cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 29-06-2021
Executado por Vinícius (administrador) em LAPTOP-3L0GST15 (SAMSUNG ELECTRONICS CO., LTD. 550XCJ/550XCR) (30-06-2021 05:13:03)
Executando a partir de C:\Users\Vinícius\OneDrive\Desktop
Perfis Carregados: Vinícius
Platform: Windows 10 Home Single Language Versão 20H2 19042.1052 (X64) Idioma: Português (Brasil)
Navegador padrão: Chrome
Modo da Inicialização: Normal

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe
(Intel(R) pGFX -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_12bdb8127c4c0458\OneApp.IGCC.WinService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxext.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2c4f5af87c580ef1\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2c4f5af87c580ef1\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <15>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MsMpEng.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvsm.inf_amd64_e32f6e221e70c144\Display.NvContainer\NVDisplay.Container.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlClient.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlService.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\ColorEngine\ColorEngine.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Quick Search Service\QuickSearchService.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Recovery\BulletService.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungUpdate\SUEngine.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungUpdate\SUService.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\sService\sServiceAgentLauncherSvc.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\sService\sServiceKeyMonitor.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\samsungsecuritysupportservicecomponent.inf_amd64_f7e92d4c24e742f2\SamsungSecuritySupporter.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\samsungsecuritysupportservicecomponent.inf_amd64_f7e92d4c24e742f2\SamsungSecuritySupportService.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\sfourswcomp.inf_amd64_61b53c11b555eb3f\SamsungSystemSupportEngine.exe
(Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\sfourswcomp.inf_amd64_61b53c11b555eb3f\SamsungSystemSupportService.exe
(Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe

==================== Registro (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKU\S-1-5-21-791790222-240034792-522479914-1001\...\Run: [com.squirrel.WhatsApp.WhatsApp] => C:\Users\Vinícius\AppData\Local\WhatsApp\Update.exe [2252488 2021-03-15] (WhatsApp, Inc -> )
HKU\S-1-5-21-791790222-240034792-522479914-1001\...\Run: [utweb] => C:\Users\Vinícius\AppData\Roaming\uTorrent Web\utweb.exe [5836832 2021-04-19] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-791790222-240034792-522479914-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Vinícius\AppData\Local\Microsoft\Teams\Update.exe [2454184 2021-06-17] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\91.0.4472.124\Installer\chrmstp.exe [2021-06-30] (Google LLC -> Google LLC)

==================== Tarefas Agendadas (Whitelisted) ============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

Task: {0612B075-7ED1-4813-9F49-E6901E7DBDCA} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {07425E78-876D-4815-B563-AAA311FE3DD4} - System32\Tasks\PowerManagement => C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlClient.exe [2760552 2017-05-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
Task: {1CEB68E1-F83B-469D-B9FA-0BB172CEC862} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {32526C20-68BA-406A-9735-30A5B33A798E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {386BC4A4-1F71-4DDA-A7C4-93AA21FB74E6} - System32\Tasks\DPICustomized => C:\ProgramData\Samsung\DPICustomizing\FontCustomizing.exe [24736 2018-01-16] (Samsung Electronics CO., LTD. -> )
Task: {3C2DA0F6-AD6B-472D-A827-423D54C0C53F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {414DB428-1A72-4F3A-B532-C296207BF702} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124896 2021-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {439E0217-28A3-48B8-9FA4-144D554CF6D6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5109BC4A-8159-4706-867A-0A3386CE1D38} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3788144 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {58E93336-E0F7-4738-9317-E325FE855F4B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5DBBC2F7-8C4F-4B61-A25E-A4F0AD609A32} - System32\Tasks\ColorEngine => C:\Program Files\Samsung\ColorEngine\ColorEngine.exe [588960 2019-10-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
Task: {5E5E2F6A-2362-453A-8FCC-FE44FCEA1267} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {62604087-6076-4B8A-8A66-F0AAE922AFAB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147320 2021-06-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {64902223-CE19-45B6-ACCB-46AD7580B98B} - System32\Tasks\ColorSettings => C:\Program Files\Samsung\ColorEngine\SetParam3264.exe [40608 2019-10-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
Task: {668D5091-3D63-4A5F-AC01-A8D7ACD31FF1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {86B1BE2B-C13F-4921-B28A-DD9A92C46340} - System32\Tasks\SecTimeSync\TimeSyncInit => C:\Windows\SecTimeSync.exe [1629424 2018-06-12] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.)
Task: {88FB3882-9AD1-491B-B77E-2FD882EC326A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8A5CD027-0371-4E34-8B53-D700AD1326A7} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8EFAB392-4B7D-47F3-901A-7D9FAF77962A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A57C025A-6E06-4240-A035-B64A6F16F3FE} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A8F563B4-99B2-4B1D-B521-B5048EC65748} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147320 2021-06-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {B08599CA-69D9-418A-82E9-6EEDEB1CC633} - System32\Tasks\Rerun Warsaw's CoreFixer => C:\WINDOWS\TEMP\is-IBQR1.tmp\corefixer.exe <==== ATENÇÃO
Task: {B498DB38-81A1-47FC-8837-CA1BFD16D1C1} - System32\Tasks\Samsung\SamsungUpdate\UserModeWorker => C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe [21880 2021-04-27] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
Task: {BAB5D831-0E6B-41C6-AF5A-90298CD7C5A2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {BF1EFF59-48F9-4AA6-8552-6CB1D19916C4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-13] (Google LLC -> Google LLC)
Task: {C5A55D1F-4F46-48ED-BF15-08F22960C7DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-13] (Google LLC -> Google LLC)
Task: {D458B98D-B27C-4467-9EF6-686F0533F6F7} - System32\Tasks\RtkAudUService64_BG => C:\windows\System32\RtkAudUService64.exe [1084192 2020-06-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {E1788411-792F-46DC-9095-A8D15C8BF428} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124896 2021-06-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {E7C1F540-65B1-42D0-A35B-4C385751A6B9} - System32\Tasks\Samsung\Recovery8\BulletUserModeWorker => C:\Program Files\Samsung\Recovery\BulletUserModeWorker.exe [347368 2019-11-20] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)

(Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.)


==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{037806d6-bafc-4004-91c6-d71f90f3fa41}: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{67ba1efd-bc11-4d1e-b23f-e5bb4784b2c2}: [DhcpNameServer] 192.168.1.1 0.0.0.0

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Vinícius\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-30]
Edge Notifications: Default -> hxxps://meet.google.com
Edge Extension: (AdBlock — o melhor bloqueador de anúncios) - C:\Users\Vinícius\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-06-30]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Default [2021-06-27]
CHR Notifications: Default -> hxxps://354253592817153.webpush.freshchat.com; hxxps://calendar.google.com; hxxps://meet.google.com; hxxps://servicecenter.maplebear.com.br; hxxps://sponte.movidesk.com
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-22]
CHR Extension: (Chrome Media Router) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-07]
CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-01-25]
CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-03-18]
CHR Extension: (Apresentações) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-03-14]
CHR Extension: (Documentos) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-03-14]
CHR Extension: (Google Drive) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-03-14]
CHR Extension: (YouTube) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-03-14]
CHR Extension: (Planilhas) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-03-14]
CHR Extension: (Documentos Google off-line) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-14]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-14]
CHR Extension: (Gmail) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-03-14]
CHR Extension: (Chrome Media Router) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-14]
CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\System Profile [2021-03-14]

==================== Serviços (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11279752 2021-06-17] (Microsoft Corporation -> Microsoft Corporation)
R2 Quick Search Service; C:\Program Files\Samsung\Quick Search Service\QuickSearchService.exe [138488 2019-12-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 SamsungRecoveryService; C:\Program Files\Samsung\Recovery\BulletService.exe [522984 2019-11-20] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 SamsungSecuritySupportService; C:\WINDOWS\System32\DriverStore\FileRepository\samsungsecuritysupportservicecomponent.inf_amd64_f7e92d4c24e742f2\SamsungSecuritySupportService.exe [2774368 2021-05-10] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 SamsungSystemSupportService; C:\WINDOWS\System32\DriverStore\FileRepository\sfourswcomp.inf_amd64_61b53c11b555eb3f\SamsungSystemSupportService.exe [703784 2020-08-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 SamsungUpdateService; C:\Program Files\Samsung\SamsungUpdate\SUService.exe [376184 2021-04-27] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 SecPowerCtrlService; C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlService.exe [1652584 2017-05-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 sService Agent Launcher; C:\Program Files\Samsung\sService\sServiceAgentLauncherSvc.exe [412880 2019-05-03] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 sServiceLoopBack; C:\Program Files\Samsung\sService\sServiceLoopBackSvc.exe [49360 2019-05-03] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\NisSrv.exe [2644776 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MsMpEng.exe [136656 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvsm.inf_amd64_e32f6e221e70c144\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvsm.inf_amd64_e32f6e221e70c144\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Arquivo não assinado]
R3 SamsungEventController; C:\WINDOWS\System32\drivers\SamsungEventController.sys [28456 2019-06-12] (WDKTestCert dotol,132048634660548123 -> Samsung)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2021-06-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [425184 2021-06-14] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76000 2021-06-14] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três meses (criados) (Whitelisted) =========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2021-06-30 05:12 - 2021-06-30 05:14 - 000000000 ____D C:\FRST
2021-06-30 05:09 - 2021-06-30 05:09 - 002013184 _____ (Farbar) C:\Users\Vinícius\Downloads\Não confirmado 705181.crdownload
2021-06-27 11:25 - 2021-06-27 11:37 - 847142786 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E02.WEB-DL.1080p-FN.mp4
2021-06-27 11:13 - 2021-06-27 11:27 - 2532618713 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E02.WEB-DL.1080p-FN.mp4
2021-06-27 11:10 - 2021-06-27 11:13 - 856660801 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E01.WEB-DL.1080p-FN.mp4
2021-06-27 11:00 - 2021-06-27 11:11 - 2599402533 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E01.WEB-DL.1080p-FN.mp4
2021-06-24 16:59 - 2021-06-27 12:19 - 000032656 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E02.WEB-DL.1080p-FN.srt
2021-06-24 16:42 - 2021-06-27 12:19 - 000099563 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E02.WEB-DL.1080p-FN.srt
2021-06-24 16:22 - 2021-06-27 12:18 - 000035463 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E01.WEB-DL.1080p-FN.srt
2021-06-24 16:06 - 2021-06-27 11:09 - 000094555 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E01.WEB-DL.1080p-FN.srt
2021-06-24 09:39 - 2021-06-02 16:12 - 035090400 _____ C:\WINDOWS\system32\Drivers\Netwfw10.dat
2021-06-24 09:39 - 2021-06-02 16:12 - 005304392 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw10.sys
2021-06-24 09:39 - 2021-06-02 16:12 - 001419336 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter08.dll
2021-06-22 12:34 - 2021-06-22 12:34 - 000273952 _____ C:\Users\Vinícius\Downloads\Regulamento.pdf
2021-06-17 16:03 - 2021-06-17 16:03 - 000002375 _____ C:\Users\Vinícius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-06-17 16:03 - 2021-06-17 16:03 - 000000000 ____D C:\Users\Vinícius\AppData\Roaming\Teams
2021-06-17 08:13 - 2021-06-17 08:13 - 000000000 ____D C:\Users\Vinícius\Downloads\IWR3000N_v_1.9.7
2021-06-14 08:57 - 2021-06-14 08:57 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-06-14 08:57 - 2021-06-14 08:57 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-06-14 08:57 - 2021-06-14 08:57 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-06-14 08:57 - 2021-06-14 08:57 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-06-14 08:56 - 2021-06-14 08:56 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-06-14 08:56 - 2021-06-14 08:56 - 000011353 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-06-14 08:55 - 2021-06-14 08:55 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2021-06-14 08:55 - 2021-06-14 08:55 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-06-14 08:55 - 2021-06-14 08:55 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-06-14 08:55 - 2021-06-14 08:55 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-06-14 08:54 - 2021-06-14 08:54 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-06-14 08:54 - 2021-06-14 08:54 - 001823792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-06-14 08:54 - 2021-06-14 08:54 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-06-14 08:54 - 2021-06-14 08:54 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-06-14 08:54 - 2021-06-14 08:54 - 000097280 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-06-14 08:53 - 2021-06-14 08:53 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-06-14 08:53 - 2021-06-14 08:53 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-06-14 08:53 - 2021-06-14 08:53 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-06-01 12:24 - 2021-06-01 12:24 - 000222146 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Exame médico.pdf
2021-06-01 12:22 - 2021-06-01 12:22 - 000164738 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Biometria (1).pdf
2021-05-31 15:57 - 2021-05-31 15:57 - 000164738 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Biometria.pdf
2021-05-31 15:53 - 2021-05-31 15:53 - 000196104 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Requerimento.pdf
2021-05-31 15:53 - 2021-05-31 15:53 - 000188172 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços.pdf
2021-05-27 10:38 - 2021-05-27 10:38 - 000000000 ____D C:\Users\Vinícius\OneDrive\Documentos\Zoom
2021-05-27 10:36 - 2020-11-12 11:00 - 009908832 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2021-05-27 10:36 - 2020-11-12 11:00 - 000445024 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2021-05-24 14:16 - 2021-05-24 15:34 - 000000000 ____D C:\Users\Vinícius\Downloads\Corpo Elétrico.DVD-R.NTSC.2018 - JOAOCF
2021-05-23 14:58 - 2021-05-23 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office
2021-05-22 13:51 - 2021-05-22 13:51 - 000101383 _____ C:\Users\Vinícius\OneDrive\Documentos\Ônix CRLV 2021.pdf
2021-05-17 13:55 - 2021-05-17 13:55 - 000000000 ____D C:\Users\Vinícius\OneDrive\Documentos\Modelos Personalizados do Office
2021-05-12 18:29 - 2021-05-12 18:29 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-05-12 18:28 - 2021-05-12 18:28 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-05-12 18:27 - 2021-05-12 18:27 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-05-12 18:27 - 2021-05-12 18:27 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-05-12 18:26 - 2021-05-12 18:26 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-05-12 18:25 - 2021-05-12 18:25 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-05-10 01:04 - 2021-05-10 01:04 - 000525664 _____ C:\WINDOWS\system32\SamsungCredentialProvider.dll
2021-05-09 19:40 - 2021-05-09 19:41 - 016404094 _____ (MPC-HC Team ) C:\Users\Vinícius\OneDrive\Documentos\MPC-HC.1.9.11.x86.exe
2021-04-16 11:30 - 2021-04-28 07:49 - 000001880 _____ C:\Users\Vinícius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
2021-04-16 09:04 - 2021-04-16 09:04 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-04-11 21:12 - 2021-05-09 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
2021-04-11 21:12 - 2021-05-09 19:41 - 000000000 ____D C:\Program Files (x86)\MPC-HC
2021-04-11 21:12 - 2021-04-11 21:12 - 000000000 ____D C:\Users\Vinícius\AppData\Roaming\MPC-HC
2021-04-11 21:09 - 2021-04-11 21:09 - 010760886 _____ C:\Users\Vinícius\OneDrive\Documentos\mpc-hc-develop.zip

==================== Três meses (modificados) ==================

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2021-06-30 05:02 - 2021-01-13 09:20 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-06-30 05:02 - 2021-01-13 09:20 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-06-30 05:02 - 2021-01-13 09:20 - 000002204 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2021-06-30 05:02 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-06-30 05:01 - 2021-01-13 07:59 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-06-30 05:01 - 2021-01-13 07:59 - 000003524 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6e94dfb1ae456
2021-06-30 05:01 - 2020-01-09 00:42 - 000000000 ____D C:\ProgramData\NVIDIA
2021-06-30 04:58 - 2020-07-01 13:40 - 000000000 __SHD C:\Users\Vinícius\IntelGraphicsProfiles
2021-06-27 16:34 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-06-27 16:33 - 2021-03-20 19:21 - 000000000 ____D C:\Users\Vinícius\AppData\Roaming\uTorrent Web
2021-06-27 16:33 - 2021-03-10 16:19 - 000000000 ____D C:\Users\Vinícius\AppData\Local\BitTorrentHelper
2021-06-27 15:12 - 2021-01-12 22:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-06-27 11:15 - 2019-12-07 06:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-06-27 11:14 - 2021-01-12 22:47 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-06-27 11:14 - 2021-01-12 22:47 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-06-27 11:14 - 2021-01-12 22:47 - 000002276 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-06-27 11:08 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-06-24 09:40 - 2019-12-07 06:13 - 000000000 ____D C:\WINDOWS\INF
2021-06-21 13:07 - 2020-01-09 01:00 - 000000000 ____D C:\Program Files\Microsoft Office
2021-06-21 12:44 - 2021-01-12 22:59 - 001741824 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-06-21 12:44 - 2019-12-07 11:54 - 000754118 _____ C:\WINDOWS\system32\prfh0416.dat
2021-06-21 12:44 - 2019-12-07 11:54 - 000149216 _____ C:\WINDOWS\system32\prfc0416.dat
2021-06-19 22:05 - 2021-01-12 23:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-06-19 22:05 - 2021-01-12 22:40 - 000008192 ___SH C:\DumpStack.log.tmp
2021-06-19 22:03 - 2019-12-07 06:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-06-17 16:03 - 2021-03-04 07:40 - 000000000 ____D C:\Users\Vinícius\AppData\Local\SquirrelTemp
2021-06-16 16:14 - 2021-01-12 23:03 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-791790222-240034792-522479914-1001
2021-06-16 16:14 - 2021-01-12 22:48 - 000002390 _____ C:\Users\Vinícius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-06-16 16:14 - 2021-01-12 17:41 - 000000000 ___RD C:\Users\Vinícius\OneDrive
2021-06-15 16:12 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-06-15 16:03 - 2021-01-12 22:40 - 000452656 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-06-15 13:35 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-06-14 09:16 - 2021-01-12 18:26 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-06-14 09:16 - 2019-12-07 06:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-06-14 08:15 - 2020-01-09 12:29 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-06-14 07:00 - 2021-01-12 17:59 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-06-14 06:46 - 2021-01-12 17:59 - 132447432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Arquivos na raiz de alguns diretórios ========

2020-01-09 00:40 - 2016-07-10 23:08 - 001834672 _____ (Samsung Electronics Co., Ltd.) C:\ProgramData\GammaLUTPatch.exe

==================== SigCheck ============================

(Não há correção automática para arquivos que não passaram na verificação.)

==================== Fim de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité