Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25.01.2024 Ran by Felipe (administrator) on FELIPESTOKER-WI (Gigabyte Technology Co., Ltd. H410M H) (25-01-2024 18:14:16) Running from C:\Users\Felipe\Downloads\FRST64.exe Loaded Profiles: Felipe Platform: Microsoft Windows 11 Home Version 23H2 22631.3085 (X64) Language: Portuguese (Brazil) -> English (United Kingdom) Default browser: FF Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Ascora GmbH -> Ascora GmbH) C:\Program Files\SSDFresh\Program\SSDFresh.exe (C:\Program Files\Mozilla Firefox\firefox.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\KeyboardManagerEngine\PowerToys.KeyboardManagerEngine.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.AlwaysOnTop.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.Awake.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.ColorPickerUI.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.CropAndLock.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.FancyZones.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.PowerLauncher.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\WinUI3Apps\PowerToys.Peek.UI.exe (C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe (C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Microsoft Corporation) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\WebView2\msedgewebview2.exe <6> (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_424.400.20.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe <6> (C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe (C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe (Discord Inc. -> Discord Inc.) C:\Users\Felipe\AppData\Local\Discord\app-1.0.9031\Discord.exe <6> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\1.3.863.1\DropboxCrashHandler.exe (explorer.exe ->) (Flow Launcher) [File not signed] C:\Users\Felipe\AppData\Local\FlowLauncher\app-1.16.2\Flow.Launcher.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <16> (explorer.exe ->) (Last.fm) [File not signed] C:\Program Files (x86)\Last.fm\Last.fm Desktop Scrobbler\Last.fm Desktop Scrobbler.exe (explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.111.3607.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <6> (explorer.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (explorer.exe ->) (Telegram FZ-LLC -> Telegram FZ-LLC) C:\Users\Felipe\AppData\Roaming\Telegram Desktop\Telegram.exe (Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe (Kilonova LLC -> Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.5.0.7\Lightshot.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <16> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (CODE SECTOR PTY LTD -> ) C:\Program Files\TeraCopy\TeraCopyService.exe (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (services.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome Remote Desktop\121.0.6167.13\remoting_host.exe <2> (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (services.exe ->) (Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_7b66b6662cf6d72b\RtkAudUService64.exe (services.exe ->) (voidtools -> voidtools) C:\Program Files\Everything\Everything.exe <2> (ShareX Team) [File not signed] D:\Games\steamapps\common\ShareX\ShareX\ShareX.exe (Slack Technologies, LLC -> Slack Technologies Inc.) C:\Users\Felipe\AppData\Local\slack\app-4.36.138\slack.exe <7> (svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe (svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\iCloudDrive.exe (svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe (svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\iCloudServices.exe (svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple, Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_14.2.122.0_x64__nzyj5cx40ttqa\iCloud\secd.exe (svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe (svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (Intel(R) System Usage Report -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_6.123.11012.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_6.123.11012.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Felipe\AppData\Local\Microsoft\OneDrive\24.010.0114.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_424.400.20.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_7b66b6662cf6d72b\RtkAudUService64.exe [1220312 2021-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4096992 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [2265096 2023-05-25] (voidtools -> voidtools) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC -> ) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11551456 2024-01-22] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1131488 2024-01-10] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2024-01-10] (Adobe Inc. -> ) HKLM\...\Policies\Explorer: [NoThumbnailCache] 0 HKLM\...\Policies\Explorer: [DisableThumbnailCache] 0 HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe [58857760 2024-01-23] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe [58857760 2024-01-23] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Felipe\AppData\Local\Microsoft\Teams\Update.exe [2455264 2021-09-02] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44540320 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [MicrosoftEdgeAutoLaunch_8FEA4787B1A530A853D444356CCEFE13] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [3854376 2024-01-17] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [Discord] => C:\Users\Felipe\AppData\Local\Discord\Update.exe [1525024 2023-12-12] (Discord Inc. -> GitHub) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11556768 2024-01-13] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [Spotify] => C:\Users\Felipe\AppData\Roaming\Spotify\Spotify.exe [30487880 2024-01-18] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4388200 2024-01-12] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [2729576 2024-01-21] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [GalaxyClient] => [X] HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13993440 2023-10-25] (GOG sp. z o.o -> GOG.com) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [Free Download Manager] => C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe [7489536 2023-12-18] (Softdeluxe) [File not signed] HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [Flow.Launcher] => C:\Users\Felipe\AppData\Local\FlowLauncher\app-1.16.2\Flow.Launcher.exe [274944 2024-01-07] (Flow Launcher) [File not signed] HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [com.taskade] => C:\Users\Felipe\AppData\Local\Programs\Taskade\Taskade.exe [176829208 2024-01-11] (TASKCADE INC. -> Taskcade Inc.) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe [58857760 2024-01-23] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Run: [com.squirrel.slack.slack] => C:\Users\Felipe\AppData\Local\slack\slack.exe [310576 2024-01-18] (Slack Technologies, LLC -> Slack Technologies Inc.) HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Policies\Explorer: [NoThumbnailCache] 0 HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\Policies\Explorer: [DisableThumbnailCache] 0 HKU\S-1-5-21-3633606873-1387218457-3474124247-1005\...\Run: [MicrosoftEdgeAutoLaunch_CBFA205D00D6038CFB8B9A7D71CF20AE] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3854376 2024-01-17] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3633606873-1387218457-3474124247-1005\...\Run: [GoogleChromeAutoLaunch_849EB5AF4084A6836CF6B90F6313E7A7] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [2782496 2024-01-20] (Google LLC -> Google LLC) HKU\S-1-5-21-3633606873-1387218457-3474124247-1005\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe [58857760 2024-01-23] (Google LLC -> Google, Inc.) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.37.0\GoogleDriveFS.exe [58857760 2024-01-23] (Google LLC -> Google, Inc.) HKLM\...\Print\Monitors\CutePDF Writer Monitor: cpwmon64.dll (No File) HKLM\...\Print\Monitors\HP E311 Status Monitor: C:\Windows\system32\hpinkstsE311LM.dll [399392 2023-10-04] (HP Inc. -> HP Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\121.0.6167.85\Installer\chrmstp.exe [2024-01-24] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.106\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel HKLM\Software\...\Authentication\Credential Providers: [{BE423CF8-7C59-4179-B70C-88901B6EC506}] -> IVTcPhoneProvider.dll HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Last.fm Desktop Scrobbler.lnk [2023-12-14] ShortcutTarget: Last.fm Desktop Scrobbler.lnk -> C:\Users\Felipe\AppData\Roaming\Microsoft\Installer\{B13709CB-85AE-4F45-BFF9-2CB2B7A78F83}\_19B259572BFCF696C10AAD.exe () [File not signed] Startup: C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MouseFixDll.dll [2004-01-29] () [File not signed] Startup: C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2024-01-16] ShortcutTarget: ShareX.lnk -> D:\Games\steamapps\common\ShareX\ShareX_Launcher.exe (ShareX Team) [File not signed] GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {B4D32521-C0F5-4081-98A0-63EA5768CBA8} - System32\Tasks\Abelssoft\SSD Fresh_43 => C:\Program Files\SSDFresh\AbLauncher.exe [22272 2023-05-16] (Ascora GmbH -> ) Task: {A819B81D-6B1C-4222-A33F-F70F8E4D73D5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.) Task: {06A2E938-6C73-4A7A-AACB-329F1CECD6A7} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4096992 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {B5ED1D7B-5698-4FE3-8028-CA23FA3FBFA2} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [4434400 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {D299C907-FC86-494B-B31C-0B45CBF41C4F} - System32\Tasks\Apple Diagnostics => C:\Users\Felipe\AppData\Local\Microsoft\WindowsApps\eReporter-AppX.exe [0 2023-12-24] () [symlink -> ] Task: {36736011-671E-4DE2-B6AF-BA4A7328CB18} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {B85FDE3B-9486-41D7-8AC5-2C7AFEFD4F9C} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "292d80f3-ae06-459c-9dce-71031bb07ad5" --version "6.20.10897" --silent Task: {27916DDB-7B78-46B5-8C08-BF05053A4333} - System32\Tasks\CCleanerSkipUAC - Felipe => C:\Program Files\CCleaner\CCleaner.exe [38319520 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {13008421-53A9-4767-B303-4CE6811D345A} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [5356616 2024-01-24] (Microsoft Windows -> Microsoft Corporation) Task: {70D54435-1961-4F77-8452-D99A47E403C9} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2023-12-21] (Dropbox, Inc -> Dropbox, Inc.) Task: {B828A91C-B1CC-4428-BF6C-492F3BB973C6} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2023-12-21] (Dropbox, Inc -> Dropbox, Inc.) Task: {AD06B304-C1F3-4FF8-8905-8AAE455EA9C5} - System32\Tasks\FreeDownloadManagerHelperService => C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe [137216 2023-12-18] (Softdeluxe) [File not signed] Task: {D97FC068-CB10-4E04-A026-634D454CC788} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2021-06-15] (Google Inc -> Google Inc.) Task: {8153C370-0AA5-44C8-B939-0653A6D5FC35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2021-06-15] (Google Inc -> Google Inc.) Task: {E7AFF5EC-B144-4A00-BA2D-89313B9C5659} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation) Task: {B94F8E6D-46E5-4500-8463-5D63E2AA7492} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3074176 2021-04-15] (Intel(R) System Usage Report -> Intel Corporation) Task: {AB32818C-5ED6-476D-9F55-5C65D9E944D0} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3074176 2021-04-15] (Intel(R) System Usage Report -> Intel Corporation) Task: {B1E8BCBC-12B8-4278-9E16-2581C82CF2B8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File) Task: {FD1C1767-5D54-438E-B688-746E16801CC0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28425192 2024-01-05] (Microsoft Corporation -> Microsoft Corporation) Task: {78DA2196-390A-4FF1-A263-24938B3FEF7C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28425192 2024-01-05] (Microsoft Corporation -> Microsoft Corporation) Task: {F02CAC76-7A2D-4ED1-A355-03EDDE3239D8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [305744 2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Task: {F58D2CF1-C7C2-49FC-8B76-D2818CE5AE3B} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [305744 2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Task: {6B6E76A0-F30C-4A0E-9567-6D8268B1CA9F} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [170048 2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Task: {6BFD0C94-4A6F-4088-918C-DEC6F2BDA051} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File) Task: {E7CEEA14-C774-41CB-8E87-94A904BC11F4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File) Task: {10C880B9-04D4-4D5D-9331-E174F9B185A8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File) Task: {0F2ECD5F-C412-4A9B-B7CC-53A5670BA170} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EA5B958C-AB98-4178-B329-6686E8E1D4DE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B1BC931A-DDBE-46E7-BF65-37391975F52F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F5A1F1D9-76EB-4E26-A54A-9BE0323DF6CC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D46918A7-1433-41FE-B614-AC33F3916AD0} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2024-01-10] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {91C4C275-C362-4468-B680-D7AA05EB71AF} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [35232 2024-01-10] (Mozilla Corporation -> Mozilla Foundation) Task: {61D99EB2-6B54-4020-AE2C-576827B1FD62} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {F8B76F4C-9F53-42D8-9BDA-F03CE7CE7702} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {A5259D04-0C4A-4782-B16D-757EC4A13AC8} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6B4F6A50-2C94-4457-BDDE-FE535F052F5F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A94FAEFF-C6A2-4C21-AA0A-1042F9CD19B5} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C492B276-914A-4565-9645-E52D72E43E93} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5D2A67E1-BE9B-4B3E-BA70-84C3B070AE06} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {07387815-6213-4A16-9343-041868B607B8} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CE054DE6-A38E-4CD0-903A-BF562F7F9790} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {72ED3B87-E4EB-478A-9FCD-173C325A4D60} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-09-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {67F7C499-3038-49C5-8AA8-06AB22383881} - System32\Tasks\PowerToys\Autorun for Felipe => C:\Program Files\PowerToys\PowerToys.exe [1212976 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) Task: {40F54DB1-C438-4E5C-A017-E69DEE97CC86} - System32\Tasks\ScreamingFrogSEOSpider\clinicarx+data+studio => C:\Program Files (x86)\Screaming Frog SEO Spider\ScreamingFrogSEOSpiderCli.exe -> --history --task-name %22clinicarx+data+studio%22 --project-name %22Data+Studio%22 --crawl https%3A%2F%2Fclinicarx.com.br --use-pagespeed --use-google-analytics felipestoker%40gmail.com 88924197 UA-88924197-1 252109816 gaid%3A%3A-5 --use-google-search-console %22New+Account%22 https%3A%2F%2Fclinicar (the data entry has 9350 more characters). Task: {99F1ECDF-9E7A-4363-87D6-42A3970BFE41} - System32\Tasks\update-S-1-5-21-3633606873-1387218457-3474124247-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {29A8ABB9-59E6-4000-99A2-AC2610B23885} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {539E3104-66CF-4DE5-AF09-6518DF29856B} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\Windows\System32\Wscript.exe [200704 2023-10-01] (Microsoft Windows -> Microsoft Corporation) -> //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\update-S-1-5-21-3633606873-1387218457-3474124247-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.15.1 Tcpip\..\Interfaces\{2c497408-96eb-4314-a3c4-fad5b4c68119}: [DhcpNameServer] 192.168.15.1 Tcpip\..\Interfaces\{f7e4881e-da87-4d6b-9bd9-378fa2a9977a}: [DhcpNameServer] 192.168.15.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-25] Edge Notifications: Default -> hxxps://meet.google.com; hxxps://strangerthings.com.br; hxxps://web.airdroid.com; hxxps://www.facebook.com; hxxps://www.msn.com Edge Extension: (Google Docs Offline) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-18] Edge Extension: (Screenshot YouTube) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gjoijpfmdhbjkkgnmahganhoinjjpohk [2023-12-12] Edge Extension: (Bitwarden - Free Password Manager) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jbkfoedolllekgbhcbcoahefnbanhhlh [2024-01-23] Edge Extension: (Edge relevant text changes) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-23] Edge Extension: (Shazam: Find song names from your browser) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2024-01-05] Edge Extension: (AIPRM for ChatGPT) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ojnbohmppadfgpejeebfnmnknjdlckgj [2024-01-08] Edge Profile: C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2024-01-05] Edge Extension: (Google Docs Offline) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-12-14] Edge Extension: (Edge relevant text changes) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-12-14] Edge Extension: (Microsoft Power Automate (Legacy)) - C:\Users\Felipe\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\njjljiblognghfjfpcdpdbpbfcmhgafg [2023-05-03] Edge HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx Edge HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [njjljiblognghfjfpcdpdbpbfcmhgafg] FireFox: ======== FF DefaultProfile: yzj9uwkq.default FF ProfilePath: C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\yzj9uwkq.default [2021-06-18] FF ProfilePath: C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721 [2024-01-25] FF Notifications: Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721 -> hxxps://calendar.google.com; hxxps://community.openai.com; hxxps://drive.google.com FF Extension: (Free Download Manager) - C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721\Extensions\fdm_ffext2@freedownloadmanager.org.xpi [2024-01-16] FF Extension: (Firefox Relay) - C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721\Extensions\private-relay@firefox.com.xpi [2023-12-13] FF Extension: (uBlock Origin) - C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721\Extensions\uBlock0@raymondhill.net.xpi [2024-01-08] FF Extension: (Bitwarden - Free Password Manager) - C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2024-01-16] FF Extension: (Matte Black (Red)) - C:\Users\Felipe\AppData\Roaming\Mozilla\Firefox\Profiles\fsspuirn.default-release-1648239112721\Extensions\{a7589411-c5f6-41cf-8bdc-f66527d9d930}.xpi [2023-12-13] FF HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Felipe\AppData\Roaming\IDM\idmmzcc5 => not found FF HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi => not found FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-12-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File] FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-01-13] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2024-01-10] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2022-03-08] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2022-03-08] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-12-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2024-01-10] (Adobe Inc. -> Adobe Systems) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\autoconf_warsaw.js [2022-03-08] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default [2024-01-25] CHR Notifications: Default -> hxxps://business.facebook.com; hxxps://calendar.google.com; hxxps://mail.google.com; hxxps://meet.google.com; hxxps://strangerthings.com.br; hxxps://support.wondershare.com; hxxps://twitter.com; hxxps://w2g.tv; hxxps://web.whatsapp.com; hxxps://www.facebook.com; hxxps://www.instagram.com; hxxps://www.netflix.com; hxxps://www.reddit.com; hxxps://www.rocketship.academy CHR NewTab: Default -> Active:"chrome-extension://hddnkoipeenegfoeaoibdmnaalmgkpip/toby.html" CHR Extension: (Google Tradutor) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2023-03-31] CHR Extension: (INSSIST | Assistente da Web para Instagram) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcocdbombenodlegijagbhdjbifpiijp [2024-01-25] CHR Extension: (Microsoft Clarity Live) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjfdbemmaeeohgibnhdhlakiahifjjcf [2023-03-04] CHR Extension: (WA Web Plus by Elbruz Technologies) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\ekcgkejcjdcmonfpmnljobemcbpnkamh [2024-01-18] CHR Extension: (Meta Pixel Helper) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2024-01-25] CHR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2023-12-12] CHR Extension: (Ronin Wallet) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnjhmkhhmkbjkkabndcnnogagogbneec [2024-01-24] CHR Extension: (Editor do Office) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbkeegbaiigmenfmjfclcdgdpimamgkj [2023-12-12] CHR Extension: (Não Seguidores no Instagram) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggnclhlkbhihgehcgmnckfgkjjkckbop [2023-12-19] CHR Extension: (Wappalyzer - Technology profiler) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\gppongmhjkpfnbhagpmjfkannfbllamg [2023-12-12] CHR Extension: (Toby for Chrome) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\hddnkoipeenegfoeaoibdmnaalmgkpip [2024-01-22] CHR Extension: (Web Scrobbler) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm [2024-01-14] CHR Extension: (Chrome Remote Desktop) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2023-06-27] CHR Extension: (Twitter Pixel Helper) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\jepminnlebllinfmkhfbkpckogoiefpd [2023-01-03] CHR Extension: (Tag Assistant Companion) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmekfmbnaedfebfnmakmokmlfpblbfdm [2023-05-03] CHR Extension: (Loom – Screen Recorder & Screen Capture) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\liecbddmkiiihnedobmlmillhodjkdmb [2024-01-17] CHR Extension: (WhatsUp+ for WhatsApp™ Web) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpbkofhnclhhlaibcklkgaonbbmhjeco [2023-12-12] CHR Extension: (Extensão do Google Keep para o Chrome) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2024-01-24] CHR Extension: (Desktop app for Google Tasks) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpofefdiokgmcdnnaigddelnfamkkghi [2023-01-03] CHR Extension: (Shazam: Descubra músicas direto do navegador) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2024-01-05] CHR Extension: (MetaMask) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2024-01-13] CHR Extension: (mymind — An extension for your mind) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmgcefdhjpjefhgcpocffdlibknajbmj [2023-12-12] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-16] CHR Extension: (AIPRM for ChatGPT) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojnbohmppadfgpejeebfnmnknjdlckgj [2024-01-06] CHR Extension: (MailTracker: Email tracker for Gmail) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgbdljpkijehgoacbjpolaomhkoffhnl [2024-01-25] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-01-03] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11 [2024-01-25] CHR Extension: (Torrent Scanner) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2024-01-20] CHR Extension: (Ordenar Conta do Instagram) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\epdghlkfggehpkolnnfnjnapdekaaggp [2024-01-20] CHR Extension: (Não Seguidores no Instagram) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\ggnclhlkbhihgehcgmnckfgkjjkckbop [2023-12-23] CHR Extension: (Documentos Google off-line) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-20] CHR Extension: (Microsoft Power Automate (Legacy)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\gjgfobnenmnljakmhboildkafdkicala [2023-12-27] CHR Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-27] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-24] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12 [2024-01-25] CHR Extension: (Torrent Scanner) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2024-01-20] CHR Extension: (Adobe Acrobat: ferramentas para editar, converter e assinar PDFs) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-12-23] CHR Extension: (Documentos Google off-line) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-20] CHR Extension: (Microsoft Power Automate (Legacy)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12\Extensions\gjgfobnenmnljakmhboildkafdkicala [2023-12-23] CHR Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-23] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 12\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-23] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2 [2024-01-02] CHR Extension: (Torrent Scanner) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2023-12-17] CHR Extension: (Adobe Acrobat: ferramentas para editar, converter e assinar PDFs) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-12-16] CHR Extension: (Documentos Google off-line) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-05-31] CHR Extension: (Microsoft Power Automate (Legacy)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gjgfobnenmnljakmhboildkafdkicala [2023-12-17] CHR Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-17] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-16] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3 [2024-01-23] CHR Extension: (Torrent Scanner) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2024-01-14] CHR Extension: (3DTin) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\algoakekcdmbbikdjgjdahbfihboglmi [2022-04-05] CHR Extension: (Adobe Acrobat: ferramentas para editar, converter e assinar PDFs) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-12-13] CHR Extension: (Documentos Google off-line) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-16] CHR Extension: (Microsoft Power Automate (Legacy)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gjgfobnenmnljakmhboildkafdkicala [2023-12-13] CHR Extension: (Dropbox) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2022-04-05] CHR Extension: (Evernote Web) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2022-04-05] CHR Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-13] CHR Extension: (Jogo WGT de Golf) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb [2022-04-05] CHR Extension: (Glossy Blue) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nheaocaplknjkpcnbadlgfpdfjaabiml [2022-03-16] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-16] CHR Extension: (imo free video calls and text) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ocaebkdojpikfmhmnekiflipcicedobi [2022-04-05] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 6 [2024-01-25] CHR Notifications: Profile 6 -> hxxps://meet.google.com; hxxps://whatsup.plus CHR Extension: (Documentos Google off-line) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-12] CHR Extension: (Microsoft Power Automate (Legacy)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\gjgfobnenmnljakmhboildkafdkicala [2023-12-13] CHR Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-13] CHR Extension: (WhatsUp+ for WhatsApp™ Web) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\lpbkofhnclhhlaibcklkgaonbbmhjeco [2024-01-04] CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-21] CHR Profile: C:\Users\Felipe\AppData\Local\Google\Chrome\User Data\System Profile [2024-01-25] CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Felipe\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gjgfobnenmnljakmhboildkafdkicala] CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1005\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-3633606873-1387218457-3474124247-1005\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx Vivaldi: ======= VIV Profile: C:\Users\Felipe\AppData\Local\Vivaldi\User Data\Default [2023-12-13] VIV Extension: (Safe Torrent Scanner) - C:\Users\Felipe\AppData\Local\Vivaldi\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-03-01] VIV Extension: (Microsoft Power Automate) - C:\Users\Felipe\AppData\Local\Vivaldi\User Data\Default\Extensions\gjgfobnenmnljakmhboildkafdkicala [2022-03-01] VIV Extension: (Acesso rápido a apps para o Drive (do Google)) - C:\Users\Felipe\AppData\Local\Vivaldi\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2022-03-01] VIV Extension: (IDM Integration Module) - C:\Users\Felipe\AppData\Local\Vivaldi\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-03-01] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [944096 2024-01-10] (Adobe Inc. -> Adobe Inc.) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082784 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\121.0.6167.13\remoting_host.exe [74528 2023-12-11] (Google LLC -> Google LLC) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13777080 2024-01-05] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2023-12-21] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2023-12-21] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [46824 2024-01-22] (Dropbox, Inc -> Dropbox, Inc.) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [12006504 2024-01-21] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [810800 2021-11-04] (EasyAntiCheat Oy -> Epic Games, Inc) R2 Everything; C:\Program Files\Everything\Everything.exe [2265096 2023-05-25] (voidtools -> voidtools) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2350048 2023-10-25] (GOG sp. z o.o -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7173088 2023-10-25] (GOG sp. z o.o -> GOG.com) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230360 2024-01-19] (HP Inc. -> HP Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10759936 2023-12-13] (Logitech Inc -> Logitech, Inc.) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2024-01-03] (Even Balance, Inc. -> ) R2 TeraCopyService.exe; C:\Program Files\TeraCopy\TeraCopyService.exe [317664 2023-06-28] (CODE SECTOR PTY LTD -> ) S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [41416 2023-12-20] (Microsoft Corporation -> Microsoft) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem S3 xldr_crossfire_br; "C:\Program Files\Common Files\Uncheater\xldr_crossfire_br.exe" [X] ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed] S3 dc3d; C:\Windows\System32\drivers\dc3d.sys [47616 2011-05-18] (Hardware Group Test Cert -> Microsoft Corporation) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 DroidCam; C:\Windows\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps) R1 googledrivefs31357; C:\Windows\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2024-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R1 gwdrv; C:\Windows\system32\DRIVERS\gwdrv.sys [33152 2015-05-29] (GlassWire -> SecureMix LLC) R3 iaLPSS2_GPIO2; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_skl.inf_amd64_2a35efc43f1a612e\iaLPSS2_GPIO2_ICL.sys [132872 2020-04-27] (Intel Corporation -> Intel Corporation) S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [41536 2022-08-17] (Microsoft Windows Hardware Compatibility Publisher -> IObit Information Technology) S3 IvtPanBusSrv; C:\Windows\System32\Drivers\btnetBus.sys [31480 2016-09-10] (IVT CORPORATION -> IVT Corporation.) R1 legendasdrv; C:\Windows\System32\drivers\legendasdrv.sys [89808 2019-12-03] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [44880 2023-12-13] (Logitech Inc -> Logitech) S3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [32080 2023-12-13] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [73040 2023-12-13] (Logitech Inc -> Logitech) R3 MpKslcdd84c68; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DAD171A1-4644-450E-8820-415686270066}\MpKslDrv.sys [263560 2024-01-25] (Microsoft Windows -> Microsoft Corporation) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2021-03-26] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2021-03-26] (MiniTool Solution Ltd -> ) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 SteamStreamingMicrophone; C:\Windows\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> ) R3 SteamStreamingSpeakers; C:\Windows\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> ) S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [251776 2023-10-12] (Oracle Corporation -> Oracle and/or its affiliates) S3 vdvad_WaveExtensible; C:\Windows\System32\drivers\vdvad.sys [44936 2022-02-14] (Virtual Desktop, Inc. -> Virtual Desktop, Inc.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55856 2023-12-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\Windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [594304 2023-12-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-06] (Microsoft Windows -> Microsoft Corporation) S3 WirelessKeyboardFilter; C:\Windows\System32\drivers\WirelessKeyboardFilter.sys [49336 2018-03-11] (Microsoft Corporation -> Microsoft Corporation) S3 WOVAD; C:\Windows\System32\drivers\womic.sys [51192 2022-01-14] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 xhunter1; C:\Windows\xhunter1.sys [2742720 2021-10-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Three months (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2024-01-25 18:14 - 2024-01-25 18:15 - 000059636 _____ C:\Users\Felipe\Downloads\FRST.txt 2024-01-25 18:13 - 2024-01-25 18:14 - 000000000 ____D C:\FRST 2024-01-25 18:13 - 2024-01-25 18:13 - 002389504 _____ (Farbar) C:\Users\Felipe\Downloads\FRST64.exe 2024-01-24 20:54 - 2024-01-24 20:54 - 000768122 _____ C:\Windows\system32\prfh0416.dat 2024-01-24 20:54 - 2024-01-24 20:54 - 000154250 _____ C:\Windows\system32\prfc0416.dat 2024-01-24 04:11 - 2024-01-24 15:52 - 000000666 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2024-01-24 04:11 - 2024-01-24 04:11 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2024-01-24 04:11 - 2024-01-24 04:11 - 000003382 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2024-01-24 01:37 - 2024-01-24 01:37 - 000019222 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-01-24 01:37 - 2024-01-24 01:37 - 000019222 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json 2024-01-23 22:19 - 2024-01-23 22:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2024-01-23 21:49 - 2024-01-23 21:49 - 000000289 _____ C:\Users\Felipe\Google Drive.lnk 2024-01-23 21:43 - 2024-01-23 21:43 - 000002261 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2024-01-23 21:42 - 2024-01-23 21:42 - 182365472 _____ (Google, Inc.) C:\Users\Felipe\Downloads\GoogleDriveSetup.exe 2024-01-22 23:51 - 2024-01-22 23:51 - 000046824 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2024-01-22 19:37 - 2024-01-22 19:53 - 000000000 ____D C:\Program Files (x86)\WOMic 2024-01-22 19:37 - 2024-01-22 19:37 - 001429375 _____ C:\Users\Felipe\Downloads\WOMicClientSetup5_2.exe 2024-01-21 16:53 - 2024-01-21 17:14 - 000000000 ____D C:\Users\Felipe\Downloads\Telegram Desktop 2024-01-21 15:43 - 2024-01-21 15:43 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\FC 24 2024-01-21 15:43 - 2024-01-21 15:43 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Electronic Arts 2024-01-21 15:43 - 2024-01-21 15:43 - 000000000 ____D C:\ProgramData\Frostbite 2024-01-21 15:33 - 2024-01-21 15:44 - 000000000 ____D C:\ProgramData\Packer 2024-01-21 15:33 - 2024-01-21 15:33 - 000000000 ____D C:\Users\Felipe\AppData\Local\Link2EA 2024-01-21 12:50 - 2024-01-21 21:50 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\Flight Simulator X Files 2024-01-20 23:48 - 2024-01-20 23:48 - 000195647 _____ C:\Users\Felipe\Downloads\É amanha.waptt.opus 2024-01-20 19:36 - 2024-01-20 19:36 - 004909760 _____ (Husdawg, LLC) C:\Users\Felipe\Downloads\Detection (1).exe 2024-01-20 16:31 - 2024-01-20 16:31 - 000000000 ____D C:\ProgramData\NVIDIA GPU Computing Toolkit 2024-01-20 16:31 - 2024-01-20 16:31 - 000000000 ____D C:\Program Files\NVIDIA GPU Computing Toolkit 2024-01-20 16:25 - 2024-01-20 16:26 - 3279199688 _____ (NVIDIA Corporation) C:\Users\Felipe\Downloads\cuda_12.3.2_546.12_windows.exe 2024-01-20 08:15 - 2024-01-20 08:15 - 000003382 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3633606873-1387218457-3474124247-1001 2024-01-20 08:15 - 2024-01-20 08:15 - 000002431 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-01-19 10:24 - 2024-01-19 10:24 - 004588647 _____ C:\Users\Felipe\Downloads\2024_01_Segunda_Semana_02_Motion_WJ.MP4 2024-01-19 10:24 - 2024-01-19 10:24 - 004588647 _____ C:\Users\Felipe\Downloads\2024_01_Segunda_Semana_02_Motion_WJ (1).MP4 2024-01-18 22:29 - 2024-01-18 22:29 - 000000000 ____D C:\Users\Felipe\Downloads\midjourney_session_2024-1-17_[0-50] 2024-01-18 22:01 - 2024-01-18 22:01 - 267720986 _____ C:\Users\Felipe\Downloads\midjourney_session_2024-1-17_[0-50].zip 2024-01-18 18:57 - 2024-01-18 18:57 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop 2024-01-18 18:56 - 2024-01-25 15:40 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Telegram Desktop 2024-01-18 15:04 - 2024-01-18 15:04 - 000003658 _____ C:\Windows\system32\Tasks\CreateExplorerShellUnelevatedTask 2024-01-18 15:01 - 2024-01-19 10:23 - 000000000 ____D C:\Users\Felipe\Desktop\File 2024-01-18 14:40 - 2024-01-18 14:40 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\QuickStyles 2024-01-18 08:17 - 2024-01-18 08:17 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote.lnk 2024-01-18 08:17 - 2024-01-18 08:17 - 000000000 ____D C:\Program Files (x86)\Evernote 2024-01-18 07:58 - 2024-01-18 07:58 - 439468128 _____ (Evernote Corporation) C:\Users\Felipe\Downloads\Evernote-latest.exe 2024-01-17 15:37 - 2024-01-25 14:22 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Taskade 2024-01-17 15:37 - 2024-01-17 15:37 - 000002385 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taskade.lnk 2024-01-17 15:37 - 2024-01-17 15:37 - 000000000 ____D C:\Users\Felipe\AppData\Local\taskade-updater 2024-01-17 15:36 - 2024-01-17 15:36 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2024-01-17 15:36 - 2024-01-17 15:36 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-01-17 15:25 - 2024-01-17 15:25 - 000001647 _____ C:\Users\Felipe\Desktop\24-jan launch.lnk 2024-01-17 12:35 - 2024-01-17 12:35 - 000002293 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notion.lnk 2024-01-17 12:33 - 2024-01-17 12:33 - 000002335 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClickUp.lnk 2024-01-17 12:33 - 2024-01-17 12:33 - 000000000 ____D C:\Users\Felipe\AppData\Local\desktop-updater 2024-01-17 12:31 - 2024-01-17 12:31 - 000001304 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Asana.lnk 2024-01-17 12:31 - 2024-01-17 12:31 - 000000000 ____D C:\Users\Felipe\AppData\Local\Asana 2024-01-17 12:14 - 2024-01-17 12:14 - 000000000 ____D C:\Users\Felipe\Downloads\midjourney_session_2024-1-16_[0-10] 2024-01-16 19:38 - 2024-01-25 11:07 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\ShareX 2024-01-16 18:38 - 2024-01-16 18:38 - 000996103 _____ C:\Users\Felipe\Downloads\magnific-Zmz3k4oR9q364F1XE1kC-#larrybanequarry #GameofThrones #northernireland #unitedkingdom #series #uk March 28, 2016 at 0731PM_Original.jpeg 2024-01-16 14:45 - 2024-01-16 14:45 - 000000000 ____D C:\Users\Felipe\Downloads\midjourney_session_2024-1-16_[50-67] 2024-01-16 14:44 - 2024-01-16 14:44 - 000000000 ____D C:\Users\Felipe\Downloads\midjourney_session_2024-1-16_[0-50] 2024-01-16 10:54 - 2024-01-16 11:19 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Outlook 2024-01-15 21:18 - 2024-01-15 21:32 - 035662645 _____ C:\Users\Felipe\Downloads\Brasinha - VECCHI_BR0001 - 1974.cbr 2024-01-15 21:17 - 2024-01-15 21:21 - 020809430 _____ C:\Users\Felipe\Downloads\Brasinha - S8_BR0001 - 1969.cbr -- 8ab362767c7025f914bf2d15ddaf3b40 -- Anna’s Archive.cbr 2024-01-15 10:59 - 2024-01-15 10:59 - 000731808 _____ (Bitwarden Inc.) C:\Users\Felipe\Downloads\Bitwarden-Installer-2024.1.0.exe 2024-01-15 10:58 - 2024-01-15 10:58 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\AirDroidCast 2024-01-15 10:58 - 2024-01-15 10:58 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\AirDroidCast 2024-01-15 10:58 - 2024-01-15 10:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid Cast 2024-01-15 10:58 - 2024-01-15 10:58 - 000000000 ____D C:\ProgramData\AirDroidCast 2024-01-15 10:58 - 2024-01-15 10:58 - 000000000 ____D C:\ProgramData\airdroid_cast_lockdown 2024-01-15 10:58 - 2024-01-15 10:58 - 000000000 ____D C:\Program Files (x86)\AirDroid Cast 2024-01-14 21:48 - 2024-01-14 21:48 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop (Beta).lnk 2024-01-14 16:40 - 2024-01-14 16:40 - 000000000 ____D C:\Users\Felipe\AppData\Local\Package Cache 2024-01-14 16:35 - 2024-01-14 16:35 - 000000000 ____D C:\Users\Felipe\.venv 2024-01-14 12:01 - 2024-01-14 12:01 - 000000000 ____D C:\Users\Felipe\AppData\Local\GitHubDesktop 2024-01-14 11:53 - 2024-01-14 12:15 - 301787947 _____ C:\Users\Felipe\Downloads\n8n-docs-main.zip 2024-01-14 11:50 - 2024-01-14 11:51 - 000000000 ____D C:\Users\Felipe\.n8n 2024-01-14 11:50 - 2024-01-14 11:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js 2024-01-14 11:50 - 2024-01-14 11:50 - 000000000 ____D C:\Program Files\nodejs 2024-01-14 11:16 - 2024-01-14 11:16 - 000000000 ____D C:\Users\Felipe\AppData\Local\node-gyp 2024-01-14 11:11 - 2024-01-14 11:22 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\npm 2024-01-14 11:11 - 2024-01-14 11:11 - 000000000 ____D C:\Users\Felipe\AppData\Local\npm-cache 2024-01-14 11:07 - 2024-01-14 11:08 - 000000000 ____D C:\ProgramData\chocolatey 2024-01-14 11:07 - 2024-01-14 11:07 - 000000000 ____D C:\ProgramData\ChocolateyHttpCache 2024-01-14 10:46 - 2024-01-14 10:46 - 006465414 _____ C:\Users\Felipe\Downloads\LEADS.xlsx 2024-01-12 11:05 - 2024-01-12 11:05 - 000023551 _____ C:\Users\Felipe\Downloads\FRETES.pdf 2024-01-11 21:53 - 2024-01-11 21:53 - 014200638 _____ C:\Users\Felipe\Downloads\Migração.mp4 2024-01-11 21:45 - 2024-01-11 21:45 - 013943000 _____ C:\Users\Felipe\Downloads\Untitled video - Screen Recording - 11_1_2024, 21_45_00.webm 2024-01-11 19:26 - 2024-01-11 19:26 - 000720510 _____ C:\Users\Felipe\Downloads\[CHT] - Alunos Ativos.csv 2024-01-10 21:20 - 2024-01-10 21:20 - 000001404 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2024-01-09 22:19 - 2024-01-09 22:19 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-01-09 21:18 - 2024-01-09 21:18 - 000065819 _____ C:\Users\Felipe\Downloads\2023-12 - [UmbandaEAD] - Felipe Viero Goulart .pdf 2024-01-08 10:19 - 2024-01-08 10:19 - 000065895 _____ C:\Users\Felipe\Downloads\2023-12 [Titia Daia Pet Shop] - Felipe Viero Goulart.pdf 2024-01-08 10:18 - 2024-01-08 10:18 - 000066081 _____ C:\Users\Felipe\Downloads\2023-12 [Ivan Pons Lajeado] - Felipe Viero Goulart.pdf 2024-01-07 21:04 - 2024-01-25 11:07 - 000000000 ____D C:\Users\Felipe\AppData\Local\Everything 2024-01-07 20:52 - 2024-01-07 20:52 - 007937215 _____ C:\Users\Felipe\Downloads\Python_-6-Books-in-1-The-Ultimate-Bible-to-Learn-Python-Programming-for-a-Career-in-Machine-Learning.pdf 2024-01-07 18:43 - 2024-01-07 18:43 - 000000000 ____D C:\Windows\system32\inf32 2024-01-07 18:43 - 2024-01-07 18:43 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\GPSoftware 2024-01-07 18:43 - 2024-01-07 18:43 - 000000000 ____D C:\Users\Felipe\AppData\Local\GPSoftware 2024-01-07 18:18 - 2024-01-25 16:23 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\TeraCopy 2024-01-07 18:18 - 2024-01-07 18:18 - 012403216 _____ (Code Sector) C:\Users\Felipe\Downloads\teracopy.exe 2024-01-07 18:18 - 2024-01-07 18:18 - 000000976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy.lnk 2024-01-07 18:18 - 2024-01-07 18:18 - 000000000 ___HD C:\Users\Felipe\AppData\Roaming\Obsidium x64 2024-01-07 18:18 - 2024-01-07 18:18 - 000000000 ___HD C:\Users\Felipe\.obs64 2024-01-07 18:18 - 2024-01-07 18:18 - 000000000 ____D C:\ProgramData\Code Sector 2024-01-07 18:18 - 2024-01-07 18:18 - 000000000 ____D C:\ProgramData\Caphyon 2024-01-07 18:18 - 2024-01-07 18:18 - 000000000 ____D C:\Program Files\TeraCopy 2024-01-07 18:17 - 2024-01-25 11:07 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Everything 2024-01-07 18:17 - 2024-01-07 18:17 - 001885848 _____ () C:\Users\Felipe\Downloads\Everything-1.4.1.1024.x64-Setup.exe 2024-01-07 18:17 - 2024-01-07 18:17 - 000002866 _____ C:\Windows\system32\Tasks\FreeDownloadManagerHelperService 2024-01-07 18:17 - 2024-01-07 18:17 - 000000000 ____D C:\Users\Felipe\AppData\Local\Softdeluxe 2024-01-07 18:17 - 2024-01-07 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Download Manager 2024-01-07 18:17 - 2024-01-07 18:17 - 000000000 ____D C:\Program Files\Softdeluxe 2024-01-07 18:17 - 2024-01-07 18:17 - 000000000 ____D C:\Program Files\Everything 2024-01-07 18:16 - 2024-01-25 14:18 - 000000000 ____D C:\Windows\system32\Tasks\PowerToys 2024-01-07 18:16 - 2024-01-07 18:16 - 093468672 _____ (Flow-Launcher Team) C:\Users\Felipe\Downloads\Flow-Launcher-Setup.exe 2024-01-07 18:16 - 2024-01-07 18:16 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flow Launcher 2024-01-07 18:16 - 2024-01-07 18:16 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\FlowLauncher 2024-01-07 18:16 - 2024-01-07 18:16 - 000000000 ____D C:\Users\Felipe\AppData\Local\ToastNotificationManagerCompat 2024-01-07 18:16 - 2024-01-07 18:16 - 000000000 ____D C:\Users\Felipe\AppData\Local\FlowLauncher 2024-01-07 18:16 - 2024-01-07 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerToys (Preview) 2024-01-07 18:14 - 2024-01-07 18:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GPSoftware 2024-01-07 18:14 - 2024-01-07 18:14 - 000000000 ____D C:\ProgramData\GPSoftware 2024-01-07 18:14 - 2024-01-07 18:14 - 000000000 ____D C:\Program Files\GPSoftware 2024-01-07 18:13 - 2024-01-07 18:13 - 040320568 _____ (GPSoftware ) C:\Users\Felipe\Downloads\DOpusInstall.exe 2024-01-07 17:04 - 2024-01-07 17:04 - 000000000 ____D C:\Users\Felipe\AppData\Local\Skyrim 2024-01-07 16:59 - 2024-01-07 16:59 - 004909760 _____ (Husdawg, LLC) C:\Users\Felipe\Downloads\Detection(1).exe 2024-01-07 13:37 - 2024-01-07 13:37 - 001788747 _____ C:\Users\Felipe\Downloads\BibliotecaElfica.torrent 2024-01-07 13:22 - 2024-01-07 13:22 - 060122796 _____ C:\Users\Felipe\Downloads\datassette-20230601.rar 2024-01-07 13:22 - 2024-01-07 13:22 - 000000000 ____D C:\Users\Felipe\Downloads\datassette-20230601 2024-01-05 16:36 - 2024-01-24 16:26 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Bitwarden 2024-01-05 16:36 - 2024-01-05 16:36 - 000731824 _____ (Bitwarden Inc.) C:\Users\Felipe\Downloads\Bitwarden-Installer-2023.12.1.exe 2024-01-05 16:36 - 2024-01-05 16:36 - 000002455 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitwarden.lnk 2024-01-05 16:36 - 2024-01-05 16:36 - 000000000 ____D C:\Users\Felipe\AppData\Local\bitwarden-updater 2024-01-05 09:40 - 2024-01-05 09:40 - 000065769 _____ C:\Users\Felipe\Downloads\2023-12 [Nanda Mac] - Felipe Viero Goulart.pdf 2024-01-04 17:46 - 2024-01-04 17:46 - 000065756 _____ C:\Users\Felipe\Downloads\GOULART.JAN.2024.pdf 2024-01-04 13:17 - 2024-01-04 13:17 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Macromedia 2024-01-04 13:17 - 2024-01-04 13:17 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\com.rosettastone.languagetraining 2024-01-04 13:15 - 2024-01-04 13:17 - 000000000 ____D C:\ProgramData\FLEXnet 2024-01-04 13:15 - 2024-01-04 13:15 - 000000000 ____D C:\ProgramData\Rosetta Stone Backups 2024-01-04 13:15 - 2024-01-04 13:15 - 000000000 ____D C:\ProgramData\Rosetta Stone 2024-01-04 12:07 - 2024-01-07 21:04 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\qBittorrent 2024-01-04 12:07 - 2024-01-04 12:07 - 000000000 ____D C:\Users\Felipe\AppData\Local\qBittorrent 2024-01-04 12:06 - 2024-01-04 12:07 - 000000000 ____D C:\Program Files\qBittorrent 2024-01-04 12:06 - 2024-01-04 12:06 - 035730244 _____ (The qBittorrent project) C:\Users\Felipe\Downloads\qbittorrent_4.6.2_x64_setup.exe 2024-01-04 10:28 - 2024-01-04 10:28 - 000000000 ____D C:\Users\Felipe\AppData\Local\EALaunchHelper 2024-01-03 23:51 - 2024-01-21 21:37 - 000000000 ____D C:\Users\Felipe\AppData\Local\Battle.net 2024-01-03 23:51 - 2024-01-03 23:52 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Battle.net 2024-01-03 23:51 - 2024-01-03 23:51 - 000000000 ____D C:\ProgramData\Blizzard Entertainment 2024-01-03 23:50 - 2024-01-03 23:52 - 000000000 ____D C:\Program Files (x86)\Battle.net 2024-01-03 23:50 - 2024-01-03 23:50 - 000000000 ____D C:\Users\Felipe\AppData\Local\Blizzard Entertainment 2024-01-03 23:50 - 2024-01-03 23:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2024-01-03 23:49 - 2024-01-03 23:49 - 004925568 _____ (Blizzard Entertainment) C:\Users\Felipe\Downloads\Battle.net-Setup.exe 2024-01-03 23:49 - 2024-01-03 23:49 - 000000000 ____D C:\ProgramData\Battle.net 2024-01-03 23:37 - 2024-01-03 23:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Annihilation Kingdoms [GOG.com] 2024-01-03 23:31 - 2024-01-03 23:31 - 000000000 ____D C:\Users\Felipe\AppData\Local\GOG.com 2024-01-03 23:31 - 2024-01-03 23:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com 2024-01-03 23:31 - 2024-01-03 23:31 - 000000000 ____D C:\Program Files (x86)\GOG Galaxy 2024-01-03 23:30 - 2024-01-03 23:30 - 000983624 _____ (GOG Sp. z o.o.) C:\Users\Felipe\Downloads\GOG_Galaxy_2.0.exe 2024-01-03 23:30 - 2024-01-03 23:30 - 000000000 ____D C:\ProgramData\GOG.com 2024-01-03 23:20 - 2024-01-03 23:20 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2024-01-03 23:20 - 2024-01-03 23:20 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2024-01-03 23:20 - 2024-01-03 23:20 - 000000000 ____D C:\Users\Felipe\AppData\Local\PunkBuster 2024-01-03 23:20 - 2024-01-03 23:20 - 000000000 ____D C:\ProgramData\EA Logs 2024-01-03 23:20 - 2024-01-03 23:20 - 000000000 ____D C:\ProgramData\EA Core 2024-01-03 23:16 - 2024-01-21 15:33 - 000000000 ____D C:\ProgramData\Origin 2024-01-03 23:16 - 2024-01-03 23:20 - 000000000 ____D C:\ProgramData\Electronic Arts 2024-01-03 23:16 - 2024-01-03 23:16 - 000189248 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2024-01-03 23:16 - 2024-01-03 23:16 - 000075136 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2024-01-03 23:06 - 2024-01-21 15:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA 2024-01-03 23:06 - 2024-01-21 15:34 - 000000000 ____D C:\ProgramData\EA Desktop 2024-01-03 23:06 - 2024-01-03 23:06 - 002488712 _____ (Electronic Arts) C:\Users\Felipe\Downloads\EAappInstaller.exe 2024-01-03 23:06 - 2024-01-03 23:06 - 000000000 ____D C:\Users\Felipe\AppData\Local\Electronic Arts 2024-01-03 23:06 - 2024-01-03 23:06 - 000000000 ____D C:\Users\Felipe\AppData\Local\EADesktop 2024-01-03 21:30 - 2024-01-24 01:18 - 000000000 ____D C:\Program Files (x86)\Steam 2024-01-03 21:30 - 2024-01-03 21:30 - 002296488 _____ C:\Users\Felipe\Downloads\SteamSetup.exe 2024-01-03 21:30 - 2024-01-03 21:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2024-01-02 16:31 - 2024-01-02 16:31 - 000016654 _____ C:\Users\Felipe\Downloads\[Portuguese (auto-generated)] Tudo sobre a ashwagandha [DownSub.com].srt 2024-01-02 11:05 - 2024-01-02 11:05 - 000004404 _____ C:\Users\Felipe\Downloads\Life database - Weigth.csv 2023-12-28 19:00 - 2023-12-28 19:00 - 000002258 _____ C:\Users\Felipe\Downloads\YouTube_Video_Details.md 2023-12-28 19:00 - 2023-12-28 19:00 - 000002258 _____ C:\Users\Felipe\Downloads\YouTube_Video_Details(1).md 2023-12-28 18:50 - 2023-12-28 18:50 - 000002258 _____ C:\Users\Felipe\Downloads\YouTube_Video_Details_Updated.md 2023-12-28 18:44 - 2023-12-28 18:44 - 000001304 _____ C:\Users\Felipe\Desktop\PycharmProjects.lnk 2023-12-28 18:37 - 2023-12-28 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SSDFresh 2023-12-28 18:37 - 2023-12-28 18:37 - 000000000 ____D C:\Program Files\SSDFresh 2023-12-28 17:44 - 2024-01-22 20:41 - 000000000 ____D C:\Users\Felipe\PycharmProjects 2023-12-28 17:43 - 2023-12-28 17:43 - 000000000 ____D C:\Users\Felipe\AppData\Local\JetBrains 2023-12-28 17:36 - 2023-12-28 17:36 - 448669184 _____ C:\Users\Felipe\Downloads\pycharm-community-2023.3.2.exe 2023-12-28 17:15 - 2024-01-14 16:40 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.12 2023-12-28 17:15 - 2023-12-28 17:15 - 026589696 _____ (Python Software Foundation) C:\Users\Felipe\Downloads\python-3.12.1-amd64(1).exe 2023-12-28 17:10 - 2023-12-28 17:10 - 000007421 _____ C:\Users\Felipe\Downloads\[English] God Mode in Midjourney How to Generate Anything You Want [DownSub.com].txt 2023-12-28 15:38 - 2023-12-28 15:38 - 000011529 _____ C:\Users\Felipe\Downloads\[English] God Mode in Midjourney How to Generate Anything You Want [DownSub.com].srt 2023-12-27 13:58 - 2023-12-27 13:58 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\steamvr 2023-12-27 13:58 - 2023-12-27 13:58 - 000000000 ____D C:\Users\Felipe\AppData\Local\SteamVR 2023-12-27 13:57 - 2023-12-27 13:57 - 000000000 ____D C:\Users\Felipe\AppData\Local\openvr 2023-12-27 12:03 - 2023-12-27 12:19 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Bioshock 2023-12-27 12:03 - 2023-12-27 12:03 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\Bioshock 2023-12-27 11:55 - 2020-06-01 13:14 - 000040736 _____ C:\Windows\system32\Drivers\SteamStreamingSpeakers.sys 2023-12-27 11:55 - 2020-06-01 13:14 - 000040736 _____ C:\Windows\system32\Drivers\SteamStreamingMicrophone.sys 2023-12-27 11:45 - 2024-01-03 23:07 - 000000000 ____D C:\Users\Felipe\AppData\Local\Origin 2023-12-27 11:45 - 2024-01-03 23:06 - 000000000 ____D C:\Program Files\Electronic Arts 2023-12-27 11:45 - 2023-12-27 11:45 - 000000000 ____D C:\Program Files\EA Games 2023-12-26 22:52 - 2023-12-26 22:52 - 000035161 _____ C:\Users\Felipe\Downloads\converted_to_markdown_english.md 2023-12-26 22:50 - 2023-12-26 22:50 - 000034115 _____ C:\Users\Felipe\Downloads\[English (auto-generated)] Remotely Control Any Phone and PC with this Free tool! [DownSub.com].srt 2023-12-26 22:16 - 2023-12-26 22:16 - 000261912 _____ C:\Users\Felipe\Downloads\converted_to_markdown.md 2023-12-26 22:10 - 2023-12-26 22:10 - 000257351 _____ C:\Users\Felipe\Downloads\[Portuguese (auto-generated)] Python MasterClass 2024 - Do ZERO ao primeiro APLICATIVO WEB [DownSub.com].srt 2023-12-26 21:25 - 2023-12-26 21:25 - 004909760 _____ (Husdawg, LLC) C:\Users\Felipe\Downloads\Detection.exe 2023-12-25 22:04 - 2024-01-25 17:40 - 000000000 ___RD C:\Users\Felipe\iCloudPhotos 2023-12-25 18:45 - 2023-12-25 18:45 - 012297207 _____ C:\Users\Felipe\Downloads\Life database.xlsx 2023-12-25 17:19 - 2023-12-25 17:19 - 000000000 ____D C:\WindowsApps 2023-12-25 17:05 - 2023-12-25 17:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hasleo WinToHDD 2023-12-25 17:05 - 2023-12-25 17:05 - 000000000 ____D C:\Program Files\Hasleo 2023-12-25 17:04 - 2023-12-25 17:04 - 009773728 _____ (Hasleo Software. ) C:\Users\Felipe\Downloads\WinToHDD_Free.exe 2023-12-25 16:37 - 2023-12-25 16:37 - 000388608 _____ (Trend Micro Inc.) C:\Users\Felipe\Downloads\HijackThis.exe 2023-12-25 16:15 - 2023-12-25 16:16 - 000000000 ____D C:\Users\Felipe\Downloads\nhg1568 2023-12-25 16:15 - 2023-12-25 16:15 - 000457374 _____ C:\Users\Felipe\Downloads\nhg1568.rar 2023-12-25 16:10 - 2023-12-25 16:10 - 000000286 __RSH C:\ProgramData\ntuser.pol 2023-12-25 11:36 - 2023-12-25 11:36 - 076452496 _____ (Obsidian) C:\Users\Felipe\Downloads\Obsidian.1.4.16.exe 2023-12-25 11:36 - 2023-12-25 11:36 - 000002164 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Obsidian.lnk 2023-12-24 15:28 - 2023-12-25 17:23 - 000003840 _____ C:\Windows\system32\Tasks\Intel PTT EK Recertification 2023-12-24 15:11 - 2023-12-24 15:11 - 000000000 ___SD C:\Users\defaultuser100001\AppData\Roaming\Microsoft\SystemCertificates 2023-12-24 15:11 - 2023-12-24 15:11 - 000000000 ___SD C:\Users\defaultuser100001\AppData\Roaming\Microsoft\Protect 2023-12-24 15:11 - 2023-12-24 15:11 - 000000000 ____D C:\Users\defaultuser100001\AppData\Roaming\Adobe 2023-12-24 15:11 - 2023-12-24 15:11 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\Google 2023-12-24 15:10 - 2023-12-24 15:10 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\Intel 2023-12-24 15:08 - 2023-12-24 15:08 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\packages 2023-12-24 15:06 - 2023-12-24 15:24 - 000000000 ____D C:\Users\defaultuser100001 2023-12-24 15:06 - 2023-12-24 15:11 - 000000000 ____D C:\Users\defaultuser100001\AppData\Roaming\Microsoft\Windows 2023-12-24 15:06 - 2023-12-24 15:08 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\NVIDIA Corporation 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Modelos 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Meus Documentos 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Menu Iniciar 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Dados de Aplicativos 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Configurações Locais 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\AppData\Local\Histórico 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\AppData\Local\Dados de Aplicativos 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Ambiente de Rede 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 _SHDL C:\Users\defaultuser100001\Ambiente de Impressão 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 ____D C:\Users\defaultuser100001\AppData\Roaming\Microsoft\Spelling 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\VirtualStore 2023-12-24 15:06 - 2023-12-24 15:06 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\ConnectedDevicesPlatform 2023-12-24 15:06 - 2023-12-13 13:06 - 000000000 ____D C:\Users\defaultuser100001\AppData\Roaming\Microsoft\Network 2023-12-24 15:06 - 2023-05-03 15:18 - 000000000 ___RD C:\Users\defaultuser100001\OneDrive 2023-12-24 15:06 - 2021-06-15 12:05 - 000000000 ____D C:\Users\defaultuser100001\AppData\Local\Microsoft Help 2023-12-24 00:33 - 2023-12-24 00:33 - 000160942 _____ C:\Users\Felipe\Downloads\_9fb939fb-31a3-480c-b597-514d32598dd5.jpeg 2023-12-23 18:23 - 2023-12-23 18:25 - 000000000 ____D C:\Users\k_mar\AppData\Local\NVIDIA Corporation 2023-12-23 18:23 - 2023-12-23 18:23 - 000000000 ____D C:\Users\k_mar\ansel 2023-12-23 18:19 - 2023-12-23 18:19 - 002833478 _____ C:\Users\Felipe\Downloads\Gen-2 1913896190, Ocean and clouds are, felipestoker_nature_, brush_H 23, brush_A 07.mp4 2023-12-23 18:19 - 2023-12-23 18:19 - 002833478 _____ C:\Users\Felipe\Downloads\f800bf71-7a1d-4682-b981-a387b28937f7.mp4 2023-12-23 17:28 - 2023-12-24 15:24 - 000000000 ____D C:\Windows\pss 2023-12-23 12:26 - 2024-01-14 11:50 - 000000000 ____D C:\Users\Felipe\.cache 2023-12-23 12:26 - 2023-12-23 12:27 - 000000000 ____D C:\Users\Felipe\.matplotlib 2023-12-23 12:13 - 2023-12-23 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.10 2023-12-22 20:25 - 2023-12-22 20:25 - 000000000 _____ C:\Users\Felipe\0.14.1' 2023-12-22 19:59 - 2023-12-28 17:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains 2023-12-22 19:54 - 2023-12-22 19:54 - 000000000 ____D C:\Windows\system32\tmp 2023-12-22 19:53 - 2023-12-22 19:53 - 000005113 _____ C:\Users\Felipe\.bash_history 2023-12-22 19:43 - 2023-12-22 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git 2023-12-22 19:41 - 2023-12-22 19:41 - 060868040 _____ (The Git Development Community ) C:\Users\Felipe\Downloads\Git-2.43.0-64-bit.exe 2023-12-22 15:10 - 2023-12-22 15:10 - 065424852 _____ C:\Users\Felipe\Downloads\Superpatch Brasfoot 2024.rar 2023-12-22 15:10 - 2023-12-22 15:10 - 000000000 ____D C:\Users\Felipe\Downloads\Superpatch Brasfoot 2024 2023-12-22 15:03 - 2023-12-22 15:03 - 000000000 ____D C:\Users\Felipe\Downloads\Megapack Brasil 2023 V2(Agosto) 2023-12-22 15:02 - 2023-12-22 15:02 - 010181779 _____ C:\Users\Felipe\Downloads\Megapack Brasil 2023 V2(Agosto).zip 2023-12-22 09:15 - 2024-01-20 16:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2023-12-22 09:15 - 2023-12-22 09:15 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000004106 _____ C:\Windows\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-12-22 09:15 - 2023-12-22 09:15 - 000000000 ____D C:\Users\Felipe\ansel 2023-12-22 09:15 - 2021-09-14 00:39 - 002838384 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2023-12-22 09:15 - 2021-09-14 00:39 - 002186608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2023-12-22 09:15 - 2021-09-14 00:39 - 001293680 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2023-12-22 09:15 - 2021-09-14 00:39 - 000168304 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2023-12-22 09:15 - 2021-09-14 00:39 - 000144240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2023-12-22 09:15 - 2021-09-14 00:39 - 000078192 _____ C:\Windows\system32\FvSDK_x64.dll 2023-12-22 09:15 - 2021-09-14 00:39 - 000067952 _____ C:\Windows\SysWOW64\FvSDK_x86.dll 2023-12-22 09:13 - 2021-09-14 00:39 - 000136472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2023-12-22 09:13 - 2021-09-14 00:39 - 000069856 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2023-12-22 09:13 - 2021-09-14 00:39 - 000043408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\NvModuleTracker.sys 2023-12-22 09:13 - 2021-09-14 00:39 - 000037664 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll 2023-12-22 09:12 - 2021-09-16 00:28 - 001858672 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2023-12-22 09:12 - 2021-09-16 00:28 - 001858672 _____ C:\Windows\system32\vulkaninfo.exe 2023-12-22 09:12 - 2021-09-16 00:28 - 001474688 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2023-12-22 09:12 - 2021-09-16 00:28 - 001438832 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-12-22 09:12 - 2021-09-16 00:28 - 001438832 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2023-12-22 09:12 - 2021-09-16 00:28 - 001212544 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2023-12-22 09:12 - 2021-09-16 00:28 - 001097832 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2023-12-22 09:12 - 2021-09-16 00:28 - 001097832 _____ C:\Windows\system32\vulkan-1.dll 2023-12-22 09:12 - 2021-09-16 00:28 - 000951920 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2023-12-22 09:12 - 2021-09-16 00:28 - 000951920 _____ C:\Windows\SysWOW64\vulkan-1.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 001520760 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 001171064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 000716920 _____ C:\Windows\system32\nvofapi64.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 000676472 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 000645240 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 000577144 _____ C:\Windows\SysWOW64\nvofapi.dll 2023-12-22 09:12 - 2021-09-16 00:25 - 000564344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2023-12-22 09:12 - 2021-09-16 00:24 - 008854144 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2023-12-22 09:12 - 2021-09-16 00:24 - 002112120 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2023-12-22 09:12 - 2021-09-16 00:24 - 001595512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2023-12-22 09:12 - 2021-09-16 00:24 - 000919160 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2023-12-22 09:12 - 2021-09-16 00:24 - 000750200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2023-12-22 09:12 - 2021-09-16 00:24 - 000706168 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2023-12-22 09:12 - 2021-09-16 00:24 - 000447096 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2023-12-22 09:12 - 2021-09-16 00:23 - 007920760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2023-12-22 09:12 - 2021-09-16 00:23 - 005681280 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2023-12-22 09:12 - 2021-09-16 00:23 - 004987512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2023-12-22 09:12 - 2021-09-16 00:23 - 002925688 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2023-12-22 09:12 - 2021-09-16 00:23 - 000849016 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2023-12-22 09:12 - 2021-09-16 00:22 - 007280840 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2023-12-22 09:12 - 2021-09-16 00:21 - 006216336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2023-12-22 09:12 - 2021-09-14 00:39 - 000083133 _____ C:\Windows\system32\nvinfo.pb 2023-12-21 22:10 - 2023-12-21 22:10 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2023-12-21 22:10 - 2023-12-21 22:10 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2023-12-21 22:10 - 2023-12-21 22:10 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2023-12-21 22:10 - 2023-12-21 22:10 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2023-12-21 19:13 - 2024-01-25 10:47 - 000001052 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2023-12-21 19:13 - 2024-01-25 10:47 - 000001048 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2023-12-21 19:13 - 2024-01-25 04:18 - 000004112 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA 2023-12-21 19:13 - 2024-01-25 04:18 - 000003880 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore 2023-12-21 19:13 - 2024-01-25 04:18 - 000000000 ____D C:\Program Files (x86)\Dropbox 2023-12-21 19:13 - 2024-01-23 22:20 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Dropbox 2023-12-21 19:13 - 2024-01-23 22:20 - 000000000 ____D C:\Users\Felipe\AppData\Local\Dropbox 2023-12-21 19:13 - 2023-12-21 19:13 - 000790416 _____ (Dropbox, Inc.) C:\Users\Felipe\Downloads\DropboxInstaller.exe 2023-12-21 19:13 - 2023-12-21 19:13 - 000000000 ____D C:\Users\Felipe\AppData\Local\DropboxUpdate 2023-12-21 19:05 - 2023-12-21 19:05 - 004833832 _____ (Antibody Software ) C:\Users\Felipe\Downloads\wiztree_4_16_setup.exe 2023-12-20 13:31 - 2023-12-20 13:31 - 000010248 _____ C:\Users\k_mar\Downloads\Renovação Assinatura - Ação Wpp (1).xlsx 2023-12-20 13:30 - 2023-12-20 13:20 - 000010209 _____ C:\Users\k_mar\Downloads\Renovação Assinatura - Ação Wpp - Copia.xlsx 2023-12-20 13:20 - 2023-12-20 13:20 - 000010209 _____ C:\Users\k_mar\Downloads\Renovação Assinatura - Ação Wpp.xlsx 2023-12-20 13:16 - 2023-12-20 13:16 - 000000020 ___SH C:\Users\k_mar\ntuser.ini 2023-12-20 11:11 - 2023-12-20 11:11 - 000000000 ____D C:\ProgramData\Windows App Certification Kit 2023-12-20 11:11 - 2023-12-20 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2023-12-20 11:11 - 2023-12-20 11:11 - 000000000 ____D C:\Program Files\Application Verifier 2023-12-20 11:11 - 2023-12-20 11:11 - 000000000 ____D C:\Program Files (x86)\Application Verifier 2023-12-20 11:10 - 2023-12-20 11:14 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs 2023-12-20 11:08 - 2023-12-20 11:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2022 2023-12-20 11:07 - 2023-12-20 11:15 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Visual Studio Setup 2023-12-20 11:07 - 2023-12-20 11:08 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 2023-12-20 11:07 - 2023-12-20 11:07 - 000001447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk 2023-12-20 11:07 - 2023-12-20 11:07 - 000000000 ____D C:\ProgramData\Microsoft Visual Studio 2023-12-20 10:21 - 2024-01-25 16:23 - 000000000 ___RD C:\Users\Felipe\iCloudDrive 2023-12-20 10:21 - 2023-12-20 10:21 - 000003588 _____ C:\Windows\system32\Tasks\Apple Diagnostics 2023-12-19 14:48 - 2023-12-19 14:48 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\AIDA64 Reports 2023-12-19 14:47 - 2023-12-19 14:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire 2023-12-19 14:47 - 2023-12-19 14:47 - 000000000 ____D C:\Program Files (x86)\FinalWire 2023-12-19 10:07 - 2024-01-25 14:19 - 000000000 ___RD C:\Users\Felipe\OneDrive - Nanda Mac 2023-12-18 11:50 - 2023-12-18 11:50 - 000065748 _____ C:\Users\Felipe\Downloads\GOULART.DEZ.2023.pdf 2023-12-18 08:29 - 2023-12-18 08:29 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\Zoom 2023-12-18 08:28 - 2023-12-18 08:28 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2023-12-18 08:28 - 2023-12-18 08:28 - 000000000 ____D C:\Users\Felipe\AppData\Local\Zoom 2023-12-17 15:12 - 2023-12-17 15:12 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\stremio 2023-12-17 15:11 - 2023-12-17 15:11 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stremio 2023-12-17 15:11 - 2023-12-17 15:11 - 000000000 ____D C:\Users\Felipe\AppData\Local\Smart Code ltd 2023-12-17 13:23 - 2023-12-17 13:24 - 000000000 ____D C:\Windows\SysWOW64\directx 2023-12-17 13:23 - 2023-12-17 13:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RetroArch 2023-12-17 13:22 - 2024-01-06 11:15 - 000000000 ____D C:\RetroArch-Win64 2023-12-17 12:03 - 2023-12-17 12:03 - 000001205 _____ C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player FREE.lnk 2023-12-17 12:03 - 2023-12-17 12:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BS.Player 2023-12-17 12:01 - 2023-12-17 15:19 - 000000000 ____D C:\Users\Felipe\AppData\Local\transmission 2023-12-17 12:01 - 2023-12-17 15:12 - 000000000 ____D C:\ProgramData\Transmission 2023-12-17 10:54 - 2023-12-17 10:58 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\G HUB 2023-12-17 10:54 - 2023-12-17 10:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2023-12-17 10:54 - 2023-12-17 10:54 - 000000000 ____D C:\Program Files\LGHUB 2023-12-15 09:43 - 2023-12-21 21:26 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\Adobe 2023-12-15 08:37 - 2023-12-15 08:37 - 000000000 ____D C:\Users\Felipe\AppData\Local\Bytedance 2023-12-15 08:34 - 2023-12-15 08:37 - 000000000 ____D C:\Users\Felipe\AppData\Local\CapCut Drafts 2023-12-15 08:34 - 2023-12-15 08:34 - 000000028 _____ C:\Users\Felipe\AppData\Local\CapCutConfigure.ini 2023-12-15 08:34 - 2023-12-15 08:34 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CapCut 2023-12-15 08:34 - 2023-12-15 08:34 - 000000000 ____D C:\Users\Felipe\AppData\Local\VEDetector 2023-12-15 08:33 - 2023-12-15 08:34 - 000000000 ____D C:\Users\Felipe\AppData\Local\CapCut 2023-12-15 08:32 - 2023-12-15 08:32 - 002305440 _____ C:\Users\Felipe\Downloads\CapCut_7267140873131950085_installer.exe 2023-12-14 23:11 - 2023-03-05 13:55 - 000009537 _____ C:\Users\Felipe\OneDrive\Documents\cht8-2023-03-nandamac-tags.xlsx 2023-12-14 23:10 - 2023-11-26 22:03 - 000000178 ____R C:\Users\Felipe\OneDrive\Documents\Bloco de anotações de Felipe.url 2023-12-14 23:10 - 2023-06-25 15:16 - 000009716 _____ C:\Users\Felipe\OneDrive\Documents\GPTFoot.xlsx 2023-12-14 23:10 - 2023-06-12 17:03 - 000009751 _____ C:\Users\Felipe\OneDrive\Documents\Alimentos.xlsx 2023-12-14 23:09 - 2024-01-20 08:15 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3633606873-1387218457-3474124247-1001 2023-12-14 15:48 - 2023-12-14 15:48 - 000003117 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Last.fm Desktop Scrobbler.lnk 2023-12-14 15:47 - 2023-12-14 15:47 - 001332736 _____ C:\Users\Felipe\Downloads\LastFM_Scrobbler_3.1.29.msi 2023-12-14 15:40 - 2024-01-25 18:10 - 000000000 ____D C:\Users\Felipe\AppData\Local\Spotify 2023-12-14 15:40 - 2024-01-25 17:16 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Spotify 2023-12-14 15:40 - 2023-12-14 15:40 - 000001886 _____ C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2023-12-13 20:54 - 2023-12-13 20:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker 2023-12-13 20:54 - 2023-12-13 20:54 - 000000000 ____D C:\ProgramData\IObit 2023-12-13 20:54 - 2023-12-13 20:54 - 000000000 ____D C:\Program Files (x86)\IObit 2023-12-13 20:35 - 2023-12-13 20:35 - 000000000 ____D C:\Users\Felipe\AppData\Local\BootRepair 2023-12-13 20:33 - 2023-12-13 20:44 - 000000000 ____D C:\Program Files (x86)\EaseUS 2023-12-13 20:33 - 2023-12-13 20:33 - 000000000 ____D C:\Users\Felipe\AppData\Local\EPMUI 2023-12-13 20:33 - 2023-12-13 20:33 - 000000000 ____D C:\ProgramData\SystemAcCrux 2023-12-13 20:32 - 2023-12-13 20:44 - 000000000 ____D C:\Program Files\EaseUS 2023-12-13 20:30 - 2023-12-13 20:30 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\QtProject 2023-12-13 20:29 - 2021-03-26 11:07 - 003600896 _____ C:\Windows\system32\pwNative.exe 2023-12-13 20:29 - 2021-03-26 11:07 - 000019152 _____ C:\Windows\system32\pwdrvio.sys 2023-12-13 20:29 - 2021-03-26 11:07 - 000012504 _____ C:\Windows\system32\pwdspio.sys 2023-12-13 20:28 - 2023-12-13 20:45 - 000000000 ____D C:\Program Files\MiniTool Partition Wizard 12 2023-12-13 18:25 - 2023-12-13 18:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot 2023-12-13 18:17 - 2024-01-07 17:04 - 000000000 ____D C:\Users\Felipe\OneDrive\Documents\My Games 2023-12-13 15:33 - 2023-12-13 15:34 - 000000000 ____D C:\ProgramData\Intel Package Cache {1CEAC85D-2590-4760-800F-8DE5E91F3700} 2023-12-13 15:33 - 2023-12-13 15:33 - 000000000 ____D C:\Users\Felipe\Intel 2023-12-13 15:33 - 2023-12-13 15:33 - 000000000 ____D C:\ProgramData\Intel Package Cache {d8170687-85fa-4716-bafd-087205d0db72} 2023-12-13 15:33 - 2023-12-13 15:33 - 000000000 ____D C:\ProgramData\Intel Package Cache {9f9c9e51-d42f-4462-a27a-7d419da18045} 2023-12-13 15:33 - 2023-12-13 15:33 - 000000000 ____D C:\ProgramData\Intel Package Cache {29d6077f-6adb-42de-abac-1c60aeb0e237} 2023-12-13 15:33 - 2023-12-13 15:33 - 000000000 ____D C:\Program Files (x86)\Intel 2023-12-13 15:32 - 2023-12-13 15:42 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2023-12-13 15:32 - 2023-12-13 15:32 - 000000000 ____D C:\Users\Felipe\Downloads\me_win10_64_2037.15.0.1840 2023-12-13 15:32 - 2023-11-20 05:11 - 001296856 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys 2023-12-13 15:30 - 2023-12-13 15:32 - 000000000 ____D C:\Program Files (x86)\Realtek 2023-12-13 15:30 - 2023-12-13 15:29 - 002880280 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2023-12-13 15:19 - 2023-12-13 15:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2023-12-13 15:19 - 2023-12-13 15:19 - 000000000 ____D C:\Program Files\VS Revo Group 2023-12-13 15:15 - 2024-01-25 17:34 - 000000000 ____D C:\Users\Felipe\AppData\Local\Discord 2023-12-13 15:00 - 2024-01-18 15:56 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies Inc 2023-12-13 14:59 - 2024-01-18 15:56 - 000000000 ____D C:\Users\Felipe\AppData\Local\slack 2023-12-13 14:59 - 2023-12-13 14:59 - 000073040 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_xlcore.sys 2023-12-13 14:59 - 2023-12-13 14:59 - 000044880 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_bus_enum.sys 2023-12-13 14:59 - 2023-12-13 14:59 - 000032080 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_vir_hid.sys 2023-12-13 14:59 - 2023-12-13 14:59 - 000000000 ____D C:\Program Files\Logitech 2023-12-13 13:12 - 2023-12-13 13:12 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2023-12-13 13:10 - 2023-12-13 13:10 - 000000020 ___SH C:\Users\Felipe\ntuser.ini 2023-12-13 13:08 - 2024-01-25 14:18 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-12-13 13:08 - 2024-01-19 11:20 - 000000000 ____D C:\Windows\system32\Tasks\HP 2023-12-13 13:08 - 2023-12-13 18:25 - 000003414 _____ C:\Windows\system32\Tasks\update-S-1-5-21-3633606873-1387218457-3474124247-1001 2023-12-13 13:08 - 2023-12-13 13:08 - 000003600 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-12-13 13:08 - 2023-12-13 13:08 - 000003526 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2023-12-13 13:08 - 2023-12-13 13:08 - 000003376 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-12-13 13:08 - 2023-12-13 13:08 - 000003302 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2023-12-13 13:08 - 2023-12-13 13:08 - 000003042 _____ C:\Windows\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2023-12-13 13:08 - 2023-12-13 13:08 - 000002970 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2023-12-13 13:08 - 2023-12-13 13:08 - 000002802 _____ C:\Windows\system32\Tasks\update-sys 2023-12-13 13:08 - 2023-12-13 13:08 - 000002678 _____ C:\Windows\system32\Tasks\USER_ESRV_SVC_QUEENCREEK 2023-12-13 13:08 - 2023-12-13 13:08 - 000002604 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2023-12-13 13:08 - 2023-12-13 13:08 - 000002596 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0 2023-12-13 13:08 - 2023-12-13 13:08 - 000002508 _____ C:\Windows\system32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 2023-12-13 13:08 - 2023-12-13 13:08 - 000002256 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Felipe 2023-12-13 13:08 - 2023-12-13 13:08 - 000000000 ____D C:\Windows\system32\Tasks\ScreamingFrogSEOSpider 2023-12-13 13:08 - 2023-12-13 13:08 - 000000000 ____D C:\Windows\system32\Tasks\NCH Software 2023-12-13 13:08 - 2023-12-13 13:08 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2023-12-13 13:08 - 2023-12-13 13:08 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime 2023-12-13 13:08 - 2023-12-13 13:08 - 000000000 ____D C:\Windows\system32\Tasks\Abelssoft 2023-12-13 13:08 - 2020-11-18 23:37 - 000003392 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4234727422-2901898083-620259597-500 2023-12-13 13:07 - 2024-01-24 20:54 - 001773096 _____ C:\Windows\system32\PerfStringBackup.INI 2023-12-13 13:07 - 2023-12-13 13:08 - 000022863 _____ C:\Windows\diagwrn.xml 2023-12-13 13:07 - 2023-12-13 13:08 - 000022863 _____ C:\Windows\diagerr.xml 2023-12-13 13:06 - 2023-12-13 13:06 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2023-12-13 13:03 - 2024-01-25 15:33 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-12-13 13:03 - 2024-01-24 04:09 - 000653184 _____ C:\Windows\system32\FNTCACHE.DAT 2023-12-13 12:56 - 2023-12-13 13:03 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Crypto 2023-12-13 12:56 - 2023-12-13 12:56 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\SystemCertificates 2023-12-13 12:56 - 2023-12-13 12:56 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Network 2023-12-13 12:55 - 2023-12-13 13:03 - 000000000 ____D C:\Users\k_mar\AppData\Roaming\Microsoft\Crypto 2023-12-13 12:55 - 2023-12-13 12:55 - 000000000 ____D C:\Users\k_mar\AppData\Roaming\Microsoft\SystemCertificates 2023-12-13 12:55 - 2023-12-13 12:55 - 000000000 ____D C:\Users\k_mar\AppData\Roaming\Microsoft\Network 2023-12-13 12:47 - 2023-12-13 13:03 - 000000000 ____D C:\Windows\system32\config\bbimigrate 2023-12-13 12:46 - 2024-01-25 10:44 - 000000000 ____D C:\Users\Felipe 2023-12-13 12:46 - 2023-12-24 15:24 - 000000000 ____D C:\Users\k_mar 2023-12-13 12:46 - 2023-12-20 13:16 - 000000000 ____D C:\Users\k_mar\AppData\Roaming\Microsoft\Windows 2023-12-13 12:46 - 2023-12-13 13:10 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows 2023-12-13 12:46 - 2023-12-13 13:03 - 000000000 ____D C:\Users\k_mar\AppData\Roaming\Microsoft\Spelling 2023-12-13 12:46 - 2023-12-13 13:03 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Spelling 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Modelos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Meus Documentos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Menu Iniciar 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Dados de Aplicativos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Configurações Locais 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\AppData\Local\Histórico 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\AppData\Local\Dados de Aplicativos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Ambiente de Rede 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\k_mar\Ambiente de Impressão 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Modelos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Meus Documentos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Menu Iniciar 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Dados de Aplicativos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Configurações Locais 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programas 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\AppData\Local\Histórico 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\AppData\Local\Dados de Aplicativos 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Ambiente de Rede 2023-12-13 12:46 - 2023-12-13 12:46 - 000000000 _SHDL C:\Users\Felipe\Ambiente de Impressão 2023-12-13 12:45 - 2023-12-13 13:04 - 000000000 ____D C:\Windows\ServiceProfiles 2023-12-13 12:44 - 2023-12-13 12:44 - 000000000 ____D C:\Windows\InboxApps 2023-12-13 12:29 - 2023-12-13 12:29 - 000000000 ____D C:\Windows\SysWOW64\FxsTmp 2023-12-13 12:29 - 2023-12-13 12:29 - 000000000 ____D C:\Windows\system32\FxsTmp 2023-12-13 12:29 - 2023-12-13 12:29 - 000000000 ____D C:\Windows\addins 2023-12-13 12:27 - 2024-01-20 16:31 - 000000000 ____D C:\Program Files (x86)\MSBuild 2023-12-13 12:27 - 2023-12-14 13:19 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2023-12-13 12:27 - 2023-12-13 12:27 - 000000000 ____D C:\Program Files\Reference Assemblies 2023-12-13 12:27 - 2023-12-13 12:27 - 000000000 ____D C:\Program Files\MSBuild 2023-12-13 12:27 - 2023-12-13 12:27 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2023-12-13 12:16 - 2023-12-13 12:16 - 000008192 _____ C:\Windows\system32\config\userdiff 2023-12-13 12:00 - 2023-12-24 15:29 - 000000000 ___DC C:\Windows\Panther 2023-12-13 11:56 - 2023-12-13 11:57 - 000000000 ___HD C:\$GetCurrent 2023-12-13 11:55 - 2023-12-13 11:57 - 000000000 ____D C:\Program Files (x86)\WindowsInstallationAssistant 2023-12-13 11:43 - 2024-01-12 10:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-12-13 11:43 - 2024-01-10 23:51 - 000001011 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-12-13 11:43 - 2023-12-13 11:43 - 000002064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navegação privativa do Firefox.lnk 2023-12-12 20:15 - 2023-12-12 20:16 - 000000000 ___HD C:\$WinREAgent 2023-12-11 11:32 - 2023-12-11 11:32 - 000071560 _____ C:\Users\k_mar\Desktop\pageboy.webp 2023-12-07 22:21 - 2023-12-07 22:21 - 000050968 _____ (Python Software Foundation) C:\Windows\pyshellext.amd64.dll 2023-12-07 22:20 - 2023-12-07 22:20 - 000765208 _____ (Python Software Foundation) C:\Windows\py.exe 2023-12-07 22:20 - 2023-12-07 22:20 - 000763672 _____ (Python Software Foundation) C:\Windows\pyw.exe 2023-12-06 08:56 - 2023-12-06 08:56 - 002028026 _____ C:\Users\k_mar\Downloads\fernanda-ferraz-1080x1080 (1).zip 2023-12-06 08:56 - 2023-12-06 08:56 - 000000000 ____D C:\Users\k_mar\Downloads\fernanda-ferraz-1080x1080 (1) 2023-12-05 09:06 - 2023-12-05 09:06 - 001829104 _____ C:\Users\k_mar\Downloads\helaya-coelho-1080x1920.zip 2023-12-05 09:06 - 2023-12-05 09:06 - 000000000 ____D C:\Users\k_mar\Downloads\helaya-coelho-1080x1920 2023-12-04 17:23 - 2023-12-04 17:23 - 001895308 _____ C:\Users\k_mar\Downloads\carla-pedroso-20h30.zip 2023-12-04 17:23 - 2023-12-04 17:23 - 000000000 ____D C:\Users\k_mar\Downloads\carla-pedroso-20h30 2023-12-04 08:39 - 2023-12-04 08:39 - 000000000 ____D C:\Users\k_mar\Downloads\Live-04-12-19h-carla-pedroso (1) 2023-12-04 08:38 - 2023-12-04 08:38 - 001890810 _____ C:\Users\k_mar\Downloads\Live-04-12-19h-carla-pedroso (1).zip 2023-12-03 10:58 - 2023-12-03 10:58 - 000339668 _____ C:\Users\k_mar\Downloads\OneDrive_1_03-12-2023.zip 2023-12-03 10:58 - 2023-12-03 10:58 - 000000000 ____D C:\Users\k_mar\Downloads\OneDrive_1_03-12-2023 2023-12-02 19:49 - 2023-12-02 19:49 - 005053520 _____ C:\Users\k_mar\Downloads\GREEN BOOK - Consultório High Ticket - CHT12-protegido.pdf 2023-12-02 09:03 - 2023-12-02 09:03 - 000121317 _____ C:\Users\k_mar\Downloads\2 - Grupo VIP - Boas-vindas - Sábado.opus 2023-12-01 15:47 - 2023-12-01 15:47 - 000141121 _____ C:\Users\k_mar\Downloads\1 - Grupo VIP - Boas-vindas - Sexta-Feira (1).opus 2023-11-30 19:35 - 2023-11-30 19:35 - 000255375 _____ C:\Users\k_mar\Downloads\aula-03 (1).pdf 2023-11-29 19:39 - 2023-11-29 19:39 - 000000000 ____D C:\Users\Felipe\AppData\Local\Backup 2023-11-29 13:07 - 2023-10-04 01:31 - 002958880 _____ (HP Inc.) C:\Windows\system32\hpinkinsE311.exe 2023-11-29 13:07 - 2023-10-04 01:31 - 000399392 _____ (HP Inc.) C:\Windows\system32\hpinkstsE311LM.dll 2023-11-29 13:07 - 2023-10-04 01:31 - 000334368 _____ (HP Inc.) C:\Windows\system32\hpinkcoiE311.dll 2023-11-28 21:26 - 2023-11-28 21:26 - 000286552 _____ C:\Users\k_mar\Downloads\aula-02 (1).pdf 2023-11-27 12:53 - 2023-11-27 12:53 - 000000000 ____D C:\Users\k_mar\AppData\LocalLow\Temp 2023-11-26 20:52 - 2023-11-26 20:52 - 000336561 _____ C:\Users\k_mar\Downloads\aula-01 (1).pdf 2023-11-26 08:40 - 2023-11-26 08:40 - 000000000 ____D C:\Users\k_mar\Downloads\Nova pasta 2023-11-26 08:33 - 2023-11-26 08:33 - 000195647 _____ C:\Users\k_mar\Downloads\É amanha.waptt (2).opus 2023-11-17 12:58 - 2023-11-17 12:58 - 000000000 ____D C:\Users\k_mar\AppData\Local\Backup 2023-10-31 12:41 - 2023-10-31 12:41 - 000000000 ___RD C:\Users\k_mar\3D Objects ==================== Three months (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2024-01-25 18:15 - 2022-05-07 02:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-01-25 18:04 - 2022-02-28 16:44 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-01-25 17:24 - 2021-06-18 16:42 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Slack 2024-01-25 17:20 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SystemTemp 2024-01-25 17:20 - 2021-06-15 11:18 - 000000000 ____D C:\Program Files (x86)\Google 2024-01-25 16:52 - 2021-06-18 20:34 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Excel 2024-01-25 15:39 - 2021-06-18 17:07 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\discord 2024-01-25 14:39 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\AppReadiness 2024-01-25 14:20 - 2021-06-20 17:33 - 000000000 ____D C:\Users\Felipe\AppData\Local\CrashDumps 2024-01-25 14:20 - 2021-06-18 17:49 - 000000000 ____D C:\ProgramData\NVIDIA 2024-01-25 14:19 - 2021-06-18 17:26 - 000000000 ___HD C:\OneDriveTemp 2024-01-25 14:19 - 2021-06-15 11:17 - 000000000 ___RD C:\Users\Felipe\OneDrive 2024-01-25 14:18 - 2022-07-18 20:07 - 000012288 ___SH C:\DumpStack.log.tmp 2024-01-25 14:18 - 2022-05-07 02:17 - 000786432 _____ C:\Windows\system32\config\BBI 2024-01-25 14:17 - 2021-06-15 13:35 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Modelos 2024-01-25 11:53 - 2021-06-18 16:16 - 000000000 ____D C:\Users\Felipe\AppData\Local\D3DSCache 2024-01-25 11:47 - 2021-06-15 13:35 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Word 2024-01-25 11:38 - 2022-05-07 02:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-01-24 23:20 - 2022-03-16 14:51 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-01-24 20:54 - 2022-05-07 02:22 - 000000000 ____D C:\Windows\INF 2024-01-24 15:52 - 2021-06-22 11:23 - 000000000 ____D C:\Program Files\CCleaner 2024-01-24 15:13 - 2021-06-15 11:16 - 000000000 ____D C:\Users\Felipe\AppData\Local\Packages 2024-01-24 04:25 - 2022-05-07 02:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\system32\lxss 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\UUS 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SysWOW64\setup 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\SystemResources 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\WinMetadata 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\setup 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\oobe 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\appraiser 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\ShellComponents 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\Provisioning 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\BrowserCore 2024-01-24 04:08 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\bcastdvr 2024-01-24 03:51 - 2021-06-15 11:16 - 000000000 ___SD C:\Users\Felipe\AppData\Roaming\Microsoft\Credentials 2024-01-24 01:40 - 2022-05-07 02:17 - 000000000 ____D C:\Windows\CbsTemp 2024-01-22 19:03 - 2023-01-03 17:50 - 000095736 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe 2024-01-22 19:03 - 2023-01-03 17:50 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe 2024-01-22 19:03 - 2022-02-05 14:54 - 002754152 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll 2024-01-22 19:03 - 2022-02-05 14:54 - 000145000 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2024-01-22 19:00 - 2022-02-05 14:54 - 000644600 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll 2024-01-22 19:00 - 2022-02-05 14:54 - 000214632 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll 2024-01-22 19:00 - 2022-02-05 14:54 - 000194040 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll 2024-01-21 22:16 - 2022-04-09 20:36 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\FSX 2024-01-21 13:01 - 2021-07-25 19:50 - 000000000 ___RD C:\Users\Felipe\Dropbox 2024-01-21 11:06 - 2021-08-23 23:35 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\ClickUp 2024-01-21 11:06 - 2021-07-01 18:09 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Notion 2024-01-20 16:32 - 2021-06-15 11:21 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2024-01-20 16:31 - 2021-06-15 13:35 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2024-01-20 16:31 - 2021-06-15 11:21 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2024-01-19 16:15 - 2020-11-18 23:34 - 000000000 ____D C:\ProgramData\Packages 2024-01-19 16:14 - 2021-06-18 19:00 - 000000000 ____D C:\Users\Felipe\AppData\Local\PlaceholderTileLogoFolder 2024-01-19 11:20 - 2022-03-12 16:37 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2024-01-19 08:35 - 2020-11-18 23:32 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-01-18 14:53 - 2021-08-23 23:12 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Evernote 2024-01-17 22:20 - 2021-08-23 23:31 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Asana 2024-01-17 12:31 - 2021-06-18 16:29 - 000000000 ____D C:\Users\Felipe\AppData\Local\SquirrelTemp 2024-01-16 14:21 - 2021-06-30 13:14 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Code 2024-01-14 21:48 - 2023-01-23 11:17 - 000000000 ___HD C:\adobeTemp 2024-01-14 12:06 - 2022-04-23 11:45 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\GitHub Desktop 2024-01-14 12:01 - 2022-04-23 11:45 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc 2024-01-14 11:08 - 2021-06-18 16:16 - 000000000 ____D C:\ProgramData\Package Cache 2024-01-12 10:54 - 2021-12-16 10:31 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-01-11 22:16 - 2021-07-15 12:38 - 000918944 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2024-01-11 21:18 - 2021-06-18 16:17 - 000000000 ____D C:\Program Files\Adobe 2024-01-10 21:25 - 2021-06-15 11:16 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Adobe 2024-01-10 21:24 - 2021-06-18 16:17 - 000000000 ____D C:\Program Files\Common Files\Adobe 2024-01-10 21:22 - 2021-06-15 11:23 - 000000000 ____D C:\ProgramData\Adobe 2024-01-10 21:20 - 2021-06-15 11:23 - 000000000 ____D C:\Program Files (x86)\Adobe 2024-01-10 15:52 - 2023-10-01 04:04 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView 2024-01-10 15:52 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2024-01-10 15:52 - 2022-05-07 02:24 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2024-01-10 15:52 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\ShellExperiences 2024-01-10 11:34 - 2023-06-08 10:41 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\obsidian 2024-01-10 09:33 - 2021-07-08 01:18 - 000000000 ____D C:\Program Files\dotnet 2024-01-10 09:33 - 2021-06-15 11:26 - 000000000 ____D C:\Windows\system32\MRT 2024-01-10 09:29 - 2021-07-16 11:21 - 189718008 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2024-01-09 22:18 - 2021-06-15 11:45 - 000000000 ____D C:\Program Files\Microsoft Office 2024-01-07 18:16 - 2021-07-08 01:18 - 000000000 ____D C:\Program Files\PowerToys 2024-01-04 00:11 - 2022-05-07 02:24 - 000000000 ____D C:\Windows\system32\SecurityHealth 2024-01-03 21:32 - 2021-06-18 17:29 - 000000000 ____D C:\Users\Felipe\AppData\Local\Steam 2024-01-03 21:30 - 2021-07-04 00:42 - 000001030 _____ C:\Users\Felipe\Steam.lnk 2024-01-03 16:38 - 2021-06-15 11:16 - 000000000 ____D C:\Users\Felipe\AppData\Local\ConnectedDevicesPlatform 2023-12-28 17:43 - 2022-04-16 15:10 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\JetBrains 2023-12-28 17:36 - 2022-04-16 14:52 - 000000000 ____D C:\Program Files\JetBrains 2023-12-27 14:15 - 2021-06-18 23:22 - 000000000 ____D C:\Users\Felipe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam ==================== Files in the root of some directories ======== 2003-03-20 20:45 - 2003-03-20 20:45 - 000000000 ____H () C:\ProgramData\sdpsenv.dat 2022-03-08 05:46 - 2022-03-08 05:46 - 000000048 ____H () C:\Program Files (x86)\ylos9p9pzn.dat 2021-08-25 09:29 - 2021-08-25 18:04 - 000000016 _____ () C:\Users\Felipe\AppData\Roaming\obs-virtualcam.txt 2021-06-23 11:41 - 2022-06-08 15:35 - 000001456 _____ () C:\Users\Felipe\AppData\Local\Adobe Salvar para Web 13.0 Prefs 2021-07-19 00:16 - 2022-02-26 13:42 - 000001456 _____ () C:\Users\Felipe\AppData\Local\Adobe Save for Web 13.0 Prefs 2021-08-07 18:34 - 2021-08-07 18:35 - 000000042 _____ () C:\Users\Felipe\AppData\Local\Autosofted License.txt 2023-12-15 08:34 - 2023-12-15 08:34 - 000000028 _____ () C:\Users\Felipe\AppData\Local\CapCutConfigure.ini 2021-06-24 14:25 - 2021-06-24 14:25 - 000000000 _____ () C:\Users\Felipe\AppData\Local\oobelibMkey.log 2021-07-30 13:01 - 2021-07-30 23:49 - 000000128 _____ () C:\Users\Felipe\AppData\Local\PUTTY.RND 2021-06-29 00:37 - 2021-06-29 01:47 - 000007601 _____ () C:\Users\Felipe\AppData\Local\resmon.resmoncfg 2021-06-18 20:48 - 2021-06-18 20:48 - 000000003 _____ () C:\Users\Felipe\AppData\Local\updater.log 2021-06-18 20:48 - 2023-12-13 18:25 - 000000424 _____ () C:\Users\Felipe\AppData\Local\UserProducts.xml ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================