Format du document : text/plain
Prévisualisation
Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 13-03-2022
Executado por DVM (18-03-2022 10:53:32) Run:1
Executando a partir de C:\Users\DVM\Desktop
Perfis Carregados: DVM
Modo da Inicialização: Normal
==============================================
fixlist Conteúdo:
*****************
Closeprocesses:
Google Chrome (HKLM\...\{20FE816A-FD5E-3CC2-8EE5-A503ED028EE4}) (Version: 99.0.4844.51 - Google LLC)
Google Chrome (HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Google Chrome) (Version: 99.0.4844.74 - Google LLC)
CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\DVM\AppData\Local\Google\Chrome\Application\99.0.4844.74\notification_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll (Google LLC -> Google LLC)
ShortcutWithArgument: C:\Users\DVM\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\743e5cfd0640ee89\Google Chrome.lnk -> C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin\chrome.exe (Google LLC) -> --profile-directory=Default
C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin\chrome.exe
C:\Users\DVM\AppData\Local\Google\Chrome
C:\Users\DVM\AppData\Local\Google
FirewallRules: [TCP Query User{08D1E651-C045-4B7B-A289-298BC40060C5}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe => Nenhum Arquivo
FirewallRules: [UDP Query User{D71A3D13-56C4-4AFE-82F6-8B38DE5A7095}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe => Nenhum Arquivo
FirewallRules: [{383CC9E0-9909-4C03-99B5-D008920B4A42}] => (Allow) C:\Users\DVM\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{098F16A9-4721-4B40-A00A-40131646D409}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe] => (Allow) C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{833CFF57-D03B-48B2-BDCE-9DA569DDE1B0}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe] => (Allow) C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe (Google LLC -> Google LLC)
C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin
C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262
C:\Windows\system32\Tasks\McAfee
HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Run: [MicrosoftEdgeAutoLaunch_5460CE3DAE9ADC376A8F34F0B63AF70F] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Run: [ut] => C:\Users\DVM\AppData\Roaming\uTorrent\uTorrent.exe [2103848 2022-02-19] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Run: [Google Update] => C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\GoogleUpdateCore.exe [223816 2022-03-16] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel=stable
Task: {10A5F58D-3412-4879-A7BE-DDCB8DA9A09E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1438BA42-EC6C-4DD1-B226-2350F563AB73} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c (Nenhum Arquivo)
Task: {39408801-8733-4D67-8B2C-5471CF815EC5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5C779D1E-C91D-4F50-A849-CC7F58BAA135} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF} => C:\Users\DVM\AppData\Local\Google\Update\GoogleUpdate.exe [156232 2022-03-16] (Google LLC -> Google LLC)
Task: {6DDAE02F-4141-455C-8EA5-C620DC1126EF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8615B089-EB76-4B2F-A278-3A46E3A86698} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Nenhum Arquivo)
Task: {CD18F9DE-823C-4465-A0F8-7F46BD050444} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038} => C:\Users\DVM\AppData\Local\Google\Update\GoogleUpdate.exe [156232 2022-03-16] (Google LLC -> Google LLC)
Edge DefaultProfile: Default
Edge Profile: C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-18]
Edge Notifications: Default -> hxxps://conta.olx.com.br; hxxps://www.meliuz.com.br
Edge Extension: (Cuponomia - Cupom e Cashback) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bpgniflghkfilpfdacibcpggobmldnlf [2022-03-17]
Edge Extension: (Méliuz: Cashback e cupons em suas compras) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jdcfmebflppkljibgpdlboifpcaalolg [2022-02-24]
Edge Extension: (uBlock Origin) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-03-03]
S3 GoogleChromeElevationService; "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\elevation_service.exe" [X]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
2022-03-16 14:20 - 2022-03-18 07:26 - 000000000 ____D C:\Program Files (x86)\Google
2022-03-16 14:20 - 2022-03-16 14:21 - 000003922 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038}
2022-03-16 14:20 - 2022-03-16 14:21 - 000003654 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF}
2022-03-16 14:20 - 2022-03-16 14:20 - 000001732 _____ C:\Users\DVM\Desktop\chrome - Atalho.lnk
2022-03-15 14:41 - 2022-03-15 14:41 - 000000000 ____D C:\Windows\system32\Tasks\McAfee
2022-03-15 14:31 - 2022-03-15 14:31 - 011106632 _____ (McAfee, LLC) C:\Users\DVM\Desktop\MCPR.exe
2022-03-16 14:20 - 2020-09-10 15:37 - 000000000 ____D C:\Users\DVM\AppData\Local\Google
2022-03-10 05:29 - 2020-09-10 14:05 - 000003618 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-03-10 05:29 - 2020-09-10 14:05 - 000003494 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
Hosts:
Emptytemp:
Reboot:
*****************
Processos fechados com sucesso.
Google Chrome (HKLM\...\{20FE816A-FD5E-3CC2-8EE5-A503ED028EE4}) (Version: 99.0.4844.51 - Google LLC) => Erro: Nenhuma correção automática foi encontrada para esta entrada.
Google Chrome (HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Google Chrome) (Version: 99.0.4844.74 - Google LLC) => Erro: Nenhuma correção automática foi encontrada para esta entrada.
HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3} => removido (a) com sucesso.
HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4} => removido (a) com sucesso.
HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD} => removido (a) com sucesso.
HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F} => removido (a) com sucesso.
C:\Users\DVM\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\743e5cfd0640ee89\Google Chrome.lnk => Atalho argumento removido (a) com sucesso.
C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin\chrome.exe => movido com sucesso
C:\Users\DVM\AppData\Local\Google\Chrome => movido com sucesso
C:\Users\DVM\AppData\Local\Google => movido com sucesso
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{08D1E651-C045-4B7B-A289-298BC40060C5}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe" => removido (a) com sucesso.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D71A3D13-56C4-4AFE-82F6-8B38DE5A7095}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe" => removido (a) com sucesso.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{383CC9E0-9909-4C03-99B5-D008920B4A42}" => removido (a) com sucesso.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{098F16A9-4721-4B40-A00A-40131646D409}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe" => removido (a) com sucesso.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{833CFF57-D03B-48B2-BDCE-9DA569DDE1B0}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe" => removido (a) com sucesso.
C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin => movido com sucesso
C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262 => movido com sucesso
C:\Windows\system32\Tasks\McAfee => movido com sucesso
"HKU\S-1-5-21-3349755285-804529065-3594935135-1001\Software\Microsoft\Windows\CurrentVersion\Run\\MicrosoftEdgeAutoLaunch_5460CE3DAE9ADC376A8F34F0B63AF70F" => removido (a) com sucesso.
"HKU\S-1-5-21-3349755285-804529065-3594935135-1001\Software\Microsoft\Windows\CurrentVersion\Run\\ut" => removido (a) com sucesso.
"HKU\S-1-5-21-3349755285-804529065-3594935135-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update" => removido (a) com sucesso.
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{10A5F58D-3412-4879-A7BE-DDCB8DA9A09E}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{10A5F58D-3412-4879-A7BE-DDCB8DA9A09E}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1438BA42-EC6C-4DD1-B226-2350F563AB73}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1438BA42-EC6C-4DD1-B226-2350F563AB73}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{39408801-8733-4D67-8B2C-5471CF815EC5}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39408801-8733-4D67-8B2C-5471CF815EC5}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Cleanup" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5C779D1E-C91D-4F50-A849-CC7F58BAA135}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C779D1E-C91D-4F50-A849-CC7F58BAA135}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF} => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6DDAE02F-4141-455C-8EA5-C620DC1126EF}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6DDAE02F-4141-455C-8EA5-C620DC1126EF}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Verification" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8615B089-EB76-4B2F-A278-3A46E3A86698}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8615B089-EB76-4B2F-A278-3A46E3A86698}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD18F9DE-823C-4465-A0F8-7F46BD050444}" => removido (a) com sucesso.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD18F9DE-823C-4465-A0F8-7F46BD050444}" => removido (a) com sucesso.
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038} => movido com sucesso
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038}" => removido (a) com sucesso.
Edge DefaultProfile: Default => Erro: Nenhuma correção automática foi encontrada para esta entrada.
C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default => movido com sucesso
"Edge Notifications:" => não encontrado (a)
Edge Extension: (Cuponomia - Cupom e Cashback) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bpgniflghkfilpfdacibcpggobmldnlf [2022-03-17] => Erro: Nenhuma correção automática foi encontrada para esta entrada.
Edge Extension: (Méliuz: Cashback e cupons em suas compras) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jdcfmebflppkljibgpdlboifpcaalolg [2022-02-24] => Erro: Nenhuma correção automática foi encontrada para esta entrada.
Edge Extension: (uBlock Origin) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-03-03] => Erro: Nenhuma correção automática foi encontrada para esta entrada.
HKLM\System\CurrentControlSet\Services\GoogleChromeElevationService => removido (a) com sucesso.
GoogleChromeElevationService => o serviço removido (a) com sucesso.
HKLM\System\CurrentControlSet\Services\gupdate => removido (a) com sucesso.
gupdate => o serviço removido (a) com sucesso.
HKLM\System\CurrentControlSet\Services\gupdatem => removido (a) com sucesso.
gupdatem => o serviço removido (a) com sucesso.
C:\Program Files (x86)\Google => movido com sucesso
"C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038}" => não encontrado (a)
"C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF}" => não encontrado (a)
C:\Users\DVM\Desktop\chrome - Atalho.lnk => movido com sucesso
"C:\Windows\system32\Tasks\McAfee" => não encontrado (a)
C:\Users\DVM\Desktop\MCPR.exe => movido com sucesso
"C:\Users\DVM\AppData\Local\Google" => não encontrado (a)
C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => movido com sucesso
C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => movido com sucesso
C:\Windows\System32\Drivers\etc\hosts => movido com sucesso
Hosts restaurado com sucesso.
=========== EmptyTemp: ==========
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27492130 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 2487463 B
Edge => 0 B
Firefox => 490052791 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 137688 B
DVM => 106497220 B
RecycleBin => 38970818 B
EmptyTemp: => 636.1 MB de dados temporários Removidos.
================================
O sistema precisou ser reiniciado.
==== Fim de Fixlog 11:01:14 ====