Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14838 usuários registrados
O último membro registrado é Lanterna Verde com Disco

Os nossos membros postaram um total de 36058 mensagens em 3689 assuntos
Últimos assuntos
» Disco 100% 2024 - Windows 10
por joram Ter 12 Nov 2024, 08:56

Quem está conectado?
125 usuários online :: 0 registrados, 0 invisíveis e 125 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

novembro 2024
SegTerQuaQuiSexSábDom
    123
45678910
11121314151617
18192021222324
252627282930 

Calendário Calendário


Como tirar o Baidu antivirus?

2 participantes

Página 1 de 2 1, 2  Seguinte

Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 00:30

Boa noite, baixei algo aqui, quando pediu p instalar o Baidu eu desmarquei a opção, mas acho que instalou o Baidu, independente do Baidu, também foi instalado algum toolbar......meu navegador da net o Chrome está completamente diferente com cor rosa........não sei se é do chrome ou não mas tem algo estranho instalado no pc.
grato
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 00:32

Olá Andreata.

Primeiramente tente fazer uma restauração do PC para algum dia antes deste problema acontecer.
______________________________________________________________________________

Faça também o seguinte:

Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 00:49

Rodei o ADW Cleaner já .....eis o log


# AdwCleaner v3.210 - Relatório criado 20/05/2014 às 21:01:47
# Atualizado 19/05/2014 por Xplode
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuário : Cliente - CLIENTE1-PC
# Executando de : C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe
# Opção : Examinar

***** [ Serviços ] *****

Serviço Encontrado : IePluginServices
Serviço Encontrado : Update webget
Serviço Encontrado : Wpm

***** [ Arquivos / Pastas ] *****

Arquivo Encontrado : C:\Program Files (x86)\Mozilla Firefox\searchplugins\qone8.xml
Pasta Encontrado : C:\Program Files (x86)\SupTab
Pasta Encontrado : C:\Program Files (x86)\webget
Pasta Encontrado : C:\ProgramData\baidu
Pasta Encontrado : C:\ProgramData\IePluginServices
Pasta Encontrado : C:\ProgramData\WPM

***** [ Atalhos ] *****

Atalho Encontrado : C:\Users\Public\Desktop\Mozilla Firefox.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )
Atalho Encontrado : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk ( [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] )

***** [ Registro ] *****

Chave Encontrada : HKCU\Software\InstallCore
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKCU\Software\webget
Chave Encontrada : [x64] HKCU\Software\InstallCore
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKCU\Software\webget
Chave Encontrada : HKLM\SOFTWARE\14919ea49a8f3b4aa3cf1058d9a64cec
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Chave Encontrada : HKLM\SOFTWARE\Classes\Iminent
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Chave Encontrada : HKLM\Software\Iminent
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DatamngrCoordinator.exe
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\qone8 uninstaller
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Wpm
Chave Encontrada : HKLM\Software\qone8Software
Chave Encontrada : HKLM\Software\SupTab
Chave Encontrada : HKLM\Software\supWPM
Chave Encontrada : HKLM\Software\webget
Chave Encontrada : HKLM\Software\Wpm
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{B89C9191-DEEC-41E4-8DC7-2EBF2BEA1DCB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webget
Dados Encontrada : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command [(Default)] - C:\Program Files (x86)\Mozilla Firefox\firefox.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Dados Encontrada : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Dados Encontrada : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~1.DLL
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~2.DLL
Valor Encontrada : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{84FF7BD6-B47F-46F8-9130-01B2696B36CB}]
Valor Encontrada : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [quick_start@gmail.com]

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17041

Configurações Encontrado : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Configurações Encontrado : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

-\\ Mozilla Firefox v12.0 (pt-BR)

-\\ Google Chrome v34.0.1847.137

*************************

AdwCleaner[R0].txt - [1811 octets] - [29/01/2014 12:30:52]
AdwCleaner[R1].txt - [9197 octets] - [20/05/2014 21:01:47]
AdwCleaner[S0].txt - [1795 octets] - [03/05/2014 15:03:48]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [9317 octets] ##########
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 09:12

# Opção : Examinar
Você só usou a função de Examinar dele. Depois de examinar é preciso clicar no botão Limpar para que ele remova os problemas. Use ele novamente desta forma que lhe falei e depois poste o novo log dele.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 10:43

segue o log :

# AdwCleaner v3.210 - Relatório criado 21/05/2014 às 10:38:18
# Atualizado 19/05/2014 por Xplode
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuário : Cliente - CLIENTE1-PC
# Executando de : C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe
# Opção : Limpar

***** [ Serviços ] *****


***** [ Arquivos / Pastas ] *****


***** [ Atalhos ] *****


***** [ Registro ] *****


***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17041


-\\ Mozilla Firefox v12.0 (pt-BR)

-\\ Google Chrome v35.0.1916.114

*************************

AdwCleaner[R0].txt - [1811 octets] - [29/01/2014 12:30:52]
AdwCleaner[R1].txt - [9457 octets] - [20/05/2014 21:01:47]
AdwCleaner[R2].txt - [985 octets] - [21/05/2014 10:37:36]
AdwCleaner[S0].txt - [1795 octets] - [03/05/2014 15:03:48]
AdwCleaner[S1].txt - [7083 octets] - [20/05/2014 21:02:08]
AdwCleaner[S2].txt - [904 octets] - [21/05/2014 10:38:18]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [963 octets] ##########
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 10:45

Desculpe estar respondendo de novo
está fixado no chrome isso : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 11:34

Desative temporariamente seu antivírus para evitar conflitos.

 Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

*Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Qua 21 maio 2014, 18:04, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 12:47

Zoek.exe v5.0.0.0 Updated 21-05-2014
Tool run by Cliente on 21/05/2014 at 12:15:09,63.
Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Cliente.Cliente1-PC\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-03-184057.log 151477 bytes
C:\zoek-results2014-05-03-192723.log 8955 bytes
C:\zoek-results2014-05-03-201013.log 1435 bytes

==== System Restore Info ======================

21/05/2014 12:16:18 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js:
user_pref("browser.startup.homepage", "http://start.qone8.com/?type=hp&ts=1400628578&from=smt&uid=SAMSUNGXHD502HI_S24MJ50S913961");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://start.qone8.com/newtab/?type=nt&ts=1400628578&from=smt&uid=SAMSUNGXHD502HI_S24MJ50S913961");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "qone8");
user_pref("browser.search.selectedEngine", "qone8");
user_pref("browser.search.order.1", "Google");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default

user.js not found
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----

user_052014_1533_.backup
prefs_052014_1222_.backup
prefs_052014_1533_.backup

==== Deleting Files \ Folders ======================

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\SupTab deleted
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Baidu deleted
C:\PROGRA~3\Package Cache deleted

==== Folders Found ======================

2014-05-21 00:02:09 2014-05-21 00:02:09 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-20 23:27:05 2014-05-20 23:27:05 -------- d-----w- C:\Program Files (x86)\Baidu Security
2014-05-20 23:27:05 2014-05-21 00:03:06 -------- d-----w- C:\Program Files (x86)\Baidu Security\Baidu Antivirus
2014-05-20 23:27:28 2014-05-20 23:27:28 -------- d-----w- C:\ProgramData\Baidu Security
2014-01-30 20:32:40 2014-01-30 20:32:41 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR
2014-01-30 20:32:41 2014-01-25 17:24:07 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security
2014-01-30 20:32:41 2014-01-30 20:32:41 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-01-30 20:32:41 2014-01-30 20:32:41 -------- d---a-w- C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-20 23:25:38 2014-05-20 23:25:38 -------- d-----w- C:\Users\Public\Documents\Baidu
2014-05-03 19:25:53 2014-05-03 19:25:53 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-03 19:25:54 2014-05-03 18:04:30 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security_Baidu Antivirus
2014-05-03 19:25:54 2014-05-03 19:25:54 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-03 18:33:39 2014-05-03 18:33:40 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu
2014-05-03 19:25:54 2014-05-03 19:25:54 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu
2014-05-03 19:25:53 2014-05-03 18:04:30 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:22:59 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:23:00 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu\Baidu Antivirus

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\baidu]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
"DllVersion_2.0"="C:\\ProgramData\\baidu\\commondll\\splitupload\\DllVersion_2.0\\FileSplitUpLoad.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
"uuurl"="http://sync.br.bav.baidu.com/cgi-bin/report_uu_msg_bavv2.cgi"

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\DuplicateRecord]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
"DisplayName"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\Baidu Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"DisplayName"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bndef]
"DisplayName"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\Baidu Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"DisplayName"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"="Baidu Protect"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
"DisplayName"="Baidu Antivirus Minifilter Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
"DisplayName"="Baidu FS Monitor Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
"DisplayName"="Baidu NetDefense"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"InstPath"="C:\\Program Files (x86)\\Baidu Security\\Baidu Antivirus"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"DisplayName"="Baidu Protect"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"ucloud"="u.br.bav.baidu.com"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"dcloud"="http://up.br.bav.baidu.com/cgi-bin/url_warnning/url_warnning.cgi"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"rcloud"="http://up.br.bav.baidu.com/cgi-bin/url_visit_action.cgi"

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\PC Faster]

==== Firefox Extensions Registry ======================

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E886C}"="C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\bb\xpi" [26/04/2014 12:48]

==== Firefox Extensions ======================

ProfilePath: C:\Users\CLIENT~1.CLI\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default
- Quick Start - C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\extensions\quick_start@gmail.com
- Quick Start - %ProfilePath%\extensions\quick_start@gmail.com
- webget - %ProfilePath%\extensions\{9edd0ea8-2819-47c2-8320-b007d5996f8a}.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Skype Click to Call - %AppDir%\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
- Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default
A58DE0A570148AF5FF3512B2A340D09F - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll - Shockwave Flash
7B32EC68B2D0EAE4C1333EEB53199571 - C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll - Módulo de Proteção - Banco do Brasil
4C07B5286D129DFD25C24B4A31B9B888 - C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll - Happy Cloud Plugin
4DC48F347E212C32BACCEC6FE3532300 - C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb_64.dll - Módulo de Proteção - Banco do Brasil


==== Chrome Look ======================

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pgacfjdigcddmmncljpflgcfpfahebkh - C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\bb\sf.crx[26/04/2014 12:57]

Google Docs - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Quick Start - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
GBBD Banco do Brasil - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgacfjdigcddmmncljpflgcfpfahebkh
Gmail - Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Google Docs - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Quick Start - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
GBBD Banco do Brasil - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgacfjdigcddmmncljpflgcfpfahebkh
Gmail - CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Reset Google Chrome ======================

C:\Users\Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts on Users Desktops ======================

C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE  /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa -  Crislaine.LNK - J:\Carta Lib[1]. Religiosa -  Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO  3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO  3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe  -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE  /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa -  Crislaine.LNK - J:\Carta Lib[1]. Religiosa -  Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO  3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO  3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe  -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -  
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 12:50

C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 12:51

C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Iniciar Microsoft Office Outlook.lnk - C:\Program Files (x86)\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\10.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\10.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\1046.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\5) Filhos.LNK - J:\5) Filhos.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\69217_497439776986449_1372680943_n.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\69217_497439776986449_1372680943_n.jpg
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ataque SOL TROPICAL.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\ataque SOL TROPICAL.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\breno.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\breno
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Carta Lib[1]. Religiosa - Crislaine.LNK - J:\Carta Lib[1]. Religiosa - Crislaine.docx
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\celta.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\breno\celta
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\CVTA7CC.tmp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp\CVTA7CC.tmp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Disco Local (C).LNK - C:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Documentos.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Downloads.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Escala Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Escala Vanda.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ESCALAS.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\DOCUMENTOS E PLANILHAS VANDA\ESCALAS.xls
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\FONOAUDIOLOGIA_080909 (1).LNK - C:\Users\wagner\Downloads\FONOAUDIOLOGIA_080909 (1).doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\GRUPO 3.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\GRUPO 3.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Hoje é um dia unicamente especial.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\lição.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Normal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Modelos\Normal.dot
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\O Presente de Jesus 1.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\O Presente de Jesus 1.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\QUIKANIM.LNK - C:\Program Files (x86)\Microsoft Office\OFFICE11\1046\QUIKANIM.PPT
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RAIANENIVIA (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\RECIBO.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\RECIBO.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\SENHA CAIXA.CAPITALIZAÇÃO.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\slide andreatta.LNK - J:\slide andreatta.ppt
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 12:51

C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\STEFANI (J).LNK - J:\
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Temp.LNK - C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\texto natal.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\texto natal.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Vanda.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\Vanda
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\wagner.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\backups\wagner
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\ZAQUEU.LNK - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\SERMÕES DE WAGNER\ZAQUEU.doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Office\Recente\Área de Trabalho.LNK -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk - C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto:
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk - C:\Windows\system32\cmd.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk - C:\Windows\system32\control.exe /name Microsoft.EaseOfAccessCenter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk - C:\Windows\system32\magnify.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk - C:\Windows\system32\osk.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe -extoff
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk - C:\Windows\system32\eudcedit.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\FormatFactory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Help.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe /help
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory\Uninstall.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Desinstalar LightShot.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\unins000.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\Learn More.lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\3.4.0.0\learnmore.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LightShot\LightShot .lnk - C:\Users\Cliente.Cliente1-PC\AppData\Local\Skillbrains\lightshot\LightShot.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Run Hunter Mode.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe -hunter
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Uninstall.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\uninst.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller\Website.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revo Uninstaller.url
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Auslogics Disk Defrag.lnk - C:\Program Files (x86)\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\DreaMule.lnk - C:\Program Files (x86)\DreaMule\emule.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\End Of Nations.lnk - C:\Program Files (x86)\End of Nations Alpha\eonpatch_r.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Format Factory.lnk - C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\google chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\PhotoScape.lnk - C:\Program Files (x86)\PhotoScape\PhotoScape.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Revo Uninstaller.lnk - C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\Tweaking.com - Windows Repair (All in One).lnk - C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Desktop\ZSoft Uninstaller.lnk - C:\Program Files (x86)\ZSoft\Uninstaller\Uninstaller.exe
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\dia dos PAIS. - Atalho.lnk - C:\Users\wagner\Documents\dia dos PAIS..doc
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Andreatta.700@98.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\98-S2-1-94612
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@1.lnk - C:\Users\Cliente.Cliente1-PC\Documents\StarCraft II\Accounts\85865094\1-S2-1-4831634
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\LordWagnerrr.969@2.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Documents\StarCraft II\Accounts\85865094\2-S2-1-4164586
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\CONTRATO DE LOCAÇÃO.lnk -
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Desktop.lnk - C:\Users\Cliente.Cliente1-PC\Desktop
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Links\Downloads.lnk - C:\Users\Cliente.Cliente1-PC\Downloads

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\aTube Catcher.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
C:\Users\Public\Desktop\Avira.lnk - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe /showMiniGui
C:\Users\Public\Desktop\Battle.net.lnk - C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files (x86)\CCleaner\CCleaner64.exe
C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Public\Desktop\Nero StartSmart.lnk - C:\Program Files (x86)\Nero\Nero 7\Nero StartSmart\NeroStartSmart.exe -ScParameter=8
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{EA17F4FC-FDBF-4CF8-A529-2D983132D053}\SkypeIcon.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\Video Search.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe /VIDEOSEARCH

==== shortcuts in Users Start Menu ======================

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Pixel Clock Overclocking.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAPixelClockOC\EVGAPixelClockOC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Precision X.lnk - C:\Program Files (x86)\EVGA Precision X\EVGAPrecision.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\EVGA Voltage Tuner.lnk - C:\Program Files (x86)\EVGA Precision X\Bundle\EVGAVoltageTuner\EVGAVoltageTuner.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\ReadMe.lnk - C:\Program Files (x86)\EVGA Precision X\Doc\ReadMe.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\Uninstall.lnk - C:\Program Files (x86)\EVGA Precision X\Uninstall.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X localization reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\Localization reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\EVGA Precision X skin format reference.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Doc\USF skin format reference.pdf
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EVGA Precision X\SDK\Samples.lnk - C:\Program Files (x86)\EVGA Precision X\SDK\Samples
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games\Stronghold 2™.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\The Happy Cloud.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Happy Cloud\Uninstall.lnk - C:\ProgramData\HappyCloud\Application\uninstaller.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher\aTube Catcher.lnk - C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\My Avira\Avira.lnk - C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe /showMiniGui
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Age of Conan.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Desinstalar o Google Earth.lnk - C:\Windows\SysWOW64\msiexec.exe /x {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Iniciar Google Earth no modo DirectX.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe -setDX
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Iniciar Google Earth no modo OpenGL.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe -setOGL
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre7\bin\javacpl.exe -tab about
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre7\bin\javacpl.exe -tab update
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre7\bin\javacpl.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xfire\Xfire.lnk - C:\Program Files (x86)\Xfire\Xfire.exe

==== shortcuts in Quick Launch ======================

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\COMODO SystemCleaner.lnk - C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\Downloads\COMODO System-Cleaner\CSC.exe
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Cliente.Cliente1-PC\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Cliente.Cliente1-PC\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\Cliente.Cliente1-PC\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=120 folders=88 64397013 bytes)

==== Empty Temp Folders ======================

C:\Users\Cliente.Cliente1-PC\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\CLIENT~1.CLI\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Reset Hosts File ======================

Hosts File Reset Successfully

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\CLIENT~1.CLI\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 21/05/2014 at 12:39:48,92 ======================
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 12:52

e finalizar
TÁ bem dificil dividir o log
Tentei acho que é isso ai
e Sumiu o toolbar aqui no Chrome........
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 13:24

Desative temporariamente seu antivírus para evitar conflitos.

* Clique com o botão direito do mouse no Zoek.exe e selecione [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Qua 21 maio 2014, 18:08, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 14:00

Até que não demorou muito não
foi Rápido

Zoek.exe v5.0.0.0 Updated 21-05-2014
Tool run by Cliente on 21/05/2014 at 13:55:28,53.
Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Cliente.Cliente1-PC\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-21-153948.log 156570 bytes

==== System Restore Info ======================

21/05/2014 13:56:27 Zoek.exe System Restore Point Created Succesfully.

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bfilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bfilter deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bfmon deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bfmon deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bndef deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bndef deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Bprotect deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\Bprotect deleted successfully

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
"DllVersion_2.0"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
"uuurl"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\DuplicateRecord]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\PC Faster]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfilter]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bfmon]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bndef]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\Bprotect]
"DisplayName"=-
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFILTER\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BFMON\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BNDEF\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_BPROTECT\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfilter]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfilter]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfmon]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bfmon]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bndef]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bndef]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\services\Bprotect]
"DisplayName"=-
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
"DeviceDesc"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfilter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bfmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
"DisplayName"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bndef]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"InstPath"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Bprotect]
"DisplayName"=-
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"ucloud"=-
[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"dcloud"=-
[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]
"rcloud"=-
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\PC Faster]

==== Deleting Files \ Folders ======================

C:\Program Files (x86)\Baidu Security deleted
C:\ProgramData\Baidu Security deleted
C:\Users\Cliente.Cliente1-PC\Desktop\Back- Up\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR deleted
C:\Users\Public\Documents\Baidu deleted

==== Folders Found ======================

2014-05-21 00:02:09 2014-05-21 00:02:09 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-03 19:25:53 2014-05-20 23:27:05 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-03 19:25:54 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security_Baidu Antivirus
2014-05-03 19:25:54 2014-05-20 23:27:28 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-03 18:33:39 2014-05-03 18:33:40 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu
2014-05-03 19:25:54 2014-05-20 23:25:38 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu
2014-05-03 19:25:53 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:22:59 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu\Baidu Antivirus
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-21 15:23:00 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu\Baidu Antivirus

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\baidu]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]

[HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]

[HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=165 folders=144 93893033 bytes)

==== EOF on 21/05/2014 at 13:58:47,35 ======================
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 14:19

Desative temporariamente seu antivírus para evitar conflitos.

* Clique com o botão direito do mouse no Zoek.exe e selecione Executar como administrador.

* Selecione e copie todo este texto destacado em vermelho que te passei e cole-o no espaço em branco do Zoek.

*Clique [Run Script]

*Durante o scan uma mensagem parecida com esta abaixo mostrando o progresso do escaneamento será apresentada. Aguarde o término...pode demorar!

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

*Caso a reinicialização do PC seja solicitada, clique [OK]

* Poste o log do Zoek que estará em C:\zoek-results.txt em sua próxima resposta.


Última edição por Power Max em Qua 21 maio 2014, 18:08, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 17:58

C:\Users\Cliente.Cliente1-PC\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2014-05-21-153948.log 156570 bytes
C:\zoek-results2014-05-21-165847.log 11132 bytes

==== System Restore Info ======================

21/05/2014 17:55:42 Zoek.exe System Restore Point Created Succesfully.

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\baidu\CommonDll\Splitupload\bav]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security\Antivirus]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus]
[-HKEY_USERS\S-1-5-21-3258268329-354441947-3349506184-1000\Software\Baidu Security\Antivirus\web]

==== Folders Found ======================

2014-05-21 00:02:09 2014-05-21 00:02:09 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2014-05-03 19:25:53 2014-05-20 23:27:05 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security
2014-05-03 19:25:54 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security_Baidu Antivirus
2014-05-03 19:25:54 2014-05-20 23:27:28 -------- d---a-w- C:\zoek_backup\C_ProgramData_Baidu Security
2014-05-03 18:33:39 2014-05-03 18:33:40 -------- d---a-w- C:\zoek_backup\C_PROGRA~3_baidu
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security_PC Faster_4.0.0.0_Uninstall_Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-20 23:27:45 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu
2014-05-03 19:25:54 2014-05-20 23:25:38 -------- d---a-w- C:\zoek_backup\C_Users_Public_Documents_Baidu
2014-05-03 19:25:53 2014-05-21 00:03:06 -------- d---a-w- C:\zoek_backup\C_Program Files (x86)_Baidu Security\Baidu Antivirus
2014-05-03 18:33:39 2014-05-21 15:22:59 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_AppData_Roaming_Baidu\Baidu Antivirus
2014-05-21 16:57:11 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR\Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall
2014-05-21 16:57:12 2014-05-21 16:57:12 -------- d---a-w- C:\zoek_backup\C_Users_Cliente.Cliente1-PC_Desktop_Back- Up_AppData_Roaming_ZHP_Quarantine_Baidu Security.DIR_Baidu Security\PC Faster\4.0.0.0\Uninstall\Baidu PC Faster Uninstall HK
2014-05-03 18:33:39 2014-05-21 15:23:00 -------- d---a-w- C:\zoek_backup\C_Users_CLIENT~1.CLI_AppData_Roaming_Baidu\Baidu Antivirus

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================

No instances of string "Baidu" found.

==== C:\zoek_backup content ======================

C:\zoek_backup (files=165 folders=144 93893033 bytes)

==== EOF on 21/05/2014 at 17:57:35,72 ======================
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 18:03

Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o programa acima é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 21:28

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Ultimate x64
Ran by Cliente on 21/05/2014 at 21:19:47,75
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\APN_ATU3__RASMANCS



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Users\Cliente.Cliente1-PC\AppData\Roaming\mozilla\firefox\profiles\kod3lnf7.default\minidumps [1 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21/05/2014 at 21:27:04,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 21:31

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309 Faça o download do < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > < [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]> ( ... de Nicolas Coolman )

Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 21:48

Power Max escreveu:como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309  Faça o download do < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] >  < [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]> ( ... de Nicolas Coolman )

Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.

---\\ Softwares de proteçao do sistema
Avira Free Antivirus v14.0.3.350
Windows Defender W7

---\\ Softwares d'optimização do sistema
CCleaner v4.12

---\\ Softwares de partilha do PeerToPeer (P2P)

---\\ Monitoramento dos softwares
Adobe Flash Player 13 Plugin
Java 7 Update 55

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (66% free)
System Restore: Activé (Enable)
System drive C: has 275 GB (60%) free of 456 GB

---\\ Modo de conexão ao sistema
~ Computer Name: CLIENTE1-PC
~ User Name: Cliente
~ All Users Names: HomeGroupUser$, Convidado, Cliente, Administrador,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\
~ %Desktop% : C:\Users\Cliente.Cliente1-PC\Desktop\
~ %Favorites% : C:\Users\Cliente.Cliente1-PC\Favorites\
~ %LocalAppData% : C:\Users\Cliente.Cliente1-PC\AppData\Local\
~ %StartMenu% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 275 Go of 456 Go)
D: CD-ROM drive (Not Inserted)
E: Floppy drive, Flash card reader, USB Key (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Windows Explorer.) (.20/11/2010 - 04:24:46.) -- C:\Windows\Explorer.exe [2872320]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.F220BA78AB542C70211D73AE4729B2CD] - (.Microsoft Corporation - Internet Extensions para Win32.) (.05/05/2014 - 13:00:56.) -- C:\Windows\System32\wininet.dll [2260480]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.20/11/2010 - 04:25:32.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.20/11/2010 - 04:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.27/09/2013 - 22:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 00:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 00:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 01:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.26/04/2011 - 23:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 00:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.23/01/2014 - 23:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 01:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.20/11/2010 - 02:06:42.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 00:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.20/11/2010 - 04:34:04.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes Favoris (My Favorites) : 1/21
~ Mes Documents (My Documents) : 1/278
~ Mon Bureau (My Desktop) : 1/5376
~ Menu demarrer (Programs) : 1/19
~ Hidden Files: Scanned in 00mn 14s



---\\ Processos lançados
[MD5.241B07FF7F5943B9C1BF3235F49AC1E1] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744] [PID.336]
[MD5.A2B38416E98F90DFA270CB8CFF61BE65] - (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376] [PID.2052]
[MD5.1620FE36666F4BBC2314B7F360FB1965] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488] [PID.3756]
[MD5.65C450CCC15ADDED610EB58DE35B307A] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7877120] [PID.1236]
[MD5.B5D2F4BF587FD60AF75B09EFC1AD0E0A] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [411936] [PID.740]
[MD5.43B1125D14E8797FDA9D5E167EB50AE3] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [528424] [PID.768]
[MD5.4D282B9C5BB05DF92C9F3977DFB9F916] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400] [PID.1568]
[MD5.65AF41A7A2C5B6693E1B4164E7632C3E] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400] [PID.1764]
[MD5.43B18BAA433FD79DFC7D4B25AF6EB2F9] - (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984] [PID.1916]
[MD5.D5A444B63637EC0932172C6719A10252] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe [263048] [PID.2232]
~ Processes Running: Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml
P2 - FPN: [HKCU] [gastecnologia.com.br/sf/bb] - (.GAS Tecnologia - Internet Banking Helper.) -- C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll
~ Firefox Browser: 16 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 0



---\\ Browser Helper Objects do navegador (02)
O2 - BHO: G-Buster Browser Defense [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540000} . (.Banco do Brasil - Gbieh Module.) -- C:\Program Files (x86)\GbPlugin\gbieh.dll
~ BHO: 6 Legitimates Filtered in 00mn 00s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Boutões da barra de ferramentas principal do Internet Explorer (09)
O9 - Extra button: Skype Click to Call [64Bits] - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- c:\program files (x86)\skype\toolbars\internet explorer x64\icon.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Site na zona confiavél do Internet Explorer (05)
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bancobrasil.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bb.com.br
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.77.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.77.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.77.222.222,208.67.220.220
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Lista dos serviços NT não Microsoft e não desativados (023)
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
~ Services: 8 Legitimates Filtered in 00mn 03s



---\\ Tarefas planificadas automaticamente (039)
[MD5.00000000000000000000000000000000] [APT] [AutoUpdaterTask] (...) -- C:\Program Files (x86)\Auto Updater\AutoUpdater.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{22112252-3B5A-405A-8FAC-1BF555140057}] (...) -- D:\Disk2\DirectX\dxsetup.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{2A1F9CAA-C9BE-42B2-93F3-26CC4A62BD91}] (...) -- C:\Users\Cliente\Downloads\stronghold_2_br[[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{F058026D-054E-4104-8D2E-40C3A1825762}] (...) -- D:\Disk1\setup.exe (.not file.) [0]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [902]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1066]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1070]
~ Scheduled Task: 12 Legitimates Filtered in 00mn 05s



---\\ Drivers lançados ao arranque do sistema (041)
O41 - Driver: (Bnbase) . (. - .) - C:\Windows\System32\drivers\bnbasex64.sys (.not file.)
~ Drivers: 93 Legitimates Filtered in 00mn 00s



---\\ Software instalados (042)
O42 - Logiciel: Eador. Masters of the Broken World - (.Snowbird Games.) [HKLM][64Bits] -- Steam App 232050
O42 - Logiciel: Halo: Spartan Assault - (.Vanguard Games.) [HKLM][64Bits] -- Steam App 277430
~ Logic: 21 Legitimates Filtered in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Astral Byte]
[HKCU\Software\Cliffhanger]
[HKCU\Software\GbAs]
[HKCU\Software\Kihon]
[HKCU\Software\Mechanist.co]
[HKCU\Software\MechanistGames]
[HKCU\Software\Neonga]
[HKCU\Software\superdownloads.com.br]
[HKLM\Software\Baidu Security]
[HKLM\Software\Wow6432Node\AutoHelpDesk]
[HKLM\Software\Wow6432Node\GameVicio]
[HKLM\Software\Wow6432Node\SupDp] =>PUP.SupTab
~ Key Software: 234 Legitimates Filtered in 00mn 00s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 20/05/2014 - 20:30:25 - [] ----D C:\Users\Cliente.Cliente1-PC\AppData\Roaming\qone8 =>Hijacker.Qone8
O43 - CFD: 07/04/2014 - 23:09:09 - [] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\StunlockStudios
O43 - CFD: 21/05/2014 - 12:54:45 - [0] ----D C:\Users\Cliente.Cliente1-PC\AppData\Local\Z2
O43 - CFD: 15/04/2014 - 11:28:55 - [] ----D C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio
O43 - CFD: 04/04/2014 - 12:10:37 - [0] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Strife
~ Program Folder: 134 Legitimates Filtered in 00mn 00s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.FEC789142370C40BFEEB7E746DF780C1] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147754]
O44 - LFC:[MD5.321D7564D88D594D0AE1A40311A71A30] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [707974]
O44 - LFC:[MD5.66F33BD378E57F1D2D279057C7776DA8] - 21/05/2014 - 02:54:23 ---A- . (...) -- C:\PureRa.txt [1842]
O44 - LFC:[MD5.2F96092D4EA423689C14148D41C73706] - 21/05/2014 - 12:39:48 ---A- . (...) -- C:\zoek-results2014-05-21-153948.log [156570]
O44 - LFC:[MD5.213DCA133B8DE33A09A02D979D2BC6D9] - 21/05/2014 - 13:58:47 ---A- . (...) -- C:\zoek-results2014-05-21-165847.log [11132]
O44 - LFC:[MD5.3FE073CB5BEF33E0E231DB618915FF65] - 21/05/2014 - 17:57:35 ---A- . (...) -- C:\zoek-results.log [4889]
~ Files: 14 Legitimates Filtered in 00mn 45s



---\\ Chave do registo Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{7de44256-e048-11e3-8375-001966e82175}\AutoRun\command. (...) -- I:\setup.exe (.not file.)
~ Keys: Scanned in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 18 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 4 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:08/05/2013 - 09:52:48 ---A- . (.GAS Tecnologia - GbPlugin Device Driver.) -- C:\Windows\SysWOW64\drivers\gbpkm.sys [49536]
~ Drivers: 50 Legitimates Filtered in 00mn 18s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa adicional à raiz do sistema (radicular) (SPRF) (O84)
[MD5.7EC9E810ED839FF7349575FD34784979] [SPRF][26/04/2014] (...) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\unins000.dat [55631]
[MD5.70F851F7A524071E13F17DC401A21906] [SPRF][20/05/2014] (...) -- C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe [1326389]
[MD5.D9DE89F0FAF18019BC9595F0F47BCA61] [SPRF][04/04/2014] (.Atribune.org - ATF Cleaner.exe.) -- C:\Users\Cliente.Cliente1-PC\Desktop\ATF-Cleaner.exe [50688]
[MD5.64BAEC464B396B66A353D8FC2F42A4E3] [SPRF][31/07/2011] (.RaProducts.org - System Purification Tool.) -- C:\Users\Cliente.Cliente1-PC\Desktop\PureRa.exe [76565]
~ Files: 4 Legitimates Filtered in 00mn 00s



---\\ Lista das exceções do FireWall (FirewallRules) (O87)
O87 - FAEL: "{DF8C6C86-4F7F-49B2-9855-F09D56C88467}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O87 - FAEL: "{3CE9F67D-28A1-4C24-B3E5-202F87570675}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
~ Firewall: 2 Legitimates Filtered in 00mn 03s



---\\ Search Tracing Registry Key (O100)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASAPI32 =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASMANCS =>Adware.IMBooster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASMANCS =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASMANCS =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASAPI32 =>P2P.µTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASMANCS =>P2P.µTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASMANCS =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASAPI32 =>PUP.WebGet
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASMANCS =>PUP.WebGet
~ BTK: 128 Legitimates Filtered in 00mn 00s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 13/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Disabled 25/02/2014 1017424 | (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
SS - | Auto 02/04/2014 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 02/04/2014 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 20/04/2012 129976 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 28/11/2007 800040 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
SS - | Demand 22/01/2008 275752 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
SS - | Auto 09/11/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 23/04/2014 572096 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - | Auto 25/02/2014 440400 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 25/02/2014 440400 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 14/05/2014 123984 | (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
SR - | Auto 06/05/2014 528424 | (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
SR - | Auto 08/02/2014 923936 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 08/02/2014 411936 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 07s



---\\ Scâner Aditional (088)
Database Version : 13029 - (21/05/2014)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 1

C:\Users\Cliente.Cliente1-PC\AppData\Roaming\qone8 =>Hijacker.Qone8^
[HKLM\Software\Wow6432Node\SupDp] =>PUP.SupTab^
~ Additionnel Scan: 257984 Items scanned in 00mn 40s



---\\ Sumário das deteções encontradas na sua estação
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.SupTab
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Hijacker.Qone8
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>Adware.IMBooster
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] =>PUP.WebGet
~ MSI: 4 link(s) detected in 00mn 00s



~ 724 Legitimates filtered by white list
End of the scan (418 lines in 02mn 53s)(0)
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 21:55

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309  Selecione e copie todo o texto destacado em vermelho que te passei.
_____________________________________________________________________________________________________________

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309  Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta.


Última edição por Power Max em Qua 21 maio 2014, 23:40, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 22:08

Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014
Fichier d'export Registre :
Run by Cliente at 21/05/2014 22:07:43
High Elevated Privileges : OK
Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 02s)
Reparação de atalhos do navegador

========== Chaves do Registo ==========
ELIMINÉ Driver Key: Bnbase
ELIMINÉ:* HKLM\Software\Baidu Security
ELIMINÉ: HKLM\Software\Wow6432Node\SupDp
ELIMINÉ CLSID MPSK: {7de44256-e048-11e3-8375-001966e82175}
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\IminentUninstall_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatewebget_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilwebget_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_RASMANCS
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASAPI32
ELIMINÉ: HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\webget_setup_RASMANCS

========== Valores do Registo ==========
ProxyFix : Configuração proxy removida com sucesso
ELIMINÉ ProxyServer Value
ELIMINÉ ProxyEnable Value
ELIMINÉ EnableHttp1_1 Value
ELIMINÉ ProxyHttp1.1 Value
ELIMINÉ ProxyOverride Value

========== Pastas ==========
Nenhuma pasta CLSID local utilizador vazia

========== Ficheiros ==========
ELIMINÉ Temporários windows (116) (1.876.813 octets)
ELIMINÉ Flash Cookies (0) (0 octets)

========== Tarefa planificada ==========
ELIMINÉ: AutoUpdaterTask
ELIMINÉ: {22112252-3B5A-405A-8FAC-1BF555140057}
ELIMINÉ: {2A1F9CAA-C9BE-42B2-93F3-26CC4A62BD91}
ELIMINÉ: {F058026D-054E-4104-8D2E-40C3A1825762}

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso


========== Recapitulativo ==========
14 : Chaves do Registo
6 : Valores do Registo
1 : Pastas
2 : Ficheiros
4 : Tarefa planificada
1 : Restauração Sistema


End of clean in 00mn 40s

========== Caminho do ficheiro do relatório ==========
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\ZHP\ZHPFix[R1].txt - 21/05/2014 22:07:46 [2272]
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 22:17

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309 Abra novamente o ( ZHPDiag )

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

|- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão.

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

|- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Andreata Qua 21 maio 2014, 23:19

Power Max escreveu:como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309  Abra novamente o ( ZHPDiag )

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

|- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão.

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

|- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt

[Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

~ Relatório do ZHPDiag v2014.5.21.70 - Nicolas Coolman (21/05/2014)
~ Iniciado por Cliente (21/05/2014 23:15:57)
~ Endereço do Website : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Blog de análise de software : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Fóruns de suporte gratuito para desinfecção : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Tradução pelo utilizador
~ Estatuto da versão :
~ Lista Branca : Ativado pelo programa
~ Elevação dos Privilégios : OK
~ Controle de Conta de Utilizador : Deactivate by user


---\\ Navegadores Internet
MSIE: Internet Explorer v11.0.9600.17041 (Defaut)
MFIE: Mozilla Firefox 12.0

---\\ Informações sobre os produtos Windows
~ Langage: Portugais
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema
Avira Free Antivirus v14.0.3.350
Windows Defender W7

---\\ Softwares d'optimização do sistema
CCleaner v4.12

---\\ Softwares de partilha do PeerToPeer (P2P)

---\\ Monitoramento dos softwares
Adobe Flash Player 13 Plugin
Java 7 Update 55

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (66% free)
System Restore: Activé (Enable)
System drive C: has 274 GB (60%) free of 456 GB

---\\ Modo de conexão ao sistema
~ Computer Name: CLIENTE1-PC
~ User Name: Cliente
~ All Users Names: HomeGroupUser$, Convidado, Cliente, Administrador,
~ Unselected Option: 045,061,O62,065,066,080,O82,089
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\
~ %Desktop% : C:\Users\Cliente.Cliente1-PC\Desktop\
~ %Favorites% : C:\Users\Cliente.Cliente1-PC\Favorites\
~ %LocalAppData% : C:\Users\Cliente.Cliente1-PC\AppData\Local\
~ %StartMenu% : C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 274 Go of 456 Go)
D: CD-ROM drive (Not Inserted)
E: Floppy drive, Flash card reader, USB Key (Not Inserted)
F: Floppy drive, Flash card reader, USB Key (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Windows Explorer.) (.20/11/2010 - 04:24:46.) -- C:\Windows\Explorer.exe [2872320]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.F220BA78AB542C70211D73AE4729B2CD] - (.Microsoft Corporation - Internet Extensions para Win32.) (.05/05/2014 - 13:00:56.) -- C:\Windows\System32\wininet.dll [2260480]
[MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.20/11/2010 - 04:25:32.) -- C:\Windows\System32\Winlogon.exe [390656]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.20/11/2010 - 04:27:28.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.79059559E89D06E8B80CE2944BE20228] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.27/09/2013 - 22:09:10.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.20/11/2010 - 00:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.20/11/2010 - 00:26:34.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.20/11/2010 - 01:43:44.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.26/04/2011 - 23:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.20/11/2010 - 00:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.23/01/2014 - 23:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.20/11/2010 - 01:52:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.20/11/2010 - 02:06:42.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.20/11/2010 - 00:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.20/11/2010 - 04:34:04.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes Favoris (My Favorites) : 1/21
~ Mes Documents (My Documents) : 1/278
~ Mon Bureau (My Desktop) : 1/5377
~ Menu demarrer (Programs) : 1/19
~ Hidden Files: Scanned in 00mn 13s



---\\ Processos lançados
[MD5.241B07FF7F5943B9C1BF3235F49AC1E1] - (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744] [PID.2604]
[MD5.A2B38416E98F90DFA270CB8CFF61BE65] - (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376] [PID.2616]
[MD5.B1DAF0E7971BC806D2319DA1058A3DBA] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [1775808] [PID.4300]
[MD5.1620FE36666F4BBC2314B7F360FB1965] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488] [PID.1764]
[MD5.65C450CCC15ADDED610EB58DE35B307A] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7877120] [PID.3036]
[MD5.B5D2F4BF587FD60AF75B09EFC1AD0E0A] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [411936] [PID.744]
[MD5.43B1125D14E8797FDA9D5E167EB50AE3] - (.GAS Tecnologia - G-Buster Browser Defense - Service.) -- C:\Program Files (x86)\GbPlugin\gbpsv.exe [528424] [PID.772]
[MD5.4D282B9C5BB05DF92C9F3977DFB9F916] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400] [PID.1564]
[MD5.65AF41A7A2C5B6693E1B4164E7632C3E] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400] [PID.1780]
[MD5.D5A444B63637EC0932172C6719A10252] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe [263048] [PID.1000]
[MD5.43B18BAA433FD79DFC7D4B25AF6EB2F9] - (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984] [PID.2024]
~ Processes Running: Scanned in 00mn 00s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Mozilla\Firefox\Profiles\kod3lnf7.default\prefs.js
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml
M3 - MFPP: Plugins - [Cliente] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml
P2 - FPN: [HKCU] [gastecnologia.com.br/sf/bb] - (.GAS Tecnologia - Internet Banking Helper.) -- C:\Users\Cliente.Cliente1-PC\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll
~ Firefox Browser: 16 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Redireção do ficheiro Hosts (01)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 0



---\\ Browser Helper Objects do navegador (02)
O2 - BHO: G-Buster Browser Defense [64Bits] - {C41A1C0E-EA6C-11D4-B1B8-444553540000} . (.Banco do Brasil - Gbieh Module.) -- C:\Program Files (x86)\GbPlugin\gbieh.dll
~ BHO: 6 Legitimates Filtered in 00mn 00s



---\\ Aplicações iniciadas por registo & pastas (04)
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Antivirus System Tray Tool (Desktop).) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.OE.Systray.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
~ Application: Scanned in 00mn 00s



---\\ Boutões da barra de ferramentas principal do Internet Explorer (09)
O9 - Extra button: Skype Click to Call [64Bits] - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} . (...) -- c:\program files (x86)\skype\toolbars\internet explorer x64\icon.ico
~ IE Extra Buttons: Scanned in 00mn 00s



---\\ Site na zona confiavél do Internet Explorer (05)
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bancobrasil.com.br
O15 - Trusted Zone: [HKCU\...\Domains\www] *.bb.com.br
~ IE Zone Confiance: Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{129A01AC-AC79-408B-A396-9DE46EAE3E56}: DhcpDomain = domain.name
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft (R).) -- C:\Windows\System32\mshtml.dll
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Lista dos serviços NT não Microsoft e não desativados (023)
O23 - Service: Gbp Service (GbpSv) . (.GAS Tecnologia - G-Buster Browser Defense - Service.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
~ Services: 8 Legitimates Filtered in 00mn 03s



---\\ Tarefas planificadas automaticamente (039)
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [902]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1066]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1070]
~ Scheduled Task: 8 Legitimates Filtered in 00mn 01s



---\\ Drivers lançados ao arranque do sistema (041)
O41 - Driver: (Bnbase) . (. - .) - C:\Windows\System32\drivers\bnbasex64.sys (.not file.)
~ Drivers: 91 Legitimates Filtered in 00mn 00s



---\\ Software instalados (042)
O42 - Logiciel: Eador. Masters of the Broken World - (.Snowbird Games.) [HKLM][64Bits] -- Steam App 232050
O42 - Logiciel: Halo: Spartan Assault - (.Vanguard Games.) [HKLM][64Bits] -- Steam App 277430
~ Logic: 21 Legitimates Filtered in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\Astral Byte]
[HKCU\Software\Cliffhanger]
[HKCU\Software\GbAs]
[HKCU\Software\Kihon]
[HKCU\Software\Mechanist.co]
[HKCU\Software\MechanistGames]
[HKCU\Software\Neonga]
[HKCU\Software\superdownloads.com.br]
[HKLM\Software\Wow6432Node\AutoHelpDesk]
[HKLM\Software\Wow6432Node\GameVicio]
~ Key Software: 232 Legitimates Filtered in 00mn 00s



---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 07/04/2014 - 23:09:09 - [] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\StunlockStudios
O43 - CFD: 21/05/2014 - 12:54:45 - [0] ----D C:\Users\Cliente.Cliente1-PC\AppData\Local\Z2
O43 - CFD: 15/04/2014 - 11:28:55 - [] ----D C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameVicio
O43 - CFD: 04/04/2014 - 12:10:37 - [0] ---AD C:\Users\Cliente.Cliente1-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Strife
~ Program Folder: 133 Legitimates Filtered in 00mn 00s



---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044)
O44 - LFC:[MD5.FEC789142370C40BFEEB7E746DF780C1] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147754]
O44 - LFC:[MD5.321D7564D88D594D0AE1A40311A71A30] - 20/05/2014 - 20:32:09 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [707974]
O44 - LFC:[MD5.66F33BD378E57F1D2D279057C7776DA8] - 21/05/2014 - 02:54:23 ---A- . (...) -- C:\PureRa.txt [1842]
O44 - LFC:[MD5.2F96092D4EA423689C14148D41C73706] - 21/05/2014 - 12:39:48 ---A- . (...) -- C:\zoek-results2014-05-21-153948.log [156570]
O44 - LFC:[MD5.213DCA133B8DE33A09A02D979D2BC6D9] - 21/05/2014 - 13:58:47 ---A- . (...) -- C:\zoek-results2014-05-21-165847.log [11132]
O44 - LFC:[MD5.3FE073CB5BEF33E0E231DB618915FF65] - 21/05/2014 - 17:57:35 ---A- . (...) -- C:\zoek-results.log [4889]
~ Files: 14 Legitimates Filtered in 00mn 44s



---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 18 Legitimates Filtered in 00mn 00s



---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 4 Legitimates Filtered in 00mn 00s



---\\ Lista dos drivers do sistema (SDL) (O58)
O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:08/05/2013 - 09:52:48 ---A- . (.GAS Tecnologia - GbPlugin Device Driver.) -- C:\Windows\SysWOW64\drivers\gbpkm.sys [49536]
~ Drivers: 50 Legitimates Filtered in 00mn 19s



---\\ Lista das ferramentas de remoção de vírus (LAT) (063)
O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Menu de inicialização Internet (068)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
~ Keys: Scanned in 00mn 00s



---\\ Pesquisa adicional à raiz do sistema (radicular) (SPRF) (O84)
[MD5.7EC9E810ED839FF7349575FD34784979] [SPRF][26/04/2014] (...) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\unins000.dat [55631]
[MD5.70F851F7A524071E13F17DC401A21906] [SPRF][20/05/2014] (...) -- C:\Users\Cliente.Cliente1-PC\Desktop\adwcleaner_3.210.exe [1326389]
[MD5.D9DE89F0FAF18019BC9595F0F47BCA61] [SPRF][04/04/2014] (.Atribune.org - ATF Cleaner.exe.) -- C:\Users\Cliente.Cliente1-PC\Desktop\ATF-Cleaner.exe [50688]
[MD5.64BAEC464B396B66A353D8FC2F42A4E3] [SPRF][31/07/2011] (.RaProducts.org - System Purification Tool.) -- C:\Users\Cliente.Cliente1-PC\Desktop\PureRa.exe [76565]
~ Files: 4 Legitimates Filtered in 00mn 00s



---\\ Lista das exceções do FireWall (FirewallRules) (O87)
O87 - FAEL: "{DF8C6C86-4F7F-49B2-9855-F09D56C88467}" | In - None - P6 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O87 - FAEL: "{3CE9F67D-28A1-4C24-B3E5-202F87570675}" | In - None - P17 - TRUE | .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Cliente.Cliente1-PC\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
~ Firewall: 2 Legitimates Filtered in 00mn 03s



---\\ Search Tracing Registry Key (O100)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASAPI32 =>P2P.µTorrent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\uTorrent_RASMANCS =>P2P.µTorrent
~ BTK: 118 Legitimates Filtered in 00mn 00s



---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados)
SS - | Demand 13/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Disabled 25/02/2014 1017424 | (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
SS - | Auto 02/04/2014 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 02/04/2014 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 20/04/2012 129976 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Demand 28/11/2007 800040 | (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
SS - | Demand 22/01/2008 275752 | (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
SS - | Auto 09/11/2012 160944 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 23/04/2014 572096 | (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - | Auto 25/02/2014 440400 | (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
SR - | Auto 25/02/2014 440400 | (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
SR - | Auto 14/05/2014 123984 | (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
SR - | Auto 06/05/2014 528424 | (GbpSv) . (.GAS Tecnologia.) - C:\Program Files (x86)\GbPlugin\gbpsv.exe
SR - | Auto 08/02/2014 923936 | (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - | Auto 08/02/2014 411936 | (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Auto 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 07s



---\\ Scâner Aditional (088)
Database Version : 13029 - (21/05/2014)
Clés trouvées (Keys found) : 0
Valeurs trouvées (Values found) : 0
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 0

~ Additionnel Scan: 258026 Items scanned in 00mn 43s



---\\ Sumário das deteções encontradas na sua estação
~ MSI: 0 link(s) detected in 00mn 00s



~ 715 Legitimates filtered by white list
End of the scan (390 lines in 02mn 36s)(0)
Andreata
Andreata
Membro
Membro

Mensagens : 267
Reputação : 6
Data de inscrição : 26/01/2014

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Power Max Qua 21 maio 2014, 23:40

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309  Selecione e copie todo o texto destacado em vermelho que te passei.
_____________________________________________________________________________________________________________

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? 772309  Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta e nos diga como está seu PC depois disto.


Última edição por Power Max em Qui 22 maio 2014, 09:57, editado 1 vez(es)

_________________

Caixa de Dicas
= Sempre com novos tutoriais e novidades em informática, tecnologia e variedades.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = O melhor da internet você encontra aqui.

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link] = Mensagens de fé e esperança para o seu coração
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

como  https - forumpcbrasil forumeiros com - Como tirar o Baidu antivirus? Empty Re: Como tirar o Baidu antivirus?

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Página 1 de 2 1, 2  Seguinte

Ir para o topo

- Tópicos semelhantes

 
Permissões neste sub-fórum
Não podes responder a tópicos