Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14810 usuários registrados
O último membro registrado é Josevinil

Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por joram Seg 01 Abr 2024, 06:35

Quem está conectado?
18 usuários online :: 0 registrados, 0 invisíveis e 18 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

abril 2024
SegTerQuaQuiSexSábDom
1234567
891011121314
15161718192021
22232425262728
2930     

Calendário Calendário


(RESOLVIDO) Ajuda para eliminar o Awesomehp

2 participantes

Página 1 de 3 1, 2, 3  Seguinte

Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Qui 06 Fev 2014, 13:39

Funcionou

Rapport de ZHPFix 2014.1.17.2 par Nicolas Coolman, Update du 17/01/2014
Fichier d'export Registre :
Run by André at 06/02/2014 13:35:01
High Elevated Privileges : OK
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 09s)

========== Valores do Registo ==========
ELIMINÉ: URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
ProxyFix : Configuração proxy removida com sucesso
ELIMINÉ ProxyServer Value
ELIMINÉ ProxyEnable Value
ELIMINÉ EnableHttp1_1 Value
ELIMINÉ ProxyHttp1.1 Value
ELIMINÉ ProxyOverride Value

========== Elementos dos dados do Registo ==========
ELIMINÉ: R0 - Main,Start Page = KCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page
ELIMINÉ: R0 - Main,Start Page = KLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page
ELIMINÉ: R1 Search Page =

========== Preferências do navegador ==========
AGORA Chrome File: C:\Users\André\AppData\Local\Google\Chrome\User Data\Default\Preferences
AUSENTE Chrome Site: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

========== Pastas ==========
ELIMINÉ: C:\Users\André\AppData\Local\{000D5011-5849-4198-B5FB-8FA445000D9E}
ELIMINÉ: C:\Users\André\AppData\Local\{01D26296-D4FF-4C9C-9690-150F07EB3EE0}
ELIMINÉ: C:\Users\André\AppData\Local\{01DE11BA-FD69-4503-8714-D604AE6A6A86}
ELIMINÉ: C:\Users\André\AppData\Local\{06F24C2A-CE72-4E8A-8B0C-EB02CD6AB6F8}
ELIMINÉ: C:\Users\André\AppData\Local\{07B5333C-2692-4E1E-BFF1-6A833A9F9D2B}
ELIMINÉ: C:\Users\André\AppData\Local\{07C2C6F4-682C-400C-9734-5B82FE0BCD91}
ELIMINÉ: C:\Users\André\AppData\Local\{07CFC9D0-4044-482A-8087-AFE828F9F2D7}
ELIMINÉ: C:\Users\André\AppData\Local\{083F3BD0-158A-48CE-A4F9-0DA2B2B2A2DC}
ELIMINÉ: C:\Users\André\AppData\Local\{089C79BD-748C-467D-8BC1-B37AA59FA779}
ELIMINÉ: C:\Users\André\AppData\Local\{092297CB-DF05-41E5-A610-46A982B0BFFF}
ELIMINÉ: C:\Users\André\AppData\Local\{0A058E1E-B084-4366-8972-5CEDDD80D2F0}
ELIMINÉ: C:\Users\André\AppData\Local\{0B4CAC85-3321-430A-9946-2ED4BBF53DF7}
ELIMINÉ: C:\Users\André\AppData\Local\{0C459425-4DE2-487A-BA64-E139B700FE03}
ELIMINÉ: C:\Users\André\AppData\Local\{0C529076-B747-4C51-ABA0-EAFFFCB9ED19}
ELIMINÉ: C:\Users\André\AppData\Local\{0E9C8BF5-BE33-4450-80E5-D6F38BA67935}
ELIMINÉ: C:\Users\André\AppData\Local\{108E9BA6-2906-47E8-AC9F-269C938AE487}
ELIMINÉ: C:\Users\André\AppData\Local\{121BECB0-804E-4D03-AE37-28198DF893E9}
ELIMINÉ: C:\Users\André\AppData\Local\{12DF237A-A991-457F-B78A-672F143B1CDE}
ELIMINÉ: C:\Users\André\AppData\Local\{12FF9582-1759-4DCF-A781-F667936DAE98}
ELIMINÉ: C:\Users\André\AppData\Local\{134A3788-68BE-4118-B45B-A75FAFF2B2A7}
ELIMINÉ: C:\Users\André\AppData\Local\{14626431-2F57-48F3-AB16-F8D1DFE0E62A}
ELIMINÉ: C:\Users\André\AppData\Local\{15D2BA30-F362-452C-8755-7EC4EE0CF383}
ELIMINÉ: C:\Users\André\AppData\Local\{17E0BDEF-37B1-4442-8071-693B76238A14}
ELIMINÉ: C:\Users\André\AppData\Local\{191AE23C-FF3D-4556-AFBF-EC8062BCBDD9}
ELIMINÉ: C:\Users\André\AppData\Local\{19BC3409-182A-4B0A-8877-4A33391B0E5A}
ELIMINÉ: C:\Users\André\AppData\Local\{1D0033AE-52D7-4A2B-95B7-9278B87B10B9}
ELIMINÉ: C:\Users\André\AppData\Local\{1E8A9554-9AB5-44AD-AFF8-554A2FE54029}
ELIMINÉ: C:\Users\André\AppData\Local\{1EC5BF0B-F0C9-46A0-B868-31377940F823}
ELIMINÉ: C:\Users\André\AppData\Local\{1EFE23B7-1469-4DB8-88A7-A2B6C83E051D}
ELIMINÉ: C:\Users\André\AppData\Local\{2036820A-C19E-4B0F-A193-AB3E036770E4}
ELIMINÉ: C:\Users\André\AppData\Local\{20B4D085-DF3F-4A95-9671-5A1E97E74D88}
ELIMINÉ: C:\Users\André\AppData\Local\{214A925F-AB60-4450-9728-1112AB053ECE}
ELIMINÉ: C:\Users\André\AppData\Local\{2448F67A-6BB8-4EE9-83DE-B3745AD43907}
ELIMINÉ: C:\Users\André\AppData\Local\{265FAD4F-8D65-4EF5-82D1-236C9D5C2069}
ELIMINÉ: C:\Users\André\AppData\Local\{2668BA20-4CAE-4168-9D41-5AC27BFCD2A5}
ELIMINÉ: C:\Users\André\AppData\Local\{269A0988-F61C-4E7C-8F6C-5BB32DC525CB}
ELIMINÉ: C:\Users\André\AppData\Local\{26C44A7A-F7D4-4E3C-9324-AB0947E684F7}
ELIMINÉ: C:\Users\André\AppData\Local\{27D7459F-D0AE-49D4-8AD5-F0B244C6F184}
ELIMINÉ: C:\Users\André\AppData\Local\{28C0205F-2E07-4AC3-8601-6401DFB07272}
ELIMINÉ: C:\Users\André\AppData\Local\{2C0A0ABC-6E1B-437F-B13F-5154BF5621B2}
ELIMINÉ: C:\Users\André\AppData\Local\{33DA0E67-2FA0-4EC5-A188-1B62080CF48B}
ELIMINÉ: C:\Users\André\AppData\Local\{35809DF1-C929-414D-8C4F-88A8179E8C89}
ELIMINÉ: C:\Users\André\AppData\Local\{35E8E86C-9342-4017-8509-5DC229D65F25}
ELIMINÉ: C:\Users\André\AppData\Local\{3629D6B9-4242-4283-B444-D0B40191B5AB}
ELIMINÉ: C:\Users\André\AppData\Local\{36E3225B-732A-4DE2-897A-B542484B4F9D}
ELIMINÉ: C:\Users\André\AppData\Local\{37B110DF-B1D3-4F26-8FEE-9701CC7796E9}
ELIMINÉ: C:\Users\André\AppData\Local\{37CB2B77-CE2C-45D2-9EEF-67C1ADB42F33}
ELIMINÉ: C:\Users\André\AppData\Local\{39486936-EC68-45FE-8A1F-38677A2C9602}
ELIMINÉ: C:\Users\André\AppData\Local\{3962B3FB-B854-4D1C-A991-10CF2D780F65}
ELIMINÉ: C:\Users\André\AppData\Local\{3991E2BC-9483-4CC8-97B8-17A702500143}
ELIMINÉ: C:\Users\André\AppData\Local\{3A55836C-D3C2-4DF3-916D-C593283A32D1}
ELIMINÉ: C:\Users\André\AppData\Local\{3AA26E5D-EDB5-4BD1-8E66-047ABC550B37}
ELIMINÉ: C:\Users\André\AppData\Local\{3D707B0A-3E29-44E9-801F-0548FB535346}
ELIMINÉ: C:\Users\André\AppData\Local\{3F360B2C-7AAD-4916-B25D-35358F1A05EB}
ELIMINÉ: C:\Users\André\AppData\Local\{3F70CA97-8C16-4F5B-862A-AC8840F44F12}
ELIMINÉ: C:\Users\André\AppData\Local\{41030689-6128-4349-A146-7CACD5640D9C}
ELIMINÉ: C:\Users\André\AppData\Local\{4117C116-46E9-4E40-9F29-392733BD522B}
ELIMINÉ: C:\Users\André\AppData\Local\{41D2C9AA-3C80-4A10-AEC0-A9B7378710BF}
ELIMINÉ: C:\Users\André\AppData\Local\{41ED501E-44BE-48D0-B7B7-F7E16C59B327}
ELIMINÉ: C:\Users\André\AppData\Local\{4246C494-792F-46FE-810C-4CD897707DD1}
ELIMINÉ: C:\Users\André\AppData\Local\{456AC766-7BA6-4DE6-A382-DD6B6DA3C8D8}
ELIMINÉ: C:\Users\André\AppData\Local\{46377EAE-3E45-4892-9EF5-3ADCC4875E6B}
ELIMINÉ: C:\Users\André\AppData\Local\{492D4EBD-8956-42C2-9D60-A557CFDEE31A}
ELIMINÉ: C:\Users\André\AppData\Local\{498EA7E7-5D26-42D6-A6CC-192B34044769}
ELIMINÉ: C:\Users\André\AppData\Local\{4CE989D1-50C2-4117-B235-AD39761A8D3E}
ELIMINÉ: C:\Users\André\AppData\Local\{4D93BB2A-4764-484C-9261-A9EEDE534659}
ELIMINÉ: C:\Users\André\AppData\Local\{4DEBA903-FAC8-47D5-9ADE-9D708EE05AB0}
ELIMINÉ: C:\Users\André\AppData\Local\{4ED5E434-5151-4C11-AEE7-6E670CD8E213}
ELIMINÉ: C:\Users\André\AppData\Local\{50CB56A7-7760-4A4D-80E4-E2D486A4EED7}
ELIMINÉ: C:\Users\André\AppData\Local\{51379BB8-4B7E-41F8-A849-247AC1FC224B}
ELIMINÉ: C:\Users\André\AppData\Local\{51A9CAEF-59F6-4ED6-BD16-463BC9CDBFD5}
ELIMINÉ: C:\Users\André\AppData\Local\{51E6BEC1-66B8-44C5-8FEC-A6B45A5AD10D}
ELIMINÉ: C:\Users\André\AppData\Local\{521F985E-4AFC-46AF-849A-A80327C85E04}
ELIMINÉ: C:\Users\André\AppData\Local\{534577C1-088A-45FD-A8F6-26536917C074}
ELIMINÉ: C:\Users\André\AppData\Local\{540C77DF-C65B-49D2-8026-A211C9F04121}
ELIMINÉ: C:\Users\André\AppData\Local\{541AFD0F-F265-4EAF-B79C-C062D1AD98B7}
ELIMINÉ: C:\Users\André\AppData\Local\{55F760D2-1827-4654-ACCE-B6D0FDEBA49E}
ELIMINÉ: C:\Users\André\AppData\Local\{562C477B-BEEF-4FAA-B17E-EC58DE74FB68}
ELIMINÉ: C:\Users\André\AppData\Local\{586228A0-D62A-47B0-960A-0CA14D308E0F}
ELIMINÉ: C:\Users\André\AppData\Local\{598369AD-D5B7-412D-AEA8-F36284BAACE8}
ELIMINÉ: C:\Users\André\AppData\Local\{59ED3322-2276-491C-AB62-41E8975BF037}
ELIMINÉ: C:\Users\André\AppData\Local\{5A391F8D-1BF1-4F4E-AF69-ADC8A8DD21BD}
ELIMINÉ: C:\Users\André\AppData\Local\{5F8A1CFA-C052-436D-9D2A-44553B99E7D6}
ELIMINÉ: C:\Users\André\AppData\Local\{6128E3C5-687C-4F71-98B7-D3ACCB699FE7}
ELIMINÉ: C:\Users\André\AppData\Local\{63548A45-B747-4EC6-A571-1D6A61EEC093}
ELIMINÉ: C:\Users\André\AppData\Local\{63B41F9E-4EBD-4905-8489-58DA0F24863F}
ELIMINÉ: C:\Users\André\AppData\Local\{63D841DE-BED2-4A2F-A400-73DE3C5F483A}
ELIMINÉ: C:\Users\André\AppData\Local\{65B07E30-B543-4306-A458-6CD6395DF023}
ELIMINÉ: C:\Users\André\AppData\Local\{66945AA6-F13A-4775-A0AC-0B823032189F}
ELIMINÉ: C:\Users\André\AppData\Local\{69272F95-C00A-4917-865B-DAF304E0875F}
ELIMINÉ: C:\Users\André\AppData\Local\{694333A1-2007-4D86-ADF8-1757815887A1}
ELIMINÉ: C:\Users\André\AppData\Local\{69D13817-2AE3-4AFB-9F20-B89FDC627719}
ELIMINÉ: C:\Users\André\AppData\Local\{6A0C130E-37AB-4F7F-9870-94388526267B}
ELIMINÉ: C:\Users\André\AppData\Local\{6AEE47A4-DE92-4B33-B857-05FA2686DE78}
ELIMINÉ: C:\Users\André\AppData\Local\{6B4FB764-5E51-4CBE-8ED5-96FB06DE27E2}
ELIMINÉ: C:\Users\André\AppData\Local\{6BAEEC04-74C1-49F5-8CA0-DDEF7A124EAE}
ELIMINÉ: C:\Users\André\AppData\Local\{6BEC9C25-12E5-429A-A080-2052B2A81BFF}
ELIMINÉ: C:\Users\André\AppData\Local\{6DA7D51A-FCD4-4FF3-B643-B335AE1307A3}
ELIMINÉ: C:\Users\André\AppData\Local\{6F7938DA-FFED-4B43-A6E3-66EE0B2D5485}
ELIMINÉ: C:\Users\André\AppData\Local\{6FF1E8B3-C346-4A1C-8EDE-E0AD044C5DEE}
ELIMINÉ: C:\Users\André\AppData\Local\{7183FB6A-0944-4AFD-8E93-DE1BC4D00EE3}
ELIMINÉ: C:\Users\André\AppData\Local\{73081248-3A83-4C02-9715-2A36BF01A688}
ELIMINÉ: C:\Users\André\AppData\Local\{75467BBC-8E81-4A7E-9D4D-A404CB8E09A8}
ELIMINÉ: C:\Users\André\AppData\Local\{76FBB4F1-8A16-4048-9C8B-089B04D0D3E7}
ELIMINÉ: C:\Users\André\AppData\Local\{79C31B81-59DE-4BB1-ABEE-46B93E0C8B2C}
ELIMINÉ: C:\Users\André\AppData\Local\{7ACA7997-E494-41C3-A376-891B89091EB5}
ELIMINÉ: C:\Users\André\AppData\Local\{7B7A10FC-E9F0-4719-B1F8-4B5EE6EC3019}
ELIMINÉ: C:\Users\André\AppData\Local\{7C3519E1-C8E4-41FB-8943-03096BDC72C1}
ELIMINÉ: C:\Users\André\AppData\Local\{7CB72E31-E682-4FFB-8A03-302255BC64CC}
ELIMINÉ: C:\Users\André\AppData\Local\{7D716800-C77B-4EFF-B303-2F8E4CADE46F}
ELIMINÉ: C:\Users\André\AppData\Local\{7D911656-B92B-4317-9065-1A50DD8585C2}
ELIMINÉ: C:\Users\André\AppData\Local\{7ECF551A-2BE2-4049-93CA-3950E3A92A5D}
ELIMINÉ: C:\Users\André\AppData\Local\{7F7515B3-4B9B-43AF-8B68-D9CCA9C3B9F5}
ELIMINÉ: C:\Users\André\AppData\Local\{81ABC6C3-B857-46E6-98B8-598753A8D61B}
ELIMINÉ: C:\Users\André\AppData\Local\{83CDA113-3143-416C-A422-4C5E98E921FE}
ELIMINÉ: C:\Users\André\AppData\Local\{8424220B-6F42-41DD-9FC5-3E51634F8DF7}
ELIMINÉ: C:\Users\André\AppData\Local\{85382C1B-CBB6-48E2-9A01-CF96C9D7B801}
ELIMINÉ: C:\Users\André\AppData\Local\{859EF33F-4C19-425B-A6E2-719F4245EE86}
ELIMINÉ: C:\Users\André\AppData\Local\{89A0EB33-33B6-42E8-B34F-BEA6BC4FBFAB}
ELIMINÉ: C:\Users\André\AppData\Local\{89F3C250-1DFF-4DE2-BE31-0ACF66FBB267}
ELIMINÉ: C:\Users\André\AppData\Local\{8A02E85F-B5BA-4B2E-9130-C8CEC107F57C}
ELIMINÉ: C:\Users\André\AppData\Local\{8FBF7E0C-F243-4B05-80DF-0023C5F6FC7F}
ELIMINÉ: C:\Users\André\AppData\Local\{8FD571D4-BF79-402B-9BFA-9E78E7694C75}
ELIMINÉ: C:\Users\André\AppData\Local\{900C5852-5D0C-415C-A526-C522117A6B32}
ELIMINÉ: C:\Users\André\AppData\Local\{90455F6D-8514-43A1-9D58-2D445C3954E9}
ELIMINÉ: C:\Users\André\AppData\Local\{909A8A90-25C8-41D4-A4A8-A9C66578C5F5}
ELIMINÉ: C:\Users\André\AppData\Local\{936F44E7-F067-4FBA-B84C-17CF72F28390}
ELIMINÉ: C:\Users\André\AppData\Local\{93F9FC0C-4A78-483A-B729-F6B9D098809C}
ELIMINÉ: C:\Users\André\AppData\Local\{942037A2-F866-4033-A2D1-3D61AB9BA444}
ELIMINÉ: C:\Users\André\AppData\Local\{948A6BBF-DC78-4828-A8FE-AA80E94B683B}
ELIMINÉ: C:\Users\André\AppData\Local\{960087BE-B1F5-4029-939F-79E51D6E0A4F}
ELIMINÉ: C:\Users\André\AppData\Local\{96FA9C67-E1BA-40A0-A612-789154149AEA}
ELIMINÉ: C:\Users\André\AppData\Local\{97A92DC3-D569-4B9C-9ECC-ECFB0B8021D6}
ELIMINÉ: C:\Users\André\AppData\Local\{9C257A90-3CA2-4F0D-BE18-653B88F400F8}
ELIMINÉ: C:\Users\André\AppData\Local\{9CCF82D1-5795-4874-9E61-82879578EDEB}
ELIMINÉ: C:\Users\André\AppData\Local\{A02282E2-C9CF-4AE6-A23E-E6F93ABA4A9F}
ELIMINÉ: C:\Users\André\AppData\Local\{A0B9F5DE-EFE2-4239-81E7-063E5D4EC97D}
ELIMINÉ: C:\Users\André\AppData\Local\{A1EABC20-ECB8-4294-98B0-0B8A5941AA47}
ELIMINÉ: C:\Users\André\AppData\Local\{A1F00781-AA26-49A1-876E-666CCA3FC518}
ELIMINÉ: C:\Users\André\AppData\Local\{A2418A03-D643-4A28-91AD-FE6C3D73BD64}
ELIMINÉ: C:\Users\André\AppData\Local\{A74B0994-FDDF-4B18-A22B-03EEAAF1352E}
ELIMINÉ: C:\Users\André\AppData\Local\{A7FD7AED-0BA8-42AB-BB6E-A9052540DC3F}
ELIMINÉ: C:\Users\André\AppData\Local\{A842CF0B-7153-401B-A858-4FB2572CB831}
ELIMINÉ: C:\Users\André\AppData\Local\{A87D9727-BBA8-4D94-8234-BCB1954B2DA5}
ELIMINÉ: C:\Users\André\AppData\Local\{A8C631C9-B76B-490D-9249-E78894F08592}
ELIMINÉ: C:\Users\André\AppData\Local\{A94584B8-4807-4BA2-A0E0-61716A2063BB}
ELIMINÉ: C:\Users\André\AppData\Local\{AA21FECE-CADF-4CE9-8E3E-B86AAC79645E}
ELIMINÉ: C:\Users\André\AppData\Local\{AB2B4911-5E64-4855-A1D7-03A698C65F99}
ELIMINÉ: C:\Users\André\AppData\Local\{AB2EEF5C-2996-49C9-9151-D3056627CCE9}
ELIMINÉ: C:\Users\André\AppData\Local\{AB4B2E90-2362-4AD9-9FED-F65D6C034347}
ELIMINÉ: C:\Users\André\AppData\Local\{AEBE4F51-9BC5-4F2E-AB96-C440359CB39F}
ELIMINÉ: C:\Users\André\AppData\Local\{AEBE5A8C-99AF-4EE1-B806-7DA25762A893}
ELIMINÉ: C:\Users\André\AppData\Local\{AF07C90F-D2C2-4209-B870-FA528F5F0849}
ELIMINÉ: C:\Users\André\AppData\Local\{B0F63F11-B7D0-4893-B377-B336698D96D0}
ELIMINÉ: C:\Users\André\AppData\Local\{B1A7E22D-E812-47DF-B897-F14E7FF7720A}
ELIMINÉ: C:\Users\André\AppData\Local\{B1F7F055-D447-4E23-B9E3-73B14E83E53A}
ELIMINÉ: C:\Users\André\AppData\Local\{B2ED518B-0203-4BB5-A8C1-57D73CF5C78A}
ELIMINÉ: C:\Users\André\AppData\Local\{B397A514-E956-4DFA-9850-BCB3549F57FB}
ELIMINÉ: C:\Users\André\AppData\Local\{B475D873-9831-40A1-8572-81D6D80506BB}
ELIMINÉ: C:\Users\André\AppData\Local\{B50493A5-EED8-46E8-8FEB-017923079B71}
ELIMINÉ: C:\Users\André\AppData\Local\{B56047A8-1027-46EA-B4EE-641EA7B50998}
ELIMINÉ: C:\Users\André\AppData\Local\{B74B4C4B-C273-4130-873F-1AC72D5AAADC}
ELIMINÉ: C:\Users\André\AppData\Local\{B759B0C1-C077-4400-9204-9D03AB8DAFD0}
ELIMINÉ: C:\Users\André\AppData\Local\{B97CFDD9-DBEE-4CAD-97BB-F81A54E411BD}
ELIMINÉ: C:\Users\André\AppData\Local\{B9FC9745-C546-4800-9DF2-516B1470AB75}
ELIMINÉ: C:\Users\André\AppData\Local\{BAFF0480-648E-439F-9FE7-3F748BCB33DE}
ELIMINÉ: C:\Users\André\AppData\Local\{BB754AA0-623D-4B18-8623-82765C771EE7}
ELIMINÉ: C:\Users\André\AppData\Local\{BCF8350A-AB10-418E-8042-C56F0070734D}
ELIMINÉ: C:\Users\André\AppData\Local\{BE7ECDF4-0B5F-476B-A86E-EBC4CE21E3D1}
ELIMINÉ: C:\Users\André\AppData\Local\{BF741CBF-B7AC-41D7-BF7F-6803612D890B}
ELIMINÉ: C:\Users\André\AppData\Local\{BFBC4E5C-FE87-4016-9728-351773B89BED}
ELIMINÉ: C:\Users\André\AppData\Local\{C074A761-73EA-4E5D-AD22-4BBE28681F28}
ELIMINÉ: C:\Users\André\AppData\Local\{C0C1BFB2-1E2B-44CF-9D17-39D13BEF1695}
ELIMINÉ: C:\Users\André\AppData\Local\{C35307E7-9B8C-4AEA-87AB-D97C2AC4586F}
ELIMINÉ: C:\Users\André\AppData\Local\{C4D8279A-D2FD-4693-8553-1FCF771417F0}
ELIMINÉ: C:\Users\André\AppData\Local\{C7AD1AE9-7D2B-43E8-B076-E45CEC46DED1}
ELIMINÉ: C:\Users\André\AppData\Local\{C9704B80-B5BB-438D-A557-C744BC4B92C1}
ELIMINÉ: C:\Users\André\AppData\Local\{C9FF5BB5-3799-4688-A170-2733FB3E586E}
ELIMINÉ: C:\Users\André\AppData\Local\{CD97EA94-4EF0-4AB0-B0CD-846829123CF0}
ELIMINÉ: C:\Users\André\AppData\Local\{CDB4FF43-8980-4991-85BC-9E9D590F820D}
ELIMINÉ: C:\Users\André\AppData\Local\{CE5BFC4F-CD05-4B92-8568-90272C943850}
ELIMINÉ: C:\Users\André\AppData\Local\{D079E344-17EA-4912-8BBF-C4D714EDB5CC}
ELIMINÉ: C:\Users\André\AppData\Local\{D909E513-BCEC-4D45-BD03-BE51F0587F9D}
ELIMINÉ: C:\Users\André\AppData\Local\{D92B25C1-B292-4C3C-8B77-21682A7F48C1}
ELIMINÉ: C:\Users\André\AppData\Local\{DC1B0741-95D4-454E-9185-E7057FD3DEE7}
ELIMINÉ: C:\Users\André\AppData\Local\{DD03AA42-2BEC-440A-927F-E6EFFBDF7B7F}
ELIMINÉ: C:\Users\André\AppData\Local\{DDE9A8AD-4CE4-40A6-BC82-EF7EB01CBC31}
ELIMINÉ: C:\Users\André\AppData\Local\{E05376C8-602A-44FE-AE1E-D0D7FE186C26}
ELIMINÉ: C:\Users\André\AppData\Local\{E1BF8F1A-D0C1-458A-8AC6-77D4CAC13E5E}
ELIMINÉ: C:\Users\André\AppData\Local\{E4AF4C0F-BC66-44CD-827F-D38C6ACC0D57}
ELIMINÉ: C:\Users\André\AppData\Local\{E6A172D3-23A2-470D-A5B3-691B4A25D8D3}
ELIMINÉ: C:\Users\André\AppData\Local\{E6D42514-6D2A-4C87-8C28-B7160550A639}
ELIMINÉ: C:\Users\André\AppData\Local\{E7113B0F-31D2-4D3C-AC21-DC04D505A7B8}
ELIMINÉ: C:\Users\André\AppData\Local\{EBB96107-50F7-4A07-B8B4-1EEEBC9E5C77}
ELIMINÉ: C:\Users\André\AppData\Local\{ECB42C59-7A16-4D7F-B60A-6EB2D50442E7}
ELIMINÉ: C:\Users\André\AppData\Local\{F1A8CB18-39F7-47D5-AFA8-50BA9CFD2872}
ELIMINÉ: C:\Users\André\AppData\Local\{F2A49410-8150-4643-9728-C89AB5F38D1B}
ELIMINÉ: C:\Users\André\AppData\Local\{F3704E9C-9101-4B5D-908E-A1574560A06B}
ELIMINÉ: C:\Users\André\AppData\Local\{F3AF48A6-0D59-44B9-A1AF-4ADAF3DE3137}
ELIMINÉ: C:\Users\André\AppData\Local\{F40FFD8E-6975-41B0-919D-1C3F0E166E18}
ELIMINÉ: C:\Users\André\AppData\Local\{F4AD5A8B-43CB-4A87-91C9-88D387C7061E}
ELIMINÉ: C:\Users\André\AppData\Local\{F4F44C85-37EC-4A50-AD45-06DFB6874293}
ELIMINÉ: C:\Users\André\AppData\Local\{F80FB27D-01BC-4FF7-8E35-9F53A1041192}
ELIMINÉ: C:\Users\André\AppData\Local\{F97F7AA9-11E8-451D-859D-54B0BB89CAD6}
ELIMINÉ: C:\Users\André\AppData\Local\{FB17D21C-F157-4B85-8710-884679452F11}
ELIMINÉ: C:\Users\André\AppData\Local\{FFC66D44-0FAE-493B-9897-32A57329CB85}

========== Ficheiros ==========
ELIMINÉ: c:\users\andré\appdata\local\google\chrome\user data\default\preferences
ELIMINÉ: c:\programdata\microsoft\windows\start menu\programs\mozilla firefox.lnk (http://www.awesomehp.com)
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\internet explorer\quick launch\google chrome.lnk (http://www.awesomehp.com)
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\internet explorer\quick launch\launch internet explorer browser.lnk (http://www.awesomehp.com)
CRIADO: C:\Users\André\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\google chrome.lnk (http://www.awesomehp.com)
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\internet explorer.lnk (http://www.awesomehp.com)
CRIADO: C:\Users\André\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\mozilla firefox.lnk (http://www.awesomehp.com)
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\windows\start menu\programs\internet explorer.lnk (http://www.awesomehp.com)
CRIADO: C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
ELIMINÉ: c:\users\andré\appdata\roaming\microsoft\windows\start menu\programs\accessories\system tools\internet explorer (no add-ons).lnk (http://www.awesomehp.com)
CRIADO: C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
ELIMINÉ Flash Cookies (0) (0 octets)
ELIMINÉ Temporários windows (414) (959.024.397 octets)

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso


========== Recapitulativo ==========
7 : Valores do Registo
3 : Elementos dos dados do Registo
206 : Pastas
15 : Ficheiros
2 : Preferências do navegador
1 : Restauração Sistema


End of clean in 00mn 43s

========== Caminho do ficheiro do relatório ==========
C:\Users\André\AppData\Roaming\ZHP\ZHPFix[R1].txt - 06/02/2014 13:35:11 [19310]
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Qui 06 Fev 2014, 13:57

(RESOLVIDO) Ajuda para eliminar o Awesomehp 648673379  Olá André.

(RESOLVIDO) Ajuda para eliminar o Awesomehp 772309  Vá no menu: Iniciar > Todos os programas > ZHP > Abra o ZHPDiag

|- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
 
|- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 02:07

Segue o relatorio
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 12:07

Segue o relatório para desinstalar o Awesomehp:

Relatório do ZHPDiag v2014.2.6.4 - Nicolas Coolman  (06/02/2014)
~ Iniciado por André (07/02/2014 22:56:46)
~ Endereço do Website :  http://nicolascoolman.webs.com
~ Fóruns de suporte gratuito para desinfecção : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Tradução pelo utilizador
~ Estatuto da versão :
~  Lista Branca : Ativado pelo programa
~ Elevação dos Privilégios : OK
~ Controle de Conta de Utilizador : Deactivate by user


---\\ Navegadores Internet
MSIE: Internet Explorer v11.0.9600.16476
MFIE: Mozilla Firefox 27.0 (Defaut)
GCIE: Google Chrome v32.0.1700.107

---\\ Informações sobre os produtos Windows
~ Langage: Portugais
Windows Vista (TM) Ultimate, 64-bit Service Pack 1 (Build 6000)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK

---\\ Softwares de proteçao do sistema
Avira Free Antivirus v14.0.2.286

---\\ Softwares d'optimização do sistema
CCleaner v3.23 =>Piriform Ltd

---\\ Softwares de partilha do PeerToPeer (P2P)
Pando Media Booster v2.6.0.7

---\\ Monitoramento dos softwares
Adobe Flash Player 12 Plugin
Java 7 Update 45

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 4000 MB (54% free)
System Restore: Activé (Enable)
System drive C: has 714 GB (77%) free of 917 GB

---\\ Modo de conexão ao sistema
~ Computer Name: ANDRÉ-HP
~ User Name: André
~ All Users Names: HomeGroupUser$, Convidado, André, Administrador,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\André\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\André\AppData\Roaming\
~ %Desktop% : C:\Users\André\Desktop\
~ %Favorites% : C:\Users\André\Favorites\
~ %LocalAppData% : C:\Users\André\AppData\Local\
~ %StartMenu% : C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 714 Go of 917 Go)
D: Hard drive, Flash drive, Thumb drive (Free 2 Go of 14 Go)
E: CD-ROM drive (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
Q: Hard drive, Flash drive, Thumb drive (Free 0 Go of 0 Go)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : Out Of Date
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Windows Explorer.) (.12/04/2012 - 02:23:02.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.9B6678DB9C6A232C5A84D2FDFFF8B0E1] - (.Microsoft Corporation - Internet Extensions para Win32.) (.26/11/2013 - 04:07:57.) -- C:\Windows\System32\wininet.dll [2334208]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.21/11/2010 - 00:24:29.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.21/11/2010 - 00:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.27/09/2013 - 22:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.12/04/2012 - 02:24:56.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 00:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.12/04/2013 - 11:45:08.) -- C:\Windows\system32\Drivers\ntfs.sys [1656680]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 00:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.12/04/2012 - 02:21:22.) -- C:\Windows\system32\Drivers\volsnap.sys [296320]
~ Generic Processes:  Scanned in 00mn 01s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes images (My Pictures) : 2/254
~ Mes musiques (My Musics) : 1/21
~ Mes Videos (My Videos) : 1/174
~ Mes Favoris (My Favorites) : 1/9
~ Mes Documents (My Documents) : 1/12066
~ Mon Bureau (My Desktop) : 1/915
~ Menu demarrer (Programs) : 1/51
~ Hidden Files:  Scanned in 00mn 10s



---\\ Processos lançados
[MD5.4FAEE05B33E3F48B93860D12FC7F56A8] - (.Enigma Software Group USA, LLC. - SpyHunter4 application.) -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe   [3021720] [PID.2912]  =>Crapware.SpyHunter
[MD5.455E1076802F2BE732AC2C066359A9F6] - (.HP - TouchControl.) -- C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe   [653128] [PID.3008]
[MD5.488EEBAF1862551C7C9CF127A5AAB2A9] - (.HP - BioMonitor.) -- C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe   [142664] [PID.1912]
[MD5.554A50B5310E702029D3A675459108FF] - (.Hewlett-Packard - hpsysdrv.) -- C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe   [62768] [PID.3152]
[MD5.D7D48255E921AC747B2390EBF80445C3] - (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe   [3598680] [PID.3188]
[MD5.CD46A430C171AC07C1434A788AB5993D] - (.Overwolf LTD - Overwolf.) -- C:\Program Files (x86)\Overwolf\Overwolf.exe   [37632] [PID.3204]
[MD5.58920E6A409046BA06548D9D139CE0F0] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe   [20584608] [PID.3280]
[MD5.DD24014C9B892A19E1B5E684AD6B2EAF] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe   [1815976] [PID.3316]
[MD5.E52D0E4549EDB9FE5C1739E98105DC4D] - (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe   [3813712] [PID.3416]
[MD5.5516C26A6AF8EB4E2CAB48EC98A74398] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe   [54576] [PID.3500]
[MD5.DD231039B13EC2ABDE315D76E658EF0E] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe   [684600] [PID.3556]
[MD5.5913D12D86D43FD4D3C1A67A8E081770] - (.Razer Inc. - Razer Synapse.) -- C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe   [442712] [PID.3564]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe   [254336] [PID.4052]
[MD5.BDEFC081D02C162DCB90738BE432D66B] - (.Easybits - Software update notification.) -- C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe   [1258504] [PID.3220]
[MD5.A303B11143983D28B83007D818F4BB11] - (.Overwolf LTD - Overwolf.) -- C:\Program Files (x86)\Overwolf\Purplizer\Purplizer.exe   [180992] [PID.6308]
[MD5.7DCE7A74764EB7C67D21A32BC579453D] - (.Oracle Corporation - Java(TM) Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe   [507264] [PID.6364]
[MD5.E287233EF87AA90FC9D4DD31575DF3DF] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe   [275568] [PID.6172]
[MD5.C8A8321292A459B0A17FB39A782A5C74] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\IEXPLORE.exe   [806096] [PID.5708]
[MD5.47D7F5E049E3FAA24176FB92859C552B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe   [8333824] [PID.3140]
[MD5.71CDC1D7F58D5EC49EBC2E2332AD3FAE] - (.HP - HP Service.) -- C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe   [264008] [PID.856]
[MD5.82699E5EDE403F59FC4384D39EB77B52] - (.Enigma Software Group USA, LLC. - Service scanner interface.) -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe   [327064] [PID.0]  =>Crapware.SpyHunter
[MD5.FE79366FECD444A16CCA9979134DBEA8] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe   [440376] [PID.1644]
[MD5.FDE9C7030FB1E9E2715E113EE6A10F90] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe   [440376] [PID.1940]
[MD5.CA793DCC1D5F619021EF1D37CC7A831E] - (.EasyBits Software AS - Shared EasyBits services for Windows.) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe   [514232] [PID.2016]
[MD5.BCC4A8B2E2E902F52E7F2E7D8E125765] - (.Hewlett-Packard Company - HP Quick Synchronization Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe   [94264] [PID.1312]
[MD5.6C85719A21B3F62C2C76280F4BD36C7B] - (.Intel Corporation - Intel  IPT Host Interface Service.) -- C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe   [212944] [PID.1548]
[MD5.075CDE4F95ED6119B4BA9162876801F8] - (.PDF Complete Inc - Dispatcher.) -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe   [1128952] [PID.2052]
[MD5.3A2E85F7D90D15460C337CE80C2E3B29] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe   [76888] [PID.2108]
[MD5.39B1D0A636A400304565D4521FAD6D77] - (.Microsoft Corporation - Microsoft Application Virtualization Virtua.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe   [207528] [PID.2444]
[MD5.77C5A741A7452812F278EF2C18478862] - (.Microsoft Corporation - Microsoft Application Virtualization Client.) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe   [523944] [PID.3272]
[MD5.FD557A50A65E44041CD2FCEF4BEB04DB] - (.Microsoft Corporation - Microsoft Office Client Virtualization Serv.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.exe   [822504] [PID.3168]
[MD5.D75C4B4A8FE6D7FD74A7EECDBAEC729F] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe   [326168] [PID.2500]
[MD5.758C2CE427C343F780A205E28555C98D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe   [2656280] [PID.1988]
~ Processes Running:  Scanned in 00mn 01s



---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2)
C:\Users\André\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Loja v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé)
~ Google Browser: 15 Legitimates Filtered in 00mn 01s


---\\ Internet Explorer, Arranque, Pesquisa, URLSearchHook( gancho de URL), Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Awesomehp
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.MyWebSearch
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Awesomehp
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Awesomehp
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Awesomehp
~ IE Browser: 18 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management:  Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys:  Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File:  Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21



---\\ Barras do Internet Explorer (03))
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} Chave orfã
~ Toolbar:  Scanned in 00mn 00s



---\\ Outras conexões do utilizador (04)
O4 - GS\Program [Public]: HP Beats Audio.lnk . (.IDT, Inc. - IDT PC Audio.)  -- C:\Windows\System32\idtcpl64.cpl
O4 - GS\QuickLaunch [André]: Conquest Online.lnk . (.TQ Digital Entertainment - No Comment.)  -- C:\Program Files (x86)\GlobalGames\Conquest Online\play.exe
O4 - GS\QuickLaunch [André]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [André]: PhotoScape.lnk . (...)  -- C:\Program Files (x86)\PhotoScape\PhotoScape.exe
O4 - GS\TaskBar [André]: aTube Catcher.lnk . (.DsNET - aTube Catcher to download and convert video.)  -- C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
O4 - GS\TaskBar [André]: Battlefield 3.lnk . (.EA Digital Illusions CE AB - Battlefield 3™.)  -- C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
O4 - GS\TaskBar [André]: Conquest Online.lnk . (.TQ Digital Entertainment - No Comment.)  -- C:\Program Files (x86)\GlobalGames\Conquest Online\play.exe
O4 - GS\TaskBar [André]: CrossFire AL.lnk . (.G4box Inc. - crossfirePT_launcher.)  -- C:\Program Files (x86)\Z8Games\CrossFire AL\cfPT_launcher.exe
O4 - GS\TaskBar [André]: CrossFire.lnk . (.G4box Inc. - crossfirePT_launcher.)  -- C:\Program Files (x86)\Z8Games\CrossFire\CF_G4box.exe
O4 - GS\TaskBar [André]: hpDST.lnk . (.Hewlett-Packard Company - Setup Manager.)  -- C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe
O4 - GS\TaskBar [André]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [André]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.)  -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\TaskBar [André]: Overwolf.lnk . (.Overwolf LTD - Overwolf.)  -- C:\Program Files (x86)\Overwolf\Overwolf.exe
O4 - GS\TaskBar [André]: Sbllock.lnk . (...)  -- C:\Sbllock\sbllock.exe
O4 - GS\TaskBar [André]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.)  -- C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe
O4 - GS\Program [André]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\SystemTools [André]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.)  -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [André]: Free PDF to Word Doc Converter.lnk . (...)  -- C:\Program Files (x86)\Free PDF to Word Doc Converter\pdf2word.exe
O4 - GS\Desktop [André]: SpyHunter.lnk . (.Enigma Software Group USA, LLC. - SpyHunter4 application.)  -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\SpyHunter4.exe =>Crapware.SpyHunter
~ Global Startup: 73 Legitimates Filtered in 00mn 04s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - HKLM\..\Run: [BeatsOSDApp] . (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\beats64.exe
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [hpsysdrv] . (.Hewlett-Packard - hpsysdrv.) -- c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe  =>.Hewlett-Packard Co
O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKCU\..\Run: [Overwolf] . (.Overwolf LTD - Overwolf.) -- C:\Program Files (x86)\Overwolf\Overwolf.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe  =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\steam.exe
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe  =>.Hewlett-Packard Co
O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - No Comment.) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe  =>.EasyBits Software AS
O4 - HKLM\..\Wow6432Node\Run: [PDF Complete] . (.PDF Complete Inc - Sentry for PDF.) -- C:\Program Files (x86)\PDF Complete\pdfsty.exe  =>.PDF Complete Inc
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [Razer Synapse] . (.Razer Inc. - Razer Synapse.) -- C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe  =>.Oracle Corporation
O4 - HKLM\..\Wow6432Node\Run: [Magic Desktop for HP notification] . (.Easybits - Software update notification.) -- C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe
O4 - HKLM\..\Wow6432Node\Run: [LogMeIn Hamachi Ui] . (.LogMeIn Inc. - Hamachi Client Application.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe  =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe  =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2896955948-1038809944-383079529-1000\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe
O4 - HKUS\S-1-5-21-2896955948-1038809944-383079529-1000\..\Run: [Overwolf] . (.Overwolf LTD - Overwolf.) -- C:\Program Files (x86)\Overwolf\Overwolf.exe
O4 - HKUS\S-1-5-21-2896955948-1038809944-383079529-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe  =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-2896955948-1038809944-383079529-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\steam.exe
~ Application:  Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{E733B276-8AE3-49B1-B339-20F46B76EF63}: DhcpNameServer = 189.4.128.61 189.4.128.66
O17 - HKLM\System\CS1\Services\Tcpip\..\{E733B276-8AE3-49B1-B339-20F46B76EF63}: DhcpNameServer = 189.4.128.61 189.4.128.66
O17 - HKLM\System\CS2\Services\Tcpip\..\{E733B276-8AE3-49B1-B339-20F46B76EF63}: DhcpNameServer = 189.4.128.61 189.4.128.66
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 189.4.128.61 189.4.128.66
~ Domain:  Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --
O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (...) --
~ Protocole Additionnel:  Scanned in 00mn 00s



---\\ Valor do Registo AppInit_DLLs e sub-chaves Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon:  Scanned in 00mn 00s
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 12:09

---\\ Tarefas planificadas automaticamente (039)
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\Digital Sites.job   [294]
O39 - APT:Automatic Planified Task  - C:\Windows\Tasks\UpdaterEX.job   [294] =>PUP.Dealply
[MD5.00000000000000000000000000000000] [APT] [DealPly] (...) -- C:\Users\André\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.exe (.not file.)   [0]  =>PUP.DealPly
[MD5.00000000000000000000000000000000] [APT] [Digital Sites] (...) -- C:\Users\André\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [DTReg] (...) -- C:\Users\André\AppData\Roaming\DefaultTab\DefaultTab\DTReg.exe (.not file.)   [0]  =>Adware.Bandoo
[MD5.00000000000000000000000000000000] [APT] [MySearchDial] (...) -- C:\Users\André\AppData\Roaming\MYSEAR~1\UPDATE~1\UPDATE~1.exe (.not file.)   [0]  =>Adware.MyWebSearch
[MD5.00000000000000000000000000000000] [APT] [UpdaterEX] (...) -- C:\Users\André\AppData\Roaming\UPDATE~1\UPDATE~1\UPDATE~1.exe (.not file.)   [0]  =>PUP.Dealply
[MD5.00000000000000000000000000000000] [APT] [{5174866D-E92F-4F0B-BA5E-D3DE06F81CC3}] (...) -- C:\Program Files\TeamSpeak 3 Client\plugins\ts3overlay\InstallHook.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{8E1AEFB0-16BC-428D-88E3-9FDF318D4202}] (...) -- C:\Users\André\Downloads\1138-1176.exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{C0FF195F-7ED4-4699-9A8B-CEF0E010C026}] (...) -- C:\Users\André\Downloads\dxwebsetup(1).exe (.not file.)   [0]
[MD5.00000000000000000000000000000000] [APT] [{FD8D7BFC-2962-4567-A02E-775B08E1D1BA}] (...) -- C:\Users\André\Downloads\1100-1132.exe (.not file.)   [0]
~ Scheduled Task: 27 Legitimates Filtered in 00mn 09s



---\\ Software instalados (042)
O42 - Logiciel: Conquest Online - (.TQ Digital Entertainment Inc..) [HKLM][64Bits] -- {D349FFAA-4DBC-4979-AFA0-A52D318625E1}_is1
O42 - Logiciel: Cross Fire AL - (.Z8Games.com.) [HKLM][64Bits] -- Cross Fire AL_is1
O42 - Logiciel: Cross Fire En - (.Z8Games.com.) [HKLM][64Bits] -- Cross Fire_is1
O42 - Logiciel: Extended Update - (...) [HKCU][64Bits] -- UpdaterEX =>PUP.Dealply
O42 - Logiciel: Gerenciador de Downloads - (.Level Up! Gerenciador.) [HKCU][64Bits] -- 0dd67a782103f089
O42 - Logiciel: IRPF2013 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva  - (.Receita Federal do Brasil.) [HKLM][64Bits] -- IRPF2013
O42 - Logiciel: Iminent - (.Iminent.) [HKLM][64Bits] -- {58BC9E49-2867-4153-A23F-6D62A3572599} =>Adware.IMBooster
O42 - Logiciel: Receitanet - (.Serpro - Serviço Federal de Processamento de Dados.) [HKLM][64Bits] -- ECC16E3C-16D1-4DC2-9D8A-6AC06B3005A5
O42 - Logiciel: Sbllock versão 2.6 - (.Sbllock Ltda..) [HKLM][64Bits] -- {C9745C5D-6644-47ED-B2A7-2B6A4CE61F2B}_is1
O42 - Logiciel: Sbllock versão 3.0.1 - (.Sbllock Ltda.) [HKLM][64Bits] -- {353A706F-84B3-4313-8E96-BB34D5FD168E}_is1
O42 - Logiciel: Vittalia Installer - (.br.FILEWIN.com.) [HKLM][64Bits] -- Vittalia =>Adware.PUP.Vittalia
O42 - Logiciel: Word 2007 Redaction Tool - (.Word 2007 Redaction Tool.) [HKCU][64Bits] -- B80ECE8D351855AA48FD8BF21C22305514544F10
O42 - Logiciel: ZONEPLAY versão 1.0 - (.ZONEPLAY BY ADEBLAND.) [HKLM][64Bits] -- {6935E91D-254E-411E-8477-37812E0A98E1}_is1
O42 - Logiciel: Zone4 Brasil - (...) [HKCU][64Bits] -- Zone4 Brasil
~ Logic: 36 Legitimates Filtered in 00mn 01s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\5d558dd9b16fb943]  =>PUP.Babylon
[HKCU\Software\APN PIP]
[HKCU\Software\BabSolution] =>Hijacker.BabSolution
[HKCU\Software\Baidu Security] =>Adware.BDSearch
[HKCU\Software\Baidu] =>Adware.BDSearch
[HKCU\Software\CleanDoD]
[HKCU\Software\DataMngr] =>PUP.Datamngr
[HKCU\Software\Default Tab] =>Adware.Bandoo
[HKCU\Software\FileScout] =>PUP.FileScout
[HKCU\Software\Iminent] =>Adware.IMBooster
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\Jasiel]
[HKCU\Software\ONGAME]
[HKCU\Software\Pando Networks]
[HKCU\Software\SERPRO]
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKCU\Software\TesSafe]
[HKCU\Software\Tqdigital]
[HKCU\Software\Ztorm]
[HKCU\Software\delta LTD]
[HKCU\Software\mysearchdial] =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Babylon] =>PUP.Babylon
[HKLM\Software\Wow6432Node\Baidu Security] =>Adware.BDSearch
[HKLM\Software\Wow6432Node\Baidu_Drp_pos] =>Adware.BDSearch
[HKLM\Software\Wow6432Node\DataMngr] =>PUP.Datamngr
[HKLM\Software\Wow6432Node\Default Tab] =>Adware.Bandoo
[HKLM\Software\Wow6432Node\Iminent] =>Adware.IMBooster
[HKLM\Software\Wow6432Node\InstallCore] =>Adware.InstallCore
[HKLM\Software\Wow6432Node\PIP]
[HKLM\Software\Wow6432Node\Pando Networks]
[HKLM\Software\Wow6432Node\Tqdigital]
[HKLM\Software\Wow6432Node\Umbrella]
[HKLM\Software\Wow6432Node\Wpm] =>PUP.WpManager
[HKLM\Software\Wow6432Node\supTab] =>PUP.SupTab
[HKLM\Software\Wow6432Node\supWPM] =>PUP.WpManager
~ Key Software: 386 Legitimates Filtered in 00mn 01s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 22/01/2014 - 09:09:31 - [0,131] ----D C:\Program Files (x86)\Baidu Security =>Adware.BDSearch
O43 - CFD: 17/03/2013 - 03:56:56 - [0,029] ----D C:\Program Files (x86)\Conquer Br - Slz 2013
O43 - CFD: 12/03/2013 - 21:05:06 - [7,145] ----D C:\Program Files (x86)\Conquerglobal
O43 - CFD: 31/05/2013 - 21:03:04 - [-2038,488] ----D C:\Program Files (x86)\GlobalGames
O43 - CFD: 12/03/2013 - 20:47:27 - [0] ----D C:\Program Files (x86)\Hoplon
O43 - CFD: 08/09/2013 - 21:18:20 - [0] ----D C:\Program Files (x86)\Level Up Games
O43 - CFD: 28/10/2012 - 13:29:58 - [0] ----D C:\Program Files (x86)\NetDragon
O43 - CFD: 20/12/2013 - 23:24:32 - [-1887,007] ----D C:\Program Files (x86)\ONGAME
O43 - CFD: 16/05/2013 - 20:10:05 - [7,182] ----D C:\Program Files (x86)\Pando Networks
O43 - CFD: 24/04/2013 - 14:04:08 - [8,843] ----D C:\Program Files (x86)\Programas RFB
O43 - CFD: 18/11/2012 - 21:41:53 - [0,071] ----D C:\Program Files (x86)\Vittalia =>Adware.PUP.Vittalia
O43 - CFD: 21/09/2013 - 21:31:34 - [1769,009] ----D C:\Program Files (x86)\ZONEPLAY
O43 - CFD: 04/09/2013 - 19:53:20 - [0] ----D C:\ProgramData\APN
O43 - CFD: 23/10/2012 - 19:27:58 - [0] ----D C:\ProgramData\Babylon =>PUP.Babylon
O43 - CFD: 22/01/2014 - 09:15:18 - [52,339] ----D C:\ProgramData\Baidu Security =>Adware.BDSearch
O43 - CFD: 01/02/2014 - 21:16:03 - [0] ----D C:\ProgramData\IePluginService =>Trojan.Trojan.SProtector
O43 - CFD: 22/12/2012 - 20:34:30 - [0,093] ----D C:\ProgramData\Iminent =>Adware.IMBooster
O43 - CFD: 09/01/2014 - 18:00:55 - [2,506] ----D C:\ProgramData\InstallMate =>PUP.Tarma
O43 - CFD: 27/10/2012 - 22:04:44 - [0] ----D C:\ProgramData\levelup downloader
O43 - CFD: 12/04/2012 - 03:35:51 - [44,625] ----D C:\ProgramData\{95164853-C885-4648-BEAA-E04328156EF0}
O43 - CFD: 25/01/2014 - 10:23:06 - [0] ----D C:\Users\André\AppData\Roaming\360safe
O43 - CFD: 23/10/2012 - 19:29:02 - [0,037] ----D C:\Users\André\AppData\Roaming\Babylon =>PUP.Babylon
O43 - CFD: 23/12/2012 - 00:53:00 - [0] ----D C:\Users\André\AppData\Roaming\baidu =>Adware.BDSearch
O43 - CFD: 22/01/2014 - 09:15:32 - [2,821] ----D C:\Users\André\AppData\Roaming\Baidu Security =>Adware.BDSearch
O43 - CFD: 02/10/2013 - 23:18:53 - [0,308] ----D C:\Users\André\AppData\Roaming\File Scout =>PUP.FileScout
O43 - CFD: 22/01/2014 - 09:09:59 - [0,073] ----D C:\Users\André\AppData\Roaming\mysearchdial =>Adware.MyWebSearch
O43 - CFD: 15/01/2014 - 19:39:38 - [5,605] ----D C:\Users\André\AppData\Roaming\rmi
O43 - CFD: 21/07/2013 - 13:44:37 - [7,069] ----D C:\Users\André\AppData\Roaming\Tencent =>Adware.TencentAddressBar
O43 - CFD: 30/10/2013 - 15:22:58 - [0] ----D C:\Users\André\AppData\Roaming\UpdaterEX =>PUP.Dealply
O43 - CFD: 27/10/2012 - 22:04:44 - [0,002] ----D C:\Users\André\AppData\Local\Level Up!
O43 - CFD: 01/06/2013 - 10:14:36 - [0] ----D C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Level Up! Gerenciador
O43 - CFD: 22/10/2012 - 20:17:56 - [0,003] ----D C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nuuvem
O43 - CFD: 24/04/2013 - 14:03:07 - [0,004] ----D C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2013
O43 - CFD: 02/02/2014 - 15:17:18 - [0,003] ----D C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter
O43 - CFD: 21/12/2013 - 11:46:44 - [0,003] ----D C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zone4 Brasil
~ Program Folder: 248 Legitimates Filtered in 01mn 58s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 01/02/2014 - 19:45:58 ---A- . (...) -- C:\END   [0]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 01/02/2014 - 22:43:41 ---A- . (...) -- C:\autoexec.bat   [0]
O44 - LFC:[MD5.A802F1D69EA9F5589F004FECA2A7AD17] - 03/02/2014 - 12:52:55 ----- . (...) -- C:\spyhunter.log   [68677]  =>Crapware.SpyHunter
O44 - LFC:[MD5.393721D487AB840361096323B8A87D9A] - 03/02/2014 - 14:54:17 ---A- . (...) -- C:\sh4_service.log   [2693071]
~ Files: 9 Legitimates Filtered in 01mn 10s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 20 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 6 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:[MD5.CF54BC5630C200393369DDD1A5B63261] - 18/01/2014 - 23:59:20 R--A- . (.360.cn - 360杀毒 文件监控驱动.) -- C:\Windows\System32\Drivers\360AvFlt.sys   [71360]
O58 - SDL:[MD5.F338F29E06D24AC1C162131C1C908FB5] - 23/11/2012 - 13:46:30 R--A- . (.360.cn - 360HipsOEM.) -- C:\Windows\System32\Drivers\360FltOEM.sys   [288688]
O58 - SDL:[MD5.A398ED024F739E7BE74ECFFA8A713A89] - 27/04/2010 - 13:43:50 ---A- . (...) -- C:\Windows\System32\Drivers\cpqdfw.sys   [24376]
O58 - SDL:[MD5.10FB0FF62AF6262BF88E3607E2AE2A69] - 27/04/2010 - 13:43:50 ---A- . (...) -- C:\Windows\System32\Drivers\cqcpu.sys   [24376]
O58 - SDL:[MD5.6E42F2E5B5BDE3FE4066C9B2D6091E17] - 22/01/2014 - 08:20:39 ---A- . (.360安全中心 - 360Efimon Driver.) -- C:\Windows\System32\Drivers\efimon.sys   [23624]
O58 - SDL:[MD5.0E5DA5369A0FCAEA12456DD852545184] - 13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys   [530496]
O58 - SDL:[MD5.7315593DAE6C00E378B3A812640AE44E] - 01/09/2005 - 21:40:26 ---A- . (...) -- C:\Windows\System32\Drivers\FBIKB_NT.Sys   [4352]
O58 - SDL:[MD5.F2523EF6460FC42405B12248338AB2F0] - 10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys   [31232]
O58 - SDL:[MD5.CAA8BC6737DFA3BF1A50175CFB226788] - 19/06/2010 - 00:36:04 ---A- . (.Siliten - Flex Define Keyboard Driver.) -- C:\Windows\System32\Drivers\InputFilter_FlexDef2b.sys   [17920]
O58 - SDL:[MD5.0BEE791C7C7ACE453C134E73633C497D] - 12/04/2012 - 02:48:38 ---A- . (...) -- C:\Windows\System32\Drivers\pmxdrv.sys   [31152]
O58 - SDL:[MD5.F3817967ED533D08327DC73BC4D5542A] - 13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise  SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys   [24656]
O58 - SDL:[MD5.DCC8845692DEA3477BCF6CE9D06C711F] - 10/06/2011 - 07:35:04 ---A- . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\Drivers\stwrt64.sys   [528384]
O58 - SDL:[MD5.3151D9E8B0CB8FFDFF63E2266F907A66] - 31/07/2013 - 17:24:50 ---A- . (.TENCENT - TesSafe64 NT Driver.) -- C:\Windows\System32\TesSafe.sys   [159160]  =>Adware.TencentAddressBar
~ Drivers: 20 Legitimates Filtered in 00mn 47s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1  =>.Nicolas Coolman
~ ADS:  Scanned in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) --  C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.Awesomehp
~ Keys:  Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {2fa28606-de77-4029-af96-b231e3b8f827} - (Ask.com) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {92001F8A-C36B-473A-91E7-5BE0C81CF2B3} - (PSafe ClikSeguro) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Yahoo) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {d43b3890-80c7-4010-a95d-1e77b5924dc3} - (Wikipedia) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Keys:  Scanned in 00mn 00s



---\\ Lista das exceções do FireWall (FirewallRules) (O87)
O87 - FAEL: "{B5C8FFC3-2622-4C99-949C-2A85B9289566}" | In - Public - P6 - TRUE | .(.G4box Inc. - crossfirePT_launcher.) -- C:\Program Files (x86)\Z8Games\CrossFire\CF_G4box.exe
O87 - FAEL: "{7961910F-B38F-418F-BB66-A176EA0AF94C}" | In - Public - P17 - TRUE | .(.G4box Inc. - crossfirePT_launcher.) -- C:\Program Files (x86)\Z8Games\CrossFire\CF_G4box.exe
O87 - FAEL: "{EF7B05DE-2B5C-4862-AA6D-7DFC254B4482}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{11843E74-E70D-4A7B-85E1-33ACD7669A7B}" |In - None - P17 - TRUE | .(...) -- C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (.not file.) =>Adware.IMBooster
O87 - FAEL: "{752F4388-B165-4491-B1CF-C109460D30BE}" | In - Public - P6 - TRUE | .(.Tencent - Tencent TenioDL for Game.) -- c:\users\andré\appdata\roaming\tencent\assault fire\849bbfb7a4339c592952d35cdfb52b55\teniodl\teniodl.exe =>Adware.TencentAddressBar
O87 - FAEL: "{94FBB808-5B2A-4F28-A955-64958F492E0E}" | In - Public - P17 - TRUE | .(.Tencent - Tencent TenioDL for Game.) -- c:\users\andré\appdata\roaming\tencent\assault fire\849bbfb7a4339c592952d35cdfb52b55\teniodl\teniodl.exe =>Adware.TencentAddressBar
O87 - FAEL: "TCP Query User{3F587BFA-1584-426A-A016-4F355CC501A4}C:\sbllock\sbllock.exe" | In - Public - P6 - TRUE | .(.No owner - Sbllock Main Module.) -- C:\sbllock\sbllock.exe
O87 - FAEL: "UDP Query User{69E48E87-70E6-46A3-8DAE-3E219C2F5226}C:\sbllock\sbllock.exe" | In - Public - P17 - TRUE | .(.No owner - Sbllock Main Module.) -- C:\sbllock\sbllock.exe
O87 - FAEL: "TCP Query User{2D4E17BF-B32A-4987-B0BE-D7DD5109AE23}C:\program files (x86)\ongame\zone4\zone4_bra.exe" | In - Private - P6 - TRUE | .(.Infovine - Zone4.) -- C:\program files (x86)\ongame\zone4\zone4_bra.exe
O87 - FAEL: "UDP Query User{436D7693-179C-4009-B278-A5626EEE4734}C:\program files (x86)\ongame\zone4\zone4_bra.exe" | In - Private - P17 - TRUE | .(.Infovine - Zone4.) -- C:\program files (x86)\ongame\zone4\zone4_bra.exe
~ Firewall: 294 Legitimates Filtered in 00mn 04s



---\\ Listagem dos códigos dos software (PUC) (090)
O90 - PUC: "94E9CB85768235142AF3D6263A755299" . (.Iminent.) -- C:\Windows\Installer\{58BC9E49-2867-4153-A23F-6D62A3572599}\imbooster.ico =>Adware.IMBooster
~ Update Products: 95 Legitimates Filtered in 00mn 00s



---\\ Exportar as chaves do registo aleatórias (091)
[HKCU\Software\5d558dd9b16fb943\history\{16cdff19-861d-48e3-a751-d99a27784753}2.3.796.11]:guid="{16cdff19-861d-48e3-a751-d99a27784753}" =>PUP.Babylon
[HKCU\Software\5d558dd9b16fb943\history\{16cdff19-861d-48e3-a751-d99a27784753}2.3.796.11]:version="2.3.796.11" =>PUP.Babylon
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.5.911.18]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.5.911.18]:version="2.5.911.18" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1095.52]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1095.52]:version="2.6.1095.52" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1125.80]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1125.80]:version="2.6.1125.80" =>Hijacker.Hijacker.Eazel
[HKCU\Software\5d558dd9b16fb943] =>PUP.Babylon^
~ Export Key Software:  Scanned in 00mn 00s



---\\ Listagem dos dados da chave NameSpace (MNS) (O92)
O92 - MNS:  - {35B6525E-071A-4EA9-B3BD-F6A742572F08}
~ MNS: 1 Legitimates Filtered in 00mn 00s



---\\ Pesquisa dos pacotes WindowsInstaller (WIS) (O93) (NTFS)
[MD5.2CBC11B45420352BC3DBF51321C798C8] [WIS][22/12/2012] (.Iminent - Iminent.) -- C:\Windows\Installer\175cc25.msi   [10715136]  =>Adware.IMBooster
[MD5.A3AEEC9A9B6984F2E22B90FDC9A23AB8] [WIS][29/11/2013] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\25ded.msi   [24993792]
[MD5.F8733C3B5D6F5516758F0E10C421617E] [WIS][12/04/2012] (.HP Remote Solution - HP Remote Solution Installation.) -- C:\Windows\Installer\26b1a.msi   [267776]
~ WIS: 95 Legitimates Filtered in 00mn 19s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 04/02/2014 257928 |  (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Auto 25/02/2011 241648 |  (CLKMSVC10_38F51D56) . (.CyberLink.) - c:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
SS - | Auto 04/09/2013 116648 |  (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 04/09/2013 116648 |  (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 28/03/2011 799800 |  (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
SS - | Demand 06/02/2014 118896 |  (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 30/01/2014 98560 |  (OverwolfUpdaterService) . (.Overwolf LTD.) - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
SS - | Auto 05/09/2013 171680 |  (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 27/01/2014 571816 |  (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SS - | Demand 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 03/03/2009 89600 |  (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\IDT\WDM\AESTSr64.exe
SR - | Auto 19/12/2013 440376 |  (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 27/11/2013 440376 |  (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 10/07/1658 0 |  (ezSharedSvc) . (.EasyBits Software AS.) - C:\Windows\System32\ezSharedSvcHost.exe  =>.EasyBits Software AS
SR - | Auto 09/06/2011 264008 |  (FPLService) . (.HP.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
SR - | Auto 04/02/2014 2222416 |  (Hamachi2Svc) . (.LogMeIn Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
SR - | Auto 09/06/2011 85560 |  (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe  =>.Hewlett-Packard Co
SR - | Auto 11/10/2010 346168 |  (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
SR - | Auto 28/03/2011 94264 |  (HPDrvMntSvc.exe) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
SR - | Auto 24/02/2011 212944 |  (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
SR - | Auto 04/02/2014 377616 |  (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
SR - | Auto 01/02/2011 326168 |  (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 05/05/2011 1128952 |  (pdfcDispatcher) . (.PDF Complete Inc.) - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
SR - | Auto 10/07/1658 0 |  (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe
SR - | Auto 18/05/2010 327064 |  (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC..) - C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe =>Crapware.SpyHunter
SR - | Auto 10/06/2011 302592 |  (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\STacSV64.exe
SR - | Auto 01/02/2011 2656280 |  (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Auto 10/07/1658 0 |  (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe  =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

~ Services:  Scanned in 00mn 25s



---\\ Scâner Aditional (088)
Database Version : 13030 - (06/02/2014)
Clés trouvées (Keys found) : 289
Valeurs trouvées (Values found) : 1
Dossiers trouvés  (Folders found) : 15
Fichiers trouvés  (Files found) : 23

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPly]   =>PUP.DealPly^
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTReg]   =>Adware.Bandoo^
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MySearchDial]   =>Adware.MyWebSearch^
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UpdaterEX]   =>PUP.Dealply^
[HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX]   =>PUP.Dealply^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{58BC9E49-2867-4153-A23F-6D62A3572599}]   =>Adware.IMBooster^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vittalia]   =>Adware.PUP.Vittalia^
[HKLM\Software\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}]   =>Adware.IMBooster
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}]   =>PUP.RewardsArcade
[HKCU\Software\delta LTD]   =>Toolbar.DeltaSearch
[HKLM\Software\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}]   =>PUP.RewardsArcade
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}]   =>PUP.Babylon
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}]   =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}]   =>PUP.RewardsArcade
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}]   =>PUP.V9Software
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}]   =>PUP.V9Software
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}]   =>PUP.V9Software
[HKLM\Software\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}]   =>PUP.RewardsArcade
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F6AFBF1-E065-4627-A2FD-810366367D01}]   =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F6AFBF1-E065-4627-A2FD-810366367D01}]   =>Toolbar.Agent
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}]   =>Toolbar.Agent
[HKLM\Software\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}]   =>PUP.RewardsArcade
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]   =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}]   =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}]   =>Adware.IMBooster
[HKLM\Software\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}]   =>PUP.Babylon
[HKLM\Software\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}]   =>PUP.RewardsArcade
[HKLM\Software\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}]   =>PUP.RewardsArcade
[HKLM\Software\Classes\AppID\escort.dll]   =>PUP.Babylon
[HKLM\Software\Classes\AppID\escortapp.dll]   =>PUP.Babylon
[HKLM\Software\Classes\AppID\escorteng.dll]   =>PUP.Babylon
[HKLM\Software\Classes\AppID\esrv.EXE]   =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS]   =>Toolbar.Bing
[HKLM\Software\Wow6432Node\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl]   =>Adware.IMBooster
[HKLM\SYSTEM\CurrentControlSet\Services\SpyHunter 4 Service]   =>Crapware.SpyHunter
[HKCU\Software\APN PIP]   =>Toolbar.Ask
[HKCU\Software\DataMngr]   =>Adware.Bandoo
[HKLM\Software\Wow6432Node\DataMngr]   =>Adware.Bandoo
[HKCU\Software\default tab]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\default tab]   =>Adware.IMBooster
[HKCU\Software\AppDataLow\Software\defaulttab]   =>Adware.IMBooster
[HKCU\Software\Iminent]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Iminent]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\PIP]   =>Toolbar.Ask
[HKCU\Software\Softonic]   =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\Microsoft\Tracing\Iminent_RASAPI32]   =>Adware.Bandoo
[HKLM\Software\Wow6432Node\Microsoft\Tracing\Iminent_RASMANCS]   =>Adware.Bandoo
[HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASAPI32]   =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASMANCS]   =>PUP.Babylon
[HKLM\Software\Classes\Prod.cap]   =>PUP.Babylon
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32]   =>Toolbar.Bing
[HKCU\Software\InstallCore]   =>Adware.InstallCore
[HKLM\Software\Wow6432Node\InstallCore]   =>Adware.InstallCore
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375]   =>PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5]   =>PUP.Tarma
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OpenCandyHelperRunOnce]   =>Adware.OpenCandy
[HKCU\Software\AppDataLow\Software\Crossrider]   =>PUP.CrossRider
[HKCU\Software\AppDataLow\Software\findlyrics]   =>Adware.AddLyrics
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A]   =>Adware.IMBooster
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3004627E-F8E9-4E8B-909D-316753CBA923}]   =>Adware.MyWebSearch
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3004627E-F8E9-4E8B-909D-316753CBA923}]   =>Adware.MyWebSearch
[HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}]   =>Toolbar.Yahoo
[HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}]   =>Toolbar.Yahoo
[HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}]   =>Toolbar.Yahoo
[HKLM\Software\Classes\Interface\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}]   =>PUP.Babylon
[HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}]   =>PUP.OptimizerPro
[HKLM\Software\Wow6432Node\{1146AC44-2F03-4431-B4FD-889BC837521F}]   =>PUP.OptimizerPro
[HKLM\Software\Classes\iminent]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.DownloadArgs]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.RawDataArgs]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.TinyUrlArgs]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Business.Tinyfying.ViralLinkArgs]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ClientCallback]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ContractBase]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ServerCommand]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.Communication.ServerResult]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.LightContent]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.LightUri]   =>Adware.IMBooster
[HKLM\Software\Classes\Iminent.Mediator.MediatorServiceProxy]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ActiveContentHandle.1]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ActiveContentHandler]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.BrowserHelperObject]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.BrowserHelperObject.1]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ScriptExtender]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.ScriptExtender.1]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.TinyUrlHandler]   =>Adware.IMBooster
[HKLM\Software\Classes\IminentWebBooster.TinyUrlHandler.1]   =>Adware.IMBooster
[HKLM\Software\Classes\esrv.mysearchdialESrvc]   =>Adware.MyWebSearch
[HKLM\Software\Classes\esrv.mysearchdialESrvc.1]   =>Adware.MyWebSearch
[HKLM\Software\Classes\mysearchdial.mysearchdialappCore]   =>Adware.MyWebSearch
[HKLM\Software\Classes\mysearchdial.mysearchdialappCore.1]   =>Adware.MyWebSearch
[HKLM\Software\Classes\mysearchdial.mysearchdialdskBnd]   =>Adware.MyWebSearch
[HKLM\Software\Classes\mysearchdial.mysearchdialdskBnd.1]   =>Adware.MyWebSearch
[HKLM\Software\Classes\mysearchdial.mysearchdialHlpr]   =>Adware.MyWebSearch
[HKLM\Software\Classes\mysearchdial.mysearchdialHlpr.1]   =>Adware.MyWebSearch
[HKLM\Software\Classes\AppID\escorTlbr.DLL]   =>PUP.Funmoods
[HKLM\Software\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\iminent]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Business.Tinyfying.DownloadArgs]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Business.Tinyfying.RawDataArgs]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Business.Tinyfying.TinyUrlArgs]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Business.Tinyfying.ViralLinkArgs]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.ClientCallback]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.ContractBase]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.ServerCommand]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.Communication.ServerResult]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.LightContent]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.LightUri]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\Iminent.Mediator.MediatorServiceProxy]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.ActiveContentHandle.1]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.ActiveContentHandler]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.BrowserHelperObject]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.BrowserHelperObject.1]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.ScriptExtender]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.ScriptExtender.1]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.TinyUrlHandler]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\IminentWebBooster.TinyUrlHandler.1]   =>Adware.IMBooster
[HKLM\Software\Wow6432Node\Classes\esrv.mysearchdialESrvc]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\esrv.mysearchdialESrvc.1]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\mysearchdial.mysearchdialappCore]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\mysearchdial.mysearchdialappCore.1]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\mysearchdial.mysearchdialdskBnd]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\mysearchdial.mysearchdialdskBnd.1]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\mysearchdial.mysearchdialHlpr]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\mysearchdial.mysearchdialHlpr.1]   =>Adware.MyWebSearch
[HKLM\Software\Wow6432Node\Classes\AppID\escort.DLL]   =>PUP.Funmoods
[HKLM\Software\Wow6432Node\Classes\AppID\escortApp.DLL]   =>PUP.Funmoods
[HKLM\Software\Wow6432Node\Classes\AppID\escortEng.DLL]   =>PUP.Funmoods
[HKLM\Software\Wow6432Node\Classes\AppID\escorTlbr.DLL]   =>PUP.Funmoods
[HKLM\Software\Wow6432Node\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL]   =>Adware.IMBooster
C:\Program Files (x86)\Baidu Security   =>Adware.BDSearch^
C:\Program Files (x86)\Vittalia   =>Adware.PUP.Vittalia^
C:\ProgramData\Babylon   =>PUP.Babylon^
C:\ProgramData\Baidu Security   =>Adware.BDSearch^
C:\ProgramData\IePluginService   =>Trojan.Trojan.SProtector^
C:\ProgramData\Iminent   =>Adware.IMBooster^
C:\ProgramData\InstallMate   =>PUP.Tarma^
C:\Users\André\AppData\Roaming\Babylon   =>PUP.Babylon^
C:\Users\André\AppData\Roaming\baidu   =>Adware.BDSearch^
C:\Users\André\AppData\Roaming\Baidu Security   =>Adware.BDSearch^
C:\Users\André\AppData\Roaming\File Scout   =>PUP.FileScout^
C:\Users\André\AppData\Roaming\mysearchdial   =>Adware.MyWebSearch^
C:\Users\André\AppData\Roaming\Tencent   =>Adware.TencentAddressBar^
C:\Users\André\AppData\Roaming\UpdaterEX   =>PUP.Dealply^
C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter   =>Crapware.SpyHunter^
C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe   =>Crapware.SpyHunter^
C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe   =>Crapware.SpyHunter^
C:\Windows\Tasks\UpdaterEX.job   =>PUP.Dealply^
[HKCU\Software\BabSolution]   =>Hijacker.BabSolution^
[HKCU\Software\Baidu Security]   =>Adware.BDSearch^
[HKCU\Software\Baidu]   =>Adware.BDSearch^
[HKCU\Software\Default Tab]   =>Adware.Bandoo^
[HKCU\Software\FileScout]   =>PUP.FileScout^
[HKCU\Software\mysearchdial]   =>Adware.MyWebSearch^
[HKLM\Software\Wow6432Node\Babylon]   =>PUP.Babylon^
[HKLM\Software\Wow6432Node\Baidu Security]   =>Adware.BDSearch^
[HKLM\Software\Wow6432Node\Baidu_Drp_pos]   =>Adware.BDSearch^
[HKLM\Software\Wow6432Node\Default Tab]   =>Adware.Bandoo^
[HKLM\Software\Wow6432Node\Wpm]   =>PUP.WpManager^
[HKLM\Software\Wow6432Node\supTab]   =>PUP.SupTab^
[HKLM\Software\Wow6432Node\supWPM]   =>PUP.WpManager^
[HKCU\Software\5d558dd9b16fb943\history\{16cdff19-861d-48e3-a751-d99a27784753}2.3.796.11]:guid="{16cdff19-861d-48e3-a751-d99a27784753}"   =>PUP.Babylon^
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.5.911.18]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}"   =>Hijacker.Hijacker.Eazel^
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1095.52]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}"   =>Hijacker.Hijacker.Eazel^
[HKCU\Software\5d558dd9b16fb943\history\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}2.6.1125.80]:guid="{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}"   =>Hijacker.Hijacker.Eazel^
[HKCU\Software\5d558dd9b16fb943]   =>PUP.Babylon^^
C:\Windows\Installer\175cc25.msi   =>Adware.IMBooster^
C:\Users\André\Desktop\SpyHunter.lnk   =>Crapware.SpyHunter
~ Additionnel Scan: 478978 Items scanned in 01mn 49s



---\\ Sumário das deteções encontradas na sua estação
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Crapware.SpyHunter
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.Awesomehp
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Adware.MyWebSearch
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.DealPly
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.Bandoo
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.IMBooster
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.Vittalia
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>PUP.Babylon
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Hijacker.BabSolution
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.BDSearch
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.Datamngr
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.FileScout
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Adware.InstallCore
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Toolbar.Conduit
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.WpManager
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.SupTab
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Trojan.SProtector
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.Tarma
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Adware.TencentAddressBar
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Hijacker.Eazel
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]    =>PUP.RewardsArcade
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Toolbar.DeltaSearch
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.V9Software
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Toolbar.Ask
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>Adware.OpenCandy
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.CrossRider
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]  =>Adware.AddLyrics
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.OptimizerPro
~ [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]   =>PUP.Funmoods
~ MSI: 29 link(s) detected in 01mn 50s



~ 1331 Legitimates filtered by white list
End of the scan (924 lines in 07mn 16s)(0)
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 12:12

Segue relatorio André para retirar awesomehp. Mandei em 2 partes e agora anexado.
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 12:15

segue arquivo anexado
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 12:29

Estou analisando o relatório e daqui há pouco te passo o script para remover os problemas.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 12:31

Obrigado, valeu.
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 13:28

(RESOLVIDO) Ajuda para eliminar o Awesomehp 772309  Copie todo o script que te passei, começando a copiar em script zhpfix até SysRestore.

Quando tiver copiado todo o texto deste arquivo, Vá no menu: Iniciar > Todos os programas > ZHP > Abra o Zhpfix > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas. Copie este relatório e poste em sua próxima resposta.


Última edição por Power Max em Sáb 08 Fev 2014, 14:39, editado 1 vez(es)
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 13:53

Segue lista de relatório
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 13:55

Rapport de ZHPFix 2014.2.3.1 par Nicolas Coolman, Update du 03/02/2014
Fichier d'export Registre :
Run by André at 08/02/2014 13:48:38
High Elevated Privileges : OK
Windows 7 Home Premium Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 03s)
Reparação de atalhos do navegador

========== Softwares ==========
ELIMINÉ: Vittalia Installer

========== Chaves do Registo ==========
ELIMINÉ: HKCU\Software\5d558dd9b16fb943
ELIMINÉ: HKCU\Software\APN PIP
ELIMINÉ: HKCU\Software\BabSolution
ELIMINÉ: HKCU\Software\Baidu Security
ELIMINÉ: HKCU\Software\Baidu
ELIMINÉ:* HKCU\Software\DataMngr
ELIMINÉ: HKCU\Software\Default Tab
ELIMINÉ: HKCU\Software\FileScout
ELIMINÉ: HKCU\Software\Iminent
ELIMINÉ: HKCU\Software\InstallCore
ELIMINÉ: HKCU\Software\Softonic
ELIMINÉ: HKCU\Software\TesSafe
ELIMINÉ: HKCU\Software\delta LTD
ELIMINÉ: HKCU\Software\mysearchdial
ELIMINÉ: HKLM\Software\Wow6432Node\Babylon
ELIMINÉ:³ HKLM\Software\Wow6432Node\Baidu Security
ELIMINÉ: HKLM\Software\Wow6432Node\Baidu_Drp_pos
ELIMINÉ:* HKLM\Software\Wow6432Node\DataMngr
ELIMINÉ: HKLM\Software\Wow6432Node\Default Tab
ELIMINÉ: HKLM\Software\Wow6432Node\Iminent
ELIMINÉ: HKLM\Software\Wow6432Node\InstallCore
ELIMINÉ: HKLM\Software\Wow6432Node\PIP
ELIMINÉ: HKLM\Software\Wow6432Node\Umbrella
ELIMINÉ: HKLM\Software\Wow6432Node\Wpm
ELIMINÉ: HKLM\Software\Wow6432Node\supTab
ELIMINÉ: HKLM\Software\Wow6432Node\supWPM
ELIMINÉ: SearchScopes :{2fa28606-de77-4029-af96-b231e3b8f827}
ELIMINÉ: SearchScopes :{92001F8A-C36B-473A-91E7-5BE0C81CF2B3}
ELIMINÉ: [HKLM\Software\Classes\Installer\Products\\94E9CB85768235142AF3D6263A755299]
ELIMINÉ: [HKLM\Software\Classes\Installer\Features\94E9CB85768235142AF3D6263A755299]
ELIMINÉ:* CLSID NameSpace: {35B6525E-071A-4EA9-B3BD-F6A742572F08}
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX
ELIMINÉ:* HKLM\Software\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
ELIMINÉ:* HKLM\Software\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
ELIMINÉ:* HKLM\Software\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
ELIMINÉ:* HKLM\Software\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
ELIMINÉ: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ecdf796-c2dc-4d79-a620-cce0c0a66cc9}
ELIMINÉ:* HKLM\Software\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
ELIMINÉ:* HKLM\Software\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
ELIMINÉ:* HKLM\Software\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
ELIMINÉ:* HKLM\Software\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
ELIMINÉ:* HKLM\Software\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
ELIMINÉ:* HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827}
ELIMINÉ:* HKLM\Software\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
ELIMINÉ: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
ELIMINÉ:* HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
ELIMINÉ:* HKLM\Software\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
ELIMINÉ:* HKLM\Software\Classes\Interface\{44C3C1DB-2127-433C-98EC-4C9412B5FC3A}
ELIMINÉ:* HKLM\Software\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
ELIMINÉ:* HKLM\Software\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
ELIMINÉ:* HKLM\Software\Classes\Interface\{4D5132DD-BB2B-4249-B5E0-D145A8C982E1}
ELIMINÉ:* HKLM\Software\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
ELIMINÉ:* HKLM\Software\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
ELIMINÉ:* HKLM\Software\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
ELIMINÉ:* HKLM\Software\Classes\Interface\{706D4A4B-184A-4434-B331-296B07493D2D}
ELIMINÉ:* HKLM\Software\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
ELIMINÉ:* HKLM\Software\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
ELIMINÉ:* HKLM\Software\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7F6AFBF1-E065-4627-A2FD-810366367D01}
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7F6AFBF1-E065-4627-A2FD-810366367D01}
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7F6AFBF1-E065-4627-A2FD-810366367D01}
ELIMINÉ:* HKLM\Software\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
ELIMINÉ:* HKLM\Software\Classes\Interface\{8BE10F21-185F-4CA0-B789-9921674C3993}
ELIMINÉ:* HKLM\Software\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
ELIMINÉ:* HKLM\Software\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
ELIMINÉ:* HKLM\Software\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
ELIMINÉ:* HKLM\Software\Classes\Interface\{94C0B25D-3359-4B10-B227-F96A77DB773F}
ELIMINÉ:* HKLM\Software\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
ELIMINÉ:* HKLM\Software\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
ELIMINÉ:* HKLM\Software\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
ELIMINÉ:* HKLM\Software\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
ELIMINÉ:* HKLM\Software\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
ELIMINÉ:* HKLM\Software\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
ELIMINÉ:* HKLM\Software\Classes\Interface\{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599}
ELIMINÉ:* HKLM\Software\Classes\Interface\{B173667F-8395-4317-8DD6-45AD1FE00047}
ELIMINÉ:* HKLM\Software\Classes\Interface\{B32672B3-F656-46E0-B584-FE61C0BB6037}
ELIMINÉ:* HKLM\Software\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
ELIMINÉ:* HKLM\Software\Classes\Interface\{C2434722-5C85-4CA0-BA69-1B67E7AB3D68}
ELIMINÉ:* HKLM\Software\Classes\Interface\{C2996524-2187-441F-A398-CD6CB6B3D020}
ELIMINÉ:* HKLM\Software\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
ELIMINÉ:* HKLM\Software\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
ELIMINÉ:* HKLM\Software\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
ELIMINÉ:* HKLM\Software\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
ELIMINÉ:* HKLM\Software\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
ELIMINÉ:* HKLM\Software\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
ELIMINÉ:* HKLM\Software\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
ELIMINÉ:* HKLM\Software\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
ELIMINÉ:* HKLM\Software\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
ELIMINÉ:* HKLM\Software\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
ELIMINÉ:* HKLM\Software\Classes\Interface\{E047E227-5342-4D94-80F7-CFB154BF55BD}
ELIMINÉ:* HKLM\Software\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
ELIMINÉ:* HKLM\Software\Classes\Interface\{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E}
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}
ELIMINÉ:* HKLM\Software\Classes\Interface\{E77EEF95-3E83-4BB8-9C0D-4A5163774997}
ELIMINÉ:* HKLM\Software\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
ELIMINÉ:* HKLM\Software\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
ELIMINÉ:* HKLM\Software\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
ELIMINÉ:* HKLM\Software\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
ELIMINÉ:* HKLM\Software\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
ELIMINÉ: HKLM\Software\Classes\AppID\escort.dll
ELIMINÉ: HKLM\Software\Classes\AppID\escortapp.dll
ELIMINÉ: HKLM\Software\Classes\AppID\escorteng.dll
ELIMINÉ: HKLM\Software\Classes\AppID\esrv.EXE
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASMANCS
ELIMINÉ: HKLM\Software\Wow6432Node\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
ELIMINÉ: HKCU\Software\AppDataLow\Software\defaulttab
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Tracing\Iminent_RASAPI32
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Tracing\Iminent_RASMANCS
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASAPI32
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Tracing\MyBabylontb_RASMANCS
ELIMINÉ: HKLM\Software\Classes\Prod.cap
ELIMINÉ: HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
ELIMINÉ:* HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OpenCandyHelperRunOnce
ELIMINÉ: HKCU\Software\AppDataLow\Software\Crossrider
ELIMINÉ: HKCU\Software\AppDataLow\Software\findlyrics
ELIMINÉ:* HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3004627E-F8E9-4E8B-909D-316753CBA923}
ELIMINÉ: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3004627E-F8E9-4E8B-909D-316753CBA923}
ELIMINÉ: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
ELIMINÉ:* HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
ELIMINÉ:* HKLM\Software\Classes\Interface\{FD8F79A0-D2E2-4FA2-AEAF-393EAC8064F7}
ELIMINÉ: HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
ELIMINÉ: HKLM\Software\Wow6432Node\{1146AC44-2F03-4431-B4FD-889BC837521F}
ELIMINÉ: HKLM\Software\Classes\iminent
ELIMINÉ: HKLM\Software\Classes\Iminent.Business.Tinyfying.DownloadArgs
ELIMINÉ: HKLM\Software\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
ELIMINÉ: HKLM\Software\Classes\Iminent.Business.Tinyfying.RawDataArgs
ELIMINÉ: HKLM\Software\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
ELIMINÉ: HKLM\Software\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.ClientCallback
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.ContractBase
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.ServerCommand
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.Communication.ServerResult
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.LightContent
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.LightUri
ELIMINÉ: HKLM\Software\Classes\Iminent.Mediator.MediatorServiceProxy
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.ActiveContentHandle.1
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.ActiveContentHandler
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.BrowserHelperObject
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.BrowserHelperObject.1
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.ScriptExtender
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.ScriptExtender.1
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.TinyUrlHandler
ELIMINÉ: HKLM\Software\Classes\IminentWebBooster.TinyUrlHandler.1
ELIMINÉ: HKLM\Software\Classes\esrv.mysearchdialESrvc
ELIMINÉ: HKLM\Software\Classes\esrv.mysearchdialESrvc.1
ELIMINÉ: HKLM\Software\Classes\mysearchdial.mysearchdialappCore
ELIMINÉ: HKLM\Software\Classes\mysearchdial.mysearchdialappCore.1
ELIMINÉ: HKLM\Software\Classes\mysearchdial.mysearchdialdskBnd
ELIMINÉ: HKLM\Software\Classes\mysearchdial.mysearchdialdskBnd.1
ELIMINÉ: HKLM\Software\Classes\mysearchdial.mysearchdialHlpr
ELIMINÉ: HKLM\Software\Classes\mysearchdial.mysearchdialHlpr.1
ELIMINÉ: HKLM\Software\Classes\AppID\escorTlbr.DLL
ELIMINÉ: HKLM\Software\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 13:56

Valores do Registo ==========
ELIMINÉ: Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}
ELIMINÉ MWPE Value: NoActiveDesktopChanges
ELIMINÉ: {EF7B05DE-2B5C-4862-AA6D-7DFC254B4482}
ELIMINÉ: {11843E74-E70D-4A7B-85E1-33ACD7669A7B}
ELIMINÉ: {752F4388-B165-4491-B1CF-C109460D30BE}
ELIMINÉ: {94FBB808-5B2A-4F28-A955-64958F492E0E}
ProxyFix : Configuração proxy removida com sucesso
ELIMINÉ ProxyServer Value
ELIMINÉ ProxyEnable Value
ELIMINÉ EnableHttp1_1 Value
ELIMINÉ ProxyHttp1.1 Value
ELIMINÉ ProxyOverride Value

========== Elementos dos dados do Registo ==========
ELIMINÉ: R0 - Main,Start Page = KLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page
ELIMINÉ: R1 Search Page =
ELIMINÉ: StartMenuInternet: C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

========== Pastas ==========
Nenhuma pasta CLSID local utilizador vazia

========== Ficheiros ==========
ELIMINÉ: c:\windows\tasks\digital sites.job
ELIMINÉ: c:\windows\tasks\updaterex.job
ELIMINA REINICIAR: c:\windows\system32\drivers\360avflt.sys
ELIMINA REINICIAR: c:\windows\system32\drivers\efimon.sys
ELIMINA REINICIAR: c:\windows\system32\tessafe.sys
ELIMINÉ: C:\Windows\Installer\175cc25.msi
ELIMINÉ Flash Cookies (0) (0 octets)
ELIMINÉ Temporários windows (28) (51.322.004 octets)

========== Tarefa planificada ==========
ELIMINÉ: DealPly
ELIMINÉ: Digital Sites
ELIMINÉ: DTReg
ELIMINÉ: MySearchDial
ELIMINÉ: UpdaterEX
ELIMINÉ: {5174866D-E92F-4F0B-BA5E-D3DE06F81CC3}
ELIMINÉ: {8E1AEFB0-16BC-428D-88E3-9FDF318D4202}
ELIMINÉ: {C0FF195F-7ED4-4699-9A8B-CEF0E010C026}
ELIMINÉ: {FD8D7BFC-2962-4567-A02E-775B08E1D1BA}

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso


========== Recapitulativo ==========
189 : Chaves do Registo
12 : Valores do Registo
3 : Elementos dos dados do Registo
1 : Pastas
8 : Ficheiros
1 : Softwares
9 : Tarefa planificada
1 : Restauração Sistema


End of clean in 00mn 48s

========== Caminho do ficheiro do relatório ==========
C:\Users\André\AppData\Roaming\ZHP\ZHPFix[R1].txt - 06/02/2014 12:35:11 [19391]
C:\Users\André\AppData\Roaming\ZHP\ZHPFix[R2].txt - 08/02/2014 13:48:42 [17186]
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 14:03

(RESOLVIDO) Ajuda para eliminar o Awesomehp 772309 Siga, por gentileza, as dicas do tutorial abaixo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste, por gentileza, o log do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 14:28

# AdwCleaner v3.018 - Relatório criado 08/02/2014 às 14:20:43
# Atualizado 28/01/2014 por Xplode
# Sistema Operacional : Windows 7 Home Premium Service Pack 1 (64 bits)
# Usuário : André - ANDRÉ-HP
# Executando de : C:\Users\André\Downloads\AdwCleaner.exe
# Opção : Limpar

***** [ Serviços ] *****


***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\ProgramData\baidu
Pasta Deletada : C:\Program Files (x86)\Mysearchdial
Pasta Deletada : C:\Users\André\AppData\Roaming\baidu
Pasta Deletada : C:\Users\André\AppData\Roaming\Mysearchdial
Pasta Deletada : C:\Users\André\Documents\optimizer pro
Arquivo Deletada : C:\END
Arquivo Deletada : C:\Users\André\Desktop\MySearchDial.url
Arquivo Deletada : C:\Windows\Tasks\MySearchDial.job
Arquivo Deletada : C:\Windows\System32\Tasks\MySearchDial

***** [ Atalhos ] *****


***** [ Registro ] *****

Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\DefaultTabBHO.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Chave Deletedo : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser
Chave Deletedo : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowser.1
Chave Deletedo : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX
Chave Deletedo : HKLM\SOFTWARE\Classes\DefaultTabBHO.DefaultTabBrowserActiveX.1
Chave Deletedo : HKLM\SOFTWARE\Classes\esrv.mysearchdialESrvc
Chave Deletedo : HKLM\SOFTWARE\Classes\esrv.mysearchdialESrvc.1
Chave Deletedo : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore
Chave Deletedo : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore.1
Chave Deletedo : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd
Chave Deletedo : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialdskBnd.1
Chave Deletedo : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr
Chave Deletedo : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialHlpr.1
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\DEALPL~1_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\DEALPL~1_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_directx_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_directx_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_fergo-screenshot_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_fergo-screenshot_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_super-mario-world-x_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_super-mario-world-x_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{3004627E-F8E9-4E8B-909D-316753CBA923}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C358B3D0-B911-41E3-A276-E7D43A6BA56D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{3004627E-F8E9-4E8B-909D-316753CBA923}]
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D43B3890-80C7-4010-A95D-1E77B5924DC3}
Chave Deletedo : HKCU\Software\dsiteproducts
Chave Deletedo : HKCU\Software\InstallCore
Chave Deletedo : HKCU\Software\mysearchdial
Chave Deletedo : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Chave Deletedo : HKLM\Software\Conduit
Chave Deletedo : HKLM\Software\DealPlyLive
Chave Deletedo : HKLM\Software\InstallCore
Chave Deletedo : HKLM\Software\Vittalia
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mysearchdial

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.16428

Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
Configurações Restauradas : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v27.0 (pt-BR)

[ Arquivo : C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\x2qbhatz.default-1391303851727\prefs.js ]


-\\ Google Chrome v32.0.1700.107

[ Arquivo : C:\Users\André\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [9469 octets] - [08/02/2014 14:19:49]
AdwCleaner[S0].txt - [7910 octets] - [08/02/2014 14:20:43]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7970 octets] ##########
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 14:32

(RESOLVIDO) Ajuda para eliminar o Awesomehp 772309 Siga, por gentileza, as dicas do tutorial abaixo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste, por gentileza, o log do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 15:13

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Windows 7 Home Premium x64
Ran by Andr‚ on 08/02/2014 at 15:01:03,01
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71e129ff-6c2a-4984-818c-7e2c998b8d99}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88be1aa9-6740-461c-9e3e-f35eb8fa741c}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{88be1aa9-6740-461c-9e3e-f35eb8fa741c}



~~~ Files

Successfully deleted: [File] C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
Successfully deleted: [File] C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job



~~~ Folders



~~~ FireFox

Successfully deleted: [File] C:\Users\Andr‚\AppData\Roaming\mozilla\firefox\profiles\x2qbhatz.default-1391303851727\user.js
Emptied folder: C:\Users\Andr‚\AppData\Roaming\mozilla\firefox\profiles\x2qbhatz.default-1391303851727\minidumps [2 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 08/02/2014 at 15:04:45,14
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 15:27

(RESOLVIDO) Ajuda para eliminar o Awesomehp 772309  Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Copie todo este texto destacado em vermelho abaixo e cole-o no espaço em branco do Zoek:

createsrpoint;
autoclean;
emptyalltemp;
iedefaults;
resetieproxy;
resethosts;
shortcutfix;
ffdefaults;
firefoxlook;
reset chrome;
chrdefaults;
chromelook;


*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

Zoek.exe is running now.
Do not start any browser windows, they will be closed automatically.
Please wait! This window will close when finished.
A logfile will open afterwards and can also be found on your systemdrive as zoek-results.log


*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 15:37

Zoek.exe v5.0.0.0 Updated 07-February-2014
Tool run by Andr‚ on 08/02/2014 at 15:33:31,26.
Microsoft Windows 7 Home Premium  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\ANDR~1\Downloads\zoek.exe    [Scan all users] [Script inserted]

===== Runcheck 15:34:53,83 =====

--- Create Environment Variables 15:34:55,15
--- Create System Restore Point 15:35:06,83
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 15:41

Vou mandar de novo
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 15:53

Pelo primeiro log do Zoek que você postou, está mostrando que ele ainda não terminou a limpeza, é preciso aguardar até que ele conclua.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 16:23

Zoek.exe v5.0.0.0 Updated 07-February-2014
Tool run by Andr‚ on 08/02/2014 at 15:33:31,26.
Microsoft Windows 7 Home Premium  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\ANDR~1\Downloads\zoek.exe    [Scan all users] [Script inserted]

===== Runcheck 15:34:53,83 =====

--- Create Environment Variables 15:34:55,15
--- Create System Restore Point 15:35:06,83
--- Checking Input 15:35:28,95
--- Reset Hosts File 15:35:33,64
--- AU AppData Check 15:35:34,42
--- Remove From Windows Installer 15:35:38,65
--- IE Startpage Check 15:36:57,10
--- Program Files DB Check 15:37:19,20
--- C:\Users\Andr‚\AppData\ DB Check 15:37:54,83
--- C:\Users\Default\AppData\ DB Check 15:37:54,83
--- C:\Users\Default User\AppData\ DB Check 15:37:54,83
--- C:\Users\ANDR~2\AppData\ DB Check 15:37:54,83
--- C:\Windows\SysNative\config\systemprofile\AppData\ DB Check 15:37:54,83
--- C:\Windows\sysWoW64\config\systemprofile\AppData\ DB Check 15:37:54,83
--- C:\Windows\serviceprofiles\networkservice\AppData\ DB Check 15:37:54,83
--- C:\Windows\serviceprofiles\Localservice\AppData\ DB Check 15:37:54,83
--- C:\Users\ANDR~1 DB Check 15:39:38,51
--- C:\ProgramData DB Check 15:39:52,95
--- C:\Users\Andr‚\AppData\ DB Check 15:39:53,84
--- C:\Users\Default\AppData\ DB Check 15:39:53,84
--- C:\Users\Default User\AppData\ DB Check 15:39:53,84
--- C:\Users\ANDR~2\AppData\ DB Check 15:39:53,84
--- C:\Windows\SysNative\config\systemprofile\AppData\ DB Check 15:39:53,84
--- C:\Windows\sysWoW64\config\systemprofile\AppData\ DB Check 15:39:53,84
--- C:\Windows\serviceprofiles\networkservice\AppData\ DB Check 15:39:53,84
--- C:\Windows\serviceprofiles\Localservice\AppData\ DB Check 15:39:53,84
--- C:\ProgramData\Microsoft\Windows\Start Menu\Programs DB Check 15:41:06,26
--- C:\Users\ANDR~1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs DB Check 15:41:12,92
--- Tasks DB Check 15:41:16,50
--- Downloads DB Check 15:41:19,28
--- C:\Users\André\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\SysNative\config\systemprofile\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\serviceprofiles\networkservice\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\serviceprofiles\Localservice\AppData\LocalLow DB Check 15:41:23,18
--- Tasks2 DB Check 15:42:09,52
--- Documents DB Check 15:42:23,71
--- C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\x2qbhatz.default-1391303851727 DB Check 15:42:27,40
--- C:\Users\ANDR~1\Desktop DB Check 15:42:29,94
--- Services DB Check 15:42:36,26
--- FF prefs.js DB Check 15:42:59,24
--- Del by CLSID 15:43:26,83
--- Delete Services 15:43:50,22
--- Firefox Fix 15:43:57,29
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Power Max Sáb 08 Fev 2014, 16:25

Este não é o log dele. O log é parecido com este abaixo:

Zoek.exe v5.0.0.0 Updated 07-February-2014
Tool run by Usu rio on 07/02/2014 at 22:46:02,59.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: D:\Área de Trabalho\zoek\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

07/02/2014 22:47:03 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 17:22

Segui o seu passo a passo como vou achar?
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por andré paulino Sáb 08 Fev 2014, 17:25

Zoek.exe v5.0.0.0 Updated 07-February-2014
Tool run by Andr‚ on 08/02/2014 at 15:33:31,26.
Microsoft Windows 7 Home Premium  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\ANDR~1\Downloads\zoek.exe    [Scan all users] [Script inserted]

===== Runcheck 15:34:53,83 =====

--- Create Environment Variables 15:34:55,15
--- Create System Restore Point 15:35:06,83
--- Checking Input 15:35:28,95
--- Reset Hosts File 15:35:33,64
--- AU AppData Check 15:35:34,42
--- Remove From Windows Installer 15:35:38,65
--- IE Startpage Check 15:36:57,10
--- Program Files DB Check 15:37:19,20
--- C:\Users\Andr‚\AppData\ DB Check 15:37:54,83
--- C:\Users\Default\AppData\ DB Check 15:37:54,83
--- C:\Users\Default User\AppData\ DB Check 15:37:54,83
--- C:\Users\ANDR~2\AppData\ DB Check 15:37:54,83
--- C:\Windows\SysNative\config\systemprofile\AppData\ DB Check 15:37:54,83
--- C:\Windows\sysWoW64\config\systemprofile\AppData\ DB Check 15:37:54,83
--- C:\Windows\serviceprofiles\networkservice\AppData\ DB Check 15:37:54,83
--- C:\Windows\serviceprofiles\Localservice\AppData\ DB Check 15:37:54,83
--- C:\Users\ANDR~1 DB Check 15:39:38,51
--- C:\ProgramData DB Check 15:39:52,95
--- C:\Users\Andr‚\AppData\ DB Check 15:39:53,84
--- C:\Users\Default\AppData\ DB Check 15:39:53,84
--- C:\Users\Default User\AppData\ DB Check 15:39:53,84
--- C:\Users\ANDR~2\AppData\ DB Check 15:39:53,84
--- C:\Windows\SysNative\config\systemprofile\AppData\ DB Check 15:39:53,84
--- C:\Windows\sysWoW64\config\systemprofile\AppData\ DB Check 15:39:53,84
--- C:\Windows\serviceprofiles\networkservice\AppData\ DB Check 15:39:53,84
--- C:\Windows\serviceprofiles\Localservice\AppData\ DB Check 15:39:53,84
--- C:\ProgramData\Microsoft\Windows\Start Menu\Programs DB Check 15:41:06,26
--- C:\Users\ANDR~1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs DB Check 15:41:12,92
--- Tasks DB Check 15:41:16,50
--- Downloads DB Check 15:41:19,28
--- C:\Users\André\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\SysNative\config\systemprofile\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\serviceprofiles\networkservice\AppData\LocalLow DB Check 15:41:23,18
--- C:\Windows\serviceprofiles\Localservice\AppData\LocalLow DB Check 15:41:23,18
--- Tasks2 DB Check 15:42:09,52
--- Documents DB Check 15:42:23,71
--- C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\x2qbhatz.default-1391303851727 DB Check 15:42:27,40
--- C:\Users\ANDR~1\Desktop DB Check 15:42:29,94
--- Services DB Check 15:42:36,26
--- FF prefs.js DB Check 15:42:59,24
--- Del by CLSID 15:43:26,83
--- Delete Services 15:43:50,22
--- Firefox Fix 15:43:57,29
andré paulino
andré paulino
Iniciante
Iniciante

Mensagens : 35
Reputação : 0
Data de inscrição : 05/02/2014

Ir para o topo Ir para baixo

(RESOLVIDO) Ajuda para eliminar o Awesomehp Empty Re: (RESOLVIDO) Ajuda para eliminar o Awesomehp

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Página 1 de 3 1, 2, 3  Seguinte

Ir para o topo

- Tópicos semelhantes

 
Permissões neste sub-fórum
Não podes responder a tópicos