Logo Hardware.com.br
sergiopina
sergiopina Novo Membro Registrado
4 Mensagens 1 Curtida

Janelas Abrindo Sozinhas

#1 Por sergiopina 11/06/2015 - 00:37
Boa noite, deixei meu pc sem senha e meu filho baixou uns joguinhos e agora toda janela que abro, quando clico em qualquer parte abre uma nova janela com propagandas e etc. Seguindo o tópico inicial fiz o log do Farbar. Já passei o Adwcleaner que costumo usar regularmente, mas mesmo após a limpeza as janelas continuam abrindo. Uso Win 8.1 64bits.

Frst - http://www.cjoint.com/c/EFldzGmoA2J
Addition - http://www.cjoint.com/c/EFldBgbcyTJ

Muito obrigado.

Sergio Pina
Responder
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#2 Por edutango
11/06/2015 - 01:08
sergiopina disse:
Boa noite, deixei meu pc sem senha e meu filho baixou uns joguinhos e agora toda janela que abro, quando clico em qualquer parte abre uma nova janela com propagandas e etc. Seguindo o tópico inicial fiz o log do Farbar. Já passei o Adwcleaner que costumo usar regularmente, mas mesmo após a limpeza as janelas continuam abrindo. Uso Win 8.1 64bits.

Frst - http://www.cjoint.com/c/EFldzGmoA2J
Addition - http://www.cjoint.com/c/EFldBgbcyTJ

Muito obrigado.

Sergio Pina

Boa noite Sergio

Execute estes 2 programas
Depois poste os logs

Remova adwares e toolbars maliciosas com o Adwcleaner

Tutorial do Junkware Removal Tool
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
sergiopina
sergiopina Novo Membro Registrado
4 Mensagens 1 Curtida
#3 Por sergiopina
11/06/2015 - 09:06
Obrigado @edutango

Após executar os programas uma janela "Find People" está aparecendo direto, mas já melhorou muito. O Norton pediu para reinstalar sua barra no Chrome e eu ignorei. Seguem os logs.

# AdwCleaner v4.206 - Relatório criado 11/06/2015 às 08:50:27
# Atualizado 01/06/2015 por Xplode
# Base de dados : 2015-06-09.1 [Servidor]
# Sistema operacional : Windows 8.1 Single Language (x64)
# Usuário : Macanudo - LENOVOSSD
# Executando de : E:\Área de Trabalho\AdwCleaner.exe
# Opção : Limpar

***** [ Serviços ] *****

[#] Serviço Excluído : globalUpdatem
[#] Serviço Excluído : SPDRIVER_1.42.1.1965

***** [ Arquivos / Pastas ] *****

Pasta Excluído : C:\Program Files (x86)\SavePass 1.1
Pasta Excluído : C:\Program Files (x86)\Ge-Force
Pasta Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm
Pasta Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh
Pasta Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\papbadoldddalgcjcicnikcfenodpghp
Pasta Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_akaelkiagnbfcccfnmbimdbplecgbikh_0.localstorage
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_akaelkiagnbfcccfnmbimdbplecgbikh_0.localstorage-journal
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_akaelkiagnbfcccfnmbimdbplecgbikh_0
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\akaelkiagnbfcccfnmbimdbplecgbikh
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_papbadoldddalgcjcicnikcfenodpghp_0.localstorage
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_papbadoldddalgcjcicnikcfenodpghp_0.localstorage-journal
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_papbadoldddalgcjcicnikcfenodpghp_0
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\papbadoldddalgcjcicnikcfenodpghp
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
Arquivo Excluído : C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal

***** [ Tarefas agendadas ] *****

Tarefa Apagado : Installer_ytd
Tarefa Apagado : ShopperPro
Tarefa Apagado : ShopperProJSUpd
Tarefa Apagado : SPDriver

***** [ Atalhos ] *****


***** [ Registro ] *****

Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Chave Apagado : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Chave Apagado : HKLM\SOFTWARE\Classes\AppID\globalupdate.exe
Chave Apagado : HKLM\SOFTWARE\010c94f6-a249-4b2d-82c9-3fbab27e3507
Chave Apagado : HKLM\SOFTWARE\0f22139c-74a6-4707-bf13-f9115f668afd
Chave Apagado : HKLM\SOFTWARE\3366e0a8-5eff-4dbf-83fb-89aae5a76e66
Chave Apagado : HKLM\SOFTWARE\5110e837-9691-4179-bf99-148dfbe440c6
Chave Apagado : HKLM\SOFTWARE\6396120d-2ab0-457e-a257-967f15e6f869
Chave Apagado : HKLM\SOFTWARE\6eba8f4a-1e35-4e46-9fce-8cdee8339feb
Chave Apagado : HKLM\SOFTWARE\c8e1126a-42dc-4847-8d61-0c0027db37aa
Chave Apagado : HKLM\SOFTWARE\eb6d22b5-a868-45ae-bfb3-a694b27fc1ca
Chave Apagado : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Chave Apagado : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Chave Apagado : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Chave Apagado : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Chave Apagado : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Chave Apagado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Chave Apagado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Chave Apagado : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Chave Apagado : HKCU\Software\GlobalUpdate
Chave Apagado : HKCU\Software\YorkNewCin
Chave Apagado : HKCU\Software\HighDefAction
Chave Apagado : HKCU\Software\ArenaHD
Chave Apagado : HKLM\SOFTWARE\GlobalUpdate
Chave Apagado : HKLM\SOFTWARE\YorkNewCin
Chave Apagado : HKLM\SOFTWARE\HighDefAction
Chave Apagado : HKLM\SOFTWARE\ArenaHD
Chave Apagado : [x64] HKLM\SOFTWARE\YorkNewCin
Chave Apagado : [x64] HKLM\SOFTWARE\HighDefAction
Chave Apagado : [x64] HKLM\SOFTWARE\ArenaHD
Chave Apagado : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\globalupdate.exe

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17840


-\\ Mozilla Firefox v38.0.1 (x86 pt-BR)


-\\ Google Chrome v43.0.2357.124

[C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Apagado [Search Provider] : hxxp://www.softonic.com.br/s/{searchTerms}
[C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Apagado [Search Provider] : hxxp://br.ask.com/web?q={searchTerms}
[C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Apagado [Search Provider] : hxxp://www.softonic.com.br/s/{searchTerms}
[C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Apagado [Homepage] : hxxp://search.conduit.com/?gd=&ctid=CT3323878&octid=EB_ORIGINAL_CTID&ISID=M02F23FD1-BC3D-4E2D-A79E-4A8B1D0B983D&SearchSource=55&CUI=&UM=5&UP=SP330DD9CC-DC1B-45F1-A9FA-873C6119D1C7&SSPV=

*************************

AdwCleaner[R0].txt - [7917 bytes] - [10/06/2015 21:20:17]
AdwCleaner[R1].txt - [1051 bytes] - [10/06/2015 21:23:12]
AdwCleaner[R2].txt - [1102 bytes] - [11/06/2015 00:15:27]
AdwCleaner[R3].txt - [10294 bytes] - [11/06/2015 08:50:05]
AdwCleaner[S0].txt - [7822 bytes] - [10/06/2015 21:20:48]
AdwCleaner[S1].txt - [9666 bytes] - [11/06/2015 08:50:27]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [9725 bytes] ##########

E aqui o do JRT:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.9.1 (06.08.2015:1)
OS: Windows 8.1 Single Language x64
Ran by Macanudo on 11/06/2015 at 8:53:18,46
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks

Successfully deleted: [Task] C:\Windows\system32\tasks\Driver Booster SkipUAC (Macanudo)



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}



~~~ Files

Successfully deleted: [File] C:\Windows\prefetch\DRIVER MAGICIAN.EXE-BD02D88E.pf
Successfully deleted: [File] C:\Users\Macanudo\appdata\local\google\chrome\user data\default\local storage\hxxps_static.boostsaves.com_0.localstorage
Successfully deleted: [File] C:\Users\Macanudo\appdata\local\google\chrome\user data\default\local storage\hxxps_static.boostsaves.com_0.localstorage-journal
Successfully deleted: [File] C:\Users\Macanudo\appdata\local\google\chrome\user data\default\local storage\hxxps_static.olark.com_0.localstorage
Successfully deleted: [File] C:\Users\Macanudo\appdata\local\google\chrome\user data\default\local storage\hxxps_static.olark.com_0.localstorage-journal



~~~ Folders

Successfully deleted: [Folder] C:\Program Files (x86)\CinemaPlus-3.2cV10.06
Successfully deleted: [Folder] C:\ProgramData\productdata
Successfully deleted: [Folder] C:\Users\Macanudo\appdata\local\installer
Successfully deleted: [Folder] C:\ProgramData\12db864551ae4c578eb17db1a9f5d3cf
Successfully deleted: [Folder] C:\ProgramData\d82913a04caa488e83b60a3eb82e8581



~~~ FireFox




~~~ Chrome

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk

[C:\Users\Macanudo\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Macanudo\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
dajedkncpodkggklbegccjpmnglmnflm
papbadoldddalgcjcicnikcfenodpghp

[C:\Users\Macanudo\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Macanudo\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[
dajedkncpodkggklbegccjpmnglmnflm,
mkfokfffehpeedafpekjeddnmnjhmcmk,
papbadoldddalgcjcicnikcfenodpghp,
pelmeidfhdlhlbjimpabfcbnnojbboma
]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11/06/2015 at 8:55:59,62
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#4 Por edutango
11/06/2015 - 11:07
Bom dia

Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
http://www.hijackthis.nl/smeenk/

*Clique com o botão direito do mouse no Zoek.exe e selecione EXECUTAR como administrador/ certos antivírus podem bloquear o download; desative temporáriamente por 15 minutos

* Copie todo este texto destacado em vermelho abaixo e cole-o no espaço em branco do Zoek:

createsrpoint;
autoclean;
emptyalltemp;
iedefaults;
resetieproxy;
resethosts;
shortcutfix;
ffdefaults;
firefoxlook;
reset chrome;
chrdefaults;
chromelook;


*Clique [Run Script]
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
sergiopina
sergiopina Novo Membro Registrado
4 Mensagens 1 Curtida
#5 Por sergiopina
11/06/2015 - 12:12
Ok @edutango fiz o indicado e as janelas sumiram. Espero que não haja mais nada. Segue o log do Zoek.


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by Macanudo on 11/06/2015 at 11:46:31,77.
Microsoft Windows 8.1 Single Language 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: E:\Área de Trabalho\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-06-11-144305.log 1621 bytes

==== System Restore Info ======================

11/06/2015 11:47:32 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~3\IDM deleted successfully
C:\PROGRA~3\ProcessLasso deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Macanudo\AppData\Roaming\Mozilla\Firefox\Profiles\6vuunlgd.default\prefs.js:

Added to C:\Users\Macanudo\AppData\Roaming\Mozilla\Firefox\Profiles\6vuunlgd.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Deleting Files \ Folders ======================

C:\Users\Macanudo\AppData\Local\Aplicativo Itau deleted
C:\windows\SysNative\Tasks\HSNSMWXB1 deleted
C:\windows\SysNative\Tasks\PJLCCXCS deleted
C:\PROGRA~2\08c8566a-63c3-489f-bace-e0e37acf4b0b deleted
C:\PROGRA~2\565994c9-e397-4282-b429-604f60c9efe1 deleted
C:\PROGRA~2\694a2357-f575-4d5d-8b32-cf60cb4aa79f deleted
C:\PROGRA~2\ec8b0050-8ed5-4b52-b893-7f3dcc5bbded deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
E:\READET~1\Easy Google Maps Downloader.lnk deleted
C:\Users\Macanudo\AppData\Roaming\Mozilla\Firefox\Profiles\6vuunlgd.default\Extensions\[email]e9d197d59f2f45f382b1aa5c14d82@8706aaed9b904554b5cb7984e9.com[/email] deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Macanudo\AppData\Roaming\Mozilla\Firefox\Profiles\6vuunlgd.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.4.0.13\coFFPlgn" [11/06/2015 11:45]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"[email]mozilla_cc@internetdownloadmanager.com[/email]"="C:\Users\Macanudo\AppData\Roaming\IDM\idmmzcc5" [11/06/2015 11:46]

==== Firefox Extensions ======================

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\Macanudo\AppData\Roaming\Mozilla\Firefox\Profiles\6vuunlgd.default
18CF51689186AEB9D1D149AEB0E92D03 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL - Microsoft Office 2013
08ACECEB47FAF053C468D8AFE44709AD - C:\Users\Macanudo\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll - Google Update


==== Chromium Look ======================

Google Chrome Version: 43.0.2357.124

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
iikflkcanblccfahdhdonehdalibjnif - No path found[]
ngpampappnmepgilojfohadhhmbhlaek - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx[17/04/2015 22:06]

Google Slides - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek
Cameras RJ - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajafcggbmpnnlpnncpppijjkhclneiag
Google Docs - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Cast - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd
Pat - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdnndnflhhocodafnnngdioocbknhjif
Pushbullet - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\chlffgpmiacpedhhbkiomidkjlcfhogd
Google Search - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Search by Image by Google - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm
Google Sheets - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap
GBBD Guardião - Itaú 30 horas - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmpojlddncminmkddkpoegdjhojjipg
selector is not a valid CSS selector - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcecbkkoecffmfljeihcmifjjdoepkn
Boomerang for Gmail - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll
Norton Security Toolbar - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk
Baixou Agora - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbfjpmeddmamejnmmppjlfglfhcjbbai
Google Wallet - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
PDF Viewer - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\oemmndcbldboiebfnladdacbdfmadadm
Gmail - Macanudo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Chromium Startpages ======================

C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Preferences
pam.","icons":{"128":"128.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7kXXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB","manifest_version":2,"name":"Gmail","options_page":"https://mail.google.com/mail/ca/#settings","permissions":["notifications"],"update_url":"http://clients2.google.com/service/update2/crx","version":"8.1"},"page_ordinal":"n","path":"pjkljhegncpnkpknbcohdijeoejaedia\\8.1_0","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem":false}}},"google":{"services":{"last_username":"[email]sergiopina@gmail.com[/email]","username":"[email]sergiopina@gmail.com[/email]"}},"homepage":"http://search.conduit.com/?gd=&ctid=CT3323878&octid=EB_ORIGINAL_CTID&ISID=M02F23FD1-BC3D-4E2D-A79E-4A8B1D0B983D&SearchSource=55&CUI=&UM=5&UP=SP330DD9CC-DC1B-45F1-A9FA-873C6119D1C7&SSPV=","homepage_is_newtabpage":true,"pinned_tabs":[],"prefs":{"preference_reset_time":"13078497527438969"},"protection":{"macs":{"browser":{"show_home_button":"897DE8E6C1E8D6040DBCE7CAA3E52FABF48C189C9D84E65576BCA84E64A74B65"},"default_search_provider":{"keyword":"C4D7989FB2C41F845125BCB70431C7C5CA27260C5334D69155333708BB022B79","name":"448BE2AD1ABC47742FDA74E248482A88BFBD968D077EE42D7FCDCE206C9E143F","search_url":"77B5FE0DBBFBFCF12F3FD77F5ABBCD0A43892E0FC75CFF50E4CC9768C4FAE553"},"default_search_provider_data":{"template_url_data":"B8405E31FFF757D952A73B584E354FCE6801798191326C52BC612E02C4618F72"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"57187E3F2D21EBBC7F73DC2EEFC4D973A3B5A6E5062CCDFA6F400E61B274F630","ahfgeienlihckogmohjhadlkjgocpleb":"FB99D9564B11DDC0BE6FBEC2C7FF6ADC0899FA6359CF4BB6BD27DB33114000F0","ajafcggbmpnnlpnncpppijjkhclneiag":"BEB47DBC1EA94195A6437787AB9F2D42A8518E955B0699D0E819F874CD892FBF","aohghmighlieiainnegkcijnfilokake":"5CF033AE1AA51989764A3529ADE728766AEA4A7ACF68249A6E9E98EC560BC43F","apdfllckaahabafndbhieahigkjlhalf":"828A4CE133CDA5D31308B970DD49CBCF79C249009BFBC0252C7098E6C844F418","bepbmhgboaologfdajaanbcjmnhjmhfn":"D2A3407E03C6E9451C478A4EAF859A1765B38EDB1893B378CAFB85862741E33E","blpcfgokakmgnkcojhhkbfbldkacnbeo":"836D1BD43D720D3A3366997ADD818A205950DEC585B510BA6E63F1F4B7CC48C3","boadgeojelhgndaghljhdicfkmllpafd":"4FA38309DDF70D52D19E286FFE1F049943ED85610A675F9CFFC53BD7D522E37E","cdnndnflhhocodafnnngdioocbknhjif":"AC60759B99488927F227E41704B58F897C409AD19AC7E90772060C2A96BA2CC3","chlffgpmiacpedhhbkiomidkjlcfhogd":"3CB8754D64384F081233748945A7E9BDF7C15DCE9D67A34B60F6A6FCF8EF1654","coobgpohoikkiipiblmjeljniedjpjpf":"1A0A71C52C79507161936496440BAD9DE96437AA7C14F745B8A808AB3E80D039","dajedkncpodkggklbegccjpmnglmnflm":"AA1DC0E45E8D960B9F781EDD1391114D4B88D9A784EC8C2F0C70E52BC905B7D9","eemcgdkfndhakfknompkggombfjjjeno":"8448191E28C455A759854E6936970FD0B5327AB4A2243165E5D18734BC15ADD5","embboanagkhdghdnaekpbpgfckeejmlo":"D98D4C2FB930D3DEC4C958288C23D700491D14D0ACCD811C810405438C349A4B","ennkphjdgehloodpbhlhldgbnhmacadg":"30065F5DB7D9C36697A051403D4D897F87F0EABDB96C1922A40649DC9A51B67D","felcaaldnbdncclmgdcncolpebgiejap":"AD7B6A3FE6895D513A4FF1DD68060353A6B5252A136ADB5B2998255A6ECA9687","gfdkimpbcpahaombhbimeihdjnejgicl":"7937550EE403A5ACFE9B7447B8519A1033B5BC67FB8A983E4470F34AE544D360","iggjjpiapeoocbijhpdfgjejahinbamm":"D85EC4394B1CDBAF1D6FE6AE10DE010872304329D34E70AB21E566A202FF0D98","iikflkcanblccfahdhdonehdalibjnif":"80DC10684281B0D99F5AC508BE5B28B68987177151C930F50A008B14BB22B1FA","ionkpanakpppmbjfbcjjclhknmhpccba":"5045B291261F69CF28B9CBAFC1B08C5A13334C650F9818969F82B7F2F2959686","jjolkgilnhdehllchmflfbhffoenkibb":"E840801047530BE7829CD24BAFE92958B936A5D42A6CDF2A41CB7811739D178A","kgmpojlddncminmkddkpoegdjhojjipg":"DA3540FAAAD2BD949269CE184342766D379C23983903F1AB911CA80E2B1C5901","kikglikieapkdofgcaifhkgmkclbamcm":"FD5685B62A9911F95551DEBA6D7521A9179F8B2AA2A8F6E475FBB92B147F9FDE","kmendfapggjehodndflmmgagdbamhnfd":"81E5A89C87C46FE4A5129BB467F7D1E51EF0F0462308CFBD73DD0FBC300C027A","lccekmodgklaepjeofjdjpbminllajkg":"6E82EC4958A90CAE331AE50A38F09503414BFD77B580171B3F30EAE576CA1243","ldcecbkkoecffmfljeihcmifjjdoepkn":"2533B32046640FD554013D3DF9BFE05F45E1A0144EBB1A63C01D3A85B54AE28F","mdanidgdpmkimeiiojknlnekblgmpdll":"8A651FC9AAD29FBA226F99235733454A25857AFAC9C69F05E07FFCD54C8483F8","mfehgcgbbipciphmccgaenjidiccnmng":"F9DCD7C72550BE20BECF6D569F6275543CD53E9C4E484F657ED3ADF6E6B65A75","mfffpogegjflfpflabcdkioaeobkgjik":"5DC6C8F31771A0755CE1E9BBDC78D4E84A7E57AA959BA42EFA78EA9DE9F84918","mgndgikekgjfcpckkfioiadnlibdjbkf":"7A79785CBF488E25818A4E753CD64652D62E091A4F9D03E9F42B7F354337A942","mhjfbmdgcfjbbpaeojofohoefgiehjai":"57EB41966A8C7832FC9F95DE8EF76988BC27EA4B95B907B0874B19848038DE69","mkfokfffehpeedafpekjeddnmnjhmcmk":"AC98D4B9490AD301B2D058CD3C78B5C5F633B3DFD238112C9F6F4A7C2DAD6E71","nbfjpmeddmamejnmmppjlfglfhcjbbai":"BEA66CFCA583DDC399D78432BA1737BC0CECA5DA29A40DEB358368ABA2F7E525","nbpagnldghgfoolbancepceaanlmhfmd":"29C96D8634E947CFE168C24925A9AADCDAFB41296CC7B306CC44DB538C35E042","neajdppkdcdipfabeoofebfddakdcjhd":"0112A3713B31CD0543173034D0BEB0954530C7C13AC61A019E134B37DC265737","ngpampappnmepgilojfohadhhmbhlaek":"3F699AAE3352B8A77A734F6C2CC6B1F03D8419E2F90FB8A09B9BC051D626D8D9","njgpiocdhdmnglomggfjkkonjjfahnom":"D79AE87574515E433ACD35025596250801EC5EE090E5C20F1545B61EA0F41F9F","nkeimhogjdpnpccoofpliimaahmaaome":"078000E7A1D4B7C7897C33C7EC9599F7D94F2BC150293E2D20F9620657125F3E","nmmhkkegccagdldgiimedpiccmgmieda":"3AE82D6D0CDE2CECFAD002F43BA25E37DD69E2DE79948CA2B8FB1B2AE5EBA7B5","objnpmdldommfciehkjopbgcnpenibik":"AA463765EFF3AE6D30BF8279F28D198D6F779BF2A988398209AF8A788F299BE3","oemmndcbldboiebfnladdacbdfmadadm":"6359ED6AA1873DACD02715B15EF518AC57C401890594A1EC810C52867B2F5F29","offlaklpbgccmeobfnimdjapgolbfhad":"121D88D17F2E8681F66998FC91FCE9E5C5078BCD4FFA210D3F090CA00C5D188C","omicccmbeaimapfpmoilkenapjjpbepc":"5DFFB089F4B7FD25DF40E474C3BA2D253EB1FA43C81C45B74DE35E2DCA566EF1","pafkbggdmjlpgkdkcbjmhmfcdpncadgh":"D081600753EAD14A22472CCCD02E3AB132930D0EAB861D79FBB1C83E316654A9","pelmeidfhdlhlbjimpabfcbnnojbboma":"1F73FE18D58569E19597D97222FA085C28C26CDA96E95AA86923AD040D1453A3","pjkljhegncpnkpknbcohdijeoejaedia":"BF79E15BE7AEC9544B4829D80270591D708965E45811B0B96D9BB950492FB46B"}},"google":{"services":{"last_username":"30E630FC737C02501A840D49B489CB3AC01EC285E13642613435203DA9BE30D0","username":"7FBFC98DB4C02B7FBAC2F51D052A287964999E2AFE0B7A4697361CBDB333DDD5"}},"homepage":"3550D3297BE1D15282A22D4F734814155EC55463861911A7E843B6D775CE2080","homepage_is_newtabpage":"52C10FE67813CD5DBB54B6D273F790ACF52B34BF39EC44B3DAE4EAF110732439","pinned_tabs":"16A645DBEC16DF4DE456066B00034F0B8244B62AFCF475D201B240F697ED0E52","prefs":{"preference_reset_time":"6234FCB8A8CFA375CE1FC9EA565DC9961DA5248EA865AC9BBBF8BFAF045B9314"},"profile":{"reset_prompt_memento":"1A8DD06BC1CA1CF71251D37E03BD6DE386CC2FFAF350051FF788D5F68B71307B"},"safebrowsing":{"incidents_sent":"9B15417D868039BE276EFFA4A4181093942618DC3029D4D21F43EF09903FAF2B"},"search_provider_overrides":"385DD6FEA5861DC3BD6A75A7959841EA78F60D6E418B962304A2F9E68BDDF2F3","session":{"restore_on_startup":"A211577E648F9AF5BB0CBCCDA45A87355CBAAAAFE645599D54B631220DDD1A63","startup_urls":"3FC632CFCF0DE1FA7744A649DA3EF2D4C02E69DC2AB97964FCE17AF64CFBC9C5"},"software_reporter":{"prompt_reason":"B871C37DD0032012D3F83444C7B8AD830B33E570C20028069EF876C320BB5784","prompt_seed":"D38D51BB0E0B5743E9F9557099180A360042EC5738235C609E28E39D697FD514","prompt_version":"2188D5B24E56404329B30A15470A96C1A03614FF5ECA35B6C08A2FC35E56C45E"},"sync":{"remaining_rollback_tries":"E750BD36C33EEC236E6CD36299651C8E855874FDEA69BD2E2ADF8C7838D1825C"}},"super_mac":"28D65E477BDF35F8CBE643426476301148921FB74D50E550F7DC61E7C61846E7"},"session":{"restore_on_startup":5,"startup_urls":["https://www.google.com.br/"]},"sync":{"remaining_rollback_tries":0}}


==== Chromium Fix ======================

C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_auto.trovit.pt_0.localstorage deleted successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_auto.trovit.pt_0.localstorage-journal deleted successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.eletroshopping.com.br_0.localstorage deleted successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.eletroshopping.com.br_0.localstorage-journal deleted successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage deleted successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_offers.boostsaves.com_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
"Old Start Page"="http://www.google.com"
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com"
"Default_Search_URL"="http://www.google.com/ie"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
"Old Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Goo Url="http://www.google.com/search?q={sear"

==== Reset Google Chrome ======================

C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts in Users Start Menu ======================

C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AllMedia Grabber\AllMedia Grabber.lnk - C:\Program Files (x86)\AllMedia Grabber\AllGrab.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AllMedia Grabber\Help.lnk - C:\Program Files (x86)\AllMedia Grabber\help.htm
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AllMedia Grabber\LICENSE.lnk - C:\Program Files (x86)\AllMedia Grabber\LICENSE.rtf
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AllMedia Grabber\Uninstall AllMedia Grabber.lnk - C:\Windows\AllMedia Grabber\uninstall.exe "/U:C:\Program Files (x86)\AllMedia Grabber\Uninstall\uninstall.xml"
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativo Itaú\Desinstalador.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativo Itaú\Itaú.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup\Google+ Auto Backup.lnk - C:\Users\Macanudo\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup\Uninstall.lnk - C:\Users\Macanudo\AppData\Local\Programs\Google\Google+ Auto Backup\Uninstall.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\Grabber Help.lnk - C:\Program Files (x86)\Internet Download Manager\grabber.chm
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\IDM Help.lnk - C:\Program Files (x86)\Internet Download Manager\idman.chm
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\Internet Download Manager.lnk - C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\license.lnk - C:\Program Files (x86)\Internet Download Manager\license.txt
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\TUTORIALS.lnk - C:\Program Files (x86)\Internet Download Manager\tutor.chm
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\Uninstall IDM.lnk - C:\Program Files (x86)\Internet Download Manager\Uninstall.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\25Clips.lnk - C:\Program Files (x86)\25 Clips\25Clips.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vibosoft\Vibosoft PDF Password Remover\Uninstall Vibosoft PDF Password Remover.lnk - C:\Program Files (x86)\Vibosoft\Vibosoft PDF Password Remover\uninst.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vibosoft\Vibosoft PDF Password Remover\Vibosoft PDF Password Remover.lnk - C:\Program Files (x86)\Vibosoft\Vibosoft PDF Password Remover\Bin\PDF_PASSWORD_REMOVER_VIBO.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Ajuda do WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.chm
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Manual do Console RAR.lnk - C:\Program Files (x86)\WinRAR\Rar.txt
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\O que há de novo na última versão.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\25Clips.lnk - C:\Program Files (x86)\25 Clips\25Clips.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe Start Help -help
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell\Classic Shell Help.lnk - C:\Program Files (x86)\Classic Shell\ClassicShell.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell\Classic Shell Readme.lnk - C:\Program Files (x86)\Classic Shell\ClassicShellReadme.rtf
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell\Classic Shell Update.lnk - C:\Program Files (x86)\Classic Shell\ClassicShellUpdate.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell\Classic Start Menu Settings.lnk - C:\Program Files (x86)\Classic Shell\ClassicStartMenu.exe -settings
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digiarty\WinX HD Video Converter Deluxe\Desinstalar o WinX HD Video Converter Deluxe.lnk - C:\Program Files (x86)\Digiarty\WinX_HD_Video_Converter_Deluxe\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digiarty\WinX HD Video Converter Deluxe\WinX HD Video Converter Deluxe.lnk - C:\Program Files (x86)\Digiarty\WinX_HD_Video_Converter_Deluxe\WinX_HD_Video_Converter_Deluxe.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Magician\Driver Magician.lnk - C:\Program Files (x86)\Driver Magician\Driver Magician.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Magician\Help.lnk - C:\Program Files (x86)\Driver Magician\Help.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Magician\Homepage.lnk - C:\Program Files (x86)\Driver Magician\Homepage.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Magician\Readme.lnk - C:\Program Files (x86)\Driver Magician\Readme.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Magician\Uninstall Driver Magician.lnk - C:\Program Files (x86)\Driver Magician\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\Definições EPSON Scan.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\EPSON Scan.lnk - C:\Windows\twain_32\escndv\escndv.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\Grabber Help.lnk - C:\Program Files (x86)\Internet Download Manager\grabber.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\IDM Help.lnk - C:\Program Files (x86)\Internet Download Manager\idman.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\Internet Download Manager.lnk - C:\Program Files (x86)\Internet Download Manager\IDMan.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\license.lnk - C:\Program Files (x86)\Internet Download Manager\license.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\TUTORIALS.lnk - C:\Program Files (x86)\Internet Download Manager\tutor.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager\Uninstall IDM.lnk - C:\Program Files (x86)\Internet Download Manager\Uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe -tab about
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe -tab update
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configurar Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Obter Ajuda.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Sobre o Java.lnk - C:\Program Files (x86)\Java\jre1.8.0_45\bin\javacpl.exe -tab about
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Verificar Atualizações.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visite Java.com.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\MSACCESS.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Enviar para o OneNote 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\ONENOTEM.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\EXCEL.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\ONENOTE.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\OUTLOOK.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\POWERPNT.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\MSPUB.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\WINWORD.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Office 2013 Upload Center.lnk - C:\Program Files (x86)\Microsoft Office 15\root\office15\MSOUC.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Ferramentas do Office 2013\Preferências de Idioma do Office 2013.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security\Norton Internet Security.lnk - C:\Program Files (x86)\Norton Internet Security\Engine64\21.7.0.11\uistub.exe /win8
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3\Configurar o Visualizador de fotos do Picasa.lnk - C:\Program Files (x86)\Google\Picasa3\PicasaPhotoViewer.exe /reconfig
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3\Desinstalar.lnk - C:\Program Files (x86)\Google\Picasa3\Uninstall.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Lasso\Process Lasso.lnk - C:\Program Files\Process Lasso\ProcessLassoLauncher.exe /showwindow /nodelay
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Lasso\Documentação\Documentação.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Recover\Help Manual.lnk - C:\Program Files\Remo Recover 4.0\rs-recover.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Recover\Remo Recover.lnk - C:\Program Files\Remo Recover 4.0\rs-recover.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Recover\Uninstall Remo Recover.lnk - C:\Program Files (x86)\Remo Recover 4.0\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Recover\Update Wizard.lnk - C:\Program Files\Remo Recover 4.0\rsupdate.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soft Organizer\Soft Organizer.lnk - C:\Program Files (x86)\Soft Organizer\SoftOrganizer.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soft Organizer\Uninstall .lnk - C:\Program Files (x86)\Soft Organizer\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soft Organizer\User's Manual.lnk - C:\Program Files (x86)\Soft Organizer\Documentation\English\Documentation.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 13.0\Vegas Pro 13.0 (64-bit).lnk - C:\Program Files (x86)\Sony\Vegas Pro 13.0\vegas130.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 13.0\Vegas Pro 13.0 Readme.lnk - C:\Program Files (x86)\Sony\Vegas Pro 13.0\Readme\Vegas_readme.htm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sorte Certa 2\Atualizador Evolution 2.lnk - C:\SCEvolution\atualizador_SCE2.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sorte Certa 2\Desinstalar Sorte Certa Evolution 2.lnk - C:\SCEvolution\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sorte Certa 2\Sorte Certa Evolution 2.lnk - C:\SCEvolution\sortecertaev2.EXE
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sorte Certa 2\Sorte Certa Evolution on the Web.lnk - C:\SCEvolution\sortecertaev.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk - C:\Program Files (x86)\VideoLAN\VLC\Documentation.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk - C:\Program Files (x86)\VideoLAN\VLC\NEWS.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk - C:\Program Files (x86)\VideoLAN\VLC\VideoLAN Website.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe --reset-config --reset-plugins-cache vlc://quit
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe -Iskins
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebSite X5 v11 - Home\Desinstalar WebSite X5 Home 11.lnk - C:\Program Files (x86)\WebSite X5 v11 - Home\unins000.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebSite X5 v11 - Home\WebSite X5 Home 11.lnk - C:\Program Files (x86)\WebSite X5 v11 - Home\WebSiteX5.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebSite X5 v11 - Home\WebSite X5 Update.lnk - C:\Program Files (x86)\WebSite X5 v11 - Home\imUpdate.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Ajuda do WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.chm
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Manual do Console RAR.lnk - C:\Program Files (x86)\WinRAR\Rar.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\O que há de novo na última versão.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk - C:\Program Files (x86)\WinRAR\WinRAR.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Picasa 3.lnk - C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\25Clips.lnk - C:\Program Files (x86)\25 Clips\25Clips.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Macanudo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Macanudo\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Macanudo\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Macanudo\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Macanudo\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

C:\Users\Macanudo\AppData\Local\Mozilla\Firefox\Profiles\6vuunlgd.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\Macanudo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=224 folders=36 108681215 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Macanudo\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Macanudo\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 11/06/2015 at 11:58:03,88 ======================
Responder Tópico
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal