Resultado do análise da Farbar Recovery Scan Tool (FRST) (x64) Versão: 23.06.2024 Executado por ti (administrador) em SAUDENOTE003 (LENOVO 82MF) (27-06-2024 09:31:09) Executando a partir de C:\Users\ti\Downloads\FRST64.exe Perfis Carregados: ti Plataforma: Microsoft Windows 11 Home Single Language Versão 23H2 22631.3737 (X64) Idioma: Português (Brasil) Navegador padrão: Chrome Modo da Inicialização: Normal ==================== Processos (Whitelisted) ================= (Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20070.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20070.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe (C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantage-(DeviceSettingsSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantage-(GenericMessagingAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantage-(LenovoSystemUpdateAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantage-(SettingsWidgetAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantage-(VantageCoreAddin).exe (C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20070.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20070.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe (C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20070.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20070.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.13200.20.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\126.0.2592.68\msedgewebview2.exe <6> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <51> (explorer.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Scan\Bin\ScanToPCActivationApp.exe (explorer.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01de91f5c3258938\RtkAudUService64.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Scan\Bin\HPNetworkCommunicatorCom.exe (svchost.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.13200.20.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe ==================== Registro (Whitelisted) =================== (Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01de91f5c3258938\RtkAudUService64.exe [1910072 2023-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750672 2024-03-13] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-1065995187-3965101649-1541175335-1001\...\Run: [MicrosoftEdgeAutoLaunch_37014B042410239E2B6DA99538E25111] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883560 2024-06-20] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1065995187-3965101649-1541175335-1001\...\Run: [HP OfficeJet Pro 9020 series (NET)] => C:\Program Files\HP\HP Scan\Bin\ScanToPCActivationApp.exe [6758864 2023-03-22] (HP Inc. -> HP Inc.) HKU\S-1-5-21-1065995187-3965101649-1541175335-1002\...\Run: [MicrosoftEdgeAutoLaunch_5069E5E941632399CB261D8178319A96] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883560 2024-06-20] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\126.0.6478.127\Installer\chrmstp.exe [2024-06-27] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2024-06-26] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2024-06-27] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH) ==================== Tarefas Agendadas (Whitelisted) ================= (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) Task: {D60E181B-887F-4437-BDEF-A88870B97EA2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {D8802323-CA0F-45BC-B07E-5E4220BBD2E1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{E3A4A20C-4787-4F9B-BCD2-06102CC137DD} => C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe [4624160 2024-06-21] (Google LLC -> Google LLC) Task: {A2107CEB-6046-4411-BE46-E2BF9BF4F63A} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {FA56D3BE-948B-4026-8B3D-8DFADE644E55} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\Windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService Task: {AE7C0026-C89D-4072-9406-1F0B73978A1C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\95896eef-a4ea-401d-a665-e7154f703497 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {5AEB4FE6-10CA-4BE2-8A27-C2108E2F1315} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\aa78f2fb-f078-40ba-a110-470af9ebfc5d => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {DA1B059C-96B9-4353-A012-23A83962011B} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\abff3c5f-8db4-43d4-9226-4bd7c588002a => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {2B2871B4-2E57-4962-88AD-9BEBB356AC9A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b15769c4-c6a8-495d-bcfa-5247d01747a3 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {DC6F1352-ED9D-4862-904A-A9716A6359CD} - System32\Tasks\Lenovo\LenovoNowLauncher => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.exe [1631640 2024-04-03] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/task Task: {5B78333D-096A-4DC6-B725-0495E3D5CB75} - System32\Tasks\Lenovo\LenovoNowQuarterlyLaunch => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [1521560 2024-04-03] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/QuarterlyLaunch Task: {74C27E27-F148-4E9F-88E7-400C729AFF0C} - System32\Tasks\Lenovo\LenovoNowTask => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [1521560 2024-04-03] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\$(EventData) Task: {4DA436DA-1333-4445-ADBF-44D7D0A94E49} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\Windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210 Task: {BC367D46-9130-4E8A-A669-CCDB203E6AF4} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\Windows\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [188656 2024-04-07] (Lenovo -> Lenovo Group Ltd.) Task: {BC853498-4ED8-4D13-AD58-80E918760B32} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\Windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService Task: {2443E6F8-AC6F-4278-9E53-A353E359177B} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {4DBE59F9-65C8-4FF5-831C-05FCB32D254C} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {3A413B14-2F2F-4AB1-AE3E-BD983CB06506} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {0C1EA7D3-1152-43AF-9F1B-02EB32BAC61F} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {872981B1-1C96-4560-966E-981EFBFE388A} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {F53F1185-FBE1-4DE8-B0E2-2C1DEBB28F67} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {2A05F1AF-3BBD-4919-AB88-A5BB77309007} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\3.13.53.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (Nenhum Arquivo) Task: {7CAEDE7E-1D50-453E-B2AA-C5C3492ED6C0} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {15E7199E-87E5-4B4E-A1C9-1D5A43C4D36C} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_TVSUUpdateTask_Once => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {67EB2133-271D-4758-8FD2-DDB38FEE2661} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {240409A7-BAFD-4C12-B3A3-3285C8D84A98} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {F7323537-6519-4DE5-B3AC-3BAD76526F65} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {5B13CF8A-3053-444B-9F31-9BF38D2F0F86} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\ScheduleEventAction.exe [30056 2024-05-30] (Lenovo -> Lenovo) Task: {1921EFF4-ABC2-4893-A62C-8CA6850DEBF2} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\uninstall.exe [345552 2024-05-30] (Lenovo -> Lenovo) Task: {5694EBD2-29DF-45DF-817D-5C908045E73D} - System32\Tasks\McAfee\DAD.WPS.Execute.Updates => "C:\Program Files\McAfee\WPS\1.7.209.1\dad\mc-dad.exe" (Nenhum Arquivo) Task: {D2D0B52E-5F4A-4545-BD8C-2F73D966E876} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499424 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {48608AE3-2517-4FAD-A7C2-2FF354000989} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499424 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {0E45E480-29CB-48F4-975B-999160DB582A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309800 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {19B09930-1C2D-47F2-8BEA-242A9A1EB5C4} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309800 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {2A4AAEFB-CACA-4959-974C-E8C61DFD2385} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [169648 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {BDF2D702-49FD-4BC3-8AD6-9935CE8B1058} - System32\Tasks\Microsoft\Windows\Application Experience\PcaWallpaperAppDetect => C:\Windows\system32\rundll32.exe [73728 2024-06-26] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\PcaSvc.dll,PcaWallpaperAppDetect Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Nenhum Arquivo) Task: {2D67D12B-ABE1-4069-9804-29C0D9D0C107} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {68ADE931-231D-46E1-BD5C-EF44E2254005} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {36C6DEEE-BB14-499A-84FA-30876358FF5B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {21871666-906A-44C9-B590-E03F3414A669} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2E8A8DC7-C6C0-4B69-BEE5-A0D7D8A850C2} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34888 2024-06-24] (Mozilla Corporation -> Mozilla Foundation) (Se uma entrada for incluída na fixlist, o arquivo da tarefa (.job) será movido. O arquivo que está sendo executado pela tarefa não será movido.) ==================== Internet (Whitelisted) ==================== (Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.) Tcpip\Parameters: [DhcpNameServer] 189.45.192.3 Tcpip\..\Interfaces\{16b4f678-91af-4632-98f5-719ef64c6850}: [DhcpNameServer] 189.45.192.3 Tcpip\..\Interfaces\{6f736531-66f5-45f7-b46c-db98f1bd6184}: [DhcpNameServer] 9.17.9.100 Tcpip\..\Interfaces\{9719575b-0545-4336-b68e-130ac35d5cea}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9719575b-0545-4336-b68e-130ac35d5cea}\02D4143535142514E44455241402: [DhcpNameServer] 192.168.1.1 8.8.8.8 Tcpip\..\Interfaces\{9719575b-0545-4336-b68e-130ac35d5cea}\02D4143535142514E44455241402: [DhcpDomain] UNIFI Edge: ======= Edge Profile: C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default [2024-06-27] Edge HomePage: Default -> hxxps://massaranduba.atende.net/cidadao Edge Extension: (Web Signer) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbafmabaelnnkondpfpjmdklbmfnbmol [2024-06-26] Edge Extension: (Pushbullet) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd [2024-06-26] Edge Extension: (WA Web Plus by Elbruz Technologies) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ekcgkejcjdcmonfpmnljobemcbpnkamh [2024-06-26] Edge Extension: (McAfee® WebAdvisor) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2024-06-26] Edge Extension: (Documentos Google off-line) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-06-26] Edge Extension: (Adblock Plus - bloqueador de anúncios grátis) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2024-06-26] Edge Extension: (Edge relevant text changes) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-06-26] Edge Extension: (Video DownloadHelper) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2024-06-26] Edge Extension: (Jitsi Meetings) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kglhbbefdnlheedjiejgomgmfplipfeb [2024-06-26] Edge Extension: (Web PKI) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nedeegdmhlnmboboahchfpkmdnnemapd [2024-06-26] Edge Extension: (VLibras) - C:\Users\ti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pgmmmoocgnompmjoogpnkmdohpelkpne [2024-06-26] FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.411.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2024-03-13] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.411.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2024-03-13] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-06-26] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-06-26] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems, Incorporated -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\ti\AppData\Local\Google\Chrome\User Data\Default [2024-06-27] CHR Extension: (Documentos Google off-line) - C:\Users\ti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-06-27] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\ti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-06-27] ==================== Serviços (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83984 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) S4 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [4033096 2023-02-15] (philandro Software GmbH -> AnyDesk Software GmbH) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14012384 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) S4 DolbyDAXAPI; C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_d388d21ef0de789d\DAX3API.exe [2364072 2023-09-19] (Dolby Laboratories, Inc. -> Dolby Laboratories) S4 ElevocService; C:\Windows\system32\ElevocInstallDriver\ElevocControlService.exe [416536 2023-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Elevoc Technology Co.,Ltd.) S4 ImControllerService; C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) S4 LenovoFnAndFunctionKeys; C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1446a24b89ad2808\LenovoUtilityService.exe [178536 2024-05-24] (Lenovo -> Lenovo) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.1.12.0\LenovoVantageService.exe [34256 2024-05-30] (Lenovo -> Lenovo) S4 LITSSVC; C:\Windows\System32\LNBITSSvc.exe [1831672 2022-08-16] (Lenovo -> Lenovo(beijing) Limited) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe [1505416 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) S4 UDCService; C:\Windows\system32\DRIVERS\Lenovo\udc\Service\UDClientService.exe [72432 2024-04-07] (Lenovo -> Lenovo Group Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe [3236728 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe [133704 2024-06-27] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) S3 AIDA64Driver; C:\Users\ti\Downloads\aida64extreme730\kerneld.x64 [68376 2024-05-27] (FinalWire Kft. -> ) R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [35344 2022-09-08] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0390835.inf_amd64_66888840aa4163cc\B390488\amdkmdag.sys [94634376 2023-04-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 rtu53cx22x64; C:\Windows\System32\DriverStore\FileRepository\rtu53cx22x64.inf_amd64_191dda4f2e7775ce\rtu53cx22x64.sys [1082344 2024-03-14] (Realtek Semiconductor Corp. -> Realtek Corporation) S3 rtux64w10; C:\Windows\System32\DriverStore\FileRepository\rtux64w10.inf_amd64_03831aeaaa2c730e\rtux64w10.sys [683520 2022-05-07] (Microsoft Windows -> Realtek Corporation) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22080 2024-06-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [602520 2024-06-27] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105880 2024-06-27] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.) ==================== Um mês (criados) (Whitelisted) ========= (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2024-06-27 09:31 - 2024-06-27 09:31 - 000025852 _____ C:\Users\ti\Downloads\FRST.txt 2024-06-27 09:30 - 2024-06-27 09:31 - 000000000 ____D C:\FRST 2024-06-27 09:30 - 2024-06-27 09:30 - 002395648 _____ (Farbar) C:\Users\ti\Downloads\FRST64.exe 2024-06-27 09:27 - 2024-06-27 09:27 - 000731272 _____ C:\Windows\system32\prfh0416.dat 2024-06-27 09:27 - 2024-06-27 09:27 - 000146442 _____ C:\Windows\system32\prfc0416.dat 2024-06-27 09:20 - 2024-06-27 09:20 - 000000000 ____D C:\ProgramData\Propagation 2024-06-27 09:19 - 2024-06-27 09:19 - 000000000 ____D C:\ProgramData\AMD 2024-06-27 09:15 - 2024-06-27 09:16 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\MMC 2024-06-27 08:58 - 2024-06-27 08:58 - 000000000 ____D C:\Users\ti\AppData\Roaming\Sun 2024-06-27 08:58 - 2024-06-27 08:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2024-06-27 08:58 - 2024-06-27 08:58 - 000000000 ____D C:\Program Files\Java 2024-06-27 08:58 - 2024-06-27 08:58 - 000000000 ____D C:\Program Files\Common Files\Oracle 2024-06-27 08:58 - 2024-03-13 07:48 - 000200320 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2024-06-27 08:13 - 2024-06-27 08:13 - 000000000 ____D C:\Windows\Firmware 2024-06-27 08:13 - 2023-07-07 15:13 - 005381512 _____ (HP Inc.) C:\Windows\SysWOW64\HPScanTEDrv.dll 2024-06-27 08:13 - 2023-07-07 15:13 - 001350528 _____ (HP Inc.) C:\Windows\system32\HPScanTEDrv_x64_DiscoveryLibDyn.dll 2024-06-27 08:13 - 2023-07-07 15:13 - 000992128 _____ (HP Inc.) C:\Windows\SysWOW64\DiscoveryLibDyn.dll 2024-06-27 08:13 - 2023-07-07 15:13 - 000168880 _____ (TODO: ) C:\Windows\system32\HPWIAExtensionUI.dll 2024-06-27 08:12 - 2024-06-27 08:31 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2024-06-27 08:12 - 2024-06-27 08:12 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2024-06-27 08:12 - 2024-06-27 08:12 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\LocalLow\Adobe 2024-06-27 08:12 - 2024-06-27 08:12 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\Adobe 2024-06-27 08:12 - 2024-06-27 08:12 - 000000000 ____D C:\Program Files (x86)\Adobe 2024-06-27 08:11 - 2024-06-27 08:30 - 000000000 ____D C:\ProgramData\Adobe 2024-06-27 08:11 - 2024-06-27 08:11 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\Sun 2024-06-27 08:11 - 2024-06-27 08:11 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\LocalLow\Sun 2024-06-27 08:11 - 2022-12-02 13:49 - 164346352 _____ (Adobe Systems Incorporated) C:\Users\SAUDENOTE003\Downloads\AcroRdrDC1900820071_pt_BR.exe 2024-06-27 08:09 - 2022-12-02 13:51 - 000128637 _____ (Olostech) C:\Users\SAUDENOTE003\Downloads\SaudeTech.exe 2024-06-27 08:07 - 2024-06-27 08:07 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\OneDrive 2024-06-27 08:06 - 2024-06-27 08:57 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\D3DSCache 2024-06-27 08:06 - 2024-06-27 08:24 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\Packages 2024-06-27 08:06 - 2024-06-27 08:21 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\Lenovo 2024-06-27 08:06 - 2024-06-27 08:12 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\Adobe 2024-06-27 08:06 - 2024-06-27 08:11 - 000000000 ___SD C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Credentials 2024-06-27 08:06 - 2024-06-27 08:08 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\AMD 2024-06-27 08:06 - 2024-06-27 08:07 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Spelling 2024-06-27 08:06 - 2024-06-27 08:06 - 000000020 ___SH C:\Users\SAUDENOTE003\ntuser.ini 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Modelos 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Meus Documentos 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Menu Iniciar 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Dados de Aplicativos 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Configurações Locais 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\AppData\Local\Histórico 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\AppData\Local\Dados de Aplicativos 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Ambiente de Rede 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 _SHDL C:\Users\SAUDENOTE003\Ambiente de Impressão 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ___SD C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\SystemCertificates 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ___SD C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Protect 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ___SD C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Crypto 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ___RD C:\Users\SAUDENOTE003\OneDrive 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Windows 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Vault 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\Microsoft\Network 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Roaming\AnyDesk 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\LocalLow\AMD 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\VirtualStore 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\Publishers 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\PlaceholderTileLogoFolder 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\Google 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\ConnectedDevicesPlatform 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003\AppData\Local\Comms 2024-06-27 08:06 - 2024-06-27 08:06 - 000000000 ____D C:\Users\SAUDENOTE003 2024-06-27 07:57 - 2024-06-27 07:57 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\UProof 2024-06-27 07:57 - 2024-06-27 07:57 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Proof 2024-06-27 07:57 - 2024-06-27 07:57 - 000000000 ____D C:\ProgramData\Package Cache 2024-06-27 07:56 - 2024-06-27 07:57 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Office 2024-06-27 07:56 - 2024-06-27 07:56 - 000000000 ____D C:\Windows\twain_64 2024-06-27 07:56 - 2024-06-27 07:56 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Word 2024-06-27 07:56 - 2024-06-27 07:56 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\AddIns 2024-06-27 07:56 - 2024-06-27 07:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2024-06-27 07:56 - 2024-06-27 07:56 - 000000000 ____D C:\Program Files\HP 2024-06-27 07:56 - 2024-06-27 07:56 - 000000000 ____D C:\Program Files (x86)\HP 2024-06-27 07:53 - 2024-06-27 07:57 - 000000000 ____D C:\ProgramData\HP 2024-06-27 07:53 - 2024-06-27 07:53 - 000000000 ____D C:\Users\ti\AppData\Local\HP 2024-06-27 07:53 - 2024-06-27 07:53 - 000000000 ____D C:\ProgramData\Oracle 2024-06-27 07:49 - 2024-06-27 07:49 - 000001066 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2024-06-27 07:49 - 2024-06-27 07:49 - 000000000 ____D C:\Users\ti\AppData\Local\Google 2024-06-27 07:49 - 2024-06-27 07:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2024-06-27 07:49 - 2024-06-27 07:49 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2024-06-27 07:48 - 2024-06-27 07:48 - 000002256 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Windows\system32\Tasks\GoogleSystem 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Users\ti\Downloads\aida64extreme730 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Users\ti\AppData\Roaming\WinRAR 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Users\ti\AppData\LocalLow\Sun 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Program Files\WinRAR 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Program Files\VideoLAN 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Program Files\Google 2024-06-27 07:48 - 2024-06-27 07:48 - 000000000 ____D C:\Program Files (x86)\Google 2024-06-27 07:47 - 2024-06-27 08:18 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-06-27 07:47 - 2024-06-27 08:14 - 000000000 ____D C:\Program Files (x86)\AnyDesk 2024-06-27 07:47 - 2024-06-27 07:56 - 000000000 ____D C:\Users\ti\Downloads\Full_Webpack-51.8.5837-SJ0001_Full_Webpack 2024-06-27 07:47 - 2024-06-27 07:47 - 000002061 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navegação privativa do Firefox.lnk 2024-06-27 07:47 - 2024-06-27 07:47 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\Users\ti\AppData\Roaming\Mozilla 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\Users\ti\AppData\Roaming\AnyDesk 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\Users\ti\AppData\Local\Mozilla 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\ProgramData\AnyDesk 2024-06-27 07:47 - 2024-06-27 07:47 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-06-27 07:47 - 2023-09-13 08:41 - 012042900 _____ (NAPS2 Software ) C:\Users\ti\Downloads\naps2-7.1.0-win.exe 2024-06-27 07:47 - 2022-12-02 13:51 - 000128637 _____ (Olostech) C:\Users\ti\Downloads\SaudeTech.exe 2024-06-27 07:46 - 2023-02-15 15:30 - 004033096 _____ (AnyDesk Software GmbH) C:\Users\ti\Downloads\AnyDesk.exe 2024-06-27 07:46 - 2023-02-15 15:30 - 000425304 _____ (Secure By Design Inc.) C:\Users\ti\Downloads\Ninite Chrome Firefox Thunderbird VLC WinRAR Installer.exe 2024-06-27 07:46 - 2022-12-02 13:51 - 087061248 _____ (Oracle Corporation) C:\Users\ti\Downloads\jre-8u333-windows-x64.exe 2024-06-27 07:45 - 2024-06-27 07:45 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Network 2024-06-27 07:45 - 2024-06-27 07:45 - 000000000 ____D C:\Users\ti\AppData\Local\OneDrive 2024-06-26 16:47 - 2024-06-26 16:47 - 000000000 ____D C:\Users\ti\AppData\Local\Comms 2024-06-26 16:44 - 2024-06-26 16:44 - 000024821 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-06-26 16:43 - 2024-06-26 16:43 - 000024821 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json 2024-06-26 16:37 - 2024-06-26 16:37 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_hidtelephony_02_15_00.Wdf 2024-06-26 16:37 - 2024-06-26 16:37 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2024-06-26 16:37 - 2024-06-26 16:37 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-06-26 16:33 - 2024-06-26 16:34 - 000000000 ____D C:\Windows\system32\MRT 2024-06-26 16:33 - 2024-06-26 16:33 - 000000000 ____D C:\Program Files\Common Files\DynamicAppDownloader 2024-06-26 16:31 - 2024-06-26 16:31 - 000001062 _____ C:\Users\ti\AppData\Local\elecgbk 2024-06-26 16:31 - 2024-06-26 16:31 - 000000000 ____D C:\Users\ti\AppData\Local\VirtualStore 2024-06-26 16:29 - 2024-06-26 16:29 - 000000000 ____D C:\Users\ti\AppData\Local\Publishers 2024-06-26 16:15 - 2024-06-27 07:51 - 000000000 ____D C:\Users\ti\OneDrive\Documentos\Scanned Documents 2024-06-26 16:15 - 2024-06-27 07:51 - 000000000 ____D C:\Users\ti\OneDrive\Desktop\Full_Webpack-51.8.5837-SJ0001_Full_Webpack 2024-06-26 16:15 - 2024-06-26 16:15 - 000000000 ____D C:\Users\ti\OneDrive\Documentos\Modelos Personalizados do Office 2024-06-26 16:15 - 2024-06-26 16:15 - 000000000 ____D C:\Users\ti\OneDrive\Documentos\Meus Documentos 2024-06-26 16:15 - 2024-06-26 16:15 - 000000000 ____D C:\Users\ti\OneDrive\Documentos\Fax 2024-06-26 16:15 - 2024-06-26 16:15 - 000000000 ____D C:\Users\ti\OneDrive\Desktop\saude 2024-06-26 16:14 - 2024-06-27 07:51 - 000000000 ___RD C:\Users\ti\OneDrive 2024-06-26 16:14 - 2024-06-26 16:18 - 000000000 ____D C:\Users\ti\AppData\Local\Lenovo 2024-06-26 16:14 - 2024-06-26 16:14 - 000000000 ____D C:\Users\ti\AppData\Local\PlaceholderTileLogoFolder 2024-06-26 16:13 - 2024-06-27 09:29 - 000000000 ____D C:\Users\ti\AppData\Local\D3DSCache 2024-06-26 16:13 - 2024-06-27 09:29 - 000000000 ____D C:\Users\ti\AppData\Local\AMD 2024-06-26 16:13 - 2024-06-27 07:53 - 000000000 ____D C:\Users\ti\AppData\Local\Packages 2024-06-26 16:13 - 2024-06-26 17:06 - 000000000 ____D C:\Users\ti\AppData\Local\ConnectedDevicesPlatform 2024-06-26 16:13 - 2024-06-26 16:13 - 000002363 _____ C:\Users\ti\OneDrive\Desktop\Microsoft Edge - Copia.lnk 2024-06-26 16:13 - 2024-06-26 16:13 - 000000000 ___SD C:\Users\ti\AppData\Roaming\Microsoft\Crypto 2024-06-26 16:13 - 2024-06-26 16:13 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Vault 2024-06-26 16:13 - 2024-06-26 16:13 - 000000000 ____D C:\Users\ti\AppData\Roaming\Adobe 2024-06-26 16:13 - 2024-06-26 16:13 - 000000000 ____D C:\Users\ti\AppData\LocalLow\AMD 2024-06-26 16:09 - 2024-06-26 17:04 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView 2024-06-26 16:09 - 2024-06-26 17:04 - 000000000 ____D C:\Windows\InboxApps 2024-06-26 16:09 - 2024-06-26 16:09 - 000000000 ____D C:\Windows\SysWOW64\DDFs 2024-06-26 16:05 - 2024-06-26 16:05 - 000060462 _____ C:\Windows\SysWOW64\ctac.json 2024-06-26 16:04 - 2024-06-26 16:04 - 000060462 _____ C:\Windows\system32\ctac.json 2024-06-26 15:43 - 2024-06-26 15:43 - 000000000 ___SD C:\Users\ti\AppData\Roaming\Microsoft\SystemCertificates 2024-06-26 15:34 - 2024-06-27 07:50 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Windows 2024-06-26 15:34 - 2024-06-27 07:50 - 000000000 ____D C:\Users\ti\AppData\Roaming\Microsoft\Spelling 2024-06-26 15:34 - 2024-06-27 07:46 - 000000000 ___SD C:\Users\ti\AppData\Roaming\Microsoft\Credentials 2024-06-26 15:34 - 2024-06-26 16:15 - 000000000 ____D C:\Users\ti 2024-06-26 15:34 - 2024-06-26 15:34 - 000000020 ___SH C:\Users\ti\ntuser.ini 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Modelos 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Meus Documentos 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Menu Iniciar 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Dados de Aplicativos 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Configurações Locais 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\AppData\Local\Histórico 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\AppData\Local\Dados de Aplicativos 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Ambiente de Rede 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 _SHDL C:\Users\ti\Ambiente de Impressão 2024-06-26 15:34 - 2024-06-26 15:34 - 000000000 ___SD C:\Users\ti\AppData\Roaming\Microsoft\Protect 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Usuário Padrão 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Todos os Usuários 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Modelos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Meus Documentos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Menu Iniciar 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Dados de Aplicativos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Configurações Locais 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\AppData\Local\Histórico 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dados de Aplicativos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Ambiente de Rede 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Users\Default\Ambiente de Impressão 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\ProgramData\Modelos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programas 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\ProgramData\Menu Iniciar 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\ProgramData\Documentos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\ProgramData\Dados de Aplicativos 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Program Files\Common Files\Sistema 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Program Files\Arquivos Comuns 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Documents and Settings 2024-06-26 15:20 - 2024-06-26 15:20 - 000000000 _SHDL C:\Arquivos de Programas ==================== Um mês (modificados) ================== (Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.) 2024-06-27 09:32 - 2024-05-18 08:14 - 000000000 ____D C:\Windows\system32\Tasks\Lenovo 2024-06-27 09:27 - 2024-05-18 08:21 - 001682102 _____ C:\Windows\system32\PerfStringBackup.INI 2024-06-27 09:27 - 2022-05-07 02:22 - 000000000 ____D C:\Windows\INF 2024-06-27 09:24 - 2022-05-07 02:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-06-27 09:23 - 2022-05-25 16:05 - 000012288 ___SH C:\DumpStack.log.tmp 2024-06-27 09:23 - 2022-05-25 16:05 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2024-06-27 09:23 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\ServiceState 2024-06-27 09:22 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\AppReadiness 2024-06-27 09:22 - 2022-05-07 02:17 - 001048576 _____ C:\Windows\system32\config\BBI 2024-06-27 09:18 - 2024-05-18 08:23 - 000000000 ____D C:\Program Files\McAfee 2024-06-27 09:18 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SystemTemp 2024-06-27 09:17 - 2022-05-25 16:05 - 000000000 ____D C:\Windows\system32\SleepStudy 2024-06-27 08:19 - 2022-05-07 02:24 - 000000000 ___RD C:\Windows\PrintDialog 2024-06-27 08:18 - 2022-05-25 16:05 - 000504360 _____ C:\Windows\system32\FNTCACHE.DAT 2024-06-27 08:14 - 2022-05-07 02:17 - 000000000 ____D C:\Windows\CbsTemp 2024-06-27 08:06 - 2022-05-25 16:09 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-06-27 08:06 - 2022-05-07 02:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2024-06-27 08:00 - 2022-05-25 16:05 - 000000000 ____D C:\Windows\system32\Drivers\wd 2024-06-27 08:00 - 2022-05-07 02:24 - 000000000 ____D C:\Program Files\Windows Defender 2024-06-27 07:53 - 2022-05-25 16:06 - 000000000 ____D C:\ProgramData\Packages 2024-06-27 07:53 - 2022-05-07 02:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-06-27 07:51 - 2024-05-18 08:23 - 000000000 ____D C:\Windows\system32\Tasks\McAfee 2024-06-27 07:51 - 2022-05-07 02:24 - 000000000 ___HD C:\Windows\ELAMBKUP 2024-06-27 07:44 - 2022-05-07 02:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\SysWOW64\F12 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\system32\UNP 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\system32\F12 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\UUS 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\setup 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\Dism 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SystemResources 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SystemApps 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\WinMetadata 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\ShellExperiences 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\Sgrm 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\setup 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\oobe 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\migwiz 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\HealthAttestationClient 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\Dism 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\appraiser 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\ShellExperiences 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\ShellComponents 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\BrowserCore 2024-06-26 17:04 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\bcastdvr 2024-06-26 17:04 - 2022-05-07 02:17 - 000000000 ____D C:\Windows\servicing 2024-06-26 16:47 - 2022-05-07 03:10 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll 2024-06-26 16:47 - 2022-05-07 03:10 - 000024383 _____ C:\Windows\system32\OEMDefaultAssociations.xml 2024-06-26 16:47 - 2022-05-07 02:25 - 000077312 _____ (Khronos Group) C:\Windows\SysWOW64\opencl.dll 2024-06-26 16:47 - 2022-05-07 02:24 - 000118784 _____ (Khronos Group) C:\Windows\system32\opencl.dll 2024-06-26 16:44 - 2022-05-25 16:08 - 003216384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2024-06-26 16:38 - 2022-05-07 02:24 - 000000000 ___HD C:\Windows\system32\GroupPolicy 2024-06-26 16:37 - 2024-05-18 08:24 - 000000000 ____D C:\Windows\system32\ElevocInstallDriver 2024-06-26 16:37 - 2024-05-18 08:20 - 000000000 ____D C:\Windows\system32\ElevocConfig 2024-06-26 16:37 - 2024-05-18 08:14 - 000000000 ____D C:\Program Files\Microsoft Office 2024-06-26 16:37 - 2022-05-07 02:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-06-26 16:34 - 2022-05-07 02:17 - 000032768 _____ C:\Windows\system32\config\ELAM 2024-06-26 16:32 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\SecurityHealth 2024-06-26 16:19 - 2024-05-18 08:14 - 000000000 ____D C:\ProgramData\Lenovo 2024-06-26 16:18 - 2024-05-18 08:24 - 000001352 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Now.lnk 2024-06-26 16:18 - 2024-05-18 08:21 - 000000000 ____D C:\Program Files (x86)\Lenovo 2024-06-26 16:12 - 2022-05-25 16:06 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-06-26 16:12 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\AppLocker 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\vi-VN 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\oobe 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\lv-LV 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\lt-LT 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\id-ID 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\gl-ES 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\eu-ES 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\et-EE 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\es-MX 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\ca-ES 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\vi-VN 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\lv-LV 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\lt-LT 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\id-ID 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\gl-ES 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\eu-ES 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\et-EE 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\es-MX 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\DDFs 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\ca-ES 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\Provisioning 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\PolicyDefinitions 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\DiagTrack 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\appcompat 2024-06-26 16:09 - 2022-05-07 02:24 - 000000000 ____D C:\Program Files\Common Files\System 2024-06-26 16:08 - 2022-05-07 02:25 - 000209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2024-06-26 16:08 - 2022-05-07 02:24 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2024-06-26 15:27 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2024-06-26 15:25 - 2022-05-25 16:06 - 000003674 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-06-26 15:25 - 2022-05-25 16:06 - 000003550 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-06-26 15:20 - 2022-05-07 02:24 - 000000000 ____D C:\Program Files\Windows NT ==================== Arquivos na raiz de alguns diretórios ======== 2024-06-26 16:31 - 2024-06-26 16:31 - 000001062 _____ () C:\Users\ti\AppData\Local\elecgbk ==================== SigCheck ============================ (Não há correção automática para arquivos que não passaram na verificação.) ==================== Fim de FRST.txt ========================