Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14807 usuários registrados
O último membro registrado é Costa24

Os nossos membros postaram um total de 36044 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por Costa24 Hoje à(s) 10:19

Quem está conectado?
19 usuários online :: 0 registrados, 0 invisíveis e 19 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

março 2024
SegTerQuaQuiSexSábDom
    123
45678910
11121314151617
18192021222324
25262728293031

Calendário Calendário


Aviso de Segurança

3 participantes

Ir para baixo

Aviso de Segurança Empty Aviso de Segurança

Mensagem por Vanessa B Seg 14 Abr 2014, 20:41

Meu PC reiniciou e apareceu essa mensagem, não sei de onde veio, já fiz algumas pesquisas de não encontrei o que significa. Estou com medo que seja algo perigoso e que possa afetar o meu PC
img: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Seg 14 Abr 2014, 20:57

Aviso de Segurança 648673379  Oi Vanessa.

Aviso de Segurança 772309 Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Seg 14 Abr 2014, 21:14

# AdwCleaner v3.023 - Report created 14/04/2014 at 21:08:45
# Updated 01/04/2014 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)
# Username : Vanessa - VANESSA-PC
# Running from : C:\Users\Vanessa\Downloads\AdwCleaner.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Vanessa\AppData\Local\AVG SafeGuard toolbar
Folder Deleted : C:\Users\Vanessa\AppData\Roaming\webssearches

***** [ Shortcuts ] *****

Shortcut Disinfected : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Shortcut Disinfected : C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Shortcut Disinfected : C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Shortcut Disinfected : C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Shortcut Disinfected : C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
Shortcut Disinfected : C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk

***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Data Restored : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Key Deleted : HKLM\Software\webssearchesSoftware

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17041

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v27.0.1 (pt-BR)

[ File : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default\prefs.js ]

Line Deleted : user_pref("browser.newtab.url", "hxxp://istart.webssearches.com/newtab/?type=nt&ts=1397515884&from=amt&uid=SAMSUNGXHD322HJ_S1RLJ50S926680");
Line Deleted : user_pref("browser.startup.homepage", "hxxp://istart.webssearches.com/?type=hp&ts=1397515884&from=amt&uid=SAMSUNGXHD322HJ_S1RLJ50S926680");

-\\ Google Chrome v34.0.1847.116

[ File : C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [35204 octets] - [23/01/2014 14:58:35]
AdwCleaner[R1].txt - [7351 octets] - [14/04/2014 19:59:33]
AdwCleaner[R2].txt - [5809 octets] - [14/04/2014 21:06:58]
AdwCleaner[S0].txt - [1393 octets] - [22/03/2014 19:50:11]
AdwCleaner[S1].txt - [7148 octets] - [14/04/2014 20:01:01]
AdwCleaner[S2].txt - [3659 octets] - [14/04/2014 21:08:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [3719 octets] ##########
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Seg 14 Abr 2014, 21:16

Aviso de Segurança 772309 Faça o download do Malwarebytes em um destes links abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para instalá-lo e executá-lo corretamente siga, por gentileza, as dicas desta postagem:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Na sua próxima resposta poste este log (relatório) do Malwarebytes.

Ficamos no aguardo.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Ter 15 Abr 2014, 14:37

Malwarebytes Anti-Malware (PRO) 1.75.0.1300
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Versão da Base de Dados:  v2014.04.14.08

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17041
Vanessa :: VANESSA-PC [administrador]

Proteção: Permitir

14/04/2014 21:23:11
mbam-log-2014-04-14 (21-23-11).txt

Tipo de Verificação:  Verificação Completa  (C:\|D:\|E:\|F:\|)
Opções de verificações ativadas: Memória | Inicialização | Registro | Sistema de arquivos  | Heurística/Extra | Heurística/Shuriken | PUP | PUM
Opções de verificação desativadas: P2P
Objetos escaneados:  664995
Tempo decorrido: 3 hora(s), 34 minuto(s), 45 segundo(s)

Processos de Memória Detectados: 1
C:\Users\Vanessa\AppData\Roaming\ContentExplorer\ContentExplorer.exe (PUP.Optional.ContentExplorer.A) -> 3700 -> Será deletado na próxima inicialização.

Módulos de Memória Detectados: 0
(Não foram detectados ítens maliciosos)

Chaves de Registro Detectadas: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentExplorer (PUP.Optional.ContentExplorer.A) -> Enviado para a Quarentena e deletado com sucesso.

Valores de Registro Detectadas: 1
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|ContentExplorer (PUP.Optional.ContentExplorer.A) -> Data: "C:\Users\Vanessa\AppData\Roaming\ContentExplorer\ContentExplorer.exe" -> Enviado para a Quarentena e deletado com sucesso.

Itens de Dados no Registro Detectadas: 0
(Não foram detectados ítens maliciosos)

Pastas Detectadas: 1
C:\Users\Vanessa\AppData\Roaming\ContentExplorer (PUP.Optional.ContentExplorer.A) -> Será deletado na próxima inicialização.

Arquivos Detectados: 17
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\RSHP.exe.vir (PUP.Optional.IEPluginService.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupTab.dll.vir (PUP.Optional.SupTab.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\IePluginService\PluginService.exe.vir (PUP.Optional.IePluginService.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\WPM\wprotectmanager.exe.vir (PUP.Optional.WpManager) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Users\Vanessa\AppData\Roaming\SupTab\SupTab.dll.vir (PUP.Optional.SupTab.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Cache\f_013f3f (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000001 (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Temp\fullpackage_temp1397515840\alilog.dll (PUP.Optional.SkyTech.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Temp\fullpackage_temp1397515840\package1.zip (PUP.Optional.SkyTech.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Temp\fullpackage_temp1397515840\tmp\SupTab.exe (PUP.Optional.IePluginService.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Temp\fullpackage_temp1397515840\tmp\wpm.exe (PUP.Optional.WpManager) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Roaming\ContentExplorer\ContentExplorer.exe (PUP.Optional.ContentExplorer.A) -> Será deletado na próxima inicialização.
C:\Users\Vanessa\AppData\Roaming\ContentExplorer\RootCert.cer (PUP.Optional.ContentExplorer.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Roaming\ContentExplorer\makecert.exe (PUP.Optional.ContentExplorer.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Roaming\ContentExplorer\uninstall.exe (PUP.Optional.ContentExplorer.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx (PUP.Optional.QuickStart.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml (PUP.Optional.WebsSearches.A) -> Enviado para a Quarentena e deletado com sucesso.

(fim)
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Ter 15 Abr 2014, 14:45

Aviso de Segurança 772309  Desative temporariamente seu antivírus para evitar conflitos.

Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Selecione e copie todo o texto destacado em vermelho que te passei.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Ter 15 Abr 2014, 19:09

Power Max escreveu:Aviso de Segurança 772309  Desative temporariamente seu antivírus para evitar conflitos.

Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Selecione e copie todo o texto destacado em vermelho que te passei.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Zoek.exe v5.0.0.0 Updated 14-April-2014
Tool run by Vanessa on 15/04/2014 at 18:28:58,80.
Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vanessa\Downloads\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

15/04/2014 18:35:08 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
#      102.54.94.97     rhino.acme.com          # source server
#       38.25.63.10     x.acme.com              # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1       localhost
::1             localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater18.0.5 deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\vToolbarUpdater18.0.5 deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default\prefs.js:
user_pref("browser.search.defaultenginename", "webssearches");
user_pref("browser.search.selectedEngine", "webssearches");
user_pref("keyword.URL", "");

Added to C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

==== Deleting Files \ Folders ======================

C:\Users\Vanessa\daemonprocess.txt deleted
C:\extensions deleted
C:\Users\Vanessa\AppData\Roaming\GetRightToGo deleted
C:\Users\Vanessa\AppData\Local\CRE deleted
C:\Users\Vanessa\AppData\Local\cache deleted
C:\Users\Vanessa\Downloads\SweetImSetup.exe deleted
C:\Users\Vanessa\Downloads\FFSetupSoftonic270.exe deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG SafeGuard toolbar deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted
C:\windows\SysNative\tasks\Go for FilesUpdate deleted
C:\user.js deleted
"C:\Users\Vanessa\AppData\Local\{A240339F-3887-4896-AD7E-AF2958572D6E}" deleted
"C:\Users\Vanessa\AppData\Roaming\Vso" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{ABDE892B-13A8-4d1b-88E6-365A6E755758}"="C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext" [18/12/2011 14:13]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{0303e6fc-c062-47f1-825d-73e5e97d1d43}"="C:\Program Files (x86)\LyricsSeeker\133.xpi" []

==== Firefox Extensions ======================

ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default
- Orkut Manager - %ProfilePath%\extensions\om.brunolm@gmail.com
- Stylish - %ProfilePath%\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}
- Greasemonkey - %ProfilePath%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default
95812430959AE88CDD0301AB3A71913B - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash
884705AD43780C86782935D5B1F1E4DE - C:\Users\Vanessa\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll - Google Talk Plugin Video Accelerator
E85BC9AF3B4481B875F5A9BD73E8732F - C:\Users\Vanessa\AppData\Roaming\Mozilla\plugins\npo1d.dll - Google Talk Plugin Video Renderer
683B6A2376FA62A797A9DC83807CACA8 - C:\Users\Vanessa\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll - Google Talk Plugin
CFAF7B67C78D09D79688AEDCA3D090E2 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll - Google Update
4AE054AAF74F93566720766CBC9A0E64 - C:\Users\Vanessa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
8FBED84A67CD0D424428B32B17B6E5C9 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll - RealNetworks(tm) Chrome Background Extension Plug-In (32-bit)
CC021B4BAC2EDC0789FE42D45B183959 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll - RealPlayer(tm) HTML5VideoShim Plug-In (32-bit)
B6A800D881A0176C544988870861E798 - C:\Windows\SysWoW64\Adobe\Director\np32dsw.dll - Shockwave for Director / Shockwave for Director


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
jfmjfhklogoienhpfnppmbcbjfjnkonk - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx[18/12/2011 14:13]
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx[02/03/2012 11:53]

Google Docs - Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Use Search Asst"="yes"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"Default"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com"
"SearchAssistant"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
"Use Search Asst"="no"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Reset Google Chrome ======================

C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-2217399279-2482454507-1961363816-1001\Software\Mozilla\Firefox\Extensions\{0303e6fc-c062-47f1-825d-73e5e97d1d43} deleted successfully

==== shortcuts on Users Desktops ======================

C:\Users\Vanessa\Desktop\chrome - Atalho.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vanessa\Desktop\Programas\Adicionar um dispositivo - Photosmart D110 series.lnk - C:\Program Files (x86)\HP\Digital Imaging\{DBC1DE57-B55A-4D57-9769-1DB9BE506AF7}\hpzstub.exe -AddADevice
C:\Users\Vanessa\Desktop\Programas\Adobe Creative Cloud.lnk - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe --appletID=HomePanel_BL --appletVersion=1.0
C:\Users\Vanessa\Desktop\Programas\Adobe Reader XI.lnk - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
C:\Users\Vanessa\Desktop\Programas\aTube Catcher.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
C:\Users\Vanessa\Desktop\Programas\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\Users\Vanessa\Desktop\Programas\Central de Soluções HP.lnk -  
C:\Users\Vanessa\Desktop\Programas\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Vanessa\Desktop\Programas\Free Offers.lnk - C:\Program Files (x86)\Real\RealPlayer\freeoffers.rnx
C:\Users\Vanessa\Desktop\Programas\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vanessa\Desktop\Programas\HP ePrinterCenter.lnk - C:\Program Files (x86)\HP\Digital Imaging\AppStudio\hpzsip.url
C:\Users\Vanessa\Desktop\Programas\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
C:\Users\Vanessa\Desktop\Programas\Last.fm Scrobbler.lnk - C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe
C:\Users\Vanessa\Desktop\Programas\Loja de Suprimentos HP.lnk - C:\Program Files (x86)\HP\HPSSUPPLY\hpqSSupply.exe
C:\Users\Vanessa\Desktop\Programas\MP3 Downloader.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe  /MP3DOWNLOADER
C:\Users\Vanessa\Desktop\Programas\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Vanessa\Desktop\Programas\QuickTime Player.lnk - C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe
C:\Users\Vanessa\Desktop\Programas\RealPlayer.lnk - C:\program files (x86)\real\realplayer\RealPlay.exe /launch:desktop
C:\Users\Vanessa\Desktop\Programas\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Vanessa\Desktop\Programas\Skype.lnk - C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
C:\Users\Vanessa\Desktop\Programas\Video Search.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe  /VIDEOSEARCH
C:\Users\Vanessa\Desktop\Programas\Webcam videocap.lnk - C:\Program Files (x86)\ETRON\WebCam\X64\VideoCap.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\AVG 2014.lnk - C:\Program Files (x86)\AVG\AVG2014\avgui.exe
C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==== shortcuts in Users Start Menu ======================

C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG 2014.lnk - C:\Program Files (x86)\AVG\AVG2014\avgui.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -  
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Last.fm Scrobbler.lnk - C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Vanessa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Live Messenger.lnk - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyServer"="http=127.0.0.1:50402;https=127.0.0.1:50402"
"ProxyOverride"="<-loopback>"
"ProxyEnable"=dword:00000001

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ares deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Browser companion helper deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Browser Infrastructure Helper deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PlusService deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ROC_roc_dec12 deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vProt deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vanessa\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Vanessa\AppData\Local\Mozilla\Firefox\Profiles\uq9x1nle.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=321 folders=42 50555489 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Vanessa\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Ter 15 Abr 2014, 19:37

Ficou faltou uma parte no final do log do Zoek, copie ele todo e poste aqui no seu tópico, por gentileza.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Ter 15 Abr 2014, 19:52

Power Max escreveu:Ficou faltou uma parte no final do log do Zoek, copie ele todo e poste aqui no seu tópico, por gentileza.
Por acaso seria isso?
C:\zoek\in\RECYCLER
"C:\zoek\in\WINDOWSTEMP"
"C:\zoek\in\USERTEMP"
C:\zoek

Pois o que eu tenho aqui acaba logo onde eu postei. Caso você queira conferir o arquivo, eu upei ele aqui:
http:*//www.4shared.com*/file/14SxDSGaba/zoek-results.html*
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Ter 15 Abr 2014, 19:54

Normalmente quando ele fica incompleto é porque ele ainda está fazendo a limpeza. Ele já concluiu ou ainda está executando?

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Ter 15 Abr 2014, 20:01

Power Max escreveu:Normalmente quando ele fica incompleto é porque ele ainda está fazendo a limpeza. Ele já concluiu ou ainda está executando?
Ele concluiu e pediu para o meu pc reiniciar.
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Ter 15 Abr 2014, 20:06

Vanessa B escreveu:Ele concluiu e pediu para o meu pc reiniciar.
Sim, e aí você reiniciou, né? Se tiver feito assim está certo.
__________________________________________________

Aviso de Segurança 772309 Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o programa acima é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Ter 15 Abr 2014, 22:06

Power Max escreveu:
Vanessa B escreveu:Ele concluiu e pediu para o meu pc reiniciar.
Sim, e aí você reiniciou, né? Se tiver feito assim está certo.
__________________________________________________

Aviso de Segurança 772309  Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o programa acima é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.
Sim, reiniciei.

o log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Ultimate x64
Ran by Vanessa on 15/04/2014 at 21:42:30,79
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yuna software
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2217399279-2482454507-1961363816-1001\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\baidu
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\yuna software
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\messenger plus! for skype_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\messenger plus! for skype_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\plusskypeservice_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\plusskypeservice_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\messenger plus! for skype
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASMANCS



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\messenger plus! for skype"
Successfully deleted: [Folder] "C:\Users\Vanessa\appdata\locallow\myashampoo"
Successfully deleted: [Folder] "C:\Program Files (x86)\yuna software"



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 15/04/2014 at 21:59:16,00
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Ter 15 Abr 2014, 22:08

Aviso de Segurança 772309  Baixe o [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] e salve-o no Desktop (Área de Trabalho)

Obs: Ao acessar o link acima, clique no botão Download Now 64-Bit Version

*Execute o FRST e aceite o contrato

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Clique [Scan]

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Ao término clique [OK] > [OK]

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Serão criados dois relatórios no Desktop: FRST.txt e Addition.txt

Poste estes dois relatórios em sua próxima resposta. (Obs: se não couber em uma só resposta, pode dividi-la em mais postagens).

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Qua 16 Abr 2014, 16:21

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-04-2014 02
Ran by Vanessa (administrator) on VANESSA-PC on 16-04-2014 15:35:08
Running from C:\Users\Vanessa\Desktop
Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Download link for 64-Bit Version: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

==================== Processes (Whitelisted) =================

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(TeamViewer GmbH) C:\Users\Public\temp\TeamViewer\Version8\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Stardock Corporation) C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(BitTorrent Inc.) C:\Users\Vanessa\AppData\Roaming\uTorrent\uTorrent.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Google) C:\Users\Vanessa\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
(Last.fm) C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunes.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe


==================== Registry (Whitelisted) ==================

HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-05-31] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2013-03-20] (Microsoft Corporation)
HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\...\Run: [CursorFX] => C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe [417280 2010-03-23] (Stardock Corporation)
HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6563608 2014-01-06] (SUPERAntiSpyware)
HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\...\Run: [uTorrent] => C:\Users\Vanessa\AppData\Roaming\uTorrent\uTorrent.exe [905296 2014-01-23] (BitTorrent Inc.)
HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272832 2014-01-10] (Microsoft Corporation)
HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\...\MountPoints2: {6f52be7e-faf1-11df-a2d7-806e6f6e6963} - D:\BlueBirds.exe
AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found

==================== Internet (Whitelisted) ====================

ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=127.0.0.1:50402;https=127.0.0.1:50402
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs =
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
DPF: HKLM-x32 {5D6F45B3-9043-443D-A792-115447494D24} [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 10.1.1.1
Tcpip\..\Interfaces\{4787DBB3-8C59-4DFD-AB53-0FEA65075E18}: [NameServer]201.10.1.2 201.10.120.3

FireFox:
========
FF ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default
FF NewTab: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
FF Keyword.URL: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=15.0.1.13 - c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprjplug;version=15.0.1.13 - c:\program files (x86)\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.1.13 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.1.13 - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=15.0.1.13 - c:\program files (x86)\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Vanessa\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Vanessa\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Vanessa\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Vanessa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Vanessa\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Vanessa\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin ProgramFiles/Appdata: C:\Users\Vanessa\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\buscape.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mercadolivre.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-br.xml
FF Extension: Orkut Manager - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default\Extensions\om.brunolm@gmail.com [2011-04-30]
FF Extension: Stylish - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8} [2011-10-08]
FF Extension: Greasemonkey - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\uq9x1nle.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2012-05-11]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-06-05]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2011-12-18]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-06-05]

Chrome:
=======
CHR Extension: (Docs) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-14]
CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2014-04-15]
CHR Extension: (Skype Click to Call) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-04-15]
CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2011-12-18]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-03-02]

==================== Services (Whitelisted) =================

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1473280 2014-04-03] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3655184 2014-04-01] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 TeamViewer8; C:\Users\Public\temp\TeamViewer\Version8\TeamViewer_Service.exe [4150112 2013-06-13] (TeamViewer GmbH)
S2 MsgPlusService; "C:\Program Files (x86)\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe" [X]
S2 PCAppStoreSvc_{PCAppStore_4.0.6.4959}; C:\Program Files (x86)\Baidu Security\PC App Store\4.0.6.4959\PCAppStoreSvc.exe [X]
S2 PCFasterSvc_{PCFaster_3.7.0.0}; C:\Program Files (x86)\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe [X]

==================== Drivers (Whitelisted) ====================

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [236824 2014-04-01] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [192792 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [236824 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [324376 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130840 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [32536 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-03-31] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [49952 2014-03-31] (AVG Technologies)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MODEMCSA; C:\Windows\system32\drivers\MODEMCSA.sys [24064 2009-07-13] (Microsoft Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [47632 2010-01-26] (CACE Technologies, Inc.)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-11-29] ()
R3 usbet; C:\Windows\System32\DRIVERS\ETdrv.sys [181760 2010-01-11] (Etron)
U3 aue23hvz; C:\Windows\System32\Drivers\aue23hvz.sys [0 ] (Microsoft Corporation)
S3 PCFApiUtil; \??\C:\Program Files (x86)\Baidu Security\PC Faster\3.7.0.0\PCFApiUtil64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-04-16 15:35 - 2014-04-16 15:35 - 00019090 _____ () C:\Users\Vanessa\Desktop\FRST.txt
2014-04-16 15:34 - 2014-04-16 15:35 - 00000000 ____D () C:\FRST
2014-04-16 15:33 - 2014-04-16 15:33 - 02158592 _____ (Farbar) C:\Users\Vanessa\Desktop\FRST64.exe
2014-04-16 15:15 - 2014-04-16 15:15 - 00000985 _____ () C:\Users\Public\Desktop\Last.fm Scrobbler.lnk
2014-04-16 15:13 - 2014-04-16 15:14 - 14916216 _____ (Last.fm ) C:\Users\Vanessa\Downloads\Last.fm-2.1.36.exe
2014-04-15 21:59 - 2014-04-15 21:59 - 00002094 _____ () C:\Users\Vanessa\Desktop\JRT.txt
2014-04-15 21:42 - 2014-04-15 21:42 - 00000000 ____D () C:\Windows\ERUNT
2014-04-15 21:13 - 2014-04-15 21:13 - 01016261 _____ (Thisisu) C:\Users\Vanessa\Downloads\JRT.exe
2014-04-15 18:49 - 2014-04-15 19:01 - 00000079 _____ () C:\folders.log
2014-04-15 18:49 - 2014-04-15 19:01 - 00000000 ____D () C:\zoek
2014-04-15 18:34 - 2014-04-15 19:01 - 00020487 _____ () C:\zoek-results.log
2014-04-15 18:28 - 2014-04-15 18:51 - 00000000 ____D () C:\zoek_backup
2014-04-15 15:05 - 2014-04-15 15:19 - 01285120 _____ () C:\Users\Vanessa\Downloads\zoek.exe
2014-04-15 14:11 - 2014-04-15 14:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-14 21:06 - 2014-04-14 21:06 - 01426178 _____ () C:\Users\Vanessa\Downloads\AdwCleaner.exe
2014-04-14 20:52 - 2014-04-14 20:53 - 00001814 _____ () C:\Users\Vanessa\Desktop\chrome - Atalho.lnk
2014-04-14 20:02 - 2014-04-15 19:03 - 00005890 _____ () C:\Windows\PFRO.log
2014-04-14 18:58 - 2014-04-14 18:58 - 00000159 _____ () C:\Users\Vanessa\Documents\dados iracema.txt
2014-04-13 15:57 - 2014-04-16 14:15 - 00000560 _____ () C:\Windows\setupact.log
2014-04-13 15:57 - 2014-04-13 15:57 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-12 11:15 - 2014-03-06 05:32 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-12 11:15 - 2014-03-06 04:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-12 11:14 - 2014-03-06 07:21 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-12 11:14 - 2014-03-06 06:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-12 11:14 - 2014-03-06 06:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-12 11:14 - 2014-03-06 06:19 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-12 11:14 - 2014-03-06 05:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-12 11:14 - 2014-03-06 05:57 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-12 11:14 - 2014-03-06 05:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-12 11:14 - 2014-03-06 05:53 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-12 11:14 - 2014-03-06 05:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-12 11:14 - 2014-03-06 05:39 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-12 11:14 - 2014-03-06 05:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-12 11:14 - 2014-03-06 05:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-12 11:14 - 2014-03-06 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-12 11:14 - 2014-03-06 05:28 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-12 11:14 - 2014-03-06 05:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-12 11:14 - 2014-03-06 05:11 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-12 11:14 - 2014-03-06 05:09 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-12 11:14 - 2014-03-06 05:03 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-12 11:14 - 2014-03-06 05:02 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-12 11:14 - 2014-03-06 05:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-12 11:14 - 2014-03-06 05:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-12 11:14 - 2014-03-06 04:56 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-12 11:14 - 2014-03-06 04:48 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-12 11:14 - 2014-03-06 04:47 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-12 11:14 - 2014-03-06 04:46 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-12 11:14 - 2014-03-06 04:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-12 11:14 - 2014-03-06 04:45 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-12 11:14 - 2014-03-06 04:42 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-12 11:14 - 2014-03-06 04:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-12 11:14 - 2014-03-06 04:36 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-12 11:14 - 2014-03-06 04:22 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-12 11:14 - 2014-03-06 04:21 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-12 11:14 - 2014-03-06 04:13 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-12 11:14 - 2014-03-06 04:11 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-12 11:14 - 2014-03-06 04:07 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-12 11:14 - 2014-03-06 04:01 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-12 11:14 - 2014-03-06 03:53 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-12 11:14 - 2014-03-06 03:46 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-12 11:14 - 2014-03-06 03:40 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-12 11:14 - 2014-03-06 03:36 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-12 11:14 - 2014-03-06 03:22 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-12 11:14 - 2014-03-06 02:58 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-12 11:14 - 2014-03-06 02:50 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-12 11:14 - 2014-03-06 02:43 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-12 11:14 - 2014-03-06 02:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-12 11:14 - 2014-03-06 02:36 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-10 21:48 - 2014-04-10 21:48 - 03274874 _____ () C:\Users\Vanessa\Documents\AULA - VÍRUS (ronualdo).pptx
2014-04-09 17:03 - 2014-03-04 06:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-09 17:03 - 2014-03-04 06:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-09 17:03 - 2014-03-04 06:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-09 17:03 - 2014-03-04 06:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-09 17:03 - 2014-03-04 06:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-09 17:03 - 2014-03-04 06:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-09 17:03 - 2014-03-04 06:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-09 17:03 - 2014-03-04 06:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-09 17:03 - 2014-03-04 06:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-09 17:03 - 2014-03-04 05:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-09 17:03 - 2014-03-04 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-04 19:52 - 2012-12-28 14:33 - 00702881 _____ () C:\Users\Vanessa\Desktop\WAT Fix.exe
2014-04-04 19:37 - 2014-03-02 16:43 - 00000000 ____D () C:\Users\Vanessa\Desktop\Windows Loader
2014-04-04 17:03 - 2014-04-14 22:10 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Windows Loader
2014-04-01 21:03 - 2014-04-01 21:03 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-03-31 20:58 - 2014-03-31 20:58 - 00003753 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-03-31 16:20 - 2014-03-31 16:20 - 00274200 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2014-03-31 16:06 - 2014-03-31 16:06 - 00130840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2014-03-30 19:41 - 2014-03-30 19:41 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\AVG2014
2014-03-30 19:37 - 2014-04-13 09:24 - 00000983 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-03-30 19:31 - 2014-04-04 17:04 - 00000000 ____D () C:\ProgramData\AVG2014
2014-03-30 19:29 - 2014-03-30 19:29 - 00000029 _____ () C:\Users\Vanessa\Documents\licençaAVG.txt
2014-03-30 19:20 - 2014-03-30 20:48 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Avg2014
2014-03-30 19:20 - 2014-03-30 19:20 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\MFAData
2014-03-30 19:18 - 2014-03-30 19:18 - 04471872 _____ (AVG Technologies) C:\Users\Vanessa\Downloads\avg_free_stb_pb_2014_4354_free.exe
2014-03-30 17:08 - 2014-03-30 17:08 - 00000127 _____ () C:\Users\Vanessa\Documents\system32.txt
2014-03-30 11:04 - 2014-03-30 11:04 - 00000127 _____ () C:\Users\Vanessa\Documents\linkvirus.txt
2014-03-29 22:59 - 2014-04-13 22:00 - 00079360 ___SH () C:\Users\Vanessa\Thumbs.db
2014-03-29 16:38 - 2014-03-29 16:46 - 00011318 _____ () C:\PureRa.txt
2014-03-29 16:38 - 2011-07-31 16:14 - 00076565 _____ (RaProducts.org) C:\Users\Vanessa\Downloads\PureRa.exe
2014-03-27 22:14 - 2014-03-27 22:14 - 00192792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys
2014-03-27 22:14 - 2014-03-27 22:14 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys
2014-03-27 22:07 - 2014-03-27 22:07 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys
2014-03-27 22:05 - 2014-03-27 22:05 - 00324376 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys
2014-03-27 22:03 - 2014-03-27 22:03 - 00032536 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys
2014-03-25 17:37 - 2014-03-25 17:37 - 00001630 _____ () C:\Users\Vanessa\Documents\geografia.txt
2014-03-23 15:40 - 2014-03-23 15:40 - 00000212 _____ () C:\Users\Vanessa\Documents\iracema obs.txt
2014-03-22 14:31 - 2014-03-22 14:31 - 00347816 _____ (Microsoft Corporation) C:\Users\Vanessa\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.14831893967059717.1.3.Run.exe
2014-03-22 14:28 - 2014-03-22 14:28 - 00162010 _____ () C:\Users\Vanessa\Downloads\DIAG_MATS_NETWORK_global.DiagCab
2014-03-21 17:45 - 2014-03-21 17:45 - 00099384 _____ () C:\Users\Vanessa\AppData\Roaming\inst.exe
2014-03-21 17:45 - 2014-03-21 17:45 - 00082816 _____ (VSO Software) C:\Users\Vanessa\AppData\Roaming\pcouffin.sys
2014-03-21 17:45 - 2014-03-21 17:45 - 00007859 _____ () C:\Users\Vanessa\AppData\Roaming\pcouffin.cat
2014-03-21 17:45 - 2014-03-21 17:45 - 00000055 _____ () C:\Users\Vanessa\AppData\Roaming\pcouffin.log
2014-03-20 19:04 - 2014-03-20 19:04 - 01137152 _____ () C:\Users\Vanessa\Documents\Estequiometria_2013.ppt

==================== One Month Modified Files and Folders =======

2014-04-16 15:35 - 2014-04-16 15:35 - 00019090 _____ () C:\Users\Vanessa\Desktop\FRST.txt
2014-04-16 15:35 - 2014-04-16 15:34 - 00000000 ____D () C:\FRST
2014-04-16 15:34 - 2012-10-10 14:34 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\uTorrent
2014-04-16 15:33 - 2014-04-16 15:33 - 02158592 _____ (Farbar) C:\Users\Vanessa\Desktop\FRST64.exe
2014-04-16 15:19 - 2011-12-16 17:25 - 00000000 ____D () C:\ProgramData\MFAData
2014-04-16 15:15 - 2014-04-16 15:15 - 00000985 _____ () C:\Users\Public\Desktop\Last.fm Scrobbler.lnk
2014-04-16 15:15 - 2012-03-10 19:21 - 00000000 ____D () C:\Program Files (x86)\Last.fm
2014-04-16 15:14 - 2014-04-16 15:13 - 14916216 _____ (Last.fm ) C:\Users\Vanessa\Downloads\Last.fm-2.1.36.exe
2014-04-16 15:13 - 2010-12-01 13:33 - 00001070 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-16 15:12 - 2010-11-28 10:28 - 01704443 _____ () C:\Windows\WindowsUpdate.log
2014-04-16 14:54 - 2013-02-25 20:15 - 00000902 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-16 14:25 - 2010-11-29 23:32 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Adobe
2014-04-16 14:15 - 2014-04-13 15:57 - 00000560 _____ () C:\Windows\setupact.log
2014-04-16 14:15 - 2010-12-01 13:33 - 00001066 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-16 14:15 - 2009-07-14 02:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-15 22:58 - 2009-07-14 01:45 - 00023312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-15 22:58 - 2009-07-14 01:45 - 00023312 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-15 21:59 - 2014-04-15 21:59 - 00002094 _____ () C:\Users\Vanessa\Desktop\JRT.txt
2014-04-15 21:42 - 2014-04-15 21:42 - 00000000 ____D () C:\Windows\ERUNT
2014-04-15 21:23 - 2010-11-29 16:32 - 00663828 _____ () C:\Windows\system32\prfh0416.dat
2014-04-15 21:23 - 2010-11-29 16:32 - 00128118 _____ () C:\Windows\system32\prfc0416.dat
2014-04-15 21:23 - 2009-07-14 02:13 - 01517266 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-15 21:13 - 2014-04-15 21:13 - 01016261 _____ (Thisisu) C:\Users\Vanessa\Downloads\JRT.exe
2014-04-15 19:03 - 2014-04-14 20:02 - 00005890 _____ () C:\Windows\PFRO.log
2014-04-15 19:02 - 2013-12-29 15:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-15 19:01 - 2014-04-15 18:49 - 00000079 _____ () C:\folders.log
2014-04-15 19:01 - 2014-04-15 18:49 - 00000000 ____D () C:\zoek
2014-04-15 19:01 - 2014-04-15 18:34 - 00020487 _____ () C:\zoek-results.log
2014-04-15 18:51 - 2014-04-15 18:28 - 00000000 ____D () C:\zoek_backup
2014-04-15 18:51 - 2010-11-28 10:31 - 00000000 ____D () C:\Users\Vanessa
2014-04-15 15:57 - 2014-02-14 13:04 - 00000514 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 7435ad02-491d-49fe-8e56-7801fad18cbe.job
2014-04-15 15:19 - 2014-04-15 15:05 - 01285120 _____ () C:\Users\Vanessa\Downloads\zoek.exe
2014-04-15 14:20 - 2012-03-10 19:21 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Last.fm
2014-04-15 14:12 - 2014-04-15 14:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-14 22:10 - 2014-04-04 17:03 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Windows Loader
2014-04-14 21:08 - 2014-01-23 01:08 - 00000000 ____D () C:\AdwCleaner
2014-04-14 21:08 - 2013-12-29 15:39 - 00001053 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-14 21:08 - 2010-11-28 10:32 - 00000969 _____ () C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-14 21:06 - 2014-04-14 21:06 - 01426178 _____ () C:\Users\Vanessa\Downloads\AdwCleaner.exe
2014-04-14 20:53 - 2014-04-14 20:52 - 00001814 _____ () C:\Users\Vanessa\Desktop\chrome - Atalho.lnk
2014-04-14 20:01 - 2010-11-28 10:32 - 00000000 ___RD () C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-14 18:58 - 2014-04-14 18:58 - 00000159 _____ () C:\Users\Vanessa\Documents\dados iracema.txt
2014-04-13 22:00 - 2014-03-29 22:59 - 00079360 ___SH () C:\Users\Vanessa\Thumbs.db
2014-04-13 20:56 - 2010-11-30 18:42 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Media Player Classic
2014-04-13 15:57 - 2014-04-13 15:57 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-13 09:24 - 2014-03-30 19:37 - 00000983 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-04-12 11:30 - 2009-07-14 00:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-04-10 21:48 - 2014-04-10 21:48 - 03274874 _____ () C:\Users\Vanessa\Documents\AULA - VÍRUS (ronualdo).pptx
2014-04-09 22:16 - 2010-11-30 11:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-04-09 22:14 - 2013-09-14 16:37 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-09 22:12 - 2009-10-14 09:51 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-04 22:20 - 2011-07-15 17:49 - 00000942 _____ () C:\Users\Vanessa\Downloads\PhotoFiltre.ini
2014-04-04 17:04 - 2014-03-30 19:31 - 00000000 ____D () C:\ProgramData\AVG2014
2014-04-02 14:05 - 2012-05-04 14:50 - 00000000 ___HD () C:\$AVG
2014-04-01 21:03 - 2014-04-01 21:03 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-03-31 20:58 - 2014-03-31 20:58 - 00003753 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
2014-03-31 20:57 - 2012-08-30 17:45 - 00049952 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2014-03-31 16:20 - 2014-03-31 16:20 - 00274200 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2014-03-31 16:06 - 2014-03-31 16:06 - 00130840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2014-03-31 02:53 - 2010-12-01 14:16 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2014-03-30 23:14 - 2012-02-01 22:34 - 00000000 ____D () C:\Users\Vanessa\Desktop\Programas
2014-03-30 20:48 - 2014-03-30 19:20 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Avg2014
2014-03-30 19:41 - 2014-03-30 19:41 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\AVG2014
2014-03-30 19:40 - 2011-12-25 17:12 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-03-30 19:29 - 2014-03-30 19:29 - 00000029 _____ () C:\Users\Vanessa\Documents\licençaAVG.txt
2014-03-30 19:20 - 2014-03-30 19:20 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\MFAData
2014-03-30 19:18 - 2014-03-30 19:18 - 04471872 _____ (AVG Technologies) C:\Users\Vanessa\Downloads\avg_free_stb_pb_2014_4354_free.exe
2014-03-30 17:08 - 2014-03-30 17:08 - 00000127 _____ () C:\Users\Vanessa\Documents\system32.txt
2014-03-30 16:56 - 2014-02-22 16:40 - 00000000 ____D () C:\Users\Vanessa\Documents\Trabalhos do Colégio 2014
2014-03-30 11:04 - 2014-03-30 11:04 - 00000127 _____ () C:\Users\Vanessa\Documents\linkvirus.txt
2014-03-29 19:08 - 2010-12-01 13:33 - 00004066 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-29 19:08 - 2010-12-01 13:33 - 00003814 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-29 17:45 - 2012-12-14 16:01 - 00000000 ____D () C:\Users\Vanessa\Documents\Livros
2014-03-29 16:46 - 2014-03-29 16:38 - 00011318 _____ () C:\PureRa.txt
2014-03-27 22:14 - 2014-03-27 22:14 - 00192792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys
2014-03-27 22:14 - 2014-03-27 22:14 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys
2014-03-27 22:07 - 2014-03-27 22:07 - 00236824 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys
2014-03-27 22:05 - 2014-03-27 22:05 - 00324376 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys
2014-03-27 22:03 - 2014-03-27 22:03 - 00032536 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys
2014-03-25 17:37 - 2014-03-25 17:37 - 00001630 _____ () C:\Users\Vanessa\Documents\geografia.txt
2014-03-23 15:40 - 2014-03-23 15:40 - 00000212 _____ () C:\Users\Vanessa\Documents\iracema obs.txt
2014-03-22 14:31 - 2014-03-22 14:31 - 00347816 _____ (Microsoft Corporation) C:\Users\Vanessa\Downloads\MicrosoftFixit.ProgramInstallUninstall.RNP.14831893967059717.1.3.Run.exe
2014-03-22 14:28 - 2014-03-22 14:28 - 00162010 _____ () C:\Users\Vanessa\Downloads\DIAG_MATS_NETWORK_global.DiagCab
2014-03-22 14:20 - 2010-12-01 13:49 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Real
2014-03-21 17:46 - 2011-04-28 20:29 - 00000000 ____D () C:\Program Files (x86)\VSO
2014-03-21 17:45 - 2014-03-21 17:45 - 00099384 _____ () C:\Users\Vanessa\AppData\Roaming\inst.exe
2014-03-21 17:45 - 2014-03-21 17:45 - 00082816 _____ (VSO Software) C:\Users\Vanessa\AppData\Roaming\pcouffin.sys
2014-03-21 17:45 - 2014-03-21 17:45 - 00007859 _____ () C:\Users\Vanessa\AppData\Roaming\pcouffin.cat
2014-03-21 17:45 - 2014-03-21 17:45 - 00000055 _____ () C:\Users\Vanessa\AppData\Roaming\pcouffin.log
2014-03-20 19:04 - 2014-03-20 19:04 - 01137152 _____ () C:\Users\Vanessa\Documents\Estequiometria_2013.ppt

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-04-09 15:52

==================== End Of Log ============================
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Qua 16 Abr 2014, 16:22

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-04-2014 02
Ran by Vanessa at 2014-04-16 15:36:36
Running from C:\Users\Vanessa\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: AVG Internet Security 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}

==================== Installed Programs ======================

Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft)
µTorrent (HKCU\...\uTorrent) (Version: 3.3.2.30488 - BitTorrent Inc.)
64 Bit HP CIO Components Installer (Version: 7.2.4 - Hewlett-Packard) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.0.2.189 - Adobe Systems Incorporated)
Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Português (HKLM-x32\...\{AC76BA86-7AD7-1046-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.0.626 - Adobe Systems, Inc.)
Advertising Center (x32 Version: 0.0.0.1 - Nero AG) Hidden
AIDA64 Extreme Edition v1.20 (HKLM-x32\...\AIDA64 Extreme Edition_is1) (Version: 1.20 - FinalWire Ltd.)
Akamai NetSession Interface (HKCU\...\Akamai) (Version: - )
Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.)
Arquivo do WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - )
Atualização do produto Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0416-0000-0000000FF1CE}_ENTERPRISE_{717C9095-8AAE-41CB-B046-BD6E8399F4F3}) (Version: - Microsoft)
Atualização do produto Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0416-0000-0000000FF1CE}_ENTERPRISE_{5016CB22-B9A7-44FB-AA72-AF28B27B15EA}) (Version: - Microsoft)
Atualização do produto Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0416-0000-0000000FF1CE}_ENTERPRISE_{BE3A7C0C-0081-4694-B5F9-980DD66BDDF8}) (Version: - Microsoft)
Atualização do produto Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0416-0000-0000000FF1CE}_ENTERPRISE_{7297E3A9-FCD4-4E0E-A306-7A90359E50E3}) (Version: - Microsoft)
aTube Catcher (HKLM-x32\...\aTube Catcher) (Version: 2.9.1347 - DsNET Corp)
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4569 - AVG Technologies)
AVG 2014 (Version: 14.0.3882 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4569 - AVG Technologies) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.03 - Piriform)
CursorFX (HKLM-x32\...\CursorFX) (Version: - Stardock Corporation)
CursorFX (x32 Version: 2.00 - Stardock Corporation) Hidden
D110 (x32 Version: 140.0.283.000 - Hewlett-Packard) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
FM Screen Capture Codec (Remove Only) (HKLM-x32\...\FMCODEC) (Version: - )
FormatFactory 3.0.1 (HKLM-x32\...\FormatFactory) (Version: 3.0.1 - Free Time)
Galeria de Fotos (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
GIMP 2.6.10 (HKLM-x32\...\WinGimp-2.0_is1) (Version: 2.6.10 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.116 - Google Inc.)
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Talk Plugin (HKLM-x32\...\{43AC7CBC-1D6A-3B5B-81B1-A0C166FE48F4}) (Version: 4.8.2.15856 - Google)
Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart D110 All-In-One Driver Software 14.0 Rel. 7 (HKLM\...\{DBC1DE57-B55A-4D57-9769-1DB9BE506AF7}) (Version: 14.0 - HP)
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HPAppStudio (x32 Version: 140.0.95.000 - Hewlett-Packard) Hidden
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
iTunes (HKLM\...\{76FF0F03-B707-4332-B5D1-A56C8303514E}) (Version: 11.0.4.4 - Apple Inc.)
Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
K-Lite Codec Pack 6.6.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 6.6.0 - )
Last.fm Scrobbler 2.1.36 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm)
Linkury Smartbar (HKLM-x32\...\{F04C4F83-D9C7-408C-9DEB-D5526E72108C}) (Version: 1.24.22.10764 - Linkury Inc.) <==== ATTENTION
Linkury Smartbar Engine (HKCU\...\{87b91358-48a7-4683-8f21-779296a0d720}) (Version: 1.24.22.10764 - Linkury Inc.) <==== ATTENTION
Malwarebytes Anti-Malware versão 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Messenger Plus! 5 (HKLM-x32\...\Messenger Plus!) (Version: 5.11.0.760 - Yuna Software)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Shared 64-bit MUI (Portuguese (Brazil)) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Portuguese (Brazil)) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Mozilla Firefox 28.0 (x86 pt-BR) (HKLM-x32\...\Mozilla Firefox 28.0 (x86 pt-BR)) (Version: 28.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 28.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
neroxml (x32 Version: 1.0.0 - Nero AG) Hidden
Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden
PCI SoftV92 Modem (HKLM\...\CNXT_MODEM_PCI_HSF) (Version: 7.80.5.0 - Conexant Systems)
Photo Common (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
PS_AIO_07_D110_SW_Min (x32 Version: 140.0.142.000 - Hewlett-Packard) Hidden
QuickTransfer (x32 Version: 140.0.98.000 - Hewlett-Packard) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.10.9560 - Skype Technologies S.A.)
Skype™️ 6.6 (HKLM-x32\...\{1845470B-EB14-4ABC-835B-E36C693DC07D}) (Version: 6.6.106 - Skype Technologies S.A.)
SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Status (x32 Version: 140.0.256.000 - Hewlett-Packard) Hidden
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com)
TeamViewer 8 (HKLM-x32\...\TeamViewer Cool (Version: 8.0.19045 - TeamViewer)
Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6FAA03BD-2B51-4029-9AD9-64A3B8E3C84C}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0416-0000-0000000FF1CE}_ENTERPRISE_{52F3455A-9ADB-41A6-BCE7-8D99F3770590}) (Version: - Microsoft)
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{9B1DEEA3-B4ED-49F0-9EF7-4A820EEEA7F1}) (Version: - Microsoft)
VCRedistSetup (x32 Version: 1.0.0 - Nero AG) Hidden
Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VobSub v2.23 (Remove Only) (HKLM-x32\...\VobSub) (Version: - )
WebCam (HKLM-x32\...\{ED1674F5-5165-49BF-B546-AE5343111540}) (Version: 5.1.0.0 - ETRON)
WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden
webssearches uninstaller (HKLM-x32\...\webssearches uninstaller) (Version: - webssearches) <==== ATTENTION
Windows Live Communications Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3522.0110 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden
WinPcap 4.1.1 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.1753 - CACE Technologies)

==================== Restore Points =========================


==================== Hosts content: ==========================

2009-07-13 23:34 - 2014-04-15 18:38 - 00000840 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost
::1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {0842DAB0-78A8-4560-826B-DAF5C0F87251} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {13600FFD-9230-47FF-9C88-5BF54D6BB59D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-01] (Google Inc.)
Task: {22A2B45C-0A71-4C61-9665-3DFC1D8BFFDE} - System32\Tasks\{7B5B35CB-FE80-41FC-A843-B82EAB273A88} => Chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Task: {2BCD4DBF-5526-44BF-AB1F-EF3A893A0A60} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12] (Adobe Systems Incorporated)
Task: {3DFF0185-8F9F-43CC-9304-3071DA20F360} - \Dealply ATTENTION ====> No Task File
Task: {441EAA47-5299-4C72-8C30-8E3D4BEC6147} - \BackgroundContainer Startup Task ATTENTION ====> No Task File
Task: {4A0C7EAD-E4C8-4F6C-BE98-D91AC414CFB4} - \UpdaterEX ATTENTION ====> No Task File
Task: {5A35C8AF-FE80-4BEF-8D84-E78D9B3FCBC6} - System32\Tasks\{53F8CADC-0821-4C2E-98F1-70FAE63B11B4} => Chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Task: {68C373AA-185D-4D80-98B2-0B95921A3982} - System32\Tasks\{D70B97FF-CAC2-4420-80F2-8F1A6AEEBEA8} => Chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Task: {69CD3544-93F6-4B8E-9F27-3949F2163BCB} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2217399279-2482454507-1961363816-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2011-11-29] (RealNetworks, Inc.)
Task: {74ADF15F-E8AE-4496-BB1A-4F6DA86D4F62} - System32\Tasks\CCleanerSkipUAC => C:\PROGRAM FILES\CCLEANER\CCLEANER.EXE [2013-06-19] (Piriform Ltd)
Task: {793DB2F0-55AF-4EA1-9C84-33F4FBB3EBCD} - System32\Tasks\SUPERAntiSpyware Scheduled Task 7435ad02-491d-49fe-8e56-7801fad18cbe => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {8B780957-AC66-47DF-A597-022926C2CCF8} - \DealPlyUpdate ATTENTION ====> No Task File
Task: {A75F7951-B28F-4A3E-BEC5-19CC5285292D} - System32\Tasks\{D7EEAAB3-6262-4359-849C-66A6217379E5} => Chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Task: {AB7C56B0-B6E4-45E4-A9D7-864FB752B9ED} - System32\Tasks\AdobeAAMUpdater-1.0-Vanessa-PC-Vanessa => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-06-03] (Adobe Systems Incorporated)
Task: {ABB82DAC-CC4F-431C-A74B-363AB851103F} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2217399279-2482454507-1961363816-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2011-11-29] (RealNetworks, Inc.)
Task: {CF35372B-9178-4AA9-94FC-471B5B3FDA2C} - \Go for FilesUpdate ATTENTION ====> No Task File
Task: {D689E314-7D58-4C0E-AE5C-1DE40A57A9A8} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2217399279-2482454507-1961363816-1001Core => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-01] (Google Inc.)
Task: {DAC453E6-D1E8-41A5-8661-6E532BF97EF3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-01] (Google Inc.)
Task: {FD125595-DD0A-4DC9-8ECD-20278CE39546} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2217399279-2482454507-1961363816-1001UA => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe [2010-12-01] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2217399279-2482454507-1961363816-1001Core.job => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2217399279-2482454507-1961363816-1001UA.job => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 7435ad02-491d-49fe-8e56-7801fad18cbe.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Loaded Modules (whitelisted) =============

2013-06-20 00:45 - 2013-06-20 00:45 - 03317616 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_v_1_1_0_x64.dll
2010-11-29 17:12 - 2010-03-15 10:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
2012-02-20 21:29 - 2012-02-20 21:29 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-02-20 21:28 - 2012-02-20 21:28 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2010-03-23 11:17 - 2010-03-23 11:17 - 00059904 _____ () C:\Program Files (x86)\Stardock\CursorFX\zlib1.dll
2014-04-15 14:11 - 2014-04-15 14:12 - 03642480 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-03-12 15:54 - 2014-03-12 15:54 - 16276872 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
2013-07-26 16:43 - 2013-09-03 14:01 - 00736768 _____ () C:\Program Files (x86)\Last.fm\unicorn.dll
2013-07-26 16:43 - 2013-09-03 14:01 - 00032768 _____ () C:\Program Files (x86)\Last.fm\logger.dll
2013-07-26 16:43 - 2013-09-03 10:54 - 00351232 _____ () C:\Program Files (x86)\Last.fm\lastfm.dll
2013-07-26 16:43 - 2013-09-03 14:01 - 00126976 _____ () C:\Program Files (x86)\Last.fm\listener.dll
2013-07-26 16:43 - 2013-01-18 12:39 - 00302592 _____ () C:\Program Files (x86)\Last.fm\phonon.dll
2013-07-26 16:43 - 2013-01-18 12:49 - 00182784 _____ () C:\Program Files (x86)\Last.fm\plugins\phonon_backend\phonon_vlc.dll
2013-07-26 16:43 - 2012-12-13 01:12 - 00111104 _____ () C:\Program Files (x86)\Last.fm\libvlc.dll
2013-07-26 16:43 - 2012-12-13 01:13 - 02286592 _____ () C:\Program Files (x86)\Last.fm\libvlccore.dll
2014-04-16 15:15 - 2012-12-13 01:13 - 00049664 _____ () C:\Program Files (x86)\Last.fm\plugins\audio_output\libaout_directx_plugin.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== Disabled items from MSCONFIG ==============

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Vanessa\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: CursorFX => "C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe"
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: Google Update => "C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: TkBellExe => "c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot
MSCONFIG\startupreg: uTorrent => "C:\Users\Vanessa\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/16/2014 02:42:28 PM) (Source: RasClient) (User: )
Description: CoId={6E3D8CBE-B2D2-4BD5-81D0-6B2F946514A3}: o usuário Vanessa-PC\Vanessa discou uma conexão de nome Conexão de Banda Larga que falhou. O código do erro retornado na falha é 0.

Error: (04/16/2014 02:42:10 PM) (Source: RasClient) (User: )
Description: CoId={FA5D0AEE-2796-489F-8F90-63618AE86FB1}: o usuário Vanessa-PC\Vanessa discou uma conexão de nome Conexão de Banda Larga que falhou. O código do erro retornado na falha é 651.

Error: (04/16/2014 02:41:48 PM) (Source: RasClient) (User: )
Description: CoId={F52A9190-9925-4E44-9F89-33851AFF7F62}: o usuário Vanessa-PC\Vanessa discou uma conexão de nome Conexão de Banda Larga que falhou. O código do erro retornado na falha é 0.

Error: (04/16/2014 02:41:44 PM) (Source: RasClient) (User: )
Description: CoId={77AC5240-4F71-4DFD-BC78-9BD422FBE3BC}: o usuário Vanessa-PC\Vanessa discou uma conexão de nome Conexão de Banda Larga que falhou. O código do erro retornado na falha é 651.


System errors:
=============
Error: (04/16/2014 03:34:02 PM) (Source: volsnap) (User: )
Description: As cópias de sombra do volume C: foram anuladas porque o armazenamento de cópia de sombra não pôde crescer devido a um limite imposto pelo usuário.

Error: (04/16/2014 02:46:12 PM) (Source: Service Control Manager) (User: )
Description: O serviço SPP Notification Service terminou com o erro:
%%5

Error: (04/16/2014 02:15:51 PM) (Source: Service Control Manager) (User: )
Description: Não foi possível iniciar o serviço Baidu PC Faster Service 3.7.0.0 devido ao seguinte erro:
%%2

Error: (04/16/2014 02:15:51 PM) (Source: Service Control Manager) (User: )
Description: Não foi possível iniciar o serviço Baidu PC App Store Service 4.0.6.4959 devido ao seguinte erro:
%%2

Error: (04/16/2014 02:15:50 PM) (Source: Service Control Manager) (User: )
Description: Não foi possível iniciar o serviço Messenger Plus! Service devido ao seguinte erro:
%%2

Error: (04/15/2014 10:48:04 PM) (Source: Service Control Manager) (User: )
Description: O serviço SPP Notification Service terminou com o erro:
%%5

Error: (04/15/2014 10:17:30 PM) (Source: Service Control Manager) (User: )
Description: Não foi possível iniciar o serviço Baidu PC Faster Service 3.7.0.0 devido ao seguinte erro:
%%2

Error: (04/15/2014 10:17:30 PM) (Source: Service Control Manager) (User: )
Description: Não foi possível iniciar o serviço Baidu PC App Store Service 4.0.6.4959 devido ao seguinte erro:
%%2

Error: (04/15/2014 10:17:30 PM) (Source: Service Control Manager) (User: )
Description: Não foi possível iniciar o serviço Messenger Plus! Service devido ao seguinte erro:
%%2


Microsoft Office Sessions:
=========================
Error: (10/10/2011 04:28:58 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 7 seconds with 0 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Percentage of memory in use: 75%
Total physical RAM: 3967.3 MB
Available physical RAM: 969.19 MB
Total Pagefile: 4945.29 MB
Available Pagefile: 2052.3 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.56 GB) (Free:2.46 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Cool (Size: 298 GB) (Disk ID: F6EB7D18)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=98 GB) - (Type=07 NTFS)

==================== End Of Log ============================
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Qua 16 Abr 2014, 17:08

Aviso de Segurança 772309  Faça o download do Usbfix [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] (ao acessar a página clique no botão representado nesta imagem (na parte direita da página) para baixá-lo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

Utilize o USBFix conforme é mostrado nesta postagem:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
_______________________________________________________________________________________________________

Faça o download do [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Aviso de Segurança 772309  Instale-o e utilize-o seguindo as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Na sua próxima resposta poste o relatório do McShield Anti-Malware Tool que terá o nome MCShield-AllScans.txt, o qual estará na área de trabalho (Desktop) de seu PC juntamente com o log (relatório) do Usbfix que estará em C:\UsbFix.txt

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Qua 16 Abr 2014, 18:52

Faça também o seguinte, por gentileza:

Aviso de Segurança 772309  Baixe o arquivo fixlist.txt que está anexado nesta postagem e salve-o no desktop (área de trabalho).

Execute o FRST. Clique no botão Fix.

Aguarde e ao final, o log Fixlog.txt será salvo no seu desktop.

Selecione, copie e cole o conteúdo deste Fixlog.txt em sua próxima resposta juntamente com os outros dois relatórios pedidos na resposta anterior.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Qui 17 Abr 2014, 20:07

############################## | UsbFix V 7.169 | [Pesquisa]

Usuário: Vanessa (Administrador) # VANESSA-PC
Atualizado em 31/03/2014 por El Desaparecido - Team SosVirus
Começou em 19:55:10 | 17/04/2014

Site : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Changelog : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Support : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Upload Malware : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Contato : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

PC: (POS-FOXA690VAO)
CPU: AMD Athlon(tm) Dual Core Processor 4050e
RAM -> [Total : 3967 Mo| Free : 1874 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft Windows 7 Ultimate (6.1.7601 64-Bit) Service Pack 1
WB: Windows Internet Explorer : 11.0.9600.17041
WB: Google Chrome : 34.0.1847.116
WB: Mozilla Firefox : 28.0

SC: Security Center [Enabled]
WU: Windows Update [Enabled]
AV: AVG Internet Security 2014 [(!) Disabled | Updated]
AS: Windows Defender [(!) Disabled | Updated]
AS: AVG Internet Security 2014 [(!) Disabled | Updated]
FW: AVG Internet Security 2014 [Enabled]
FW: Windows FireWall [(!) Disabled]
AS: Malwarebytes' Anti-Malware : 1.75.0001

C:\ (%systemdrive%) -> Disco fixo # 98 Gb (2 Mb livre - 2%) [] # NTFS
D:\ -> CD-ROM
F:\ -> CD-ROM

################## | Processos Ativos |

C:\Windows\system32\csrss.exe (ID: 580 |ParentID: 572)
C:\Windows\system32\wininit.exe (ID: 632 |ParentID: 572)
C:\Windows\system32\csrss.exe (ID: 664 |ParentID: 640)
C:\Windows\system32\services.exe (ID: 688 |ParentID: 632)
C:\Windows\system32\winlogon.exe (ID: 728 |ParentID: 640)
C:\Windows\system32\lsass.exe (ID: 740 |ParentID: 632)
C:\Windows\system32\lsm.exe (ID: 748 |ParentID: 632)
C:\Windows\system32\svchost.exe (ID: 872 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 952 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 1008 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 532 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 536 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 1104 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 1184 |ParentID: 688)
C:\Windows\System32\spoolsv.exe (ID: 1304 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 1348 |ParentID: 688)
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (ID: 1536 |ParentID: 688)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (ID: 1564 |ParentID: 688)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ID: 1588 |ParentID: 688)
C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (ID: 1648 |ParentID: 688)
C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (ID: 1692 |ParentID: 688)
C:\Program Files\Bonjour\mDNSResponder.exe (ID: 1720 |ParentID: 688)
C:\Windows\SysWOW64\svchost.exe (ID: 1772 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 1816 |ParentID: 688)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (ID: 1880 |ParentID: 688)
C:\Windows\system32\taskhost.exe (ID: 1388 |ParentID: 688)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (ID: 1872 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 548 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 2072 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 2136 |ParentID: 688)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (ID: 2164 |ParentID: 1872)
C:\Users\Public\temp\TeamViewer\Version8\TeamViewer_Service.exe (ID: 2192 |ParentID: 688)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ID: 2280 |ParentID: 688)
C:\Windows\system32\sppsvc.exe (ID: 1852 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 2472 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 2752 |ParentID: 688)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (ID: 2924 |ParentID: 2280)
C:\Windows\System32\WUDFHost.exe (ID: 3556 |ParentID: 532)
C:\Windows\system32\Dwm.exe (ID: 3368 |ParentID: 532)
C:\Windows\Explorer.EXE (ID: 3412 |ParentID: 2832)
C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe (ID: 4092 |ParentID: 3412)
C:\Program Files\Windows Sidebar\sidebar.exe (ID: 3732 |ParentID: 3412)
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (ID: 1708 |ParentID: 3412)
C:\Users\Vanessa\AppData\Roaming\uTorrent\uTorrent.exe (ID: 2364 |ParentID: 3412)
C:\Program Files (x86)\iTunes\iTunesHelper.exe (ID: 3544 |ParentID: 1128)
C:\Program Files (x86)\AVG\AVG2014\avgui.exe (ID: 3672 |ParentID: 1128)
C:\Program Files\iPod\bin\iPodService.exe (ID: 304 |ParentID: 688)
C:\Windows\SysWOW64\ctfmon.exe (ID: 2932 |ParentID: 3672)
C:\Windows\system32\SearchIndexer.exe (ID: 2520 |ParentID: 688)
C:\Program Files\Windows Media Player\wmpnetwk.exe (ID: 4132 |ParentID: 688)
C:\Windows\system32\svchost.exe (ID: 4756 |ParentID: 688)
C:\Windows\System32\svchost.exe (ID: 5104 |ParentID: 688)
C:\Windows\system32\DllHost.exe (ID: 4492 |ParentID: 872)
C:\Program Files (x86)\iTunes\iTunes.exe (ID: 1980 |ParentID: 3412)
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe (ID: 4084 |ParentID: 1980)
C:\Windows\system32\conhost.exe (ID: 4372 |ParentID: 664)
C:\Program Files (x86)\Last.fm\Last.fm Scrobbler.exe (ID: 4472 |ParentID: 1980)
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe (ID: 5524 |ParentID: 4084)
C:\Windows\system32\conhost.exe (ID: 3780 |ParentID: 664)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 5920 |ParentID: 872)
C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE (ID: 5092 |ParentID: 3412)
C:\Windows\splwow64.exe (ID: 3300 |ParentID: 5092)
C:\Windows\System32\svchost.exe (ID: 4448 |ParentID: 688)
C:\Windows\system32\taskeng.exe (ID: 3664 |ParentID: 536)
C:\Windows\system32\SearchProtocolHost.exe (ID: 5444 |ParentID: 2520)
C:\Windows\system32\SearchFilterHost.exe (ID: 3932 |ParentID: 2520)
C:\Windows\system32\wbem\wmiprvse.exe (ID: 496 |ParentID: 872)

################## | Regedit Run |

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe,
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\system32\userinit.exe,
04 - HKCU\..\Run : [CursorFX] "C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe"
04 - HKCU\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKCU\..\Run : [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
04 - HKCU\..\Run : [uTorrent] "C:\Users\Vanessa\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKCU\..\Run : [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
04 - HKLM\..\Run : [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
04 - HKLM\..\RunOnce : []
04 - HKU\S-1-5-19\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-20\..\Run : [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun
04 - HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\..\Run : [CursorFX] "C:\Program Files (x86)\Stardock\CursorFX\CursorFX.exe"
04 - HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\..\Run : [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
04 - HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\..\Run : [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
04 - HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\..\Run : [uTorrent] "C:\Users\Vanessa\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
04 - HKU\S-1-5-21-2217399279-2482454507-1961363816-1001\..\Run : [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
04 - HKU\S-1-5-19\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-20\..\RunOnce : [mctadmin] C:\Windows\System32\mctadmin.exe
04 - HKU\S-1-5-18\..\RunOnce : [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601

################## | Procura genérica |


################## | Registro |


################## | E.O.F | [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] |
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Qui 17 Abr 2014, 20:08

>>> MCShield AllScans.txt <<<

-----------------------------




MCShield ::Anti-Malware Tool:: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

>>> v 3.0.5.28 / DB: 2014.4.12.1 / Windows 7 <<<


17/04/2014 20:00:56 > Unidade C: - escaneamento iniciado (sem rotulo ~98 GB, NTFS HDD )...



=> A unidade está limpa.

______________________________________________________________________________________________________________________________

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 16-04-2014 02
Ran by Vanessa at 2014-04-17 20:07:16 Run:1
Running from C:\Users\Vanessa\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found
ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=127.0.0.1:50402;https=127.0.0.1:50402
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP =
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs =
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgppa.dll No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll No File
S2 PCAppStoreSvc_{PCAppStore_4.0.6.4959}; C:\Program Files (x86)\Baidu Security\PC App Store\4.0.6.4959\PCAppStoreSvc.exe [X]
S2 PCFasterSvc_{PCFaster_3.7.0.0}; C:\Program Files (x86)\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe [X]
S3 PCFApiUtil; \??\C:\Program Files (x86)\Baidu Security\PC Faster\3.7.0.0\PCFApiUtil64.sys [X]
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Linkury Smartbar (HKLM-x32\...\{F04C4F83-D9C7-408C-9DEB-D5526E72108C}) (Version: 1.24.22.10764 - Linkury Inc.) <==== ATTENTION
Linkury Smartbar Engine (HKCU\...\{87b91358-48a7-4683-8f21-779296a0d720}) (Version: 1.24.22.10764 - Linkury Inc.) <==== ATTENTION
webssearches uninstaller (HKLM-x32\...\webssearches uninstaller) (Version: - webssearches) <==== ATTENTION
Task: {3DFF0185-8F9F-43CC-9304-3071DA20F360} - \Dealply ATTENTION ====> No Task File
Task: {441EAA47-5299-4C72-8C30-8E3D4BEC6147} - \BackgroundContainer Startup Task ATTENTION ====> No Task File
Task: {4A0C7EAD-E4C8-4F6C-BE98-D91AC414CFB4} - \UpdaterEX ATTENTION ====> No Task File
Task: {8B780957-AC66-47DF-A597-022926C2CCF8} - \DealPlyUpdate ATTENTION ====> No Task File
Task: {CF35372B-9178-4AA9-94FC-471B5B3FDA2C} - \Go for FilesUpdate ATTENTION ====> No Task File
end
*****************

[1720] C:\Program Files\Bonjour\mDNSResponder.exe => Process closed successfully.
"C:\PROGRA~2\SupTab\SEARCH~2.DLL" => Value Data removed successfully.
"C:\PROGRA~2\SupTab\SEARCH~1.DLL" => Value Data removed successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => Value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache_TIMESTAMP => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache AcceptLangs => Value deleted successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully.
HKCR\PROTOCOLS\Handler\linkscanner => Key deleted successfully.
HKCR\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} => Key deleted successfully.
HKCR\PROTOCOLS\Handler\skype-ie-addon-data => Key deleted successfully.
HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => Key deleted successfully.
HKCR\Wow6432Node\PROTOCOLS\Handler\linkscanner => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} => Key deleted successfully.
PCAppStoreSvc_{PCAppStore_4.0.6.4959} => Service deleted successfully.
PCFasterSvc_{PCFaster_3.7.0.0} => Service deleted successfully.
PCFApiUtil => Service deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3DFF0185-8F9F-43CC-9304-3071DA20F360} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DFF0185-8F9F-43CC-9304-3071DA20F360} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply ATTENTION ====> => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{441EAA47-5299-4C72-8C30-8E3D4BEC6147} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{441EAA47-5299-4C72-8C30-8E3D4BEC6147} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BackgroundContainer Startup Task ATTENTION ====> => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4A0C7EAD-E4C8-4F6C-BE98-D91AC414CFB4} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A0C7EAD-E4C8-4F6C-BE98-D91AC414CFB4} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UpdaterEX ATTENTION ====> => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8B780957-AC66-47DF-A597-022926C2CCF8} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B780957-AC66-47DF-A597-022926C2CCF8} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate ATTENTION ====> => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CF35372B-9178-4AA9-94FC-471B5B3FDA2C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CF35372B-9178-4AA9-94FC-471B5B3FDA2C} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Go for FilesUpdate ATTENTION ====> => Key deleted successfully.

==== End of Fixlog ====
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Qui 17 Abr 2014, 20:10

Como está seu PC após estes procedimentos?

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Vanessa B Qui 17 Abr 2014, 20:13

Power Max escreveu:Como está seu PC após estes procedimentos?
Está bom, a mensagem sumiu, e na verdade sinto que está mais leve, haha  :rindo_ate_agor 
Vanessa B
Vanessa B
Membro
Membro

Mensagens : 54
Reputação : 0
Data de inscrição : 22/03/2014

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Power Max Qui 17 Abr 2014, 20:17

isso aí!  Fico feliz que o problema tenha sido resolvido.

Aviso de Segurança 772309  Só para finalizar siga estes tutoriais abaixo, por gentileza:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
_______________________________________________________________________________________________________________________

Aviso de Segurança 772309  Para remover os programas usados na limpeza deste PC e criar um novo ponto de restauração seguro e sem problemas, utilize o DelFix seguindo as dicas [Tens de ter uma conta e sessão iniciada para poderes visualizar este link].
_______________________________________________________________________________________________________________________

Aviso de Segurança 648673379  Foi um prazer ajudar. Conte sempre conosco!

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Danii Ter 22 Abr 2014, 11:20

CASO RESOLVIDO

Caso a autora do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Danii
Danii
Membro Pleno
Membro Pleno

Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil

Ir para o topo Ir para baixo

Aviso de Segurança Empty Re: Aviso de Segurança

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Ir para o topo

- Tópicos semelhantes

 
Permissões neste sub-fórum
Não podes responder a tópicos