Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 13-03-2022 Executado por DVM (18-03-2022 10:53:32) Run:1 Executando a partir de C:\Users\DVM\Desktop Perfis Carregados: DVM Modo da Inicialização: Normal ============================================== fixlist Conteúdo: ***************** Closeprocesses: Google Chrome (HKLM\...\{20FE816A-FD5E-3CC2-8EE5-A503ED028EE4}) (Version: 99.0.4844.51 - Google LLC) Google Chrome (HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Google Chrome) (Version: 99.0.4844.74 - Google LLC) CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3}\InprocServer32 -> C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\DVM\AppData\Local\Google\Chrome\Application\99.0.4844.74\notification_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\psuser_64.dll (Google LLC -> Google LLC) ShortcutWithArgument: C:\Users\DVM\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\743e5cfd0640ee89\Google Chrome.lnk -> C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin\chrome.exe (Google LLC) -> --profile-directory=Default C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin\chrome.exe C:\Users\DVM\AppData\Local\Google\Chrome C:\Users\DVM\AppData\Local\Google FirewallRules: [TCP Query User{08D1E651-C045-4B7B-A289-298BC40060C5}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe => Nenhum Arquivo FirewallRules: [UDP Query User{D71A3D13-56C4-4AFE-82F6-8B38DE5A7095}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe => Nenhum Arquivo FirewallRules: [{383CC9E0-9909-4C03-99B5-D008920B4A42}] => (Allow) C:\Users\DVM\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{098F16A9-4721-4B40-A00A-40131646D409}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe] => (Allow) C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{833CFF57-D03B-48B2-BDCE-9DA569DDE1B0}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe] => (Allow) C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe (Google LLC -> Google LLC) C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262 C:\Windows\system32\Tasks\McAfee HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Run: [MicrosoftEdgeAutoLaunch_5460CE3DAE9ADC376A8F34F0B63AF70F] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Run: [ut] => C:\Users\DVM\AppData\Roaming\uTorrent\uTorrent.exe [2103848 2022-02-19] (BitTorrent Inc -> BitTorrent Inc.) HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Run: [Google Update] => C:\Users\DVM\AppData\Local\Google\Update\1.3.36.122\GoogleUpdateCore.exe [223816 2022-03-16] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel=stable Task: {10A5F58D-3412-4879-A7BE-DDCB8DA9A09E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1438BA42-EC6C-4DD1-B226-2350F563AB73} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c (Nenhum Arquivo) Task: {39408801-8733-4D67-8B2C-5471CF815EC5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5C779D1E-C91D-4F50-A849-CC7F58BAA135} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF} => C:\Users\DVM\AppData\Local\Google\Update\GoogleUpdate.exe [156232 2022-03-16] (Google LLC -> Google LLC) Task: {6DDAE02F-4141-455C-8EA5-C620DC1126EF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8615B089-EB76-4B2F-A278-3A46E3A86698} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Nenhum Arquivo) Task: {CD18F9DE-823C-4465-A0F8-7F46BD050444} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038} => C:\Users\DVM\AppData\Local\Google\Update\GoogleUpdate.exe [156232 2022-03-16] (Google LLC -> Google LLC) Edge DefaultProfile: Default Edge Profile: C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-18] Edge Notifications: Default -> hxxps://conta.olx.com.br; hxxps://www.meliuz.com.br Edge Extension: (Cuponomia - Cupom e Cashback) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bpgniflghkfilpfdacibcpggobmldnlf [2022-03-17] Edge Extension: (Méliuz: Cashback e cupons em suas compras) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jdcfmebflppkljibgpdlboifpcaalolg [2022-02-24] Edge Extension: (uBlock Origin) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-03-03] S3 GoogleChromeElevationService; "C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\elevation_service.exe" [X] S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] 2022-03-16 14:20 - 2022-03-18 07:26 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-16 14:20 - 2022-03-16 14:21 - 000003922 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038} 2022-03-16 14:20 - 2022-03-16 14:21 - 000003654 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF} 2022-03-16 14:20 - 2022-03-16 14:20 - 000001732 _____ C:\Users\DVM\Desktop\chrome - Atalho.lnk 2022-03-15 14:41 - 2022-03-15 14:41 - 000000000 ____D C:\Windows\system32\Tasks\McAfee 2022-03-15 14:31 - 2022-03-15 14:31 - 011106632 _____ (McAfee, LLC) C:\Users\DVM\Desktop\MCPR.exe 2022-03-16 14:20 - 2020-09-10 15:37 - 000000000 ____D C:\Users\DVM\AppData\Local\Google 2022-03-10 05:29 - 2020-09-10 14:05 - 000003618 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-03-10 05:29 - 2020-09-10 14:05 - 000003494 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore Hosts: Emptytemp: Reboot: ***************** Processos fechados com sucesso. Google Chrome (HKLM\...\{20FE816A-FD5E-3CC2-8EE5-A503ED028EE4}) (Version: 99.0.4844.51 - Google LLC) => Erro: Nenhuma correção automática foi encontrada para esta entrada. Google Chrome (HKU\S-1-5-21-3349755285-804529065-3594935135-1001\...\Google Chrome) (Version: 99.0.4844.74 - Google LLC) => Erro: Nenhuma correção automática foi encontrada para esta entrada. HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{75399D28-E622-4973-8752-BC0F7DC47AF3} => removido (a) com sucesso. HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4} => removido (a) com sucesso. HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD} => removido (a) com sucesso. HKU\S-1-5-21-3349755285-804529065-3594935135-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F} => removido (a) com sucesso. C:\Users\DVM\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\743e5cfd0640ee89\Google Chrome.lnk => Atalho argumento removido (a) com sucesso. C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin\chrome.exe => movido com sucesso C:\Users\DVM\AppData\Local\Google\Chrome => movido com sucesso C:\Users\DVM\AppData\Local\Google => movido com sucesso "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{08D1E651-C045-4B7B-A289-298BC40060C5}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D71A3D13-56C4-4AFE-82F6-8B38DE5A7095}C:\frst\quarantine\c\program files (x86)\google\chrome\application\chrome.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{383CC9E0-9909-4C03-99B5-D008920B4A42}" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{098F16A9-4721-4B40-A00A-40131646D409}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe" => removido (a) com sucesso. "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{833CFF57-D03B-48B2-BDCE-9DA569DDE1B0}C:\users\dvm\appdata\local\temp\rar$exa3376.26262\chrome-bin\chrome.exe" => removido (a) com sucesso. C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262\Chrome-bin => movido com sucesso C:\Users\DVM\AppData\Local\Temp\Rar$EXa3376.26262 => movido com sucesso C:\Windows\system32\Tasks\McAfee => movido com sucesso "HKU\S-1-5-21-3349755285-804529065-3594935135-1001\Software\Microsoft\Windows\CurrentVersion\Run\\MicrosoftEdgeAutoLaunch_5460CE3DAE9ADC376A8F34F0B63AF70F" => removido (a) com sucesso. "HKU\S-1-5-21-3349755285-804529065-3594935135-1001\Software\Microsoft\Windows\CurrentVersion\Run\\ut" => removido (a) com sucesso. "HKU\S-1-5-21-3349755285-804529065-3594935135-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update" => removido (a) com sucesso. HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{10A5F58D-3412-4879-A7BE-DDCB8DA9A09E}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{10A5F58D-3412-4879-A7BE-DDCB8DA9A09E}" => removido (a) com sucesso. C:\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1438BA42-EC6C-4DD1-B226-2350F563AB73}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1438BA42-EC6C-4DD1-B226-2350F563AB73}" => removido (a) com sucesso. C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{39408801-8733-4D67-8B2C-5471CF815EC5}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39408801-8733-4D67-8B2C-5471CF815EC5}" => removido (a) com sucesso. C:\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Cleanup" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5C779D1E-C91D-4F50-A849-CC7F58BAA135}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C779D1E-C91D-4F50-A849-CC7F58BAA135}" => removido (a) com sucesso. C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF} => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6DDAE02F-4141-455C-8EA5-C620DC1126EF}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6DDAE02F-4141-455C-8EA5-C620DC1126EF}" => removido (a) com sucesso. C:\Windows\System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Verification" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8615B089-EB76-4B2F-A278-3A46E3A86698}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8615B089-EB76-4B2F-A278-3A46E3A86698}" => removido (a) com sucesso. C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD18F9DE-823C-4465-A0F8-7F46BD050444}" => removido (a) com sucesso. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD18F9DE-823C-4465-A0F8-7F46BD050444}" => removido (a) com sucesso. C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038} => movido com sucesso "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038}" => removido (a) com sucesso. Edge DefaultProfile: Default => Erro: Nenhuma correção automática foi encontrada para esta entrada. C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default => movido com sucesso "Edge Notifications:" => não encontrado (a) Edge Extension: (Cuponomia - Cupom e Cashback) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bpgniflghkfilpfdacibcpggobmldnlf [2022-03-17] => Erro: Nenhuma correção automática foi encontrada para esta entrada. Edge Extension: (Méliuz: Cashback e cupons em suas compras) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jdcfmebflppkljibgpdlboifpcaalolg [2022-02-24] => Erro: Nenhuma correção automática foi encontrada para esta entrada. Edge Extension: (uBlock Origin) - C:\Users\DVM\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-03-03] => Erro: Nenhuma correção automática foi encontrada para esta entrada. HKLM\System\CurrentControlSet\Services\GoogleChromeElevationService => removido (a) com sucesso. GoogleChromeElevationService => o serviço removido (a) com sucesso. HKLM\System\CurrentControlSet\Services\gupdate => removido (a) com sucesso. gupdate => o serviço removido (a) com sucesso. HKLM\System\CurrentControlSet\Services\gupdatem => removido (a) com sucesso. gupdatem => o serviço removido (a) com sucesso. C:\Program Files (x86)\Google => movido com sucesso "C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001UA{99A67289-CDAE-4B0B-965E-4FCE96259038}" => não encontrado (a) "C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3349755285-804529065-3594935135-1001Core{E3A78061-0DF5-4683-9BA6-E1B86B479BAF}" => não encontrado (a) C:\Users\DVM\Desktop\chrome - Atalho.lnk => movido com sucesso "C:\Windows\system32\Tasks\McAfee" => não encontrado (a) C:\Users\DVM\Desktop\MCPR.exe => movido com sucesso "C:\Users\DVM\AppData\Local\Google" => não encontrado (a) C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => movido com sucesso C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => movido com sucesso C:\Windows\System32\Drivers\etc\hosts => movido com sucesso Hosts restaurado com sucesso. =========== EmptyTemp: ========== BITS transfer queue => 1310720 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27492130 B Java, Flash, Steam htmlcache => 0 B Windows/system/drivers => 2487463 B Edge => 0 B Firefox => 490052791 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B NetworkService => 137688 B DVM => 106497220 B RecycleBin => 38970818 B EmptyTemp: => 636.1 MB de dados temporários Removidos. ================================ O sistema precisou ser reiniciado. ==== Fim de Fixlog 11:01:14 ====