Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14810 usuários registrados
O último membro registrado é Josevinil

Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por joram Seg 01 Abr 2024, 06:35

Quem está conectado?
17 usuários online :: 0 registrados, 0 invisíveis e 17 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

abril 2024
SegTerQuaQuiSexSábDom
1234567
891011121314
15161718192021
22232425262728
2930     

Calendário Calendário


Remover ads by View-Password windows 8

3 participantes

Ir para baixo

Remover ads by View-Password windows 8 Empty Remover ads by View-Password windows 8

Mensagem por xismal Qui 19 Jun 2014, 19:32

Boa noite,

Não consigo remover o vírus ads by view-password.Estou pesquisando a algum tempo como posso remove-lo e não consigo.
Alguém pode me ajudar?

Abraço
Vinicius Monteiro
xismal
xismal
Iniciante
Iniciante

Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por Power Max Qui 19 Jun 2014, 19:42

Olá.

Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por xismal Qui 19 Jun 2014, 19:54

Segue:

# AdwCleaner v1.606 - Logfile created 06/19/2014 at 19:44:37
# Updated 10/05/2012 by Xplode
# Operating system : Windows 8 Pro (64 bits)
# User : Vinicius - MONTEIRO
# Running from : C:\Users\Vinicius\Desktop\adwcleaner-1.606-en.exe
# Option [Delete]


***** [Services] *****


***** [Files / Folders] *****

Folder Deleted : C:\Users\Vinicius\AppData\Local\Temp\APN
Folder Deleted : C:\ProgramData\APN

***** [Registry] *****


***** [Registre - GUID] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v9.10.9200.16921

[OK] Registry is clean.

-\\ Mozilla Firefox v29.0.1 (pt-BR)

Profile name : default
File : C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js

Deleted : user_pref("extensions.1ppHgkaFDo.scode", "(function(){try{var url=(window.self.location.href + docum[...]
Deleted : user_pref("extensions.AHjdmd.scode", "(function(){try{var url=(window.self.location.href + document.[...]
Deleted : user_pref("extensions.R43WB.scode", "(function(){try{var url=(window.self.location.href + document.c[...]
Deleted : user_pref("extensions.cG34xC.scode", "(function(){try{var url=(window.self.location.href + document.[...]
Deleted : user_pref("extensions.kZ7sOt0CTOhw.scode", "(function(){try{var url=(window.self.location.href + doc[...]
Deleted : user_pref("extensions.lZZ2E.scode", "(function(){try{var url=window.self.location.href;if(url.indexO[...]
Deleted : user_pref("extensions.tztTLMl.scode", "(function(){try{var url=(window.self.location.href + document[...]
Deleted : user_pref("extensions.ujSb.scode", "(function(){try{var url=window.self.location.href;if(url.indexOf[...]

-\\ Google Chrome v34.0.1847.131

File : C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted : "description": "A new tab page that provides an easy way to access and search th[...]

*************************

AdwCleaner[R1].txt - [2735 octets] - [19/06/2014 18:28:48]
AdwCleaner[S1].txt - [2764 octets] - [19/06/2014 18:29:38]
AdwCleaner[R2].txt - [2182 octets] - [19/06/2014 19:44:32]
AdwCleaner[S2].txt - [2135 octets] - [19/06/2014 19:44:37]

########## EOF - C:\AdwCleaner[S2].txt - [2263 octets] ##########
xismal
xismal
Iniciante
Iniciante

Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por Power Max Qui 19 Jun 2014, 19:59

Desative temporariamente seu antivírus para evitar conflitos.

* Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Remover ads by View-Password windows 8 772309 Para executá-lo corretamente siga as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Assim que ele concluir a limpeza dos problemas acesse o log (relatório) do Zoek que estará em C:\zoek-results.txt e copie todo seu conteúdo e poste em sua próxima resposta.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por xismal Sex 20 Jun 2014, 00:02


Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by Vinicius on 19/06/2014 at 20:04:24,20.
Microsoft Windows 8 Pro 6.2.9200 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vinicius\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

19/06/2014 20:06:43 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselive deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselivem deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://search.easylifeapp.com/?zy=k");
user_pref("browser.search.defaultenginename", "Mysearchdial");
user_pref("browser.search.selectedEngine", "Mysearchdial");

Added to C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default

user.js not found
---- Lines mysearchdial removed from prefs.js ----
user_pref("extensions.mysearchdial.aflt", "irmsd0101");
user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1
user_pref("extensions.mysearchdial.cr", "915236034");
user_pref("extensions.mysearchdial.dfltLng", "");
user_pref("extensions.mysearchdial.dfltSrch", true);
user_pref("extensions.mysearchdial.dnsErr", true);
user_pref("extensions.mysearchdial.excTlbr", false);
user_pref("extensions.mysearchdial.hmpg", true);
user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0T
user_pref("extensions.mysearchdial.id", "60EB698CE54288A2");
user_pref("extensions.mysearchdial.instlDay", "16079");
user_pref("extensions.mysearchdial.instlRef", "");
user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D
user_pref("extensions.mysearchdial.prdct", "mysearchdial");
user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
user_pref("extensions.mysearchdial.tlbrId", "base");
user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN
user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
user_pref("extensions.mysearchdial_i.hmpg", true);
user_pref("extensions.mysearchdial_i.newTab", false);
user_pref("extensions.mysearchdial_i.smplGrp", "none");
user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:13:25");
---- Lines crossrider removed from prefs.js ----
user_pref("extensions.crossrider.bic", "144516a4153a4feb11a1f88e5b5d1b4d");
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- Lines extensions.1ppHgkaFDo removed from prefs.js ----
user_pref("extensions.1ppHgkaFDo.epoch", "1403301665");
user_pref("extensions.1ppHgkaFDo.url", "http://transferbox.info/sync2/?q=hfZ9ofx6pftQtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsFqHaErHwMBzqUojw9rdgFpjsGr
---- Lines extensions.AHjdmd removed from prefs.js ----
user_pref("extensions.AHjdmd.epoch", "1403301666");
user_pref("extensions.AHjdmd.url", "http://getjpi77.info/sync2/?q=hfZ9oeDGDzrMCyVUojkFrShTB6lKDzt4oktitNtVh7n0rjnErjaHrjk9pjaHtMFHhd9Fqda7rjUGrTaErjUM
---- Lines extensions.R43WB removed from prefs.js ----
user_pref("extensions.R43WB.epoch", "1403301663");
user_pref("extensions.R43WB.url", "http://transferbookmy.info/sync2/?q=hfZ9ofV9CShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjn4qjwMBzqUojw9rdgFpjsGrda
---- Lines extensions.cG34xC removed from prefs.js ----
user_pref("extensions.cG34xC.epoch", "1403301665");
user_pref("extensions.cG34xC.url", "http://musicforallpro.info/sync2/?q=hfZ9oehSBfwMCyVUojaMg708BNmGWj8ckShGheDUojw9rdgFrjw4rTw9qGhIC7n0rjnEqTw4rTsErd
---- Lines extensions.kZ7sOt0CTOhw removed from prefs.js ----
user_pref("extensions.kZ7sOt0CTOhw.epoch", "1403301666");
user_pref("extensions.kZ7sOt0CTOhw.url", "http://skyfunnjobbest.info/sync2/?q=hfZ9oflRCM9HtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsErHk6rTkMBzqUojw9rdgF
---- Lines extensions.lZZ2E removed from prefs.js ----
user_pref("extensions.lZZ2E.epoch", "1403301664");
user_pref("extensions.lZZ2E.url", "http://driverguidemy.ru/sync2/?q=hfZ9oeZNAdkMCyVUojaMg708BNmGWj8ckShGheDUojw9rdrEqTw7rTnErShIC7n0rjnEqTw4rTsErdk5tN
---- Lines extensions.tztTLMl removed from prefs.js ----
user_pref("extensions.tztTLMl.epoch", "1403301664");
user_pref("extensions.tztTLMl.url", "http://groupstyleusa.info/sync2/?q=hfZ9ofDSBShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjkFrdnMBzqUojw9rdgFpjsGrd
---- Lines extensions.ujSb removed from prefs.js ----
user_pref("extensions.ujSb.epoch", "1403301663");
user_pref("extensions.ujSb.url", "http://foreveryshare.ru/sync2/?q=hfZ9oehMDdnMCyVUojaMg708BNmGWj8ckShGheDUojw9rdwHrdsHrdw9qShIC7n0rjnEqTw4rTsErdk5tNh
---- FireFox user.js and prefs.js backups ----

prefs_062014_2014_.backup

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
@="C:\\Program Files\\Internet Explorer\\iexplore.exe"

==== Deleting Files \ Folders ======================

C:\Users\Vinicius\AppData\LocalLow\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\LocalLow\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\LocalLow\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\PROGRA~3\e2ab0d9196448877 deleted
C:\Users\Vinicius\AppData\Local\genienext deleted
C:\Users\Vinicius\daemonprocess.txt deleted
C:\Users\Vinicius\.android deleted
C:\PROGRA~3\Fun2Save deleted
C:\PROGRA~2\Fun2Save deleted
C:\PROGRA~3\CheappMMe deleted
C:\PROGRA~2\CheappMMe deleted
C:\PROGRA~3\UTAdRemovaalApp deleted
C:\PROGRA~2\UTAdRemovaalApp deleted
C:\PROGRA~3\NetoCoouopon deleted
C:\PROGRA~2\NetoCoouopon deleted
C:\PROGRA~2\Mobogenie deleted
C:\PROGRA~2\Greaotsaver deleted
C:\PROGRA~2\YoutubeAdblocker deleted
C:\PROGRA~2\Optimizer Pro deleted
C:\PROGRA~2\SaveSenseLive deleted
C:\PROGRA~2\predm deleted
C:\Users\Vinicius\AppData\Roaming\awesomehp deleted
C:\Users\Vinicius\AppData\Roaming\newnext.me deleted
C:\Users\Vinicius\AppData\Roaming\SaveSense deleted
C:\Users\Vinicius\AppData\Roaming\Thinstall deleted
C:\Users\Vinicius\AppData\Roaming\baidu deleted
C:\PROGRA~3\AskPartnerNetwork deleted
C:\PROGRA~3\FileSplitUpLoad.dll deleted
C:\PROGRA~3\boost_interprocess deleted
C:\PROGRA~3\YoutubeAdblocker deleted
C:\PROGRA~3\Greaotsaver deleted
C:\PROGRA~3\SNT deleted
C:\PROGRA~3\SaveSenseLive deleted
C:\PROGRA~3\SoftWarehouse deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx deleted
C:\Users\Vinicius\AppData\Local\SaveSense deleted
C:\Users\Vinicius\AppData\Local\SaveSenseLive deleted
C:\Users\Vinicius\AppData\Local\Thinstall deleted
C:\Users\Vinicius\AppData\Local\Mobogenie deleted
C:\Users\Vinicius\AppData\Local\cache deleted
C:\Users\Vinicius\AppData\Local\PackageAware deleted
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense deleted
C:\windows\SysNative\tasks\AmiUpdXp deleted
C:\Windows\tasks\GS.Enabler-S-926685765.job deleted
C:\windows\SysNative\tasks\GS.Enabler-S-926685765 deleted
C:\windows\SysNative\tasks\SaveSense deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineCore deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineUA deleted
C:\Windows\tasks\SaveSense.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job deleted
C:\Windows\Syswow64\SETE6A1.tmp deleted
C:\Users\Vinicius\Documents\Mobogenie deleted
C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\searchplugins\Mysearchdial.xml deleted
C:\Users\Vinicius\AppData\Roaming\unins000.exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar (1).exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar.exe deleted
"C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\ejlfkngdjdampjhopdgigepkibdeidmn.crx" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\update.xml" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn" deleted
"C:\Users\Vinicius\AppData\Roaming\Kits" deleted
"C:\PROGRA~2\AskPartnerNetwork" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"search-snacks@search-snacks.com"="C:\Program Files (x86)\Mozilla Firefox\extensions\search-snacks@search-snacks.com" []
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E8874}"="C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\abn\xpi" [05/05/2014 10:48]

==== Firefox Extensions ======================

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
C2ABE67BEF924EB10804F8B727F435D5 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
3447F68CFA52BF8854FF05BADD5F4F17 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn_64.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
pcoohmdcpejoeggdnihdfhohjgdbllgm - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx[]
pelmeidfhdlhlbjimpabfcbnnojbboma - C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx[]
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]

grEaotsaveer - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
Google Wallet - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Avira SearchFree Toolbar plus Web Protection - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm
Quick Start - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
grEaotsaveer - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
TheFreeDictionarycom Extension - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap
UTAdRemovaalApp - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn
AluLCheapPrice - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg
Hey Girl - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip
Fun2Save - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih
Google Wallet - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== Chrome Fix ======================

C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage-journal deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{33BB0A4E-99AF-4226-BDF6-49120163DE86} Unknown Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Unknown Url="Not_Found"

==== Reset Google Chrome ======================

C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\quick_start@gmail.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\search-snacks@search-snacks.com deleted successfully

==== shortcuts on Users Desktops ======================

C:\Users\Vinicius\Desktop\BitTorrent.lnk - C:\Users\Vinicius\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Users\Vinicius\Desktop\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\Desktop\Customize Fences.lnk - C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop
C:\Users\Vinicius\Desktop\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\Desktop\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\Desktop\Media Player Classic.lnk - C:\Program Files (x86)\Essentials Codec Pack\MPC\mpc-hc64.exe
C:\Users\Vinicius\Desktop\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\Users\Vinicius\Desktop\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\Arduino.lnk - C:\Program Files (x86)\Arduino\arduino.exe
C:\Users\Public\Desktop\Avira Control Center.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\Users\Public\Desktop\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files (x86)\PDFCreator\PDFCreator.exe
C:\Users\Public\Desktop\PuTTY.lnk - C:\Program Files (x86)\PuTTY\putty.exe
C:\Users\Public\Desktop\Receitanet 1.04 .lnk - C:\Program Files (x86)\Programas RFB\Receitanet\Windows\Receitanet.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
C:\Users\Public\Desktop\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Public\Desktop\SolidWorks eDrawings 2013 x64 Edition.lnk - C:\Program Files (x86)\SolidWorks Corp\SolidWorks eDrawings X64 Edition\EModelViewer.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\VSM Studio.lnk - C:\Program Files (x86)\Labcenter Electronics\VSM Studio for Proteus 7\BIN\VSMStudio.exe
C:\Users\Public\Desktop\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHPHep.exe

==== shortcuts in Users Start Menu ======================

C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Ajuda do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Desinstalar IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Leia-me do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk - C:\Program Files\Acer\Acer Updater\ALU.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Ajuda.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe Start Help -help
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avwin.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira na Internet.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\weblink.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Iniciar Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk - C:\Program Files (x86)\CCleaner\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\HouseBuildingSample.lnk - C:\Program Files (x86)\GanttProject-2.6\HouseBuildingSample.gan
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\Uninstall.lnk - C:\Program Files (x86)\GanttProject-2.6\uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Enviar para o OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Database Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Gerenciador de Gravação do Lync.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Spreadsheet Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHP2.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks Explorer 2013.lnk - C:\Windows\Installer\{168EB20E-FC09-4D2E-83A9-49483710304C}\NewShortcut1.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Libraries
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -

==== shortcuts After Repair ======================

C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A4D635A4-2973-CB48-73AB-A587AB50EE67} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A96A34A3-7AFA-B31B-E5ED-5F6B640ACD77} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Vinicius\AppData\Local\Mozilla\Firefox\Profiles\dhzbkt1m.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1546 folders=520 104527292 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Vinicius\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Vinicius\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 19/06/2014 at 23:48:30,21 ======================
xismal
xismal
Iniciante
Iniciante

Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por Power Max Sex 20 Jun 2014, 00:05

Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Para executar corretamente o programa acima é só seguir as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt

Ficamos na espera.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por xismal Sex 20 Jun 2014, 00:09

Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by Vinicius on 19/06/2014 at 20:04:24,20.
Microsoft Windows 8 Pro 6.2.9200  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vinicius\Desktop\zoek.exe    [Scan all users] [Script inserted]

==== System Restore Info ======================

19/06/2014 20:06:43 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
#      102.54.94.97     rhino.acme.com          # source server
#       38.25.63.10     x.acme.com              # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1       localhost
::1             localhost

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselive deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselivem deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully

==== FireFox Fix ======================

Deleted from C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://search.easylifeapp.com/?zy=k");
user_pref("browser.search.defaultenginename", "Mysearchdial");
user_pref("browser.search.selectedEngine", "Mysearchdial");

Added to C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default

user.js not found
---- Lines mysearchdial removed from prefs.js ----
user_pref("extensions.mysearchdial.aflt", "irmsd0101");
user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1
user_pref("extensions.mysearchdial.cr", "915236034");
user_pref("extensions.mysearchdial.dfltLng", "");
user_pref("extensions.mysearchdial.dfltSrch", true);
user_pref("extensions.mysearchdial.dnsErr", true);
user_pref("extensions.mysearchdial.excTlbr", false);
user_pref("extensions.mysearchdial.hmpg", true);
user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0T
user_pref("extensions.mysearchdial.id", "60EB698CE54288A2");
user_pref("extensions.mysearchdial.instlDay", "16079");
user_pref("extensions.mysearchdial.instlRef", "");
user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D
user_pref("extensions.mysearchdial.prdct", "mysearchdial");
user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
user_pref("extensions.mysearchdial.tlbrId", "base");
user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN
user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
user_pref("extensions.mysearchdial_i.hmpg", true);
user_pref("extensions.mysearchdial_i.newTab", false);
user_pref("extensions.mysearchdial_i.smplGrp", "none");
user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:13:25");
---- Lines crossrider removed from prefs.js ----
user_pref("extensions.crossrider.bic", "144516a4153a4feb11a1f88e5b5d1b4d");
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- Lines extensions.1ppHgkaFDo removed from prefs.js ----
user_pref("extensions.1ppHgkaFDo.epoch", "1403301665");
user_pref("extensions.1ppHgkaFDo.url", "http://transferbox.info/sync2/?q=hfZ9ofx6pftQtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsFqHaErHwMBzqUojw9rdgFpjsGr
---- Lines extensions.AHjdmd removed from prefs.js ----
user_pref("extensions.AHjdmd.epoch", "1403301666");
user_pref("extensions.AHjdmd.url", "http://getjpi77.info/sync2/?q=hfZ9oeDGDzrMCyVUojkFrShTB6lKDzt4oktitNtVh7n0rjnErjaHrjk9pjaHtMFHhd9Fqda7rjUGrTaErjUM
---- Lines extensions.R43WB removed from prefs.js ----
user_pref("extensions.R43WB.epoch", "1403301663");
user_pref("extensions.R43WB.url", "http://transferbookmy.info/sync2/?q=hfZ9ofV9CShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjn4qjwMBzqUojw9rdgFpjsGrda
---- Lines extensions.cG34xC removed from prefs.js ----
user_pref("extensions.cG34xC.epoch", "1403301665");
user_pref("extensions.cG34xC.url", "http://musicforallpro.info/sync2/?q=hfZ9oehSBfwMCyVUojaMg708BNmGWj8ckShGheDUojw9rdgFrjw4rTw9qGhIC7n0rjnEqTw4rTsErd
---- Lines extensions.kZ7sOt0CTOhw removed from prefs.js ----
user_pref("extensions.kZ7sOt0CTOhw.epoch", "1403301666");
user_pref("extensions.kZ7sOt0CTOhw.url", "http://skyfunnjobbest.info/sync2/?q=hfZ9oflRCM9HtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsErHk6rTkMBzqUojw9rdgF
---- Lines extensions.lZZ2E removed from prefs.js ----
user_pref("extensions.lZZ2E.epoch", "1403301664");
user_pref("extensions.lZZ2E.url", "http://driverguidemy.ru/sync2/?q=hfZ9oeZNAdkMCyVUojaMg708BNmGWj8ckShGheDUojw9rdrEqTw7rTnErShIC7n0rjnEqTw4rTsErdk5tN
---- Lines extensions.tztTLMl removed from prefs.js ----
user_pref("extensions.tztTLMl.epoch", "1403301664");
user_pref("extensions.tztTLMl.url", "http://groupstyleusa.info/sync2/?q=hfZ9ofDSBShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjkFrdnMBzqUojw9rdgFpjsGrd
---- Lines extensions.ujSb removed from prefs.js ----
user_pref("extensions.ujSb.epoch", "1403301663");
user_pref("extensions.ujSb.url", "http://foreveryshare.ru/sync2/?q=hfZ9oehMDdnMCyVUojaMg708BNmGWj8ckShGheDUojw9rdwHrdsHrdw9qShIC7n0rjnEqTw4rTsErdk5tNh
---- FireFox user.js and prefs.js backups ----

prefs_062014_2014_.backup

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
@="C:\\Program Files\\Internet Explorer\\iexplore.exe"

==== Deleting Files \ Folders ======================

C:\Users\Vinicius\AppData\LocalLow\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\LocalLow\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\LocalLow\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\PROGRA~3\e2ab0d9196448877 deleted
C:\Users\Vinicius\AppData\Local\genienext deleted
C:\Users\Vinicius\daemonprocess.txt deleted
C:\Users\Vinicius\.android deleted
C:\PROGRA~3\Fun2Save deleted
C:\PROGRA~2\Fun2Save deleted
C:\PROGRA~3\CheappMMe deleted
C:\PROGRA~2\CheappMMe deleted
C:\PROGRA~3\UTAdRemovaalApp deleted
C:\PROGRA~2\UTAdRemovaalApp deleted
C:\PROGRA~3\NetoCoouopon deleted
C:\PROGRA~2\NetoCoouopon deleted
C:\PROGRA~2\Mobogenie deleted
C:\PROGRA~2\Greaotsaver deleted
C:\PROGRA~2\YoutubeAdblocker deleted
C:\PROGRA~2\Optimizer Pro deleted
C:\PROGRA~2\SaveSenseLive deleted
C:\PROGRA~2\predm deleted
C:\Users\Vinicius\AppData\Roaming\awesomehp deleted
C:\Users\Vinicius\AppData\Roaming\newnext.me deleted
C:\Users\Vinicius\AppData\Roaming\SaveSense deleted
C:\Users\Vinicius\AppData\Roaming\Thinstall deleted
C:\Users\Vinicius\AppData\Roaming\baidu deleted
C:\PROGRA~3\AskPartnerNetwork deleted
C:\PROGRA~3\FileSplitUpLoad.dll deleted
C:\PROGRA~3\boost_interprocess deleted
C:\PROGRA~3\YoutubeAdblocker deleted
C:\PROGRA~3\Greaotsaver deleted
C:\PROGRA~3\SNT deleted
C:\PROGRA~3\SaveSenseLive deleted
C:\PROGRA~3\SoftWarehouse deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx deleted
C:\Users\Vinicius\AppData\Local\SaveSense deleted
C:\Users\Vinicius\AppData\Local\SaveSenseLive deleted
C:\Users\Vinicius\AppData\Local\Thinstall deleted
C:\Users\Vinicius\AppData\Local\Mobogenie deleted
C:\Users\Vinicius\AppData\Local\cache deleted
C:\Users\Vinicius\AppData\Local\PackageAware deleted
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense deleted
C:\windows\SysNative\tasks\AmiUpdXp deleted
C:\Windows\tasks\GS.Enabler-S-926685765.job deleted
C:\windows\SysNative\tasks\GS.Enabler-S-926685765 deleted
C:\windows\SysNative\tasks\SaveSense deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineCore deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineUA deleted
C:\Windows\tasks\SaveSense.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job deleted
C:\Windows\Syswow64\SETE6A1.tmp deleted
C:\Users\Vinicius\Documents\Mobogenie deleted
C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\searchplugins\Mysearchdial.xml deleted
C:\Users\Vinicius\AppData\Roaming\unins000.exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar (1).exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar.exe deleted
"C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\ejlfkngdjdampjhopdgigepkibdeidmn.crx" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\update.xml" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn" deleted
"C:\Users\Vinicius\AppData\Roaming\Kits" deleted
"C:\PROGRA~2\AskPartnerNetwork" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"search-snacks@search-snacks.com"="C:\Program Files (x86)\Mozilla Firefox\extensions\search-snacks@search-snacks.com" []
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E8874}"="C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\abn\xpi" [05/05/2014 10:48]

==== Firefox Extensions ======================

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
C2ABE67BEF924EB10804F8B727F435D5 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
3447F68CFA52BF8854FF05BADD5F4F17 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn_64.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
pcoohmdcpejoeggdnihdfhohjgdbllgm - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx[]
pelmeidfhdlhlbjimpabfcbnnojbboma - C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx[]
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]

grEaotsaveer - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
Google Wallet - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Avira SearchFree Toolbar plus Web Protection - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm
Quick Start - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
grEaotsaveer - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
TheFreeDictionarycom Extension - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap
UTAdRemovaalApp - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn
AluLCheapPrice - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg
Hey Girl - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip
Fun2Save - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih
Google Wallet - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda

==== Chrome Fix ======================

C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage-journal deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{33BB0A4E-99AF-4226-BDF6-49120163DE86} Unknown  Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Unknown  Url="Not_Found"

==== Reset Google Chrome ======================

C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\quick_start@gmail.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\search-snacks@search-snacks.com deleted successfully

==== shortcuts on Users Desktops ======================

C:\Users\Vinicius\Desktop\BitTorrent.lnk - C:\Users\Vinicius\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Users\Vinicius\Desktop\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\Desktop\Customize Fences.lnk - C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop
C:\Users\Vinicius\Desktop\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\Desktop\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -  
C:\Users\Vinicius\Desktop\Media Player Classic.lnk - C:\Program Files (x86)\Essentials Codec Pack\MPC\mpc-hc64.exe
C:\Users\Vinicius\Desktop\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\Users\Vinicius\Desktop\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\Arduino.lnk - C:\Program Files (x86)\Arduino\arduino.exe
C:\Users\Public\Desktop\Avira Control Center.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\Users\Public\Desktop\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files (x86)\PDFCreator\PDFCreator.exe
C:\Users\Public\Desktop\PuTTY.lnk - C:\Program Files (x86)\PuTTY\putty.exe
C:\Users\Public\Desktop\Receitanet 1.04 .lnk - C:\Program Files (x86)\Programas RFB\Receitanet\Windows\Receitanet.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
C:\Users\Public\Desktop\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Public\Desktop\SolidWorks eDrawings 2013 x64 Edition.lnk - C:\Program Files (x86)\SolidWorks Corp\SolidWorks eDrawings X64 Edition\EModelViewer.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\VSM Studio.lnk - C:\Program Files (x86)\Labcenter Electronics\VSM Studio for Proteus 7\BIN\VSMStudio.exe
C:\Users\Public\Desktop\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHPHep.exe

==== shortcuts in Users Start Menu ======================

C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Ajuda do IRPF2014.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Desinstalar IRPF2014.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Leia-me do IRPF2014.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk - C:\Program Files\Acer\Acer Updater\ALU.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Ajuda.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe Start Help -help
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avwin.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira na Internet.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\weblink.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Iniciar Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk - C:\Program Files (x86)\CCleaner\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\HouseBuildingSample.lnk - C:\Program Files (x86)\GanttProject-2.6\HouseBuildingSample.gan
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\Uninstall.lnk - C:\Program Files (x86)\GanttProject-2.6\uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Enviar para o OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Database Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Gerenciador de Gravação do Lync.lnk -  
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Spreadsheet Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHP2.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks Explorer 2013.lnk - C:\Windows\Installer\{168EB20E-FC09-4D2E-83A9-49483710304C}\NewShortcut1.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Libraries
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -  
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -  
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -  

==== shortcuts After Repair ======================

C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A4D635A4-2973-CB48-73AB-A587AB50EE67} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A96A34A3-7AFA-B31B-E5ED-5F6B640ACD77} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Vinicius\AppData\Local\Mozilla\Firefox\Profiles\dhzbkt1m.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1546 folders=520 104527292 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Vinicius\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Vinicius\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 19/06/2014 at 23:48:30,21 ======================
xismal
xismal
Iniciante
Iniciante

Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por Power Max Sex 20 Jun 2014, 00:10

Você repetiu o mesmo relatório do Zoek que já tinha postado. Mas o que precisamos é do relatório do Junkware Removal Tool.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por Danii Sex 11 Jul 2014, 18:40

TÓPICO ARQUIVADO

Como o autor não respondeu por mais de 15 dias, o tópico foi arquivado. Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Danii
Danii
Membro Pleno
Membro Pleno

Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil

Ir para o topo Ir para baixo

Remover ads by View-Password windows 8 Empty Re: Remover ads by View-Password windows 8

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Ir para o topo

- Tópicos semelhantes

 
Permissões neste sub-fórum
Não podes responder a tópicos