:13 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erro do serviço de cópias de sombra de volume: erro inesperado ao chamar a rotina CoCreateInstance. hr = 0x8007045b, O sistema está sendo desligado.. Error: (01/05/2024 10:17:13 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informações sobre o Serviço de Cópias de Sombra de Volume: não é possível iniciar o Servidor COM com CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} e nome CEventSystem. [0x8007045b, O sistema está sendo desligado.] Erros de Sistema: ============= Error: (01/10/2024 12:00:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço GoTrust ID Plugin foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 10000 milissegundos: Reiniciar o serviço. Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Intel(R) Content Protection HECI Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Quick Access Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Everything foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: O serviço Serviço Clique para Executar do Microsoft Office foi finalizado inesperadamente. Isto aconteceu 1 vez(es). A seguinte ação corretiva será tomada em 0 milissegundos: Reiniciar o serviço. Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Predator Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço ACC Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Error: (01/10/2024 12:00:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: O serviço Kaspersky Password Manager 23.2 Service foi encerrado inesperadamente. Isso aconteceu 1 vez(es). Windows Defender: ================ Date: 2023-07-11 14:29:58 Description: Microsoft Defender Antivírus detectou malware ou outro software potencialmente indesejado. Para obter mais informações, veja a seguir: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win64/NSudo!MSR&threatid=2147839617&enterprise=0 Nome: Trojan:Win64/NSudo!MSR Gravidade: Grave Categoria: Cavalo de Tróia Caminho: file:_D:\Down 2022\ARQUIVOS ADOBE NÃO APAGUE\Ativador CC 2021 WIN\Adobe-GenP-2.7\Resources\NSudo.exe Origem da Detecção: Computador local Tipo da Detecção: Concreto Fonte da Detecção: Proteção em Tempo Real Usuário: LAPTOP-22VNMADN\camil Nome do Processo: C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.13\avp.exe Versão da Inteligência de Segurança: AV: 1.393.39.0, AS: 1.393.39.0, NIS: 1.393.39.0 Versão do Mecanismo: AM: 1.1.23060.1005, NIS: 1.1.23060.1005 Date: 2022-09-28 13:20:51 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {04A6E2FC-742D-4120-9F72-06CD6B8F9E9F} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-09-27 13:35:31 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {789DAF59-A41C-4070-86D4-675944D23862} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-09-21 18:12:06 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {DC0E5403-A03D-48EF-893C-86E83DDCF27B} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA Date: 2022-09-20 13:52:32 Description: O exame do Microsoft Defender Antivírus foi interrompido antes da conclusão. ID do Exame: {B1B41370-363A-411A-8D1D-285322CE522F} Tipo de Exame: Antimalware Parâmetros do Exame: Verificação Rápida Usuário: AUTORIDADE NT\SISTEMA  CodeIntegrity: =============== Date: 2024-01-10 12:08:45 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky 21.15\x64\com_antivirus.dll that did not meet the Windows signing level requirements. ==================== Informações da Memória =========================== BIOS: Insyde Corp. V1.33 11/17/2020 placa-mãe: CFL Octavia_CFS Processador: Intel(R) Core(TM) i5-9300H CPU @ 2.40GHz Percentagem de memória em uso: 89% RAM física total: 8029.05 MB RAM física disponível: 852.02 MB Virtual Total: 12125.05 MB Virtual disponível: 2350.48 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:118.12 GB) (Free:2.08 GB) (Model: IM2P33F8BR1-128GB) NTFS Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:738.15 GB) (Model: WDC WD10SPZX-21Z10T0) NTFS \\?\Volume{f418bb57-5f30-4d32-9fd6-c98c6ef7ffaa}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.42 GB) NTFS \\?\Volume{d6b7fd94-9dd2-4ecd-862a-6ee7550f06de}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Tabela de Partições ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: D11CA90A) Partition: GPT. ========================================================== Disk: 1 (Size: 119.2 GB) (Disk ID: D11CA95B) Partition: GPT. ==================== Fim de Addition.txt =======================