caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas
caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas
leo5city
Novo Membro
Registrado
11 Mensagens
0 Curtidas
caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas
- Boa tarde leo5city,
- Execute este script na ferramenta ZHPFix.
- Copie estas informações que estão em vermelho para o Bloco de notas.
- Com o Bloco de notas aberto, faça: ctrl+a <-> ctrl+c.
- À seguir, minimize o Bloco de notas.
Script ZHPFix
SysRestore
FirewallRaz
EmptyPrefetch
EmptyTemp
EmptyFlash
M3 - MFPP: Plugins - [sara] -- C:\Users\sara\AppData\Roaming\Mozilla\Firefox\Profiles\9ccuw80r.default\searchplugins\Baidu.xml
O4 - HKLM\..\Run: [NPSStartup] Chave orfã
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000Core] (.Facebook Inc..) -- C:\Users\sara\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000UA] (.Facebook Inc..) -- C:\Users\sara\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096]
[MD5.00000000000000000000000000000000] [APT] [{438E1EF6-1718-4414-B805-24CDC94FCC27}] (...) -- C:\Program Files\Desk 365\eUninstall.exe (.not file.) [0] =>Hijacker.22Find
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000Core - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000Core.job [922]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000Core - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000Core [922]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000UA - (.Facebook Inc..) -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000UA.job [944]
O39 - APT: FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000UA - (.Facebook Inc..) -- C:\Windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2314391645-1394786069-3152463150-1000UA [944]
O42 - Logiciel: Google Update Helper - (.SaveSense.) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.SaveSense
O42 - Logiciel: Rich Media Player - (.Radiocom.) [HKLM] -- Rich Media Player =>PUP.RichMediaPlayer
[HKCU\Software\Baidu Security]
[HKCU\Software\Baidu]
[HKCU\Software\BearShare] =>PUP.BearShare
[HKCU\Software\Rich Media Player] =>PUP.RichMediaPlayer
[HKLM\Software\Baidu Security]
[HKLM\Software\Baidu]
[HKLM\Software\Baidu_Drp_pos]
[HKLM\Software\BearShareSRTB] =>PUP.BearShare
O43 - CFD: 06/02/2014 - 10:14:56 - [] ----D C:\Program Files\Baidu Security
O43 - CFD: 25/06/2014 - 20:45:42 - [] ----D C:\Program Files\Baidu-Security-2014-4.4.4.73687
O43 - CFD: 06/02/2014 - 10:33:55 - [] ----D C:\Program Files\Cartoon Maker =>PUP.Babylon
O43 - CFD: 09/07/2014 - 15:14:46 - [] ----D C:\ProgramData\Baidu Security
O43 - CFD: 09/10/2014 - 22:34:49 - [] ----D C:\ProgramData\InstallMate =>PUP.Tarma
O43 - CFD: 06/02/2014 - 14:19:03 - [] ----D C:\ProgramData\Log
O43 - CFD: 18/06/2013 - 17:42:49 - [] ----D C:\ProgramData\PSafe
O43 - CFD: 11/11/2013 - 09:32:04 - [] ----D C:\Users\sara\AppData\Roaming\Baidu Security
O43 - CFD: 15/03/2013 - 10:34:11 - [] ----D C:\Users\sara\AppData\Roaming\PSafe
O43 - CFD: 14/05/2013 - 16:28:32 - [] ----D C:\Users\sara\AppData\Local\PSafe
O43 - CFD: 06/06/2014 - 09:13:58 - [] ----D C:\Users\sara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cartoon Maker =>PUP.Babylon
O45 - LFCP:[MD5.0BFCEE933ED7FAD68D72CE3169DE79E8] - 09/10/2014 - 19:03:40 ---A- - C:\Windows\Prefetch\SAVESENSELIVE.EXE-DC649E93.pf =>PUP.SaveSense
O45 - LFCP:[MD5.8EA7DA76155370206C1EE6CFE3BA8462] - 09/10/2014 - 10:04:22 ---A- - C:\Windows\Prefetch\SAVESENSELIVEHANDLER.EXE-F8DD43C4.pf =>PUP.SaveSense
O45 - LFCP:[MD5.8872D0C944A63A03BF69905BD3FE2D4F] - 25/06/2014 - 21:04:01 ---A- - C:\Windows\Prefetch\SAVESENSEUPDATEVER.EXE-E93305AD.pf =>PUP.SaveSense
O51 - MPSK:{eee28533-1e47-11e4-b1c1-4487fcb18a60}\AutoRun\command. (...) -- E:\Windows\AutoRun.exe (.not file.)
O51 - MPSK:{f5ebf1a0-2179-11e4-b1c6-4487fcb18a60}\AutoRun\command. (...) -- E:\Windows\AutoRun.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\baidu\Spark\Spark.exe http://istart.webssearches.com =>Hijacker.WebsSearches
[MD5.A43D98F5A2B54F22C2B8191CBF27B438] [WIS][06/02/2014] (.SaveSense - Google Update Helper.) -- C:\Windows\Installer\837777.msi [40960] =>PUP.SaveSense
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}] =>PUP.SaveSense^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Rich Media Player] =>PUP.RichMediaPlayer^
[HKLM\Software\360Safe] =>Trojan.Lozavita
C:\Program Files\Cartoon Maker =>PUP.Babylon^
C:\ProgramData\InstallMate =>PUP.Tarma^
C:\Users\sara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cartoon Maker =>PUP.Babylon^
C:\Users\sara\AppData\LocalLow\SearchNewTab =>Adware.FastSaveApp
C:\Users\sara\AppData\Local\Google\Chrome\User Data\Default\Extensions\mocblcnaofikinigmceddfghppkkjbog =>Adware.SmileyBar
[HKCU\Software\BearShare] =>PUP.BearShare^
[HKCU\Software\Rich Media Player] =>PUP.RichMediaPlayer^
[HKLM\Software\BearShareSRTB] =>PUP.BearShare^
C:\Windows\Installer\837777.msi =>PUP.SaveSense^
Abra a ferramenta ZHPFix. <>
Clique em IMPORTAÇÃO > OK
Clique "GO.
Poste o Relatório!
leo5city
Novo Membro
Registrado
11 Mensagens
0 Curtidas
caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas
leo5city
Novo Membro
Registrado
11 Mensagens
0 Curtidas
Boa noite Caedurodrigues, obrigado por me ajudar!
Segue o relatório em anexo
Anexos
caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas
leo5city
Novo Membro
Registrado
11 Mensagens
0 Curtidas
Bom dia, segue relatório...
Anexos
caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas
leo5city
Novo Membro
Registrado
11 Mensagens
0 Curtidas
Como esta o PC ?
Não consigo habilitar o firewall e o windows defender, a conexão com a internet fica limitada.
leo5city
Novo Membro
Registrado
11 Mensagens
0 Curtidas
Consegui resolver o problema do firewall fazendo duas alterações no registro, mas a conexão com a internet continua limitada e o win defender acusa risco a segurança.
caedurodrigu...
Tô em todas
Registrado
710 Mensagens
257 Curtidas