Social bookmarking
Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking
Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking
Estatísticas
Temos 14810 usuários registradosO último membro registrado é Josevinil
Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Quem está conectado?
Há 17 usuários online :: 0 registrados, 0 invisíveis e 17 visitantes Nenhum
O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
Top dos mais postadores
Power Max | ||||
joram | ||||
Wings [In Memoriam] | ||||
caedurodrigues | ||||
Amigo Brasileiro | ||||
luizvilarinho | ||||
Danii | ||||
Admin | ||||
Danilo Marsaro | ||||
Andreata |
Remover ads by View-Password windows 8
3 participantes
Página 1 de 1
Remover ads by View-Password windows 8
Boa noite,
Não consigo remover o vírus ads by view-password.Estou pesquisando a algum tempo como posso remove-lo e não consigo.
Alguém pode me ajudar?
Abraço
Vinicius Monteiro
Não consigo remover o vírus ads by view-password.Estou pesquisando a algum tempo como posso remove-lo e não consigo.
Alguém pode me ajudar?
Abraço
Vinicius Monteiro
xismal- Iniciante
- Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014
Re: Remover ads by View-Password windows 8
Olá.
Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt
Ficamos na espera.
Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt
Ficamos na espera.
Power Max- Colaborador
- Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009
Re: Remover ads by View-Password windows 8
Segue:
# AdwCleaner v1.606 - Logfile created 06/19/2014 at 19:44:37
# Updated 10/05/2012 by Xplode
# Operating system : Windows 8 Pro (64 bits)
# User : Vinicius - MONTEIRO
# Running from : C:\Users\Vinicius\Desktop\adwcleaner-1.606-en.exe
# Option [Delete]
***** [Services] *****
***** [Files / Folders] *****
Folder Deleted : C:\Users\Vinicius\AppData\Local\Temp\APN
Folder Deleted : C:\ProgramData\APN
***** [Registry] *****
***** [Registre - GUID] *****
***** [Internet Browsers] *****
-\\ Internet Explorer v9.10.9200.16921
[OK] Registry is clean.
-\\ Mozilla Firefox v29.0.1 (pt-BR)
Profile name : default
File : C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js
Deleted : user_pref("extensions.1ppHgkaFDo.scode", "(function(){try{var url=(window.self.location.href + docum[...]
Deleted : user_pref("extensions.AHjdmd.scode", "(function(){try{var url=(window.self.location.href + document.[...]
Deleted : user_pref("extensions.R43WB.scode", "(function(){try{var url=(window.self.location.href + document.c[...]
Deleted : user_pref("extensions.cG34xC.scode", "(function(){try{var url=(window.self.location.href + document.[...]
Deleted : user_pref("extensions.kZ7sOt0CTOhw.scode", "(function(){try{var url=(window.self.location.href + doc[...]
Deleted : user_pref("extensions.lZZ2E.scode", "(function(){try{var url=window.self.location.href;if(url.indexO[...]
Deleted : user_pref("extensions.tztTLMl.scode", "(function(){try{var url=(window.self.location.href + document[...]
Deleted : user_pref("extensions.ujSb.scode", "(function(){try{var url=window.self.location.href;if(url.indexOf[...]
-\\ Google Chrome v34.0.1847.131
File : C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences
Deleted : "description": "A new tab page that provides an easy way to access and search th[...]
*************************
AdwCleaner[R1].txt - [2735 octets] - [19/06/2014 18:28:48]
AdwCleaner[S1].txt - [2764 octets] - [19/06/2014 18:29:38]
AdwCleaner[R2].txt - [2182 octets] - [19/06/2014 19:44:32]
AdwCleaner[S2].txt - [2135 octets] - [19/06/2014 19:44:37]
########## EOF - C:\AdwCleaner[S2].txt - [2263 octets] ##########
# AdwCleaner v1.606 - Logfile created 06/19/2014 at 19:44:37
# Updated 10/05/2012 by Xplode
# Operating system : Windows 8 Pro (64 bits)
# User : Vinicius - MONTEIRO
# Running from : C:\Users\Vinicius\Desktop\adwcleaner-1.606-en.exe
# Option [Delete]
***** [Services] *****
***** [Files / Folders] *****
Folder Deleted : C:\Users\Vinicius\AppData\Local\Temp\APN
Folder Deleted : C:\ProgramData\APN
***** [Registry] *****
***** [Registre - GUID] *****
***** [Internet Browsers] *****
-\\ Internet Explorer v9.10.9200.16921
[OK] Registry is clean.
-\\ Mozilla Firefox v29.0.1 (pt-BR)
Profile name : default
File : C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js
Deleted : user_pref("extensions.1ppHgkaFDo.scode", "(function(){try{var url=(window.self.location.href + docum[...]
Deleted : user_pref("extensions.AHjdmd.scode", "(function(){try{var url=(window.self.location.href + document.[...]
Deleted : user_pref("extensions.R43WB.scode", "(function(){try{var url=(window.self.location.href + document.c[...]
Deleted : user_pref("extensions.cG34xC.scode", "(function(){try{var url=(window.self.location.href + document.[...]
Deleted : user_pref("extensions.kZ7sOt0CTOhw.scode", "(function(){try{var url=(window.self.location.href + doc[...]
Deleted : user_pref("extensions.lZZ2E.scode", "(function(){try{var url=window.self.location.href;if(url.indexO[...]
Deleted : user_pref("extensions.tztTLMl.scode", "(function(){try{var url=(window.self.location.href + document[...]
Deleted : user_pref("extensions.ujSb.scode", "(function(){try{var url=window.self.location.href;if(url.indexOf[...]
-\\ Google Chrome v34.0.1847.131
File : C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences
Deleted : "description": "A new tab page that provides an easy way to access and search th[...]
*************************
AdwCleaner[R1].txt - [2735 octets] - [19/06/2014 18:28:48]
AdwCleaner[S1].txt - [2764 octets] - [19/06/2014 18:29:38]
AdwCleaner[R2].txt - [2182 octets] - [19/06/2014 19:44:32]
AdwCleaner[S2].txt - [2135 octets] - [19/06/2014 19:44:37]
########## EOF - C:\AdwCleaner[S2].txt - [2263 octets] ##########
xismal- Iniciante
- Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014
Re: Remover ads by View-Password windows 8
Desative temporariamente seu antivírus para evitar conflitos.
* Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executá-lo corretamente siga as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Assim que ele concluir a limpeza dos problemas acesse o log (relatório) do Zoek que estará em C:\zoek-results.txt e copie todo seu conteúdo e poste em sua próxima resposta.
* Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executá-lo corretamente siga as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Assim que ele concluir a limpeza dos problemas acesse o log (relatório) do Zoek que estará em C:\zoek-results.txt e copie todo seu conteúdo e poste em sua próxima resposta.
Power Max- Colaborador
- Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009
Re: Remover ads by View-Password windows 8
Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by Vinicius on 19/06/2014 at 20:04:24,20.
Microsoft Windows 8 Pro 6.2.9200 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vinicius\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
19/06/2014 20:06:43 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselive deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselivem deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully
==== FireFox Fix ======================
Deleted from C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://search.easylifeapp.com/?zy=k");
user_pref("browser.search.defaultenginename", "Mysearchdial");
user_pref("browser.search.selectedEngine", "Mysearchdial");
Added to C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
user.js not found
---- Lines mysearchdial removed from prefs.js ----
user_pref("extensions.mysearchdial.aflt", "irmsd0101");
user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1
user_pref("extensions.mysearchdial.cr", "915236034");
user_pref("extensions.mysearchdial.dfltLng", "");
user_pref("extensions.mysearchdial.dfltSrch", true);
user_pref("extensions.mysearchdial.dnsErr", true);
user_pref("extensions.mysearchdial.excTlbr", false);
user_pref("extensions.mysearchdial.hmpg", true);
user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0T
user_pref("extensions.mysearchdial.id", "60EB698CE54288A2");
user_pref("extensions.mysearchdial.instlDay", "16079");
user_pref("extensions.mysearchdial.instlRef", "");
user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D
user_pref("extensions.mysearchdial.prdct", "mysearchdial");
user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
user_pref("extensions.mysearchdial.tlbrId", "base");
user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN
user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
user_pref("extensions.mysearchdial_i.hmpg", true);
user_pref("extensions.mysearchdial_i.newTab", false);
user_pref("extensions.mysearchdial_i.smplGrp", "none");
user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:13:25");
---- Lines crossrider removed from prefs.js ----
user_pref("extensions.crossrider.bic", "144516a4153a4feb11a1f88e5b5d1b4d");
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- Lines extensions.1ppHgkaFDo removed from prefs.js ----
user_pref("extensions.1ppHgkaFDo.epoch", "1403301665");
user_pref("extensions.1ppHgkaFDo.url", "http://transferbox.info/sync2/?q=hfZ9ofx6pftQtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsFqHaErHwMBzqUojw9rdgFpjsGr
---- Lines extensions.AHjdmd removed from prefs.js ----
user_pref("extensions.AHjdmd.epoch", "1403301666");
user_pref("extensions.AHjdmd.url", "http://getjpi77.info/sync2/?q=hfZ9oeDGDzrMCyVUojkFrShTB6lKDzt4oktitNtVh7n0rjnErjaHrjk9pjaHtMFHhd9Fqda7rjUGrTaErjUM
---- Lines extensions.R43WB removed from prefs.js ----
user_pref("extensions.R43WB.epoch", "1403301663");
user_pref("extensions.R43WB.url", "http://transferbookmy.info/sync2/?q=hfZ9ofV9CShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjn4qjwMBzqUojw9rdgFpjsGrda
---- Lines extensions.cG34xC removed from prefs.js ----
user_pref("extensions.cG34xC.epoch", "1403301665");
user_pref("extensions.cG34xC.url", "http://musicforallpro.info/sync2/?q=hfZ9oehSBfwMCyVUojaMg708BNmGWj8ckShGheDUojw9rdgFrjw4rTw9qGhIC7n0rjnEqTw4rTsErd
---- Lines extensions.kZ7sOt0CTOhw removed from prefs.js ----
user_pref("extensions.kZ7sOt0CTOhw.epoch", "1403301666");
user_pref("extensions.kZ7sOt0CTOhw.url", "http://skyfunnjobbest.info/sync2/?q=hfZ9oflRCM9HtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsErHk6rTkMBzqUojw9rdgF
---- Lines extensions.lZZ2E removed from prefs.js ----
user_pref("extensions.lZZ2E.epoch", "1403301664");
user_pref("extensions.lZZ2E.url", "http://driverguidemy.ru/sync2/?q=hfZ9oeZNAdkMCyVUojaMg708BNmGWj8ckShGheDUojw9rdrEqTw7rTnErShIC7n0rjnEqTw4rTsErdk5tN
---- Lines extensions.tztTLMl removed from prefs.js ----
user_pref("extensions.tztTLMl.epoch", "1403301664");
user_pref("extensions.tztTLMl.url", "http://groupstyleusa.info/sync2/?q=hfZ9ofDSBShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjkFrdnMBzqUojw9rdgFpjsGrd
---- Lines extensions.ujSb removed from prefs.js ----
user_pref("extensions.ujSb.epoch", "1403301663");
user_pref("extensions.ujSb.url", "http://foreveryshare.ru/sync2/?q=hfZ9oehMDdnMCyVUojaMg708BNmGWj8ckShGheDUojw9rdwHrdsHrdw9qShIC7n0rjnEqTw4rTsErdk5tNh
---- FireFox user.js and prefs.js backups ----
prefs_062014_2014_.backup
==== Registry Fix Code ======================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
@="C:\\Program Files\\Internet Explorer\\iexplore.exe"
==== Deleting Files \ Folders ======================
C:\Users\Vinicius\AppData\LocalLow\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\LocalLow\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\LocalLow\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\PROGRA~3\e2ab0d9196448877 deleted
C:\Users\Vinicius\AppData\Local\genienext deleted
C:\Users\Vinicius\daemonprocess.txt deleted
C:\Users\Vinicius\.android deleted
C:\PROGRA~3\Fun2Save deleted
C:\PROGRA~2\Fun2Save deleted
C:\PROGRA~3\CheappMMe deleted
C:\PROGRA~2\CheappMMe deleted
C:\PROGRA~3\UTAdRemovaalApp deleted
C:\PROGRA~2\UTAdRemovaalApp deleted
C:\PROGRA~3\NetoCoouopon deleted
C:\PROGRA~2\NetoCoouopon deleted
C:\PROGRA~2\Mobogenie deleted
C:\PROGRA~2\Greaotsaver deleted
C:\PROGRA~2\YoutubeAdblocker deleted
C:\PROGRA~2\Optimizer Pro deleted
C:\PROGRA~2\SaveSenseLive deleted
C:\PROGRA~2\predm deleted
C:\Users\Vinicius\AppData\Roaming\awesomehp deleted
C:\Users\Vinicius\AppData\Roaming\newnext.me deleted
C:\Users\Vinicius\AppData\Roaming\SaveSense deleted
C:\Users\Vinicius\AppData\Roaming\Thinstall deleted
C:\Users\Vinicius\AppData\Roaming\baidu deleted
C:\PROGRA~3\AskPartnerNetwork deleted
C:\PROGRA~3\FileSplitUpLoad.dll deleted
C:\PROGRA~3\boost_interprocess deleted
C:\PROGRA~3\YoutubeAdblocker deleted
C:\PROGRA~3\Greaotsaver deleted
C:\PROGRA~3\SNT deleted
C:\PROGRA~3\SaveSenseLive deleted
C:\PROGRA~3\SoftWarehouse deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx deleted
C:\Users\Vinicius\AppData\Local\SaveSense deleted
C:\Users\Vinicius\AppData\Local\SaveSenseLive deleted
C:\Users\Vinicius\AppData\Local\Thinstall deleted
C:\Users\Vinicius\AppData\Local\Mobogenie deleted
C:\Users\Vinicius\AppData\Local\cache deleted
C:\Users\Vinicius\AppData\Local\PackageAware deleted
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense deleted
C:\windows\SysNative\tasks\AmiUpdXp deleted
C:\Windows\tasks\GS.Enabler-S-926685765.job deleted
C:\windows\SysNative\tasks\GS.Enabler-S-926685765 deleted
C:\windows\SysNative\tasks\SaveSense deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineCore deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineUA deleted
C:\Windows\tasks\SaveSense.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job deleted
C:\Windows\Syswow64\SETE6A1.tmp deleted
C:\Users\Vinicius\Documents\Mobogenie deleted
C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\searchplugins\Mysearchdial.xml deleted
C:\Users\Vinicius\AppData\Roaming\unins000.exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar (1).exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar.exe deleted
"C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\ejlfkngdjdampjhopdgigepkibdeidmn.crx" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\update.xml" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn" deleted
"C:\Users\Vinicius\AppData\Roaming\Kits" deleted
"C:\PROGRA~2\AskPartnerNetwork" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"search-snacks@search-snacks.com"="C:\Program Files (x86)\Mozilla Firefox\extensions\search-snacks@search-snacks.com" []
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E8874}"="C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\abn\xpi" [05/05/2014 10:48]
==== Firefox Extensions ======================
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
C2ABE67BEF924EB10804F8B727F435D5 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
3447F68CFA52BF8854FF05BADD5F4F17 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn_64.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
pcoohmdcpejoeggdnihdfhohjgdbllgm - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx[]
pelmeidfhdlhlbjimpabfcbnnojbboma - C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx[]
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]
grEaotsaveer - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
Google Wallet - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Avira SearchFree Toolbar plus Web Protection - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm
Quick Start - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
grEaotsaveer - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
TheFreeDictionarycom Extension - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap
UTAdRemovaalApp - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn
AluLCheapPrice - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg
Hey Girl - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip
Fun2Save - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih
Google Wallet - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
==== Chrome Fix ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage-journal deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{33BB0A4E-99AF-4226-BDF6-49120163DE86} Unknown Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Unknown Url="Not_Found"
==== Reset Google Chrome ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\quick_start@gmail.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\search-snacks@search-snacks.com deleted successfully
==== shortcuts on Users Desktops ======================
C:\Users\Vinicius\Desktop\BitTorrent.lnk - C:\Users\Vinicius\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Users\Vinicius\Desktop\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\Desktop\Customize Fences.lnk - C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop
C:\Users\Vinicius\Desktop\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\Desktop\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\Desktop\Media Player Classic.lnk - C:\Program Files (x86)\Essentials Codec Pack\MPC\mpc-hc64.exe
C:\Users\Vinicius\Desktop\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\Users\Vinicius\Desktop\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe
==== shortcuts on All Users Desktop ======================
C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\Arduino.lnk - C:\Program Files (x86)\Arduino\arduino.exe
C:\Users\Public\Desktop\Avira Control Center.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\Users\Public\Desktop\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files (x86)\PDFCreator\PDFCreator.exe
C:\Users\Public\Desktop\PuTTY.lnk - C:\Program Files (x86)\PuTTY\putty.exe
C:\Users\Public\Desktop\Receitanet 1.04 .lnk - C:\Program Files (x86)\Programas RFB\Receitanet\Windows\Receitanet.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
C:\Users\Public\Desktop\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Public\Desktop\SolidWorks eDrawings 2013 x64 Edition.lnk - C:\Program Files (x86)\SolidWorks Corp\SolidWorks eDrawings X64 Edition\EModelViewer.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\VSM Studio.lnk - C:\Program Files (x86)\Labcenter Electronics\VSM Studio for Proteus 7\BIN\VSMStudio.exe
C:\Users\Public\Desktop\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHPHep.exe
==== shortcuts in Users Start Menu ======================
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Ajuda do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Desinstalar IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Leia-me do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup
==== shortcuts in All Users Start Menu ======================
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk - C:\Program Files\Acer\Acer Updater\ALU.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Ajuda.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe Start Help -help
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avwin.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira na Internet.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\weblink.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Iniciar Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk - C:\Program Files (x86)\CCleaner\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\HouseBuildingSample.lnk - C:\Program Files (x86)\GanttProject-2.6\HouseBuildingSample.gan
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\Uninstall.lnk - C:\Program Files (x86)\GanttProject-2.6\uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Enviar para o OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Database Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Gerenciador de Gravação do Lync.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Spreadsheet Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHP2.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe
==== shortcuts in Quick Launch ======================
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks Explorer 2013.lnk - C:\Windows\Installer\{168EB20E-FC09-4D2E-83A9-49483710304C}\NewShortcut1.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Libraries
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
==== shortcuts After Repair ======================
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A4D635A4-2973-CB48-73AB-A587AB50EE67} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A96A34A3-7AFA-B31B-E5ED-5F6B640ACD77} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Vinicius\AppData\Local\Mozilla\Firefox\Profiles\dhzbkt1m.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=1546 folders=520 104527292 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Vinicius\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Vinicius\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 19/06/2014 at 23:48:30,21 ======================
xismal- Iniciante
- Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014
Re: Remover ads by View-Password windows 8
Baixe o programa Junkware Removal Tool no link abaixo:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o programa acima é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt
Ficamos na espera.
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
Para executar corretamente o programa acima é só seguir as dicas deste tutorial:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
* Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt
Ficamos na espera.
Power Max- Colaborador
- Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009
Re: Remover ads by View-Password windows 8
Zoek.exe v5.0.0.0 Updated 16-June-2014
Tool run by Vinicius on 19/06/2014 at 20:04:24,20.
Microsoft Windows 8 Pro 6.2.9200 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vinicius\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
19/06/2014 20:06:43 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselive deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselivem deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully
==== FireFox Fix ======================
Deleted from C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://search.easylifeapp.com/?zy=k");
user_pref("browser.search.defaultenginename", "Mysearchdial");
user_pref("browser.search.selectedEngine", "Mysearchdial");
Added to C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
user.js not found
---- Lines mysearchdial removed from prefs.js ----
user_pref("extensions.mysearchdial.aflt", "irmsd0101");
user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1
user_pref("extensions.mysearchdial.cr", "915236034");
user_pref("extensions.mysearchdial.dfltLng", "");
user_pref("extensions.mysearchdial.dfltSrch", true);
user_pref("extensions.mysearchdial.dnsErr", true);
user_pref("extensions.mysearchdial.excTlbr", false);
user_pref("extensions.mysearchdial.hmpg", true);
user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0T
user_pref("extensions.mysearchdial.id", "60EB698CE54288A2");
user_pref("extensions.mysearchdial.instlDay", "16079");
user_pref("extensions.mysearchdial.instlRef", "");
user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D
user_pref("extensions.mysearchdial.prdct", "mysearchdial");
user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
user_pref("extensions.mysearchdial.tlbrId", "base");
user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN
user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
user_pref("extensions.mysearchdial_i.hmpg", true);
user_pref("extensions.mysearchdial_i.newTab", false);
user_pref("extensions.mysearchdial_i.smplGrp", "none");
user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:13:25");
---- Lines crossrider removed from prefs.js ----
user_pref("extensions.crossrider.bic", "144516a4153a4feb11a1f88e5b5d1b4d");
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- Lines extensions.1ppHgkaFDo removed from prefs.js ----
user_pref("extensions.1ppHgkaFDo.epoch", "1403301665");
user_pref("extensions.1ppHgkaFDo.url", "http://transferbox.info/sync2/?q=hfZ9ofx6pftQtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsFqHaErHwMBzqUojw9rdgFpjsGr
---- Lines extensions.AHjdmd removed from prefs.js ----
user_pref("extensions.AHjdmd.epoch", "1403301666");
user_pref("extensions.AHjdmd.url", "http://getjpi77.info/sync2/?q=hfZ9oeDGDzrMCyVUojkFrShTB6lKDzt4oktitNtVh7n0rjnErjaHrjk9pjaHtMFHhd9Fqda7rjUGrTaErjUM
---- Lines extensions.R43WB removed from prefs.js ----
user_pref("extensions.R43WB.epoch", "1403301663");
user_pref("extensions.R43WB.url", "http://transferbookmy.info/sync2/?q=hfZ9ofV9CShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjn4qjwMBzqUojw9rdgFpjsGrda
---- Lines extensions.cG34xC removed from prefs.js ----
user_pref("extensions.cG34xC.epoch", "1403301665");
user_pref("extensions.cG34xC.url", "http://musicforallpro.info/sync2/?q=hfZ9oehSBfwMCyVUojaMg708BNmGWj8ckShGheDUojw9rdgFrjw4rTw9qGhIC7n0rjnEqTw4rTsErd
---- Lines extensions.kZ7sOt0CTOhw removed from prefs.js ----
user_pref("extensions.kZ7sOt0CTOhw.epoch", "1403301666");
user_pref("extensions.kZ7sOt0CTOhw.url", "http://skyfunnjobbest.info/sync2/?q=hfZ9oflRCM9HtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsErHk6rTkMBzqUojw9rdgF
---- Lines extensions.lZZ2E removed from prefs.js ----
user_pref("extensions.lZZ2E.epoch", "1403301664");
user_pref("extensions.lZZ2E.url", "http://driverguidemy.ru/sync2/?q=hfZ9oeZNAdkMCyVUojaMg708BNmGWj8ckShGheDUojw9rdrEqTw7rTnErShIC7n0rjnEqTw4rTsErdk5tN
---- Lines extensions.tztTLMl removed from prefs.js ----
user_pref("extensions.tztTLMl.epoch", "1403301664");
user_pref("extensions.tztTLMl.url", "http://groupstyleusa.info/sync2/?q=hfZ9ofDSBShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjkFrdnMBzqUojw9rdgFpjsGrd
---- Lines extensions.ujSb removed from prefs.js ----
user_pref("extensions.ujSb.epoch", "1403301663");
user_pref("extensions.ujSb.url", "http://foreveryshare.ru/sync2/?q=hfZ9oehMDdnMCyVUojaMg708BNmGWj8ckShGheDUojw9rdwHrdsHrdw9qShIC7n0rjnEqTw4rTsErdk5tNh
---- FireFox user.js and prefs.js backups ----
prefs_062014_2014_.backup
==== Registry Fix Code ======================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
@="C:\\Program Files\\Internet Explorer\\iexplore.exe"
==== Deleting Files \ Folders ======================
C:\Users\Vinicius\AppData\LocalLow\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\LocalLow\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\LocalLow\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\PROGRA~3\e2ab0d9196448877 deleted
C:\Users\Vinicius\AppData\Local\genienext deleted
C:\Users\Vinicius\daemonprocess.txt deleted
C:\Users\Vinicius\.android deleted
C:\PROGRA~3\Fun2Save deleted
C:\PROGRA~2\Fun2Save deleted
C:\PROGRA~3\CheappMMe deleted
C:\PROGRA~2\CheappMMe deleted
C:\PROGRA~3\UTAdRemovaalApp deleted
C:\PROGRA~2\UTAdRemovaalApp deleted
C:\PROGRA~3\NetoCoouopon deleted
C:\PROGRA~2\NetoCoouopon deleted
C:\PROGRA~2\Mobogenie deleted
C:\PROGRA~2\Greaotsaver deleted
C:\PROGRA~2\YoutubeAdblocker deleted
C:\PROGRA~2\Optimizer Pro deleted
C:\PROGRA~2\SaveSenseLive deleted
C:\PROGRA~2\predm deleted
C:\Users\Vinicius\AppData\Roaming\awesomehp deleted
C:\Users\Vinicius\AppData\Roaming\newnext.me deleted
C:\Users\Vinicius\AppData\Roaming\SaveSense deleted
C:\Users\Vinicius\AppData\Roaming\Thinstall deleted
C:\Users\Vinicius\AppData\Roaming\baidu deleted
C:\PROGRA~3\AskPartnerNetwork deleted
C:\PROGRA~3\FileSplitUpLoad.dll deleted
C:\PROGRA~3\boost_interprocess deleted
C:\PROGRA~3\YoutubeAdblocker deleted
C:\PROGRA~3\Greaotsaver deleted
C:\PROGRA~3\SNT deleted
C:\PROGRA~3\SaveSenseLive deleted
C:\PROGRA~3\SoftWarehouse deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx deleted
C:\Users\Vinicius\AppData\Local\SaveSense deleted
C:\Users\Vinicius\AppData\Local\SaveSenseLive deleted
C:\Users\Vinicius\AppData\Local\Thinstall deleted
C:\Users\Vinicius\AppData\Local\Mobogenie deleted
C:\Users\Vinicius\AppData\Local\cache deleted
C:\Users\Vinicius\AppData\Local\PackageAware deleted
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense deleted
C:\windows\SysNative\tasks\AmiUpdXp deleted
C:\Windows\tasks\GS.Enabler-S-926685765.job deleted
C:\windows\SysNative\tasks\GS.Enabler-S-926685765 deleted
C:\windows\SysNative\tasks\SaveSense deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineCore deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineUA deleted
C:\Windows\tasks\SaveSense.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job deleted
C:\Windows\Syswow64\SETE6A1.tmp deleted
C:\Users\Vinicius\Documents\Mobogenie deleted
C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\searchplugins\Mysearchdial.xml deleted
C:\Users\Vinicius\AppData\Roaming\unins000.exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar (1).exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar.exe deleted
"C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\ejlfkngdjdampjhopdgigepkibdeidmn.crx" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\update.xml" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn" deleted
"C:\Users\Vinicius\AppData\Roaming\Kits" deleted
"C:\PROGRA~2\AskPartnerNetwork" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"search-snacks@search-snacks.com"="C:\Program Files (x86)\Mozilla Firefox\extensions\search-snacks@search-snacks.com" []
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E8874}"="C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\abn\xpi" [05/05/2014 10:48]
==== Firefox Extensions ======================
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
C2ABE67BEF924EB10804F8B727F435D5 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
3447F68CFA52BF8854FF05BADD5F4F17 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn_64.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
pcoohmdcpejoeggdnihdfhohjgdbllgm - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx[]
pelmeidfhdlhlbjimpabfcbnnojbboma - C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx[]
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]
grEaotsaveer - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
Google Wallet - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Avira SearchFree Toolbar plus Web Protection - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm
Quick Start - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
grEaotsaveer - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
TheFreeDictionarycom Extension - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap
UTAdRemovaalApp - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn
AluLCheapPrice - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg
Hey Girl - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip
Fun2Save - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih
Google Wallet - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
==== Chrome Fix ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage-journal deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{33BB0A4E-99AF-4226-BDF6-49120163DE86} Unknown Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Unknown Url="Not_Found"
==== Reset Google Chrome ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\quick_start@gmail.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\search-snacks@search-snacks.com deleted successfully
==== shortcuts on Users Desktops ======================
C:\Users\Vinicius\Desktop\BitTorrent.lnk - C:\Users\Vinicius\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Users\Vinicius\Desktop\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\Desktop\Customize Fences.lnk - C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop
C:\Users\Vinicius\Desktop\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\Desktop\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\Desktop\Media Player Classic.lnk - C:\Program Files (x86)\Essentials Codec Pack\MPC\mpc-hc64.exe
C:\Users\Vinicius\Desktop\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\Users\Vinicius\Desktop\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe
==== shortcuts on All Users Desktop ======================
C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\Arduino.lnk - C:\Program Files (x86)\Arduino\arduino.exe
C:\Users\Public\Desktop\Avira Control Center.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\Users\Public\Desktop\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files (x86)\PDFCreator\PDFCreator.exe
C:\Users\Public\Desktop\PuTTY.lnk - C:\Program Files (x86)\PuTTY\putty.exe
C:\Users\Public\Desktop\Receitanet 1.04 .lnk - C:\Program Files (x86)\Programas RFB\Receitanet\Windows\Receitanet.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
C:\Users\Public\Desktop\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Public\Desktop\SolidWorks eDrawings 2013 x64 Edition.lnk - C:\Program Files (x86)\SolidWorks Corp\SolidWorks eDrawings X64 Edition\EModelViewer.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\VSM Studio.lnk - C:\Program Files (x86)\Labcenter Electronics\VSM Studio for Proteus 7\BIN\VSMStudio.exe
C:\Users\Public\Desktop\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHPHep.exe
==== shortcuts in Users Start Menu ======================
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Ajuda do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Desinstalar IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Leia-me do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup
==== shortcuts in All Users Start Menu ======================
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk - C:\Program Files\Acer\Acer Updater\ALU.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Ajuda.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe Start Help -help
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avwin.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira na Internet.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\weblink.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Iniciar Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk - C:\Program Files (x86)\CCleaner\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\HouseBuildingSample.lnk - C:\Program Files (x86)\GanttProject-2.6\HouseBuildingSample.gan
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\Uninstall.lnk - C:\Program Files (x86)\GanttProject-2.6\uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Enviar para o OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Database Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Gerenciador de Gravação do Lync.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Spreadsheet Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHP2.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe
==== shortcuts in Quick Launch ======================
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks Explorer 2013.lnk - C:\Windows\Installer\{168EB20E-FC09-4D2E-83A9-49483710304C}\NewShortcut1.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Libraries
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
==== shortcuts After Repair ======================
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A4D635A4-2973-CB48-73AB-A587AB50EE67} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A96A34A3-7AFA-B31B-E5ED-5F6B640ACD77} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Vinicius\AppData\Local\Mozilla\Firefox\Profiles\dhzbkt1m.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=1546 folders=520 104527292 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Vinicius\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Vinicius\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 19/06/2014 at 23:48:30,21 ======================
Tool run by Vinicius on 19/06/2014 at 20:04:24,20.
Microsoft Windows 8 Pro 6.2.9200 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Vinicius\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
19/06/2014 20:06:43 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselive deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\savesenselivem deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\APNMCP deleted successfully
==== FireFox Fix ======================
Deleted from C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://search.easylifeapp.com/?zy=k");
user_pref("browser.search.defaultenginename", "Mysearchdial");
user_pref("browser.search.selectedEngine", "Mysearchdial");
Added to C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
ProfilePath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
user.js not found
---- Lines mysearchdial removed from prefs.js ----
user_pref("extensions.mysearchdial.aflt", "irmsd0101");
user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1
user_pref("extensions.mysearchdial.cr", "915236034");
user_pref("extensions.mysearchdial.dfltLng", "");
user_pref("extensions.mysearchdial.dfltSrch", true);
user_pref("extensions.mysearchdial.dnsErr", true);
user_pref("extensions.mysearchdial.excTlbr", false);
user_pref("extensions.mysearchdial.hmpg", true);
user_pref("extensions.mysearchdial.hmpgUrl", "http://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0T
user_pref("extensions.mysearchdial.id", "60EB698CE54288A2");
user_pref("extensions.mysearchdial.instlDay", "16079");
user_pref("extensions.mysearchdial.instlRef", "");
user_pref("extensions.mysearchdial.newTabUrl", "http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D
user_pref("extensions.mysearchdial.prdct", "mysearchdial");
user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
user_pref("extensions.mysearchdial.tlbrId", "base");
user_pref("extensions.mysearchdial.tlbrSrchUrl", "http://start.mysearchdial.com/?f=3&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN
user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
user_pref("extensions.mysearchdial_i.hmpg", true);
user_pref("extensions.mysearchdial_i.newTab", false);
user_pref("extensions.mysearchdial_i.smplGrp", "none");
user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.020:13:25");
---- Lines crossrider removed from prefs.js ----
user_pref("extensions.crossrider.bic", "144516a4153a4feb11a1f88e5b5d1b4d");
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 3);
---- Lines extensions.1ppHgkaFDo removed from prefs.js ----
user_pref("extensions.1ppHgkaFDo.epoch", "1403301665");
user_pref("extensions.1ppHgkaFDo.url", "http://transferbox.info/sync2/?q=hfZ9ofx6pftQtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsFqHaErHwMBzqUojw9rdgFpjsGr
---- Lines extensions.AHjdmd removed from prefs.js ----
user_pref("extensions.AHjdmd.epoch", "1403301666");
user_pref("extensions.AHjdmd.url", "http://getjpi77.info/sync2/?q=hfZ9oeDGDzrMCyVUojkFrShTB6lKDzt4oktitNtVh7n0rjnErjaHrjk9pjaHtMFHhd9Fqda7rjUGrTaErjUM
---- Lines extensions.R43WB removed from prefs.js ----
user_pref("extensions.R43WB.epoch", "1403301663");
user_pref("extensions.R43WB.url", "http://transferbookmy.info/sync2/?q=hfZ9ofV9CShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjn4qjwMBzqUojw9rdgFpjsGrda
---- Lines extensions.cG34xC removed from prefs.js ----
user_pref("extensions.cG34xC.epoch", "1403301665");
user_pref("extensions.cG34xC.url", "http://musicforallpro.info/sync2/?q=hfZ9oehSBfwMCyVUojaMg708BNmGWj8ckShGheDUojw9rdgFrjw4rTw9qGhIC7n0rjnEqTw4rTsErd
---- Lines extensions.kZ7sOt0CTOhw removed from prefs.js ----
user_pref("extensions.kZ7sOt0CTOhw.epoch", "1403301666");
user_pref("extensions.kZ7sOt0CTOhw.url", "http://skyfunnjobbest.info/sync2/?q=hfZ9oflRCM9HtNbPhd9EtMqLDe49CNU0nVsMCMlNhd9Fqda8rTsErHk6rTkMBzqUojw9rdgF
---- Lines extensions.lZZ2E removed from prefs.js ----
user_pref("extensions.lZZ2E.epoch", "1403301664");
user_pref("extensions.lZZ2E.url", "http://driverguidemy.ru/sync2/?q=hfZ9oeZNAdkMCyVUojaMg708BNmGWj8ckShGheDUojw9rdrEqTw7rTnErShIC7n0rjnEqTw4rTsErdk5tN
---- Lines extensions.tztTLMl removed from prefs.js ----
user_pref("extensions.tztTLMl.epoch", "1403301664");
user_pref("extensions.tztTLMl.url", "http://groupstyleusa.info/sync2/?q=hfZ9ofDSBShEAen0qjwGtMqLDe49CNU0nVsMCMlNhd9FqdaFrdrFqjkFrdnMBzqUojw9rdgFpjsGrd
---- Lines extensions.ujSb removed from prefs.js ----
user_pref("extensions.ujSb.epoch", "1403301663");
user_pref("extensions.ujSb.url", "http://foreveryshare.ru/sync2/?q=hfZ9oehMDdnMCyVUojaMg708BNmGWj8ckShGheDUojw9rdwHrdsHrdw9qShIC7n0rjnEqTw4rTsErdk5tNh
---- FireFox user.js and prefs.js backups ----
prefs_062014_2014_.backup
==== Registry Fix Code ======================
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
@="C:\\Program Files\\Internet Explorer\\iexplore.exe"
==== Deleting Files \ Folders ======================
C:\Users\Vinicius\AppData\LocalLow\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\LocalLow\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\LocalLow\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\sysWoW64\config\systemprofile\AppData\LocalLow\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{6CBE9CA1-B657-E3A4-7D8A-4802192AB43C} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{A252EAF9-60ED-A031-FC9D-206624A4EA42} deleted
C:\Users\Vinicius\AppData\Local\Packages\windows_ie_ac_001\AC\{D8683169-BAE5-053D-B029-589F0F9BDBC1} deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\Packages\windows_ie_ac_001\AC\{D18D9F90-B4EC-7863-1CFA-3CC3B7E5E568} deleted
C:\PROGRA~3\e2ab0d9196448877 deleted
C:\Users\Vinicius\AppData\Local\genienext deleted
C:\Users\Vinicius\daemonprocess.txt deleted
C:\Users\Vinicius\.android deleted
C:\PROGRA~3\Fun2Save deleted
C:\PROGRA~2\Fun2Save deleted
C:\PROGRA~3\CheappMMe deleted
C:\PROGRA~2\CheappMMe deleted
C:\PROGRA~3\UTAdRemovaalApp deleted
C:\PROGRA~2\UTAdRemovaalApp deleted
C:\PROGRA~3\NetoCoouopon deleted
C:\PROGRA~2\NetoCoouopon deleted
C:\PROGRA~2\Mobogenie deleted
C:\PROGRA~2\Greaotsaver deleted
C:\PROGRA~2\YoutubeAdblocker deleted
C:\PROGRA~2\Optimizer Pro deleted
C:\PROGRA~2\SaveSenseLive deleted
C:\PROGRA~2\predm deleted
C:\Users\Vinicius\AppData\Roaming\awesomehp deleted
C:\Users\Vinicius\AppData\Roaming\newnext.me deleted
C:\Users\Vinicius\AppData\Roaming\SaveSense deleted
C:\Users\Vinicius\AppData\Roaming\Thinstall deleted
C:\Users\Vinicius\AppData\Roaming\baidu deleted
C:\PROGRA~3\AskPartnerNetwork deleted
C:\PROGRA~3\FileSplitUpLoad.dll deleted
C:\PROGRA~3\boost_interprocess deleted
C:\PROGRA~3\YoutubeAdblocker deleted
C:\PROGRA~3\Greaotsaver deleted
C:\PROGRA~3\SNT deleted
C:\PROGRA~3\SaveSenseLive deleted
C:\PROGRA~3\SoftWarehouse deleted
C:\PROGRA~3\InstallMate deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx deleted
C:\Users\Vinicius\AppData\Local\SaveSense deleted
C:\Users\Vinicius\AppData\Local\SaveSenseLive deleted
C:\Users\Vinicius\AppData\Local\Thinstall deleted
C:\Users\Vinicius\AppData\Local\Mobogenie deleted
C:\Users\Vinicius\AppData\Local\cache deleted
C:\Users\Vinicius\AppData\Local\PackageAware deleted
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 deleted
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense deleted
C:\windows\SysNative\tasks\AmiUpdXp deleted
C:\Windows\tasks\GS.Enabler-S-926685765.job deleted
C:\windows\SysNative\tasks\GS.Enabler-S-926685765 deleted
C:\windows\SysNative\tasks\SaveSense deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineCore deleted
C:\windows\SysNative\tasks\SaveSenseLiveUpdateTaskMachineUA deleted
C:\Windows\tasks\SaveSense.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job deleted
C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job deleted
C:\Windows\Syswow64\SETE6A1.tmp deleted
C:\Users\Vinicius\Documents\Mobogenie deleted
C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\searchplugins\Mysearchdial.xml deleted
C:\Users\Vinicius\AppData\Roaming\unins000.exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar (1).exe deleted
C:\Users\Vinicius\Downloads\K6N3TextHere_AE.rar.exe deleted
"C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default\extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\ejlfkngdjdampjhopdgigepkibdeidmn.crx" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn\update.xml" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" deleted
"C:\PROGRA~3\ejlfkngdjdampjhopdgigepkibdeidmn" deleted
"C:\Users\Vinicius\AppData\Roaming\Kits" deleted
"C:\PROGRA~2\AskPartnerNetwork" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar" deleted
"C:\PROGRA~2\AskPartnerNetwork\Toolbar\Updater" deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"search-snacks@search-snacks.com"="C:\Program Files (x86)\Mozilla Firefox\extensions\search-snacks@search-snacks.com" []
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E8874}"="C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\abn\xpi" [05/05/2014 10:48]
==== Firefox Extensions ======================
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Vinicius\AppData\Roaming\Mozilla\Firefox\Profiles\dhzbkt1m.default
C2ABE67BEF924EB10804F8B727F435D5 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
3447F68CFA52BF8854FF05BADD5F4F17 - C:\Users\Vinicius\AppData\Local\GAS Tecnologia\GBBD\npsf_abn_64.dll - Módulo de Proteção - Banco Santander (Brasil) S.A.
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
pcoohmdcpejoeggdnihdfhohjgdbllgm - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7C\CRX\ToolbarCR.crx[]
pelmeidfhdlhlbjimpabfcbnnojbboma - C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx[]
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
pflphaooapbgpeakohlggbpidpppgdff - C:\Users\Vinicius\AppData\Local\mysearchdial-speeddial.crx[]
grEaotsaveer - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
Google Wallet - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Avira SearchFree Toolbar plus Web Protection - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm
Quick Start - Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
grEaotsaveer - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
grEaotsaveer - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka
SNT - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh
YoutubeAdblocker - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep
YTBookMaRKu - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn
Google Quick Scroll - Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
TheFreeDictionarycom Extension - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap
UTAdRemovaalApp - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn
AluLCheapPrice - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg
Hey Girl - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip
Fun2Save - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih
Google Wallet - C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
==== Chrome Fix ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejlfkngdjdampjhopdgigepkibdeidmn deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejlfkngdjdampjhopdgigepkibdeidmn_0.localstorage-journal deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\epppehfkjagekfanekkpgpcnohohbkep deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmjockeidpdieijanlhhdngmghfmfih deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\klgehgamfljchhoglhidlhlkkidkojjn deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\cejfjkjcbacpehafgcjbpcbdhlklpfka deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\dcfhlkelmopglbcgkkendaanjclinclh deleted successfully
C:\Users\Administrador\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Administrador\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Convidado\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Users\Vinicius\AppData\Local\Torch\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\afgabimphpgkjochcoogplolgpcagmap deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjjjpdbdllefpafiaecehngopfjdnmgg deleted successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
"Default_Page_URL"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Start Page"="http://www.awesomehp.com/?type=hp&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424"
"Search Page"="http://www.awesomehp.com/web/?type=ds&ts=1392934432&from=tugs&uid=WDCXWD3200BPVT-22ZEST0_WD-WXK1A90W8424W8424&q={searchTerms}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1QzuyCtD0E0ByCzyzz0C0EyDyEtBzzzz0AtBtN0D0Tzu0CyByEtDtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R&cr=915236034&ir="
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{33BB0A4E-99AF-4226-BDF6-49120163DE86} Unknown Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Unknown Url="Not_Found"
==== Reset Google Chrome ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} deleted successfully
HKEY_USERS\S-1-5-21-3103942086-3859316969-3453366093-1001\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{41564952-412D-5637-4300-7A786E7484D7} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\quick_start@gmail.com deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\search-snacks@search-snacks.com deleted successfully
==== shortcuts on Users Desktops ======================
C:\Users\Vinicius\Desktop\BitTorrent.lnk - C:\Users\Vinicius\AppData\Roaming\BitTorrent\BitTorrent.exe
C:\Users\Vinicius\Desktop\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\Desktop\Customize Fences.lnk - C:\Program Files (x86)\Stardock\Fences\Fences.exe /FromDesktop
C:\Users\Vinicius\Desktop\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\Desktop\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\Desktop\Media Player Classic.lnk - C:\Program Files (x86)\Essentials Codec Pack\MPC\mpc-hc64.exe
C:\Users\Vinicius\Desktop\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\Users\Vinicius\Desktop\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe
==== shortcuts on All Users Desktop ======================
C:\Users\Public\Desktop\ Google Earth.lnk - C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\Arduino.lnk - C:\Program Files (x86)\Arduino\arduino.exe
C:\Users\Public\Desktop\Avira Control Center.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\Users\Public\Desktop\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\Users\Public\Desktop\PDFCreator.lnk - C:\Program Files (x86)\PDFCreator\PDFCreator.exe
C:\Users\Public\Desktop\PuTTY.lnk - C:\Program Files (x86)\PuTTY\putty.exe
C:\Users\Public\Desktop\Receitanet 1.04 .lnk - C:\Program Files (x86)\Programas RFB\Receitanet\Windows\Receitanet.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
C:\Users\Public\Desktop\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Public\Desktop\SolidWorks eDrawings 2013 x64 Edition.lnk - C:\Program Files (x86)\SolidWorks Corp\SolidWorks eDrawings X64 Edition\EModelViewer.exe
C:\Users\Public\Desktop\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Public\Desktop\VSM Studio.lnk - C:\Program Files (x86)\Labcenter Electronics\VSM Studio for Proteus 7\BIN\VSMStudio.exe
C:\Users\Public\Desktop\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHPHep.exe
==== shortcuts in Users Start Menu ======================
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Uninstall Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Ajuda do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Desinstalar IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\IRPF2014 - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Programas RFB2014\IRPF - Declaração de Ajuste Anual, Final de Espólio e Saída Definitiva do País\Leia-me do IRPF2014.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Vinicius\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup
==== shortcuts in All Users Start Menu ======================
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer\Acer Updater.lnk - C:\Program Files\Acer\Acer Updater\ALU.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Ajuda.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe Start Help -help
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avwin.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira na Internet.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\weblink.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Iniciar Avira Free Antivirus.lnk - C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner64.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk - C:\Program Files (x86)\CCleaner\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\GanttProject.lnk - C:\Program Files (x86)\GanttProject-2.6\ganttproject.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\HouseBuildingSample.lnk - C:\Program Files (x86)\GanttProject-2.6\HouseBuildingSample.gan
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject\Uninstall.lnk - C:\Program Files (x86)\GanttProject-2.6\uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Enviar para o OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Lync 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\lyncicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneDrive for Business 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\grv_icons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\joticon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Database Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\dbcicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Gerenciador de Gravação do Lync.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Spreadsheet Compare 2013.lnk - C:\Windows\Installer\{90150000-0011-0000-1000-0000000FF1CE}\sscicons.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHP.lnk - C:\Program Files (x86)\ZebHelpProcess\ZHP2.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPDiag.lnk - C:\Program Files (x86)\ZHPDiag\ZHPhep.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP\ZHPFix.lnk - C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe
==== shortcuts in Quick Launch ======================
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk - C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks 2013 x64 Edition.lnk - C:\Windows\Installer\{B6B5EA7E-B91F-443D-A958-B0062FB53804}\i386_SldWorks.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\SolidWorks Explorer 2013.lnk - C:\Windows\Installer\{168EB20E-FC09-4D2E-83A9-49483710304C}\NewShortcut1.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CHROME.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk - C:\Users\Vinicius\AppData\Roaming\Microsoft\Windows\Libraries
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
==== shortcuts After Repair ======================
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Vinicius\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A4D635A4-2973-CB48-73AB-A587AB50EE67} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A96A34A3-7AFA-B31B-E5ED-5F6B640ACD77} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google\Chrome\ExtensionInstallForcelist deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pcoohmdcpejoeggdnihdfhohjgdbllgm deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Vinicius\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\Vinicius\AppData\Local\Mozilla\Firefox\Profiles\dhzbkt1m.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Vinicius\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=1546 folders=520 104527292 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Vinicius\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Vinicius\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 19/06/2014 at 23:48:30,21 ======================
xismal- Iniciante
- Mensagens : 4
Reputação : 0
Data de inscrição : 19/06/2014
Re: Remover ads by View-Password windows 8
Você repetiu o mesmo relatório do Zoek que já tinha postado. Mas o que precisamos é do relatório do Junkware Removal Tool.
Power Max- Colaborador
- Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009
Re: Remover ads by View-Password windows 8
TÓPICO ARQUIVADO
Como o autor não respondeu por mais de 15 dias, o tópico foi arquivado. Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Como o autor não respondeu por mais de 15 dias, o tópico foi arquivado. Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Danii- Membro Pleno
- Mensagens : 571
Reputação : 80
Data de inscrição : 04/04/2014
Localização : Brasil
Tópicos semelhantes
» Remoção do View Password
» como eu faço para desistalar o ads by view password do windows 8
» Problemas com o "View-Password".
» Quero tirar o ads by View-Password do meu notebook
» Não consigo remover o ads by View-Password do meu notebook
» como eu faço para desistalar o ads by view password do windows 8
» Problemas com o "View-Password".
» Quero tirar o ads by View-Password do meu notebook
» Não consigo remover o ads by View-Password do meu notebook
Página 1 de 1
Permissões neste sub-fórum
Não podes responder a tópicos
|
|