Logo Hardware.com.br
Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#2 Por Power Max
12/08/2014 - 23:53
Olá Leandro.


veja.png Faça o download do < ZHPDiag > < 4560c2e838537857a70e37b22927665a> ( ... de Nicolas Coolman )


Obs: Ao acessar o link acima clique no botão Télécharger referente ao ZHPDiag para baixá-lo, tal como mostra a imagem abaixo:


58de70529772c242f9f9a79cb07a1430


Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:


Tutorial de instalação e execução do aplicativo ZHPDiag


* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Leandro Sampaio
Leandro Samp... Geek Registrado
2.3K Mensagens 131 Curtidas
#5 Por Leandro Samp...
21/08/2014 - 19:42
Segue o relatório Power Max, desculpe a demora


--------------------------------------------------------------------------



~ Relatório do ZHPDiag v2014.7.24.108 - Nicolas Coolman (24/07/2014)
~ Iniciado por Leandro (21/08/2014 19:40:56)
~ Endereço do Website : http://nicolascoolman.fr
~ Endereço do Webforum : http://forum.nicolascoolman.fr
~ Tradução pelo utilizador
~ Estatuto da versão :
~ Lista Branca : Ativado pelo programa
~ Elevação dos Privilégios : OK
~ Controle de Conta de Utilizador :


---\\ Navegadores Internet
MSIE: Internet Explorer v11.0.9600.17239
MFIE: Mozilla Firefox 31.0 (Defaut)
GCIE: Google Chrome v36.0.1985.143

---\\ Informações sobre os produtos Windows
~ Langage: Portugais
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)
Windows Server License Manager Script : OK
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Softwares de proteçao do sistema
Windows Defender W7 (Deactivate)

---\\ Softwares d'optimização do sistema
CCleaner v4.15

---\\ Softwares de partilha do PeerToPeer (P2P)

---\\ Monitoramento dos softwares
Adobe Flash Player 14 Plugin
Adobe Reader XI

---\\ Informações sobre o sistema
~ Processor: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 4085 MB (58% free)
System Restore: Activé (Enable)
System drive C: has 383 GB (83%) free of 456 GB

---\\ Modo de conexão ao sistema
~ Computer Name: LEANDRO-PC
~ User Name: Leandro
~ All Users Names: Leandro, HomeGroupUser$, Convidado, Administrador,
~ Unselected Option: 01,039,040,041,042,O43,044,045,046,047,048, 49,O50,O51,O52,O53,O54,O55,O56,057,O58,O59, 60,061,O62,063,064,065,066,O67,068,069,080,O81,O82,O83,ados,O84,O85,O86,O87,088,089, O2,090,091,O92,NTFS,O36,O4G, 04,034
Logged in as Administrator

---\\ As variáveis de ambiente
~ System Unit : C:\
~ %AppZHP% : C:\Users\Leandro\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Leandro\AppData\Roaming\
~ %Desktop% : C:\Users\Leandro\Desktop\
~ %Favorites% : C:\Users\Leandro\Favorites\
~ %LocalAppData% : C:\Users\Leandro\AppData\Local\
~ %StartMenu% : C:\Users\Leandro\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumeração das unidades dos discos
C: Hard drive, Flash drive, Thumb drive (Free 383 Go of 456 Go)
D: Hard drive, Flash drive, Thumb drive (Free 1 Go of 9 Go)
E: CD-ROM drive (Not Inserted)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)



---\\ Estado do Centro de Segurança do Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowPrinters: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSetProgramAccessAndDefaults: Modified =>PUA.StartShow
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Pesquisa particular de ficheiros genéricos
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Windows Explorer.) (.25/02/2011 - 03:19:30.) -- C:\Windows\Explorer.exe [2871808]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.8E71A5CB5312B8392D4DA4CA37BB5868] - (.Microsoft Corporation - Internet Extensions para Win32.) (.25/07/2014 - 07:52:06.) -- C:\Windows\System32\wininet.dll [2266624]
[MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.04/03/2014 - 06:43:50.) -- C:\Windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.21/11/2010 - 00:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.30/05/2014 - 03:45:52.) -- C:\Windows\system32\Drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.26/04/2011 - 23:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 00:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.23/01/2014 - 23:37:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 00:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/11/2010 - 00:25:07.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s



---\\ Estatuto dos ficheiros ocultos (Oculto/Total)
~ Mes images (My Pictures) : 1/1571
~ Mes musiques (My Musics) : 39/537
~ Mes Videos (My Videos) : 1/37
~ Mes Favoris (My Favorites) : 1/61
~ Mes Documents (My Documents) : 1/296
~ Mon Bureau (My Desktop) : 2/4
~ Menu demarrer (Programs) : 1/32
~ Hidden Files: Scanned in 00mn 06s



---\\ Processos lançados
[MD5.2AA5DD75EA1281432C40D22B5FD87D3A] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [751184] [PID.2348]
[MD5.10F36FB8CD6218CD7F818268E0F3F9C6] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [275568] [PID.3344]
[MD5.02F8883595A2B3D7FFA11C71EAC68473] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [18544] [PID.2800]
[MD5.46F4B7B42581E0681EC387BD0A447EB4] - (.Adobe Systems, Inc. - Adobe Flash Player 14.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_179.exe [1868976] [PID.2988]
[MD5.80E04F074334739C96E1C08C331FB82D] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8080384] [PID.192]
[MD5.0327A6CE0934C324E3E82920E9EC0EE4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160] [PID.1240]
[MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.1600]
[MD5.0327A6CE0934C324E3E82920E9EC0EE4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160] [PID.1688]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [PID.552]
~ Processes Running: Scanned in 00mn 00s



---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2)
C:\Users\Leandro\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Loja v.0.2 (Activé)
G2 - GCE: Preference [User Data\Default] [kmendfapggjehodndflmmgagdbamhnfd] CryptoTokenExtension v.0.0.1 (Activé)
G2 - GCE: Preference [User Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé)
G2 - GCE: Preference [User Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé)
G2 - GCE: Preference [User Data\Default] [pafkbggdmjlpgkdkcbjmhmfcdpncadgh] Google Now v.1.2.0.1 (Activé)

---\\ Pasta de extensão do Google Chrome
~ Google Lines Browser: 12 Legitimates Filtered in 00mn 05s



---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3)
M2 - MFEP: prefs.js [Leandro - n5ufkwn7.default\abs@avira.com] [] Avira Browser Safety v1.3.0 (..)
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (...) -- C:\Users\Leandro\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (.not file.)
~ Firefox Browser: 11 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Gestão do Proxy (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Alteração Dominio/Clientes DNS (017)
O17 - HKLM\System\CCS\Services\Tcpip\..\{BE4E34C8-5609-4789-BEE4-C945E60119BE}: DhcpNameServer = 200.189.80.114 200.189.80.127
O17 - HKLM\System\CS1\Services\Tcpip\..\{BE4E34C8-5609-4789-BEE4-C945E60119BE}: DhcpNameServer = 200.189.80.114 200.189.80.127
O17 - HKLM\System\CS2\Services\Tcpip\..\{BE4E34C8-5609-4789-BEE4-C945E60119BE}: DhcpNameServer = 200.189.80.114 200.189.80.127
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 200.189.80.114 200.189.80.127
~ Domain: Scanned in 00mn 00s



---\\ Protocolo adicional (018)
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (...) --
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Valor do Registo AppInit_DLLs e sub-chaves Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s



---\\ Search Tracing Registry Key (O100)
HKLM\SOFTWARE\Microsoft\Tracing\MemOptimizerPro_RASAPI32 =>PUP.OptimizerPro
HKLM\SOFTWARE\Microsoft\Tracing\MemOptimizerPro_RASMANCS =>PUP.OptimizerPro
HKLM\SOFTWARE\Microsoft\Tracing\updateWebConnect_RASAPI32 =>PUP.WebConnect
HKLM\SOFTWARE\Microsoft\Tracing\updateWebConnect_RASMANCS =>PUP.WebConnect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASMANCS =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilmelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilmelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilWiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilWiseEnhance_RASMANCS =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASMANCS =>PUP.WiseEnhance
~ BTK: 55 Legitimates Filtered in 00mn 00s



---\\ Informações complémentaires do módulos
~ http://nicolascoolman.fr/g2-google-chrome-extensions/ =>.Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2)
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Gestão do Proxy (R5)
~ AMI: 2 Legitimates Filtered in 00mn 00s



---\\ Sumário das deteções encontradas na sua estação
http://nicolascoolman.fr/pua-startshow =>PUA.StartShow
http://nicolascoolman.fr/pup-optimizerpro =>PUP.OptimizerPro
http://nicolascoolman.fr/pup-webconnect =>PUP.WebConnect
http://nicolascoolman.fr/pup-melondrea =>PUP.Melondrea
http://nicolascoolman.fr/pup-wiseenhance =>PUP.WiseEnhance
~ MSI: 5 link(s) detected in 00mn 00s



~ 102 Legitimates filtered by white list
End of the scan (231 lines in 00mn 27s)(0)
Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#6 Por Power Max
22/08/2014 - 11:52
A análise do ZHP ficou incompleta.

|- Execute o ícone do pergaminho. ( ZHPDiag )

Imagem

* Clique na opção "COMPLETA" e aguarde a conclusão:

Imagem

* Clique OK e,ao concluir,poste o relatório! ( ZHPDiag.txt )
_____________________________________________________________

Obs: Caso o relatório dele fique muito grande e não caiba aqui no fórum, acesse o site Cjoint:
http://cjoint.com

Clique no botão Escolher arquivo > Selecione o arquivo do log (relatório) e clique no botão Abrir.

Clique no botão Créer le lien Cjoint

Copie o link que aparecerá ao lado da frase Le lien a été créé e poste este link em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#8 Por Power Max
23/08/2014 - 20:38
Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
http://www.bleepingcomputer.com/download/adwcleaner/

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

Remova adwares e toolbars maliciosas com o Adwcleaner

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Leandro Sampaio
Leandro Samp... Geek Registrado
2.3K Mensagens 131 Curtidas
#9 Por Leandro Samp...
23/08/2014 - 21:28
Log do AdwCleaner:



# AdwCleaner v3.308 - Relatório criado 23/08/2014 às 21:22:39
# Atualizado 20/08/2014 por Xplode
# Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits)
# Usuário : Leandro - LEANDRO-PC
# Executando de : C:\Users\Leandro\Downloads\AdwCleaner.exe
# Opção : Limpar

***** [ Serviços ] *****


***** [ Arquivos / Pastas ] *****


***** [ Tarefas ] *****


***** [ Atalhos ] *****


***** [ Registro ] *****


***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.17239


-\\ Mozilla Firefox v31.0 (x86 pt-BR)

[ Arquivo : C:\Users\Leandro\AppData\Roaming\Mozilla\Firefox\Profiles\kj3qruvw.default-1406334195691\prefs.js ]


[ Arquivo : C:\Users\Leandro\AppData\Roaming\Mozilla\Firefox\Profiles\n5ufkwn7.default\prefs.js ]


-\\ Google Chrome v36.0.1985.143

[ Arquivo : C:\Users\Leandro\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R18].txt - [1427 octets] - [15/07/2014 22:06:57]
AdwCleaner[R19].txt - [1200 octets] - [12/08/2014 22:18:13]
AdwCleaner[R20].txt - [2463 octets] - [20/08/2014 21:40:05]
AdwCleaner[R21].txt - [1445 octets] - [23/08/2014 21:21:54]
AdwCleaner[S17].txt - [1298 octets] - [15/07/2014 22:07:24]
AdwCleaner[S18].txt - [1260 octets] - [12/08/2014 22:19:05]
AdwCleaner[S19].txt - [2506 octets] - [20/08/2014 21:40:54]
AdwCleaner[S20].txt - [1362 octets] - [23/08/2014 21:22:39]

########## EOF - C:\AdwCleaner\AdwCleaner[S20].txt - [1423 octets] ##########
Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#10 Por Power Max
23/08/2014 - 22:14
veja.png Selecione e copie todo o texto destacado em vermelho abaixo (começando em script zhpfix e indo até emptyclsid)

script zhpfix
SysRestore
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSetProgramAccessAndDefaults: Modified =>PUA.StartShow
O4 - GS\TaskBar [Leandro]: Memory Optimizer Pro.lnk . (...) -- C:\Program Files (x86)\Memory Optimizer\MemOptimizerPro.exe (.not file.) =>PUP.OptimizerPro
O45 - LFCP:[MD5.F01AA172751917DF77933B74288A4326] - 23/08/2014 - 20:21:25 ---A- - C:\Windows\Prefetch\MEMOPTIMIZERPRO.EXE-50E52561.pf =>PUP.OptimizerPro
O58 - SDL:03/09/2013 - 08:59:02 ---A- . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) -- C:\Windows\System32\Drivers\BprotectEx.sys [78144]
O58 - SDL:24/04/2014 - 12:32:28 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys [61120] =>PUP.LinkiDoo
O69 - SBI: prefs.js [Leandro - kj3qruvw.default-1406334195691] user_pref("weboftrust.search.ask.display", "Ask.com Web Search");
HKLM\SOFTWARE\Microsoft\Tracing\MemOptimizerPro_RASAPI32 =>PUP.OptimizerPro
HKLM\SOFTWARE\Microsoft\Tracing\MemOptimizerPro_RASMANCS =>PUP.OptimizerPro
HKLM\SOFTWARE\Microsoft\Tracing\updateWebConnect_RASAPI32 =>PUP.WebConnect
HKLM\SOFTWARE\Microsoft\Tracing\updateWebConnect_RASMANCS =>PUP.WebConnect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASMANCS =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilmelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilmelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilWiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilWiseEnhance_RASMANCS =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASMANCS =>PUP.WiseEnhance
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\7E685771E24E83F4381D1DB5A45F7B41] =>Toolbar.DeltaSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E5C8B5FB7CB5DD447A0BAAAF637FBD77] =>PUP.ClaroSearch
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF96568971BEAC14B8815883832BD484] =>PUP.ClaroSearch
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSetProgramAccessAndDefaults: Modified =>PUA.StartShow^
ShortcutFix
EmptyTemp
EmptyFlash
emptyclsid

_____________________________________________________________________________________________________________

veja.png Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Leandro Sampaio
Leandro Samp... Geek Registrado
2.3K Mensagens 131 Curtidas
#11 Por Leandro Samp...
24/08/2014 - 20:24
Tá na mão Power, vou reiniciar o PC.



Rapport de ZHPFix 2014.7.9.4 par Nicolas Coolman, Update du 09/07/2014
Fichier d'export Registre :
Run by Leandro at 24/08/2014 20:23:17
High Elevated Privileges : OK
Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 12s)
Reparação de atalhos do navegador

========== Preferências do navegador ==========
ELIMINÉ Mozilla Pref: user_pref("weboftrust.search.ask.display", "Ask.com Web Search");

========== Pastas ==========
ELIMINÉ: C:\Users\Leandro\AppData\Local\{01FF303B-6F8B-48C6-BBC5-5B6B4C566EC6}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{14B5A6BD-78B9-4E21-A61D-E781A705FC5D}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{15D19C32-B3A8-44B3-B189-930F8E1C4EF5}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{1A070CFC-273E-4CAB-83C2-AD5CD3F70E5E}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{1C2A20E9-3BE5-49B2-BC4A-E5974924D4CD}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{1E1373E6-9DCF-4B2B-A985-E6735652D87B}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{1FC61D9F-AFD9-4057-97D9-CD158C2A6B21}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{211C4067-9BAA-4179-8EF0-C732F949E2B3}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{274296B0-6AFF-45C3-BB94-7F34D1330A40}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{2D9D6AC3-6260-4250-B129-85CEE64D7A9F}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{2ED79CE6-F348-4E9F-8B03-0C2431CDE5C0}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{2FA85607-3ADD-4C1E-BC76-07818A82F4E9}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{31E42B95-6B42-4275-94B8-2EAACE72C98E}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{32D68ACE-9F14-4818-A3F8-663A9A04E043}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{391C9D4F-BCC7-4BF7-A32C-9AD7F4D8735B}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{451CED5E-7E42-47E7-8DA3-8670817DA04C}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{4528E5D5-A0DA-49F9-B10A-F649A22ADC87}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{4B225F1A-0FC8-4141-A595-03486FFE96BC}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{4B2EE43B-33AE-4FF3-A7B5-68C79324E82B}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{4E7E4A6A-83EE-43E3-ACBE-C588E92FBF92}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{578192DC-35EE-4232-81E1-C6E9817E6AA1}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{59E8A20C-0DE3-48AE-A999-B710EDFE9D8B}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{5CB4D3EB-F4E1-43B0-8E0C-D0E9B95B34AA}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{60340895-1F81-421E-AAB4-42B9B7333E93}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{6301FCC1-6F78-4D68-B6FA-75F502D0282C}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{6650AA70-DF98-4E16-85B4-E5EA66E0FE6F}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{675039A6-E20B-459F-AC96-605777DAB268}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{67813AA1-749D-48F7-9F28-87537864783F}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{679BBDCD-C23C-4416-AE67-12DBE5EB41E2}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{788D4D5B-3CE2-40DB-B8F4-74519D83716D}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{85788AAE-3F85-458E-9E54-99728D3CE971}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{9664634F-7DFA-4EEE-94FA-E72CE1626ABF}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{979ABA0C-D5AC-430D-8440-09995FA66A97}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{9BA732BD-FFB4-4104-A4C1-1E8179E64720}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{9EF95932-B60B-4D81-902D-1AD032E23167}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{A51F7E5C-08BA-48B1-B69D-AC85E87B2D1D}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{A5C7AD57-DB91-4170-8081-E846DD7FDF61}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{AB547842-7924-4275-938E-2868784B2AF2}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{AC49D864-E63E-4B74-930C-15BE4520D1AD}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{AE32E332-60AE-42F6-B279-BF3B7AB16C72}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{B0930C2C-958D-43F8-BB6F-C320E12C6FDC}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{C7A97471-56B7-42E2-8771-3B937FCBCE3F}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{D5FCF4B1-1A6F-4F3F-B3DD-B599438E8A79}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{E0A951F2-DFF1-4285-8E0E-EC55172CDCFD}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{E3FDAD14-FFC7-48A2-8FAF-73E79B871792}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{E6C5118E-BAD2-45C3-87BA-0D1736D68720}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{E6D98C70-7A03-430F-A5C4-470ED324B3B5}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{EBC08697-E84F-4C60-94B4-3BC8A405512C}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{EE1A4383-F3AC-4DE5-B892-7092B81D4084}
ELIMINÉ: C:\Users\Leandro\AppData\Local\{F9EF0932-3673-4F0C-93DA-34E757481872}

========== Ficheiros ==========
ELIMINÉ: c:\users\leandro\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\memory optimizer pro.lnk
ELIMINÉ: c:\windows\prefetch\memoptimizerpro.exe-50e52561.pf
ELIMINA REINICIAR: c:\windows\system32\drivers\bprotectex.sys
ELIMINA REINICIAR: c:\windows\system32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}gw64.sys
ELIMINÉ Temporários windows (14) (3.349.599 octets)
ELIMINÉ Flash Cookies (0) (0 octets)

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso


========== Recapitulativo ==========
50 : Pastas
6 : Ficheiros
1 : Preferências do navegador
1 : Restauração Sistema


End of clean in 03mn 03s

========== Caminho do ficheiro do relatório ==========
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R1].txt - 30/04/2014 20:44:18 [2143]
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R2].txt - 30/04/2014 21:47:32 [1540]
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R3].txt - 24/08/2014 20:23:30 [5421]
Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#14 Por Power Max
25/08/2014 - 23:55
veja.png Selecione e copie todo o texto destacado em vermelho abaixo (começando em script zhpfix e indo até emptyclsid)

script zhpfix
SysRestore
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSetProgramAccessAndDefaults: Modified =>PUA.StartShow
O4 - GS\TaskBar [Leandro]: Memory Optimizer.lnk . (.Softorino - Memory Optimizer Pro.) -- C:\Program Files\Memory Optimizer\MemOptimizerPro.exe =>PUP.OptimizerPro
O45 - LFCP:[MD5.E9D1090A10305D1B44D8327352C5DD14] - 25/08/2014 - 19:21:18 ---A- - C:\Windows\Prefetch\MEMOPTIMIZERPRO.EXE-50E52561.pf =>PUP.OptimizerPro
O58 - SDL:03/09/2013 - 08:59:02 ---A- . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) -- C:\Windows\System32\Drivers\BprotectEx.sys [78144]
O58 - SDL:24/04/2014 - 12:32:28 ---A- . (.StdLib - StdLib.) -- C:\Windows\System32\Drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}Gw64.sys [61120] =>PUP.LinkiDoo
O61 - LFC: 24/08/2014 - 19:41:35 ---A- . (.Softorino.) -- C:\Users\Leandro\Downloads\MemoryOptimizerProSetup.exe [1870232] =>PUP.OptimizerPro
O69 - SBI: prefs.js [Leandro - oiwghpqt.default-1408924618816] user_pref("weboftrust.search.ask.display", "Ask.com Web Search");
HKLM\SOFTWARE\Microsoft\Tracing\MemOptimizerPro_RASAPI32 =>PUP.OptimizerPro
HKLM\SOFTWARE\Microsoft\Tracing\MemOptimizerPro_RASMANCS =>PUP.OptimizerPro
HKLM\SOFTWARE\Microsoft\Tracing\updateWebConnect_RASAPI32 =>PUP.WebConnect
HKLM\SOFTWARE\Microsoft\Tracing\updateWebConnect_RASMANCS =>PUP.WebConnect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\melondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updatemelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateWiseEnhance_RASMANCS =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilmelondrea_RASAPI32 =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilmelondrea_RASMANCS =>PUP.Melondrea
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilWiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilWiseEnhance_RASMANCS =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASAPI32 =>PUP.WiseEnhance
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WiseEnhance_RASMANCS =>PUP.WiseEnhance
ShortcutFix
EmptyTemp
EmptyFlash
emptyclsid

_____________________________________________________________________________________________________________

veja.png Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.

Copie este relatório e poste em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Leandro Sampaio
Leandro Samp... Geek Registrado
2.3K Mensagens 131 Curtidas
#15 Por Leandro Samp...
27/08/2014 - 20:27
Rapport de ZHPFix 2014.7.9.4 par Nicolas Coolman, Update du 09/07/2014
Fichier d'export Registre :
Run by Leandro at 27/08/2014 20:25:57
High Elevated Privileges : OK
Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601)

Reciclagem vazia (00mn 03s)
Reparação de atalhos do navegador

========== Preferências do navegador ==========
ELIMINÉ Mozilla Pref: user_pref("weboftrust.search.ask.display", "Ask.com Web Search");

========== Pastas ==========
ELIMINÉ: C:\Users\Leandro\AppData\Local\{25A64C41-99B7-4CAA-B43F-A831CE4D23CB}

========== Ficheiros ==========
ELIMINÉ: c:\users\leandro\appdata\roaming\microsoft\internet explorer\quick launch\user pinned\taskbar\memory optimizer.lnk
ELIMINÉ: c:\program files\memory optimizer\memoptimizerpro.exe
ELIMINÉ: c:\windows\prefetch\memoptimizerpro.exe-50e52561.pf
ELIMINA REINICIAR: c:\windows\system32\drivers\bprotectex.sys
ELIMINA REINICIAR: c:\windows\system32\drivers\{2c976a7f-dbdc-4756-870f-f6d183fe7a7e}gw64.sys
ELIMINÉ Temporários windows (2) (1.225.715 octets)
ELIMINÉ Flash Cookies (0) (0 octets)

========== Restauração Sistema ==========
Ponto de restauro do sistema criado com sucesso


========== Recapitulativo ==========
1 : Pastas
7 : Ficheiros
1 : Preferências do navegador
1 : Restauração Sistema


End of clean in 06mn 48s

========== Caminho do ficheiro do relatório ==========
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R1].txt - 30/04/2014 20:44:18 [2143]
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R2].txt - 30/04/2014 21:47:32 [1540]
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R3].txt - 24/08/2014 20:23:30 [5503]
C:\Users\Leandro\AppData\Roaming\ZHP\ZHPFix[R4].txt - 27/08/2014 20:26:01 [1641]
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal