Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking Digg  Social bookmarking Delicious  Social bookmarking Reddit  Social bookmarking Stumbleupon  Social bookmarking Slashdot  Social bookmarking Yahoo  Social bookmarking Google  Social bookmarking Blinklist  Social bookmarking Blogmarks  Social bookmarking Technorati  

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14412 usuários registrados
O último usuário registrado atende pelo nome de LucasDrBr

Os nossos membros postaram um total de 35075 mensagens em 3551 assuntos
Quem está conectado
5 usuários online :: Nenhum usuário registrado, Nenhum Invisível e 5 Visitantes

Nenhum

O recorde de usuários online foi de 108 em Qui 15 Maio 2014, 21:18
Buscar
 
 

Resultados por:
 


Rechercher Busca avançada

Julho 2017
SegTerQuaQuiSexSabDom
     12
3456789
10111213141516
17181920212223
24252627282930
31      

Calendário Calendário

Palavras chave


Como tirar o Baidu antivirus?

Página 1 de 2 1, 2  Seguinte

Ver o tópico anterior Ver o tópico seguinte Ir em baixo

Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 00:30

Boa noite, baixei algo aqui, quando pediu p instalar o Baidu eu desmarquei a opção, mas acho que instalou o Baidu, independente do Baidu, também foi instalado algum toolbar......meu navegador da net o Chrome está completamente diferente com cor rosa........não sei se é do chrome ou não mas tem algo estranho instalado no pc.
grato
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 00:32

Olá Andreata.

Primeiramente tente fazer uma restauração do PC para algum dia antes deste problema acontecer.
______________________________________________________________________________

Faça também o seguinte:

Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Você precisa estar registrado e conectado para ver este link.]

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

Remova adwares e toolbars maliciosas com o Adwcleaner

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 00:49

Rodei o ADW Cleaner já .....eis o log


# AdwCleaner v3.210 - Relatório criado 20/05/2014 às 21:01:47
# Atualizado 19/05/2014 por Xplode
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuário : Cliente - CLIENTE1-PC
# Executando de : C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe
# Opção : Examinar

***** [ Serviços ] *****

Serviço Encontrado : IePluginServices
Serviço Encontrado : Update webget
Serviço Encontrado : Wpm

***** [ Arquivos / Pastas ] *****

Arquivo Encontrado : C:\Program Files (x86)\Mozilla Firefox\searchplugins\qone8.xml
Pasta Encontrado : C:\Program Files (x86)\SupTab
Pasta Encontrado : C:\Program Files (x86)\webget
Pasta Encontrado : C:\ProgramData\baidu
Pasta Encontrado : C:\ProgramData\IePluginServices
Pasta Encontrado : C:\ProgramData\WPM

***** [ Atalhos ] *****

Atalho Encontrado : C:\Users\Public\Desktop\Mozilla Firefox.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( [Você precisa estar registrado e conectado para ver este link.] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk ( [Você precisa estar registrado e conectado para ver este link.] )

***** [ Registro ] *****

Chave Encontrada : HKCU\Software\InstallCore
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKCU\Software\webget
Chave Encontrada : [x64] HKCU\Software\InstallCore
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKCU\Software\webget
Chave Encontrada : HKLM\SOFTWARE\14919ea49a8f3b4aa3cf1058d9a64cec
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Chave Encontrada : HKLM\Software\Iminent
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DatamngrCoordinator.exe
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\qone8 uninstaller
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wpm
Chave Encontrada : HKLM\Software\qone8Software
Chave Encontrada : HKLM\Software\SupTab
Chave Encontrada : HKLM\Software\supWPM
Chave Encontrada : HKLM\Software\webget
Chave Encontrada : HKLM\Software\Wpm
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{B89C9191-DEEC-41E4-8DC7-2EBF2BEA1DCB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webget
Dados Encontrada : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command [(Default)] - C:\Program Files (x86)\Mozilla Firefox\firefox.exe [Você precisa estar registrado e conectado para ver este link.]
Dados Encontrada : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - C:\Program Files\Internet Explorer\iexplore.exe [Você precisa estar registrado e conectado para ver este link.]
Dados Encontrada : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~1.DLL
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~2.DLL
Valor Encontrada : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
Valor Encontrada : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [quick_start@gmail.com]

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17041

Configurações Encontrado : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - [Você precisa estar registrado e conectado para ver este link.]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - [Você precisa estar registrado e conectado para ver este link.]

-\\ Mozilla Firefox v12.0 (pt-BR)

-\\ Google Chrome v34.0.1847.137

*************************

AdwCleaner[R0].txt - [1811 octets] - [29/01/2014 12:30:52]
AdwCleaner[R1].txt - [9197 octets] - [20/05/2014 21:01:47]
AdwCleaner[S0].txt - [1795 octets] - [03/05/2014 15:03:48]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [9317 octets] ##########
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 09:12

# Opção : Examinar
Você só usou a função de Examinar dele. Depois de examinar é preciso clicar no botão Limpar para que ele remova os problemas. Use ele novamente desta forma que lhe falei e depois poste o novo log dele.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 10:43

segue o log :

# AdwCleaner v3.210 - Relatório criado 21/05/2014 às 10:38:18
# Atualizado 19/05/2014 por Xplode
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuário : Cliente - CLIENTE1-PC
# Executando de : C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe
# Opção : Limpar

***** [ Serviços ] *****


***** [ Arquivos / Pastas ] *****


***** [ Atalhos ] *****


***** [ Registro ] *****


***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17041


-\\ Mozilla Firefox v12.0 (pt-BR)

-\\ Google Chrome v35.0.1916.114

*************************

AdwCleaner[R0].txt - [1811 octets] - [29/01/2014 12:30:52]
AdwCleaner[R1].txt - [9457 octets] - [20/05/2014 21:01:47]
AdwCleaner[R2].txt - [985 octets] - [21/05/2014 10:37:36]
AdwCleaner[S0].txt - [1795 octets] - [03/05/2014 15:03:48]
AdwCleaner[S1].txt - [7083 octets] - [20/05/2014 21:02:08]
AdwCleaner[S2].txt - [904 octets] - [21/05/2014 10:38:18]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [963 octets] ##########
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 10:45

Desculpe estar respondendo de novo
está fixado no chrome isso : [Você precisa estar registrado e conectado para ver este link.]
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 11:34

Desative temporariamente seu antivírus para evitar conflitos.

 Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Você precisa estar registrado e conectado para ver este link.]

*Clique com o botão direito do mouse no Zoek.exe e selecione [Você precisa estar registrado e conectado para ver esta imagem.]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Você precisa estar registrado e conectado para ver esta imagem.]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Qua 21 Maio 2014, 18:04, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 12:47

Zoek.exe v5.0.0.0 Updated 21-05-2014
Tool run by Cliente on 21/05/2014 at 12:15:09,63.
Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Cliente.Cliente1-PC\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-03-184057.log 151477 bytes
C:\zoek-results2014-05-03-192723.log 8955 bytes
C:\zoek-results2014-05-03-201013.log 1435 bytes

==== System Restore Info ======================

21/05/2014 12:16:18 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js:
user_pref("browser.startup.homepage", "http://start.qone8.com/?type=hp&ts=1400628578&from=smt&uid=SAMSUNGXHD502HI_S24MJ50S913961");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://start.qone8.com/newtab/?type=nt&ts=1400628578&from=smt&uid=SAMSUNGXHD502HI_S24MJ50S913961");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "qone8");
user_pref("browser.search.selectedEngine", "qone8");
user_pref("browser.search.order.1", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default

user.js not found
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----

user_052014_1533_.backup
prefs_052014_1222_.backup
prefs_052014_1533_.backup

==== Deleting Files \ Folders ======================

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\SupTab deleted
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Baidu deleted
C:\PROGRA~3\Package Cache deleted

==== Folders Found ======================

2014-05-21 00:02:09 2014-05-21 00:02:09 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-20 23:27:05 2014-05-20 23:27:05 -------- d-----w- C:\Program Files (x86)\Baidu Security
2014-05-20 23:27:05 2014-05-21 00:03:06 -------- d-----w- C:\Program Files (x86)\Baidu Security\Baidu Antivirus
2014-05-20 23:27:28 2014-05-20 23:27:28 -------- d-----w- C:\ProgramData\Baidu Security
2014-01-30 20:32:40 2014-01-30 20:32:41 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR
2014-01-30 20:32:41 2014-01-25 17:24:07 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security
2014-01-30 20:32:41 2014-01-30 20:32:41 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-01-30 20:32:41 2014-01-30 20:32:41 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-20 23:25:38 2014-05-20 23:25:38 -------- d-----w- C:\Users\Public\Documents\Baidu
2014-05-03 19:25:53 2014-05-03 19:25:53 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-03 19:25:54 2014-05-03 18:04:30 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security_Baidu Antivirus
2014-05-03 19:25:54 2014-05-03 19:25:54 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-03 18:33:39 2014-05-03 18:33:40 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu
2014-05-03 19:25:54 2014-05-03 19:25:54 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu
2014-05-03 19:25:53 2014-05-03 18:04:30 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:22:59 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:23:00 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu\Baidu Antivirus

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\baidu]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
"DllVersion_2.0"="C:\\ProgramData\\baidu\\commondll\\splitupload\\DllVersion_2.0\\FileSplitUpLoad.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
"uuurl"="http://sync.br.bav.baidu.com/cgi-bin/report_uu_msg_bavv2.cgi"

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\DuplicateRecord]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
"DisplayName"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\Baidu Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"DisplayName"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bndef]
"DisplayName"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\Baidu Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"DisplayName"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
"DisplayName"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\Baidu Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"DisplayName"="Baidu Protect"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"ucloud"="u.br.bav.baidu.com"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"dcloud"="http://up.br.bav.baidu.com/cgi-bin/url_warnning/url_warnning.cgi"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"rcloud"="http://up.br.bav.baidu.com/cgi-bin/url_visit_action.cgi"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\PC Faster]

==== Firefox Extensions Registry ======================

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E886C}"="C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\bb\xpi" [26/04/2014 12:48]

==== Firefox Extensions ======================

ProfilePath: C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default
- Quick Start - C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\extensions\quick_start@gmail.com
- Quick Start - %ProfilePath%\extensions\quick_start@gmail.com
- webget - %ProfilePath%\extensions\{9edd0ea8-2819-47c2-8320-b007d5996f8a}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default
A58DE0A570148AF5FF3512B2A340D09F - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll - Shockwave Flash
7B32EC68B2D0EAE4C1333EEB53199571 - C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll - Módulo de Proteção - Banco do Brasil
4C07B5286D129DFD25C24B4A31B9B888 - C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll - Happy Cloud Plugin
4DC48F347E212C32BACCEC6FE3532300 - C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb_64.dll - Módulo de Proteção - Banco do Brasil


==== Chrome Look ======================

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pgacfjdigcddmmncljpflgcfpfahebkh - C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\bb\sf.crx[26/04/2014 12:57]

Google Docs - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Quick Start - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
GBBD Banco do Brasil - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgacfjdigcddmmncljpflgcfpfahebkh
Gmail - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Google Docs - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Quick Start - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
GBBD Banco do Brasil - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgacfjdigcddmmncljpflgcfpfahebkh
Gmail - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Reset Google Chrome ======================

C:\Users\Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts on Users Desktops ======================

C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE  /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa -  Crislaine.LNK - J:\Carta Lib[1]. Religiosa -  Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO  3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO  3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe  -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE  /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa -  Crislaine.LNK - J:\Carta Lib[1]. Religiosa -  Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO  3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO  3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe  -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 12:50

C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 12:51

C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 12:51

C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\aTube Catcher.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
C:\Users\Public\Desktop\Avira.lnk - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe /showMiniGui
C:\Users\Public\Desktop\Battle.net.lnk - C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files (x86)\CCleaner\CCleaner64.exe
C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Public\Desktop\Nero StartSmart.lnk - C:\Program Files (x86)\Nero\Nero 7\Nero StartSmart\NeroStartSmart.exe -ScParameter=8
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{EA17F4FC-FDBF-4CF8-A529-2D983132D053}\SkypeIcon.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\Video Search.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe /VIDEOSEARCH

==== shortcuts in Users Start Menu ======================

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\My Avira\Avira.lnk - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe /showMiniGui
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Age of Conan.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Desinstalar o Google Earth.lnk - C:\Windows\SysWOW64\msiexec.exe /x {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Iniciar Google Earth no modo DirectX.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe -setDX
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Iniciar Google Earth no modo OpenGL.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe -setOGL
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre7\bin\javacpl.exe -tab about
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre7\bin\javacpl.exe -tab update
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre7\bin\javacpl.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xfire\Xfire.lnk - C:\Program Files (x86)\Xfire\Xfire.exe

==== shortcuts in Quick Launch ======================

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Cliente.Cliente1-PC\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Cliente.Cliente1-PC\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=120 folders=88 64397013 bytes)

==== Empty Temp Folders ======================

C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Reset Hosts File ======================

Hosts File Reset Successfully

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\CLIENT~1.CLI\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 21/05/2014 at 12:39:48,92 ======================
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 12:52

e finalizar
TÁ bem dificil dividir o log
Tentei acho que é isso ai
e Sumiu o toolbar aqui no Chrome........
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 13:24

Desative temporariamente seu antivírus para evitar conflitos.

* Clique com o botão direito do mouse no Zoek.exe e selecione [Você precisa estar registrado e conectado para ver esta imagem.]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Você precisa estar registrado e conectado para ver esta imagem.]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Qua 21 Maio 2014, 18:08, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 14:00

Até que não demorou muito não
foi Rápido

Zoek.exe v5.0.0.0 Updated 21-05-2014
Tool run by Cliente on 21/05/2014 at 13:55:28,53.
Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Cliente.Cliente1-PC\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-21-153948.log 156570 bytes

==== System Restore Info ======================

21/05/2014 13:56:27 Zoek.exe System Restore Point Created Succesfully.

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bfilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bfilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bfmon deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bfmon deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bndef deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bndef deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bprotect deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bprotect deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
"DllVersion_2.0"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
"uuurl"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\DuplicateRecord]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"DisplayName"=-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFILTER\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFMON\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BNDEF\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BPROTECT\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfilter]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfilter]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfmon]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfmon]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bndef]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bndef]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"DisplayName"=-
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"DisplayName"=-
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"ucloud"=-
[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"dcloud"=-
[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"rcloud"=-
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\PC Faster]

==== Deleting Files \ Folders ======================

C:\Program Files (x86)\Baidu Security deleted
C:\ProgramData\Baidu Security deleted
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR deleted
C:\Users\Public\Documents\Baidu deleted

==== Folders Found ======================

2014-05-21 00:02:09 2014-05-21 00:02:09 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-03 19:25:53 2014-05-20 23:27:05 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-03 19:25:54 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security_Baidu Antivirus
2014-05-03 19:25:54 2014-05-20 23:27:28 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-03 18:33:39 2014-05-03 18:33:40 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu
2014-05-03 19:25:54 2014-05-20 23:25:38 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu
2014-05-03 19:25:53 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:22:59 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu\Baidu Antivirus
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-21 15:23:00 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu\Baidu Antivirus

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\baidu]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=165 folders=144 93893033 bytes)

==== EOF on 21/05/2014 at 13:58:47,35 ======================
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 14:19

Desative temporariamente seu antivírus para evitar conflitos.

* Clique com o botão direito do mouse no Zoek.exe e selecione Executar como administrador.

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Você precisa estar registrado e conectado para ver esta imagem.]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Qua 21 Maio 2014, 18:08, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 17:58

C:\Users\Cliente.Cliente1-PC\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-21-153948.log 156570 bytes
C:\zoek-results2014-05-21-165847.log 11132 bytes

==== System Restore Info ======================

21/05/2014 17:55:42 Zoek.exe System Restore Point Created Succesfully.

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]

==== Folders Found ======================

2014-05-21 00:02:09 2014-05-21 00:02:09 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-03 19:25:53 2014-05-20 23:27:05 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-03 19:25:54 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security_Baidu Antivirus
2014-05-03 19:25:54 2014-05-20 23:27:28 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-03 18:33:39 2014-05-03 18:33:40 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu
2014-05-03 19:25:54 2014-05-20 23:25:38 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu
2014-05-03 19:25:53 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:22:59 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu\Baidu Antivirus
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-21 15:23:00 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu\Baidu Antivirus

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================

No instances of string "Baidu" found.

==== C:\zoek_backup content ======================

C:\zoek_backup (files=165 folders=144 93893033 bytes)

==== EOF on 21/05/2014 at 17:57:35,72 ======================
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 18:03

Baixe o programa Junkware Removal Tool no link abaixo:
[Você precisa estar registrado e conectado para ver este link.]

Para executar corretamente o programa acima é só seguir as dicas deste tutorial:

Tutorial do Junkware Removal Tool

* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 21:28

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Ultimate x64
Ran by Cliente on 21/05/2014 at 21:19:47,75
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASMANCS



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Users\Cliente.Cliente1-PC\AppData\Roaming\mozilla\firefox\profiles\kod3lnf7.default\minidumps [1 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21/05/2014 at 21:27:04,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 21:31

Faça o download do < ZHPDiag2.exe > < [Você precisa estar registrado e conectado para ver esta imagem.]> ( ... de Nicolas Coolman )

Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:

Tutorial de instalação e execução do aplicativo ZHPDiag

* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 21:48

Power Max escreveu:  Faça o download do < ZHPDiag2.exe >  < [Você precisa estar registrado e conectado para ver esta imagem.]> ( ... de Nicolas Coolman )

Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:

Tutorial de instalação e execução do aplicativo ZHPDiag

* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.

---\\ Softwares de proteçao do sistema
Avira Free Antivirus v14.0.3.350
Windows Defender W7

---\\ Softwares d'optimização do sistema
CCleaner v4.12

---\\ Softwares de partilha do PeerToPeer (P2P)

---\\ Monitoramento dos softwares
Adobe Flash Player 13 Plugin
Java 7 Update 55

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (66% free)
System Restore: Activé (Enable)
System drive C: has 275 GB (60%) free of 456 GB

---\\ Modo de conexão ao sistema
~ Computer Name: CLIENTE1-PC
~ User Name: Cliente
~ All Users Names: HomeGroupUser$, Convidado, Cliente, Administrador,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\
~ %Desktop% : C:\Users\Cliente.Cliente1-PC\Desktop\
~ %Favorites% : C:\Users\Cliente.Cliente1-PC\Favorites\
~ %LocalAppData% : C:\Users\Cliente.Cliente1-PC\AppData\Local\
~ %StartMenu% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 275 Go of 456 Go)
D: CD-ROM drive (Not Inserted)
E: Floppy drive, Flash card reader, USB Key (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Windows Explorer.) (.20/11/2010 - 04:24:46.) -- C:\Windows\Explorer.exe [2872320]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.F220BA78AB542C70211D73AE4729B2CD] - (.Microsoft Corporation - Internet Extensions para Win32.) (.05/05/2014 - 13:00:56.) -- C:\Windows\System32\wininet.dll [2260480]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.20/11/2010 - 04:25:32.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.20/11/2010 - 04:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.27/09/2013 - 22:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 00:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 00:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 01:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.26/04/2011 - 23:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 00:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.23/01/2014 - 23:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 01:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.20/11/2010 - 02:06:42.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 00:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.20/11/2010 - 04:34:04.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes Favoris (My Favorites) : 1/21
~ Mes Documents (My Documents) : 1/278
~ Mon Bureau (My Desktop) : 1/5376
~ Menu demarrer (Programs) : 1/19
~ Hidden Files: Scanned in 00mn 14s



---\\ Processos lançados
[MD5.241B07FF7F5943B9C1BF3235F49AC1E1] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744] [PID.336]
[MD5.A2B38416E98F90DFA270CB8CFF61BE65] - (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376] [PID.2052]
[MD5.1620FE36666F4BBC2314B7F360FB1965] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488] [PID.3756]
[MD5.65C450CCC15ADDED610EB58DE35B307A] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7877120] [PID.1236]
[MD5.B5D2F4BF587FD60AF75B09EFC1AD0E0A] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [411936] [PID.740]
[MD5.43B1125D14E8797FDA9D5E167EB50AE3] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [528424] [PID.768]
[MD5.4D282B9C5BB05DF92C9F3977DFB9F916] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400] [PID.1568]
[MD5.65AF41A7A2C5B6693E1B4164E7632C3E] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400] [PID.1764]
[MD5.43B18BAA433FD79DFC7D4B25AF6EB2F9] - (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984] [PID.1916]
[MD5.D5A444B63637EC0932172C6719A10252] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe [263048] [PID.2232]
~ Processes Running: Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml
P2 - FPN: [HKCU] [gastecnologia.com.br/sf/bb] - (.GAS Tecnologia - Internet Banking Helper.) -- C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll
~ Firefox Browser: 16 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 0



---\\ Browser Helper Objects do navegador (02)
O2 - BHO: G-Buster Browser Defense [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540000} . (.Banco do Brasil - Gbieh Module.) -- C:\Program Files (x86)\GbPlugin\gbieh.dll
~ BHO: 6 Legitimates Filtered in 00mn 00s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Boutões da barra de ferramentas principal do Internet Explorer (09)
O9 - Extra button: Skype Click to Call [64Bits] - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- c:\program files (x86)\skype\toolbars\internet explorer x64\icon.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Site na zona confiavél do Internet Explorer (05)
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bancobrasil.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bb.com.br
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.77.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.77.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.77.222.222,208.67.220.220
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Lista dos serviços NT não Microsoft e não desativados (023)
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
~ Services: 8 Legitimates Filtered in 00mn 03s



---\\ Tarefas planificadas automaticamente (039)
[MD5.00000000000000000000000000000000] [APT] [AutoUpdaterTask] (...) -- C:\Program Files (x86)\Auto Updater\AutoUpdater.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{22112252-3B5A-405A-8FAC-1BF555140057}] (...) -- D:\Disk2\DirectX\dxsetup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{2A1F9CAA-C9BE-42B2-93F3-26CC4A62BD91}] (...) -- C:\Users\Cliente\Downloads\stronghold_2_br[[Você precisa estar registrado e conectado para ver este link.] (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{F058026D-054E-4104-8D2E-40C3A1825762}] (...) -- D:\Disk1\setup.exe (.not file.) [0]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [902]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1066]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1070]
~ Scheduled Task: 12 Legitimates Filtered in 00mn 05s



---\\ Drivers lançados ao arranque do sistema (041)
O41 - Driver: (Bnbase) . (. - .) - C:\Windows\System32\drivers\bnbasex64.sys (.not file.)
~ Drivers: 93 Legitimates Filtered in 00mn 00s



---\\ Software instalados (042)
O42 - Logiciel: Eador. Masters of the Broken World - (.Snowbird Games.) [HKLM][64Bits] -- Steam App 232050
O42 - Logiciel: Halo: Spartan Assault - (.Vanguard Games.) [HKLM][64Bits] -- Steam App 277430
~ Logic: 21 Legitimates Filtered in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Astral Byte]
[HKCU\Software\Cliffhanger]
[HKCU\Software\GbAs]
[HKCU\Software\Kihon]
[HKCU\Software\Mechanist.co]
[HKCU\Software\MechanistGames]
[HKCU\Software\Neonga]
[HKCU\Software\superdownloads.com.br]
[HKLM\Software\Baidu Security]
[HKLM\Software\Wow6432Node\AutoHelpDesk]
[HKLM\Software\Wow6432Node\GameVicio]
[HKLM\Software\Wow6432Node\SupDp] =>PUP.SupTab
~ Key Software: 234 Legitimates Filtered in 00mn 00s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 20/05/2014 - 20:30:25 - [] ----D C:\Users\Cliente.Cliente1-PC\AppData\Roaming\qone8 =>Hijacker.Qone8
O43 - CFD: 07/04/2014 - 23:09:09 - [] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\StunlockStudios
O43 - CFD: 21/05/2014 - 12:54:45 - [0] ----D C:\Users\Cliente.Cliente1-PC\AppData\Local\Z2
O43 - CFD: 15/04/2014 - 11:28:55 - [] ----D C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio
O43 - CFD: 04/04/2014 - 12:10:37 - [0] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Strife
~ Program Folder: 134 Legitimates Filtered in 00mn 00s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.FEC789142370C40BFEEB7E746DF780C1] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147754]
O44 - LFC:[MD5.321D7564D88D594D0AE1A40311A71A30] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [707974]
O44 - LFC:[MD5.66F33BD378E57F1D2D279057C7776DA8] - 21/05/2014 - 02:54:23 ---A- . (...) -- C:\PureRa.txt [1842]
O44 - LFC:[MD5.2F96092D4EA423689C14148D41C73706] - 21/05/2014 - 12:39:48 ---A- . (...) -- C:\zoek-results2014-05-21-153948.log [156570]
O44 - LFC:[MD5.213DCA133B8DE33A09A02D979D2BC6D9] - 21/05/2014 - 13:58:47 ---A- . (...) -- C:\zoek-results2014-05-21-165847.log [11132]
O44 - LFC:[MD5.3FE073CB5BEF33E0E231DB618915FF65] - 21/05/2014 - 17:57:35 ---A- . (...) -- C:\zoek-results.log [4889]
~ Files: 14 Legitimates Filtered in 00mn 45s



---\\ Chave do registo Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{7de44256-e048-11e3-8375-001966e82175}\AutoRun\command. (...) -- I:\setup.exe (.not file.)
~ Keys: Scanned in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 18 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 4 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:08/05/2013 - 09:52:48 ---A- . (.GAS Tecnologia - GbPlugin Device Driver.) -- C:\Windows\SysWOW64\drivers\gbpkm.sys [49536]
~ Drivers: 50 Legitimates Filtered in 00mn 18s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - [Você precisa estar registrado e conectado para ver este link.]
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - [Você precisa estar registrado e conectado para ver este link.]
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa adicional à raiz do sistema (radicular) (SPRF) (O84)
[MD5.7EC9E810ED839FF7349575FD34784979] [SPRF][26/04/2014] (...) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\unins000.dat [55631]
[MD5.70F851F7A524071E13F17DC401A21906] [SPRF][20/05/2014] (...) -- C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe [1326389]
[MD5.D9DE89F0FAF18019BC9595F0F47BCA61] [SPRF][04/04/2014] (.Atribune.org - ATF Cleaner.exe.) -- C:\Users\Cliente.Cliente1-PC\Desktop\ATF-Cleaner.exe [50688]
[MD5.64BAEC464B396B66A353D8FC2F42A4E3] [SPRF][31/07/2011] (.RaProducts.org - System Purification Tool.) -- C:\Users\Cliente.Cliente1-PC\Desktop\PureRa.exe [76565]
~ Files: 4 Legitimates Filtered in 00mn 00s



---\\ Lista das exceções do FireWall (FirewallRules) (O87)
O87 - FAEL: "{DF8C6C86-4F7F-49B2-9855-F09D56C88467}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O87 - FAEL: "{3CE9F67D-28A1-4C24-B3E5-202F87570675}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
~ Firewall: 2 Legitimates Filtered in 00mn 03s



---\\ Search Tracing Registry Key (O100)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASAPI32 =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASMANCS =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASMANCS =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASMANCS =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASAPI32 =>P2P.µTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASMANCS =>P2P.µTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASMANCS =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASMANCS =>PUP.WebGet
~ BTK: 128 Legitimates Filtered in 00mn 00s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 13/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Disabled 25/02/2014 1017424 | (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
SS - | Auto 02/04/2014 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 02/04/2014 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 20/04/2012 129976 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 28/11/2007 800040 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
SS - | Demand 22/01/2008 275752 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
SS - | Auto 09/11/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 23/04/2014 572096 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - | Auto 25/02/2014 440400 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 25/02/2014 440400 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 14/05/2014 123984 | (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
SR - | Auto 06/05/2014 528424 | (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
SR - | Auto 08/02/2014 923936 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 08/02/2014 411936 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 07s



---\\ Scâner Aditional (088)
Database Version : 13029 - (21/05/2014)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 1

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\qone8 =>Hijacker.Qone8^
[HKLM\Software\Wow6432Node\SupDp] =>PUP.SupTab^
~ Additionnel Scan: 257984 Items scanned in 00mn 40s



---\\ Sumário das deteções encontradas na sua estação
[Você precisa estar registrado e conectado para ver este link.] =>PUP.SupTab
[Você precisa estar registrado e conectado para ver este link.] =>Hijacker.Qone8
[Você precisa estar registrado e conectado para ver este link.] =>Adware.IMBooster
[Você precisa estar registrado e conectado para ver este link.] =>PUP.WebGet
~ MSI: 4 link(s) detected in 00mn 00s



~ 724 Legitimates filtered by white list
End of the scan (418 lines in 02mn 53s)(0)
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 21:55

 Selecione e copie todo o texto destacado em vermelho que te passei.
_____________________________________________________________________________________________________________

 Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta.


Última edição por Power Max em Qua 21 Maio 2014, 23:40, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 22:08

Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014
Fichier d'export Registre :
Run by Cliente at 21/05/2014 22:07:43
High Elevated Privileges : OK
Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 02s)
Reparação de atalhos do navegador

========== Chaves do Registo ==========
ELIMINÉ Driver Key: Bnbase
ELIMINÉ:* HKLM\Software\Baidu Security
ELIMINÉ: HKLM\Software\Wow6432Node\SupDp
ELIMINÉ CLSID MPSK: {7de44256-e048-11e3-8375-001966e82175}
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASMANCS

========== Valores do Registo ==========
ProxyFix : Configuração proxy removida com sucesso
ELIMINÉ ProxyServer Value
ELIMINÉ ProxyEnable Value
ELIMINÉ EnableHttp1_1 Value
ELIMINÉ ProxyHttp1.1 Value
ELIMINÉ ProxyOverride Value

========== Pastas ==========
Nenhuma pasta CLSID local utilizador vazia

========== Ficheiros ==========
ELIMINÉ Temporários windows (116) (1.876.813 octets)
ELIMINÉ Flash Cookies (0) (0 octets)

========== Tarefa planificada ==========
ELIMINÉ: AutoUpdaterTask
ELIMINÉ: {22112252-3B5A-405A-8FAC-1BF555140057}
ELIMINÉ: {2A1F9CAA-C9BE-42B2-93F3-26CC4A62BD91}
ELIMINÉ: {F058026D-054E-4104-8D2E-40C3A1825762}

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso


========== Recapitulativo ==========
14 : Chaves do Registo
6 : Valores do Registo
1 : Pastas
2 : Ficheiros
4 : Tarefa planificada
1 : Restauração Sistema


End of clean in 00mn 40s

========== Caminho do ficheiro do relatório ==========
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\ZHP\ZHPFix[R1].txt - 21/05/2014 22:07:46 [2272]
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 22:17

Abra novamente o ( ZHPDiag )

[Você precisa estar registrado e conectado para ver esta imagem.]

|- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão.

[Você precisa estar registrado e conectado para ver esta imagem.]

|- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt

[Você precisa estar registrado e conectado para ver esta imagem.]

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Andreata em Qua 21 Maio 2014, 23:19

Power Max escreveu:  Abra novamente o ( ZHPDiag )

[Você precisa estar registrado e conectado para ver esta imagem.]

|- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão.

[Você precisa estar registrado e conectado para ver esta imagem.]

|- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt

[Você precisa estar registrado e conectado para ver esta imagem.]

~ Relatório do ZHPDiag v2014.5.21.70 - Nicolas Coolman (21/05/2014)
~ Iniciado por Cliente (21/05/2014 23:15:57)
~ Endereço do Website : [Você precisa estar registrado e conectado para ver este link.]
~ Blog de análise de software : [Você precisa estar registrado e conectado para ver este link.]
~ Fóruns de suporte gratuito para desinfecção : [Você precisa estar registrado e conectado para ver este link.]
~ Tradução pelo utilizador
~ Estatuto da versão :
~ Lista Branca : Ativado pelo programa
~ Elevação dos Privilégios : OK
~ Controle de Conta de Utilizador : Deactivate by user


---\\ Navegadores Internet
MSIE: Internet Explorer v11.0.9600.17041 (Defaut)
MFIE: Mozilla Firefox 12.0

---\\ Informações sobre os produtos Windows
~ Langage: Portugais
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema
Avira Free Antivirus v14.0.3.350
Windows Defender W7

---\\ Softwares d'optimização do sistema
CCleaner v4.12

---\\ Softwares de partilha do PeerToPeer (P2P)

---\\ Monitoramento dos softwares
Adobe Flash Player 13 Plugin
Java 7 Update 55

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (66% free)
System Restore: Activé (Enable)
System drive C: has 274 GB (60%) free of 456 GB

---\\ Modo de conexão ao sistema
~ Computer Name: CLIENTE1-PC
~ User Name: Cliente
~ All Users Names: HomeGroupUser$, Convidado, Cliente, Administrador,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\
~ %Desktop% : C:\Users\Cliente.Cliente1-PC\Desktop\
~ %Favorites% : C:\Users\Cliente.Cliente1-PC\Favorites\
~ %LocalAppData% : C:\Users\Cliente.Cliente1-PC\AppData\Local\
~ %StartMenu% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 274 Go of 456 Go)
D: CD-ROM drive (Not Inserted)
E: Floppy drive, Flash card reader, USB Key (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Windows Explorer.) (.20/11/2010 - 04:24:46.) -- C:\Windows\Explorer.exe [2872320]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.F220BA78AB542C70211D73AE4729B2CD] - (.Microsoft Corporation - Internet Extensions para Win32.) (.05/05/2014 - 13:00:56.) -- C:\Windows\System32\wininet.dll [2260480]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.20/11/2010 - 04:25:32.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.20/11/2010 - 04:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.27/09/2013 - 22:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 00:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 00:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 01:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.26/04/2011 - 23:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 00:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.23/01/2014 - 23:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 01:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.20/11/2010 - 02:06:42.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 00:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.20/11/2010 - 04:34:04.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes Favoris (My Favorites) : 1/21
~ Mes Documents (My Documents) : 1/278
~ Mon Bureau (My Desktop) : 1/5377
~ Menu demarrer (Programs) : 1/19
~ Hidden Files: Scanned in 00mn 13s



---\\ Processos lançados
[MD5.241B07FF7F5943B9C1BF3235F49AC1E1] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744] [PID.2604]
[MD5.A2B38416E98F90DFA270CB8CFF61BE65] - (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376] [PID.2616]
[MD5.B1DAF0E7971BC806D2319DA1058A3DBA] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [1775808] [PID.4300]
[MD5.1620FE36666F4BBC2314B7F360FB1965] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488] [PID.1764]
[MD5.65C450CCC15ADDED610EB58DE35B307A] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7877120] [PID.3036]
[MD5.B5D2F4BF587FD60AF75B09EFC1AD0E0A] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [411936] [PID.744]
[MD5.43B1125D14E8797FDA9D5E167EB50AE3] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [528424] [PID.772]
[MD5.4D282B9C5BB05DF92C9F3977DFB9F916] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400] [PID.1564]
[MD5.65AF41A7A2C5B6693E1B4164E7632C3E] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400] [PID.1780]
[MD5.D5A444B63637EC0932172C6719A10252] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe [263048] [PID.1000]
[MD5.43B18BAA433FD79DFC7D4B25AF6EB2F9] - (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984] [PID.2024]
~ Processes Running: Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml
P2 - FPN: [HKCU] [gastecnologia.com.br/sf/bb] - (.GAS Tecnologia - Internet Banking Helper.) -- C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll
~ Firefox Browser: 16 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 0



---\\ Browser Helper Objects do navegador (02)
O2 - BHO: G-Buster Browser Defense [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540000} . (.Banco do Brasil - Gbieh Module.) -- C:\Program Files (x86)\GbPlugin\gbieh.dll
~ BHO: 6 Legitimates Filtered in 00mn 00s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Boutões da barra de ferramentas principal do Internet Explorer (09)
O9 - Extra button: Skype Click to Call [64Bits] - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- c:\program files (x86)\skype\toolbars\internet explorer x64\icon.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Site na zona confiavél do Internet Explorer (05)
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bancobrasil.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bb.com.br
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Lista dos serviços NT não Microsoft e não desativados (023)
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
~ Services: 8 Legitimates Filtered in 00mn 03s



---\\ Tarefas planificadas automaticamente (039)
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [902]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1066]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1070]
~ Scheduled Task: 8 Legitimates Filtered in 00mn 01s



---\\ Drivers lançados ao arranque do sistema (041)
O41 - Driver: (Bnbase) . (. - .) - C:\Windows\System32\drivers\bnbasex64.sys (.not file.)
~ Drivers: 91 Legitimates Filtered in 00mn 00s



---\\ Software instalados (042)
O42 - Logiciel: Eador. Masters of the Broken World - (.Snowbird Games.) [HKLM][64Bits] -- Steam App 232050
O42 - Logiciel: Halo: Spartan Assault - (.Vanguard Games.) [HKLM][64Bits] -- Steam App 277430
~ Logic: 21 Legitimates Filtered in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Astral Byte]
[HKCU\Software\Cliffhanger]
[HKCU\Software\GbAs]
[HKCU\Software\Kihon]
[HKCU\Software\Mechanist.co]
[HKCU\Software\MechanistGames]
[HKCU\Software\Neonga]
[HKCU\Software\superdownloads.com.br]
[HKLM\Software\Wow6432Node\AutoHelpDesk]
[HKLM\Software\Wow6432Node\GameVicio]
~ Key Software: 232 Legitimates Filtered in 00mn 00s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 07/04/2014 - 23:09:09 - [] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\StunlockStudios
O43 - CFD: 21/05/2014 - 12:54:45 - [0] ----D C:\Users\Cliente.Cliente1-PC\AppData\Local\Z2
O43 - CFD: 15/04/2014 - 11:28:55 - [] ----D C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio
O43 - CFD: 04/04/2014 - 12:10:37 - [0] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Strife
~ Program Folder: 133 Legitimates Filtered in 00mn 00s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.FEC789142370C40BFEEB7E746DF780C1] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147754]
O44 - LFC:[MD5.321D7564D88D594D0AE1A40311A71A30] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [707974]
O44 - LFC:[MD5.66F33BD378E57F1D2D279057C7776DA8] - 21/05/2014 - 02:54:23 ---A- . (...) -- C:\PureRa.txt [1842]
O44 - LFC:[MD5.2F96092D4EA423689C14148D41C73706] - 21/05/2014 - 12:39:48 ---A- . (...) -- C:\zoek-results2014-05-21-153948.log [156570]
O44 - LFC:[MD5.213DCA133B8DE33A09A02D979D2BC6D9] - 21/05/2014 - 13:58:47 ---A- . (...) -- C:\zoek-results2014-05-21-165847.log [11132]
O44 - LFC:[MD5.3FE073CB5BEF33E0E231DB618915FF65] - 21/05/2014 - 17:57:35 ---A- . (...) -- C:\zoek-results.log [4889]
~ Files: 14 Legitimates Filtered in 00mn 44s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 18 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 4 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:08/05/2013 - 09:52:48 ---A- . (.GAS Tecnologia - GbPlugin Device Driver.) -- C:\Windows\SysWOW64\drivers\gbpkm.sys [49536]
~ Drivers: 50 Legitimates Filtered in 00mn 19s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - [Você precisa estar registrado e conectado para ver este link.]
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - [Você precisa estar registrado e conectado para ver este link.]
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa adicional à raiz do sistema (radicular) (SPRF) (O84)
[MD5.7EC9E810ED839FF7349575FD34784979] [SPRF][26/04/2014] (...) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\unins000.dat [55631]
[MD5.70F851F7A524071E13F17DC401A21906] [SPRF][20/05/2014] (...) -- C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe [1326389]
[MD5.D9DE89F0FAF18019BC9595F0F47BCA61] [SPRF][04/04/2014] (.Atribune.org - ATF Cleaner.exe.) -- C:\Users\Cliente.Cliente1-PC\Desktop\ATF-Cleaner.exe [50688]
[MD5.64BAEC464B396B66A353D8FC2F42A4E3] [SPRF][31/07/2011] (.RaProducts.org - System Purification Tool.) -- C:\Users\Cliente.Cliente1-PC\Desktop\PureRa.exe [76565]
~ Files: 4 Legitimates Filtered in 00mn 00s



---\\ Lista das exceções do FireWall (FirewallRules) (O87)
O87 - FAEL: "{DF8C6C86-4F7F-49B2-9855-F09D56C88467}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O87 - FAEL: "{3CE9F67D-28A1-4C24-B3E5-202F87570675}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
~ Firewall: 2 Legitimates Filtered in 00mn 03s



---\\ Search Tracing Registry Key (O100)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASAPI32 =>P2P.µTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASMANCS =>P2P.µTorrent
~ BTK: 118 Legitimates Filtered in 00mn 00s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 13/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Disabled 25/02/2014 1017424 | (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
SS - | Auto 02/04/2014 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 02/04/2014 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 20/04/2012 129976 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 28/11/2007 800040 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
SS - | Demand 22/01/2008 275752 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
SS - | Auto 09/11/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 23/04/2014 572096 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - | Auto 25/02/2014 440400 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 25/02/2014 440400 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 14/05/2014 123984 | (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
SR - | Auto 06/05/2014 528424 | (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
SR - | Auto 08/02/2014 923936 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 08/02/2014 411936 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 07s



---\\ Scâner Aditional (088)
Database Version : 13029 - (21/05/2014)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0

~ Additionnel Scan: 258026 Items scanned in 00mn 43s



---\\ Sumário das deteções encontradas na sua estação
~ MSI: 0 link(s) detected in 00mn 00s



~ 715 Legitimates filtered by white list
End of the scan (390 lines in 02mn 36s)(0)
avatar
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Power Max em Qua 21 Maio 2014, 23:40

 Selecione e copie todo o texto destacado em vermelho que te passei.
_____________________________________________________________________________________________________________

 Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta e nos diga como está seu PC depois disto.


Última edição por Power Max em Qui 22 Maio 2014, 09:57, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

Fórum PC Brasil = O melhor da internet você encontra aqui.

Super Links = Mensagens de fé e esperança para o seu coração
avatar
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Voltar ao Topo Ir em baixo

Re: Como tirar o Baidu antivirus?

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Voltar ao Topo Ir em baixo

Página 1 de 2 1, 2  Seguinte

Ver o tópico anterior Ver o tópico seguinte Voltar ao Topo


 
Permissão deste fórum:
Você não pode responder aos tópicos neste fórum