Resultado da análise adicional Farbar Recovery Scan Tool (x64) Versão: 21-07-2022
Executado por Ramon Fiaux (21-07-2022 17:43:32)
Executando a partir de C:\Users\Ramon Fiaux\Downloads
Microsoft Windows 11 Home Single Language Versão 21H2 22000.795 (X64) (2022-07-12 00:10:41)
Modo da Inicialização: Normal
==========================================================


==================== Contas: =============================


(Se uma entrada for incluída na fixlist, será removida.)

Administrador (S-1-5-21-4192884717-58469100-4038748977-500 - Administrator - Disabled)
Convidado (S-1-5-21-4192884717-58469100-4038748977-501 - Limited - Disabled)
DefaultAccount (S-1-5-21-4192884717-58469100-4038748977-503 - Limited - Disabled)
Ramon Fiaux (S-1-5-21-4192884717-58469100-4038748977-1001 - Administrator - Enabled) => C:\Users\Ramon Fiaux
WDAGUtilityAccount (S-1-5-21-4192884717-58469100-4038748977-504 - Limited - Disabled)

==================== Central de Segurança ========================

(Se uma entrada for incluída na fixlist, será removida.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Enabled - Up to date) {FE987762-0FB6-6BB6-1BF1-73F8ED8566FA}
FW: McAfee Firewall (Enabled) {C6A3F647-45D9-6AEE-30AE-DACD13562181}

==================== Programas Instalados ======================

(Somente os programas adwares com a indicação "Oculto" podem ser adicionados à fixlist para desocultá-los. Os programas adwares devem ser desinstalados manualmente.)

µTorrent (HKU\S-1-5-21-4192884717-58469100-4038748977-1001\...\uTorrent) (Version: 3.5.5.46348 - BitTorrent Inc.)
Aplicativo Itaú (HKLM-x32\...\{7B7ABA9F-DF97-4171-BA2E-4EB98E0EE8F2}) (Version: 1.0.176 - Banco Itaú)
CCleaner (HKLM\...\CCleaner) (Version: 6.01 - Piriform)
Dell Digital Delivery Services (HKLM-x32\...\{560DFD4A-23E2-45DD-A223-A4B3FA356913}) (Version: 4.0.92.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{9EF0AEB0-9AD2-40E6-8667-D7520C508941}) (Version: 3.10.3.3 - Dell Inc.)
Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM\...\{08E7C8D5-F2B5-4F09-B0EA-F28913BEFDB0}) (Version: 5.5.1.16143 - Dell Inc.) Hidden
Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM-x32\...\{2a8bafd6-22ae-4d0e-87a4-686b2a4a2ab0}) (Version: 5.5.1.16143 - Dell Inc.)
Dell SupportAssist Remediation (HKLM\...\{D3A89F68-2E4E-4B42-ACD4-9E404F93EC88}) (Version: 5.5.1.16143 - Dell Inc.) Hidden
Dell SupportAssist Remediation (HKLM-x32\...\{17268bdc-8263-4bc2-a5e2-7de6ce0122bd}) (Version: 5.5.1.16143 - Dell Inc.)
Dell Update for Windows 10 (HKLM\...\{41D2D254-D869-4CD8-B440-5DF49083C4BA}) (Version: 4.3.0 - Dell Inc.)
Fing 3.0.0 (HKLM\...\Fing Desktop) (Version: 3.0.0 - Fing Ltd)
Fusion Service (HKLM\...\{091B2FD3-A3C7-4E3F-8633-02AE6F8306BB}) (Version: 2.0.58.0 - Dell.Inc) Hidden
Fusion Service (HKLM-x32\...\{4baf873a-44e8-403a-80ee-255fbed9777d}) (Version: 2.0.58.0 - Dell.Inc)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 103.0.5060.114 - Google LLC)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 60.0.2.0 - Google LLC)
Google Earth Pro (HKLM\...\{DE181B35-ACEF-4DB0-86D9-731D5767ABB1}) (Version: 7.3.4.8642 - Google)
K-Lite Mega Codec Pack 17.1.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 17.1.0 - KLCP)
McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 16.0 R47 - McAfee, LLC)
Messenger (HKU\S-1-5-21-4192884717-58469100-4038748977-1001\...\c1b3adcf-2068-5e8d-b25d-30ce588e3a4c) (Version: 156.0.383285588 - Facebook, Inc.)
Microsoft .NET 6.0 Templates 6.0.301 (x64) (HKLM\...\{F2DADB12-6DEF-4CE5-B152-35B9567F40A2}) (Version: 24.5.32792 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.6 (x64) (HKLM\...\{723332DF-FBC6-4912-A93C-6F9815798E29}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.6 (x64_arm) (HKLM\...\{1A8223D5-6B69-4AB2-8082-59F7A48BAA3D}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.6 (x64_arm64) (HKLM\...\{7CFC58A6-2C50-4DB7-9A9D-7E33E1D8CFE0}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 6.0.6 (x64_x86) (HKLM\...\{E49DA4E3-198A-47F7-BC15-CFC05F40879D}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET Host - 5.0.17 (x64) (HKLM\...\{E663ED1E-899C-40E8-91D0-8D37B95E3C69}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.6 (x64) (HKLM\...\{F48FB46C-3334-47AA-98ED-D5A47DED33F1}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 5.0.17 (x64) (HKLM\...\{8BA25391-0BE6-443A-8EBF-86A29BAFC479}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.6 (x64) (HKLM\...\{089493D9-430B-4210-8A47-8F611288F461}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 5.0.17 (x64) (HKLM\...\{5A66E598-37BD-4C8A-A7CB-A71C32ABCD78}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 5.0.17 (x64) (HKLM-x32\...\{a699b48e-5748-4980-ad92-0b61b1d9d718}) (Version: 5.0.17.31213 - Microsoft Corporation)
Microsoft .NET Runtime - 6.0.6 (x64) (HKLM\...\{00478901-CD97-4A20-8FF3-3276865A2B44}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET SDK 6.0.301 (x64) (HKLM-x32\...\{466ee7aa-cb20-4072-baea-f88947334d78}) (Version: 6.3.122.27704 - Microsoft Corporation)
Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) (HKLM\...\{A7036CFB-B403-4598-85FF-D397ABB88173}) (Version: 24.0.28113 - Microsoft Corporation) Hidden
Microsoft .NET Targeting Pack - 6.0.6 (x64) (HKLM\...\{AFF8B960-E63B-4609-AE1D-206B6BE45F70}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET Toolset 6.0.301 (x64) (HKLM\...\{550A4B5A-1101-412B-963C-450F457B461D}) (Version: 24.5.16408 - Microsoft Corporation) Hidden
Microsoft 365 - pt-br (HKLM\...\O365HomePremRetail - pt-br) (Version: 16.0.15330.20264 - Microsoft Corporation)
Microsoft ASP.NET Core 6.0.6 Shared Framework (x64) (HKLM\...\{83501F7C-3E4B-3AF3-9AA6-0A9F5EB13A1F}) (Version: 6.0.6.22268 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 6.0.6 Targeting Pack (x64) (HKLM\...\{21DC5DB1-ECFD-340F-B778-1C7D910F83E4}) (Version: 6.0.6.22268 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.62 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 103.0.1264.62 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4192884717-58469100-4038748977-1001\...\OneDriveSetup.exe) (Version: 22.131.0619.0001 - Microsoft Corporation)
Microsoft OneNote - pt-br (HKLM\...\OneNoteFreeRetail - pt-br) (Version: 16.0.15330.20264 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{6A2A8076-135F-4F55-BB02-DED67C8C6934}) (Version: 4.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 x86 Additional Runtime - 14.13.26020 (HKLM-x32\...\{895D5198-C5DB-375E-86AB-133F4DAA9FE2}) (Version: 14.13.26020 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.13.26020 (HKLM-x32\...\{8F271F6C-6E7B-3D0A-951B-6E7B694D78BD}) (Version: 14.13.26020 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508 (HKLM\...\{7D0B74C2-C3F8-4AF1-940F-CD79AB4B2DCE}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508 (HKLM\...\{EEA66967-97E2-4561-A999-5C22E3CDE428}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.6 (x64) (HKLM\...\{B9E46F95-AC34-4943-AFE2-B72EFD56C6C0}) (Version: 48.27.42342 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Targeting Pack - 6.0.6 (x64) (HKLM\...\{259FACFD-87E7-40DB-BED3-EE725E623CAF}) (Version: 48.27.42342 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Android.Manifest-6.0.300 (HKLM\...\{052CDF8C-E534-462F-8D12-CCB3EA4FC3B3}) (Version: 128.75.4 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.iOS.Manifest-6.0.300 (HKLM\...\{D6421A31-9594-4FE3-86C6-3F9E0D3FCE3C}) (Version: 60.89.125 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.MacCatalyst.Manifest-6.0.300 (HKLM\...\{459CC7DE-B28A-445C-920D-794B37FF7D55}) (Version: 60.89.125 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.macOS.Manifest-6.0.300 (HKLM\...\{2AB77B83-C379-404E-9652-4AB1B4980227}) (Version: 48.57.125 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Maui.Manifest-6.0.300 (HKLM\...\{A560FBB0-69A7-4797-8B25-869C30F7EDBB}) (Version: 24.75.5355 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.tvOS.Manifest-6.0.300 (HKLM\...\{DAE08CB9-F109-4101-8C24-C648E1E7AD45}) (Version: 60.89.125 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.Manifest (HKLM\...\{7CBF3451-2A94-4DFD-8355-6B97C5EABB26}) (Version: 48.27.39026 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.Manifest (HKLM\...\{A626E240-C89F-45CD-BFD7-B263C3D33CAD}) (Version: 48.3.39076 - Microsoft Corporation) Hidden
Npcap OEM (HKLM-x32\...\NpcapInst) (Version: 1.55 - Nmap Project)
NVIDIA Driver de gráficos 512.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 512.72 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.2.4999.30397803 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.2.4999.30397803 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.24.0.123 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.24.0.123 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15330.20230 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15330.20230 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0416-1000-0000000FF1CE}) (Version: 16.0.15128.20178 - Microsoft Corporation) Hidden
OptaneDowngradeGuard (HKLM\...\{86B0E6C1-32E0-42CC-BC4F-BF3C0730CECB}) (Version: 18.0.0.0 - Intel Corporation) Hidden
RstDowngradeGuard (HKLM\...\{13C2A26E-7AD4-4D82-BB4F-DEA6E871B958}) (Version: 18.0.0.0 - Intel Corporation) Hidden
SmartByte Drivers and Services (HKLM\...\{A0CDAD3D-0329-4E3E-8DC1-30E333D6564D}) (Version: 3.1.995 - Rivet Networks)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.9.82.0 - Safer-Networking Ltd.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.17.4 - VideoLAN)
WebAdvisor da McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.747 - McAfee, LLC)
WhatsApp (HKU\S-1-5-21-4192884717-58469100-4038748977-1001\...\WhatsApp) (Version: 2.2222.12 - WhatsApp)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-4192884717-58469100-4038748977-1001\...\ZoomUMX) (Version: 5.11.1 (6602) - Zoom Video Communications, Inc.)

Packages:
=========
Centro de comando de gráficos Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt [2022-07-12] (INTEL CORP) [Startup Task]
Complemento do Mecanismo de Mídia de Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-07-13] (Microsoft Corporation)
Dell CinemaColor -> C:\Program Files\WindowsApps\PortraitDisplays.DellCinemaColor_2.4.50.0_x64__2dgmkzkw4h30c [2022-07-12] (Portrait Displays)
Dell Customer Connect -> C:\Program Files\WindowsApps\DellInc.DellCustomerConnect_5.3.5.0_x64__htrsf667h5kn2 [2022-07-12] (Dell Inc)
Dell Digital Delivery -> C:\Program Files\WindowsApps\DellInc.DellDigitalDelivery_4.0.92.0_x64__htrsf667h5kn2 [2022-07-12] (Dell Inc)
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\dellinc.dellsupportassistforpcs_3.11.20.0_x64__htrsf667h5kn2 [2022-07-12] (Dell Inc)
Dell Update -> C:\Program Files\WindowsApps\DellInc.DellUpdate_4.3.12.0_x86__htrsf667h5kn2 [2022-07-12] (Dell Inc)
Extensão de Vídeo MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.50901.0_x64__8wekyb3d8bbwe [2022-07-12] (Microsoft Corporation)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.19.0_neutral__8xx8rvfyw5nnt [2022-07-17] (Instagram)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1026.0_x64__8j3eq9eme6ctt [2022-07-12] (INTEL CORP)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.7040.0_x64__8wekyb3d8bbwe [2022-07-12] (Microsoft Studios) [MS Ad]
My Dell -> C:\Program Files\WindowsApps\DellInc.MyDell_2.0.30.0_x64__htrsf667h5kn2 [2022-07-12] (Dell Inc)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\nvidiacorp.nvidiacontrolpanel_8.1.962.0_x64__56jybvy8sckqj [2022-07-12] (NVIDIA Corp.)
SmartByte -> C:\Program Files\WindowsApps\rivetnetworks.smartbyte_3.1.1001.0_x64__rh07ty8m5nkag [2022-07-12] (Rivet Networks LLC)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0 [2022-07-18] (Spotify AB) [Startup Task]
TikTok -> C:\Program Files\WindowsApps\BytedancePte.Ltd.TikTok_1.0.5.0_neutral__6yccndn6064se [2022-07-19] (Bytedance Pte. Ltd.)
Waves MaxxAudio Pro for Dell 2021 -> C:\Program Files\WindowsApps\WavesAudio.MaxxAudioProforDell2021_4.0.53.0_x64__fh4rh281wavaa [2022-07-12] (Waves Audio)

==================== Análise Personalizada CLSID (Whitelisted): ==============

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_ff8d0bd695f4bb2e\OptaneShellExt.dll [2022-02-07] (Intel Corporation -> )
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2022-06-14] (McAfee, LLC -> McAfee, LLC)
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers2: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_ff8d0bd695f4bb2e\OptaneShellExt.dll [2022-02-07] (Intel Corporation -> )
ContextMenuHandlers3: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers3: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\60.0.2.0\drivefsext.dll [2022-06-21] (Google LLC -> Google, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_04e152581789ff0f\nvshext.dll [2022-06-12] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2022-06-14] (McAfee, LLC -> McAfee, LLC)
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2021-12-21] (Safer-Networking Limited -> Safer-Networking Ltd.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.HFYU] => C:\Windows\system32\huffyuv.dll [55296 2005-01-21] () [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] () [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [310784 2019-12-28] () [Arquivo não assinado]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.HFYU] => C:\Windows\SysWOW64\huffyuv.dll [39936 2004-05-18] (Disappearing Inc.) [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] () [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284160 2019-12-28] () [Arquivo não assinado]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [Arquivo não assinado]
HKLM\...\Drivers32: [msacm.lameacm] => C:\Windows\SysWOW64\lameACM.acm [473088 2015-02-25] (hxxp://www.mp3dev.org/) [Arquivo não assinado]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112128 2015-10-24] () [Arquivo não assinado]

==================== Atalhos & WMI ========================

(As entradas podem ser listadas para serem restauradas ou removidas.)

ShortcutWithArgument: C:\Users\Ramon Fiaux\AppData\Local\Microsoft\Edge\User Data\Default\Web Applications\_crx__nlalbmkafgmoifbeooblidblkmlhhpnc\TikTok.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=nlalbmkafgmoifbeooblidblkmlhhpnc --app-url=hxxps://www.tiktok.com/foryou --app-launch-source=4
ShortcutWithArgument: C:\Users\Ramon Fiaux\AppData\Local\Microsoft\Edge\User Data\Default\Web Applications\_crx__maonlnecdeecdljpahhnnlmhbmalehlm\Instagram.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=maonlnecdeecdljpahhnnlmhbmalehlm --app-url=hxxps://www.instagram.com/?utm_source=pwa_homescreen --app-launch-source=4
ShortcutWithArgument: C:\Users\Ramon Fiaux\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apps do Chrome\Videostream for Google Chromecast™.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=cnciopoikihiagdjbjpnocolokfelagl
ShortcutWithArgument: C:\Users\Ramon Fiaux\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Instagram.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=maonlnecdeecdljpahhnnlmhbmalehlm --app-url=hxxps://www.instagram.com/?utm_source=pwa_homescreen --app-launch-source=4
ShortcutWithArgument: C:\Users\Ramon Fiaux\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TikTok.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=nlalbmkafgmoifbeooblidblkmlhhpnc --app-url=hxxps://www.tiktok.com/foryou --app-launch-source=4
ShortcutWithArgument: C:\Users\Ramon Fiaux\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Rolavenger - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Módulos Carregados (Whitelisted) =============

2022-07-19 18:51 - 2022-07-19 18:51 - 000637440 _____ () [Arquivo não assinado] \\?\C:\Users\Ramon Fiaux\AppData\Local\Temp\0353874b-f860-494a-bcaf-7e3e0af445ac.tmp.node
2022-07-16 03:17 - 2022-05-31 06:00 - 000313856 _____ () [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\libbluray.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000375296 _____ () [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\libbluray.dll
2022-07-20 17:49 - 2022-07-20 17:49 - 000006144 _____ () [Arquivo não assinado] C:\WINDOWS\TEMP\is-8P206.tmp\_isetup\_setup64.tmp
2022-07-20 17:49 - 2020-02-03 12:09 - 000347667 _____ () [Arquivo não assinado] C:\WINDOWS\TEMP\is-8P206.tmp\inno-imgconvert.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000257536 _____ (1f0.de - Hendrik Leppkes) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVAudio.ax
2022-07-16 03:17 - 2022-05-31 06:00 - 000540160 _____ (1f0.de - Hendrik Leppkes) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVSplitter.ax
2022-07-16 03:17 - 2022-05-31 06:00 - 001048576 _____ (1f0.de - Hendrik Leppkes) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\LAVVideo.ax
2022-07-16 03:17 - 2022-05-31 06:00 - 000304128 _____ (1f0.de - Hendrik Leppkes) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVAudio.ax
2022-07-16 03:17 - 2022-05-31 06:00 - 000652288 _____ (1f0.de - Hendrik Leppkes) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVSplitter.ax
2022-07-16 03:17 - 2022-05-31 06:00 - 001239552 _____ (1f0.de - Hendrik Leppkes) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\LAVVideo.ax
2022-07-16 03:17 - 2022-05-31 06:00 - 013181952 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\avcodec-lav-59.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000200192 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\avfilter-lav-8.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 005059072 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\avformat-lav-59.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000705536 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\avutil-lav-57.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000121856 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\swresample-lav-4.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000574976 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\swscale-lav-6.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 014094848 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\avcodec-lav-59.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000199168 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\avfilter-lav-8.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 005124608 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\avformat-lav-59.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000710144 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\avutil-lav-57.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000122880 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\swresample-lav-4.dll
2022-07-16 03:17 - 2022-05-31 06:00 - 000572416 _____ (FFmpeg Project) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\swscale-lav-6.dll
2020-11-11 20:57 - 2021-08-20 01:51 - 000557056 _____ (hxxp://fluentnhibernate.org) [Arquivo não assinado] C:\Program Files\Dell\SupportAssistAgent\bin\FluentNHibernate.dll
2021-11-02 12:50 - 2021-08-20 01:51 - 000356352 _____ (hxxps://system.data.sqlite.org/) [Arquivo não assinado] C:\Program Files\Dell\SupportAssistAgent\bin\System.Data.SQLite.dll
2022-07-08 17:21 - 2022-07-08 17:22 - 042859520 _____ (Intel Corporation) [Arquivo não assinado] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3408.0_x64__8j3eq9eme6ctt\IGCC.dll
2022-07-20 17:49 - 2016-04-17 18:16 - 000237568 _____ (Mitrich Software) [Arquivo não assinado] C:\WINDOWS\TEMP\is-8P206.tmp\idp.dll
2022-07-16 03:17 - 2022-06-22 06:00 - 000801280 _____ (MPC-BE Team) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\MPCVR\MpcVideoRenderer.ax
2022-07-16 03:17 - 2022-06-22 06:00 - 000889344 _____ (MPC-BE Team) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\Filters\MPCVR\MpcVideoRenderer64.ax
2022-07-16 03:17 - 2022-06-26 06:00 - 000195072 _____ (MPC-HC Team) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC\Lang\mpcresources.pt_BR.dll
2022-07-16 03:17 - 2022-06-26 06:00 - 000195584 _____ (MPC-HC Team) [Arquivo não assinado] C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\Lang\mpcresources.pt_BR.dll
2018-03-08 07:18 - 2021-08-20 01:51 - 000013824 _____ (NHibernate.org) [Arquivo não assinado] C:\Program Files\Dell\SupportAssistAgent\bin\Iesi.Collections.dll
2022-02-20 06:42 - 2021-08-20 01:51 - 003313664 _____ (NHibernate.org) [Arquivo não assinado] C:\Program Files\Dell\SupportAssistAgent\bin\NHibernate.dll
2021-08-20 01:51 - 2021-08-20 01:51 - 001638912 _____ (Robert Simpson, et al.) [Arquivo não assinado] C:\Program Files\Dell\SupportAssistAgent\bin\x64\SQLite.Interop.dll
2021-12-17 05:45 - 2021-08-20 01:51 - 000270336 _____ (The Apache Software Foundation) [Arquivo não assinado] C:\Program Files\Dell\SupportAssistAgent\bin\log4net.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Modo de Segurança (Whitelisted) ==================

(Se uma entrada for incluída na fixlist, será removida do Registro. O valor "AlternateShell" será restaurado.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service"

==================== Associação (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-07-12] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll [2022-06-14] (McAfee, LLC -> McAfee, LLC)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2022-06-14] (McAfee, LLC -> McAfee, LLC)

==================== Hosts Conteúdo: =========================

(Se necessário, a diretiva Hosts: pode ser incluída na fixlist para redefinir o Hosts.)

2021-06-05 09:08 - 2022-07-21 17:21 - 000000872 _____ C:\WINDOWS\system32\drivers\etc\hosts
177.54.149.114 ip-177-54-149-114.lazerpenguin.com

==================== Outras Áreas ===========================

(Atualmente não há nenhuma correção automática para esta seção.)

HKU\S-1-5-21-4192884717-58469100-4038748977-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Dell\Win LTBLUE 1920x1200.jpg
DNS Servers: 10.0.4.0 - 10.0.4.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Firewall do Windows está habilitado.

Network Binding:
=============
Conexão de Rede Bluetooth: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
Wi-Fi: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)
McAfee VPN: Npcap Packet Driver (NPCAP) -> INSECURE_NPCAP (enabled)

==================== MSCONFIG/TASK MANAGER ítens desabilitados ==

==================== Regras do Firewall (Whitelisted) ================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

FirewallRules: [{D538EAAE-DE06-4C88-823D-00F739F2554F}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC -> McAfee, LLC)
FirewallRules: [{FEFF51C5-6675-42A5-AAE0-345C0A3DD2B8}] => (Allow) C:\Program Files (x86)\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC -> McAfee, LLC)
FirewallRules: [{FAF37363-E3FF-4D95-B4B5-E15B01237452}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{6102D1F1-45EC-4E3C-BF71-BF5F0E2B2E8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{2915D422-D997-4BC9-9833-89B29AE2C761}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BE231B85-4615-4801-AEA8-6AAC17AEFAA1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1ACFA044-8E68-4F58-AE4A-F527C80A98FB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B4C19290-7667-41E5-B7C4-A9887831E7DD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A8C771AD-4FBA-4869-BDA2-DAA1D14F93BC}] => (Allow) C:\Users\Ramon Fiaux\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{7BD37D17-DA3C-41E8-9C3F-969C9B500E4F}] => (Allow) C:\Users\Ramon Fiaux\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C97CAFCC-AF48-412B-B1DC-A7461DF58A81}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C9229DB7-F358-43F6-AB7E-78BCEA6C8F61}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F0F85585-D639-4C99-8E5B-E8E5F75F8DE5}] => (Allow) C:\Users\Ramon Fiaux\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{647A9F2B-6249-4D76-BFDC-27AE4DDFE941}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\103.0.1264.62\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FB75764F-E4C9-4ADE-9025-6DF7EB304A06}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CC18F291-815F-4FF8-BF75-A468C4CD6E88}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{F230A516-89AB-4470-AE00-53AC317EFE80}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8D6FCE98-D98F-433C-906E-67E1553716B2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3E23487E-10E6-4508-88DA-2E316D334840}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6305F839-648D-4E75-85E1-6AC46240F980}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{22EAF333-AF88-40D3-A001-F511812BB1C4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4F76431D-5152-41FE-A47C-567FFA0CD761}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.189.862.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{EDB7824F-B77B-4A41-A286-B9149018F813}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A25CF5BD-8318-4CB9-8A9C-0F65D156AE34}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{02DD1B07-27C5-44D8-B4D3-4F38AAF9A268}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CCEF6D0A-B633-4747-AB34-C2ABF9DD68D0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{09BF4ECC-3C6E-43CB-8889-12DAABC7F4D3}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22183.300.1431.9295_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5D9598F0-8206-49B3-8DBE-F29F19EA8E86}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22183.300.1431.9295_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service

==================== Pontos de Restauração =========================

ATENÇÃO: A Restauração do Sistema está desabilitada (Total:217.62 GB) (Free:89.85 GB) (41%)

==================== Dispositivos Apresentando Falhas No Gerenciador ============


==================== Erros no Log de eventos: ========================

Erros em Aplicativos:
==================
Error: (07/21/2022 08:06:21 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Erro do Serviço de Cópias de Sombra de Volume: erro inesperado ao consultar a interface IVssWriterCallback. hr = 0x80070005, Acesso negado.
.
Muitas vezes, isso é causado por configurações de segurança incorretas no processo gravador ou solicitante.


Operação:
Obtendo Dados do Gravador

Contexto:
Id de Classe de Gravador: {e8132975-6f93-4464-a53e-1050253ae220}
Nome do Gravador: System Writer
ID de Instância de Gravador: {b66c5d2f-e830-4d1e-8f5e-66fd8bc416d7}

Error: (07/21/2022 07:41:17 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Erro do Serviço de Cópias de Sombra de Volume: erro inesperado ao consultar a interface IVssWriterCallback. hr = 0x80070005, Acesso negado.
.
Muitas vezes, isso é causado por configurações de segurança incorretas no processo gravador ou solicitante.


Operação:
Obtendo Dados do Gravador

Contexto:
Id de Classe de Gravador: {e8132975-6f93-4464-a53e-1050253ae220}
Nome do Gravador: System Writer
ID de Instância de Gravador: {b66c5d2f-e830-4d1e-8f5e-66fd8bc416d7}

Error: (07/20/2022 02:18:49 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: O programa vlc.exe versão 3.0.17.4 parou de interagir com o Windows e foi fechado. Para ver se mais informações sobre o problema estão disponíveis, verifique o histórico de problemas no painel de controle Segurança e Manutenção.

ID do Processo: 9ea0

Hora de Início: 01d89bf4f3eb9e6d

Hora de Término: 8

Caminho do Aplicativo: C:\Program Files\VideoLAN\VLC\vlc.exe

ID do Relatório: 3924be1e-4cc6-4e5f-93eb-88ac8b32aa16

Nome completo do pacote com falha:

ID do aplicativo relativo ao pacote com falha:

Tipo com falha: Cross-process

Error: (07/20/2022 01:11:29 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Erro do Serviço de Cópias de Sombra de Volume: erro inesperado ao consultar a interface IVssWriterCallback. hr = 0x80070005, Acesso negado.
.
Muitas vezes, isso é causado por configurações de segurança incorretas no processo gravador ou solicitante.


Operação:
Obtendo Dados do Gravador

Contexto:
Id de Classe de Gravador: {e8132975-6f93-4464-a53e-1050253ae220}
Nome do Gravador: System Writer
ID de Instância de Gravador: {b66c5d2f-e830-4d1e-8f5e-66fd8bc416d7}

Error: (07/20/2022 01:10:22 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Erro do Serviço de Cópias de Sombra de Volume: erro inesperado ao consultar a interface IVssWriterCallback. hr = 0x80070005, Acesso negado.
.
Muitas vezes, isso é causado por configurações de segurança incorretas no processo gravador ou solicitante.


Operação:
Obtendo Dados do Gravador

Contexto:
Id de Classe de Gravador: {e8132975-6f93-4464-a53e-1050253ae220}
Nome do Gravador: System Writer
ID de Instância de Gravador: {b66c5d2f-e830-4d1e-8f5e-66fd8bc416d7}

Error: (07/19/2022 01:20:11 AM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoId={36BD7066-0891-4621-BF49-5D39E0365966}: o usuário SYSTEM discou uma conexão de nome McAfee VPN que falhou. O código do erro retornado na falha é 13843.

Error: (07/18/2022 07:41:19 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoId={4F63D3CF-9AFE-4DC0-BD87-F0EF9DE87DD6}: o usuário SYSTEM discou uma conexão de nome McAfee VPN que falhou. O código do erro retornado na falha é 13843.

Error: (07/18/2022 07:41:15 PM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoId={A9542EE7-B892-42B5-AE2B-9F6B575DA9C7}: o usuário SYSTEM discou uma conexão de nome McAfee VPN que falhou. O código do erro retornado na falha é 13843.


Erros de Sistema:
=============
Error: (07/21/2022 03:02:40 PM) (Source: Netwtw10) (EventID: 5005) (User: )
Description: Intel(R) Wireless-AC 9462 : Erro interno e falha.
5005 - Driver internal error

Error: (07/21/2022 03:02:38 PM) (Source: Netwtw10) (EventID: 5002) (User: )
Description: Intel(R) Wireless-AC 9462: Determinou que o adaptador de rede não está funcionando corretamente.
5002 - uCode SW error (SysAssert, NMI)

Error: (07/21/2022 01:09:54 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-162FUFM)
Description: O servidor {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} não se registrou no DCOM dentro do tempo limite necessário.

Error: (07/20/2022 05:49:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Spybot Security Center Integration Service devido ao seguinte erro:
O Windows não pode verificar a assinatura digital deste arquivo. Talvez uma alteração recente de hardware ou software tenha instalado um arquivo com uma assinatura incorreta ou danificado, ou talvez o arquivo seja um software mal-intencionado de origem desconhecida.

Error: (07/20/2022 05:49:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Spybot Security Center Integration Service devido ao seguinte erro:
O Windows não pode verificar a assinatura digital deste arquivo. Talvez uma alteração recente de hardware ou software tenha instalado um arquivo com uma assinatura incorreta ou danificado, ou talvez o arquivo seja um software mal-intencionado de origem desconhecida.

Error: (07/20/2022 05:46:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Spybot Security Center Integration Service devido ao seguinte erro:
O Windows não pode verificar a assinatura digital deste arquivo. Talvez uma alteração recente de hardware ou software tenha instalado um arquivo com uma assinatura incorreta ou danificado, ou talvez o arquivo seja um software mal-intencionado de origem desconhecida.

Error: (07/20/2022 05:46:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Não foi possível iniciar o serviço Spybot Security Center Integration Service devido ao seguinte erro:
O Windows não pode verificar a assinatura digital deste arquivo. Talvez uma alteração recente de hardware ou software tenha instalado um arquivo com uma assinatura incorreta ou danificado, ou talvez o arquivo seja um software mal-intencionado de origem desconhecida.

Error: (07/20/2022 03:47:20 AM) (Source: Netwtw10) (EventID: 5005) (User: )
Description: Intel(R) Wireless-AC 9462 : Erro interno e falha.
5005 - Driver internal error


CodeIntegrity:
===============
Date: 2022-07-21 01:48:27
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.

Date: 2022-07-20 19:21:02
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.


==================== Informações da Memória ===========================

BIOS: Dell Inc. 1.13.0 05/17/2022
placa-mãe: Dell Inc. 0NG31W
Processador: 11th Gen Intel(R) Core(TM) i7-1165G7 @ 2.80GHz
Percentagem de memória em uso: 94%
RAM física total: 7926.79 MB
RAM física disponível: 417.03 MB
Virtual Total: 32502.79 MB
Virtual disponível: 11240.64 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:217.62 GB) (Free:89.85 GB) (Model: NVMe IM2P33F3A NVMe ADATA 256GB) NTFS
Drive g: (ramonfiaux@gmail.com - Google...) (Fixed) (Total:15 GB) (Free:4.79 GB) (Model: NVMe IM2P33F3A NVMe ADATA 256GB) FAT32
Drive h: (rolavenger2@gmail.com - Googl...) (Fixed) (Total:15 GB) (Free:14.6 GB) (Model: NVMe IM2P33F3A NVMe ADATA 256GB) FAT32

\\?\Volume{37d8652c-069a-454f-8782-7ffcbe5b0b5e}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.47 GB) NTFS
\\?\Volume{e4eb2201-2ae7-4cd5-aceb-c22e7448308b}\ (Image) (Fixed) (Total:18.08 GB) (Free:0.06 GB) NTFS
\\?\Volume{05d3c6bc-0dcb-4352-81ed-c21e692d6ff9}\ (DELLSUPPORT) (Fixed) (Total:1.39 GB) (Free:0.44 GB) NTFS
\\?\Volume{efdb7307-cf79-4f85-a106-c94f258ebe22}\ (ESP) (Fixed) (Total:0.29 GB) (Free:0.15 GB) FAT32

==================== MBR & Tabela de Partições ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 300ED697)

Partition: GPT.

==================== Fim de Addition.txt =======================
==================== Informações da Memória ===========================

BIOS: Dell Inc. 1.13.0 05/17/2022
placa-mãe: Dell Inc. 0NG31W
Processador: 11th Gen Intel(R) Core(TM) i7-1165G7 @ 2.80GHz
Percentagem de memória em uso: 90%
RAM física total: 7926.79 MB
RAM física disponível: 720.48 MB
Virtual Total: 29430.79 MB
Virtual disponível: 11297.7 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:217.62 GB) (Free:92.89 GB) (Model: NVMe IM2P33F3A NVMe ADATA 256GB) NTFS

\\?\Volume{37d8652c-069a-454f-8782-7ffcbe5b0b5e}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.47 GB) NTFS
\\?\Volume{e4eb2201-2ae7-4cd5-aceb-c22e7448308b}\ (Image) (Fixed) (Total:18.08 GB) (Free:0.06 GB) NTFS
\\?\Volume{05d3c6bc-0dcb-4352-81ed-c21e692d6ff9}\ (DELLSUPPORT) (Fixed) (Total:1.39 GB) (Free:0.44 GB) NTFS
\\?\Volume{efdb7307-cf79-4f85-a106-c94f258ebe22}\ (ESP) (Fixed) (Total:0.29 GB) (Free:0.15 GB) FAT32

==================== MBR & Tabela de Partições ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 300ED697)

Partition: GPT.

==================== Fim de Addition.txt =======================