Logo Hardware.com.br
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas

Navegadores limpos

#1 Por TmfeijoMMonr... 17/03/2015 - 17:37
Boa tarde ! Prezados

Depois que removi crhomo e talvez após a remoção ( já faz um bom tempo ) do mozilla tradicional ( atualmente estou com a versão developer; além do opera e com o IE 11 ); não consta(ou) mais em logs e nos browers remanescentes ; extensões maliciosas . Interessante .

Log da DDS ; o que consta os programas instalados :

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Basic
Boot Device: \Device\HarddiskVolume1
Install Date: 14/10/2014 15:30:30
System Uptime: 17/03/2015 05:19:08 (12 hours ago)
.
Motherboard: MEGA | | G41T-M7 LGT
Processor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz | CPU 1 | 2593/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 449,322 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP597: 16/03/2015 14:41:49 - TJ M TI M E F R PS SA AT 2070 CD GER 2050 P MM S CDE
.
==== Installed Programs ======================
.
Adobe Flash Player 16 NPAPI
Adobe Reader XI (11.0.10) - Português
Firefox Developer Edition 37.0a2 (x86 pt-BR)
Gadwin PrintScreenPro (32-Bit)
Java 8 Update 40
Java Auto Updater
Microsoft .NET Framework 4.5.2
Microsoft .NET Framework 4.5.2 (Português do Brasil)
Microsoft .NET Framework 4.5.2 (PTB)
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Opera Stable 27.0.1689.76
Opera Stable 28.0.1750.40

Proteção de Terminal Trusteer
Rapport
Revo Uninstaller 1.95
UxStyle Core Beta
Windows 8 Transformation Pack
WinMetro
.
==== End Of File ===========================

Faz dias :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen%20Shot%2002-28-15%20at%2007.43%20AM.png.html?sort=3&o=0

# AdwCleaner v4.112 - Logfile created 17/03/2015 at 17:42:12
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.40

*************************

AdwCleaner[R0].txt - [610 bytes] - [17/03/2015 17:42:12]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [668 bytes] ##########



Abraços
Responder
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#2 Por edutango
17/03/2015 - 19:30
Tmfeijo disse:
Boa tarde ! Prezados

Depois que removi crhomo e talvez após a remoção ( já faz um bom tempo ) do mozilla tradicional ( atualmente estou com a versão developer; além do opera e com o IE 11 ); não consta(ou) mais em logs e nos browers remanescentes ; extensões maliciosas . Interessante .

Log da DDS ; o que consta os programas instalados :

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Basic
Boot Device: \Device\HarddiskVolume1
Install Date: 14/10/2014 15:30:30
System Uptime: 17/03/2015 05:19:08 (12 hours ago)
.
Motherboard: MEGA | | G41T-M7 LGT
Processor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz | CPU 1 | 2593/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 449,322 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP597: 16/03/2015 14:41:49 - TJ M TI M E F R PS SA AT 2070 CD GER 2050 P MM S CDE
.
==== Installed Programs ======================
.
Adobe Flash Player 16 NPAPI
Adobe Reader XI (11.0.10) - Português
Firefox Developer Edition 37.0a2 (x86 pt-BR)
Gadwin PrintScreenPro (32-Bit)
Java 8 Update 40
Java Auto Updater
Microsoft .NET Framework 4.5.2
Microsoft .NET Framework 4.5.2 (Português do Brasil)
Microsoft .NET Framework 4.5.2 (PTB)
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Opera Stable 27.0.1689.76
Opera Stable 28.0.1750.40

Proteção de Terminal Trusteer
Rapport
Revo Uninstaller 1.95
UxStyle Core Beta
Windows 8 Transformation Pack
WinMetro
.
==== End Of File ===========================

Faz dias :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 02-28-15 at 07.43 AM.png.html?sort=3&o=0

# AdwCleaner v4.112 - Logfile created 17/03/2015 at 17:42:12
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.40

*************************

AdwCleaner[R0].txt - [610 bytes] - [17/03/2015 17:42:12]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [668 bytes] ##########



Abraços



Caro Edson

Realmente precisamos fazer um estudo sistêmico das extensões usadas nos navegadores, sendo que a maioria são de desenvolvedores independentes; inofensivas ou não

Lembrando que tudo o que se insere no sistema pesa e o pior ,deixa resíduos
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#3 Por TmfeijoMMonr...
17/03/2015 - 20:30
Boa noite !

Sim . Rootkits ! Úteis mesmo :

https://www.hardware.com.br/comunidade/extensoes/1349957/

https://www.hardware.com.br/comunidade/v-t/1353989/

Aproveitando !

Do nada surgiu ( nem sei onde adquiri ) . O malwarebytes detectou RollAround.A pup em 9 chaves !
http://s1062.photobucket.com/user/Edson_Melo/media/Screen%20Shot%2003-17-15%20at%2008.36%20PM.png.html?sort=3&o=0

RollAround



# AdwCleaner v4.112 - Logfile created 17/03/2015 at 19:42:53
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****

[#] Service Deleted : Service Mgr RollAround
[#] Service Deleted : Update Mgr RollAround

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\2a617352-d396-46a3-a71b-5d89535356cf

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.40


*************************

AdwCleaner[R0].txt - [965 bytes] - [17/03/2015 19:09:56]
AdwCleaner[S0].txt - [835 bytes] - [17/03/2015 19:42:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [893 bytes] ##########

Abraços
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#4 Por edutango
17/03/2015 - 20:41
Tmfeijo disse:
Boa noite !

Sim . Rootkits ! Úteis mesmo :

https://www.hardware.com.br/comunidade/extensoes/1349957/

https://www.hardware.com.br/comunidade/v-t/1353989/

Aproveitando !

Do nada surgiu ( nem sei onde adquiri ) . O malwarebytes detectou RollAround.A pup em 9 chaves !

RollAround



# AdwCleaner v4.112 - Logfile created 17/03/2015 at 19:42:53
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****

[#] Service Deleted : Service Mgr RollAround
[#] Service Deleted : Update Mgr RollAround

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\2a617352-d396-46a3-a71b-5d89535356cf

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.40


*************************

AdwCleaner[R0].txt - [965 bytes] - [17/03/2015 19:09:56]
AdwCleaner[S0].txt - [835 bytes] - [17/03/2015 19:42:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [893 bytes] ##########

Abraços

Por acaso vc tem instalado o Glarys utilities?
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#5 Por TmfeijoMMonr...
17/03/2015 - 20:55
Boa noite !

Não ; mas já usei muito o mesmo aqui . Ele é ótimo . O quanto é que o mesmo remove parcialmente o tema do windows 8 ( Windows 8 Transformation Pack ) .

Log da DDS ; o que consta os programas instalados :

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Basic
Boot Device: \Device\HarddiskVolume1
Install Date: 14/10/2014 15:30:30
System Uptime: 17/03/2015 05:19:08 (12 hours ago)
.
Motherboard: MEGA | | G41T-M7 LGT
Processor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz | CPU 1 | 2593/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 449,322 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP597: 16/03/2015 14:41:49 - TJ M TI M E F R PS SA AT 2070 CD GER 2050 P MM S CDE
.
==== Installed Programs ======================
.
Adobe Flash Player 16 NPAPI
Adobe Reader XI (11.0.10) - Português
Firefox Developer Edition 37.0a2 (x86 pt-BR)
Gadwin PrintScreenPro (32-Bit)
Java 8 Update 40
Java Auto Updater
Microsoft .NET Framework 4.5.2
Microsoft .NET Framework 4.5.2 (Português do Brasil)
Microsoft .NET Framework 4.5.2 (PTB)
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Opera Stable 27.0.1689.76
Opera Stable 28.0.1750.40

Proteção de Terminal Trusteer
Rapport
Revo Uninstaller 1.95
UxStyle Core Beta
Windows 8 Transformation Pack
WinMetro
.
==== End Of File ===========================

Editando :
Confirmei que adquiri o RollAround ao baixar o drivermax ; ao não aceitar para que vinha junto o menssageiro Skype !

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 06.49 PM.png.html?sort=3&o=0

Só pode ser !

Abraços
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#6 Por edutango
17/03/2015 - 21:00
Tmfeijo disse:
Boa noite !

Não ; mas já usei muito o mesmo aqui . Ele é ótimo . O quanto é que o mesmo remove parcialmente o tema do windows 8 .

Acho que adquiri o RollAround ao baixar o drivermax :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 06.49 PM.png.html?sort=3&o=0

Só pode ser !

Abraços

Faz um teste a mais
Use o Ultra Adware Killer e veja o que ele acha a mais
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#7 Por TmfeijoMMonr...
17/03/2015 - 21:18
Boa noite !

Ok . Já estou dando uma limpeza/otimizada aqui para variar .

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 08.36 PM.png.html?sort=3&o=0

Runscanner logfile http://www.runscanner.net

* = signed file
- = file not found

General info
------------
Computer name : EDSON-PC
Creation time : 17/03/2015 21:13:11
Hosts <> 127.0.0.1 : Cannot read hosts file
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 9.11.9600.17691
OS : Windows 7 Home Basic
OS Build : 7601
OS SP : Service Pack 1
RunScanner Version : 2.0.0.60
User Language : Português (Brasil)
User rights : Administrator
Windows folder : C:\Windows

Running processes
-----------------
* C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
* C:\Windows\System32\wininit.exe (Microsoft Corporation)
* C:\Windows\System32\winlogon.exe (Microsoft Corporation)
* C:\Windows\System32\services.exe (Microsoft Corporation)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
C:\Program Files\UX Pack\Aura\Aura.exe (Stealth Software)
C:\Users\EDSON\Downloads\AdwCleaner.exe
* C:\Windows\System32\dllhost.exe (Microsoft Corporation)
* C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
* C:\PROGRA~1\GbPlugin\gbpsv.exe (GAS Tecnologia)
* C:\Windows\System32\dwm.exe (Microsoft Corporation)
* C:\Windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation)
* C:\Windows\system32\audiodg.exe (Microsoft Corporation)
* C:\Windows\System32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
* C:\Windows\System32\SearchProtocolHost.exe (Microsoft Corporation)
* C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (IBM Corp.)
* C:\Program Files\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.)
* C:\Users\EDSON\Downloads\runscanner (1).exe (Runscanner.net)
* C:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
* C:\Windows\System32\lsm.exe (Microsoft Corporation)
C:\Windows\explorer.exe (Microsoft Corporation)
* C:\Program Files\UX Pack\WinMetro\MetroBar.exe (IObit)
* C:\Program Files\UX Pack\WinMetro\MetroStart.exe (IObit)
* C:\Windows\System32\wbem\WmiApSrv.exe (Microsoft Corporation)
* C:\Windows\System32\wbem\WmiPrvSE.exe (Microsoft Corporation)

Unrated items
-------------
002 C:\Program Files\UX Pack\uxlaunch.exe (Windows X)
010 * C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (.NET Runtime Optimization Service)
010 * C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Acrobat Update Service)
010 * C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe® Flash® Player Update Service 16.0 r0)
010 * C:\PROGRA~1\GbPlugin\GbpSv.exe (G-Buster Browser Defense - Service)
010 * C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (RapportMgmtService)
010 * C:\Program Files\IObit\WinMetro\MetroSvc.exe (WinMetro Service)
011 * C:\Windows\system32\DRIVERS\gbpndisrdn.sys (GAS Tecnologia - LWF Helper Driver)
011 * C:\Windows\system32\drivers\gbpkm.sys (GbPlugin Device Driver)
011 * C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_80128.sys (RapportCerberus)
011 * C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys (RapportEI)
011 * C:\Windows\System32\Drivers\RapportKELL.sys (RapportKE)
011 * C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys (RapportPG)
011 * C:\Windows\system32\DRIVERS\Rt86win7.sys (Realtek 8101E/8168/8169 NDIS 6.20 32-bit Driver )
011 * C:\Windows\system32\drivers\uxpatch.sys (uxpatch)
034 C:\Windows\Explorer.exe (Microsoft Corporation)
034 C:\Windows\Explorer.exe (Microsoft Corporation)
047 Zone: seg.bb.com.br : https://seg.bb.com.br
047 Zone: www.bancobrasil.com.br : *.www.bancobrasil.com.br
047 Zone: www.bb.com.br : *.www.bb.com.br
047 Zone: www.bb.com.br : http://www.bb.com.br
047 Zone: www14.bancobrasil.com.br : *.www14.bancobrasil.com.br
047 Zone: www14.bancobrasil.com.br : https://www14.bancobrasil.com.br
047 Zone: www2.bancobrasil.com.br : *.www2.bancobrasil.com.br
047 Zone: www2.bancobrasil.com.br : https://www2.bancobrasil.com.br
050 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {E37CB5F0-51F5-4395-A808-5FA49E399F83}
052 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {C41A1C0E-EA6C-11D4-B1B8-444553540000}
052 * C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll (Oracle Corporation) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
052 * C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll (Oracle Corporation) {DBC80044-A445-435b-BC74-9C25C1C588A9}
061 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {98C11555-BC81-40aa-A053-DAADC5630000}
061 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {E37CB5F0-51F5-4395-A808-5FA49E399F83}
062 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) {F9DB5320-233E-11D1-9F84-707F02C10627}
067 * C:\Program Files\GbPlugin\gbieh.dll (Banco do Brasil)
073 Adobe Flash Player Updater.job : C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
100 Start Page HKLM : www.google.com
231 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) PDF Column Info
254 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {98C11555-BC81-40aa-A053-DAADC5630000}

Missing files
-------------
032 rdpclip




# AdwCleaner v4.112 - Logfile created 17/03/2015 at 20:48:44
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.40

*************************

AdwCleaner[R0].txt - [610 bytes] - [17/03/2015 20:48:44]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [668 bytes] ##########


Abraços
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#8 Por edutango
17/03/2015 - 21:41
Tmfeijo disse:
Boa noite !

Ok . Já estou dando uma limpeza/otimizada aqui para variar .

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 08.36 PM.png.html?sort=3&o=0

Runscanner logfile http://www.runscanner.net

* = signed file
- = file not found

General info
------------
Computer name : EDSON-PC
Creation time : 17/03/2015 21:13:11
Hosts <> 127.0.0.1 : Cannot read hosts file
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 9.11.9600.17691
OS : Windows 7 Home Basic
OS Build : 7601
OS SP : Service Pack 1
RunScanner Version : 2.0.0.60
User Language : Português (Brasil)
User rights : Administrator
Windows folder : C:\Windows

Running processes
-----------------
* C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
* C:\Windows\System32\wininit.exe (Microsoft Corporation)
* C:\Windows\System32\winlogon.exe (Microsoft Corporation)
* C:\Windows\System32\services.exe (Microsoft Corporation)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
C:\Program Files\UX Pack\Aura\Aura.exe (Stealth Software)
C:\Users\EDSON\Downloads\AdwCleaner.exe
* C:\Windows\System32\dllhost.exe (Microsoft Corporation)
* C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
* C:\PROGRA~1\GbPlugin\gbpsv.exe (GAS Tecnologia)
* C:\Windows\System32\dwm.exe (Microsoft Corporation)
* C:\Windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation)
* C:\Windows\system32\audiodg.exe (Microsoft Corporation)
* C:\Windows\System32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
* C:\Windows\System32\SearchProtocolHost.exe (Microsoft Corporation)
* C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (IBM Corp.)
* C:\Program Files\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.)
* C:\Users\EDSON\Downloads\runscanner (1).exe (Runscanner.net)
* C:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
* C:\Windows\System32\lsm.exe (Microsoft Corporation)
C:\Windows\explorer.exe (Microsoft Corporation)
* C:\Program Files\UX Pack\WinMetro\MetroBar.exe (IObit)
* C:\Program Files\UX Pack\WinMetro\MetroStart.exe (IObit)
* C:\Windows\System32\wbem\WmiApSrv.exe (Microsoft Corporation)
* C:\Windows\System32\wbem\WmiPrvSE.exe (Microsoft Corporation)

Unrated items
-------------
002 C:\Program Files\UX Pack\uxlaunch.exe (Windows X)
010 * C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (.NET Runtime Optimization Service)
010 * C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Acrobat Update Service)
010 * C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe® Flash® Player Update Service 16.0 r0)
010 * C:\PROGRA~1\GbPlugin\GbpSv.exe (G-Buster Browser Defense - Service)
010 * C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (RapportMgmtService)
010 * C:\Program Files\IObit\WinMetro\MetroSvc.exe (WinMetro Service)
011 * C:\Windows\system32\DRIVERS\gbpndisrdn.sys (GAS Tecnologia - LWF Helper Driver)
011 * C:\Windows\system32\drivers\gbpkm.sys (GbPlugin Device Driver)
011 * C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_80128.sys (RapportCerberus)
011 * C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys (RapportEI)
011 * C:\Windows\System32\Drivers\RapportKELL.sys (RapportKE)
011 * C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys (RapportPG)
011 * C:\Windows\system32\DRIVERS\Rt86win7.sys (Realtek 8101E/8168/8169 NDIS 6.20 32-bit Driver )
011 * C:\Windows\system32\drivers\uxpatch.sys (uxpatch)
034 C:\Windows\Explorer.exe (Microsoft Corporation)
034 C:\Windows\Explorer.exe (Microsoft Corporation)
047 Zone: seg.bb.com.br : https://seg.bb.com.br
047 Zone: www.bancobrasil.com.br : *.www.bancobrasil.com.br
047 Zone: www.bb.com.br : *.www.bb.com.br
047 Zone: www.bb.com.br : http://www.bb.com.br
047 Zone: www14.bancobrasil.com.br : *.www14.bancobrasil.com.br
047 Zone: www14.bancobrasil.com.br : https://www14.bancobrasil.com.br
047 Zone: www2.bancobrasil.com.br : *.www2.bancobrasil.com.br
047 Zone: www2.bancobrasil.com.br : https://www2.bancobrasil.com.br
050 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {E37CB5F0-51F5-4395-A808-5FA49E399F83}
052 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {C41A1C0E-EA6C-11D4-B1B8-444553540000}
052 * C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll (Oracle Corporation) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
052 * C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll (Oracle Corporation) {DBC80044-A445-435b-BC74-9C25C1C588A9}
061 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {98C11555-BC81-40aa-A053-DAADC5630000}
061 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {E37CB5F0-51F5-4395-A808-5FA49E399F83}
062 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) {F9DB5320-233E-11D1-9F84-707F02C10627}
067 * C:\Program Files\GbPlugin\gbieh.dll (Banco do Brasil)
073 Adobe Flash Player Updater.job : C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
100 Start Page HKLM : www.google.com
231 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) PDF Column Info
254 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {98C11555-BC81-40aa-A053-DAADC5630000}

Missing files
-------------
032 rdpclip




# AdwCleaner v4.112 - Logfile created 17/03/2015 at 20:48:44
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.40

*************************

AdwCleaner[R0].txt - [610 bytes] - [17/03/2015 20:48:44]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [668 bytes] ##########


Abraços

Edson

Tente remover isso===C:\Program Files\IObit\WinMetro\MetroSvc.exe

Vc não precisa disso
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#9 Por TmfeijoMMonr...
17/03/2015 - 22:02
Boa noite !

Este diretório também é da metro do tema do windows 8 :

C:\Program Files\UX Pack\WinMetro\MetroBar.exe (IObit)
C:\Program Files\UX Pack\WinMetro\MetroStart.exe (IObit)

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 09.51 PM.png.html?sort=3&o=0
Porém até te entendo ; pois :

https://www.virustotal.com/pt/file/3dcf31e0590d882323aa845e339d7c7e335ac5772bf25022861f2eb367e610f5/analysis/1426639958/
Mas só com o G Data !

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 09.56 PM.png.html?sort=3&o=0

Abraços
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#10 Por edutango
17/03/2015 - 22:08
Tmfeijo disse:
Boa noite !

Este diretório é da metro do tema do windows 8 :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 09.51 PM.png.html?sort=3&o=0
Porém até te entendo ; pois :

https://www.virustotal.com/pt/file/3dcf31e0590d882323aa845e339d7c7e335ac5772bf25022861f2eb367e610f5/analysis/1426639958/
Mas só com o G Data !

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-17-15 at 09.56 PM.png.html?sort=3&o=0

Abraços

AH
Falha minha

Li Iobit pensei ser do Advanced System Care
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#11 Por TmfeijoMMonr...
18/03/2015 - 09:18
Bom dia ! edutango e demais prezados

Opera contêm 31,00MB . Já o chrome 36,60 MB . Porêm com tudo isto ( 1º post ) vou fazer uma improvisação lógica/algo novo e diferente aqui ; pois com o opera preciso do Adobe Flash que tem 16,50 MB ; logo são 47,50 MB . Já com o chrome já tem o flash embutido ( o do mozilla dá erro http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 05.55 PM.png.html?sort=3&o=0 ) ; remanescendo menos programas ( 14 ) e 36,60 MB; considerando só este navegador . E poderei desativar ou excluir um(a) complemento/extensão do mozilla developer ; o s 3 google translator ; pois o chrome já traduz sites por si só .

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 09.12 AM.png.html?sort=3&o=0
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-15-15 at 09.02 AM.png.html?sort=3&o=8
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 09.45 AM.png.html?sort=3&o=0
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 10.05 AM.png.html?sort=3&o=0
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 05.54 PM.png.html?sort=3&o=0



Runscanner logfile http://www.runscanner.net

* = signed file
- = file not found

General info
------------
Computer name : EDSON-PC
Creation time : 18/03/2015 10:15:19
Hosts <> 127.0.0.1 : Cannot read hosts file
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 9.11.9600.17691
OS : Windows 7 Home Basic
OS Build : 7601
OS SP : Service Pack 1
RunScanner Version : 2.0.0.60
User Language : Português (Brasil)
User rights : Administrator
Windows folder : C:\Windows

Running processes
-----------------
* C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
* C:\Windows\System32\wininit.exe (Microsoft Corporation)
* C:\Windows\System32\winlogon.exe (Microsoft Corporation)
* C:\Windows\System32\services.exe (Microsoft Corporation)
* C:\Windows\System32\spoolsv.exe (Microsoft Corporation)
C:\Program Files\UX Pack\Aura\Aura.exe (Stealth Software)
C:\Users\EDSON\Downloads\AdwCleaner.exe
* C:\Windows\System32\dllhost.exe (Microsoft Corporation)
* C:\Program Files\Gadwin\Gadwin PrintScreenPro\PrintScreenPro32.exe (Gadwin Systems)
* C:\PROGRA~1\GbPlugin\gbpsv.exe (GAS Tecnologia)
* C:\Windows\System32\dwm.exe (Microsoft Corporation)
* C:\Windows\System32\smss.exe (Microsoft Corporation)
* C:\Windows\System32\SearchIndexer.exe (Microsoft Corporation)
* C:\Windows\servicing\TrustedInstaller.exe (Microsoft Corporation)
* C:\Windows\system32\audiodg.exe (Microsoft Corporation)
* C:\Windows\System32\lsass.exe (Microsoft Corporation)
* C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation)
* C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\svchost.exe (Microsoft Corporation)
* C:\Windows\System32\taskhost.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Windows\System32\csrss.exe (Microsoft Corporation)
* C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (IBM Corp.)
* C:\Program Files\Trusteer\Rapport\bin\RapportService.exe (IBM Corp.)
* C:\Users\EDSON\Downloads\runscanner (1).exe (Runscanner.net)
* C:\Program Files\Windows Media Player\wmpnetwk.exe (Microsoft Corporation)
* C:\Windows\System32\lsm.exe (Microsoft Corporation)
C:\Windows\explorer.exe (Microsoft Corporation)
* C:\Program Files\UX Pack\WinMetro\MetroBar.exe (IObit)
* C:\Program Files\UX Pack\WinMetro\MetroStart.exe (IObit)
* C:\Windows\System32\wbem\WmiApSrv.exe (Microsoft Corporation)

Unrated items
-------------
002 C:\Program Files\UX Pack\uxlaunch.exe (Windows X)
003 * C:\Program Files\Gadwin\Gadwin PrintScreenPro\PrintScreenPro32.exe (Gadwin Systems)
010 * C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (.NET Runtime Optimization Service)
010 * C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Acrobat Update Service)
010 * C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe® Flash® Player Update Service 16.0 r0)
010 * C:\PROGRA~1\GbPlugin\GbpSv.exe (G-Buster Browser Defense - Service)
010 * C:\Program Files\Google\Update\GoogleUpdate.exe (Google Installer)
010 * C:\Program Files\Google\Update\GoogleUpdate.exe (Google Installer)
010 * C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe (RapportMgmtService)
010 * C:\Program Files\IObit\WinMetro\MetroSvc.exe (WinMetro Service)
011 * C:\Windows\system32\DRIVERS\gbpndisrdn.sys (GAS Tecnologia - LWF Helper Driver)
011 * C:\Windows\system32\drivers\gbpkm.sys (GbPlugin Device Driver)
011 * C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_80128.sys (RapportCerberus)
011 * C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys (RapportEI)
011 * C:\Windows\System32\Drivers\RapportKELL.sys (RapportKE)
011 * C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys (RapportPG)
011 * C:\Windows\system32\DRIVERS\Rt86win7.sys (Realtek 8101E/8168/8169 NDIS 6.20 32-bit Driver )
011 * C:\Windows\system32\drivers\uxpatch.sys (uxpatch)
034 C:\Windows\Explorer.exe (Microsoft Corporation)
034 C:\Windows\Explorer.exe (Microsoft Corporation)
035 * C:\Program Files\Google\Chrome\Application\41.0.2272.89\Installer\chrmstp.exe (Google Inc.) {8A69D345-D564-463c-AFF1-A69D9E530F96}
047 Zone: seg.bb.com.br : https://seg.bb.com.br
047 Zone: www.bancobrasil.com.br : *.www.bancobrasil.com.br
047 Zone: www.bb.com.br : *.www.bb.com.br
047 Zone: www.bb.com.br : http://www.bb.com.br
047 Zone: www14.bancobrasil.com.br : *.www14.bancobrasil.com.br
047 Zone: www14.bancobrasil.com.br : https://www14.bancobrasil.com.br
047 Zone: www2.bancobrasil.com.br : *.www2.bancobrasil.com.br
047 Zone: www2.bancobrasil.com.br : https://www2.bancobrasil.com.br
050 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {E37CB5F0-51F5-4395-A808-5FA49E399F83}
052 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {C41A1C0E-EA6C-11D4-B1B8-444553540000}
052 * C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll (Oracle Corporation) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
052 * C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll (Oracle Corporation) {DBC80044-A445-435b-BC74-9C25C1C588A9}
061 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {98C11555-BC81-40aa-A053-DAADC5630000}
061 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {E37CB5F0-51F5-4395-A808-5FA49E399F83}
062 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) {F9DB5320-233E-11D1-9F84-707F02C10627}
067 * C:\Program Files\GbPlugin\gbieh.dll (Banco do Brasil)
073 Adobe Flash Player Updater.job : C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
073 GoogleUpdateTaskMachineCore.job : C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
073 GoogleUpdateTaskMachineUA.job : C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)
100 Start Page HKLM : www.google.com
231 * C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll (Adobe Systems, Inc.) PDF Column Info
254 * C:\PROGRAM FILES\GBPLUGIN\gbieh.dll (Banco do Brasil) {98C11555-BC81-40aa-A053-DAADC5630000}

Missing files
-------------
032 rdpclip


# AdwCleaner v4.112 - Logfile created 18/03/2015 at 09:53:58
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Google Chrome v41.0.2272.89

*************************

AdwCleaner[R0].txt - [618 bytes] - [18/03/2015 09:53:58]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [676 bytes] ##########



Mais que sacrilégio . Pensei em ter mais espaço e está travando . Foi só remover opera e reinstalar o crhome que o mesmo e o mozilla developer estão congelando ! Estava tudo tão rápido com um soft à mais !

https://www.hardware.com.br/comunidade/v-t/1365450/


Parece que chromo e o mozilla developer se conflitam ! Ou devido à alguns arquivos do chrome que dasabilitei pelo cleanner ; mas só iniciava com o sistema . Ou alguns do opera ( um outro dividia chave com o IE; da pasta opera software << http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.25 PM.png.html?sort=3&o=0 ) ; já removido ou até mesmo do flashe adobe player . Uma comparação ; uma chave do arquivo opera software junto com o do mozilla developer : http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.26 PM.png.html?sort=3&o=0

Desenvolvedores terceirizados também . Lembra ? Arquivo do crhromo no editor ; fabricante piriform ; o mesmo do cleanner . Qualquer relação é mera coincidência :
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.24 PM.png.html?sort=3&o=0

Bem viável voltar como antes ( como no inicio do tópico; mais otimizados ( ambos como o sistema estão rápidos << ) < ficar com IE, opera e mozilla developer :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.35 PM.png.html?sort=3&o=0



.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Basic
Boot Device: \Device\HarddiskVolume1
Install Date: 14/10/2014 15:30:30
System Uptime: 18/03/2015 15:10:34 (1 hours ago)
.
Motherboard: MEGA | | G41T-M7 LGT
Processor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz | CPU 1 | 2593/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 449,898 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: MpKslc90101d5
Device ID: ROOT\LEGACY_MPKSLC90101D5\0000
Manufacturer:
Name: MpKslc90101d5
PNP Device ID: ROOT\LEGACY_MPKSLC90101D5\0000
Service: MpKslc90101d5
.
==== System Restore Points ===================
.
RP614: 18/03/2015 15:56:04 - PS
.
==== Installed Programs ======================
.
Adobe Reader XI (11.0.10) - Português
Firefox Developer Edition 37.0a2 (x86 pt-BR)
Gadwin PrintScreenPro (32-Bit)
Java 8 Update 40
Java Auto Updater
Microsoft .NET Framework 4.5.2
Microsoft .NET Framework 4.5.2 (Português do Brasil)
Microsoft .NET Framework 4.5.2 (PTB)
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Opera Stable 28.0.1750.48
Proteção de Terminal Trusteer
Rapport
Revo Uninstaller 1.95
UxStyle Core Beta
Windows 8 Transformation Pack
WinMetro
.
==== End Of File ===========================

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.17689 BrowserJavaVersion: 11.40.2
Run by EDSON at 16:26:32 on 2015-03-18
Microsoft Windows 7 Home Basic 6.1.7601.1.1252.55.1046.18.1981.808 [GMT -3:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
SP: Microsoft Security Essentials *Enabled/Updated* {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\PROGRA~1\GbPlugin\GbpSv.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Gadwin\Gadwin PrintScreenPro\PrintScreenPro32.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\UX Pack\WinMetro\MetroBar.exe
C:\Program Files\UX Pack\WinMetro\MetroStart.exe
C:\Program Files\UX Pack\Aura\Aura.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\wbem\WmiApSrv.exe
C:\Windows\system32\DllHost.exe
C:\Windows\explorer.exe
C:\Program Files\Firefox Developer Edition\firefox.exe
C:\Windows\system32\taskhost.exe
C:\Users\EDSON\Downloads\AdwCleaner.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k swprv
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
mStart Page = www.google.com
mSearch Bar = hxxp://www.google.com
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.8.0_40\bin\ssv.dll
BHO: GbIehObj Class: {C41A1C0E-EA6C-11D4-B1B8-444553540000} - c:\program files\gbplugin\gbieh.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre1.8.0_40\bin\jp2ssv.dll
mRun: [UX Launcher] c:\program files\ux pack\uxlaunch.exe
uPolicies-Explorer: NoDrives = dword:0
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{B6593E2F-8562-4A36-878B-62693DC80EC1} : DHCPNameServer = 192.168.0.1
Notify: GbPluginBb - c:\program files\gbplugin\gbieh.dll
Notify: igfxcui - igfxdev.dll
SEH: GbPluginObj Class - {E37CB5F0-51F5-4395-A808-5FA49E399F83} - c:\program files\gbplugin\gbieh.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\edson\appdata\roaming\mozilla\firefox\profiles\v8df52b4.dev-edition-default\
FF - prefs.js: browser.startup.homepage - www.google.com.br
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre1.8.0_40\bin\dtplugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre1.8.0_40\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_16_0_0_305.dll
.
============= SERVICES / DRIVERS ===============
.
R0 GbpKm;Gbp KernelMode;c:\windows\system32\drivers\GbpKm.sys [2015-2-12 46552]
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2014-11-15 239224]
R0 RapportKELL;RapportKELL;c:\windows\system32\drivers\RapportKELL.sys [2015-2-12 208856]
R1 MpKslb8f4b856;MpKslb8f4b856;c:\programdata\microsoft\microsoft antimalware\definition updates\{dbc93018-797a-4d92-80a6-6ac86c08a5ea}\MpKslb8f4b856.sys [2015-3-18 39464]
R1 ndisrd;GAS Tecnologia Filter Driver;c:\windows\system32\drivers\gbpndisrdn.sys [2014-10-14 29400]
R1 RapportCerberus_80128;RapportCerberus_80128;c:\programdata\trusteer\rapport\store\exts\rapportcerberus\baseline\RapportCerberus32_80128.sys [2015-2-24 472152]
R1 RapportEI;RapportEI;c:\program files\trusteer\rapport\bin\RapportEI.sys [2015-2-12 251640]
R1 RapportPG;RapportPG;c:\program files\trusteer\rapport\bin\RapportPG.sys [2015-2-12 332696]
R2 GbpSv;Gbp Service;c:\progra~1\gbplugin\GbpSv.exe [2015-2-12 555320]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2013-9-27 95408]
R2 RapportMgmtService;Rapport Management Service;c:\program files\trusteer\rapport\bin\RapportMgmtService.exe [2015-2-12 1919256]
R2 uxpatch;uxpatch;c:\windows\system32\drivers\uxpatch.sys [2009-7-13 25448]
R3 NisSrv;Inspeção de Rede da Microsoft;c:\program files\microsoft security client\NisSrv.exe [2015-1-30 284472]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2014-11-1 716504]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2014-4-11 103608]
S2 MetroServ;WinMetro Service;c:\program files\iobit\winmetro\MetroSvc.exe [2014-11-16 314176]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2015-3-10 102912]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2014-10-14 14848]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2014-10-14 49152]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
SUnknown MpKslc90101d5;MpKslc90101d5; [x]
.
=============== File Associations ===============
.
ShellExec: Opera.exe: open="c:\program files\opera\Launcher.exe" "%1"
.
=============== Created Last 30 ================
.
2015-03-18 19:18:43 -------- d-----w- C:\AdwCleaner
2015-03-18 18:33:11 -------- d-----w- c:\users\edson\appdata\local\Opera Software
2015-03-18 18:33:10 -------- d-----w- c:\users\edson\appdata\roaming\Opera Software
2015-03-18 18:16:02 39464 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{dbc93018-797a-4d92-80a6-6ac86c08a5ea}\MpKslb8f4b856.sys
2015-03-18 16:13:56 9041640 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{dbc93018-797a-4d92-80a6-6ac86c08a5ea}\mpengine.dll
2015-03-18 12:55:17 -------- d-----w- c:\program files\Firefox Developer Edition
2015-03-18 12:41:37 -------- d-----w- c:\users\edson\appdata\local\Google
2015-03-18 11:38:25 9041640 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2015-03-14 17:23:48 -------- d-----w- c:\users\edson\appdata\roaming\Runscanner.net
2015-03-12 20:11:55 -------- d-----w- c:\users\edson\appdata\local\Intel
2015-03-10 22:37:24 13368 ----a-w- c:\windows\system32\drivers\SWDUMon.sys
2015-03-10 19:58:59 64000 ----a-w- c:\windows\system32\MshtmlDac.dll
2015-03-10 19:57:55 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2015-03-10 14:55:58 -------- d-----w- c:\users\edson\appdata\roaming\DRPSu
2015-03-09 20:56:46 71344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-03-09 20:56:46 701616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-02-25 13:52:56 -------- d-----w- c:\windows\system32\wbem\repository
2015-02-25 12:56:12 -------- d-sh--w- C:\$RECYCLE.BIN
2015-02-21 19:42:51 908840 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\nisbackup\gapaengine.dll
2015-02-21 19:42:43 908840 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{b7bd42a4-209e-4383-9ffe-c3a1b8e1705e}\gapaengine.dll
2015-02-21 17:31:19 -------- d-----w- c:\users\edson\appdata\local\Microsoft Games
2015-02-18 22:12:45 -------- d-----w- c:\program files\Microsoft Security Client
2015-02-17 11:05:08 -------- d-----w- c:\windows\system32\wbem\Rep_bak
2015-02-17 10:55:48 9041640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{83be9846-6943-41a0-8a93-9332376c3cc6}\mpengine.dll
.
==================== Find3M ====================
.
2015-03-08 12:11:36 96680 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2015-03-06 05:15:20 67512 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2015-03-06 05:15:20 137656 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2015-03-06 05:10:34 172032 ----a-w- c:\windows\system32\wdigest.dll
2015-03-06 05:10:30 65536 ----a-w- c:\windows\system32\TSpkg.dll
2015-03-06 05:10:29 15872 ----a-w- c:\windows\system32\sspisrv.dll
2015-03-06 05:10:29 100352 ----a-w- c:\windows\system32\sspicli.dll
2015-03-06 05:10:26 248832 ----a-w- c:\windows\system32\schannel.dll
2015-03-06 05:10:26 22016 ----a-w- c:\windows\system32\secur32.dll
2015-03-06 05:10:22 259584 ----a-w- c:\windows\system32\msv1_0.dll
2015-03-06 05:10:22 221184 ----a-w- c:\windows\system32\ncrypt.dll
2015-03-06 05:10:18 550912 ----a-w- c:\windows\system32\kerberos.dll
2015-03-06 05:10:18 1061376 ----a-w- c:\windows\system32\lsasrv.dll
2015-03-06 05:10:11 17408 ----a-w- c:\windows\system32\credssp.dll
2015-03-06 05:09:44 22528 ----a-w- c:\windows\system32\lsass.exe
2015-03-06 05:09:31 50176 ----a-w- c:\windows\system32\auditpol.exe
2015-03-06 05:07:50 60416 ----a-w- c:\windows\system32\msobjs.dll
2015-03-06 05:07:43 146432 ----a-w- c:\windows\system32\msaudite.dll
2015-03-06 05:06:20 686080 ----a-w- c:\windows\system32\adtschema.dll
2015-02-26 03:11:26 2381312 ----a-w- c:\windows\system32\win32k.sys
2015-02-24 21:38:42 290304 ----a-w- c:\windows\system32\subinacl.exe
2015-02-24 07:23:36 246920 ------w- c:\windows\system32\MpSigStub.exe
2015-02-20 04:13:52 26624 ----a-w- c:\windows\system32\lpk.dll
2015-02-20 04:13:49 70656 ----a-w- c:\windows\system32\fontsub.dll
2015-02-20 04:13:46 10240 ----a-w- c:\windows\system32\dciman32.dll
2015-02-20 04:13:43 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-02-20 03:09:16 299008 ----a-w- c:\windows\system32\atmfd.dll
2015-02-20 02:22:35 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2015-02-20 02:22:20 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2015-02-20 02:09:08 503296 ----a-w- c:\windows\system32\vbscript.dll
2015-02-20 02:08:59 62464 ----a-w- c:\windows\system32\iesetup.dll
2015-02-20 02:08:13 47616 ----a-w- c:\windows\system32\ieetwproxystub.dll
2015-02-20 01:56:54 115712 ----a-w- c:\windows\system32\ieUnatt.exe
2015-02-20 01:56:53 102912 ----a-w- c:\windows\system32\ieetwcollector.exe
2015-02-20 01:56:07 620032 ----a-w- c:\windows\system32\jscript9diag.dll
2015-02-20 01:50:00 667648 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2015-02-20 01:41:52 60416 ----a-w- c:\windows\system32\JavaScriptCollectionAgent.dll
2015-02-20 01:30:39 4300288 ----a-w- c:\windows\system32\jscript9.dll
2015-02-20 01:24:21 2052608 ----a-w- c:\windows\system32\inetcpl.cpl
2015-02-20 01:23:19 1155072 ----a-w- c:\windows\system32\mshtmlmedia.dll
2015-02-20 01:01:25 1888256 ----a-w- c:\windows\system32\wininet.dll
2015-02-16 15:30:29 35064 ----a-w- c:\windows\system32\drivers\TrueSight.sys
2015-02-12 13:00:04 208856 ----a-w- c:\windows\system32\drivers\RapportKELL.sys
2015-02-09 16:32:38 46552 ----a-w- c:\windows\system32\drivers\GbpKm.sys
2015-02-03 03:16:31 3973048 ----a-w- c:\windows\system32\ntkrnlpa.exe
2015-02-03 03:16:31 3917760 ----a-w- c:\windows\system32\ntoskrnl.exe
2015-02-03 03:16:30 78784 ----a-w- c:\windows\system32\drivers\mountmgr.sys
2015-02-03 03:11:55 50176 ----a-w- c:\windows\system32\rrinstaller.exe
2015-02-03 03:11:55 262656 ----a-w- c:\windows\system32\rstrui.exe
2015-02-03 03:11:52 9728 ----a-w- c:\windows\system32\pcawrk.exe
2015-02-03 03:11:52 8192 ----a-w- c:\windows\system32\pcalua.exe
2015-02-03 03:11:48 23040 ----a-w- c:\windows\system32\mfpmp.exe
2015-02-03 03:11:35 96768 ----a-w- c:\windows\system32\appidpolicyconverter.exe
2015-02-03 03:11:35 16896 ----a-w- c:\windows\system32\appidcertstorecheck.exe
2015-02-03 03:11:35 100864 ----a-w- c:\windows\system32\audiodg.exe
2015-02-03 03:11:18 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2015-02-03 03:10:13 8704 ----a-w- c:\windows\system32\pcaevts.dll
2015-02-03 03:09:03 2048 ----a-w- c:\windows\system32\mferror.dll
2015-02-03 03:08:07 6656 ----a-w- c:\windows\system32\apisetschema.dll
2015-02-03 03:00:23 593920 ----a-w- c:\windows\system32\drivers\PEAuth.sys
2015-02-03 02:26:42 50176 ----a-w- c:\windows\system32\drivers\appid.sys
2015-01-31 03:33:06 2744320 ----a-w- c:\windows\system32\rdpcorets.dll
2015-01-31 03:33:06 13824 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2015-01-31 00:48:45 221184 ----a-w- c:\windows\system32\rdpudd.dll
2015-01-30 23:56:12 370488 ----a-w- c:\windows\system32\drivers\cng.sys
2015-01-20 17:31:47 56680 ----a-w- c:\windows\system32\drivers\ksapi64.sys
2015-01-20 17:31:46 81768 ----a-w- c:\windows\system32\drivers\ksapi.sys
2015-01-17 02:30:42 828928 ----a-w- c:\windows\system32\msctf.dll
2015-01-15 07:43:01 15872 ----a-w- c:\windows\system32\sspisrv(500).dll
2015-01-15 07:43:01 100352 ----a-w- c:\windows\system32\sspicli(499).dll
2015-01-15 07:42:59 22016 ----a-w- c:\windows\system32\secur32(476).dll
2015-01-15 07:42:50 1061376 ----a-w- c:\windows\system32\lsasrv(399).dll
2015-01-15 07:42:17 22528 ----a-w- c:\windows\system32\lsass(400).exe
2015-01-13 02:49:19 1230336 ----a-w- c:\windows\system32\WindowsCodecs(551).dll
2015-01-12 02:02:04 2277888 ----a-w- c:\windows\system32\iertutil(385).dll
2015-01-12 01:14:47 12829184 ----a-w- c:\windows\system32\ieframe(384).dll
2015-01-12 01:00:17 1888256 ----a-w- c:\windows\system32\wininet(553).dll
2015-01-12 00:56:43 1307136 ----a-w- c:\windows\system32\urlmon(516).dll
2015-01-10 06:27:54 172032 ----a-w- c:\windows\system32\wdigest(541).dll
2015-01-10 06:27:51 65536 ----a-w- c:\windows\system32\TSpkg(510).dll
2015-01-10 06:27:47 248832 ----a-w- c:\windows\system32\schannel(472).dll
2015-01-10 06:27:44 221184 ----a-w- c:\windows\system32\ncrypt(419).dll
2015-01-10 06:27:43 259584 ----a-w- c:\windows\system32\msv1_0(411).dll
2015-01-10 06:27:39 550912 ----a-w- c:\windows\system32\kerberos(391).dll
2015-01-10 06:27:32 17408 ----a-w- c:\windows\system32\credssp(342).dll
2015-01-09 02:48:18 76800 ----a-w- c:\windows\system32\wdi.dll
2015-01-09 02:48:18 76800 ----a-w- c:\windows\system32\wdi(540).dll
2015-01-09 02:48:07 635904 ----a-w- c:\windows\system32\perftrack.dll
2015-01-09 02:48:07 27136 ----a-w- c:\windows\system32\powertracker.dll
2014-12-19 02:43:00 164864 ----a-w- c:\windows\system32\profsvc.dll
2014-12-19 01:34:44 116224 ----a-w- c:\windows\system32\drivers\mrxdav.sys
.
============= FINISH: 16:28:31,01 ===============



Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 18/03/2015
Scan Time: 20:33:46
Logfile: LOG.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2015.03.18.07
Rootkit Database: v2015.02.25.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7
CPU: x86
File System: NTFS
User: EDSON

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 322081
Time Elapsed: 28 min, 4 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)


Um tira tema ref. o caso fabricante do limpador ccleanner ; acima . Ao instalar este limpador; vejam o site da piriform pedindo para instalar o google crohme ( que inclusive está cheio mesmo de bugs ) :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 05.31 PM.png.html?sort=3&o=0

Faz tempo :
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-10-15 at 08.54 PM_1.png.html?sort=3&o=25


Abraços
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#13 Por TmfeijoMMonr...
19/03/2015 - 10:21
Bom dia ! Komm

Certo ; sim eu sei . Mas quis dizer assim . Uma empresa e / ou o limpador de nome como o ccleanner; tendo destas também vindo algo que o usuário não deseja . Semelhante sites ( pelo visto agora vários ) que injeta baidu e seus companheiros adwares . Google dividindo chaves ( visualizem bem os valores da chave no 1º link abaixo ) com piriform ; semelhante a que aconteçe com várias empresas de tech que nos fornece extenções . Entendeu meu raciocínio ?

http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.24 PM.png.html?sort=3&o=0

Umas comparações :

Microsoft ( IE ) dividindo chave com opera:
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.25 PM.png.html?sort=3&o=0

Opera software junto com mozilla developer :
http://s1062.photobucket.com/user/Edson_Melo/media/Screen Shot 03-18-15 at 03.26 PM.png.html?sort=3&o=0

Aqui sistema e navegadores estão otimizados agora . Remanescentes como antes são IE, opera e mozilla developer . Pois com o do google não dá mais !

Leu meus relatos logo acima ? Abaixo do 4º log do AdwCleaner do dia 18/03/2015 às 09:53:58 !

Visualizou os prints ?

Este; aqui parcial :

( Mais que sacrilégio . Pensei em ter mais espaço e está travando . Foi só remover opera e ............. )

Ainda suja o registro :

http://s1062.photobucket.com/user/Edson_Melo/media/Screen%20Shot%2003-30-15%20at%2010.54%20AM.png.html?sort=3&o=0

Suporte :

https://www.hardware.com.br/comunidade/administrador-pc/1366518/
https://www.hardware.com.br/comunidade/v-t/1367046/
https://www.hardware.com.br/comunidade/baidu-troca/1362318/1.html#post7117630

Programas indesejados . Adwares !



Na falta destes dois arquivos ( warsawe está vindo toda hora com o C ++ 2013 Redistributable (x86) ); agora / toda vez ao acessar o internet banking do BB ; o software de dispositivo de segurança da gas tecnologia ; automáticamente instala - os no sistema e mesmo não tendo o dispositivo de segurança ( já tinha removido o mesmo ; antes de tudo isto ); e tendo o IBM Security Trusteer Rapport .

Façamos o seguinte então . E dá certo . Removemos o dispositivo GBBD e o C ++ ; remanescendo o warsawe .


Abraços
Komm
Komm Cyber Highlander Registrado
12.8K Mensagens 2.7K Curtidas
#14 Por Komm
19/03/2015 - 12:09
Tmfeijo, o recado está dado. Não queres adotar o Unchecky mas frequentemente estás incomodado com malwares que se instalam no micro. Injetar código para instalar Baidu, Chrome, McAfee Security Scan ou o escambau é o jeito dos fabricantes de software ganharem algum dinheiro com as versões free. É comércio, as empresas precisam de dinheiro e provavelmente não vai mudar tão cedo.

Off: Teus posts continuam ruins de ser lidos e entendidos. Acho que esta não é uma reclamação só minha.

[]s.
Legal mesmo é a cara do cachorro quando a bicicleta para! mostrando_dentes.png
TmfeijoMMonroe
TmfeijoMMonr... Cyber Highlander Registrado
13.7K Mensagens 4.2K Curtidas
#15 Por TmfeijoMMonr...
19/03/2015 - 12:39
Boa tarde ! komm e demais prezados

Bom à principio Komm . Vc tem noções de direito digital ? Tem noções também de direito eletrônico ? E à principio também este tópico estava na subseção segurança: discussões, dúvidas etc... Porém com ênfase à navegador ( chrome ) ausente/removido no/do pc e assim sendo livre de extenções maliciosas . Com o chrome infecta - se mais e mais vezes . No andar da carruagem ; constou o virus Rollaround e um membro da moderação redirecionou para a seção de análise de logs e remoção de malwares . Restaurei todos os navegadores novamente ; pois com o google chrome não dá mais; travava todos os browser`s; além de se infectar mais . E descobri também que muitos programas de renome estão dividindo arquivos/pastas/chaves no editor de registro do windows e uma certa estrutura de programação com outros fabricantes de outros programas de renome também . O que para mim é suspeito . E maléfico aos usuários/consumidores ( pois estes mesmos programas free tem as versões pagas também ) . Sem garantia de qualidade nenhuma .


# AdwCleaner v4.112 - Logfile created 19/03/2015 at 14:52:43
# Updated 09/03/2015 by Xplode
# Database : 2015-03-15.1 [Server]
# Operating system : Windows 7 Ultimate (x86)
# Username : EDSON - EDSON-PC
# Running from : C:\Users\EDSON\Downloads\AdwCleaner.exe
# Option : Scan

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v


-\\ Opera v28.0.1750.48

*************************

AdwCleaner[R0].txt - [610 bytes] - [19/03/2015 14:52:43]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [668 bytes] ##########


PS : Aqui sistema e navegadores ( IE , opera e mozilla developer ) estão limpos e rápidos .



Abraços
Responder Tópico
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal