Logo Hardware.com.br
Zil Penteado
Zil Penteado Membro Senior Registrado
205 Mensagens 5 Curtidas

Analizem meu notebook

#1 Por Zil Penteado 25/12/2014 - 19:57
# AdwCleaner v4.106 - Relatório criado 25/12/2014 às 19:48:40
# Atualizado 21/12/2014 por Xplode
# Database : 2014-12-21.4 [Live]
# Sistema Operacional : Windows 7 Ultimate (64 bits)
# Usuário : PASTOR LUIZ - PASTORLUIZ-PC
# Executando de : C:\Users\PASTOR LUIZ\Downloads\AdwCleaner.exe
# Opção : Limpar

***** [ Serviços ] *****


***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\ProgramData\Ask
Pasta Deletada : C:\ProgramData\baidu
Pasta Deletada : C:\ProgramData\Premium
Pasta Deletada : C:\ProgramData\PriceMeterLiveUpdate
Pasta Deletada : C:\ProgramData\SecTaskMan
Pasta Deletada : C:\ProgramData\Tarma Installer
Pasta Deletada : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!
Pasta Deletada : C:\Program Files (x86)\baidu
Pasta Deletada : C:\Program Files (x86)\DealPly
Pasta Deletada : C:\Program Files (x86)\Mobogenie
Pasta Deletada : C:\Program Files (x86)\openit
Pasta Deletada : C:\Users\PASTOR~1\AppData\Local\Temp\baidu
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\ConvertAd
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\PriceMeterLiveUpdate
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Smartbar
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\wincheck
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\LocalLow\HomeTab
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\LocalLow\SimplyTech
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\baidu
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\DigitalSites
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\SendSpace
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\VOPackage
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\webssearches
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
Pasta Deletada : C:\Users\Public\Documents\baidu
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Arquivo Deletada : C:\Program Files (x86)\WebCakeLayers.crx
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default\user.js
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_istart.webssearches.com_0.localstorage
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_istart.webssearches.com_0.localstorage-journal
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal

***** [ Tarefas ] *****

Tarefa Deletedo : Dealply
Tarefa Deletedo : Digital Sites
Tarefa Deletedo : MySearchDial
Tarefa Deletedo : Price Meter Updater

***** [ Atalhos ] *****


***** [ Registro ] *****

Chave Deletedo : HKCU\Software\Classes\Applications\lollipop.exe
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Main [Backup.old.Start Page]
Chave Deletedo : HKLM\SOFTWARE\Classes\speedupmypc
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dealplylive.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Chave Deletedo : HKCU\Software\Mozilla\Extends
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{44FC7A33-2E5C-48DC-B6F5-B81E8005D122}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F4B8D46C-4EEE-401B-8607-DC03025F34B1}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27CE191D-733B-4450-AFCD-096D105288C3}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0400EBCA-042C-4000-AA89-9713FBEDB671}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0BD19251-4B4B-4B94-AB16-617106245BB7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3281114F-BCAB-45E3-80D9-A6CD64D4E636}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{44533FCB-F9FB-436A-8B6B-CF637B2D465A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{44B29DDD-CF7A-454A-A275-A322A398D93F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A4DE94DB-DF03-45A3-8A5D-D1B7464B242D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{AA0F50A8-2618-4AE4-A779-9F7378555A8F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B2DB115C-8278-4947-9A07-57B53D1C4215}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B97FC455-DB33-431D-84DB-6F1514110BD5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C67281E0-78F5-4E49-9FAE-4B1B2ADAF17B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E72E9312-0367-4216-BFC7-21485FA8390B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F6CCB6C9-127E-44AE-8552-B94356F39FFE}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{FFD25630-2734-4AE9-88E6-21BF6525F3FE}
Chave Deletedo : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Deletedo : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5212D2DD-9E2B-42EB-8DAC-558834F53988}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5A815C93-A961-48AA-8129-D023BA728419}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{990D6424-0BBD-48D1-856C-31BAB56F7856}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Chave Deletedo : HKCU\Software\dsiteproducts
Chave Deletedo : HKCU\Software\Headlight
Chave Deletedo : HKCU\Software\HomeTab
Chave Deletedo : HKCU\Software\lollipop
Chave Deletedo : HKCU\Software\PriceMeterLiveUpdate
Chave Deletedo : HKCU\Software\PriceMeterUpdater
Chave Deletedo : HKCU\Software\Softonic
Chave Deletedo : HKCU\Software\Baidu
Chave Deletedo : HKCU\Software\AppDataLow\Software\simplytech
Chave Deletedo : HKLM\SOFTWARE\Uniblue
Chave Deletedo : HKLM\SOFTWARE\webssearchesSoftware
Chave Deletedo : HKLM\SOFTWARE\Baidu
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Price Meter Updater
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WhiteSmoke_US Toolbar
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ConvertAd
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wincheck
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
Chave Deletedo : [x64] HKCU\Software\Headlight
Chave Deletedo : [x64] HKCU\Software\PriceMeterLiveUpdate
Chave Deletedo : [x64] HKCU\Software\Softonic
Chave Deletedo : [x64] HKCU\Software\Baidu
Chave Deletedo : [x64] HKLM\SOFTWARE\Tarma Installer
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Chave Deletedo : HKLM\SOFTWARE\Classes\Installer\Features\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : HKLM\SOFTWARE\Classes\Installer\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PriceMeterLiveUpdate.exe

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17496

Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]

-\\ Mozilla Firefox v

[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.defaultenginename", "Mysearchdial");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.defaultengine", "Web Search");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.selectedEngine", "Mysearchdial");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.order.1", "Web Search");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.startup.homepage", "hxxp://br.hao123.com/?tn=opencd_hp_hao123_br");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("browser.search.defaultenginename", "webssearches");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("browser.search.order.1", "Mysearchdial");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("browser.search.selectedEngine", "webssearches");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.aflt", "dsites0103");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0ByCtAzy0EyDtBzytCtDtC0DyDtDtCyBtN0D0Tzu0SyByCyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.cr", "978432132");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.instlRef", "");

-\\ Google Chrome v39.0.2171.95


*************************

AdwCleaner[R0].txt - [30103 octets] - [25/12/2014 19:16:10]
AdwCleaner[S0].txt - [27046 octets] - [25/12/2014 19:48:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [27107 octets] ##########
# AdwCleaner v4.106 - Relatório criado 25/12/2014 às 19:48:40
# Atualizado 21/12/2014 por Xplode
# Database : 2014-12-21.4 [Live]
# Sistema Operacional : Windows 7 Ultimate (64 bits)
# Usuário : PASTOR LUIZ - PASTORLUIZ-PC
# Executando de : C:\Users\PASTOR LUIZ\Downloads\AdwCleaner.exe
# Opção : Limpar

***** [ Serviços ] *****


***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\ProgramData\Ask
Pasta Deletada : C:\ProgramData\baidu
Pasta Deletada : C:\ProgramData\Premium
Pasta Deletada : C:\ProgramData\PriceMeterLiveUpdate
Pasta Deletada : C:\ProgramData\SecTaskMan
Pasta Deletada : C:\ProgramData\Tarma Installer
Pasta Deletada : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!
Pasta Deletada : C:\Program Files (x86)\baidu
Pasta Deletada : C:\Program Files (x86)\DealPly
Pasta Deletada : C:\Program Files (x86)\Mobogenie
Pasta Deletada : C:\Program Files (x86)\openit
Pasta Deletada : C:\Users\PASTOR~1\AppData\Local\Temp\baidu
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\ConvertAd
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\PriceMeterLiveUpdate
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Smartbar
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\wincheck
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\LocalLow\HomeTab
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\LocalLow\SimplyTech
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\baidu
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\DigitalSites
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\SendSpace
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\VOPackage
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\webssearches
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
Pasta Deletada : C:\Users\Public\Documents\baidu
Pasta Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma
Arquivo Deletada : C:\Program Files (x86)\WebCakeLayers.crx
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default\user.js
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_istart.webssearches.com_0.localstorage
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_istart.webssearches.com_0.localstorage-journal
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage
Arquivo Deletada : C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_static.audienceinsights.net_0.localstorage-journal

***** [ Tarefas ] *****

Tarefa Deletedo : Dealply
Tarefa Deletedo : Digital Sites
Tarefa Deletedo : MySearchDial
Tarefa Deletedo : Price Meter Updater

***** [ Atalhos ] *****


***** [ Registro ] *****

Chave Deletedo : HKCU\Software\Classes\Applications\lollipop.exe
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Main [Backup.old.Start Page]
Chave Deletedo : HKLM\SOFTWARE\Classes\speedupmypc
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dealplylive.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Chave Deletedo : HKCU\Software\Mozilla\Extends
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{44FC7A33-2E5C-48DC-B6F5-B81E8005D122}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F4B8D46C-4EEE-401B-8607-DC03025F34B1}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27CE191D-733B-4450-AFCD-096D105288C3}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A18D16ED-27B2-4B83-B70C-15E73F099546}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFD485F0-96BD-47CD-BB6D-CD7DDA95F102}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0400EBCA-042C-4000-AA89-9713FBEDB671}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{0BD19251-4B4B-4B94-AB16-617106245BB7}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{3281114F-BCAB-45E3-80D9-A6CD64D4E636}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{44533FCB-F9FB-436A-8B6B-CF637B2D465A}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{44B29DDD-CF7A-454A-A275-A322A398D93F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{A4DE94DB-DF03-45A3-8A5D-D1B7464B242D}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{AA0F50A8-2618-4AE4-A779-9F7378555A8F}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B2DB115C-8278-4947-9A07-57B53D1C4215}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{B97FC455-DB33-431D-84DB-6F1514110BD5}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{C67281E0-78F5-4E49-9FAE-4B1B2ADAF17B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{E72E9312-0367-4216-BFC7-21485FA8390B}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{F6CCB6C9-127E-44AE-8552-B94356F39FFE}
Chave Deletedo : [x64] HKLM\SOFTWARE\Classes\Interface\{FFD25630-2734-4AE9-88E6-21BF6525F3FE}
Chave Deletedo : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Deletedo : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5212D2DD-9E2B-42EB-8DAC-558834F53988}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{5A815C93-A961-48AA-8129-D023BA728419}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{990D6424-0BBD-48D1-856C-31BAB56F7856}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}
Chave Deletedo : HKCU\Software\dsiteproducts
Chave Deletedo : HKCU\Software\Headlight
Chave Deletedo : HKCU\Software\HomeTab
Chave Deletedo : HKCU\Software\lollipop
Chave Deletedo : HKCU\Software\PriceMeterLiveUpdate
Chave Deletedo : HKCU\Software\PriceMeterUpdater
Chave Deletedo : HKCU\Software\Softonic
Chave Deletedo : HKCU\Software\Baidu
Chave Deletedo : HKCU\Software\AppDataLow\Software\simplytech
Chave Deletedo : HKLM\SOFTWARE\Uniblue
Chave Deletedo : HKLM\SOFTWARE\webssearchesSoftware
Chave Deletedo : HKLM\SOFTWARE\Baidu
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Digital Sites
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Price Meter Updater
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WhiteSmoke_US Toolbar
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ConvertAd
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\wincheck
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
Chave Deletedo : [x64] HKCU\Software\Headlight
Chave Deletedo : [x64] HKCU\Software\PriceMeterLiveUpdate
Chave Deletedo : [x64] HKCU\Software\Softonic
Chave Deletedo : [x64] HKCU\Software\Baidu
Chave Deletedo : [x64] HKLM\SOFTWARE\Tarma Installer
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Optimizer Pro_is1
Chave Deletedo : HKLM\SOFTWARE\Classes\Installer\Features\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : HKLM\SOFTWARE\Classes\Installer\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EC6D81181F59F2459A84176A626F9ED
Chave Deletedo : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PriceMeterLiveUpdate.exe

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17496

Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Search [Search Bar]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Search [Search Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]

-\\ Mozilla Firefox v

[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.defaultenginename", "Mysearchdial");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.defaultengine", "Web Search");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.selectedEngine", "Mysearchdial");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.search.order.1", "Web Search");
[2or0dlrw.default\prefs.js] - Linha deletada : user_pref("browser.startup.homepage", "hxxp://br.hao123.com/?tn=opencd_hp_hao123_br");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("browser.search.defaultenginename", "webssearches");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("browser.search.order.1", "Mysearchdial");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("browser.search.selectedEngine", "webssearches");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.aflt", "dsites0103");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0ByCtAzy0EyDtBzytCtDtC0DyDtDtCyBtN0D0Tzu0SyByCyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.cr", "978432132");
[65m73ec4.default\prefs.js] - Linha deletada : user_pref("extensions.irmysearch.instlRef", "");

-\\ Google Chrome v39.0.2171.95


*************************

AdwCleaner[R0].txt - [30103 octets] - [25/12/2014 19:16:10]
AdwCleaner[S0].txt - [27046 octets] - [25/12/2014 19:48:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [27107 octets] ##########
caedurodrigues
caedurodrigu... Tô em todas Registrado
710 Mensagens 257 Curtidas
#3 Por caedurodrigu...
26/12/2014 - 14:10
Boa tarde Ziljabuka,

  • Baixe:<dee34063e0aebc2b75fbd3b18cb7425azoek.exe><(...by Smeenk)>
  • Salve na sua área de trabalho!
  • Execute o arquivo Zoek.exe.
  • Usuários do Windows Vista ou Windows 7 clique com o direito sobre o arquivo Zoek.exe, depois clique em
    715687bce3607a295707796273fb2e69
  • Selecione as linhas em vermelho, clique com o direito sobre a seleção e escolha a opção copiar!

autoclean;
emptyalltemp;
emptyfolderscheck;delete


Clique com o direito em qualquer parte branca do Zoek e escolha a opção colar.
Clique Run Script!
Aguarde o scan. Ao final abrirá o bloco de notas com o relatório.
Uma cópia também será salva no seu disco local com o nome zoek-results.txt.
Anexe o zoek-results.txt na sua próxima resposta.


Um grande abraço.
Zil Penteado
Zil Penteado Membro Senior Registrado
205 Mensagens 5 Curtidas
#5 Por Zil Penteado
26/12/2014 - 16:37
Zoek.exe v5.0.0.0 Updated 24-12-2014
Tool run by PASTOR LUIZ on 26/12/2014 at 16:30:29,11.
Microsoft Windows 7 Home Basic 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\PASTOR LUIZ\Desktop\zoek.exe [Scan all users] [Quick Scan] [Auto Clean]

===== Runcheck 16:30:55,61 =====

--- Create Environment Variables 16:30:57,43
--- Create System Restore Point 16:32:29,58
--- Checking Input 16:33:00,43
--- AU AppData Check 16:33:46,46
--- Remove From Windows Installer 16:33:50,81
Obs: foi isto que apareceu
Salmos 23 stick_out_tongue.pngbig_green.png
Zil Penteado
Zil Penteado Membro Senior Registrado
205 Mensagens 5 Curtidas
#6 Por Zil Penteado
26/12/2014 - 17:39
está ai

Zoek.exe v5.0.0.0 Updated 24-12-2014
Tool run by PASTOR LUIZ on 26/12/2014 at 16:30:29,11.
Microsoft Windows 7 Home Basic 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\PASTOR LUIZ\Desktop\zoek.exe [Scan all users] [Quick Scan] [Auto Clean]

==== System Restore Info ======================

26/12/2014 16:32:58 Zoek.exe System Restore Point Created Succesfully.

==== Empty Folders Check ======================

C:\PROGRA~2\Malwarebytes' Anti-Malware deleted successfully
C:\PROGRA~2\uTorrent deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\10862 deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\GetRightToGo deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\Malwarebytes deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\Media Player Classic deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\Publish Providers deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\TP deleted successfully
C:\Users\PASTOR LUIZ\AppData\Roaming\Windows Live Writer deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E0301295-AB3E-4AF3-979F-3D453C5F9F48} deleted successfully
HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E7CB019E-BF3B-4C48-9673-48C323B18E31} deleted successfully
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD41E1A5-99E5-41BA-8703-6BE974416118} deleted successfully
HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4E39681-15F8-4fda-B8A3-B5C98378F2F3} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{E0301295-AB3E-4AF3-979F-3D453C5F9F48} deleted successfully
HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{E0301295-AB3E-4AF3-979F-3D453C5F9F48} deleted successfully
HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{E7CB019E-BF3B-4C48-9673-48C323B18E31} deleted successfully
HKEY_USERS\S-1-5-21-4171664117-1332192626-4168460914-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\{E7CB019E-BF3B-4C48-9673-48C323B18E31} deleted successfully

==== Deleting Services ======================


==== FireFox Fix ======================

ProfilePath: C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default

user.js not found
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----

prefs_122014_1701_.backup

ProfilePath: C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\65m73ec4.default

user.js not found
---- Lines a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632 removed from prefs.js ----
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.InstallationThankYouPage", false);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.InstallationTime", 1395365858);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.active", true);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.addressbar", "NA");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.addressbarenhanced", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.backgroundver", 1);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.certdomaininstaller", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.changeprevious", false);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.cookie.InstallationTime.expiration", "Fri Feb 01
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.cookie.InstallationTime.value", "1395365858");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.cookie.Op3nP4g3333333.expiration", "Fri Feb 01 2
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.cookie.Op3nP4g3333333.value", "%22ok%22");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.cookie.more_data.expiration", "Fri Feb 01 2030 0
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.cookie.more_data.value", "%7B%22bar%22%3A%22%239
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.description", "D? vida nova a sua timeline, esco
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.domain", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.enablesearch", false);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.homepage", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.iframe", false);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.InstallerIdentifiers.expiration", "Fr
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.InstallerIdentifiers.value", "%7B%22i
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.InstallerParamsCache.expiration", "Fr
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.InstallerParamsCache.value", "%7B%22s
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_appVer.expiration", "Fri Fe
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_appVer.value", "173");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_lastVersion.expiration", "F
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_lastVersion.value", "2");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_meta.expiration", "Fri Feb
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_meta.value", "%7B%7D");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_nextCheck.expiration", "Tue
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_nextCheck.value", "true");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_queue.expiration", "Fri Feb
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_queue.value", "%7B%7D");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_remote_resources.expiration
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.Resources_remote_resources.value", "%
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.installer.expiration", "Fri Feb 01 20
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.internaldb.installer.value", "%7B%22InstallerIde
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.lastDailyReport", "1398134588557");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.lastUpdate", "1398135208080");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.manifesturl", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.name", "FbCores");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.newtab", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.opensearch", "");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.pluginsurl", "https://w9u6a2p6.ssl.hwcdn.net/plu
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.pluginsversion", 1);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.publisher", "FbCores");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.searchstatus", 0);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.setnewtab", false);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.thankyou", "http://www.facebook.com");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.updateinterval", 15);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.43632.ver", 173);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.apps", "43632");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.bic", "144e2494bc217db1b177339fd24a3d23");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.cid", 43632);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.firstrun", false);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.hadappinstalled", true);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.installationdate", 1395365858);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.modetype", "production");
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.reportInstall", true);
user_pref("extensions.a781cb1a7b6ca44b4a7f2f4f6aa3776bc20711806103342cf82cdce5f924b5c5ccom43632.statsDailyCounter", 32);
---- Lines nspdl removed from prefs.js ----
user_pref("extensions.nspdl.aflt", "dsites0103");
user_pref("extensions.nspdl.cd", "2XzuyEtN2Y1L1Qzu0ByCtAzy0EyDtBzytCtDtC0DyDtDtCyBtN0D0Tzu0SyByCyBtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R")
user_pref("extensions.nspdl.cr", "978432132");
user_pref("extensions.nspdl.data._dy", "20140421");
user_pref("extensions.nspdl.data.activeDate", "20140421");
user_pref("extensions.nspdl.data.aliveDate", "20140421");
user_pref("extensions.nspdl.data.cc", "br");
user_pref("extensions.nspdl.data.configDate", "20140310");
user_pref("extensions.nspdl.data.instlDate", "20140207");
user_pref("extensions.nspdl.data.ntopen", "23302254");
user_pref("extensions.nspdl.data.ra-4e0f1ceb2775a25544adea0327823799", "3bd517dab6f68f0893bfe746af63f8c8");
user_pref("extensions.nspdl.data.ra-858c9bc4691dd7d717087c602a156841", "448681e6bc0abccb41b5fecc22e27dd4");
user_pref("extensions.nspdl.data.ra-872bb23eeaa531e88719b185b415ff36", "f336e0e3a7de3cc19b62e23671a33465");
user_pref("extensions.nspdl.data.ra-abc402c70e46e8cc70f0532c455a3c97", "14450145bbe303177183c8ac4c4c6a1d");
user_pref("extensions.nspdl.data.u0320", "2");
user_pref("extensions.nspdl.general.content", "favorites-b05961e1a09a8977762b78652998fc2a");
user_pref("extensions.nspdl.general.firstRun", false);
user_pref("extensions.nspdl.general.guid", "ec4e0282-fee1-4e9c-97b1-7c4233d8edd5");
user_pref("extensions.nspdl.general.version", "9.5.3");
---- FireFox user.js and prefs.js backups ----

prefs_122014_1701_.backup

==== Deleting Files \ Folders ======================

"C:\Windows\Installer\1b0b0db.msi" not found
C:\Users\PASTOR LUIZ\.android deleted
C:\Users\PASTOR LUIZ\AppData\Roaming\WB.CFG deleted
C:\Users\PASTOR LUIZ\AppData\Local\SoftonicAssistant deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Contabilizar Controle de Caixa deleted
C:\Windows\Installer\{118D6CE9-5F18-42F9-958A-14676A629FDE} deleted
C:\Users\PASTOR LUIZ\Downloads\Babylon10_setup_ns.exe deleted
C:\Users\PASTOR LUIZ\Downloads\SoftonicDownloader_para_bluestacks-app-player.exe deleted
C:\Windows\wininit.ini deleted
C:\windows\SysNative\tasks\060184C3-9766-46a0-B258-F4518A0B2633 deleted
C:\Windows\Launcher.exe deleted
C:\Windows\SysNative\config\systemprofile\Searches deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted
C:\Windows\Syswow64\sho33F1.tmp deleted
C:\Windows\Syswow64\sho5F54.tmp deleted
C:\Windows\Syswow64\sho898D.tmp deleted
C:\Windows\Syswow64\sho8D82.tmp deleted
C:\Windows\Syswow64\shoA3FF.tmp deleted
C:\Windows\Syswow64\shoB101.tmp deleted
C:\Windows\Syswow64\shoB275.tmp deleted
C:\Windows\Syswow64\shoC5BF.tmp deleted
C:\Windows\Syswow64\shoD8EB.tmp deleted
C:\Windows\Syswow64\InstallUtil.InstallLog deleted
C:\Windows\SysWow64\searchplugins deleted
C:\Windows\SysWow64\Extensions deleted
C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default\extensions\staged deleted
C:\Users\PASTOR LUIZ\AppData\Roaming\unins000.exe deleted
C:\Users\PASTOR LUIZ\AppData\Roaming\unins001.exe deleted
C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default\extensions\[email]toolbar10873@findwide.com[/email] deleted
C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\65m73ec4.default\nspdl deleted
C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\65m73ec4.default\extensions\[email]toolbar10873@findwide.com[/email] deleted
"C:\Users\PASTOR LUIZ\AppData\Local\{32DC1CF1-6D7F-4213-A486-DB7453478D5C}" deleted

==== Files Recently Created / Modified ======================

====== C:\Windows ====
====== C:\Users\PASTOR~1\AppData\Local\Temp ====
2014-12-26 15:19:58 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\mediaenchx321.dll
2014-12-26 15:19:58 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\mediaenchx32.dll
2014-12-24 15:13:52 0D3138FB3A96D9E67E2751203E397CA0 536216 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\379AD14A310B4d5383B2ABF2EF8FB81B\DispRun.exe
2014-12-24 15:13:47 138AE84F46FDF6BF0F9A7F3205106FD0 1569312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\PCFaster_1103-b4e1b032.exe
2014-12-24 15:13:47 0F9638D863449A8577A1186B78DD3DC9 1285312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\spark_1706-7a62f19d.exe
2014-12-24 15:13:46 AA4E3AD0A3EDC4D46BD7BC4B8B3293BB 319858 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\VOPackage.exe
2014-12-24 15:13:41 53F14089FB782DE7B9C8F2578FED8AAB 441896 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\webssearches_23_12-21c2870b.exe
2014-12-24 14:57:25 CC3671050EE9152465711B978662BB9B 199168 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}\iSetup.dll
2014-12-24 14:57:21 E8CB9C5779EF5D89A39F528214980A50 4723915 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}\Shredder64.exe
2014-12-24 14:56:13 0D3138FB3A96D9E67E2751203E397CA0 536216 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\E1D3FFC3C2B84604AF9ADBB500E792F3\DispRun.exe
2014-12-24 14:56:01 E2A81E848B53412920AB817452E24E2E 22522056 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.9.76716.exe
2014-12-24 14:56:01 2E9FA53C5E29F6583D3F6FAB4651AE2D 43122528 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\spark_install.exe
2014-12-24 14:55:57 138AE84F46FDF6BF0F9A7F3205106FD0 1569312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\PCFaster_1103-b4e1b032.exe
2014-12-24 14:55:56 AA4E3AD0A3EDC4D46BD7BC4B8B3293BB 319858 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\VOPackage.exe
2014-12-24 14:55:56 0F9638D863449A8577A1186B78DD3DC9 1285312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\spark_1706-7a62f19d.exe
2014-12-24 14:55:55 53F14089FB782DE7B9C8F2578FED8AAB 441896 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\webssearches_23_12-21c2870b.exe
2014-12-24 14:51:13 01C504A0234E3973993618E6480D50F2 362248 ----atw- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6908\s6908.exe
2014-12-24 14:50:58 01C504A0234E3973993618E6480D50F2 362248 ----atw- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\s6859.exe
2014-12-24 14:50:47 01C504A0234E3973993618E6480D50F2 362248 ----atw- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\s6824.exe
2014-12-24 12:55:48 639837306BF9F2D634E3B8F64D54502B 176175 ------w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\is45637729\11973251_stp\Generic_vo.exe
2014-12-22 05:26:54 92C7E77AAC7FF8D31EF300CE4C7AC5D6 407744 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\sparksetup_dll\bdxctrl.dll
2014-12-22 05:26:54 8EFD423DF03AB49504CAF056B13B4542 1009856 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\sparksetup_dll\bdxui.dll
2014-12-22 05:26:52 CF5192961EE62067451503A5E7E21561 607424 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\sparksetup_dll\bdcommon.dll
2014-12-20 11:19:11 22385EE33688B10B61DA1D8CA9549E4B 120192 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\clear.fiClient\cabarc.exe
====== Java Cache =====
2014-12-26 15:19:39 46F212128982E525FDA15EF9902C9D5D 883322 ----a-w- C:\Users\PASTOR LUIZ\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\13\14a64c0d-79f1e5ea
2014-12-26 15:19:58 705861A5EE499B411199847B1B6DCCE8 214480 ----a-w- C:\Users\PASTOR LUIZ\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\55\250b5f7-51a3f889
====== C:\Windows\SysWOW64 =====
2014-12-22 17:14:15 3C2E1F7B383740B24ABC2CD59467A6E9 47 ----a-w- C:\Windows\SysWOW64\local.cfg
2014-12-18 12:23:47 0481346D0EF668C0D4FF69A7BBEFA846 115712 ----a-w- C:\Windows\SysWOW64\ieUnatt.exe
====== C:\Windows\SysWOW64\drivers =====
====== C:\Windows\Sysnative =====
2014-12-18 12:23:47 5564883BFB523D5078A5B1FE3128FD63 144384 ----a-w- C:\Windows\Sysnative\ieUnatt.exe
====== C:\Windows\Sysnative\drivers =====
2014-12-25 19:00:18 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys
2014-12-25 19:00:03 A646C2DDB8C46E9B20A326FAF566646C 63704 ----a-w- C:\Windows\Sysnative\drivers\mwac.sys
2014-12-25 19:00:03 478CC94C937D235CB0A96AB8F2359D81 93400 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys
2014-12-25 18:58:48 CA43F8904E24BBE49982E4C0B29E6579 25816 ----a-w- C:\Windows\Sysnative\drivers\mbam.sys
2014-12-10 12:02:13 70988118145F5F10EF24720B97F35F65 119296 ----a-w- C:\Windows\Sysnative\drivers\tdx.sys
====== C:\Windows\Tasks ======
2014-12-25 12:06:13 B63AD96D5AB77552EFDB7D2277C3B0CB 3886 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Acrobat Update Task
2014-12-19 16:41:21 29B60CCEF77D4A8DD2262ABD675B5FFD 3006 ----a-w- C:\Windows\Sysnative\Tasks\{AF95E8B8-FAA5-40D9-8584-0387AB95A539}
====== C:\Windows\Temp ======
======= C:\Program Files =====
======= C:\PROGRA~2 =====
2014-12-24 17:38:23 -------- d-----w- C:\PROGRA~2\Diebold
======= C: =====
2014-12-13 12:05:49 3F756630877F94C4330060BF262D8504 1024 ----a-w- C:\.rnd
====== C:\Users\PASTOR LUIZ\AppData\Roaming ======
2014-12-24 15:00:00 -------- d-----w- C:\Users\PASTOR LUIZ\AppData\Local\ZaraRadio
====== C:\Users\PASTOR LUIZ ======
2014-12-25 21:15:34 9208E5A0A844FCCB39B5252C07B4E860 2173952 ----a-w- C:\Users\PASTOR LUIZ\Downloads\AdwCleaner.exe
2014-12-24 15:00:44 A0C2B014A656FBE3A4390D14A21262A9 25 ----a-w- C:\Users\PASTOR LUIZ\CurrentSong.txt
2014-12-24 14:49:26 54E95F906BED7D40520745D397BDBB8C 594184 ----a-w- C:\Users\PASTOR LUIZ\Downloads\ZaraRadio.exe
2014-12-18 14:13:40 3B77916FB8788BB5293117ED991F0075 13444288 ----a-w- C:\Users\PASTOR LUIZ\Downloads\BlueStacks-SplitInstaller_native (3).exe
2014-12-16 12:48:14 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2014-12-16 12:46:54 A67A5B77528DAB64B40B1129FA7D173D 880784 ----a-w- C:\Users\PASTOR LUIZ\Downloads\GoogleEarthSetup.exe
2014-12-13 19:14:24 7AB123E71A7020BDCDC6117E2B6EC83E 121465 ----a-w- C:\Users\PASTOR LUIZ\final_bstSnapshot_71694.jpg
2014-12-01 21:58:42 1FE75BE6C54CDEF2FE1D542E27F8CDAF 119180 ----a-w- C:\Users\PASTOR LUIZ\final_bstSnapshot_49540.jpg
2014-11-27 08:44:11 C44DE5DA4DDE30B798F526993C26FBA6 87715 ----a-w- C:\Users\PASTOR LUIZ\final_bstSnapshot_17197.jpg
2014-11-26 19:54:36 1B323E9F3B4630BBF5D323C6207186C7 109710 ----a-w- C:\Users\PASTOR LUIZ\final_bstSnapshot_88775.jpg

====== C: exe-files ==
2014-12-25 21:15:34 9208E5A0A844FCCB39B5252C07B4E860 2173952 ----a-w- C:\Users\PASTOR LUIZ\Downloads\AdwCleaner.exe
2014-12-25 12:05:40 516C021FEBEDE2962C9252DF85606C76 382168 ----a-w- C:\Users\Todos os Usuários\Adobe\ARM\S\27241\AdobeARMHelper.exe
2014-12-25 12:05:40 516C021FEBEDE2962C9252DF85606C76 382168 ----a-w- C:\ProgramData\Adobe\ARM\S\27241\AdobeARMHelper.exe
2014-12-24 17:38:23 CD9109534403399ACC7D2A079F9B5608 518968 ----a-w- C:\Program Files (x86)\Diebold\Warsaw\core.exe
2014-12-24 17:38:23 9B4DBEC675DAECE805DD440D1142C119 720066 ----a-w- C:\Program Files (x86)\Diebold\Warsaw\unins000.exe
2014-12-24 17:38:23 1583D2F8DA3D461267D0099D058BD695 250680 ----a-w- C:\Program Files (x86)\Diebold\Warsaw\uninstall_core.exe
2014-12-24 17:38:23 0B4A7D4792EA5ED77150E81B157F94C0 343864 ----a-w- C:\Program Files (x86)\Diebold\Warsaw\wsffcmgr.exe
2014-12-24 17:30:02 276D4D5BEDBE57D026294CAF614F5845 17120 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7LJ2QYHH\adobe_flash_setup[1].exe
2014-12-24 15:13:52 0D3138FB3A96D9E67E2751203E397CA0 536216 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\379AD14A310B4d5383B2ABF2EF8FB81B\DispRun.exe
2014-12-24 15:13:47 138AE84F46FDF6BF0F9A7F3205106FD0 1569312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\PCFaster_1103-b4e1b032.exe
2014-12-24 15:13:47 0F9638D863449A8577A1186B78DD3DC9 1285312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\spark_1706-7a62f19d.exe
2014-12-24 15:13:46 AA4E3AD0A3EDC4D46BD7BC4B8B3293BB 319858 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\VOPackage.exe
2014-12-24 15:13:41 53F14089FB782DE7B9C8F2578FED8AAB 441896 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\webssearches_23_12-21c2870b.exe
2014-12-24 15:08:29 !HASH: COULD NOT OPEN FILE !!!!! 590724 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HI3TS5O7\Setup[1].exe
2014-12-24 15:00:26 AA3DE7C51994EA56D4B181D90605B6E1 45056 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YAR6RAA8\carunasu[1].exe
2014-12-24 15:00:25 D2BD3AB999ED4B780A115BA3194A2B5E 143360 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YDZNEMGD\CASrv[1].exe
2014-12-24 15:00:09 !HASH: COULD NOT OPEN FILE !!!!! 1736576 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7LJ2QYHH\ConvertAdSetup[1].exe
2014-12-24 14:59:57 0C1A4BAB6AF21F4D3AD0B84F303234A6 465209 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HI3TS5O7\WinCheckSetup[1].exe
2014-12-24 14:57:21 E8CB9C5779EF5D89A39F528214980A50 4723915 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}\Shredder64.exe
2014-12-24 14:56:13 0D3138FB3A96D9E67E2751203E397CA0 536216 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\E1D3FFC3C2B84604AF9ADBB500E792F3\DispRun.exe
2014-12-24 14:56:01 E2A81E848B53412920AB817452E24E2E 22522056 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\Baidu_Secure_SystemUp_4.0.9.76716.exe
2014-12-24 14:56:01 2E9FA53C5E29F6583D3F6FAB4651AE2D 43122528 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\spark_install.exe
2014-12-24 14:55:57 138AE84F46FDF6BF0F9A7F3205106FD0 1569312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\PCFaster_1103-b4e1b032.exe
2014-12-24 14:55:56 AA4E3AD0A3EDC4D46BD7BC4B8B3293BB 319858 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\VOPackage.exe
2014-12-24 14:55:56 0F9638D863449A8577A1186B78DD3DC9 1285312 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\spark_1706-7a62f19d.exe
2014-12-24 14:55:55 53F14089FB782DE7B9C8F2578FED8AAB 441896 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\webssearches_23_12-21c2870b.exe
2014-12-24 14:51:13 01C504A0234E3973993618E6480D50F2 362248 ----atw- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6908\s6908.exe
2014-12-24 14:50:58 01C504A0234E3973993618E6480D50F2 362248 ----atw- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6859\s6859.exe
2014-12-24 14:50:47 01C504A0234E3973993618E6480D50F2 362248 ----atw- C:\Users\PASTOR LUIZ\AppData\Local\Temp\n6824\s6824.exe
2014-12-24 14:49:26 54E95F906BED7D40520745D397BDBB8C 594184 ----a-w- C:\Users\PASTOR LUIZ\Downloads\ZaraRadio.exe
2014-12-24 12:55:48 639837306BF9F2D634E3B8F64D54502B 176175 ------w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\is45637729\11973251_stp\Generic_vo.exe
2014-12-20 11:19:11 22385EE33688B10B61DA1D8CA9549E4B 120192 ----a-w- C:\Users\PASTOR LUIZ\AppData\Local\Temp\clear.fiClient\cabarc.exe
=== C: other files ==
2014-12-25 19:00:18 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-12-25 19:00:03 A646C2DDB8C46E9B20A326FAF566646C 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-12-25 19:00:03 478CC94C937D235CB0A96AB8F2359D81 93400 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-12-25 18:58:48 CA43F8904E24BBE49982E4C0B29E6579 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-12-22 13:04:46 5C58B89871253E7176B255084A76906A 46016696 ----a-w- C:\Users\PASTOR LUIZ\Downloads\Fl-A.Vo.Po.Ci.PB.14.GospelFiles.zip
2014-12-22 12:52:42 BDE9B1A12EFD406AAEB192F914C36E48 47352422 ----a-w- C:\Users\PASTOR LUIZ\Downloads\Fl-A.Vo.Po.Ci.AV.14.GospelFiles.zip

==== Startup Registry Enabled ======================

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="%ProgramFiles%\Windows\Sidebar.exe /autoRun"

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"

[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"

[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"mctadmin"="C:\Windows\System32\mctadmin.exe"
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe /qn /x{voidguid}"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"avgnt"="C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe /min"
"Avira Systray"="C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe"

==== Startup Registry Disabled x64 ======================

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Adobe ARM"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\APSDaemon]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="APSDaemon"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ArcadeMovieService]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ArcadeMovieService"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Acer\\clear.fi\\Movie\\clear.fiMovieService.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BackupManagerTray]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="BackupManagerTray"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\NTI\\Acer Backup Manager\\BackupManagerTray.exe\" -h -k"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"
"hkey"="HKCU"
"command"="\"C:\\Program Files (x86)\\Common Files\\Ahead\\Lib\\NMBgMonitor.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BrStsMon00]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="BrStsMon00"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Browny02\\Brother\\BrStMonW.exe /AUTORUN"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ControlCenter4]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ControlCenter4"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\ControlCenter4\\BrCcBoot.exe /autorun"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Diebold - Warsaw]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Diebold - Warsaw"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Diebold\\Warsaw\\core.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Dolby Advanced Audio v2]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Dolby Advanced Audio v2"
"hkey"="HKLM"
"command"="\"C:\\Dolby PCEE4\\pcee4.exe\" -autostart"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ETDCtrl]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ETDCtrl"
"hkey"="HKLM"
"command"="%ProgramFiles%\\Elantech\\ETDCtrl.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Google Update]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Google Update"
"hkey"="HKCU"
"command"="\"C:\\Users\\PASTOR LUIZ\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\GrooveMonitor]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="GrooveMonitor"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Microsoft Office\\Office12\\GrooveMonitor.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HotKeysCmds]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="HotKeysCmds"
"hkey"="HKLM"
"command"="C:\\Windows\\system32\\hkcmd.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IgfxTray]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="IgfxTray"
"hkey"="HKLM"
"command"="C:\\Windows\\system32\\igfxtray.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IndexSearch]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="IndexSearch"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Nuance\\PaperPort\\IndexSearch.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\JustVoip]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="JustVoip"
"hkey"="HKCU"
"command"="\"C:\\Program Files (x86)\\JustVoip.com\\JustVoip\\JustVoip.exe\" -nosplash -minimized"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\LManager]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="LManager"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Launch Manager\\LManager.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PaperPort PTD]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PaperPort PTD"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Nuance\\PaperPort\\pptd40nt.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PDF5 Registry Controller]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PDF5 Registry Controller"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Nuance\\PDF Viewer Plus\\RegistryController.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PDFHook]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PDFHook"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Nuance\\PDF Viewer Plus\\pdfpro5hook.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Persistence]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Persistence"
"hkey"="HKLM"
"command"="C:\\Windows\\system32\\igfxpers.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PMBVolumeWatcher]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PMBVolumeWatcher"
"hkey"="HKLM"
"command"="C:\\Program Files (x86)\\Sony\\PlayMemories Home\\PMBVolumeWatcher.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Power Management]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Power Management"
"hkey"="HKLM"
"command"="C:\\Program Files\\Acer\\Acer ePower Management\\ePowerTray.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PPort12reminder]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PPort12reminder"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\Nuance\\PaperPort\\Ereg\\Ereg.exe\" -r \"C:\\ProgramData\\ScanSoft\\PaperPort\\12\\Config\\Ereg\\Ereg.ini\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="QuickTime Task"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVBg_Dolby]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="RtHDVBg_Dolby"
"hkey"="HKLM"
"command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVBg64.exe /FORPCEE4 "

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="RtHDVCpl"
"hkey"="HKLM"
"command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SoftonicAssistant]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SoftonicAssistant"
"hkey"="HKCU"
"command"="\"C:\\Users\\PASTOR LUIZ\\AppData\\Local\\SoftonicAssistant\\SoftonicAssistant.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SuiteTray]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SuiteTray"
"hkey"="HKLM"
"command"="\"C:\\Program Files (x86)\\EgisTec MyWinLockerSuite\\x86\\SuiteTray.exe\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WinCheck]
"key"="SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="WinCheck"
"hkey"="HKLM"
"command"="C:\\Users\\PASTOR LUIZ\\AppData\\Local\\wincheck\\wincheck.exe"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^PASTOR LUIZ^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Recorte de tela e Iniciador do OneNote 2007.lnk]
"path"="C:\\Users\\PASTOR LUIZ\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Recorte de tela e Iniciador do OneNote 2007.lnk"
"backup"="C:\\Windows\\pss\\Recorte de tela e Iniciador do OneNote 2007.lnk.Startup"
"backupExtension"=".Startup"
"command"="C:\\PROGRA~2\\MICROS~4\\Office12\\ONENOTEM.EXE /tsr"
"item"="Recorte de tela e Iniciador do OneNote 2007"


==== Task Scheduler Jobs ======================

C:\Windows\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task]
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000Core.job --a------ C:\Users\PASTOR LUIZ\AppData\Local\Facebook\Update\FacebookUpdate.exe [14/07/2012 00:32]
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000UA.job --a------ [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ [Undetermined Task]
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000Core.job --a------ C:\Users\PASTOR LUIZ\AppData\Local\Google\Update\GoogleUpdate.exe [08/12/2012 13:28]
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000UA.job --a------ [Undetermined Task]

==== Other Scheduled Tasks ======================

"C:\Windows\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\Windows\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\Windows\SysNative\tasks\clear.fi" ["C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe"]
"C:\Windows\SysNative\tasks\clear.fiAgent" ["C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe"]
"C:\Windows\SysNative\tasks\DMREngine" ["C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe"]
"C:\Windows\SysNative\tasks\EgisUpdate" ["C:\Program Files\EgisTec IPS\EgisUpdate.exe"]
"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000Core" [C:\Users\PASTOR LUIZ\AppData\Local\Facebook\Update\FacebookUpdate.exe]
"C:\Windows\SysNative\tasks\FacebookUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000UA" [C:\Users\PASTOR LUIZ\AppData\Local\Facebook\Update\FacebookUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000Core" [C:\Users\PASTOR LUIZ\AppData\Local\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\GoogleUpdateTaskUserS-1-5-21-4171664117-1332192626-4168460914-1000UA" [C:\Users\PASTOR LUIZ\AppData\Local\Google\Update\GoogleUpdate.exe]
"C:\Windows\SysNative\tasks\PMMUpdate" ["C:\Program Files\EgisTec IPS\PMMUpdate.exe"]
"C:\Windows\SysNative\tasks\RealUpgradeLogonTaskS-1-5-21-4171664117-1332192626-4168460914-1000" [C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe]
"C:\Windows\SysNative\tasks\RealUpgradeScheduledTaskS-1-5-21-4171664117-1332192626-4168460914-1000" [C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe]
"C:\Windows\SysNative\tasks\User_Feed_Synchronization-{B27B00F5-0F2E-496E-BDB3-9A76D200A666}" [C:\Windows\system32\msfeedssync.exe]
"C:\Windows\SysNative\tasks\{2093DC48-F45C-4F6F-90C0-711CF7203292}" ["c:\program files\internet explorer\iexplore.exe" http://ui.skype.com/ui/0/6.7.60.102/pt/abandoninstall?page=tsMain]
"C:\Windows\SysNative\tasks\{AF95E8B8-FAA5-40D9-8584-0387AB95A539}" [C:\Program Files (x86)\Google\Chrome\Application\chrome.exe]
"C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe]
"C:\Windows\SysNative\tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask" [%systemroot%\system32\sc.exe start osppsvc]
"C:\Windows\SysNative\tasks\Sony Corporation\Sony Home Network Library\SOHLib SOHDms" [C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe]

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default
user_pref("browser.newtab.url", "about:newtab");
user_pref("keyword.URL", "");

ProfilePath: C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\65m73ec4.default
user_pref("browser.startup.homepage", "www.google.com.br");
user_pref("keyword.URL", "");

==== Firefox Extensions Registry ======================

[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E886D}"="C:\Users\PASTOR LUIZ\AppData\Local\GAS Tecnologia\GBBD\cef\xpi" [08/10/2014 23:50]

==== Firefox Extensions ======================

ProfilePath: C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\2or0dlrw.default
- Undetermined - %ProfilePath%\extensions\{e7cb019e-bf3b-4c48-9673-48c323b18e31}

ProfilePath: C:\Users\PASTOR~1\AppData\Roaming\Mozilla\Firefox\Profiles\65m73ec4.default
- Charles Autoconfiguration - %ProfilePath%\extensions\{3e9a3920-1b27-11da-8cd6-0800200c9a66}

==== Firefox Plugins ======================

Profilepath: C:\Users\PASTOR LUIZ\AppData\Roaming\Mozilla\Firefox\Profiles\65m73ec4.default
B0ADE55ACE2B4EC8C821D54464F54112 - C:\Users\PASTOR LUIZ\AppData\Local\GAS Tecnologia\GBBD\npsf_cef.dll - Módulo de Proteção - Caixa Economica Federal
F6419D3B99616C80C947B9D7B427348B - C:\Users\PASTOR LUIZ\AppData\Local\GAS Tecnologia\GBBD\npsf_uni.dll - Guardião Itaú 30 horas
3CD19649B2C3023D65E67C056457A2BC - C:\Users\PASTOR LUIZ\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
2AB6A7F373290AE20A19CF5F306E8C97 - C:\Users\PASTOR LUIZ\AppData\Roaming\Mozilla\plugins\npo1d.dll - Google Talk Plugin Video Renderer
76EFD64CD206B93E2EB5320A23C19AD7 - C:\Users\PASTOR LUIZ\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll - Google Talk Plugin
F6D12679B9112358AC705A1308156F59 - C:\Users\PASTOR LUIZ\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
0C0C5C207121C7A78414A8250E8E099A - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll - Shockwave for Director / Shockwave for Director
EAF8BBB88F9785622403499D9BCEE610 - C:\Users\PASTOR LUIZ\AppData\Local\GAS Tecnologia\GBBD\npsf_cef_64.dll - Módulo de Proteção - Caixa Economica Federal
B8CFF778A75C685AAC275BFC00BB8FD8 - C:\Users\PASTOR LUIZ\AppData\Local\GAS Tecnologia\GBBD\npsf_uni_64.dll - Guardião Itaú 30 horas


==== Chromium Look ======================

Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95)

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
flliilndjeohchalpbbcdekjklbdgfkk - No path found[]
iddppljpcogmkeibkjbhdababcnphaff - C:\ProgramData\Browse2save\iddppljpcogmkeibkjbhdababcnphaff.crx[]
jfmjfhklogoienhpfnppmbcbjfjnkonk - No path found[]

Google Docs - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
FB Emoticons - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpgpffljkgjmijjdmjbdppndoojdgboe
Google Search - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Retorna Sistema de Cashback - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\enhbnkofmaofoapodhepjkdmnamkakmg
Avira Browser Safety - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk
Allin1Convert - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcncagkkhfoombgbihckkccmkjemhohl
My Scrap Nook - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnaghjfblmncnfgjddgelpkbhfdflicf
My Farm - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipkkikhahnapbadkbdbjjpcililhfpm
Wallpaper Homepage - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\icgjofekmpgfikdggahpomoaoejioaen
GBBD Guardião - Itaú 30 horas - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmpojlddncminmkddkpoegdjhojjipg
Orkut - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkcbhlflpnnlepphpkcipjhfkliljddp
Google Wallet - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
3D Bomb Destroyer - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\okehlnjpihomkdokiiafpejniofjaoom
Instagram for Chrome - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\opnbmdkdflhjiclaoiiifmheknpccalb
GBBD Caixa Economica Federal - PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbcaplhfkihhldmlbjhgajdeghjdbffi

==== Chromium Fix ======================

C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcncagkkhfoombgbihckkccmkjemhohl deleted successfully
C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gcncagkkhfoombgbihckkccmkjemhohl_0.localstorage deleted successfully
C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnaghjfblmncnfgjddgelpkbhfdflicf deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Bar"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Page"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Bar"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Page"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Bar"="http://www.google.com"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si=43168&st=bs&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si=43168&st=bs&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.certified-toolbar.com?si=43168&st=bs&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si=43168&st=bs&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.certified-toolbar.com?si=43168&st=bs&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.certified-toolbar.com?si=43168&st=bs&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&q=%s"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://www.google.com"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://www.google.com/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="www.google.com"
"newtab"="about:tabs"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="www.google.com"
"newtab"="about:tabs"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Bar"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Page"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Bar"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
"Search Page"="http://search.certified-toolbar.com?si=43168&tid=3830&ver=3.1&ts=1368929596358&tguid=43168-3830-1368929596358-82E4B9CCEBC5F420C832A912CF1B1701&st=chrome&q="
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com/"
"Search Bar"="http://www.google.com"
"Search Page"="http://www.google.com"
"CustomizeSearch"="http://www.bing.com/search?q={searchTerms}"
"SearchAssistant"="http://www.bing.com/search?q={searchTerms}"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com/"
"Search Bar"="http://www.google.com"
"Search Page"="http://www.google.com"
"CustomizeSearch"="http://www.bing.com/search?q={searchTerms}"
"SearchAssistant"="http://www.bing.com/search?q={searchTerms}"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com/"
"Search Bar"="http://www.google.com"
"Search Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURI]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"CustomizeSearch"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm"
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{1542BF14-4231-48B1-89CC-1DDE8F64E121} TempoAgora.com.br Url="http://tempoagora.uol.com.br/acelerador/resultadoprocura.php?q={searchTerms}"
{37E7638B-BE69-DA67-BF09-49450BE0E70A} Bing Url="http://www.bing.com/search?q={searchTerms}&r="
{4D1CE3A5-354E-4EA4-A66A-777CED9839D2} Vagalume: por artista Url="http://www.vagalume.com.br/search.php?t=art&q={searchTerms}&utm_medium=opensearch&utm_term={searchTerms}&utm_campaign=Search+Tools"
{C7A03CA4-C85B-4B16-88A3-597278AD94B2} Wikipedia (br) Url="http://br.wikipedia.org/w/index.php?title=Dibar:Klask&search={searchTerms}"
{F2C2EC3A-D844-45FF-982B-273A5FDC3A54} Google Url="http://www.google.com/search?hl=en&q={searchTerms}"

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EC6D81181F59F2459A84176A626F9ED deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9F153B33-E427-A73F-45D4-AC0544F619C5} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6678DCA1-4E8B-4B4B-46C5-3397F8507779} deleted successfully
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\iddppljpcogmkeibkjbhdababcnphaff deleted successfully
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\SoftonicAssistant deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\9EC6D81181F59F2459A84176A626F9ED deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\JustVoip deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoftonicAssistant deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinCheck deleted successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\PASTOR LUIZ\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Chrome Cache ======================

C:\Users\PASTOR LUIZ\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=691 folders=224 10780073 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\PASTOR LUIZ\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\PASTOR~1\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 26/12/2014 at 17:21:09,62 ======================
Salmos 23 stick_out_tongue.pngbig_green.png
caedurodrigues
caedurodrigu... Tô em todas Registrado
710 Mensagens 257 Curtidas
#7 Por caedurodrigu...
26/12/2014 - 21:51
Boa noite Ziljabuka,

  • Baixe: <ZHPDiag ><5fae498c5cd6c951142509fbc9efda13> ( ...Nicolas Coolman)
  • Salve-o no Disco local (C ou D).
  • Desabilite seu antivírus, e execute ZHPDiag.exe para instalar.

    e0baac1fc96e2b6998362b4e757228c9
  • Execute o ícone do pergaminho!

    74bd92827a56ccef3293e039379d6b90
  • Clique na opção "COMPLETA" e aguarde a conclusão.
  • Clique OK e,ao concluir, poste o relatório! ( ZHPDiag.txt )
  • Obs: O relatório por ser extenso deve ser postado em um desses sites:
  • Acesse: <b7cb62cfb007715d3990c0ffc7a9f4ee>
  • Ou acesse:<MyFile.tk>
  • Ou anexe-o <Aqui> << Link
  • Maiores informações:<Link> << Hospedagem !

Um grande abraço. bom_trabalho.gif
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal