Resultado do análise da Farbar Recovery Scan Tool (FRST) (x64) Versão: 26.02.2024 01 Executado por Users (administrador) em DESKTOP-HTD7RGR (04-03-2024 15:09:22) Executando a partir de C:\Users\Users\Desktop\FRST64.exe Perfis Carregados: Users Plataforma: Microsoft Windows 10 Pro Versão 22H2 19045.4123 (X64) Idioma: Português (Brasil) Navegador padrão: Chrome Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4> (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.147\BraveCrashHandler.exe (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.147\BraveCrashHandler64.exe (C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (services.exe ->) (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD) C:\Program Files\Topaz OFD\Warsaw\core.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [418200 2024-02-19] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [BraveVpnWireguardService] => C:\Program Files\BraveSoftware\Brave-Browser\Application\122.1.63.165\BraveVpnWireguardService\brave_vpn_wireguard_service.exe [10880024 2024-02-28] (Brave Software, Inc. -> Brave Software, Inc.) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe (Nenhum Arquivo) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-10-04] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restrição <==== ATENÇÃO HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restrição <==== ATENÇÃO HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode (Nenhum Arquivo) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode (Nenhum Arquivo) HKU\S-1-5-21-1718706080-4065284056-1823354823-1001\...\Run: [Opera Stable] => C:\Users\Users\AppData\Local\Programs\Opera\launcher.exe [2358688 2024-02-22] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-1718706080-4065284056-1823354823-1001\...\Run: [MicrosoftEdgeAutoLaunch_3250699E464B17C04A15332F6451998E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4060728 2024-03-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1718706080-4065284056-1823354823-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [2839064 2024-02-28] (Brave Software, Inc. -> Brave Software, Inc.) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\81.0.5.0\GoogleDriveFS.exe --startup_mode (Nenhum Arquivo) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-13] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\PCL hpz3lw71: C:\Windows\system32\hpz3lw71.dll [46080 2009-07-13] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\PDFCreator: C:\Windows\system32\pdfcmnnt.dll [87040 2005-03-12] () [Arquivo não assinado] HKLM\...\Print\Monitors\ZDesigner Language Monitor: C:\Windows\system32\zdnNLM64.dll [198144 2012-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Euro Plus d.o.o.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\122.0.6261.95\Installer\chrmstp.exe [2024-03-01] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\122.1.63.165\Installer\chrmstp.exe [2024-02-29] (Brave Software, Inc. -> Brave Software, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2023-06-10] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PDFCreator.lnk [2023-06-09] ShortcutTarget: PDFCreator.lnk -> C:\Program Files (x86)\PDFCreator\PDFCreator.exe (pdfforge hxxp://www.pdfforge.org/) [Arquivo não assinado] ==================== Tarefas Agendadas (Whitelisted) ================= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {497B1BFC-6A5E-475B-9500-716256D0E15A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1547208 2024-01-31] (Adobe Inc. -> Adobe Inc.) Task: {DB93A421-9EE9-4727-9C76-373C2BCAC22A} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5154200 2024-02-19] (Avast Software s.r.o. -> AVAST Software) Task: {BEC88A85-0CBA-4EFD-81BA-C8441CC639AC} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-01] (Avast Software s.r.o. -> Avast Software) Task: {A925CE89-A1B2-4DEE-B0C2-8BB001C1EE38} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{3708967D-2324-4944-9020-3874B7E21E23} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-06-12] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {72CB6470-A4A8-4B1F-BFAD-3152C0417E9D} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{F113897A-DE9B-48E4-BDED-2B6B116234DF} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-06-12] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {698E6AC3-83BE-4F11-A8D9-A698758528D9} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem124.0.6315.0{546A2FF8-7D6C-4E82-B89F-C15C7EE14F0B} => C:\Program Files (x86)\Google\GoogleUpdater\124.0.6315.0\updater.exe [4698400 2024-02-22] (Google LLC -> Google LLC) <==== ATENÇÃO Task: {663A6E13-A6FD-4349-A0DF-5B0C0DF27BF2} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28372672 2024-02-10] (Microsoft Corporation -> Microsoft Corporation) Task: {992FB377-21EB-4DA9-90F9-74A8DF726AFC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28372672 2024-02-10] (Microsoft Corporation -> Microsoft Corporation) Task: {76D31FEE-503C-44D0-80B0-B1ADA1725690} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306328 2024-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {A8A6FB2C-2C08-4127-9547-749283BC4ECE} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306328 2024-02-19] (Microsoft Corporation -> Microsoft Corporation) Task: {E2C80E01-E15A-43E8-B787-799F67F8B5C2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [170128 2024-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {F56024C3-85CD-4DA7-86A2-F159239AC326} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-20] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {78A114E5-4725-49B9-BE62-C38F2CF2528D} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1718706080-4065284056-1823354823-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-20] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {7ADBFEDD-F687-41FE-A337-F97A0953CC9B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34720 2024-02-20] (Mozilla Corporation -> Mozilla Foundation) Task: {3B63BFFF-D644-4566-8A66-36D2194FA99A} - System32\Tasks\Opera scheduled Autoupdate 1686321719 => C:\Users\Users\AppData\Local\Programs\Opera\launcher.exe [2358688 2024-02-22] (Opera Norway AS -> Opera Software) Task: {5EF423B1-48CE-4143-9048-3E62638F3926} - System32\Tasks\update-S-1-5-21-1718706080-4065284056-1823354823-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (Nenhum Arquivo) Task: {77984AD5-929E-4D2D-8FCE-0D68F09BD805} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (Nenhum Arquivo) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) Task: C:\Windows\Tasks\update-S-1-5-21-1718706080-4065284056-1823354823-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 181.213.132.4 181.213.132.5 Tcpip\..\Interfaces\{d1b0fc88-fedc-4496-919a-61eafc171143}: [DhcpNameServer] 181.213.132.4 181.213.132.5 Tcpip\..\Interfaces\{d53a5856-a8f1-4740-ab11-552e0f03fb6b}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-04] Edge StartupUrls: Default -> "hxxp://www.google.com.br/" Edge Extension: (Documentos Google off-line) - C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-23] Edge Extension: (Edge relevant text changes) - C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] FireFox: ======== FF DefaultProfile: 27i4fbxj.default FF ProfilePath: C:\Users\Users\AppData\Roaming\Mozilla\Firefox\Profiles\27i4fbxj.default [2023-06-09] FF ProfilePath: C:\Users\Users\AppData\Roaming\Mozilla\Firefox\Profiles\n0nmrtmx.default-release [2024-03-04] FF Session Restore: Mozilla\Firefox\Profiles\n0nmrtmx.default-release -> está habilitado. FF Plugin: @java.com/DTPlugin,version=11.391.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.391.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-02-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-02-22] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google Inc -> Google, Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-02-02] (Microsoft Corporation -> Microsoft Corporation) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\autoconf_warsaw.js [2024-02-15] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default [2024-03-04] CHR StartupUrls: Default -> "hxxp://www.google.com.br/" CHR Extension: (Adobe Acrobat: ferramentas para editar, converter e assinar PDFs) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-03-04] CHR Extension: (Google Docs offline) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-02-29] CHR Extension: (Launcher de aplicações para o Drive (da Google)) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-10-11] CHR Extension: (Pagamentos via Chrome Web Store) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-06-09] CHR Profile: C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-03-04] CHR Session Restore: Profile 1 -> está habilitado. CHR Extension: (Adobe Acrobat: ferramentas para editar, converter e assinar PDFs) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-11-29] CHR Extension: (HLS Downloader) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fopnhepeflgcnppklfnejokkkeomdgik [2023-11-12] CHR Extension: (Não Seguidores no Instagram) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ggnclhlkbhihgehcgmnckfgkjjkckbop [2023-11-12] CHR Extension: (Google Docs offline) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-20] CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2023-09-20] CHR Extension: (QuillBot: AI Writing and Grammar Checker Tool) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\iidnbdjijdkbmajdffnidomddglmieko [2023-11-29] CHR Extension: (Launcher de aplicações para o Drive (da Google)) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-11-12] CHR Extension: (Pagamentos via Chrome Web Store) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-20] CHR Extension: (SpongeWise Flashcard Clipper) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\paeemhflfemffkcggpldnaofhgmffnlh [2023-09-20] CHR Profile: C:\Users\Users\AppData\Local\Google\Chrome\User Data\System Profile [2024-02-21] CHR HKU\S-1-5-21-1718706080-4065284056-1823354823-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-1718706080-4065284056-1823354823-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] Opera: ======= OPR DefaultProfile: Default Brave: ======= BRA Profile: C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2024-03-04] BRA DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}&t=brave BRA DefaultSearchKeyword: Default -> :d BRA DefaultSuggestURL: Default -> hxxps://ac.duckduckgo.com/ac/?q={searchTerms}&type=list BRA Extension: (Adobe Acrobat: ferramentas para editar, converter e assinar PDFs) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-02-29] BRA Extension: (HDS / HLS Video Downloader) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gelfgldejnhgpjcbnfpkglhpelajafao [2024-02-02] BRA Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-10-16] BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-03-01] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-03-01] BRA Extension: (Brave NTP background images) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-02-02] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-03-01] BRA Extension: (Brave NTP sponsored images) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\bpndlkddhgpmjengabcakadpcabgflca [2024-03-01] BRA Extension: (Wallet Data Files Updater) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2023-12-14] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-03-01] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2024-01-29] BRA Extension: (Brave Ads Resources) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbpmbjccnaaeogogeldlomcmlhllgaje [2024-02-29] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-03-01] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2023-06-12] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-03-01] BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese (plaintext))) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\meimhmgfbckapkbbbdaoefgnbppmkodp [2024-03-01] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-02-02] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Users\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-26] ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-01-31] (Adobe Inc. -> Adobe Inc.) S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9124248 2024-02-19] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [761752 2024-02-19] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1176472 2024-02-19] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2023-06-09] (Avast Software s.r.o. -> AVAST Software) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-06-12] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [175424 2023-06-12] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveVpnService; C:\Program Files\BraveSoftware\Brave-Browser\Application\122.1.63.165\brave_vpn_helper.exe [2730008 2024-02-28] (Brave Software, Inc. -> Brave Software, Inc.) S3 BraveVpnWireguardService; C:\Program Files\BraveSoftware\Brave-Browser\Application\122.1.63.165\BraveVpnWireguardService\brave_vpn_wireguard_service.exe [10880024 2024-02-28] (Brave Software, Inc. -> Brave Software, Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14048768 2024-02-10] (Microsoft Corporation -> Microsoft Corporation) S2 GoogleUpdaterInternalService124.0.6315.0; C:\Program Files (x86)\Google\GoogleUpdater\124.0.6315.0\updater.exe [4698400 2024-02-22] (Google LLC -> Google LLC) <==== ATENÇÃO S2 GoogleUpdaterService124.0.6315.0; C:\Program Files (x86)\Google\GoogleUpdater\124.0.6315.0\updater.exe [4698400 2024-02-22] (Google LLC -> Google LLC) <==== ATENÇÃO S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Arquivo não assinado] S2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2010-11-22] (Nalpeiron LTD -> Nalpeiron Ltd.) [Arquivo não assinado] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Arquivo não assinado] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522184 2024-03-01] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [14863848 2022-04-15] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 Warsaw Technology; C:\Program Files\Topaz OFD\Warsaw\core.exe [999736 2023-09-21] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\122.1.63.165\elevation_service.exe" [X] ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [20536 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [230456 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [380360 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [292816 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84424 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [27760 2024-02-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28616 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [263632 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [548296 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [93752 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69176 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [934968 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [692280 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [201784 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [306232 2024-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Arquivo não assinado] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Arquivo não assinado] S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R1 wsddfac; C:\Windows\System32\drivers\wsddfac.sys [55496 2024-03-04] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD) R1 wsddntf; C:\Windows\system32\DRIVERS\wsddntf.sys [51160 2021-02-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD) R1 wsddpp; C:\Windows\system32\drivers\wsddpp.sys [41816 2023-05-05] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD) S3 wsddprm; C:\Windows\system32\drivers\wsddprm.sys [52104 2023-09-19] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um mês (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2024-03-04 15:07 - 2024-03-04 15:08 - 000030933 _____ C:\Users\Users\Desktop\Addition.txt 2024-03-04 15:06 - 2024-03-04 15:09 - 000027789 _____ C:\Users\Users\Desktop\FRST.txt 2024-03-04 15:06 - 2024-03-04 15:09 - 000000000 ____D C:\FRST 2024-03-04 15:05 - 2024-03-04 15:05 - 002386944 _____ (Farbar) C:\Users\Users\Desktop\FRST64.exe 2024-03-04 15:00 - 2024-03-04 15:00 - 000013427 _____ C:\Users\Users\Desktop\ZHPCleaner (R).html 2024-03-04 15:00 - 2024-03-04 15:00 - 000005661 _____ C:\Users\Users\Desktop\ZHPCleaner (R).txt 2024-03-04 14:54 - 2024-03-04 14:54 - 000013933 _____ C:\Users\Users\Desktop\ZHPCleaner (S).html 2024-03-04 14:54 - 2024-03-04 14:54 - 000006048 _____ C:\Users\Users\Desktop\ZHPCleaner (S).txt 2024-03-04 14:38 - 2024-03-04 15:00 - 000000000 ____D C:\Users\Users\AppData\Roaming\ZHP 2024-03-04 14:38 - 2024-03-04 14:38 - 003364000 _____ (Nicolas Coolman) C:\Users\Users\Desktop\ZHPCleaner.exe 2024-03-04 14:38 - 2024-03-04 14:38 - 000000000 ____D C:\Users\Users\AppData\Local\ZHP 2024-03-04 14:27 - 2024-03-04 14:28 - 000000000 ____D C:\AdwCleaner 2024-03-04 14:25 - 2024-03-04 14:25 - 008790880 _____ (Malwarebytes) C:\Users\Users\Desktop\adwcleaner.exe 2024-03-01 09:49 - 2024-03-01 09:49 - 000019530 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-03-01 09:48 - 2024-03-01 09:48 - 000019530 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json 2024-03-01 09:32 - 2024-03-01 09:32 - 000000000 ___HD C:\$WinREAgent 2024-03-01 09:21 - 2024-03-01 09:21 - 000192418 _____ C:\Users\Users\Downloads\Termo único SC_C-0098440.pdf 2024-03-01 09:21 - 2024-03-01 09:21 - 000190862 _____ C:\Users\Users\Downloads\Minuta Adm Unificada_C-0098440.pdf 2024-03-01 09:21 - 2024-03-01 09:21 - 000140168 _____ C:\Users\Users\Downloads\Procuração e Termo Fogo_C-0098440.pdf 2024-03-01 09:16 - 2024-03-01 09:16 - 031633201 _____ C:\Users\Users\Downloads\CATÁLOGO PÁSCOA 2024.pdf 2024-02-29 10:59 - 2024-02-29 10:59 - 000163981 _____ C:\Users\Users\Downloads\Atestado Antacentes Cati.Fev-2024.pdf 2024-02-26 16:50 - 2024-02-16 08:34 - 000027138 _____ C:\Users\Users\Downloads\Boleto 2a. parcela seguro Palio - Giancarlo.pdf 2024-02-26 10:03 - 2024-02-26 10:03 - 000128312 _____ C:\Users\Users\Downloads\Boleto transurc.pdf 2024-02-20 16:15 - 2024-02-20 16:15 - 000000000 ____D C:\Windows\system32\Tasks\GoogleSystem 2024-02-20 11:16 - 2024-02-22 08:17 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-02-19 16:32 - 2024-02-19 16:32 - 000026970 _____ C:\Users\Users\Downloads\boleto.pdf 2024-02-19 11:08 - 2024-02-19 11:08 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-02-19 11:04 - 2024-02-19 11:04 - 000313752 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2024-02-16 09:08 - 2024-02-16 09:08 - 000220545 _____ C:\Users\Users\Downloads\certificado_registro - Rose.pdf 2024-02-16 08:47 - 2024-02-16 08:47 - 000000000 ____D C:\Users\Users\Desktop\Temporária 2024-02-15 15:29 - 2024-02-15 15:29 - 000123167 _____ C:\Users\Users\Downloads\boleto-Barbi-02-2024 taxa02de03.pdf 2024-02-09 09:33 - 2024-02-02 15:07 - 000034299 _____ C:\Users\Users\Downloads\giancarlo-tomaselli-02022024.pdf 2024-02-08 10:39 - 2024-02-08 10:39 - 002238528 _____ (CPUID, Inc. ) C:\Users\Users\Downloads\cpu-z_2.09-en.exe 2024-02-08 09:12 - 2024-02-08 09:12 - 000055525 _____ C:\Users\Users\Downloads\CND Porto Belo - 2024.pdf 2024-02-08 08:43 - 2024-02-08 08:43 - 000000000 ____D C:\Users\Users\AppData\Local\ElevatedDiagnostics 2024-02-07 11:33 - 2024-02-07 11:33 - 007447276 _____ C:\Users\Users\Downloads\E7851v1.2.zip 2024-02-06 11:51 - 2024-02-06 11:51 - 000035989 _____ C:\Users\Users\Downloads\Recibo Giancarlo.pdf 2024-02-06 11:50 - 2024-02-06 11:49 - 000156231 _____ C:\Users\Users\Downloads\DECLARAÇÃO DE IDONEIDADE-Gian.pdf 2024-02-06 11:50 - 2024-02-06 11:49 - 000131888 _____ C:\Users\Users\Downloads\DECLARAÇÃO DE ENDEREÇO DE GUARDA DE ACERVO - Gian.pdf 2024-02-06 09:47 - 2024-02-06 09:47 - 069134007 _____ C:\Users\Users\Downloads\Catálogo Dorivali 2023.pdf ==================== Um mês (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2024-03-04 15:08 - 2019-12-07 06:13 - 000000000 ____D C:\Windows\INF 2024-03-04 15:00 - 2023-09-20 12:02 - 000002390 _____ C:\Users\Users\Desktop\Rose - Chrome.lnk 2024-03-04 15:00 - 2023-06-09 12:14 - 000000000 ____D C:\ProgramData\IObit 2024-03-04 14:43 - 2023-06-09 10:43 - 000000000 ____D C:\Windows\system32\SleepStudy 2024-03-04 14:43 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-03-04 14:28 - 2023-06-09 12:14 - 000000000 ____D C:\Users\Users\AppData\Roaming\IObit 2024-03-04 14:06 - 2023-06-09 11:40 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-03-04 10:01 - 2023-06-12 10:36 - 000003616 _____ C:\Windows\system32\Tasks\BraveSoftwareUpdateTaskMachineUA{F113897A-DE9B-48E4-BDED-2B6B116234DF} 2024-03-04 10:01 - 2023-06-12 10:36 - 000003392 _____ C:\Windows\system32\Tasks\BraveSoftwareUpdateTaskMachineCore{3708967D-2324-4944-9020-3874B7E21E23} 2024-03-04 10:01 - 2023-06-10 09:53 - 000003056 _____ C:\Windows\system32\Tasks\update-S-1-5-21-1718706080-4065284056-1823354823-1001 2024-03-04 10:01 - 2023-06-10 09:53 - 000002800 _____ C:\Windows\system32\Tasks\update-sys 2024-03-04 10:01 - 2023-06-10 09:53 - 000000420 _____ C:\Windows\Tasks\update-sys.job 2024-03-04 10:01 - 2023-06-10 09:53 - 000000420 _____ C:\Windows\Tasks\update-S-1-5-21-1718706080-4065284056-1823354823-1001.job 2024-03-04 10:01 - 2023-06-09 12:38 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software 2024-03-04 10:01 - 2023-06-09 11:42 - 000003520 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1686321719 2024-03-04 10:01 - 2023-06-09 11:38 - 000003482 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2024-03-04 10:01 - 2023-06-09 11:29 - 000003066 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1718706080-4065284056-1823354823-1001 2024-03-04 10:01 - 2023-06-09 11:28 - 000002862 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1718706080-4065284056-1823354823-1001 2024-03-04 10:01 - 2023-06-09 10:43 - 000003602 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-03-04 10:01 - 2023-06-09 10:43 - 000003378 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-03-04 09:26 - 2019-12-07 06:14 - 000000000 ____D C:\Windows\AppReadiness 2024-03-04 09:18 - 2023-06-09 11:27 - 000000000 ____D C:\Users\Users\AppData\Local\Packages 2024-03-04 09:17 - 2019-12-07 06:14 - 000000000 ___HD C:\Program Files\WindowsApps 2024-03-04 08:59 - 2023-06-09 12:39 - 000000000 ____D C:\Users\Users\AppData\Local\Avast Software 2024-03-04 08:45 - 2023-10-30 15:06 - 000000000 ____D C:\Users\Users\AppData\Local\CrashDumps 2024-03-04 08:28 - 2023-10-05 10:16 - 000055496 _____ (Topaz OFD) C:\Windows\system32\Drivers\wsddfac.sys 2024-03-04 08:28 - 2023-06-09 12:37 - 000000000 ____D C:\Program Files\TeamViewer 2024-03-04 08:28 - 2023-06-09 10:43 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2024-03-04 08:28 - 2023-06-09 10:42 - 000008192 ___SH C:\DumpStack.log.tmp 2024-03-04 08:28 - 2019-12-07 06:03 - 000000000 ____D C:\Windows\CbsTemp 2024-03-03 17:11 - 2023-06-09 10:43 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-03-01 15:26 - 2023-06-09 12:38 - 000004264 _____ C:\Windows\system32\Tasks\Avast Emergency Update 2024-03-01 12:07 - 2023-06-09 11:27 - 000000000 ____D C:\ProgramData\Packages 2024-03-01 12:06 - 2023-06-09 12:36 - 000000000 ____D C:\ProgramData\Avast Software 2024-03-01 12:06 - 2023-06-09 10:43 - 000297072 _____ C:\Windows\system32\FNTCACHE.DAT 2024-03-01 12:05 - 2019-12-07 06:03 - 000524288 _____ C:\Windows\system32\config\BBI 2024-03-01 12:04 - 2019-12-07 11:56 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-03-01 12:04 - 2019-12-07 06:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2024-03-01 12:04 - 2019-12-07 06:14 - 000000000 ____D C:\Windows\SystemResources 2024-03-01 12:04 - 2019-12-07 06:14 - 000000000 ____D C:\Windows\ShellExperiences 2024-03-01 12:04 - 2019-12-07 06:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2024-03-01 12:04 - 2019-12-07 06:14 - 000000000 ____D C:\Windows\bcastdvr 2024-03-01 09:48 - 2023-06-09 10:47 - 003015680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2024-03-01 08:55 - 2023-06-09 11:32 - 000002243 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-03-01 08:55 - 2023-06-09 11:32 - 000002202 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2024-03-01 08:55 - 2023-05-05 09:26 - 000000000 ____D C:\Windows\SystemTemp 2024-02-29 11:37 - 2023-06-09 15:07 - 000000000 ____D C:\Users\Users\Documents\Minhas digitalizações 2024-02-29 08:49 - 2023-06-12 10:38 - 000002362 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2024-02-29 08:49 - 2023-06-12 10:38 - 000002321 _____ C:\Users\Public\Desktop\Brave.lnk 2024-02-29 08:39 - 2023-06-09 11:42 - 000001403 _____ C:\Users\Users\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navegador Opera.lnk 2024-02-27 09:35 - 2023-06-09 12:38 - 000000000 ____D C:\Users\Users\AppData\Roaming\Microsoft\Excel 2024-02-26 09:10 - 2023-06-09 11:38 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-02-26 09:10 - 2023-06-09 11:38 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2024-02-22 08:17 - 2023-06-09 11:40 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-02-20 16:15 - 2023-06-09 11:32 - 000000000 ____D C:\Program Files (x86)\Google 2024-02-20 11:21 - 2023-06-09 11:40 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-02-20 11:21 - 2023-06-09 11:40 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2024-02-19 14:47 - 2023-06-09 12:38 - 000000000 ____D C:\Users\Users\AppData\Roaming\Microsoft\Word 2024-02-19 11:07 - 2023-06-09 11:46 - 000000000 ____D C:\Program Files\Microsoft Office 2024-02-19 11:04 - 2023-06-09 12:38 - 000934968 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSnx.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000692280 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSP.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000548296 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswNetHub.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000380360 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsdriver.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000306232 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswVmm.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000292816 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsh.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000263632 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswMonFlt.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000230456 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArPot.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000093752 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRdr2.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000084424 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbuniv.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000069176 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRvrt.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000028616 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswKbd.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000027760 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswElam.sys 2024-02-19 11:04 - 2023-06-09 12:38 - 000020536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArDisk.sys 2024-02-19 11:04 - 2019-12-07 06:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2024-02-16 15:49 - 2023-11-14 15:56 - 000000000 ____D C:\Users\Users\Documents\REURB 2024-02-16 14:40 - 2023-06-09 11:26 - 000002389 _____ C:\Users\Users\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-02-15 09:18 - 2023-06-13 15:35 - 000000000 ____D C:\Windows\system32\MRT 2024-02-15 09:12 - 2023-06-13 15:35 - 191155960 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2024-02-06 11:51 - 2023-06-09 15:08 - 000444719 _____ C:\Users\Users\Downloads\DECLARAÇÃO GIANCARLO.pdf ==================== Arquivos na raiz de alguns diretórios ======== 2023-06-10 09:53 - 2023-06-10 09:53 - 000000003 _____ () C:\Users\Users\AppData\Local\updater.log 2023-06-10 09:53 - 2023-06-10 09:53 - 000000424 _____ () C:\Users\Users\AppData\Local\UserProducts.xml ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================