Logo Hardware.com.br
R. Moran
R. Moran Membro Senior Registrado
92 Mensagens 60 Curtidas

[Resolvido] Como desinstalar o baidu

#1 Por R. Moran 02/02/2015 - 13:04
"Run script" realizado. Relatório pronto... Boa semana e grande abraço.

Zoek.exe v5.0.0.0 Updated 07-December-2014
Tool run by User on 09/02/2015 at 11:28:50,10.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\User\Desktop\zoek.exe.pif [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-02-02-140036.log 52085 bytes
C:\zoek-results2015-02-05-185409.log 49981 bytes

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Registry Lines To Reset ACL ======================

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFILTER\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFMON\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BNDEF\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECT\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000 Not Found or Not Reset

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFILTER\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFMON\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BNDEF\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECT\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\bav\shell\open\command]
@=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BLPFILE\DefaultIcon]
@=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BLPFILE\shell\open\command]
@=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\Baidu_Scan]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\Baidu_Scan]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\Baidu_Scan]
[-HKEY_USERS\.DEFAULT\Software\Baidu]
[-HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug]
[-HKEY_USERS\.DEFAULT\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security\Feedback]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security\Feedback\products]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security\Feedback\products\1]
[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\IntelliType Pro\AppSpecific\FasterNow.exe]
"Path"=-
[-HKEY_USERS\S-1-5-18\Software\Baidu]
[-HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug]
[-HKEY_USERS\S-1-5-18\Software\Baidu Security]

==== Deleting Files \ Folders ======================

C:\zoek_backup\C_PROGRA~3_Baidu deleted

==== Folders Found ======================

2015-01-26 19:11:14 2015-01-26 19:11:14 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2015-02-05 13:29:47 2015-02-05 13:29:47 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu PC Faster.DIR
2015-02-05 13:21:47 2015-02-05 13:28:09 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR
2015-02-05 13:28:41 2015-02-05 13:28:41 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu.DIR
2015-02-05 13:28:09 2015-02-02 14:19:46 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security
2015-02-09 13:36:23 2015-02-09 13:36:23 -------- d---a-w- C:\zoek_backup\C_zoek_backup_C_PROGRA~3_Baidu

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=30 folders=16 2597687 bytes)

==== EOF on 09/02/2015 at 11:42:53,28 ======================
R. Moran
R. Moran Membro Senior Registrado
92 Mensagens 60 Curtidas
#16 Por R. Moran
09/02/2015 - 11:46
"Run script" realizado. Relatório pronto... Boa semana e grande abraço.

Zoek.exe v5.0.0.0 Updated 07-December-2014
Tool run by User on 09/02/2015 at 11:28:50,10.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\User\Desktop\zoek.exe.pif [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-02-02-140036.log 52085 bytes
C:\zoek-results2015-02-05-185409.log 49981 bytes

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Registry Lines To Reset ACL ======================

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFILTER\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFMON\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BNDEF\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECT\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000 Not Found or Not Reset
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000 Not Found or Not Reset

==== Registry Fix Code ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFILTER\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BFMON\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BNDEF\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BPROTECT\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFILTER\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BFMON\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BNDEF\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BPROTECT\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFILTER\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BFMON\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BNDEF\0000]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BPROTECT\0000]

==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\bav\shell\open\command]
@=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BLPFILE\DefaultIcon]
@=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BLPFILE\shell\open\command]
@=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\Baidu_Scan]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\ShellEx\ContextMenuHandlers\Baidu_Scan]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\Baidu_Scan]
[-HKEY_USERS\.DEFAULT\Software\Baidu]
[-HKEY_USERS\.DEFAULT\Software\Baidu\Application Bug]
[-HKEY_USERS\.DEFAULT\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security\Feedback]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security\Feedback\products]
[-HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Baidu Security\Feedback\products\1]
[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\IntelliType Pro\AppSpecific\FasterNow.exe]
"Path"=-
[-HKEY_USERS\S-1-5-18\Software\Baidu]
[-HKEY_USERS\S-1-5-18\Software\Baidu\Application Bug]
[-HKEY_USERS\S-1-5-18\Software\Baidu Security]

==== Deleting Files \ Folders ======================

C:\zoek_backup\C_PROGRA~3_Baidu deleted

==== Folders Found ======================

2015-01-26 19:11:14 2015-01-26 19:11:14 -------- d-----w- C:\AdwCleaner\Quarantine\C\ProgramData\baidu
2015-02-05 13:29:47 2015-02-05 13:29:47 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu PC Faster.DIR
2015-02-05 13:21:47 2015-02-05 13:28:09 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR
2015-02-05 13:28:41 2015-02-05 13:28:41 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu.DIR
2015-02-05 13:28:09 2015-02-02 14:19:46 -------- d-----w- C:\Users\User\AppData\Roaming\ZHP\Quarantine\Baidu Security.DIR\Baidu Security
2015-02-09 13:36:23 2015-02-09 13:36:23 -------- d---a-w- C:\zoek_backup\C_zoek_backup_C_PROGRA~3_Baidu

==== Files Found ======================


==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=30 folders=16 2597687 bytes)

==== EOF on 09/02/2015 at 11:42:53,28 ======================
caedurodrigues
caedurodrigu... Tô em todas Registrado
710 Mensagens 257 Curtidas
#17 Por caedurodrigu...
09/02/2015 - 12:36
Boa tarde R. Moran, vamos executar novamente a ferramenta Zoek.


createsrpoint;
Baidu Antivirus;u
{77FEF28E-EB96-44FF-B511-3185DEA48697};c
{B580CF65-E151-49C3-B73F-70B13FCA8E86};c
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing];r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp];r64
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}];r64
"DllName"=-;r64
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}];r64
"DllName"=-;r64
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus];r64
Baidu;a


Um grande abraço.bom_trabalho.gif


Copie e cole estas informações,que estão em vermelho,no campo da ferramenta Zoek.
Clique "Run Script".
Aguarde o término. Ao final abrirá o bloco de notas com o relatório.
Uma cópia também será salva no seu disco local com o nome zoek-results.txt.
Anexe o zoek-results.txt na sua próxima resposta.


Imagem
< Peço aos visitantes que não utilizem este script em outros computadores,sob risco de danos irreparáveis aos mesmos! >
R. Moran
R. Moran Membro Senior Registrado
92 Mensagens 60 Curtidas
#18 Por R. Moran
09/02/2015 - 13:16
Relatório pronto.

Zoek.exe v5.0.0.0 Updated 08-February-2015
Tool run by User on 09/02/2015 at 12:59:11,65.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\User\Desktop\Zoeck\zoek.exe.com [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-02-02-140036.log 52085 bytes
C:\zoek-results2015-02-05-185409.log 49981 bytes
C:\zoek-results2015-02-09-134253.log 8698 bytes

==== System Restore Info ======================

09/02/2015 13:00:45 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Registry Fix Code x64 ======================

Windows Registry Editor Version 5.00

[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]

==== Registry Search Results for "Baidu" ======================


[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu Security]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Processing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Baidu_Drp_pos\DRP\Temp]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
"DllName"="baidubar.dll;BaiduBarX.dll;BaiduBarX.dll;BaiduBarX.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Baidu Antivirus]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-21-1952561570-3406765086-4093738655-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\baiduqqsina.cn\www]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn]

[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\baiduqqsina.cn\www]

==== C:\zoek_backup content ======================

C:\zoek_backup (files=30 folders=16 2597687 bytes)

==== EOF on 09/02/2015 at 13:05:33,03 ======================
caedurodrigues
caedurodrigu... Tô em todas Registrado
710 Mensagens 257 Curtidas
#19 Por caedurodrigu...
09/02/2015 - 13:36
Boa tarde R. Moran,

  • Baixe:<1e79137ad22ffc22963ed8e379e7607d> <(...by Farbar)>
  • Ou aqui:<Farbar Recovery Scan Tool 64-bits>
  • Salve-a na Área de trabalho !
  • Execute a ferramenta ! Clique "Yes" >> "Scan".

    edb707f11c612a0ff52862b02fa1aa03
  • Verifique se as caixinhas em "Whitelist" estão assinaladas.
  • Em "Optional Scan",deixe marcada a checkbox "Addition.txt".
  • Será gerado o relatório! (FRST.txt)
  • Ps: Será gerado,também,o relatório "Addition.txt" que estará disponibilizado na 1ª execução da ferramenta.
  • Acesse: <b7cb62cfb007715d3990c0ffc7a9f4ee>
  • Ou acesse:<317c011bca045ff7fc0b26f3766d4d22>
  • Ou anexe-o ao fórum.

Um grande abraço.
caedurodrigues
caedurodrigu... Tô em todas Registrado
710 Mensagens 257 Curtidas
#21 Por caedurodrigu...
09/02/2015 - 14:34
Boa tarde R. Moran, nos informe como está o PC ?

  • Copie estas informações que estão em vermelho,para o Bloco de Notas.
  • Salve-a com o nome fixlist.txt
  • Salve-a no mesmo local em que se encontra a FRST

start
CloseProcesses:
ShellIconOverlayIdentifiers: [BaiduAntivirusIconLock] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} => C:\Program Files (x86)\Baidu Security\Baidu Antivirus\BavShx64.dll No File
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1952561570-3406765086-4093738655-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\buscape.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mercadolivre.xml
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{googlestick_out_tongue.pngageClassification}{google:searchVersion}{google:sessionToken}{googlestick_out_tongue.pngrefetchQuery}sugkey={google:suggestAPIKeyParameter}
S2 CashReminder; C:\Program Files (x86)\CashReminder\CashReminder.exe [X]
U5 avchv; C:\Windows\System32\Drivers\avchv.sys [0 2015-02-04] () <==== ATTENTION (zero size file/folder)
S3 int15.sys; \??\C:\OEM\Preload\Autorun\DRV\FOXCONN TW Bluetooth BT 2.1 Broadcom 2046\int15.sys [X]
2015-02-09 13:00 - 2015-02-09 11:42 - 00008698 _____ () C:\zoek-results2015-02-09-134253.log
2015-02-09 11:32 - 2015-02-05 16:54 - 00049981 _____ () C:\zoek-results2015-02-05-185409.log
2015-02-05 16:51 - 2015-02-07 21:58 - 00000112 _____ () C:\Windows\setupact.log
2015-02-05 16:51 - 2015-02-05 16:51 - 00000542 _____ () C:\Windows\PFRO.log
2015-02-05 16:51 - 2015-02-05 16:51 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-05 16:08 - 2015-02-02 12:00 - 00052085 _____ () C:\zoek-results2015-02-02-140036.log
2015-02-05 16:06 - 2015-02-05 16:06 - 01295360 _____ () C:\Users\User\Downloads\zoek.exe
2015-02-04 13:13 - 2015-02-09 13:15 - 00000000 ____D () C:\Users\User\Documents\ZHPdiag
2015-02-04 13:00 - 2015-02-04 13:00 - 00000512 _____ () C:\PhysicalDisk0_MBR.bin
2015-02-04 12:29 - 2015-02-05 11:52 - 00000000 ____D () C:\Users\User\AppData\Roaming\ZHP
2015-02-04 12:29 - 2015-02-04 12:29 - 00001995 _____ () C:\Users\User\Desktop\ZHPFix.lnk
2015-02-04 12:29 - 2015-02-04 12:29 - 00001868 _____ () C:\Users\User\Desktop\ZHPDiag.lnk
2015-02-04 12:29 - 2015-02-04 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2015-02-04 12:29 - 2015-02-04 12:29 - 00000000 ____D () C:\Program Files (x86)\ZHPDiag
2015-02-02 17:53 - 2015-02-02 17:53 - 00002452 _____ () C:\Users\User\Downloads\zoek-results.txt
2015-02-02 13:33 - 2015-02-02 17:30 - 00010949 _____ () C:\AdsFix.txt
2015-02-02 13:09 - 2015-02-03 21:15 - 00000000 ____D () C:\AdsFix
2015-02-02 12:59 - 2015-02-02 12:59 - 02453504 _____ () C:\Users\User\Desktop\AdsFix.exe
2015-02-02 12:08 - 2015-02-02 12:08 - 01707939 _____ (Thisisu) C:\Users\User\Downloads\JRT.exe
2015-02-02 11:18 - 2015-02-09 13:05 - 00004508 _____ () C:\zoek-results.log
2015-02-02 11:16 - 2015-02-09 11:36 - 00000000 ____D () C:\zoek_backup
2015-02-02 11:15 - 2014-12-07 23:06 - 01429293 _____ () C:\Users\User\Desktop\zoek.exe.pif
2015-02-02 11:14 - 2015-02-09 11:28 - 00000000 ____D () C:\Users\User\Desktop\Zoeck
2015-02-05 14:18 - 2014-01-10 11:45 - 00000000 ____D () C:\AdwCleaner
Task: {187BC809-BDBD-4FAB-85F6-EBFB52A0EE8A} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-7 No Task File <==== ATTENTION
Task: {30651736-1495-48EA-B56A-0904E8884362} - \6205d7fb-e736-4471-87e2-0b880e332552-6 No Task File <==== ATTENTION
Task: {4AFE7B06-F118-4F8A-B4B2-1DBDAA0620A2} - \6205d7fb-e736-4471-87e2-0b880e332552-5 No Task File <==== ATTENTION
Task: {4E3A7111-9F4D-4455-A244-D62C1F30E7BC} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-4 No Task File <==== ATTENTION
Task: {6AD7B982-4332-424B-890A-54C44F895A94} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-5 No Task File <==== ATTENTION
Task: {8484FF28-0024-47A7-BE89-BE0A03F4A97F} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-2 No Task File <==== ATTENTION
Task: {84A75C36-7B8C-4E02-9CA5-84F4252D602F} - \6205d7fb-e736-4471-87e2-0b880e332552-3 No Task File <==== ATTENTION
Task: {872BCE2A-5C8E-47FC-9773-2C5D01EBC4D9} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-6 No Task File <==== ATTENTION
Task: {CB5B3486-5356-443C-B2CE-285EE2191CB7} - \6205d7fb-e736-4471-87e2-0b880e332552-2 No Task File <==== ATTENTION
Task: {D7503BC9-E1C7-468B-87EB-8EC7AF32C77A} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-3 No Task File <==== ATTENTION
Task: {DD089898-D92A-407E-8F3E-2C33B53B3F00} - \6205d7fb-e736-4471-87e2-0b880e332552-7 No Task File <==== ATTENTION
Task: {EA66C649-D745-4403-9768-E17F09710D2F} - \6205d7fb-e736-4471-87e2-0b880e332552-1 No Task File <==== ATTENTION
Task: {FD1CBB32-3B6A-4D23-A7F5-9916D53F93A6} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-1 No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:1D32EC29
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93DE1838
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:B606BA34
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\ProgramData\Temp:E3C56885
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:0B9176C0
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:1D32EC29
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:4CF61E54
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:4D066AD2
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:5D7E5A8F
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:93DE1838
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:AB689DEA
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:ABE89FFE
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:B606BA34
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:E1F04E8D
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:E3C56885
HOSTS:
CMD: bitsadmin /reset /allusers
CMD: ipconfig /flushdns
emptytemp:
end

Execute FRST/FRST64 >> Clique "Fix". << Aguarde!
Poste o relatório! (Fixlog.txt)

Um grande abraço.

Imagem
< Peço aos visitantes que não utilizem este script em outros computadores,sob risco de danos irreparáveis aos mesmos! >
R. Moran
R. Moran Membro Senior Registrado
92 Mensagens 60 Curtidas
#22 Por R. Moran
10/02/2015 - 11:46
Caro Caedurodrigues,

diria que o PC encontra-se normalizado. Navegação rápida, abertura de janelas normal, sem apresentar lentidão ou outros problemas aparentes. Segue o novo relatório solicitado. Grande abraço...

<span style="color:#0000ff">Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-02-2015
Ran by User at 2015-02-10 11:20:46 Run:1
Running from C:\Users\User\Desktop
Loaded Profiles: User (Available profiles: User)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
CloseProcesses:
ShellIconOverlayIdentifiers: [BaiduAntivirusIconLock] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} => C:\Program Files (x86)\Baidu Security\Baidu Antivirus\BavShx64.dll No File
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = <a href="http://www.google.com/search?source...nputEncoding}&oe={outputEncoding}&rlz=1I7ACAW" target="_blank">http://www.google.com/search?source...nputEncoding}&oe={outputEncoding}&rlz=1I7ACAW</a>
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1952561570-3406765086-4093738655-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = <a href="http://www.google.com/search?q={searchTerms}" target="_blank">http://www.google.com/search?q={searchTerms}</a>
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\buscape.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mercadolivre.xml
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{googleageClassification}{google:searchVersion}{google:sessionToken}{googlerefetchQuery}sugkey={google:suggestAPIKeyParameter}
S2 CashReminder; C:\Program Files (x86)\CashReminder\CashReminder.exe [X]
U5 avchv; C:\Windows\System32\Drivers\avchv.sys [0 2015-02-04] () <==== ATTENTION (zero size file/folder)
S3 int15.sys; \??\C:\OEM\Preload\Autorun\DRV\FOXCONN TW Bluetooth BT 2.1 Broadcom 2046\int15.sys [X]
2015-02-09 13:00 - 2015-02-09 11:42 - 00008698 _____ () C:\zoek-results2015-02-09-134253.log
2015-02-09 11:32 - 2015-02-05 16:54 - 00049981 _____ () C:\zoek-results2015-02-05-185409.log
2015-02-05 16:51 - 2015-02-07 21:58 - 00000112 _____ () C:\Windows\setupact.log
2015-02-05 16:51 - 2015-02-05 16:51 - 00000542 _____ () C:\Windows\PFRO.log
2015-02-05 16:51 - 2015-02-05 16:51 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-05 16:08 - 2015-02-02 12:00 - 00052085 _____ () C:\zoek-results2015-02-02-140036.log
2015-02-05 16:06 - 2015-02-05 16:06 - 01295360 _____ () C:\Users\User\Downloads\zoek.exe
2015-02-04 13:13 - 2015-02-09 13:15 - 00000000 ____D () C:\Users\User\Documents\ZHPdiag
2015-02-04 13:00 - 2015-02-04 13:00 - 00000512 _____ () C:\PhysicalDisk0_MBR.bin
2015-02-04 12:29 - 2015-02-05 11:52 - 00000000 ____D () C:\Users\User\AppData\Roaming\ZHP
2015-02-04 12:29 - 2015-02-04 12:29 - 00001995 _____ () C:\Users\User\Desktop\ZHPFix.lnk
2015-02-04 12:29 - 2015-02-04 12:29 - 00001868 _____ () C:\Users\User\Desktop\ZHPDiag.lnk
2015-02-04 12:29 - 2015-02-04 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2015-02-04 12:29 - 2015-02-04 12:29 - 00000000 ____D () C:\Program Files (x86)\ZHPDiag
2015-02-02 17:53 - 2015-02-02 17:53 - 00002452 _____ () C:\Users\User\Downloads\zoek-results.txt
2015-02-02 13:33 - 2015-02-02 17:30 - 00010949 _____ () C:\AdsFix.txt
2015-02-02 13:09 - 2015-02-03 21:15 - 00000000 ____D () C:\AdsFix
2015-02-02 12:59 - 2015-02-02 12:59 - 02453504 _____ () C:\Users\User\Desktop\AdsFix.exe
2015-02-02 12:08 - 2015-02-02 12:08 - 01707939 _____ (Thisisu) C:\Users\User\Downloads\JRT.exe
2015-02-02 11:18 - 2015-02-09 13:05 - 00004508 _____ () C:\zoek-results.log
2015-02-02 11:16 - 2015-02-09 11:36 - 00000000 ____D () C:\zoek_backup
2015-02-02 11:15 - 2014-12-07 23:06 - 01429293 _____ () C:\Users\User\Desktop\zoek.exe.pif
2015-02-02 11:14 - 2015-02-09 11:28 - 00000000 ____D () C:\Users\User\Desktop\Zoeck
2015-02-05 14:18 - 2014-01-10 11:45 - 00000000 ____D () C:\AdwCleaner
Task: {187BC809-BDBD-4FAB-85F6-EBFB52A0EE8A} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-7 No Task File <==== ATTENTION
Task: {30651736-1495-48EA-B56A-0904E8884362} - \6205d7fb-e736-4471-87e2-0b880e332552-6 No Task File <==== ATTENTION
Task: {4AFE7B06-F118-4F8A-B4B2-1DBDAA0620A2} - \6205d7fb-e736-4471-87e2-0b880e332552-5 No Task File <==== ATTENTION
Task: {4E3A7111-9F4D-4455-A244-D62C1F30E7BC} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-4 No Task File <==== ATTENTION
Task: {6AD7B982-4332-424B-890A-54C44F895A94} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-5 No Task File <==== ATTENTION
Task: {8484FF28-0024-47A7-BE89-BE0A03F4A97F} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-2 No Task File <==== ATTENTION
Task: {84A75C36-7B8C-4E02-9CA5-84F4252D602F} - \6205d7fb-e736-4471-87e2-0b880e332552-3 No Task File <==== ATTENTION
Task: {872BCE2A-5C8E-47FC-9773-2C5D01EBC4D9} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-6 No Task File <==== ATTENTION
Task: {CB5B3486-5356-443C-B2CE-285EE2191CB7} - \6205d7fb-e736-4471-87e2-0b880e332552-2 No Task File <==== ATTENTION
Task: {D7503BC9-E1C7-468B-87EB-8EC7AF32C77A} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-3 No Task File <==== ATTENTION
Task: {DD089898-D92A-407E-8F3E-2C33B53B3F00} - \6205d7fb-e736-4471-87e2-0b880e332552-7 No Task File <==== ATTENTION
Task: {EA66C649-D745-4403-9768-E17F09710D2F} - \6205d7fb-e736-4471-87e2-0b880e332552-1 No Task File <==== ATTENTION
Task: {FD1CBB32-3B6A-4D23-A7F5-9916D53F93A6} - \95957052-71f9-4e65-a359-4f6eedeaf3ca-1 No Task File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:1D32EC29
AlternateDataStreams: C:\ProgramData\Temp:4CF61E54
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F
AlternateDataStreams: C:\ProgramData\Temp:93DE1838
AlternateDataStreams: C:\ProgramData\Temp:AB689DEA
AlternateDataStreams: C:\ProgramData\Temp:ABE89FFE
AlternateDataStreams: C:\ProgramData\Temp:B606BA34
AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D
AlternateDataStreams: C:\ProgramData\Temp:E3C56885
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:0B9176C0
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:1D32EC29
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:4CF61E54
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:4D066AD2
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:5D7E5A8F
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:93DE1838
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:AB689DEA
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:ABE89FFE
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:B606BA34
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:E1F04E8D
AlternateDataStreams: C:\Users\Todos os Usuários\Temp:E3C56885
HOSTS:
CMD: bitsadmin /reset /allusers
CMD: ipconfig /flushdns
emptytemp:
end
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\BaiduAntivirusIconLock" => Key deleted successfully.
"HKCR\CLSID\{0A93904A-BB1E-4a0c-9753-B57B9AE272CC}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{67A2568C-7A0A-4EED-AECC-B5405DE63B64} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-1952561570-3406765086-4093738655-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => Key deleted successfully.
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => Key not found.
C:\Program Files (x86)\mozilla firefox\browser\searchplugins\buscape.xml => Moved successfully.
C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mercadolivre.xml => Moved successfully.
Chrome DefaultSuggestURL deleted successfully.
CashReminder => Service deleted successfully.
avchv => Service deleted successfully.
int15.sys => Service deleted successfully.
C:\zoek-results2015-02-09-134253.log => Moved successfully.
C:\zoek-results2015-02-05-185409.log => Moved successfully.
C:\Windows\setupact.log => Moved successfully.
C:\Windows\PFRO.log => Moved successfully.
C:\Windows\setuperr.log => Moved successfully.
C:\zoek-results2015-02-02-140036.log => Moved successfully.
C:\Users\User\Downloads\zoek.exe => Moved successfully.
C:\Users\User\Documents\ZHPdiag => Moved successfully.
C:\PhysicalDisk0_MBR.bin => Moved successfully.
C:\Users\User\AppData\Roaming\ZHP => Moved successfully.
C:\Users\User\Desktop\ZHPFix.lnk => Moved successfully.
C:\Users\User\Desktop\ZHPDiag.lnk => Moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP => Moved successfully.
C:\Program Files (x86)\ZHPDiag => Moved successfully.
C:\Users\User\Downloads\zoek-results.txt => Moved successfully.
C:\AdsFix.txt => Moved successfully.
C:\AdsFix => Moved successfully.
C:\Users\User\Desktop\AdsFix.exe => Moved successfully.
C:\Users\User\Downloads\JRT.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\User\Desktop\zoek.exe.pif => Moved successfully.
C:\Users\User\Desktop\Zoeck => Moved successfully.
C:\AdwCleaner => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{187BC809-BDBD-4FAB-85F6-EBFB52A0EE8A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{187BC809-BDBD-4FAB-85F6-EBFB52A0EE8A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{30651736-1495-48EA-B56A-0904E8884362}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30651736-1495-48EA-B56A-0904E8884362}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6205d7fb-e736-4471-87e2-0b880e332552-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4AFE7B06-F118-4F8A-B4B2-1DBDAA0620A2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4AFE7B06-F118-4F8A-B4B2-1DBDAA0620A2}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6205d7fb-e736-4471-87e2-0b880e332552-5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4E3A7111-9F4D-4455-A244-D62C1F30E7BC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4E3A7111-9F4D-4455-A244-D62C1F30E7BC}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-4" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6AD7B982-4332-424B-890A-54C44F895A94}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AD7B982-4332-424B-890A-54C44F895A94}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-5" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8484FF28-0024-47A7-BE89-BE0A03F4A97F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8484FF28-0024-47A7-BE89-BE0A03F4A97F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{84A75C36-7B8C-4E02-9CA5-84F4252D602F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{84A75C36-7B8C-4E02-9CA5-84F4252D602F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6205d7fb-e736-4471-87e2-0b880e332552-3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{872BCE2A-5C8E-47FC-9773-2C5D01EBC4D9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{872BCE2A-5C8E-47FC-9773-2C5D01EBC4D9}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-6" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CB5B3486-5356-443C-B2CE-285EE2191CB7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CB5B3486-5356-443C-B2CE-285EE2191CB7}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6205d7fb-e736-4471-87e2-0b880e332552-2" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D7503BC9-E1C7-468B-87EB-8EC7AF32C77A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7503BC9-E1C7-468B-87EB-8EC7AF32C77A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-3" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DD089898-D92A-407E-8F3E-2C33B53B3F00}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD089898-D92A-407E-8F3E-2C33B53B3F00}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6205d7fb-e736-4471-87e2-0b880e332552-7" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EA66C649-D745-4403-9768-E17F09710D2F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA66C649-D745-4403-9768-E17F09710D2F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\6205d7fb-e736-4471-87e2-0b880e332552-1" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FD1CBB32-3B6A-4D23-A7F5-9916D53F93A6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD1CBB32-3B6A-4D23-A7F5-9916D53F93A6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\95957052-71f9-4e65-a359-4f6eedeaf3ca-1" => Key deleted successfully.
C:\ProgramData\Temp => ":0B9176C0" ADS removed successfully.
C:\ProgramData\Temp => ":1D32EC29" ADS removed successfully.
C:\ProgramData\Temp => ":4CF61E54" ADS removed successfully.
C:\ProgramData\Temp => ":4D066AD2" ADS removed successfully.
C:\ProgramData\Temp => ":5D7E5A8F" ADS removed successfully.
C:\ProgramData\Temp => ":93DE1838" ADS removed successfully.
C:\ProgramData\Temp => ":AB689DEA" ADS removed successfully.
C:\ProgramData\Temp => ":ABE89FFE" ADS removed successfully.
C:\ProgramData\Temp => ":B606BA34" ADS removed successfully.
C:\ProgramData\Temp => ":E1F04E8D" ADS removed successfully.
C:\ProgramData\Temp => ":E3C56885" ADS removed successfully.
"C:\Users\Todos os Usuários\Temp" => ":0B9176C0" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":1D32EC29" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":4CF61E54" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":4D066AD2" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":5D7E5A8F" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":93DE1838" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":AB689DEA" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":ABE89FFE" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":B606BA34" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":E1F04E8D" ADS not found.
"C:\Users\Todos os Usuários\Temp" => ":E3C56885" ADS not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.

========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

Unable to cancel {CBA27076-F14A-457A-9515-1CF12D4B092B}.
Unable to cancel {8B5D5A92-0699-4DC7-90A1-99ECDEAE1954}.
Unable to cancel {FE24548F-8FF0-4CBC-B2EC-B4531A31B5E5}.
Unable to cancel {E6DA74AC-C65F-4072-8D72-7F7BDAB3BFD0}.
Unable to cancel {52691FAF-295F-41F5-8C47-EA932367703D}.
Unable to cancel {C5E765A5-E723-48AC-A59C-68F6747285A3}.
Unable to cancel {2073578B-B094-48BB-ABA0-641A58556829}.
Unable to cancel {F4EB7E78-C87C-456C-AB72-6BBB19B3E325}.
Unable to cancel {A818D4C0-5EF9-4EC8-AF72-D52891C1B68A}.
Unable to cancel {210FF270-DCF1-43F0-8283-69F29C5E4DFB}.
Unable to cancel {ED56EFC6-7693-4EC9-AF9D-572250EBD35D}.
Unable to cancel {B0256C0A-6CF6-4291-A0AE-48107FC1E232}.
Unable to cancel {6F3A87A9-D0FB-4EA7-80F4-E9D2BB6B8B41}.
Unable to cancel {7A5227DA-F13B-4771-A057-79D19BBF06BC}.
Unable to cancel {12EAFCC8-834F-4B5C-AC30-62E644ECCF5F}.
Unable to cancel {78B82E59-3233-4534-89E8-B044226E2709}.
Unable to cancel {5A2C6E67-99A2-46E3-9AD5-5442F70CCDA4}.
Unable to cancel {E8B2CC68-A0F9-4778-8B23-08EB118F423E}.
Unable to cancel {79F4A957-9DCA-442B-BFE6-B2D0EC17D1B8}.
Unable to cancel {A5F8D2B5-A835-4658-9719-EF7200074960}.
Unable to cancel {05B130A0-84C7-4484-B0AA-771EA903F295}.
Unable to cancel {E1D6EF99-1FEB-4ECF-852D-B9D80796BAFF}.
Unable to cancel {0DA4E25C-B2EA-4B9D-AAEC-5F2A55228DED}.
Unable to cancel {9F906857-9554-4C50-AF35-F00BA72B2A61}.
{B1FFE29B-A202-46C2-A1E0-C45FD69F4851} canceled.
1 out of 25 jobs canceled.

========= End of CMD: =========


========= ipconfig /flushdns =========


Configura��o de IP do Windows

Libera��o do Cache do DNS Resolver bem-sucedida.

========= End of CMD: =========

EmptyTemp: => Removed 202.3 MB temporary data.


The system needed a reboot.

==== End of Fixlog 11:21:11 ====
caedurodrigues
caedurodrigu... Tô em todas Registrado
710 Mensagens 257 Curtidas
#23 Por caedurodrigu...
10/02/2015 - 12:20
Boa tarde R. Moran, Ainda há algum problema com o PC ? Caso não, siga os passos abaixo para encerrar o tópico.

veja.png Agora vamos remover as ferramentas utilizadas na desinfecção.
  • Baixe: <7e2ec03c8fedfbf1e27911ad78c9473d> (...par Xplode)
  • Salve-a na sua área de trabalho.
  • Dê dois cliques no delfix.exe para executá-lo.
  • Usuários do Windows Vista ou Windows 7,clique com o direito do mouse sobre o arquivo delfix.exe,depois clique em: 06b357286306fefd312a9f88ba39d1e6

    3bef9e9aa353ad6bd98bb9cbce6fed83

  • Marque as caixinhas, de acordo com a imagem.
  • Clique no botão Executar.
  • Reinicie o computador!
  • Tudo OK ?


veja.png baixe 13ba3fc95992ef144d58ed0edf91a1a7 TFC (...by OldTimer) Para manutenção de sistema, remoção de arquivos temporários e inválidos.
Feche TODOS os programas e execute o TFC. Clique no botão Start e aguarde. Sua área de trabalho irá desaparecer, não se preocupe, isso faz parte do processo.
Tenha paciência, conforme a quantidade de dados a serem excluídos, o processo pode demorar mais de 2 minutos.
Quando terminar, você será solicitado a reiniciar seu computador. REINICIE.
Caso não lhe seja solicitado, reinicie manualmente.

Um grande abraço. boa.gif
R. Moran
R. Moran Membro Senior Registrado
92 Mensagens 60 Curtidas
#24 Por R. Moran
10/02/2015 - 13:01
Prezado Caedurodrigues,

acredito que depois de toda esta luta o problema encontra-se devidamente solucionado. Agradeço teu esforço, paciência e trabalho na devida conclusão do mesmo. Analisando o caso, já que não executei nenhum arquivo aparente que pudesse conter o Baidu, a única explicação que cheguei foi uma contaminação através de Malvertising, nova praga da internet e que até postei um tópico sobre o assunto advertindo outros usuários a evitarem o problema. Deu trabalho, mas no fim o bem sempre vence... rsrs. Já executei o Delfix a contento e quanto ao TFC não utilizei,pois verifiquei e tenho instalado o CCleaner que faz o mesmo processo e ao qual já estou habituado. Mais uma vez obrigado e me coloco a disposição se puder ajudar de alguma forma. Grande abraço, Moran
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal