Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 29-06-2021 Executado por Vinícius (administrador) em LAPTOP-3L0GST15 (SAMSUNG ELECTRONICS CO., LTD. 550XCJ/550XCR) (30-06-2021 05:13:03) Executando a partir de C:\Users\Vinícius\OneDrive\Desktop Perfis Carregados: Vinícius Platform: Windows 10 Home Single Language Versão 20H2 19042.1052 (X64) Idioma: Português (Brasil) Navegador padrão: Chrome Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe (Intel(R) pGFX -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_12bdb8127c4c0458\OneApp.IGCC.WinService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_d2a0453c62b3b51a\igfxext.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2c4f5af87c580ef1\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2c4f5af87c580ef1\IntelCpHeciSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <15> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MsMpEng.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvsm.inf_amd64_e32f6e221e70c144\Display.NvContainer\NVDisplay.Container.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlClient.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlService.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\ColorEngine\ColorEngine.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Quick Search Service\QuickSearchService.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Recovery\BulletService.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungUpdate\SUEngine.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungUpdate\SUService.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\sService\sServiceAgentLauncherSvc.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\sService\sServiceKeyMonitor.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\samsungsecuritysupportservicecomponent.inf_amd64_f7e92d4c24e742f2\SamsungSecuritySupporter.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\samsungsecuritysupportservicecomponent.inf_amd64_f7e92d4c24e742f2\SamsungSecuritySupportService.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\sfourswcomp.inf_amd64_61b53c11b555eb3f\SamsungSystemSupportEngine.exe (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\DriverStore\FileRepository\sfourswcomp.inf_amd64_61b53c11b555eb3f\SamsungSystemSupportService.exe (Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKU\S-1-5-21-791790222-240034792-522479914-1001\...\Run: [com.squirrel.WhatsApp.WhatsApp] => C:\Users\Vinícius\AppData\Local\WhatsApp\Update.exe [2252488 2021-03-15] (WhatsApp, Inc -> ) HKU\S-1-5-21-791790222-240034792-522479914-1001\...\Run: [utweb] => C:\Users\Vinícius\AppData\Roaming\uTorrent Web\utweb.exe [5836832 2021-04-19] (BitTorrent Inc -> BitTorrent Inc.) HKU\S-1-5-21-791790222-240034792-522479914-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Vinícius\AppData\Local\Microsoft\Teams\Update.exe [2454184 2021-06-17] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\91.0.4472.124\Installer\chrmstp.exe [2021-06-30] (Google LLC -> Google LLC) ==================== Tarefas Agendadas (Whitelisted) ============ (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {0612B075-7ED1-4813-9F49-E6901E7DBDCA} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {07425E78-876D-4815-B563-AAA311FE3DD4} - System32\Tasks\PowerManagement => C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlClient.exe [2760552 2017-05-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {1CEB68E1-F83B-469D-B9FA-0BB172CEC862} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {32526C20-68BA-406A-9735-30A5B33A798E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {386BC4A4-1F71-4DDA-A7C4-93AA21FB74E6} - System32\Tasks\DPICustomized => C:\ProgramData\Samsung\DPICustomizing\FontCustomizing.exe [24736 2018-01-16] (Samsung Electronics CO., LTD. -> ) Task: {3C2DA0F6-AD6B-472D-A827-423D54C0C53F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {414DB428-1A72-4F3A-B532-C296207BF702} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124896 2021-06-17] (Microsoft Corporation -> Microsoft Corporation) Task: {439E0217-28A3-48B8-9FA4-144D554CF6D6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5109BC4A-8159-4706-867A-0A3386CE1D38} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3788144 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {58E93336-E0F7-4738-9317-E325FE855F4B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5DBBC2F7-8C4F-4B61-A25E-A4F0AD609A32} - System32\Tasks\ColorEngine => C:\Program Files\Samsung\ColorEngine\ColorEngine.exe [588960 2019-10-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {5E5E2F6A-2362-453A-8FCC-FE44FCEA1267} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {62604087-6076-4B8A-8A66-F0AAE922AFAB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147320 2021-06-21] (Microsoft Corporation -> Microsoft Corporation) Task: {64902223-CE19-45B6-ACCB-46AD7580B98B} - System32\Tasks\ColorSettings => C:\Program Files\Samsung\ColorEngine\SetParam3264.exe [40608 2019-10-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {668D5091-3D63-4A5F-AC01-A8D7ACD31FF1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [897008 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {86B1BE2B-C13F-4921-B28A-DD9A92C46340} - System32\Tasks\SecTimeSync\TimeSyncInit => C:\Windows\SecTimeSync.exe [1629424 2018-06-12] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {88FB3882-9AD1-491B-B77E-2FD882EC326A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8A5CD027-0371-4E34-8B53-D700AD1326A7} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8EFAB392-4B7D-47F3-901A-7D9FAF77962A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MpCmdRun.exe [644888 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A57C025A-6E06-4240-A035-B64A6F16F3FE} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1130480 2019-06-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A8F563B4-99B2-4B1D-B521-B5048EC65748} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [147320 2021-06-21] (Microsoft Corporation -> Microsoft Corporation) Task: {B08599CA-69D9-418A-82E9-6EEDEB1CC633} - System32\Tasks\Rerun Warsaw's CoreFixer => C:\WINDOWS\TEMP\is-IBQR1.tmp\corefixer.exe <==== ATENÇÃO Task: {B498DB38-81A1-47FC-8837-CA1BFD16D1C1} - System32\Tasks\Samsung\SamsungUpdate\UserModeWorker => C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe [21880 2021-04-27] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {BAB5D831-0E6B-41C6-AF5A-90298CD7C5A2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-03-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {BF1EFF59-48F9-4AA6-8552-6CB1D19916C4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-13] (Google LLC -> Google LLC) Task: {C5A55D1F-4F46-48ED-BF15-08F22960C7DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-13] (Google LLC -> Google LLC) Task: {D458B98D-B27C-4467-9EF6-686F0533F6F7} - System32\Tasks\RtkAudUService64_BG => C:\windows\System32\RtkAudUService64.exe [1084192 2020-06-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {E1788411-792F-46DC-9095-A8D15C8BF428} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23124896 2021-06-17] (Microsoft Corporation -> Microsoft Corporation) Task: {E7C1F540-65B1-42D0-A35B-4C385751A6B9} - System32\Tasks\Samsung\Recovery8\BulletUserModeWorker => C:\Program Files\Samsung\Recovery\BulletUserModeWorker.exe [347368 2019-11-20] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 Tcpip\..\Interfaces\{037806d6-bafc-4004-91c6-d71f90f3fa41}: [DhcpNameServer] 10.0.0.1 Tcpip\..\Interfaces\{67ba1efd-bc11-4d1e-b23f-e5bb4784b2c2}: [DhcpNameServer] 192.168.1.1 0.0.0.0 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Vinícius\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-30] Edge Notifications: Default -> hxxps://meet.google.com Edge Extension: (AdBlock — o melhor bloqueador de anúncios) - C:\Users\Vinícius\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-06-30] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-28] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Default [2021-06-27] CHR Notifications: Default -> hxxps://354253592817153.webpush.freshchat.com; hxxps://calendar.google.com; hxxps://meet.google.com; hxxps://servicecenter.maplebear.com.br; hxxps://sponte.movidesk.com CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-22] CHR Extension: (Chrome Media Router) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-07] CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-01-25] CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-03-18] CHR Extension: (Apresentações) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-03-14] CHR Extension: (Documentos) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-03-14] CHR Extension: (Google Drive) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-03-14] CHR Extension: (YouTube) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-03-14] CHR Extension: (Planilhas) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-03-14] CHR Extension: (Documentos Google off-line) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-14] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-14] CHR Extension: (Gmail) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-03-14] CHR Extension: (Chrome Media Router) - C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-14] CHR Profile: C:\Users\Vinícius\AppData\Local\Google\Chrome\User Data\System Profile [2021-03-14] ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11279752 2021-06-17] (Microsoft Corporation -> Microsoft Corporation) R2 Quick Search Service; C:\Program Files\Samsung\Quick Search Service\QuickSearchService.exe [138488 2019-12-01] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 SamsungRecoveryService; C:\Program Files\Samsung\Recovery\BulletService.exe [522984 2019-11-20] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 SamsungSecuritySupportService; C:\WINDOWS\System32\DriverStore\FileRepository\samsungsecuritysupportservicecomponent.inf_amd64_f7e92d4c24e742f2\SamsungSecuritySupportService.exe [2774368 2021-05-10] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 SamsungSystemSupportService; C:\WINDOWS\System32\DriverStore\FileRepository\sfourswcomp.inf_amd64_61b53c11b555eb3f\SamsungSystemSupportService.exe [703784 2020-08-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 SamsungUpdateService; C:\Program Files\Samsung\SamsungUpdate\SUService.exe [376184 2021-04-27] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 SecPowerCtrlService; C:\Program Files (x86)\Samsung\PowerCtrlManager\PowerCtrlService.exe [1652584 2017-05-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 sService Agent Launcher; C:\Program Files\Samsung\sService\sServiceAgentLauncherSvc.exe [412880 2019-05-03] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 sServiceLoopBack; C:\Program Files\Samsung\sService\sServiceLoopBackSvc.exe [49360 2019-05-03] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\NisSrv.exe [2644776 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2105.5-0\MsMpEng.exe [136656 2021-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvsm.inf_amd64_e32f6e221e70c144\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvsm.inf_amd64_e32f6e221e70c144\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Arquivo não assinado] R3 SamsungEventController; C:\WINDOWS\System32\drivers\SamsungEventController.sys [28456 2019-06-12] (WDKTestCert dotol,132048634660548123 -> Samsung) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2021-06-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [425184 2021-06-14] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76000 2021-06-14] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Três meses (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2021-06-30 05:12 - 2021-06-30 05:14 - 000000000 ____D C:\FRST 2021-06-30 05:09 - 2021-06-30 05:09 - 002013184 _____ (Farbar) C:\Users\Vinícius\Downloads\Não confirmado 705181.crdownload 2021-06-27 11:25 - 2021-06-27 11:37 - 847142786 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E02.WEB-DL.1080p-FN.mp4 2021-06-27 11:13 - 2021-06-27 11:27 - 2532618713 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E02.WEB-DL.1080p-FN.mp4 2021-06-27 11:10 - 2021-06-27 11:13 - 856660801 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E01.WEB-DL.1080p-FN.mp4 2021-06-27 11:00 - 2021-06-27 11:11 - 2599402533 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E01.WEB-DL.1080p-FN.mp4 2021-06-24 16:59 - 2021-06-27 12:19 - 000032656 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E02.WEB-DL.1080p-FN.srt 2021-06-24 16:42 - 2021-06-27 12:19 - 000099563 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E02.WEB-DL.1080p-FN.srt 2021-06-24 16:22 - 2021-06-27 12:18 - 000035463 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.Untucked.S06E01.WEB-DL.1080p-FN.srt 2021-06-24 16:06 - 2021-06-27 11:09 - 000094555 _____ C:\Users\Vinícius\Downloads\RuPauls.Drag.Race.All.Stars.S06E01.WEB-DL.1080p-FN.srt 2021-06-24 09:39 - 2021-06-02 16:12 - 035090400 _____ C:\WINDOWS\system32\Drivers\Netwfw10.dat 2021-06-24 09:39 - 2021-06-02 16:12 - 005304392 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw10.sys 2021-06-24 09:39 - 2021-06-02 16:12 - 001419336 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter08.dll 2021-06-22 12:34 - 2021-06-22 12:34 - 000273952 _____ C:\Users\Vinícius\Downloads\Regulamento.pdf 2021-06-17 16:03 - 2021-06-17 16:03 - 000002375 _____ C:\Users\Vinícius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-06-17 16:03 - 2021-06-17 16:03 - 000000000 ____D C:\Users\Vinícius\AppData\Roaming\Teams 2021-06-17 08:13 - 2021-06-17 08:13 - 000000000 ____D C:\Users\Vinícius\Downloads\IWR3000N_v_1.9.7 2021-06-14 08:57 - 2021-06-14 08:57 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-06-14 08:57 - 2021-06-14 08:57 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-06-14 08:57 - 2021-06-14 08:57 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-06-14 08:57 - 2021-06-14 08:57 - 000451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-06-14 08:56 - 2021-06-14 08:56 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-06-14 08:56 - 2021-06-14 08:56 - 000011353 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-06-14 08:55 - 2021-06-14 08:55 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll 2021-06-14 08:55 - 2021-06-14 08:55 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-06-14 08:55 - 2021-06-14 08:55 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-06-14 08:55 - 2021-06-14 08:55 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-06-14 08:54 - 2021-06-14 08:54 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2021-06-14 08:54 - 2021-06-14 08:54 - 001823792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-06-14 08:54 - 2021-06-14 08:54 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-06-14 08:54 - 2021-06-14 08:54 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-06-14 08:54 - 2021-06-14 08:54 - 000097280 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-06-14 08:53 - 2021-06-14 08:53 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-06-14 08:53 - 2021-06-14 08:53 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2021-06-14 08:53 - 2021-06-14 08:53 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-06-01 12:24 - 2021-06-01 12:24 - 000222146 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Exame médico.pdf 2021-06-01 12:22 - 2021-06-01 12:22 - 000164738 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Biometria (1).pdf 2021-05-31 15:57 - 2021-05-31 15:57 - 000164738 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Biometria.pdf 2021-05-31 15:53 - 2021-05-31 15:53 - 000196104 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços Requerimento.pdf 2021-05-31 15:53 - 2021-05-31 15:53 - 000188172 _____ C:\Users\Vinícius\Downloads\DETRAN_SE - Portal de Serviços.pdf 2021-05-27 10:38 - 2021-05-27 10:38 - 000000000 ____D C:\Users\Vinícius\OneDrive\Documentos\Zoom 2021-05-27 10:36 - 2020-11-12 11:00 - 009908832 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll 2021-05-27 10:36 - 2020-11-12 11:00 - 000445024 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys 2021-05-24 14:16 - 2021-05-24 15:34 - 000000000 ____D C:\Users\Vinícius\Downloads\Corpo Elétrico.DVD-R.NTSC.2018 - JOAOCF 2021-05-23 14:58 - 2021-05-23 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferramentas do Microsoft Office 2021-05-22 13:51 - 2021-05-22 13:51 - 000101383 _____ C:\Users\Vinícius\OneDrive\Documentos\Ônix CRLV 2021.pdf 2021-05-17 13:55 - 2021-05-17 13:55 - 000000000 ____D C:\Users\Vinícius\OneDrive\Documentos\Modelos Personalizados do Office 2021-05-12 18:29 - 2021-05-12 18:29 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll 2021-05-12 18:28 - 2021-05-12 18:28 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-05-12 18:27 - 2021-05-12 18:27 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-05-12 18:27 - 2021-05-12 18:27 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-05-12 18:26 - 2021-05-12 18:26 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-05-12 18:25 - 2021-05-12 18:25 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-05-10 01:04 - 2021-05-10 01:04 - 000525664 _____ C:\WINDOWS\system32\SamsungCredentialProvider.dll 2021-05-09 19:40 - 2021-05-09 19:41 - 016404094 _____ (MPC-HC Team ) C:\Users\Vinícius\OneDrive\Documentos\MPC-HC.1.9.11.x86.exe 2021-04-16 11:30 - 2021-04-28 07:49 - 000001880 _____ C:\Users\Vinícius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk 2021-04-16 09:04 - 2021-04-16 09:04 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-04-11 21:12 - 2021-05-09 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC 2021-04-11 21:12 - 2021-05-09 19:41 - 000000000 ____D C:\Program Files (x86)\MPC-HC 2021-04-11 21:12 - 2021-04-11 21:12 - 000000000 ____D C:\Users\Vinícius\AppData\Roaming\MPC-HC 2021-04-11 21:09 - 2021-04-11 21:09 - 010760886 _____ C:\Users\Vinícius\OneDrive\Documentos\mpc-hc-develop.zip ==================== Três meses (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2021-06-30 05:02 - 2021-01-13 09:20 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-06-30 05:02 - 2021-01-13 09:20 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-06-30 05:02 - 2021-01-13 09:20 - 000002204 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2021-06-30 05:02 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-06-30 05:01 - 2021-01-13 07:59 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-06-30 05:01 - 2021-01-13 07:59 - 000003524 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6e94dfb1ae456 2021-06-30 05:01 - 2020-01-09 00:42 - 000000000 ____D C:\ProgramData\NVIDIA 2021-06-30 04:58 - 2020-07-01 13:40 - 000000000 __SHD C:\Users\Vinícius\IntelGraphicsProfiles 2021-06-27 16:34 - 2019-12-07 06:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-06-27 16:33 - 2021-03-20 19:21 - 000000000 ____D C:\Users\Vinícius\AppData\Roaming\uTorrent Web 2021-06-27 16:33 - 2021-03-10 16:19 - 000000000 ____D C:\Users\Vinícius\AppData\Local\BitTorrentHelper 2021-06-27 15:12 - 2021-01-12 22:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-06-27 11:15 - 2019-12-07 06:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-06-27 11:14 - 2021-01-12 22:47 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-06-27 11:14 - 2021-01-12 22:47 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-06-27 11:14 - 2021-01-12 22:47 - 000002276 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2021-06-27 11:08 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-06-24 09:40 - 2019-12-07 06:13 - 000000000 ____D C:\WINDOWS\INF 2021-06-21 13:07 - 2020-01-09 01:00 - 000000000 ____D C:\Program Files\Microsoft Office 2021-06-21 12:44 - 2021-01-12 22:59 - 001741824 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-06-21 12:44 - 2019-12-07 11:54 - 000754118 _____ C:\WINDOWS\system32\prfh0416.dat 2021-06-21 12:44 - 2019-12-07 11:54 - 000149216 _____ C:\WINDOWS\system32\prfc0416.dat 2021-06-19 22:05 - 2021-01-12 23:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-06-19 22:05 - 2021-01-12 22:40 - 000008192 ___SH C:\DumpStack.log.tmp 2021-06-19 22:03 - 2019-12-07 06:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-06-17 16:03 - 2021-03-04 07:40 - 000000000 ____D C:\Users\Vinícius\AppData\Local\SquirrelTemp 2021-06-16 16:14 - 2021-01-12 23:03 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-791790222-240034792-522479914-1001 2021-06-16 16:14 - 2021-01-12 22:48 - 000002390 _____ C:\Users\Vinícius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-06-16 16:14 - 2021-01-12 17:41 - 000000000 ___RD C:\Users\Vinícius\OneDrive 2021-06-15 16:12 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-06-15 16:03 - 2021-01-12 22:40 - 000452656 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-06-15 15:59 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-06-15 13:35 - 2019-12-07 06:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-06-14 09:16 - 2021-01-12 18:26 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-06-14 09:16 - 2019-12-07 06:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-06-14 08:15 - 2020-01-09 12:29 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-06-14 07:00 - 2021-01-12 17:59 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-06-14 06:46 - 2021-01-12 17:59 - 132447432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Arquivos na raiz de alguns diretórios ======== 2020-01-09 00:40 - 2016-07-10 23:08 - 001834672 _____ (Samsung Electronics Co., Ltd.) C:\ProgramData\GammaLUTPatch.exe ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================