Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14810 usuários registrados
O último membro registrado é Josevinil

Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por joram Seg 01 Abr 2024, 06:35

Quem está conectado?
16 usuários online :: 0 registrados, 0 invisíveis e 16 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

abril 2024
SegTerQuaQuiSexSábDom
1234567
891011121314
15161718192021
22232425262728
2930     

Calendário Calendário


Verificação de Problemas...

3 participantes

Página 1 de 2 1, 2  Seguinte

Ir para baixo

problemas - Verificação de Problemas... Empty Verificação de Problemas...

Mensagem por Coelhocego Sáb 24 maio 2014, 19:34

Boa noite amigos (as)!!!

Venho novamente solicitar o vosso auxilio...
Avira Free Antivirus
Data do arquivo de relatório: sexta-feira, 23 de maio de 2014  21:16


O programa está sendo executado como versão completa sem limitações.
Os serviços online estão disponíveis.

Licenciado            : Avira Antivirus Free
Número de série       : 0000149996-AVHOE-0000001
Plataforma            : Windows 7 Ultimate
Versão do Windows     : (plain)  [6.1.7600]
Modo de inicialização : Normalmente inicializado
Nome de usuário       : eduardo
Nome do computador    : EDUARDO-PC

Informações da versão:
BUILD.DAT             : 14.0.3.350     56624 Bytes  25/02/2014 15:11:00
AVSCAN.EXE            : 14.0.3.332   1058384 Bytes  17/03/2014 16:54:51
AVSCANRC.DLL          : 14.0.3.252     59448 Bytes  17/03/2014 16:54:52
LUKE.DLL              : 14.0.3.336     65616 Bytes  17/03/2014 16:57:36
AVSCPLR.DLL           : 14.0.3.336    124496 Bytes  17/03/2014 16:54:53
AVREG.DLL             : 14.0.3.336    250448 Bytes  17/03/2014 16:54:42
avlode.dll            : 14.0.3.336    544848 Bytes  17/03/2014 16:54:34
avlode.rdf            : 14.0.4.22      64276 Bytes  15/05/2014 18:00:00
VBASE000.VDF          : 7.11.70.0   66736640 Bytes  04/04/2013 17:03:58
VBASE001.VDF          : 7.11.74.226  2201600 Bytes  30/04/2013 17:04:06
VBASE002.VDF          : 7.11.80.60   2751488 Bytes  28/05/2013 17:04:20
VBASE003.VDF          : 7.11.85.214  2162688 Bytes  21/06/2013 17:04:35
VBASE004.VDF          : 7.11.91.176  3903488 Bytes  23/07/2013 17:04:51
VBASE005.VDF          : 7.11.98.186  6822912 Bytes  29/08/2013 17:05:10
VBASE006.VDF          : 7.11.139.38 15708672 Bytes  27/03/2014 17:16:25
VBASE007.VDF          : 7.11.145.136  2117120 Bytes  28/04/2014 11:57:11
VBASE008.VDF          : 7.11.145.137     2048 Bytes  28/04/2014 11:57:11
VBASE009.VDF          : 7.11.145.138     2048 Bytes  28/04/2014 11:57:11
VBASE010.VDF          : 7.11.145.139     2048 Bytes  28/04/2014 11:57:11
VBASE011.VDF          : 7.11.145.140     2048 Bytes  28/04/2014 11:57:11
VBASE012.VDF          : 7.11.145.141     2048 Bytes  28/04/2014 11:57:11
VBASE013.VDF          : 7.11.146.20   166912 Bytes  29/04/2014 17:58:02
VBASE014.VDF          : 7.11.146.131   194048 Bytes  01/05/2014 11:57:50
VBASE015.VDF          : 7.11.146.243   167936 Bytes  03/05/2014 17:58:06
VBASE016.VDF          : 7.11.147.97   122368 Bytes  05/05/2014 11:58:16
VBASE017.VDF          : 7.11.147.207   169472 Bytes  06/05/2014 17:58:30
VBASE018.VDF          : 7.11.148.61   174080 Bytes  08/05/2014 11:58:44
VBASE019.VDF          : 7.11.148.149   257024 Bytes  09/05/2014 23:58:58
VBASE020.VDF          : 7.11.148.241   135168 Bytes  12/05/2014 05:59:19
VBASE021.VDF          : 7.11.149.61   139264 Bytes  13/05/2014 11:59:32
VBASE022.VDF          : 7.11.149.169   160256 Bytes  15/05/2014 05:59:50
VBASE023.VDF          : 7.11.150.31   189440 Bytes  17/05/2014 12:00:35
VBASE024.VDF          : 7.11.150.119   157696 Bytes  20/05/2014 06:01:04
VBASE025.VDF          : 7.11.151.25   219648 Bytes  23/05/2014 12:02:14
VBASE026.VDF          : 7.11.151.26     2048 Bytes  23/05/2014 12:02:15
VBASE027.VDF          : 7.11.151.27     2048 Bytes  23/05/2014 12:02:15
VBASE028.VDF          : 7.11.151.28     2048 Bytes  23/05/2014 12:02:15
VBASE029.VDF          : 7.11.151.29     2048 Bytes  23/05/2014 12:02:15
VBASE030.VDF          : 7.11.151.30     2048 Bytes  23/05/2014 12:02:15
VBASE031.VDF          : 7.11.151.88   206848 Bytes  24/05/2014 00:02:23
Versão do mecanismo   : 8.3.18.32
AEVDF.DLL             : 8.3.0.4       118976 Bytes  20/03/2014 17:14:05
AESCRIPT.DLL          : 8.1.4.204     528584 Bytes  15/05/2014 18:00:00
AESCN.DLL             : 8.3.0.4       135360 Bytes  23/05/2014 12:02:14
AESBX.DLL             : 8.2.20.24    1409224 Bytes  08/05/2014 17:58:55
AERDL.DLL             : 8.2.0.138     704888 Bytes  17/03/2014 16:52:38
AEPACK.DLL            : 8.4.0.24      778440 Bytes  13/05/2014 17:59:37
AEOFFICE.DLL          : 8.3.0.4       205000 Bytes  17/04/2014 17:55:54
AEHEUR.DLL            : 8.1.4.1084   6705352 Bytes  23/05/2014 12:02:14
AEHELP.DLL            : 8.3.0.0       274808 Bytes  17/03/2014 16:52:23
AEGEN.DLL             : 8.1.7.26      450752 Bytes  17/04/2014 17:55:54
AEEXP.DLL             : 8.4.1.342     594120 Bytes  23/05/2014 12:02:14
AEEMU.DLL             : 8.1.3.2       393587 Bytes  17/03/2014 16:52:21
AECORE.DLL            : 8.3.0.6       241864 Bytes  19/03/2014 17:14:15
AEBB.DLL              : 8.1.1.4        53619 Bytes  17/03/2014 16:52:18
AVWINLL.DLL           : 14.0.3.252     23608 Bytes  17/03/2014 16:51:59
AVPREF.DLL            : 14.0.3.252     48696 Bytes  17/03/2014 16:54:40
AVREP.DLL             : 14.0.3.252    175672 Bytes  17/03/2014 16:54:43
AVARKT.DLL            : 14.0.3.336    256080 Bytes  17/03/2014 16:54:00
AVEVTLOG.DLL          : 14.0.3.336    165968 Bytes  17/03/2014 16:54:12
SQLITE3.DLL           : 3.7.0.1       394808 Bytes  17/03/2014 16:58:43
AVSMTP.DLL            : 14.0.3.252     60472 Bytes  17/03/2014 16:54:58
NETNT.DLL             : 14.0.3.252     13368 Bytes  17/03/2014 16:57:46
RCIMAGE.DLL           : 14.0.3.260   4980792 Bytes  17/03/2014 16:52:04
RCTEXT.DLL            : 14.0.3.282     73272 Bytes  17/03/2014 16:52:05

Opções de configuração para a varredura:
Nome da tarefa......................................: Discos rígidos locais
Arquivo de configuração.............................: C:\program files (x86)\avira\antivir desktop\alldiscs.avp
Relatório...........................................: padrão
Ação primária.......................................: Interativo
Ação secundária.....................................: Ignorar
Fazer a varredura do setor mestre de inicialização..: ativado
Fazer a varredura do setor de inicialização.........: ativado
Setores de inicialização............................: C:, D:, J:,
Varredura do processo...............................: ativado
Fazer a varredura do registro.......................: ativado
Procurar rootkits...................................: desativado
Varredura da integridade dos arquivos de sistema....: desativado
Fazer a varredura de todos arquivos.................: Seleção de arquivo inteligente
Fazer a varredura dos arquivamentos.................: ativado
Profundidade de recursão............................: 20
Extensões inteligentes..............................: ativado
Heurística para vírus de macro......................: ativado
Heurística do arquivo...............................: estendido

Início da varredura: sexta-feira, 23 de maio de 2014  21:16

Iniciar a varredura dos setores de inicialização:
Setor de inicialização 'HDD0(C:, D:, J:)'
   [INFO]      Nenhum vírus foi encontrado!

A varredura dos processos em execução será iniciada:
Processo de varredura 'svchost.exe' – foi feita a varredura em '52' módulo(s)
Processo de varredura 'GbpSv.exe' – foi feita a varredura em '47' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '42' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '81' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '96' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '172' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '69' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '96' módulo(s)
Processo de varredura 'spoolsv.exe' – foi feita a varredura em '90' módulo(s)
Processo de varredura 'sched.exe' – foi feita a varredura em '55' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '60' módulo(s)
Processo de varredura 'taskhost.exe' – foi feita a varredura em '56' módulo(s)
Processo de varredura 'avguard.exe' – foi feita a varredura em '104' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '62' módulo(s)
Processo de varredura 'fbguard.exe' – foi feita a varredura em '29' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '21' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '21' módulo(s)
Processo de varredura 'PsiService_2.exe' – foi feita a varredura em '26' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '44' módulo(s)
Processo de varredura 'TeamViewer_Service.exe' – foi feita a varredura em '110' módulo(s)
Processo de varredura 'TorchCrashHandler.exe' – foi feita a varredura em '44' módulo(s)
Processo de varredura 'WLIDSVC.EXE' – foi feita a varredura em '77' módulo(s)
Processo de varredura 'Dwm.exe' – foi feita a varredura em '44' módulo(s)
Processo de varredura 'Explorer.EXE' – foi feita a varredura em '199' módulo(s)
Processo de varredura 'WLIDSvcM.exe' – foi feita a varredura em '17' módulo(s)
Processo de varredura 'CalibrizeResume.exe' – foi feita a varredura em '30' módulo(s)
Processo de varredura 'Kies.exe' – foi feita a varredura em '93' módulo(s)
Processo de varredura 'KiesPDLR.exe' – foi feita a varredura em '59' módulo(s)
Processo de varredura 'NokiaSuite.exe' – foi feita a varredura em '198' módulo(s)
Processo de varredura 'Skype.exe' – foi feita a varredura em '182' módulo(s)
Processo de varredura 'bpftpserver.exe' – foi feita a varredura em '79' módulo(s)
Processo de varredura 'DUC20.exe' – foi feita a varredura em '47' módulo(s)
Processo de varredura 'KiesTrayAgent.exe' – foi feita a varredura em '91' módulo(s)
Processo de varredura 'avgnt.exe' – foi feita a varredura em '92' módulo(s)
Processo de varredura 'jusched.exe' – foi feita a varredura em '40' módulo(s)
Processo de varredura 'avshadow.exe' – foi feita a varredura em '20' módulo(s)
Processo de varredura 'SearchIndexer.exe' – foi feita a varredura em '100' módulo(s)
Processo de varredura 'ServiceLayer.exe' – foi feita a varredura em '40' módulo(s)
Processo de varredura 'fbserver.exe' – foi feita a varredura em '43' módulo(s)
Processo de varredura 'NclUSBSrv64.exe' – foi feita a varredura em '26' módulo(s)
Processo de varredura 'NclRSSrv.exe' – foi feita a varredura em '22' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '37' módulo(s)
Processo de varredura 'WUDFHost.exe' – foi feita a varredura em '36' módulo(s)
Processo de varredura 'TeamViewer.exe' – foi feita a varredura em '141' módulo(s)
Processo de varredura 'tv_w32.exe' – foi feita a varredura em '57' módulo(s)
Processo de varredura 'tv_x64.exe' – foi feita a varredura em '42' módulo(s)
Processo de varredura 'NclMSBTSrvEx.exe' – foi feita a varredura em '39' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '41' módulo(s)
Processo de varredura 'wmpnetwk.exe' – foi feita a varredura em '127' módulo(s)
Processo de varredura 'wuauclt.exe' – foi feita a varredura em '36' módulo(s)
Processo de varredura 'jucheck.exe' – foi feita a varredura em '81' módulo(s)
Processo de varredura 'splwow64.exe' – foi feita a varredura em '32' módulo(s)
Processo de varredura 'Listener.exe' – foi feita a varredura em '72' módulo(s)
Processo de varredura 'AAVServer.exe' – foi feita a varredura em '88' módulo(s)
Processo de varredura 'AATServer.exe' – foi feita a varredura em '38' módulo(s)
Processo de varredura 'ManyCam.exe' – foi feita a varredura em '153' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '159' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '57' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'taskhost.exe' – foi feita a varredura em '65' módulo(s)
Processo de varredura 'CorelDRW.exe' – foi feita a varredura em '393' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'SearchProtocolHost.exe' – foi feita a varredura em '45' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'prevhost.exe' – foi feita a varredura em '35' módulo(s)
Processo de varredura 'taskmgr.exe' – foi feita a varredura em '46' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'chrome.exe' – foi feita a varredura em '50' módulo(s)
Processo de varredura 'TeamViewer_Desktop.exe' – foi feita a varredura em '79' módulo(s)
Processo de varredura 'SearchFilterHost.exe' – foi feita a varredura em '27' módulo(s)
Processo de varredura 'avcenter.exe' – foi feita a varredura em '153' módulo(s)
Processo de varredura 'avscan.exe' – foi feita a varredura em '111' módulo(s)
Processo de varredura 'svchost.exe' – foi feita a varredura em '9' módulo(s)
Processo de varredura 'smss.exe' – foi feita a varredura em '2' módulo(s)
Processo de varredura 'csrss.exe' – foi feita a varredura em '18' módulo(s)
Processo de varredura 'wininit.exe' – foi feita a varredura em '26' módulo(s)
Processo de varredura 'csrss.exe' – foi feita a varredura em '18' módulo(s)
Processo de varredura 'services.exe' – foi feita a varredura em '33' módulo(s)
Processo de varredura 'lsass.exe' – foi feita a varredura em '73' módulo(s)
Processo de varredura 'lsm.exe' – foi feita a varredura em '16' módulo(s)
Processo de varredura 'winlogon.exe' – foi feita a varredura em '36' módulo(s)

Iniciando a varredura dos arquivos executáveis (registro):
Foi feita a varredura no registro ( '2324' arquivos ).


Iniciando a varredura do arquivo:

Iniciar varredura em 'C:\' <SISTEMA Tati>
C:\Users\eduardo\AppData\Local\Temp\ICReinstall_vreveal-32013029-32-bits.exe
 [DETECÇÃO]  Contém padrões de vírus de Adware ADWARE/InstallCore.NZ
Iniciar varredura em 'D:\' <RS Tati>
Iniciar varredura em 'J:\' <MASTER>

Iniciando a desinfecção:
C:\Users\eduardo\AppData\Local\Temp\ICReinstall_vreveal-32013029-32-bits.exe
 [DETECÇÃO]  Contém padrões de vírus de Adware ADWARE/InstallCore.NZ
 [NOTA]      O arquivo foi movido para o diretório de quarentena sob o nome '558eb20e.qua'!


Término da varredura: sábado, 24 de maio de 2014  19:31
Tempo decorrido:  6:04:16 Hora(s)

A varredura foi concluída.

2250257 Diretórios verificados
3249590 Foi feita a varredura nos arquivos
     1 Vírus e/ou programas indesejados foram encontrados
     0 Os arquivos foram classificados como suspeitos
     0 Arquivos excluídos
     0 Vírus e programas indesejados foram reparados
     1 Os arquivos foram movidos para a quarentena
     0 Os arquivos foram renomeados
     0 Não é possível fazer a varredura dos arquivos
3249589 Arquivos não envolvidos
546491 Varredura dos arquivamentos terminada
     0 Avisos
     1 Notas
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Sáb 24 maio 2014, 19:36

 problemas - Verificação de Problemas... 648673379  Olá.

Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Coelhocego Sáb 24 maio 2014, 20:19

# AdwCleaner v3.210 - Relatório criado 24/05/2014 às 20:08:09
# Atualizado 19/05/2014 por Xplode
# Sistema Operacional : Windows 7 Ultimate  (64 bits)
# Usuário : eduardo - EDUARDO-PC
# Executando de : C:\Users\eduardo\Downloads\AdwCleaner.exe
# Opção : Limpar

***** [ Serviços ] *****

Serviço Deletada : torchcrashhandler

***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\ProgramData\Ask
Pasta Deletada : C:\ProgramData\baidu
Pasta Deletada : C:\ProgramData\IePluginService
Pasta Deletada : C:\ProgramData\Tarma Installer
Pasta Deletada : C:\ProgramData\torchcrashhandler
Pasta Deletada : C:\ProgramData\Uniblue
Pasta Deletada : C:\ProgramData\WPM
Pasta Deletada : C:\Program Files (x86)\DealPly
Pasta Deletada : C:\Program Files (x86)\IminentToolbar
Pasta Deletada : C:\Program Files (x86)\Optimizer Pro
Pasta Deletada : C:\Program Files (x86)\SupTab
Pasta Deletada : C:\Users\eduardo\AppData\Local\genienext
Pasta Deletada : C:\Users\eduardo\AppData\Local\Mobogenie
Pasta Deletada : C:\Users\eduardo\AppData\Local\OpenCandy
Pasta Deletada : C:\Users\eduardo\AppData\Local\PackageAware
Pasta Deletada : C:\Users\eduardo\AppData\Local\SearchProtect
Pasta Deletada : C:\Users\eduardo\AppData\Local\Smartbar
Pasta Deletada : C:\Users\eduardo\AppData\Local\torch
Pasta Deletada : C:\Users\eduardo\AppData\LocalLow\Funmoods
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\1H1Q
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\baidu
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\DealPly
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\newnext.me
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\OpenCandy
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\pdfforge
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\sweet-page
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly
Pasta Deletada : C:\Users\eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\torch
Pasta Deletada : C:\Users\eduardo\Documents\Mobogenie
Pasta Deletada : C:\Users\eduardo\Documents\Optimizer Pro
Pasta Deletada : C:\Users\eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Arquivo Deletada : C:\END
Arquivo Deletada : C:\Users\eduardo\daemonprocess.txt
Arquivo Deletada : C:\Users\eduardo\AppData\Local\funmoods-speeddial_sf.crx
Arquivo Deletada : C:\Users\eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
Arquivo Deletada : C:\Program Files (x86)\Mozilla Firefox\defaults\pref\all-iminent.js
Arquivo Deletada : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\StartWeb.xml
Arquivo Deletada : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\sweet-page.xml
Arquivo Deletada : C:\Windows\System32\Tasks\DealPlyUpdate

***** [ Atalhos ] *****


***** [ Registro ] *****

Valor Deletedo : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [lightningnewtab@gmail.com]
Chave Deletedo : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Chave Deletedo : HKCU\Software\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Chave Deletedo : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Valor Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\RegistryHelper.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Chave Deletedo : HKLM\SOFTWARE\Classes\driverscanner
Chave Deletedo : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Chave Deletedo : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\IMinentToolbar_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\IMinentToolbar_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\LatestDLMgr_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\LatestDLMgr_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Mobogenie_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\NewPlayer_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SupTab_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SupTab_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wpm_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wpm_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\YontooDesktop_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\torch.exe
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Chave Deletedo : HKLM\SOFTWARE\MozillaPlugins\TorchVLC
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_videocacheview_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_videocacheview_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{0E4B2CAB-B859-4C57-B96E-63DDEC692BC4}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{544C2426-48FD-4C40-AE3B-31257FF334D0}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{960DF771-CFCB-4E53-A5B5-6EF2BBE6E706}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{1917AB4C-E2E9-42AE-A51E-B5750F160BFB}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A4341726-E922-47BB-86A6-23F4F4F67342}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{B887CA3B-D82B-4A01-AD29-E97444D01CE6}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0FB6A909-6086-458F-BD92-1F8EE10042A0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B15BBE59-42F5-4206-B3F0-BE98F5DC4B93}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF7BD87A-8024-11E2-F316-F3E56188709B}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFB904C4-C255-4540-B97E-A75A34F1FFB0}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{1917AB4C-E2E9-42AE-A51E-B5750F160BFB}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{A4341726-E922-47BB-86A6-23F4F4F67342}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{045F91B3-695F-423A-98C7-8DE3C47AA020}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0D80F1C5-D17B-4177-AC68-955F3EF9F191}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1348BD1B-C32A-41A7-9BD4-5377AA1AB925}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{23C70BCA-6E23-4A65-AD2E-1389062074F1}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{23D8EEF7-0E13-4000-B9C4-6603C1E912D1}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{295CACB4-51F5-46FD-914E-C72BAAE1B672}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2CE5C4B9-6DBE-4528-96FA-C9FF38EF1762}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{34C1FDF7-02C1-4F23-B393-F48B16E071D1}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{395AFE6E-8308-48DB-89BE-ED5F4AA3D3EC}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{43969E3F-3E7C-4911-A8F1-79C6CA6AC731}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{43B390F0-6BA2-45CA-ABF2-5DB0CEE9B49D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{54291324-7A3D-4F11-B707-3FB6A2C97BD9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{59C63F11-D4E5-46E7-9B8A-EE158DCA83A8}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{5DA22CBD-0029-4A09-B757-CF0FAFC488ED}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{77A6E7D4-4A83-4A9B-A2A0-EF3B125DC29D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{93CF54F5-CFAA-4440-B588-8ED0DFAD5C21}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{94CADA2E-1D3F-419F-8A3D-06C58EDF53C8}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{9E52EB8B-8DD9-4605-AD36-D352BCD482F2}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A1440EC3-F0FA-407A-B811-DE6668C06D29}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B887CA3B-D82B-4A01-AD29-E97444D01CE6}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B9A84AD0-5777-46FD-8B8F-1EBD06750FBC}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C0585B2F-74D7-4734-88DE-6C150C5D4036}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C1995F88-1C7F-40D7-B0FA-6F107F6308B8}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C815E3DA-0823-49B0-9270-D1771D58B317}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{CA17D76B-F91D-4659-A7FD-A9F7ED375CDD}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D3BC53E7-0437-4C97-90EE-2CD6FF47FB14}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D54C859C-6066-4F31-8FE0-2AAEDCAE67D7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D8242E89-2F81-484A-AE5B-BA8CAD5B7347}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E4A994B0-5550-4680-A4C6-B9470B888069}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{EE95078D-518C-4FD2-8093-FD1D4E33D3CA}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{EF0588D6-1621-4A75-B8BE-F4BC34794136}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F9EB11AB-9384-4736-9B33-993940F88895}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Valor Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Deletedo : HKCU\Software\Complitly
Chave Deletedo : HKCU\Software\Conduit
Chave Deletedo : HKCU\Software\DealPly
Chave Deletedo : HKCU\Software\Funmoods
Chave Deletedo : HKCU\Software\Iminent
Chave Deletedo : HKCU\Software\InstallCore
Chave Deletedo : HKCU\Software\Softonic
Chave Deletedo : HKCU\Software\torch
Chave Deletedo : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Chave Deletedo : HKCU\Software\AppDataLow\Software\Crossrider
Chave Deletedo : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Chave Deletedo : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Chave Deletedo : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Chave Deletedo : HKLM\Software\Conduit
Chave Deletedo : HKLM\Software\DealPly
Chave Deletedo : HKLM\Software\Funmoods
Chave Deletedo : HKLM\Software\Iminent
Chave Deletedo : HKLM\Software\SupTab
Chave Deletedo : HKLM\Software\supWPM
Chave Deletedo : HKLM\Software\sweet-pageSoftware
Chave Deletedo : HKLM\Software\torch
Chave Deletedo : HKLM\Software\Uniblue
Chave Deletedo : HKLM\Software\Wpm
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Chave Deletedo : [x64] HKLM\SOFTWARE\Conduit
Chave Deletedo : [x64] HKLM\SOFTWARE\Tarma Installer

***** [ Navegadores ] *****

-\\ Internet Explorer v34.0.1847.116

Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [CustomizeSearch]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant]
Configurações Restauradas : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Configurações Restauradas : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Configurações Restauradas : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v3.6 (pt-BR)

[ Arquivo : C:\Users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\ayo2bp56.default\prefs.js ]


-\\ Google Chrome v35.0.1916.114

[ Arquivo : C:\Users\eduardo\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deletedo [Search Provider] : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Deletedo [Search Provider] : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Deletedo [Extension] : cjpglkicenollcignonpgiafdgfeehoj
Deletedo [Extension] : jbolfgndggfhhpbnkgnpjkfhinclbigj

*************************

AdwCleaner[R0].txt - [29874 octets] - [24/05/2014 20:06:29]
AdwCleaner[S0].txt - [27471 octets] - [24/05/2014 20:08:09]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [27532 octets] ##########
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Sáb 24 maio 2014, 20:31

Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o programa acima é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Coelhocego Sáb 24 maio 2014, 23:18

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Ultimate x64
Ran by eduardo on 24/05/2014 at 23:05:21,57
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Myfree Codec
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yuna software
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Myfree Codec
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\yuna software
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\messenger plus! for skype_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\messenger plus! for skype_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\plusskypeservice_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\plusskypeservice_rasmancs
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311201102}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110311201102}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511071176}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511161184}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\eduardo\AppData\Roaming\getrighttogo"
Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"
Successfully deleted: [Folder] "C:\Program Files (x86)\yuna software"
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{004B53BC-0BA7-4955-B18D-3A4C92ABEEC8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0220BE17-F86F-4479-9606-0C7BF3BCD881}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{030C3D16-2A01-4453-B4BA-362BF70E68AA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{04D7EC61-32AC-4E19-B5FA-039D9884747B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0511CB0D-655F-46E3-99B2-703B01EFE831}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{06ACEAFB-BF85-4EB2-B24B-2E0393726ADC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0742EC90-C3C0-448A-A03A-04F4D46F03CA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{074C27F9-8CC4-4219-81D4-4B8BE4FFE10C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{080EFABE-76FB-406D-A284-EA9267014793}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{08F1DD44-D8E1-44D6-9C5E-F58E92C5D63D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{097A3F17-7DEA-431B-9F7A-BDDF548767B3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{09D1985D-89A4-459D-85A4-3386CD9F2B00}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0A03A180-E385-44D8-8602-AC5C7AE8CEFA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0A04C224-8900-4749-B18D-51F39DE60478}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0A09F620-8FE7-42C0-8FD6-9C2336120DDF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0B077B4B-6B1F-41B9-90F4-040B97CE2474}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0B294E32-8367-48E1-B43C-D9E63B4E410E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0BC17479-6D67-4C81-9C11-DA76F2669DB5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0C1B589F-1D6D-4A82-9CFC-6570F08CD5A5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0C221631-D1B5-4093-BE8C-D414952CA120}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0C9438AA-5F89-45EF-96A0-8EDE711B64ED}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0CD3948E-C4E9-405E-ADA2-EBC5396A2DD3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0E800868-7140-488A-B422-032959316A7E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0F0812EE-1770-4892-9C28-812041CE65DF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{0FA6FB83-8522-4E72-A6C8-750867019F51}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{10587F0D-04FE-4828-943C-32D0DD57F676}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1099608D-FA62-4F59-819E-AD5F98530770}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{114DE919-ADF6-4783-9940-CB0DA660BCC7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{116C82A0-BA4A-44B1-ABF9-6BC50CFC10D9}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{12D3B365-ED44-433A-ABE8-431E30158FDD}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1488E7AA-98ED-4B15-9BE7-13BBC7886D6A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{155154F8-AE13-468E-BC48-973C2C1C2D57}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{15E54185-5D3E-4EE4-B179-A597699CCC5C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{161CF84D-E7D0-417F-AFED-08B159362C48}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{176563C0-5708-4EBD-AB86-58FCD20952A4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{17D6B195-E72A-455F-943E-BD89C0994DC6}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{181C3E66-A183-4938-9017-71337B228CBB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{186516B0-7983-480C-8549-03DDEDD72ACB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{18F90EEB-F09D-45ED-9AB2-F5B321DC962E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{198561A5-E0A9-4A3B-9106-5F935ABB4902}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1A384603-9925-4407-AD38-DA4213B9E5A5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1C7B5C4E-239F-4B98-9E20-86625A6F0052}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1CDD7668-39C1-4606-A900-19F1A8266F23}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1DAE8E29-B67B-429B-9B65-A4457945297F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1E8BD23D-2606-4966-A71B-9746198935B8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1EDD820A-1D84-4A9D-B0F2-AFD87C88F24D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{1FA9B6A8-5690-403D-97DD-1664343A42EC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{20D56E86-76E8-4A9B-92E3-4D620BDFDB0C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{215C4D86-433F-4838-95EE-C75BCFDE49A8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{23987C0D-856A-4DD3-8E80-1A0A74A1717D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{23B39FF2-7973-42F6-A578-3CFAD0DB92D5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{23F00314-7C9E-40B9-A65B-AD811482416E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2447F774-6A42-42C1-9F1A-3D36B78DC1B3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{249F433F-517F-4FC8-A608-B54593CEB936}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2636D53F-340A-4053-84CE-B8DC26ACDB71}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{265631D0-ABE3-49D9-9411-3D339FC2D4FE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2849EA1E-96B2-43B7-A865-11D160A6ACC1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2BA10440-AB5E-4181-A4F6-35E9B113DF5D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2BC886FD-BFEF-402B-9688-A245AAE7E5A4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2BDED978-E426-488E-8F8E-AEEFE154F9E2}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2C148B26-528C-401E-AC53-DAF91D13623B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2C497BCF-B8B9-43EA-861D-D3AD84A29403}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2C5D901B-32BA-4612-858F-907170B9B75B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2CADA9F1-808A-4832-831B-5E6B89CF5DB4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2D329DAE-3A90-4740-BEC3-89DC95D4D704}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2DC6FBC2-11E4-4E96-B276-E7E91702CDB6}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2E28E6AC-8D94-429A-A25D-ABABA1286ABF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2E8166A9-58B8-49E7-A7F3-E18F8D3636B0}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2EB8BB30-A7B7-45C0-879C-FAEDDF07B985}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2F4B522E-7BF7-4225-9CB6-A785CF1B9266}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{2F84B094-9111-4F9E-99CD-C5750B641A9C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{307E3652-AAA4-4A05-B4BE-EA21D7A8C373}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{308E8992-E35D-454A-9DA3-F137DF165CFE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{313F9047-B859-4848-8F41-DF0342D7FDF1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3195C20F-D4A2-41AA-BC49-BD77F3B73DFD}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{31B50B00-30B4-4AAE-9A7E-406D5961BB29}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{33BB6B40-CF8A-4B15-AC3B-BA5E7118B00A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{34C65228-8A59-4249-A2D4-41CB63DB97FE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{34C6F1E7-EB12-4B90-8C67-E4B69E4A969C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{358512CC-D771-4934-AD48-1D71F120C741}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3597187E-4C62-41A8-84B9-DB5AC43D8D12}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{35D72024-E412-4854-BF5D-E050122A1EBC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{36156E67-67DA-47A6-87C6-9E24612839B1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{37175B9A-A5B6-45E2-A7D1-E36CE1C94186}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{381780DF-9E20-47B2-83CF-DE985099E2DA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{385DB0F0-2CE1-4CEE-9A80-603689B7492A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3A089EE4-CD9A-4A89-BD5B-F74B1106455E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3D55B524-C7B0-4516-8E52-4BDC54A85823}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3DBBB125-45A2-4BC6-A022-AC90AD4D30C4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3E9080EC-A431-4DF5-A828-B5B1FCF31A23}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3EACF9B4-F32B-4F65-882A-1884A039DB83}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3EAD1DAD-47E3-4263-9CF0-47D5B221BB59}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3EB302FA-33A2-4DC8-82D7-916DE0311EB5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3EC56750-9A01-4A99-9C3F-BFC7BC574766}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{3F15AF83-01FD-41F8-94AB-E7DB7B6A40C5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4113E38B-9254-4016-9703-F5F9933311B8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{429474A6-2D44-4EAA-A5AF-EFC1A03E91B8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{43F6E3F8-A14A-4702-9953-3BA4ED22177D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{43FD1EF9-775E-4001-A999-72C8DB877EE5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{44A18E62-2CC6-4F30-8F42-23D9940574A5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{46C4CEB5-CB80-497A-B0B7-77FA99E2CA5D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{46E0394A-90B9-479F-B3D4-036F6F7E2217}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{46E52073-2655-48A8-871D-177F3F2FC321}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{471DAB23-1F73-44A5-8CF8-08F251E7E284}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{48E78752-54D7-429C-884E-3BE3FA394EEF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{49B5AA03-A0A1-4454-B559-D24B05425DC4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4A32671A-35B9-48FD-95F3-A9FB954E54BB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4A65D91B-9D91-41FC-BDE5-ABD88211BA11}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4B33A87D-BE0F-44B8-AA11-10BD1675B10F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4B74E565-4684-413B-8FF5-C38341A71C46}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4DDFA07B-A9CD-43AE-8D8B-1CD4CAE5030A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4DE9C305-0452-44F6-9F19-9E056D02971F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4FCFD9C3-8B11-4CDA-8777-61F67CB0EF14}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{4FE22DF8-0DE0-46F4-95A6-BE95EE2E601B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{501BB775-0E00-4EFD-98CD-DEFBB64E9900}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5047F58D-10AD-41D3-A61D-BFD50AC34755}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{50B45A68-A902-428D-A851-F86058BB9B61}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{520F8266-48DC-4736-A28B-FE286CEABC43}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5361130E-72CB-4730-A53B-9516D614C06D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{53627EA0-D5A8-42F8-93C0-8A303CCEB964}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{549EA218-234F-4EAE-A611-62B60FFD8141}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5502606D-2267-4DC0-B3E2-6FCBE02FE211}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{55AC6334-75D4-4E98-80C5-45CCBB87E998}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{56997841-25A0-4C5A-AF44-531D653EBE38}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{57A2D811-ED82-4116-9011-DC1D7903F4E9}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{580486B1-000C-455C-AC37-4E989AD0E079}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{597B9026-FAD3-41E0-AC5B-C0504C877E50}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{59AC7D05-4F8B-48C5-998C-AB858BF7599A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{59E32A01-F146-4B1C-B4BC-0F66485F1B64}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5A3B53FE-9EFD-4406-AC35-D0380FBD8C28}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5B45A78E-2A8B-411D-934B-A8519FE43CE4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5C126E7A-0796-4683-B3C6-E83FF19853E0}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5D67B705-2179-4E37-B5A1-73A05496153D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5DEE987A-48D2-4435-BF7E-8A7A220C1625}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5E606964-9483-4ACA-B64B-6F5652D4DF40}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{5E65A815-3F11-48FE-8ED6-0EDC8F353C98}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{62900941-E7D0-4177-BB8E-30C318CE78DF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{63D58DFD-8153-42E8-87D5-0BB373FAA854}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6429C109-98BB-4231-A097-986723E53445}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6456314D-41DB-4D28-851C-951D324A3327}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{64966294-4F5A-4868-9FFA-A25A7D320B49}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{64A0B02E-3D04-42AC-BA74-836EC5722387}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{66264BED-8B6B-4062-9030-BFADC8AA18E4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6683A1A1-37BD-4154-8D9B-AFA9AB96B9AB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6711438A-FB53-43A9-9C8F-163F356DE484}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{67217112-00E3-42B9-B089-52A88D16D9B6}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6823040D-18DA-4C93-8F13-08BD48D6DB4A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{689D2D5F-ACE6-4E29-BDFF-004CFE06169E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6A365D77-7FB2-41A8-8D80-0B39592FB703}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6A50892C-EB5E-487D-86CE-BC904162D2AE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6A9650CD-5DD3-4954-8F7C-B0D54222D633}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6C3378C0-C55B-4E0D-AA03-6E6C3E648380}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6C482276-896C-41D8-92AE-517D480536B3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6C8C7067-34C2-4F75-8C91-2B25A3C96C3E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6CC65676-3A4A-4CAC-B3E7-31583FBE1C5C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6D8DF61D-2DF9-4FB4-9F42-9252D877C2DB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6DED666F-75F7-4953-B2FD-24381736DBD7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6DF60BA3-1748-482B-8153-6EDFE409AD42}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6F7D5E03-02BF-444F-92A9-F33C7FB025EB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{6FB5C6B6-032D-45AF-9536-B55A147C424F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7004C6C9-B05F-474D-AEB7-9BCCE7329564}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{70999A5E-EA08-423C-BAB7-109AB99899D0}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7102346D-7931-4570-B3B4-F65E77FCC232}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{71DAF002-83C3-4FB5-A908-7814D208D245}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{71E3CFAD-D9DC-424E-98ED-BCD73B75EA67}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{73064B13-AFBA-4B43-AE51-2B7BCF3C21B9}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{73A8BCFA-3188-46C4-B598-4C89F186F3C3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{747573FF-C283-4566-BE40-9AEB47738F02}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7524801D-40B6-474A-9E80-0AB9752836FC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7529A171-0055-4FBD-BE60-E57DCDB216E3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7789060C-8BCE-446C-9663-58C4BA9C5555}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{78BAA03C-2C15-43D0-AE02-91D54C4B3EB7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{795B439F-8472-48F3-896B-61BA4B8B522E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7A49EE9E-2B3E-439A-8C05-635EB63AE5CD}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7AAB88E6-067C-4A20-A74E-4FC969D0B15B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7ADC8DBC-1DD6-4B05-8289-07BB82FCBCA5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7AEF0C61-0DC6-4074-AE24-6BD19B93162D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7B19E895-8445-43EC-8A96-918FACD89359}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7C4A2818-B40D-45C3-BF5D-25FA1DE91857}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7D5B41B5-5E69-430A-9DAD-8A13827B3A3A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7DAD1121-3A0E-40F4-8109-18955AB39F16}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{7F3F5AF4-FDD0-4B0E-A24D-1B94CF545D3B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8016F815-DE50-4CDA-95D0-EF7FC7BB91E3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{80D50546-9F94-4F0F-85FB-E7524D6DDED7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{80D8A5F4-DDB4-4309-BB35-D29BA5BE925B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{814D3326-8DCD-4BFF-8EFC-CEC161A31BB2}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{817BFDC6-D269-4C82-AE1F-B9836F30D1A7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{81F72477-F394-4E4B-8FE6-8D173C729485}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{82D0C1AB-20E5-4D9F-9A24-52C887A8490D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{83645591-4C3E-4579-95BC-E8BA8FD5B554}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{83B3A45A-10E4-40C0-8431-0DDC9AC5B1BF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{841CA8B0-3C0E-48FF-AD5E-AE5A9EB932A4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{846655BA-1F65-447C-911F-D8105F0BA273}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{871F30D6-CC23-44A5-8805-31D86D3F0DA5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{87B6BF4E-9A10-4420-8519-A7E2B89275A8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{880BEB4E-FAB2-4776-B2BA-3851F088B47F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8844CF8A-BB7A-476A-B70D-A0AF80CAD27B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8855B574-8187-4E03-AEB9-7BB5BF57715C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{88C50900-C8DA-49A0-896A-EC344545C9D9}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{89226E3C-3C65-4FE9-BAF2-398337E3DF73}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{894F31BE-AA54-46F1-953F-6052712F48A5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8A63FF78-7FD3-4037-B266-434708434421}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8AF7F88C-1EA2-4F68-9B6F-BEAD1FBE2736}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8B32C30F-C12C-43AA-9432-30E3390D2D5A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8C0B2BAB-9FFF-49FF-BAE1-82051574F664}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8DA16310-8F17-4E71-9E8C-F883D07D05D8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8DF06455-5207-4483-A96A-7ABA1F0F9181}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8DF18A78-FA61-4C91-BA73-BF8C435C3EF8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8E48432E-361B-4229-A8A7-4F7E2040A83D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8EAC73F8-9EC7-4CDF-900F-EE8D0E0DDF7A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{8FB406DD-5B7A-42D5-AEC2-B68317AAF2A7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{901837B7-952D-421C-B720-0B14CBC44F16}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{906179D7-E89A-4512-991D-E6D71D3595AF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{90ECEC49-8ABB-4121-949F-1A6BE1B2F996}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{916C4DA7-00A3-4BEA-AA6A-C6A936C36780}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{91F9498B-45B6-4C1C-B495-94CBA95E1020}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{925BCD5F-A2C1-4D0E-89C0-8D41299368F3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9307232D-5B22-44A0-B313-0D946AFAFFAF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{93084A1C-E609-4735-885D-198B893A5A24}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9369753E-B9D4-4D1F-B6C1-947CCE398D7E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{94BCC75D-4DF1-4C6A-99A2-CFFBAFF5B9B4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{94E6B825-74A1-4445-88DC-DC010D418901}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{956E9D2A-F7F3-439C-B22D-056D5959FDFB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9620B360-2D63-4A0C-B8C5-2B45FF382BB3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{965BF12D-246E-4292-90AA-4A0A6DA4854A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{966C586C-36C9-4F71-A529-7F56880644AC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9706881C-25CD-44AB-8D1B-0BAB29045226}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{97202E29-04EB-4807-9410-7D715CCB99BB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{97801354-5CBE-431B-85A3-BD855342C92A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{98142E7E-CC64-4A57-8D21-20BA09E09CCA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{991C6BB0-F401-434F-886A-F0B04A0B163A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9993F232-477A-406C-B8A4-A15CA0141010}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9C88B8A6-F1C2-42A6-9D62-465602EDD726}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9D0B94D6-D817-4911-ABBA-2DF444C85A28}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9EA32BD2-1DA9-4FC3-B688-6CBFD26DA017}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{9FA5E125-6CB3-42E0-AA0D-BF0098FF3ADB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A0184BC2-0C02-483C-BFFF-19B997097365}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A08BA579-0A40-4A6F-977B-5DE93343AC43}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A0A08D69-7394-40AC-96B4-264B3201F828}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A1D21720-2DA2-4413-8215-BED95E1405AA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A2418430-0548-44ED-96CC-6940C1CE0119}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A2888DE2-12AA-4A33-A9E9-E00260D33B67}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A3C5B5E6-2776-4FCE-BCBC-FDD94709E61C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A4477DF5-F3EB-4466-99D7-EADFD738EC9E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A46A3418-88C2-41B2-96E6-09711EB6EEC3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A5B18C69-E9C8-4A31-B690-5FBB2AD3B64B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A8F209FF-22A0-4952-B5BE-36DE4E017401}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{A9909441-2985-4919-85D1-6439A5C3D5AC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AA42725F-1444-43A4-9ED3-C65D9319F19E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AABF13AD-6879-4FD6-8864-3928DE41D5C6}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AAC2F36F-04D5-46D3-81B2-139113C165A4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{ABA0B07C-77D3-44C3-BFC4-27224DFF819C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AD108EA3-4B41-4BC1-B9B9-FF9C3E6239AE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AD42F394-7A7C-4548-84AB-3B77E8853C1D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AD5BA4FD-2FAE-4B39-AEE9-C63CE29AFB3F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AE80083A-1E10-45A7-8468-18534F1D9453}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AEEAA2A3-BC43-4DB0-BF2D-39F9BC64749E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{AF89616C-FFB2-46CF-BB3D-DA2C0F72DF8E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B1925762-695F-45AF-9AB5-82D5D3F58443}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B1AE7A04-4E91-4387-9801-9AAF9E8DA921}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B1FD4C5D-B478-4DDB-A68F-410CC83B3437}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B236387F-853B-46CE-B98D-F6F5829A79B7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B29E1775-3EC1-4599-8100-81F499AF888C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B2C4FDAF-3A35-4425-A3CD-219EABD41A06}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B35774B5-7EF8-4AF8-82E2-BFA6E1790FA5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B3A073FB-08CD-4756-BADF-E14508A22938}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B3FDB11D-26C8-4D0F-B960-ECEAEAA0B4BE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B5151777-128A-44E1-9E46-FD269180F848}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B6E76A56-74D4-406A-8018-1CF7F1495C07}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B73A3A04-C983-4170-82DA-B6FC977FB863}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B7FF46A3-EC2B-498E-A297-5B3BF66590C2}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{B86FBFF0-8193-436F-A0BA-C30F3A88F625}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BA1F71B5-548B-4838-8B65-B37E4DCEA752}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BA50BEE6-EAEB-4DAA-A104-29A2CA7DF271}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BB4B3806-4BB4-4B30-A14D-9B866ACCD487}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BBE2576D-4220-41E9-A498-08E4822488B1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BC6C861F-19E8-4591-B314-BA21E1BB4601}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BCD499F2-CCA6-4DDD-AC95-4ECD194C5370}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BCDD83D1-AA9E-440B-AA28-6EB452403C5B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BD02AA90-7D5C-4773-995C-79609D99812C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BDAF022F-D9D2-43A5-829A-CAEB163A8184}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BDB99795-3528-4ABB-81D4-6BF93C50AA46}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BDBA8A89-B4F4-40BD-A589-D472F50AF0D7}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BDBED3AC-7248-41BF-8019-0866A3397242}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BFAA0B11-BE94-461A-A067-5EFDA30941AF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{BFE414F1-0D02-43DD-8139-76E5A40C9D1C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C05BEFB3-923D-4898-B78B-8F7E1F178FFD}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C06844AD-FE0E-4655-9975-724B05ABE3EE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C0BF873A-A796-4E8C-9441-A221E18DAAEF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C0E101DB-8F11-4B95-A8FD-825E542DC3A8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C1A75E4C-2FBA-49DD-A44B-2525FA8E2A85}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C2223F0B-6C26-4880-9F99-2EFED88E93F8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C34BE88F-0D0C-4E72-9449-FDB9171F50BE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C4C0967A-B755-4E5B-A664-BE71B8176C2D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C4E8261D-718B-4755-A9B7-BB14816A00AD}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C52149DA-47AE-4687-BA14-E0BA5C5B3E8A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C69B22E2-2B0E-4552-A2EE-BB1019257914}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C6A8D575-15F8-4A48-9681-02683E302EDE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C6C511F8-3E98-4B5A-810C-9B4DE1233BB1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C7E59FE2-E01A-45B7-9751-93F2FFE78054}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C8EE22B7-F91B-41D2-A20B-B1B944173336}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C9653426-72CA-4C1B-8C91-63A8FBC3800B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C96CDCE8-DEE2-4566-8DBC-7A7F1C55BF91}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C9870A05-7BD6-4698-B54C-65F44CB57836}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{C9F7F64C-6498-4181-9B94-997E53DC2EF4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CA33CCC5-9D7A-42F6-85E7-BFAC3072B196}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CA618515-F5EE-4A48-8912-FAF14962AE10}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CAA3D45D-8FC9-420D-9155-73B13587FEEC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CB776D41-5841-4354-BA7E-7EF47F8021F8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CC968E1F-43B7-4E28-AB21-05AFA7A7BC18}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CE17CDA8-93F8-4A0D-94C7-80C63A9B8092}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CED67AC8-87CE-4CE1-8256-E3A712455703}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CEFA65EB-7B26-47AA-8FD5-9987AE5D30B1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CF5504FC-2F00-4133-ABB3-38F06E1E9D5B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{CFAA0EF0-E3C9-423C-A443-9D8E2C88DF82}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D07AEE8C-4636-4FBC-A642-1DAF37CC3ADC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D15DBEF0-8B64-4412-80B6-0C1D0111B053}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D39D1783-7C4F-4DB6-A369-0A78F9DB6116}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D53561C2-F66C-45A6-9C96-60C656A09305}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D58BD8A9-5186-4DB7-8923-0DC5B96010B2}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D592C0BB-7A81-48E0-B553-79EBE79358E4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D67D8882-C16C-4C75-98C2-81825F051F0B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D7E717FF-DC06-43E0-A150-CFB8ED00C92C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D82C5AD6-0E09-483A-A8B8-3D35E4DB0CFE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D84DCEC1-E1ED-4377-AEFF-DDF113780CBC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D9CFBD9D-FC48-467C-8EC0-80E59FE856F8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{D9E4A0CA-93E9-48B8-86D3-6F753ABC0E2D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{DA95F104-24BC-4629-877D-3F76D74FED13}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{DCA2B240-BFC0-4C2A-8779-EFFBEBBBF6E8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{DD271DEB-F6EB-41C1-BC6D-CF263971C1F5}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{DD42F5EE-309A-468C-B9E3-2C9C7FCEB4D0}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{DE8B2284-AC82-4A1D-9F61-9C40AD849688}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{DFC97D32-B1B6-4793-9041-2EA1BA279A8F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E12AF57D-8C1F-49CF-8656-676B39455B73}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E1F1EB18-8A48-45D0-9608-77F9A1F5847D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E23CC520-C396-49D5-A4E3-67E1CA6A1CAA}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E275CEDD-CDFD-4580-B5F3-A38358C5F6C3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E3816D40-F881-4BC3-90FB-F597124A2EFB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E3F7FFB6-0FA2-4E49-857F-DD3D8E695F20}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E4F3B9DE-0289-4B45-B413-5971D2DAC46F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E5F53265-278A-4AA7-9034-5646B4EAF4E3}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E6E15931-E12D-4509-B5A8-7B0526B05CF1}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E6F83EB3-F324-42C3-88FA-CEE21836F18F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E73865AE-1000-4E60-BC0E-2261B087F8F4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E86430CE-B36D-4AC0-A68C-9579D406657A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E8FB847E-4708-4B35-B435-88F2DEB95CAD}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E908D9C7-2AA7-4D7E-A1B1-6D74FDAF1685}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{E9E2BC3D-CAB5-4BDA-802A-0CA44C913A82}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EAE92ADE-34FC-41D1-82B0-EF07F45A7962}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EC544F39-5E36-49FB-A4C2-D3F7C8756A77}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EC78FACE-F7F7-4B2E-BD5A-A6F12675E17F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{ECA56720-8E5A-4411-AF0F-6BA93F18D195}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EDD5B7E9-B59E-42E2-8D51-E993D5504B8F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EEF8CB66-3097-4C81-84A0-2EBD3A7158FB}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EF664DFB-104B-4905-B158-6A5179A7DC6A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{EF984E44-1B98-4CCD-B333-E09AD6A5142B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F096D44B-70FA-4630-9933-60B6066DB3FF}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F0B41224-D41C-4174-88D0-EABB21E99581}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F0FC5125-2EA3-44A2-9622-670076BC4A6A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F18BA321-99F8-460D-82BD-F0C09E5EDF7F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F1EA9A7F-A851-4E6E-AA4C-F08E3309C373}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F2A16505-02BE-432C-B83F-5C571470DDA8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F3A3E835-3D24-4927-AD1C-2D0B7B0E9BD0}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F4100062-B445-4BD6-8A95-6A342E1E4FFE}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F41CF8A8-3A94-4063-93BA-C6B53C065FCC}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F45C42E2-9128-4789-8DD5-7EA666E2A77C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F49417D1-9AD7-44BC-8663-F9AF2EF7037B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F5B51FE9-D8E6-4DDD-B90A-D8F2269ED2B8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F62994BF-A8E2-4566-998B-8C10851C0362}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F8383258-1DA1-45C8-99CA-0325EDF79872}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F88A48EF-48A8-4159-8E48-FA24D3EFE68D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F8CEFC83-5FB1-4808-91DD-C3D4F17AAA1A}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F98B4E38-1813-427C-A587-24C9190ECC3B}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F9E84534-9ED1-40A2-9C21-F57E389ED4B4}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{F9F6E8B8-81DF-45BD-A86B-C79FAD1C6212}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FA266649-FF4E-42F2-A7C1-BA9FFBD3967D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FB0E5139-B994-4327-AE9F-F711D006F67E}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FBDB5FF9-B623-4456-8538-6CB69F6D997F}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FBF42874-28EA-48D1-B3CE-4772E5DEB48D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FDFA45DF-AC44-470C-BD9D-A6B1E3838227}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FE187DFF-6058-43C3-A3D7-FF627636558C}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FE1A186D-91ED-4129-805D-61549F15A01D}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FE8CB70E-10E4-4654-A7D5-B27795521E64}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FEE49C2C-9EAB-4F4D-A449-F24FD3FC37F8}
Successfully deleted: [Empty Folder] C:\Users\eduardo\appdata\local\{FFBCACF5-8D57-497D-848D-E2EE46597A51}



~~~ FireFox

Emptied folder: C:\Users\eduardo\AppData\Roaming\mozilla\firefox\profiles\ayo2bp56.default\minidumps [2 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 24/05/2014 at 23:16:01,01
End of JRT log
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Sáb 24 maio 2014, 23:22

Desative temporariamente seu antivírus para evitar conflitos.

* Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

problemas - Verificação de Problemas... 772309 Para executá-lo corretamente siga as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Assim que ele concluir a limpeza dos problemas acesse o log (relatório) do Zoek que estará em C:\zoek-results.txt e copie todo seu conteúdo e poste em sua próxima resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Coelhocego Dom 25 maio 2014, 01:10

Zoek.exe não aceita de forma alguma ser executado!! Bem estranhooo.
Executo e não aparece nada...
Tento clicar novamente no icone (como ADMINISTRADOR)
e ele diz que o programa já esta em execução.
Mas não aparece nada na tela!! rsrsrs
O Anti-vírus 100% desligado!!
Alguma sugestão?
Obrigado
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Dom 25 maio 2014, 01:12

Tem vezes que o zoek demora alguns minutos para aparecer na tela. Você esperou alguns minutos? Se não tiver esperado, espere e veja se ele abre. Você pode também olhar no gerenciador de tarefas do Windows para ver se o processo dele está executando ou não (ele usa nomes diferentes nos processos dele)
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Coelhocego Seg 26 maio 2014, 15:14

.
Zoek.exe v5.0.0.0 Updated 22-05-2014
Tool run by eduardo on 26/05/2014 at 15:08:23,95.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\eduardo\Desktop\kkkkk.exe    [Scan all users] [Script inserted]

===== Runcheck 15:13:27,81 =====

--- Create Environment Variables 15:13:30,91
--- Create System Restore Point 15:13:46,77
--- Checking Input 15:14:52,54
--- Reset Hosts File 15:15:09,64
--- AU AppData Check 15:15:22,33
--- Remove From Windows Installer 15:15:34,86
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 15:33

O zoek ainda está fazendo a limpeza dos problemas, espere até a limpeza concluir. Quando terminar, poste o relatório completo do Zoek.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Coelhocego Seg 26 maio 2014, 16:29

Z-Analyse V1.0.0.3 Updated 22-05-2014
Tool run by eduardo on 26/05/2014 at 16:15:35,85.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode No Internet Access Detected

==== C:\zoek_backup content ======================

C:\zoek_backup (files=565 folders=29 779548409 bytes)

==== After Reboot ======================

==== Reset Hosts File ======================

Hosts File Reset Successfully

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\eduardo\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\eduardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

==== EOF on 26/05/2014 at 16:27:22,39 ======================
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 16:31

Este não é o log correto. Veja se neste local do seu PC se encontra o relatório certo:
C:\zoek-results.txt
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty (RESOLVIDO) Será que é esse?

Mensagem por Coelhocego Seg 26 maio 2014, 17:02

Z-Analyse V1.0.0.3 Updated 22-05-2014
Tool run by eduardo on 26/05/2014 at 16:15:35,85.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode No Internet Access Detected

==== C:\zoek_backup content ======================

C:\zoek_backup (files=565 folders=29 779548409 bytes)

==== After Reboot ======================

==== Reset Hosts File ======================

Hosts File Reset Successfully

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\eduardo\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\eduardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

==== EOF on 26/05/2014 at 16:27:22,39 ======================
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 17:03

Não é isso.

Repita o procedimento novamente:

Desative temporariamente seu antivírus para evitar conflitos.

 Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Seg 26 maio 2014, 18:50, editado 1 vez(es)
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty (RESOLVIDO) Agora sim... rsrsrsr

Mensagem por Coelhocego Seg 26 maio 2014, 17:29

Zoek.exe v5.0.0.0 Updated 22-05-2014
Tool run by eduardo on 26/05/2014 at 17:06:04,64.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\eduardo\Desktop\kkkkk.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-26-192722.log 1030 bytes

==== System Restore Info ======================

26/05/2014 17:07:48 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
#      102.54.94.97     rhino.acme.com          # source server
#       38.25.63.10     x.acme.com              # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1       localhost
::1             localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\ayo2bp56.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\ayo2bp56.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\eduardo\AppData\Roaming\Thunderbird\Profiles\niq9pdbr.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\eduardo\AppData\Roaming\Thunderbird\Profiles\niq9pdbr.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

==== Folders Found ======================

2014-05-24 23:08:11 2014-05-24 23:08:11 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-24 23:12:03 2014-05-24 23:12:03 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\eduardo\AppData\Roaming\baidu
2014-05-24 23:12:03 2014-05-24 23:12:03 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\eduardo\AppData\Roaming\baidu\Baidu Antivirus
2013-07-04 20:18:53 2013-07-04 20:19:15 -------- d-----w- C:\Program Files (x86)\Baidu Security
2013-07-04 20:20:35 2013-11-08 22:16:07 -------- d-----w- C:\ProgramData\Baidu Security
2013-07-04 20:20:35 2013-11-08 22:16:07 -------- d-----w- C:\Users\All Users\Baidu Security
2013-07-04 20:11:17 2013-07-04 20:11:17 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security
2013-07-05 11:23:03 2013-07-05 11:23:03 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security\PC Faster\3.4.0.17\Uninstall\Baidu PC Faster Uninstall
2013-07-05 11:23:03 2013-07-05 11:23:03 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security\PC Faster\3.4.0.17\Uninstall\Baidu PC Faster Uninstall HK
2013-11-19 17:57:46 2013-11-19 17:57:46 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security\PC Faster\3.7.0.0\Uninstall\Baidu PC Faster Uninstall
2013-11-19 17:57:46 2013-11-19 17:57:46 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security\PC Faster\3.7.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-02-17 19:59:09 2014-02-17 19:59:09 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-02-17 19:59:09 2014-02-17 19:59:09 -------- d-----w- C:\Users\eduardo\AppData\Roaming\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2013-11-08 22:16:22 2013-11-08 22:18:10 -------- d-----w- C:\Users\Public\Documents\Baidu Security

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\LogLoc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster\LogUp]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]

"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Updater-2014-02-17 02-55-39-0335-[26308].tmp"=""

"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PCFasterSvc-2014-02-17 02-55-39-0335-[26308].tmp"=""

"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Pcftray-2014-02-17 02-55-46-0193-[26330].tmp"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"="Baidu ProtectEx"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
"DisplayName"="Baidu ProtectEx"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\PC Faster\\4.0.0.0"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCFApiUtil]
"ImagePath"="\\??\\C:\\Program Files (x86)\\Baidu Security\\PC Faster\\4.0.0.0\\PCFApiUtil64.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"="Baidu ProtectEx"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
"DisplayName"="Baidu ProtectEx"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\PC Faster\\4.0.0.0"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\PCFApiUtil]
"ImagePath"="\\??\\C:\\Program Files (x86)\\Baidu Security\\PC Faster\\4.0.0.0\\PCFApiUtil64.sys"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"="Baidu ProtectEx"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
"DisplayName"="Baidu ProtectEx"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\PC Faster\\4.0.0.0"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\PCFApiUtil]
"ImagePath"="\\??\\C:\\Program Files (x86)\\Baidu Security\\PC Faster\\4.0.0.0\\PCFApiUtil64.sys"

[HKEY_USERS\.DEFAULT\Software\Baidu Security]

[HKEY_USERS\.DEFAULT\Software\Baidu Security\PC Faster]

[HKEY_USERS\.DEFAULT\Software\Baidu Security\PC Faster\DataReport]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\CleanRecord]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Install]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\alluser]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\curuser]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\hkcu]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\hklm]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\hklm64]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Statistic]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\UUReport]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0\Install]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0\Statistic]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0\UUReport]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\DataReport]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\DataReport]
"c:\\programdata\\baidu security\\rpdata"="http://sync.pcfaster.baidu.com/cgi-bin-py/get_pcf_statistic_info.cgi"

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\Setup]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit]
"LastKey"="Computador\\HKEY_CURRENT_USER\\Software\\Baidu Security"

[HKEY_USERS\S-1-5-18\Software\Baidu Security]

[HKEY_USERS\S-1-5-18\Software\Baidu Security\PC Faster]

[HKEY_USERS\S-1-5-18\Software\Baidu Security\PC Faster\DataReport]

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"fmconverter@gmail.com"="C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox" [09/10/2013 10:00]

==== Firefox Extensions ======================

ProfilePath: C:\Users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\ayo2bp56.default
- Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
- DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

ProfilePath: C:\Users\eduardo\AppData\Roaming\Thunderbird\Profiles\niq9pdbr.default
- Instrument Test - %ProfilePath%\extensions\tbtestpilot@labs.mozilla.com.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\ayo2bp56.default
A58DE0A570148AF5FF3512B2A340D09F - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll - Shockwave Flash
C2ABE67BEF924EB10804F8B727F435D5 - C:\Users\eduardo\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
FF0D6F82A0EC13952E83B9439100E45D - C:\Users\eduardo\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
3447F68CFA52BF8854FF05BADD5F4F17 - C:\Users\eduardo\AppData\Local\GAS Tecnologia\GBBD\npsf_abn_64.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.


==== Chrome Look ======================

Google Docs - eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - eduardo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{365FAC72-B8BA-42F4-8AFB-4F11B7D761D0}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{365FAC72-B8BA-42F4-8AFB-4F11B7D761D0} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Reset Google Chrome ======================

C:\Users\eduardo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\eduardo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts on Users Desktops ======================

C:\Users\eduardo\Desktop\02.lnk - J:\02
C:\Users\eduardo\Desktop\Calibrize.lnk - C:\Program Files (x86)\Calibrize\Calibrize.exe
C:\Users\eduardo\Desktop\CorelDRAW X6.lnk - c:\Windows\Installer\{C5262276-0075-498B-B80F-7D997482E4DB}\NewShortcut1.exe
C:\Users\eduardo\Desktop\CorelDRAW.X5.lnk - C:\Users\eduardo\Downloads\Corel Draw X5 Portable\CorelDRAW.X5.Pt-Br.Portatil.exe
C:\Users\eduardo\Desktop\Downloads - Atalho.lnk - C:\Users\eduardo\Downloads
C:\Users\eduardo\Desktop\Downloads.lnk - C:\Users\eduardo\Downloads
C:\Users\eduardo\Desktop\Mail.lnk - C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Users\eduardo\Desktop\MASTER.lnk - J:\
C:\Users\eduardo\Desktop\SuperCash Santander.lnk - C:\Santander\Gerenciador de Arquivos\Bin\AAVClient.exe
C:\Users\eduardo\Desktop\Windows Live Mail.lnk - C:\Program Files (x86)\Windows Live\Mail\wlmail.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\aMSN.lnk - C:\Program Files (x86)\aMSN\amsn.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Public\Desktop\ManyCam.lnk - C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe
C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe
C:\Users\Public\Desktop\TeamViewer 9.lnk - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Users\Public\Desktop\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
C:\Users\Public\Desktop\vReveal 3.lnk - C:\Program Files (x86)\vReveal 3\vReveal.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox\Mozilla Firefox (Modo de segurança).lnk -  
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vReveal\vReveal 3.lnk - C:\Program Files (x86)\vReveal 3\vReveal.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ManyCam.lnk - C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE  /recycle
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies (Lite).lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe /lite
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk - C:\Users\eduardo\AppData\Local\Torch\Application\torch.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\25bb2cdfb96af2d6\PokerStars.lnk - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\79d64f69b2d4969d\PokerStars.lnk - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9d91276b0be3e46b\pinned.lnk -  
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CorelDRAW X4.lnk - c:\Windows\Installer\{7F05E704-30A6-421A-97A7-8EEB1C7FF013}\NewShortcut1.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\TeamViewer 9.lnk - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Windows Live Mail.lnk - C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Windows Live Messenger.lnk - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Skype.lnk - C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Torch.lnk - C:\Users\eduardo\AppData\Local\Torch\Application\torch.exe
C:\Users\eduardo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\eduardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\eduardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\eduardo\AppData\Local\Mozilla\Firefox\Profiles\ayo2bp56.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\eduardo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=565 folders=29 779548409 bytes)

==== Empty Temp Folders ======================

C:\Users\AppData\AppData\Local\temp emptied successfully
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\eduardo\AppData\Local\Temp will be emptied at reboot
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\USURIO~1\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\eduardo\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\eduardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found

==== EOF on 26/05/2014 at 17:27:30,95 ======================
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 17:57

Desative temporariamente seu antivírus para evitar conflitos.

* Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Seg 26 maio 2014, 18:49, editado 1 vez(es)
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty (RESOLVIDO) ..

Mensagem por Coelhocego Seg 26 maio 2014, 18:35

Zoek.exe v5.0.0.0 Updated 22-05-2014
Tool run by eduardo on 26/05/2014 at 18:07:19,30.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\eduardo\Desktop\kkkkk.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-26-192722.log 1030 bytes
C:\zoek-results2014-05-26-202730.log 25466 bytes

==== System Restore Info ======================

26/05/2014 18:09:45 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BprotectEx deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BprotectEx deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PCFApiUtil deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\PCFApiUtil deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\LogLoc]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster\LogUp]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Updater-2014-02-17 02-55-39-0335-[26308].tmp"=-
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-PCFasterSvc-2014-02-17 02-55-39-0335-[26308].tmp"=-
"C:\\ProgramData\\Baidu Security\\RpData\\rpFile-Pcftray-2014-02-17 02-55-46-0193-[26330].tmp"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"=-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECTEX\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\BprotectEx]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCFApiUtil]
"ImagePath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\PCFApiUtil]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECTEX\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\BprotectEx]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\PCFApiUtil]
"ImagePath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\PCFApiUtil]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECTEX\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECTEX\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BprotectEx]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\PCFApiUtil]
"ImagePath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\PCFApiUtil]
[-HKEY_USERS\.DEFAULT\Software\Baidu Security]
[-HKEY_USERS\.DEFAULT\Software\Baidu Security\PC Faster]
[-HKEY_USERS\.DEFAULT\Software\Baidu Security\PC Faster\DataReport]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\CleanRecord]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Install]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\alluser]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\curuser]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\hkcu]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\hklm]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Run\Disable\hklm64]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\Statistic]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\3.7.0.0\UUReport]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0\Install]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0\Statistic]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\4.0.0.0\UUReport]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\DataReport]
[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\DataReport]
"c:\\programdata\\baidu security\\rpdata"=-
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\Setup]
[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit]
"LastKey"=-
[-HKEY_USERS\S-1-5-18\Software\Baidu Security]
[-HKEY_USERS\S-1-5-18\Software\Baidu Security\PC Faster]
[-HKEY_USERS\S-1-5-18\Software\Baidu Security\PC Faster\DataReport]

==== Deleting Files \ Folders ======================

C:\Program Files (x86)\Baidu Security deleted
C:\ProgramData\Baidu Security deleted
C:\Users\eduardo\AppData\Roaming\Baidu Security deleted
C:\Users\Public\Documents\Baidu Security deleted

==== Folders Found ======================

2014-05-24 23:08:11 2014-05-24 23:08:11 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-24 23:12:03 2014-05-24 23:12:03 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\eduardo\AppData\Roaming\baidu
2014-05-24 23:12:03 2014-05-24 23:12:03 -------- d-----w- C:\AdwCleaner\Quarantine\C\Users\eduardo\AppData\Roaming\baidu\Baidu Antivirus
2014-05-26 21:11:19 2014-05-26 21:11:19 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-26 21:11:19 2014-05-26 21:11:42 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-26 21:11:42 2014-05-26 21:12:14 -------- d---a-w- C:\zoek_backup\C_Users_All Users_Baidu Security
2014-05-26 21:12:14 2014-05-26 21:12:14 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security
2014-05-26 21:12:17 2014-05-26 21:12:17 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security_PC Faster_3.4.0.17_Uninstall_Baidu PC Faster Uninstall
2014-05-26 21:12:17 2014-05-26 21:12:17 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security_PC Faster_3.4.0.17_Uninstall_Baidu PC Faster Uninstall HK
2014-05-26 21:12:17 2014-05-26 21:12:17 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security_PC Faster_3.7.0.0_Uninstall_Baidu PC Faster Uninstall
2014-05-26 21:12:17 2014-05-26 21:12:17 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security_PC Faster_3.7.0.0_Uninstall_Baidu PC Faster Uninstall HK
2014-05-26 21:12:17 2014-05-26 21:12:17 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall
2014-05-26 21:12:18 2014-05-26 21:12:18 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall HK
2014-05-26 21:12:18 2014-05-26 21:12:18 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu Security
2014-05-26 21:12:14 2014-05-26 21:12:14 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security\PC Faster\3.4.0.17\Uninstall\Baidu PC Faster Uninstall
2014-05-26 21:12:14 2014-05-26 21:12:14 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security\PC Faster\3.4.0.17\Uninstall\Baidu PC Faster Uninstall HK
2014-05-26 21:12:15 2014-05-26 21:12:15 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security\PC Faster\3.7.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-26 21:12:15 2014-05-26 21:12:15 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security\PC Faster\3.7.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-26 21:12:16 2014-05-26 21:12:16 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-26 21:12:16 2014-05-26 21:12:16 -------- d---a-w- C:\zoek_backup\C_Users_eduardo_AppData_Roaming_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster]

[HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\DataReport]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=912 folders=125 1979523927 bytes)

==== EOF on 26/05/2014 at 18:14:48,24 ======================
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 18:38

Desative temporariamente seu antivírus para evitar conflitos.

* Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Seg 26 maio 2014, 18:49, editado 1 vez(es)
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty (RESOLVIDO)...

Mensagem por Coelhocego Seg 26 maio 2014, 18:45

Zoek.exe v5.0.0.0 Updated 22-05-2014
Tool run by eduardo on 26/05/2014 at 18:42:02,30.
Microsoft Windows 7 Ultimate  6.1.7600  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\eduardo\Desktop\kkkkk.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-26-192722.log 1030 bytes
C:\zoek-results2014-05-26-202730.log 25466 bytes
C:\zoek-results2014-05-26-211448.log 10772 bytes

==== System Restore Info ======================

26/05/2014 18:42:48 Zoek.exe System Restore Point Created Succesfully.

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster]
[-HKEY_USERS\S-1-5-21-3447211225-2548578069-2625225995-1001\Software\Baidu Security\PC Faster\DataReport]

==== Registry Search Results for "Baidu" ======================

No instances of string "Baidu" found.

==== C:\zoek_backup content ======================

C:\zoek_backup (files=912 folders=125 1979523927 bytes)

==== EOF on 26/05/2014 at 18:44:42,82 ======================
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 18:48

problemas - Verificação de Problemas... 772309 Faça o download do < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > < [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]> ( ... de Nicolas Coolman )

Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty (RESOLVIDO) ....

Mensagem por Coelhocego Seg 26 maio 2014, 18:53

~ Relatório do ZHPDiag v2014.5.24.73 - Nicolas Coolman  (24/05/2014)
~ Iniciado por eduardo (26/05/2014 18:50:34)
~ Endereço do Website : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Tradução pelo utilizador
~ Estatuto da versão :
~  Lista Branca : Ativado pelo programa
~ Elevação dos Privilégios : OK
~ Controle de Conta de Utilizador : Deactivate by user


---\\ Navegadores Internet
MSIE: Internet Explorer v8.0.7600.16385
MFIE: Mozilla Firefox v3.6 (pt-BR)
GCIE: Google Chrome v35.0.1916.114 (Defaut)

---\\ Informações sobre os produtos Windows
~ Langage: Portugais
Windows 7 Ultimate, 64-bit  (Build 7600)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema
Avira Free Antivirus v14.0.3.350
Windows Defender W7 (Deactivate)

---\\ Softwares d'optimização do sistema
CCleaner v4.00

---\\ Softwares de partilha do PeerToPeer (P2P)

---\\ Monitoramento dos softwares
Adobe Flash Player 13 Plugin
Adobe Reader 9 - Português
Java 7 Update 10
Java 7 Update 51

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3071 MB (31% free)
System Restore: Activé (Enable)
System drive C: has 40 GB (41%) free of 98 GB

---\\ Modo de conexão ao sistema
~ Computer Name: EDUARDO-PC
~ User Name: eduardo
~ All Users Names: HomeGroupUser$, eduardo, Convidado, Administrador,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\eduardo\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\eduardo\AppData\Roaming\
~ %Desktop% : C:\Users\eduardo\Desktop\
~ %Favorites% : C:\Users\eduardo\Favorites\
~ %LocalAppData% : C:\Users\eduardo\AppData\Local\
~ %StartMenu% : C:\Users\eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
A: Floppy drive, Flash card reader, USB Key (Not Inserted)
C: Hard drive, Flash drive, Thumb drive (Free 40 Go of 98 Go)
D: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)
I: Floppy drive, Flash card reader, USB Key (Not Inserted)
J: Hard drive, Flash drive, Thumb drive (Free 6 Go of 368 Go)
K: Floppy drive, Flash card reader, USB Key (Not Inserted)
L: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
~ Security Center: 48 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.9AAAEC8DAC27AA17B053E6352AD233AE] - (.Microsoft Corporation - Windows Explorer.) (.31/10/2009 - 03:34:59.) -- C:\Windows\Explorer.exe [2870272]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.E71DB117DBDA6B33646F37936C17D226] - (.Microsoft Corporation - Internet Extensions para Win32.) (.21/12/2010 - 03:16:14.) -- C:\Windows\System32\wininet.dll [1197056]
[MD5.DA3E2A6FA9660CC75B471530CE88453A] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.28/10/2009 - 03:24:40.) -- C:\Windows\System32\Winlogon.exe [389632]
[MD5.75341574F21E766748732BDF530C74BD] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.13/07/2009 - 22:41:54.) -- C:\Windows\System32\sppcomapi.dll [231936]
[MD5.B9384E03479D2506BC924C16A3DB87BC] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.13/07/2009 - 20:21:42.) -- C:\Windows\system32\Drivers\AFD.sys [500224]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.83D2D75E1EFB81B3450C18131443F7DB] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.13/07/2009 - 20:19:54.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.3F1DC527070ACB87E40AFE46EF6DA749] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.13/07/2009 - 20:23:44.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.0A49913402747A0B67DE940FB42CBDBB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.13/07/2009 - 21:06:13.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.767A4C3BCF9410C286CED15A2DB17108] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.27/02/2010 - 04:52:22.) -- C:\Windows\system32\Drivers\MRxSmb.sys [157696]
[MD5.9162B273A44AB9DCE5B44362731D062A] - (.Microsoft Corporation - MBT Transport driver.) (.13/07/2009 - 20:21:29.) -- C:\Windows\system32\Drivers\netBT.sys [259072]
[MD5.356698A13C4630D5B31C37378D469196] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.13/07/2009 - 22:48:27.) -- C:\Windows\system32\Drivers\ntfs.sys [1659984]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.87A6E852A22991580D6D39ADC4790463] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.13/07/2009 - 21:10:12.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [130048]
[MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.13/07/2009 - 21:18:02.) -- C:\Windows\system32\Drivers\rdpdr.sys [165376]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - (.Microsoft Corporation - TDI Translation Driver.) (.13/07/2009 - 20:21:15.) -- C:\Windows\system32\Drivers\tdx.sys [99840]
[MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.13/07/2009 - 22:45:55.) -- C:\Windows\system32\Drivers\volsnap.sys [294992]
~ Generic Processes:  Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes images (My Pictures) : 2/10
~ Mes musiques (My Musics) : 1/2
~ Mes Videos (My Videos) : 2/102
~ Mes Favoris (My Favorites) : 1/26
~ Mes Documents (My Documents) : 3/503
~ Mon Bureau (My Desktop) : 2/381
~ Menu demarrer (Programs) : 1/29
~ Hidden Files:  Scanned in 00mn 00s



---\\ Processos lançados
[MD5.1E469063A28AFA778999B98722F48513] - (.Eberhard Werle - Monitor power state and run CalibrizeLoader.) -- C:\Program Files (x86)\Calibrize\CalibrizeResume.exe   [413696] [PID.2636]
[MD5.0B0E48A76797CC0B8128AC64D4FA36CF] - (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe   [1511792] [PID.2644]
[MD5.DEECBAEA606C4AEADF8D93F33A0CC8BD] - (.Samsung - KiesPDLR.) -- C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe   [1106288] [PID.2652]
[MD5.40C6BFD3AAEA862F5149BC45760E2A04] - (.Nokia - Nokia Suite.) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe   [1090040] [PID.2660]
[MD5.9D4A0ECBF734E2EECDD5B473A2D705FE] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe   [20922016] [PID.2668]
[MD5.399CE3196D8DBD8FA84F86481A524687] - (.DigitalCandle, Inc. - BulletProof FTP Server (http://www.bpftpser.) -- C:\Program Files (x86)\BPFTP Server\bpftpserver.exe   [563200] [PID.2704]
[MD5.74D679B8F4331E453431EFB423AECECE] - (.Vitalwerks LLC - No-IP.com DUC.) -- C:\Program Files (x86)\No-IP\DUC20.exe   [1172992] [PID.2712]
[MD5.94AFA557B3D4B5AB847F45341AC820DD] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe   [310640] [PID.2864]
[MD5.241B07FF7F5943B9C1BF3235F49AC1E1] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe   [689744] [PID.2884]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe   [254336] [PID.2904]
[MD5.9F98821AE94E8CC78F7A5D423791B839] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe   [12971328] [PID.5044]
[MD5.53F08937688A81F7CF9E54CA12ADA1B5] - (.Nokia - Microsoft Bluetooth Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe   [149480] [PID.4476]
[MD5.7DCE7A74764EB7C67D21A32BC579453D] - (.Oracle Corporation - Java(TM) Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe   [507264] [PID.4184]
[MD5.1620FE36666F4BBC2314B7F360FB1965] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe   [860488] [PID.3416]
[MD5.4FDF8F99557B275A3B5BF797761C7504] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe   [7879168] [PID.4988]
[MD5.151E2ACD558A05428BB7BB9A81C4279D] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe   [519224] [PID.732]
[MD5.4D282B9C5BB05DF92C9F3977DFB9F916] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe   [440400] [PID.1256]
[MD5.65AF41A7A2C5B6693E1B4164E7632C3E] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe   [440400] [PID.1508]
[MD5.B84D31AC5AE8372CE60204920E8F98E2] - (.Firebird Project - Firebird SQL Server.) -- C:\Santander\Gerenciador de Arquivos\Servidor\bin\fbguard.exe   [81920] [PID.1636]
[MD5.543A4EF0923BF70D126625B034EF25AF] - (.Protexis Inc. - PsiService PsiService.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe   [189728] [PID.1836]
[MD5.97F6FFB8A305A77D25C6C0E07B71D252] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe   [5024576] [PID.2000]
[MD5.289E853881E688286AD24299FCC485D8] - (.Nokia - ServiceLayer Module.) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe   [732648] [PID.3316]
[MD5.D5247E09FA4559E9661AE5C0FB8106A2] - (.Nokia - Serial Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe   [127464] [PID.3800]
[MD5.E83398B97959086265B7FEE2BFAF1343] - (.Firebird Project - Firebird SQL Server.) -- C:\Santander\Gerenciador de Arquivos\Servidor\bin\fbserver.exe   [2723840] [PID.3856]
[MD5.02CF67DC188222A92ED8818F7224442C] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe   [238400] [PID.4448]
~ Processes Running:  Scanned in 00mn 01s



---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2)
C:\Users\eduardo\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Loja v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé)

---\\ Pasta de extensão do Google Chrome
~ Google Lines Browser: 15 Legitimates Filtered in 00mn 02s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
C:\Users\eduardo\AppData\Roaming\Mozilla\Firefox\Profiles\ayo2bp56.default\prefs.js
M3 - MFPP: Plugins - [eduardo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml
M3 - MFPP: Plugins - [eduardo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml
M3 - MFPP: Plugins - [eduardo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml
M3 - MFPP: Plugins - [eduardo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml
P2 - FPN: [HKCU] [gastecnologia.com.br/sf/abn] - (.GAS Tecnologia - Internet Banking Helper.) -- C:\Users\eduardo\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll
~ Firefox Browser: 23 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4)
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.SweetPage
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.SweetPage
~ IE Browser: 24 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management:  Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys:  Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File:  Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Browser Helper Objects do navegador (02)
O2 - BHO: G-Buster Browser Defense CEF [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540003} . (.Caixa Economica Federal - Gbieh Module.) -- C:\Program Files (x86)\GbPlugin\gbiehcef.dll
O2 - BHO: G-Buster Browser Defense Banco Real [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540007} . (.Banco Real - Gbieh Module.) -- C:\Program Files (x86)\GbPlugin\gbiehabn.dll
~ BHO: 10 Legitimates Filtered in 00mn 00s



---\\ Barras do Internet Explorer (03))
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{47833539-D0C5-4125-9FA8-0819E2EAAC93} Chave orfã
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{41564952-412D-5637-4300-7A786E7484D7} Chave orfã
~ Toolbar:  Scanned in 00mn 00s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - HKCU\..\Run: [CGFLoader] . (.Colorjinn - Calibrize Gamma Loader.) -- C:\Program Files (x86)\Calibrize\CalibrizeLoader.exe
O4 - HKCU\..\Run: [CalibrizeResume] . (.Eberhard Werle - Monitor power state and run CalibrizeLoader.) -- C:\Program Files (x86)\Calibrize\CalibrizeResume.exe
O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.)
O4 - HKCU\..\Run: [NokiaSuite.exe] . (.Nokia - Nokia Suite.) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe   =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Facebook Installer.) -- C:\Users\eduardo\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKLM\..\Wow6432Node\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe
O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe   =>.Samsung Electronics Co
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe   =>.Oracle Corporation
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [CGFLoader] . (.Colorjinn - Calibrize Gamma Loader.) -- C:\Program Files (x86)\Calibrize\CalibrizeLoader.exe
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [CalibrizeResume] . (.Eberhard Werle - Monitor power state and run CalibrizeLoader.) -- C:\Program Files (x86)\Calibrize\CalibrizeResume.exe
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe (.not file.)
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [NokiaSuite.exe] . (.Nokia - Nokia Suite.) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe   =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-3447211225-2548578069-2625225995-1001\..\Run: [Facebook Update] . (.Facebook Inc. - Facebook Installer.) -- C:\Users\eduardo\AppData\Local\Facebook\Update\FacebookUpdate.exe
~ Application:  Scanned in 00mn 00s



---\\ Site na zona confiavél do Internet Explorer (05)
O15 - Trusted Zone: [HKCU\...\Domains\www] *.santander.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.santanderempresarial.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.santandernet.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.santandernetibe.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.secureweb.com.br
~ IE Zone Confiance:  Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{6EF88BC8-19F1-4764-B6D6-3BAF30C400EC}: NameServer = 8.8.8.8,8.8.4.4  =>.Google DNS Redirections
O17 - HKLM\System\CCS\Services\Tcpip\..\{6EF88BC8-19F1-4764-B6D6-3BAF30C400EC}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{6EF88BC8-19F1-4764-B6D6-3BAF30C400EC}: NameServer = 8.8.8.8,8.8.4.4  =>.Google DNS Redirections
O17 - HKLM\System\CS1\Services\Tcpip\..\{6EF88BC8-19F1-4764-B6D6-3BAF30C400EC}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{6EF88BC8-19F1-4764-B6D6-3BAF30C400EC}: NameServer = 8.8.8.8,8.8.4.4  =>.Google DNS Redirections
O17 - HKLM\System\CS2\Services\Tcpip\..\{6EF88BC8-19F1-4764-B6D6-3BAF30C400EC}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
~ Domain:  Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (...) --
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll  =>.Microsoft Corporation
~ Protocole Additionnel:  Scanned in 00mn 00s



---\\ Lista dos serviços NT não Microsoft e não desativados (023)
O23 - Service: Firebird Guardian - SuperCash (FirebirdGuardianSuperCash) . (.Firebird Project - Firebird SQL Server.) - C:\Santander\Gerenciador de Arquivos\Servidor\bin\fbguard.exe
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
~ Services: 8 Legitimates Filtered in 00mn 06s



---\\ Tarefas planificadas automaticamente (039)
[MD5.352E8561E633B17ED22012366721FFDC] [APT] [{1A709E3D-C131-405A-BFE8-B11D3C61CF1D}] (...) -- C:\Users\eduardo\Desktop\kkkkk.exe   [1285120]
[MD5.00000000000000000000000000000000] [APT] [{2979ADE1-E4C5-4AD9-9B02-29A467683B67}] (...) -- C:\Users\eduardo\Desktop\hp_usb_disk_storage_format_tool_223.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{36C777DD-D23F-4A73-898A-6B6DFCFAEFEA}] (...) -- C:\Users\eduardo\Desktop\20323-hr8.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{39C3C8FF-43FE-4D8E-937E-F305E5B331AF}] (...) -- C:\Users\eduardo\Desktop\20323-hr8.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{4BCD8F27-2565-4DE4-8472-81B77F9A511F}] (...) -- C:\Users\eduardo\Desktop\Downloads\3820-ptb-win2k_xp.exe (.not file.)   [0]
[MD5.352E8561E633B17ED22012366721FFDC] [APT] [{64E09EF4-80D3-4601-8FF6-87A5074216E6}] (...) -- C:\Users\eduardo\Desktop\kkkkk.exe   [1285120]
[MD5.00000000000000000000000000000000] [APT] [{7C3423A6-089D-411C-9AFE-2B8F4583C01E}] (...) -- C:\Users\eduardo\Desktop\970-enu-xp.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{899688E5-0840-413E-8B83-0A9499441137}] (...) -- C:\Program Files (x86)\KGB\unins000.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{963445E4-4FD1-4A13-B4DB-8FA982DB9F2B}] (...) -- C:\Users\eduardo\Desktop\970-enu-xp.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{9942360A-4F9F-4E6F-9F9E-F51505885740}] (...) -- C:\Users\eduardo\Desktop\970-enu-xp.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{99DEAE3C-6765-421E-9E1C-5DC209073EE3}] (...) -- C:\Users\eduardo\Desktop\20323-hr8.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{B447D32D-70A3-4564-AB9B-115730D46D47}] (...) -- C:\Users\eduardo\Desktop\20323-hr8.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{C869D46C-8B0B-4511-AB00-C7B665FDC98E}] (...) -- C:\Users\eduardo\Desktop\20323-hr8.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{CA01BA82-5F05-47EA-819E-1A9FDDA68F54}] (...) -- C:\Users\eduardo\Downloads\gbpluginabnsetup(1).exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{DA5945CF-5EE8-433D-BF75-6016EBAEB553}] (...) -- C:\Users\eduardo\Desktop\970-enu-xp.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{EAC4027C-8620-42EE-AD8D-12B4B727414C}] (...) -- C:\Users\eduardo\Desktop\20323-hr8.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{FAED770D-68D4-418E-A1A2-7D0E5BD98A91}] (...) -- C:\Users\eduardo\Desktop\Downloads\3820-ptb-win2k_xp.exe (.not file.)   [0]
O39 - APT:  - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater   [902]
O39 - APT:  - (..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3447211225-2548578069-2625225995-1001Core   [914]
O39 - APT:  - (..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3447211225-2548578069-2625225995-1001UA   [936]
O39 - APT:  - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore   [1066]
O39 - APT:  - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA   [1070]
~ Scheduled Task: 30 Legitimates Filtered in 00mn 04s



---\\ Software instalados (042)
O42 - Logiciel: Genius Scanner - (...) [HKLM][64Bits] -- {CCEB2144-5F5D-49E8-AADC-05CA48AE9AA5}
O42 - Logiciel: Licensing Service (03000201) - (.Protexis Inc..) [HKLM][64Bits] -- {9F9C5C18-9665-41EC-A660-5A3BA213CA1D}
O42 - Logiciel: Módulo de Proteção Banco Santander (Brasil) S.A. - (...) [HKLM][64Bits] -- {83033d93-48d0-48fc-9c5b-82e57e7e0dd6}_is1
~ Logic: 24 Legitimates Filtered in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\39200InstEnd]
[HKCU\Software\AutoHelpDesk]
[HKCU\Software\GbAs]
[HKLM\Software\Wow6432Node\InterApp]
~ Key Software: 346 Legitimates Filtered in 00mn 01s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 22/04/2012 - 20:30:32 - [] ----D C:\Program Files (x86)\Ares Catcher
O43 - CFD: 16/08/2013 - 16:29:50 - [] ----D C:\Program Files (x86)\BPFTP Server
O43 - CFD: 18/02/2011 - 11:33:22 - [] ----D C:\Program Files (x86)\MSOld
O43 - CFD: 06/11/2012 - 15:15:11 - [] ----D C:\Program Files (x86)\PokerStars
O43 - CFD: 25/04/2011 - 12:38:33 - [] ----D C:\Program Files (x86)\ScannerU
O43 - CFD: 25/03/2013 - 17:35:05 - [] ----D C:\Users\eduardo\AppData\Roaming\0B1T1L2V1T1J1L
O43 - CFD: 15/05/2012 - 15:37:47 - [] ----D C:\Users\eduardo\AppData\Local\PokerStars
O43 - CFD: 01/04/2011 - 16:00:43 - [0] ----D C:\Users\eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Santander
~ Program Folder: 217 Legitimates Filtered in 00mn 00s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.9D47397D58EA49F48E359F50E8DF6F8B] - 22/05/2014 - 18:09:48 R--A- . (...) -- C:\Windows\amunres.lsl   [11]
O44 - LFC:[MD5.2D86683D0D7F8DF96BA2C72D4B77741B] - 23/05/2014 - 09:58:27 ---A- . (...) -- C:\Windows\FontData.fdb   [153556]
O44 - LFC:[MD5.72F2D357120F95C1E725C22915FE95E1] - 24/05/2014 - 20:17:12 ---A- . (...) -- C:\Windows\WORDPAD.INI   [193]
O44 - LFC:[MD5.39C931628B3E1CB440AA189032C3B101] - 26/05/2014 - 16:27:22 ---A- . (...) -- C:\zoek-results2014-05-26-192722.log   [1030]
O44 - LFC:[MD5.6BFE568FBDE9F88773D2B82465A9F89C] - 26/05/2014 - 18:14:48 ---A- . (...) -- C:\zoek-results2014-05-26-211448.log   [10772]
O44 - LFC:[MD5.B8624E79EC6D47DF3FEE1BA48A6B0DF0] - 26/05/2014 - 18:44:42 ---A- . (...) -- C:\zoek-results.log   [1254]
~ Files: 11 Legitimates Filtered in 00mn 02s



---\\ Enumeração das chaves do registo StartupReg (SMSR) (O53)
O53 - SMSR:HKLM\...\startupreg\G4Listener  [Key] . (...) -- C:\Santander\Gerenciador de Arquivos\Bin\Listener.exe
~ SMSR Keys: 5 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 19 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys   [530496]
O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys   [31232]
O58 - SDL:13/03/2008 - 04:46:00 ---A- . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture Driver.) -- C:\Windows\System32\Drivers\ManyCam_x64.sys   [27136]
O58 - SDL:22/02/2012 - 07:34:36 ---A- . (.ManyCam LLC - ManyCam Virtual Microphone.) -- C:\Windows\System32\Drivers\mcaudrv_x64.sys   [28160]
O58 - SDL:11/01/2012 - 03:11:20 ---A- . (.ManyCam LLC - ManyCam Virtual Webcam.) -- C:\Windows\System32\Drivers\mcvidrv_x64.sys   [34304]
O58 - SDL:28/10/2013 - 00:12:10 ---A- . (.DEVGURU Co., LTD.([Tens de ter uma conta e sessão iniciada para poderes visualizar este link] - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys   [107288]
O58 - SDL:22/02/2013 - 04:17:06 ---A- . (.DEVGURU Co., LTD.([Tens de ter uma conta e sessão iniciada para poderes visualizar este link] - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys   [203544]
O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise  SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys   [24656]
O58 - SDL:09/11/2012 - 08:29:41 ---A- . (...) -- C:\Windows\SysWOW64\drivers\gbpkm.sys.off   [47720]
O58 - SDL:03/04/2014 - 09:39:22 ---A- . (.GbPlugin NDIS Device Driver - GbPlugin NDIS Device Driver.) -- C:\Windows\SysWOW64\drivers\gbpndisrd.sys   [31088]
~ Drivers: 61 Legitimates Filtered in 00mn 09s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1  =>.Nicolas Coolman
~ ADS:  Scanned in 00mn 00s



---\\ Lista dos serviços Legacy du registo (064)
O64 - Services: CurCS - 10/01/2013 - C:\Windows\System32\DRIVERS\EpfwLWF.sys (EpfwLWF)  .(.ESET - Epfw NDIS LightWeight Filter.) - LEGACY_EPFWLWF
~ Legacy: 82 Legitimates Filtered in 00mn 00s



---\\ Associações Shell Spawning (O67)
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Legitimates Filtered in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\eduardo\AppData\Local\Torch\Application\torch.exe (.not file.)
~ Keys:  Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {365FAC72-B8BA-42F4-8AFB-4F11B7D761D0} [DefaultScope] - (Bing) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Keys:  Scanned in 00mn 00s



---\\ Pesquisa adicional à raiz do sistema (radicular) (SPRF) (O84)
[MD5.0641A46F1E58529A42EAD4573A3A0861] [SPRF][18/06/2012] (...) -- C:\ProgramData\C345F0C6A1.sys   [8]
[MD5.B8BAED67B253F325498DDD3E6B349175] [SPRF][10/03/2014] (...) -- C:\ProgramData\KGyGaAvL.sys   [2776]
[MD5.8D20FE50C4FFC9DE96661A1D1867A4DB] [SPRF][30/04/2014] (...) -- C:\Users\eduardo\AppData\Roaming\unins000.dat   [15939]
[MD5.352E8561E633B17ED22012366721FFDC] [SPRF][21/05/2014] (...) -- C:\Users\eduardo\Desktop\kkkkk.exe   [1285120]
~ Files: 5 Legitimates Filtered in 00mn 00s



---\\ Search Tracing Registry Key (O100)
HKLM\SOFTWARE\Microsoft\Tracing\InstTracker_RASAPI32  =>Adware.PredictAd
HKLM\SOFTWARE\Microsoft\Tracing\InstTracker_RASMANCS  =>Adware.PredictAd
HKLM\SOFTWARE\Microsoft\Tracing\SpyHunter4_RASAPI32  =>Crapware.SpyHunter
HKLM\SOFTWARE\Microsoft\Tracing\SpyHunter4_RASMANCS  =>Crapware.SpyHunter
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Feven Pro 1_RASAPI32  =>PUP.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Feven Pro 1_RASMANCS  =>PUP.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FindWideToolbar_RASAPI32  =>Hijacker.SearchFindWide
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FindWideToolbar_RASMANCS  =>Hijacker.SearchFindWide
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Mobogenie_Setup_2_RASAPI32  =>PUP.Mobogenie
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Mobogenie_Setup_2_RASMANCS  =>PUP.Mobogenie
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Plus-HD-1_RASAPI32  =>Adware.PlusHD
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Plus-HD-1_RASMANCS  =>Adware.PlusHD
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Plus-HD-4_RASAPI32  =>Adware.PlusHD
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Plus-HD-4_RASMANCS  =>Adware.PlusHD
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Plus-HD-7_RASAPI32  =>Adware.PlusHD
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\Plus-HD-7_RASMANCS  =>Adware.PlusHD
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webcake_2205-a3f0f0d9-1408_RASAPI32  =>Adware.WebCake
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webcake_2205-a3f0f0d9-1408_RASMANCS  =>Adware.WebCake
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\yontoo-C4-1274_RASAPI32  =>Adware.Yontoo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\yontoo-C4-1274_RASMANCS  =>Adware.Yontoo
~ BTK: 447 Legitimates Filtered in 00mn 00s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 14/05/2014 257712 |  (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Disabled 17/03/2014 1017424 |  (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
SS - | Auto 11/02/2014 116648 |  (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 11/02/2014 116648 |  (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 09/05/2011 136120 |  (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Auto 23/10/2013 172192 |  (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 15/12/2009 515560 |  (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
SS - | Demand 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 17/03/2014 440400 |  (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 17/03/2014 440400 |  (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 01/04/2011 81920 |  (FirebirdGuardianSuperCash) . (.Firebird Project.) - C:\Santander\Gerenciador de Arquivos\Servidor\bin\fbguard.exe
SR - | Demand 01/04/2011 2723840 |  (FirebirdServerSuperCash) . (.Firebird Project.) - C:\Santander\Gerenciador de Arquivos\Servidor\bin\fbserver.exe
SR - | Auto 27/02/2014 519224 |  (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.dll (HPSLPSVC) . (.Hewlett-Packard Co..) - C:\Windows\System32\svchost.exe
SR - | Auto 13/07/2009 27136 | C:\Windows\system32\HPZinw12.dll (Net Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe
SR - | Auto 13/07/2009 27136 | C:\Windows\system32\HPZipm12.dll (Pml Driver HPZ12) . (.Hewlett-Packard.) - C:\Windows\System32\svchost.exe
SR - | Auto 10/03/2010 189728 |  (PSI_SVC_2) . (.Protexis Inc..) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
SR - | Demand 19/12/2012 732648 |  (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
SR - | Auto 25/04/2014 5024576 |  (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
SR - | Auto 10/07/1658 0 |  (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe  =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services:  Scanned in 00mn 10s



---\\ Scâner Aditional (088)
Database Version : 13029 - (24/05/2014)
Clés trouvées (Keys found) : 2
Valeurs trouvées (Values found) : 0
Dossiers trouvés  (Folders found) : 0
Fichiers trouvés  (Files found) : 0

[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375]   =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5]   =>PUP.Tarma
~ Additionnel Scan: 308252 Items scanned in 00mn 33s



---\\ Sumário das deteções encontradas na sua estação
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.SweetPage
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.PredictAd
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Crapware.SpyHunter
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.CrossRider
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Hijacker.SearchFindWide
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.Mobogenie
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.PlusHD
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.WebCake
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.Yontoo
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.Tarma
~ MSI: 10 link(s) detected in 00mn 00s



~ 899 Legitimates filtered by white list
End of the scan (499 lines in 01mn 48s)(0)
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 18:57

Você sabe do se trata este arquivo abaixo?
C:\Program Files (x86)\BPFTP Server\bpftpserver.exe

Vários antivirus detectam ele como perigoso.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty (RESOLVIDO).....

Mensagem por Coelhocego Seg 26 maio 2014, 19:04

Esse é o programinha de FTP que eu utilizava,,, A anos...
Ultimamente não ando mais mexendo com ele.
Coelhocego
Coelhocego
Iniciante
Iniciante

Mensagens : 37
Reputação : 0
Data de inscrição : 01/05/2014

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 19:19

Mas você quer removê-lo ou é melhor deixá-lo?
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Power Max Seg 26 maio 2014, 19:26

problemas - Verificação de Problemas... 772309  Há programas desnecessários iniciando junto com o Windows, o que torna o seu PC mais lento. Para corrigir isto, siga as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

De preferência deixe apenas os programas de segurança (anti-vírus/anti-spywares/firewall) iniciarem junto com o Windows.

Use também o programa Ccleaner, indicado neste tutorial acima, para fazer uma limpeza e otimização do PC agora e de tempos em tempos.
___________________________________________________________________________________________________________

problemas - Verificação de Problemas... 772309  Acesse o site [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] e envie este arquivo destacado em azul abaixo para ser analisado:
C:\ProgramData\C345F0C6A1.sys

Assim que a análise dele for concluída, copie o link que aparecerá na barra de endereços de seu navegador e poste este link em sua próxima resposta juntamente com os relatório do ZHPFix pedido abaixo nesta postagem.

Maiores informações de como analisar arquivos no site Virus Total você encontra neste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
_________________________________________________________________________________________________

problemas - Verificação de Problemas... 772309  Selecione e copie todo o texto destacado em vermelho que te passei.
_____________________________________________________________________________________________________________

problemas - Verificação de Problemas... 772309  Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta juntamente com o link da análise do arquivo no site Virus Total.


Última edição por Power Max em Ter 27 maio 2014, 11:08, editado 1 vez(es)
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

problemas - Verificação de Problemas... Empty Re: Verificação de Problemas...

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Página 1 de 2 1, 2  Seguinte

Ir para o topo

- Tópicos semelhantes

 
Permissões neste sub-fórum
Não podes responder a tópicos