Logo Hardware.com.br
Monica Gurzoni
Monica Gurzo... Membro Senior Registrado
299 Mensagens 15 Curtidas

[Resolvido] Analise Logs JRT e HijackThis

#1 Por Monica Gurzo... 06/02/2015 - 11:27
Bom dia pessoal!!

Nessa semana tentei instalar um programa para gravar áudio. Sem sucesso, pois o micro travava. Desinstalei na mesma hora. E, decidi que meu próximo investimento será um micro muito mais potente mad.png... Enquanto isso... vamos cuidar do que tenho.

Hoje chequei aqui com o JRT. Achei que o log do JRT estava meio estranho, então chequei com o HijackThis.

Logs, na ordem do meu procedimento, primeiro JRT, depois HijackThis.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.2 (02.02.2015:1)
OS: Windows 7 Starter x86
Ran by Monica on 06/02/2015 at 10:36:04,95
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{9030D464-4C02-4ABF-8ECC-5164760863C6}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\baidu"
Successfully deleted: [Folder] "C:\ProgramData\baidu security"
Successfully deleted: [Folder] "C:\ProgramData\trymedia"
Successfully deleted: [Folder] "C:\ProgramData\windowsmangerprotect"
Successfully deleted: [Folder] "C:\Users\Monica\AppData\Roaming\baidu"
Successfully deleted: [Folder] "C:\Users\Monica\AppData\Roaming\baidu security"
Successfully deleted: [Folder] "C:\Program Files\baidu"
Failed to delete: [Folder] "C:\Program Files\baidu security"
Failed to delete: [Folder] "C:\Program Files\relevantknowledge"
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{00BD0F35-B49B-47D1-B013-AF1328F8B9AF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{00DA472A-AA49-4BA9-9868-CE571243CA7C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{00F9E3E8-34F2-4A7B-ADC3-AFAD5F8DB6F6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{01774D7F-3CA8-42E9-BB0D-485321E15446}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0191A114-70AC-417D-B203-DE038C1F6576}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{02748FF2-C929-4289-AF43-8666B9513FE3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{03A58CFD-19B9-49AE-B715-78B04E53DC1B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0496A49B-A166-43E5-B845-0FCE1D800533}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{06130451-E310-412F-886C-C20113E76F89}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{061B736C-21A7-402D-9F61-52E2B16FA1E5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{06756B5F-7F64-4840-A2B3-697ACF8EA581}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{06C3DE68-5C3C-4702-B889-1D35B4032C86}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0734F3B2-17B9-46B5-B3A0-FFC18859ECF2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{074CC4B4-D730-4B88-BFDB-7BDBA09296DF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{07FF0FCA-1604-4C2F-B88A-9893B1276BFF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{08AEC4B9-DBE6-47AE-9AB2-C28C803D3DA8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{090AFB12-4C59-40B6-ABCC-721C318AFFB3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{092602D9-B459-4038-B050-191D94D1E603}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0A01DF66-BCC3-4772-84E2-41DBA4426DC4}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0A69F0BD-A7CA-4959-9A52-E9D63700344E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0AFD90DF-D742-4625-A25C-942A89311388}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0DB2AB82-7732-44FF-A96A-2EF7A5FC3EBA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0E56A30F-69A3-4D97-8760-5684863895AA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0EB63BB3-42FC-48F3-B76F-99AAD583BE6F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0F1ADB1E-5FB7-4668-88FE-3D64AAB67179}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{0F3F16BB-0539-46B5-AEEC-C173CE856F42}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{115A9F39-AEEA-4F32-A8A6-FE9D5A5C8B92}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{11964144-F60A-459F-A844-0A4E6161DAFA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{11DF5563-1D92-4E54-BD61-22DF5AA24658}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{127867B5-2CAF-4C2B-B28C-92C988118BBC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{142FFFDC-75DD-46A2-847D-B4499667F6BD}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{148A565F-CC8C-4E30-9CE1-DE292B183BCC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{15072031-84A8-4295-AC1C-2F57DF6BAD30}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{16F5F1D0-C659-4463-953E-674EAF40C05D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{176DE70B-B8EC-4DC1-BB6D-ECE517556C51}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{17F0AE83-BD5B-4E99-9098-ACFF19065758}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{181840F1-6AF1-40D9-8A5B-3653E5605BE2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{18C0D6FA-1AF6-433F-B46B-8F020C9814CD}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{195A6620-D59D-4126-AE83-CBB918FD8E99}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1A84C54E-2B29-46FD-846E-DD81857F3705}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1B306E92-9CF1-470D-89C0-E2C019A72841}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1B60CAE5-BC9D-4DE5-B110-3868AE22D5E7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1C26B096-223F-4A72-82A4-C949B589E055}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1C778DC6-604C-4107-B347-964EE5A4E695}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1CDD6842-C5B9-40BD-AE8B-BC1AFCB5A373}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1DC92478-611D-435B-AD6E-5EEDE53E680B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1F0CF553-949A-41F8-BB46-209D20FB6F8D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1F329EDB-96FE-400D-95D8-B5A224B4FC0B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{1FE659D8-885C-4139-9C25-62CFD3DD0F83}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2000808A-D2E6-43B3-B24E-8A81DEF3701C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{20C84E61-0D55-48BE-9E06-A743E50CB24F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{214D385C-F4AB-4670-BA31-5C5E5CBC6A2A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{22953DEB-DF8A-4B3C-A4A6-8AB72DAF4F83}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{264E040E-74C8-4A1F-A94F-0C40C1BBE59D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{26C98FD5-1002-4926-AED2-A981989CF9F2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{284C9604-53B2-4A23-AEBD-067937E5348E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2860241B-4927-43A4-B355-716A32935F3C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{29A4B6C7-3A7E-4B0A-821B-14BCA1EDDDB9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{29FB29B8-3947-4A03-8959-78678B548DDC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2A42A67D-88DD-4174-B7A3-CBF0CE67D316}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2CBAFCB5-097D-4A42-94A7-E66C4EB3F1FE}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2D079FDD-3D1A-445E-8917-7FFAA4BB8DF7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2D1826D0-3DEF-4278-8C1A-B513BA8C6030}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2D5F99AB-586B-48C0-ADFF-57E276A7FFFB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2D6F1C59-1B98-43C5-BFA3-2FCD77DBCFDC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2D76A7F0-B0BC-4573-9745-933EF347330F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2DADFBDE-2C6C-4628-99BF-5A2A677C311D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2DCCFE85-35EC-49F8-A223-28589F265B0C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{2F5B4CDA-5C4B-45C6-BBB0-6E79DA66A294}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{30112661-8349-47EF-97AB-C9E8BC916ED6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{30B4C702-1748-4E26-BE22-9741064F6A62}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{318D1003-DF8B-4A0B-B7C7-BAD1FAE65568}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{33D854E6-377C-4ECB-AD7B-00ECC5C59201}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{33DFF8AE-933D-40A1-9396-E52E4F530FD1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{344249C6-A789-4742-8B65-7F6A8DE5E057}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{34A0D79A-C761-4630-B9C2-C38A52F47978}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{34E2F723-9495-4A1A-8BF6-AB3F13DAE6CB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{34F85B18-A4A8-41FE-851B-A584082D51A5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{37EA232F-1960-444E-BC79-158BB4973139}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{38E0DA7F-899F-4A39-BEF5-3A5D2FC814F6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3978C987-7783-42C4-9C34-11311B42EFF3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3A86D6FA-C153-49EF-AEDD-CFCF4CA2B158}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3AEEEE2E-83DD-4FEC-A02C-72DEDE7A5FCD}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3B5E35EB-C594-4A0C-A661-FA2CAF67E08E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3B67AD80-F86C-463C-9B48-D2E90CC00BA7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3B9DAB82-95E8-4D8B-81B7-1D44AAD413EC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3BE87B9A-9AA5-4BF9-B940-C981CF37A399}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3E8344C7-F7AD-44AD-AE9D-E7CA3AC3CA2B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3F36B06F-1597-4012-8CF0-F2B0ABE29A64}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3F77AAF1-D1BB-459C-A61B-FF853A28CDDA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{3FFD429D-F3FB-43D2-8F28-8C84FBAEEBD1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{404506C9-2C20-4AF0-B6F2-BA9EA6016FCA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{40B0EA4D-E5F6-4084-BCD6-F6D15BEC8BBE}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{42E00253-5833-4E2D-9D0C-38654AC05B21}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{42F89C30-0A70-4ACC-872A-3C86115CA8CB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{435B39B9-C775-46F1-857C-F57B23445601}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{436B4185-5017-4310-885D-D6C39451A267}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{43E1574A-5FB4-492F-9FA7-34395E5A23E6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{459A474D-A3C7-4834-AFD8-3A903B35886A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{45F6BF69-4B39-44BC-871F-797E5B63C798}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{463C1BD5-817A-4848-8A60-2D802AC103E9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{4660B287-5EF0-4E7C-B359-797D926AB5E8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{46A63CA8-B3DE-4947-92D4-F1EAF8727384}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{47493B39-5E09-43D4-AF00-38287C767178}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{49AA7320-F231-4AA3-9F5C-47B6A1E764E6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{4A529D95-4198-4C74-AEE1-76AE6F452166}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{4AB95104-F392-4B84-AEE8-149052E76938}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{4ADE9940-0F70-4201-A5A4-1D55BFA3B712}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{4D2AE91D-EE05-44B9-8E48-F66FE7ED3F05}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{4D56F26D-376E-4D79-A995-918FFAC9B2C5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{506844A8-1435-46EA-A2D6-A07731A85955}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5073C37C-089B-4EDF-94E6-00F282FB9F58}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{50C63ED6-F3E6-455B-B5D2-D77E9BE8DA2E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5167DBEF-6384-4410-8E44-9E48E1DA8182}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{51D42EC7-E765-4462-8980-28C95603E869}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5202D660-0D1B-4915-A6C2-E80DB76258B7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{52DCF514-D57F-4FF1-89F6-5E8034992F41}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{540B51D3-6D1A-4BC1-80A8-DFC9CE465A49}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{54986D3C-3F64-43C1-96A9-C6C82752D9B5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{55AFBB75-6FE5-46C4-B9EF-9A1444180B00}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5732B482-3438-4EB4-81E8-DE5DE7E6A1E2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{58DBE192-7AE6-407E-A95F-EDAAC4B72AD2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5940FE2D-EB1A-41D7-9783-B51C5489B568}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{596D17F5-A4E5-48A8-9653-169DB4ECF7B8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{59BE9853-69AD-4199-AA60-8A5D86C82D78}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{59F8360F-2C8F-404B-9B41-63DB1B90542C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5A1936AE-F877-49A0-A299-73DAC206D6FA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5A51F9BB-B55C-44BB-B440-C0F677F1CC40}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5B17EC36-18F0-4BE0-BA74-272213AFA20C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5B2E8D2F-70CB-4C4B-84C9-83C9F7AEFA96}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5B3B8F9F-3A80-403C-9A46-89F5F8DBE67C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5B8989A1-63E6-46E8-922F-5EACAF891F87}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5C5AD48F-F60E-40E8-A7DF-5A336DDE4332}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5CAFA117-A3E9-4951-8F73-074B40FFE4C4}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5DC7729C-7B8B-419D-83D6-E5C09F803AF1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5DE92DA3-E980-4461-8507-7BA30F5D7D23}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5DEBCA12-B739-4282-B65F-18E8247726E3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5E3A459A-8C6E-43BD-98E5-C9A83C678454}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5EC966D3-FB41-45CC-8977-975FEB4F30C8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{5FEA2752-1B31-45DD-997F-33B6EA65E77E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{607B5F92-EAFF-4DF8-AD40-C59DB394AF19}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{61C7D10C-A23C-4D08-94C1-F804C769E114}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{61DAC2A9-0D0B-46A9-8B2A-1F6254EEE003}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{61E5E899-FD34-47C2-BBEC-0209EF66212C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{624C07DC-932C-4D3C-AE64-E2AF620D521A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6455D8ED-E0FE-45AE-BF99-BC59D583AD08}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{65201961-BF19-4BAC-A740-14C4993D0CA7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{65B040F9-38CC-4CDA-A3BD-F31E8FD7B640}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{663B6B13-430F-46AB-AE9E-7FF2C74F3F33}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{672C8187-FBDC-42B9-AEC8-0A94E5529C58}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{681EE2D9-758C-4F59-8235-DEB05DA11AE0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{684174C6-6739-4A2D-8E31-2E54749C202E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{687FCE0C-8303-44D4-AE23-23D0936D7ED0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6AF72BAF-FD97-43AC-8D02-19B81A61D401}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6B8BB0FF-7BAF-4A71-BE5E-6B6ACB9EB654}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6ED6C5F3-1023-43C7-8326-12E957E2988C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6EEEBDFC-E352-4CCA-B510-ABF98116804C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6F12E336-FB88-4F13-BECE-BE7DD6E6AA6B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6F3F20B3-65A6-40FE-8328-C674C8A81C8F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6F76F6E6-FF18-415A-B16F-4B50C8DE8508}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{6FE4441A-F447-4246-9D05-AB316984CD17}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{70764C7B-5E02-4FE3-86CD-D657A4C533C8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{70AD3AE3-B722-4264-8AC9-C353C6D25C54}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{71382411-D72E-4F9F-A81A-C7A89FF8FA4C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{72F237E2-A307-4D05-ADDD-01781F988AF1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{73184490-0193-4686-A3A1-F571E87042BB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{75206852-1310-4E72-9DA6-B8068C397B62}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{753B2DD1-C20D-4F04-968B-44728BB52F47}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{782866F5-81CA-461C-9892-98529639D287}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{785E1B97-41A8-4C20-8262-83D0555F0CFB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{78692CA7-980B-468A-A8FD-8AC3957D5DEF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{78D25AF0-055C-4090-8B64-FB68CE64FC38}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{78D445DF-757F-4323-A946-FF3C6B716AC5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{795AFC4A-4741-4A6A-B355-47EA94B64047}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{79C8D4BE-B7CE-47A6-A2E7-DB47DE6470B2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7C30B6D0-3959-44A9-8A99-7CCEC537B348}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7C56D3BA-46EE-4E49-830F-1C36A22A879B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7CFB28DB-40A9-49EA-9584-ACB74EB123BC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7D94627B-40A3-40A5-A102-89436136BEF4}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7DCED791-50A3-4305-8972-253EC64CC639}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7E574D8A-A552-4623-9474-DE7382D19384}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{7F9317D3-FD72-4CB3-B9D0-4B9AE75CDA42}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{82573F28-03DA-4D4E-ABD4-8DADC5206D55}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{826F4BB1-94DE-4795-B076-9B9B781814A0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8451B55F-F9F1-4051-8CE2-55AA940BD477}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{855F2EB5-A748-468F-8113-0855B5000F80}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{856634B1-9525-4362-AF8B-739045D6DF70}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{863A2B45-8213-4F41-A198-F4E7F8D7CB5E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8756C5AD-A389-4129-9B9A-AA1CBB5C7340}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{87FE1397-9A03-4F17-9C59-87C978DA45B9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{882320F5-8B39-4582-B153-5E8BB845CCF2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{88669F0E-7B37-4D0C-A636-3FBF93FBD7EB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{886990F9-57A9-4F6C-9A2E-ADD9F6B47F43}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{88D95EB7-1E70-4DCD-86F8-96CBF8E92146}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{88EE0EDD-EFC5-49A6-A69D-EBAF22B9D357}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{89DE5A13-5E9F-42F1-83E4-06CE4ACECB44}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{89E109AD-0473-4E3A-950F-A3A779022DFA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8A105F38-AF31-48E2-A515-D1994D7E8342}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8A2DB2D1-22CF-493C-97D2-331AD05FF787}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8B3A9837-4507-43CB-8598-E67472728852}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8B76ADA9-99F8-40A9-9446-D2010545822C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8E6F016B-CDE6-4498-A916-508B1FDC14A2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8ECDE818-A293-48C3-B3DA-19D6886E81E3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{8F342554-2B63-4E0B-932D-6EC2C997DFD8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{90CE924A-EA3D-403D-9BEF-AD2983AE09BA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{90E8C0D3-F50D-4897-9B83-7E22DFB92F97}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{914FB488-7A1D-47B2-A00A-F8A6E7F29307}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{91CAE6CD-491F-40A2-9546-14F6934D0437}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{91F98C3B-7399-405B-89C4-E7E4F0169B35}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{921184A1-70E4-4A26-A116-B610A1D216F9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{9298096C-10B7-4031-9748-3E7A2B892637}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{92A2D9A0-6793-4543-B039-D0E5D435F4AB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{92BCADE4-0BF0-42C1-B1FC-61573E60B307}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{93B532B0-3384-4DC8-8FC8-53C778EC3593}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{9445D101-4DD0-4029-83A4-3DEF570290D8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{95F2332F-6076-4FD7-8222-127D3C0583A6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{963D9BD3-2294-4D49-8E56-003756041C29}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{97E650B5-D3CB-4962-9A6D-B20EF21BA330}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{98CACFFA-7930-421F-8CF4-C88990CBF961}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{98CCF9F4-145B-4890-8A23-B21D601063F9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{98F7562B-5988-4351-A8C7-3CC0E1464E28}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{998DE248-E2AA-41D8-96B0-92E97B87F3E3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{9BE2E63B-B082-4AF3-8C03-3E73705D50EB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{9BECEFF9-D1C1-4365-A290-DF51AB576ACE}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{9CF49B0C-962A-45C6-A01E-3FCC8FD4C1C5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{9E8CFF5D-AE34-4D87-A2A8-31DB2BC6CD32}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A0452390-051C-463A-8D55-917F58E9AE41}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A05690DD-349C-4F8C-935A-EFC110C1906F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A09D28CF-C7BD-4DF8-BC0E-A2FF8150D944}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A09F9BD5-F82A-4BF6-B7AE-B70549B01895}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A120A1DA-55C7-4FA2-8310-74E563C3E074}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A122C3DC-5985-4610-846B-783183F0E4E0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A192929D-D4E6-4FAB-B518-63AF03F1AFD8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A194992A-6E3A-4910-AEFA-C12F57EDB821}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A1A114D0-BCBE-4246-B68F-47DFC7B9624B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A1C01D61-9965-48D3-8A8E-85B140F8B60D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A207496E-43D5-48E4-B91F-88F4A2F00CAF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A2613B7F-B44D-47C9-972E-7A4E3B605A0D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A31D8F67-D938-4EEA-9506-0422016B2D49}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A3BBE818-93D9-4FBF-A662-B7F3A6BFF2E0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A4884B2C-E258-4ED1-91A8-56E46453A7AC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A54123D7-A36E-429D-A8C3-68D603C9908F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A5AFCD1B-D6F9-41C0-86CB-8A722E41E5C1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A5D86C94-DEF1-43FB-8E72-C7A78308715F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A5DFBB93-5D55-40D1-9687-D54202971704}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A5E2233B-C602-4B9E-A1A0-E2C4BE8CA760}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A6852892-7EDB-497C-841E-20FEE07576B7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A74A959C-B2CB-4076-AC11-84E7CC7367EB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A7B72919-8DC3-47BF-8132-E5F8A864E8B1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A7C95725-7FFE-4C76-BBC2-70435478EBA3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A7EE40C0-EC81-4D2D-8E5B-5E83844AE21A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A825ED4E-9B5F-4970-BD02-0F83749D4EB7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A878D867-2CF3-4AE5-B59B-54A40DEE667B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A8A8CC10-EC21-435E-A0C1-59002B400D70}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{A962ABEE-6962-4CDE-950B-AFD756FDE521}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{AD7F194D-336D-45AA-8977-7438D9143735}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{AF375871-7F7F-4D96-B8C4-962484E659AB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B01CF709-5EE9-4369-8571-97C6DBA726C5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B08C8B83-B540-45B4-A52E-24127931F8F9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B0E297A7-B01B-42B0-864C-8A68F5764964}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B1593556-9445-426C-927D-14FC5F85FA87}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B177FFE6-3D04-407B-9ED1-658DCA8A10D7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B2A226C3-0BC7-4728-9DFE-133B469B2F97}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B2F9FA90-7C4E-4854-AC92-3B6D01EB1CDC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B303C6A5-EB2D-4A28-9408-B5FD1C76B8B0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B35BF544-CA84-4E21-AF15-E9C076407B4B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B3DC7A14-60B9-479D-BB00-5D8A43158481}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B4CC3029-4AA2-483D-8045-B86ABC2B9B9D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B4F6A4E3-D6AA-4A11-85EC-ED87C4F151C9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B5374241-164D-4D97-9455-58B8C3FE0E7E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B58AE893-FDA6-49DB-ABEF-6BA1297B1F1A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B7C2B197-8F69-4049-9D3F-61B8B59ABB7F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B7D0968C-89F5-46CE-86F1-EF55127DD125}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B7FB28A6-E263-4083-8C65-43EEAAA97E5F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{B8CFAF7E-691D-4113-A5AA-8D7A563D24ED}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BAB04A54-66F0-4BE1-84AF-0B6AC0C73983}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BB0BAB39-4D13-4B66-9CEF-559DC6745074}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BC0AA9D0-50E2-4ADF-BBA9-470452BD8C7E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BC43FF6C-40CC-4E0B-9851-9BC8081FC0DE}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BC847244-C876-4049-8FBC-8006634271E7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BCB39C20-0F9F-4167-83EC-5353E795C67B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BD285FFA-CFCB-45CF-A08B-51DED9108A8E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BDA5C9E6-F35D-4E83-9DA2-4441ECB32FB1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{BEDD297B-302E-493C-A9BB-F3D87A53E4FC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C04C04D9-FDEE-4B10-B569-78FEE4EA047D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C119D7D7-9BC1-47B6-8D1E-80262B49757C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C2BA49C5-888D-42FD-9A95-4EC80E6DABFB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C37D24FB-6B5F-482F-8B00-F5F1A18459AB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C5201215-2816-436C-AB70-8CC34C5AA1CC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C64BDFD6-0438-456C-95C7-EAC389BCD9C1}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C7687A0F-0C28-448D-85B1-B39A77CD9260}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C7917441-71B2-47AA-8A7F-04C388A21D86}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C7990911-2303-4553-81F2-48284AAB0E87}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C80ABE9E-8360-4C80-824A-24B9CC2D74A4}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C836847D-2AAF-4D48-B7EE-9609F1122E41}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C947E323-3269-40DB-815D-156082CBEE80}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C985A65B-E436-4476-959E-AC1F2118C0E9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{C9DD5ACA-3A1E-40F3-8869-26442394C66C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CAB73AEE-6FC9-4E0D-B8A0-41C1B1CBE9D7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CD6EB298-0937-4626-91A7-C465047FFE1D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CE99C2CD-1782-4D94-9975-0AD605CDD971}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CE9D6046-7F59-46E3-87F5-256ED464D341}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CFB2E2C1-4594-49C1-8E3C-F9942AEAF9D8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CFF0F8EF-4AAB-4D85-ADE1-2E15D6518B6B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{CFF76033-A108-40CF-A68B-C0F2AFC99F4E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D07362B2-9876-486F-A33A-854A9F770015}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D0848B9F-7303-46DF-8E14-09C8693F3547}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D15F6332-70BA-4D8A-B36C-7E5B95AE5639}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D19C8350-22F4-4A15-BC63-7946DA323540}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D1B21475-22E3-4ADB-B6BD-FAC727BB9E05}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D1FD6120-DB21-4BBC-8CB6-FF2A3B296C2D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D2010747-852B-403E-AB5F-3B29A9503DE3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D256FE8D-2563-4629-89DA-EF777D78BD8F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D43768A5-4AAC-4E22-A8C5-37E51A74D716}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D43961B0-CF93-4933-A16E-D0C5DED4617F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D4A9CDB7-8E7C-4BDB-8504-AA1543CAE1E9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D4EB43CC-B7FD-4EC1-8D59-AC7F63B5E1E5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D5F20FF4-02C5-4C6D-9CDE-328BCE46EEFE}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D8043175-1741-4E00-B2E2-B55293240FBF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D80E0B21-D8AE-4486-B36E-CC5D2AC115F2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D81A432B-FB1A-4C7E-9B58-9E3E3F6874E5}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D8347C74-3C2A-4B99-B72B-34DF92DCF9EF}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D84A76D7-F331-4F07-9B2C-FC45C90EC91D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D84E9A52-D12F-4CAE-BC9A-29A59219978F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D8AD24F8-0D76-4A9D-A867-C4ADA495EAA8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D9032A27-6E8B-4A5F-95F6-882647A5B10D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{D9AA4AA5-0C96-415C-856F-ABA2E765178B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DA8E9FEC-7940-48A7-80E0-07D94B5AF46F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DB4F1A4B-05D7-4514-AC91-88318B240572}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DBE6A134-4CA2-45B0-8109-9004B73F04EB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DC724821-AA66-4C53-BB07-866F2874BE35}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DD0E7B01-FDF7-4142-A184-790D660DE384}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DD885252-7357-47A5-8944-CD2DB898283C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DE003765-28C2-4AF8-95B2-BE81DBDEDA0F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DE997137-8C00-44C7-A6F9-48BA728C978C}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{DFAEBDF5-5A21-4B6E-8B4B-F1FD01267345}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E07B7A1F-3FE3-4C5C-9A5F-E343007A1DF9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E14C9F30-6501-4760-BE70-EC29CF162AC4}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E168C787-769D-4FAF-A333-BDE4C94018FB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E214197B-2FFF-46C8-8E38-8F3204D08E32}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E22BBD60-B1D9-4A4F-B9B5-34EBE60649CC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E2FC1070-64E2-4F24-B58B-92B6680397D0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E33AD775-DF6F-4760-B891-C260B2BB64BB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E391B961-41F3-4BD9-96BB-4556CF373A3F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E43710E4-2052-4272-B46D-BEA2C22BE8CC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E4B9B4FF-EC22-4796-8C27-8A08458C4680}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E4DCE3A1-0B22-43B5-AF88-5B9850F90D91}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E4F2533D-3D9B-41EB-88CD-EDD84655A3CC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E57BBDC9-87E0-427C-BF11-88DE650A510B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E5CD5850-1EAE-4DB2-A31F-6489A42438D9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E5E49A80-B0C5-4088-9A08-A9FEDCCA416A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E664F585-57A9-48D0-9C95-83D7CCE1BF23}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E7E7550D-C7BF-4B87-AFD0-6ABC66F980C8}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E92E0AE7-D213-4B52-AC66-51F6E494A3FC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E96DE589-7412-4E78-A9EC-605185103BE9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{E9EB0FD9-1F3D-474F-8A42-5E3A7B6F5494}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EA79906E-20AB-458A-AA01-35B3082BB8C3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EB1AEB97-3165-41DF-82F1-7F83E9BC302A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EB4963A4-6037-40E1-ADDC-FDE58CA5DD3D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EC4A4A96-35F8-4FB4-9972-6D72C87D24A2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{ECBD39B9-1068-4842-9EFF-FF973FAC35C9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{ECCBA11A-1154-40E0-B445-8C9FD56DF73F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{ED4DFB22-BE7C-4DD3-A33C-FE7CF2214EBB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EE388807-C90B-4E60-B8CB-4E37FF9DB5E6}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EE4B5EB0-AD89-4FC2-9B40-7923F643EBE3}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EF9329F6-7FAF-430C-9F6D-E7220A3398DB}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EFA67089-0CE0-4178-BCA5-98833283A7D7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EFD1CF2B-34DD-4F55-A46E-E5B4D0F745DC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{EFF3AA6A-5311-45A0-8A0D-49F0B40FC779}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F0CB5879-0C1D-49DE-977A-7BCF29E2363F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F0D2A5D3-38E1-448F-A5AB-5DCA8D6B4F14}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F1522978-5233-495A-934E-C235A9A1EE5E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F197BBEA-F831-440A-83C8-9CCAF574065B}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F1A6B73D-F2C6-4689-A68B-C02960E671D0}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F2626D9E-53B1-4723-A0C8-8999782D322D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F275ACF1-011B-4E17-9164-429668D411E7}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F2789043-BA51-409B-A468-191BF29D601A}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F336138B-38F2-4C44-8DCA-3F2F38524F22}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F549A232-1DCD-44B7-AABB-9F9A36749F0E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F5546CC1-889E-4EA9-B902-A481665FE691}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F55B5ACE-BD61-4C18-8EAF-85D220258FDA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F5A9F3E6-1078-4D5B-867C-939A5625C86F}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F615DC62-420B-4933-B6D6-5C1B36F56013}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F67D13F3-15C8-40DD-A1AE-046DDA69539D}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F67D89AE-F239-4465-B595-051988BA08CE}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F6F41E94-4C09-4A8D-AB31-A0ED472E06E2}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F7A0A9B8-5A45-410D-A359-3B521A42D3ED}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F8565DA1-EC65-4248-A8C7-9BF2C4F58874}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{F8C7C92F-139B-41C3-85DD-B606689240CA}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FA0C0AD1-3EE5-41CF-B1D2-6BE2FEFD42E9}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FBD2EC24-FDDE-46C8-9E6D-1FA7B2806813}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FC4BEC1D-8140-48F0-B354-9658A03FF894}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FD6571C3-1C32-4D8C-B67C-9F7418BEA474}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FE468E08-4172-41A8-8F50-313AA4C10BEC}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FE5BE658-35D7-4324-8FFD-D992B6B3CA2E}
Successfully deleted: [Empty Folder] C:\Users\Monica\appdata\local\{FF70769A-4E33-4369-8551-D6AF673BE05B}



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 06/02/2015 at 10:48:40,26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


LOG HIJACKTHIS:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:09:07, on 06/02/2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)
Boot mode: Normal

Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe
C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
C:\PROGRA~1\GbPlugin\GbpSv.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\IDT\WDM\STacSV.exe
C:\Windows\system32\svchost.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\BatteryManagerService\BatteryManagerService.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Technology Pack\Amazing Audio\AudioPower.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Microsoft\BingBar\SeaPort.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Online Games Manager\ogmservice.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\RunDll32.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Technology Pack\Battery Manager\BatteryPower.exe
C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\System32\svchost.exe
C:\Users\Monica\Downloads\Hijackthis\HijackThis.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://go.microsoft.com/fwlink/p/?LinkId=255141" target="_blank">http://go.microsoft.com/fwlink/p/?LinkId=255141</a>
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a>
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a>
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\Program Files\GbPlugin\gbieh.dll
O2 - BHO: G-Buster Browser Defense CEF - {C41A1C0E-EA6C-11D4-B1B8-444553540003} - C:\Program Files\GbPlugin\gbiehcef.dll
O2 - BHO: G-Buster Browser Defense Itaú Unibanco - {C41A1C0E-EA6C-11D4-B1B8-444553540008} - C:\Program Files\GbPlugin\gbiehuni.dll
O3 - Toolbar: (no name) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - (no file)
O4 - HKLM\..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [AudioPower] C:\Program Files\Technology Pack\Amazing Audio\AudioPower.exe
O4 - HKLM\..\Run: [StartUpManagerPositivo] C:\Program Files\Positivo Informática\Gerenciador de Inicialização Positivo\ManagerWindows.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO DE REDE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO DE REDE')
O4 - Startup: Monitorar alertas de tinta - HP Deskjet 1510 series.lnk = ?
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - (no file)
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\Smart Print\SmartPrintSetup.exe
O9 - Extra 'Tools' menuitem: HP Smart Print - {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files\Hewlett-Packard\Smart Print\SmartPrintSetup.exe
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: <a href="'http://www.bancobrasil.com.br'" target="_blank">www.bancobrasil.com.br</a>
O15 - Trusted Zone: www14.bancobrasil.com.br
O15 - Trusted Zone: www2.bancobrasil.com.br
O15 - Trusted Zone: <a href="'http://www.bb.com.br'" target="_blank">www.bb.com.br</a>
O15 - Trusted Zone: <a href="http://www.bb.com.br" target="_blank">http://www.bb.com.br</a>
O15 - Trusted Zone: <a href="http://www.caixa.gov.br" target="_blank">http://www.caixa.gov.br</a>
O15 - Trusted Zone: bankline.itau.com.br
O15 - Trusted Zone: clickbanking.itau.com.br
O15 - Trusted Zone: guardiao.itau.com.br
O15 - Trusted Zone: <a href="'http://www.itau.com.br'" target="_blank">www.itau.com.br</a>
O15 - Trusted Zone: <a href="http://www.itau.com.br" target="_blank">http://www.itau.com.br</a>
O15 - Trusted Zone: *.itau.com.br
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - Winlogon Notify: GbPluginBb - C:\Program Files\GbPlugin\gbieh.dll
O20 - Winlogon Notify: GbPluginCef - C:\Program Files\GbPlugin\gbiehCef.dll
O20 - Winlogon Notify: GbPluginUni - C:\Program Files\GbPlugin\gbiehUni.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Battery Manager Service (BatteryManagerSrv) - Positivo Informática S.A - C:\Program Files\BatteryManagerService\BatteryManagerService.exe
O23 - Service: Gbp Service (GbpSv) - GAS Tecnologia - C:\PROGRA~1\GbPlugin\GbpSv.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: Online Games Manager (ogmservice) - RealNetworks, Inc. - C:\Program Files\Online Games Manager\ogmservice.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SpyHunter 4 Service - Enigma Software Group USA, LLC. - C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE
O23 - Service: @%SystemRoot%\system32\stlang.dll,-10102 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV.exe

--
End of file - 10254 bytes


Desde já, agradeço a ajuda!
Responder
Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#2 Por Power Max
06/02/2015 - 11:35
Oi Monica.

Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer:
http://www.bleepingcomputer.com/download/adwcleaner/

Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial:

Remova adwares e toolbars maliciosas com o Adwcleaner

* Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[S0].txt

Ficamos na espera.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
edutango
edutango Cyber Highlander Registrado
9.3K Mensagens 6.3K Curtidas
#3 Por edutango
06/02/2015 - 11:37
B0m dia Monica

O JRT acusou e removeu bastante pragas do baidu/


Successfully deleted: [Folder] "C:\ProgramData\baidu"
Successfully deleted: [Folder] "C:\ProgramData\baidu security"
Successfully deleted: [Folder] "C:\ProgramData\trymedia"

Faça uma varredura agora com o Adwcleaner

Remova adwares e toolbars maliciosas com o Adwcleaner

E depois poste o log
AMD Duron 900mhz/mobo PCCHIPS
mouse em forma de arco leadrshhep

256mb RAM SDR=WINDOWS 98
Video integrado SiS
Monica Gurzoni
Monica Gurzo... Membro Senior Registrado
299 Mensagens 15 Curtidas
#4 Por Monica Gurzo...
06/02/2015 - 12:19
Aqui:

# AdwCleaner v4.110 - Logfile created 06/02/2015 at 12:12:26
# Updated 05/02/2015 by Xplode
# Database : 2015-02-05.2 [Server]
# Operating system : Windows 7 Starter Service Pack 1 (x86)
# Username : Monica - MONICA-PC
# Running from : C:\Users\Monica\Desktop\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\BreakingNewsAlert
Folder Deleted : C:\ProgramData\IHProtectUpDate
Folder Deleted : C:\Program Files\RelevantKnowledge
Folder Deleted : C:\Program Files\XTab
Folder Deleted : C:\Users\Monica\AppData\Local\BreakingNewsAlert
Folder Deleted : C:\Users\Monica\AppData\Roaming\omiga-plus
Folder Deleted : C:\Users\Monica\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\flcnmdehjfeflkohlockkbmoglehckdf
Folder Deleted : C:\Users\Monica\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek
Folder Deleted : C:\Users\Monica\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\flcnmdehjfeflkohlockkbmoglehckdf
Folder Deleted : C:\Users\Monica\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Key Deleted : HKCU\Software\Trymedia Systems
Key Deleted : HKCU\Software\Baidu
Key Deleted : HKCU\Software\AppDataLow\Software\DynConIE
Key Deleted : HKCU\Software\AppDataLow\Software\Mediaa_Play_AIR_1.4

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17496


-\\ Google Chrome v35.0.1916.153

[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://br.ask.com/web?q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}

-\\ Comodo Dragon v

[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://br.ask.com/web?q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}

-\\ Chrome Canary v

[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://br.ask.com/web?q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}
[C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1422900337&from=key7&uid=TOSHIBAXMK3265GSXXH_11KBT4W9TXX11KBT4W9T&q={searchTerms}

*************************

AdwCleaner[R2].txt - [3159 bytes] - [06/02/2015 12:04:28]
AdwCleaner[S1].txt - [5270 bytes] - [06/02/2015 12:12:26]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [5329 bytes] ##########
arkGreen">arkOrange">


Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#5 Por Power Max
06/02/2015 - 12:20
Desative temporariamente seu antivírus para evitar conflitos.

* Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe:
http://www.hijackthis.nl/smeenk/

Para executá-lo corretamente siga as dicas deste tutorial:

Exclua adwares e outras ameaças de seu PC e browsers com o aplicativo Zoek

* Assim que ele concluir a limpeza dos problemas acesse o log (relatório) do Zoek que estará em C:\zoek-results.txt e copie todo seu conteúdo e poste em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Monica Gurzoni
Monica Gurzo... Membro Senior Registrado
299 Mensagens 15 Curtidas
#6 Por Monica Gurzo...
06/02/2015 - 14:18
Aqui:


Zoek.exe v5.0.0.0 Updated 06-February-2015
Tool run by Monica on 06/02/2015 at 12:26:06,22.
Microsoft Windows 7 Starter 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Monica\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

06/02/2015 12:32:20 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\Program Files\DsNET Corp deleted successfully
C:\PROGRA~2\CanonEPP deleted successfully
C:\PROGRA~2\CanonIJEPPEX2 deleted successfully
C:\PROGRA~2\Oracle deleted successfully
C:\Users\Monica\AppData\Roaming\File Safe deleted successfully
C:\Users\Monica\AppData\Roaming\Magic Academy deleted successfully
C:\Users\Monica\AppData\Roaming\New Version Available deleted successfully
C:\Users\Monica\AppData\Roaming\TP deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\install.exe deleted
C:\PROGRA~2\boost_interprocess deleted
C:\Windows\System32\sho345A.tmp deleted
C:\Windows\System32\sho472A.tmp deleted
C:\Windows\System32\sho496E.tmp deleted
C:\Windows\System32\sho72C2.tmp deleted
C:\Windows\System32\sho8232.tmp deleted
C:\Windows\System32\shoB6C4.tmp deleted
C:\Windows\System32\shoE5D.tmp deleted
C:\Users\Monica\AppData\Roaming\unins002.exe deleted
"C:\PROGRA~2\Package Cache" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"[EMAIL]wrc@avast.com[/EMAIL]"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [03/01/2015 08:24]
[HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
"{87F8774F-B485-47E2-A755-A40A8A5E886D}"="C:\Users\Monica\AppData\Local\GAS Tecnologia\GBBD\cef\xpi" [31/08/2014 16:22]

==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Administrador\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Administrador\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Administrador\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Convidado\AppData\Local\Google\Chrome deleted
Fake profile C:\Users\Convidado\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Convidado\AppData\Local\Comodo\Dragon deleted
Fake profile C:\Users\Monica\AppData\Local\Google\Chrome SxS deleted
Fake profile C:\Users\Monica\AppData\Local\Comodo\Dragon deleted

==== Chromium Look ======================

Google Chrome Version: 39.0.2171.95 (Possible outdated, latest Stable version: 40.0.2214.94)

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[06/08/2014 12:35]

Google Docs - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
GBBD Guardião - Itaú 30 horas - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmpojlddncminmkddkpoegdjhojjipg
Google Wallet - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - Monica\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Chromium Fix ======================

C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_isearch.omiga-plus.com_0.localstorage deleted successfully
C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_isearch.omiga-plus.com_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="<a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a>"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="<a href="http://www.google.com/search?q={searchTerms}" target="_blank">http://www.google.com/search?q={searchTerms}</a>"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="<a href="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" target="_blank">http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC</a>"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="<a href="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" target="_blank">http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}</a>"
{9B6DF44E-3601-45A4-8772-7E073E5A5B7D} (<a href="'http://www.google.com'" target="_blank">www.google.com</a&gt Google Url="<a href="https://www.google.com/search?q={searchTerms}" target="_blank">https://www.google.com/search?q={searchTerms}</a>"

==== Reset Google Chrome ======================

C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== shortcuts on Users Desktops ======================

C:\Users\Monica\Desktop\Big City Adventure(TM) - London Premium Edition.lnk - C:\Zylom Games\Big City Adventure(TM) - London Premium Edition\BigCityAdventureLondon.exe
C:\Users\Monica\Desktop\Gardenscapes - Mansion Makeover Premium Edition.lnk - C:\Zylom Games\Gardenscapes - Mansion Makeover Premium Edition\Gardenscapes Mansion Makeover.exe
C:\Users\Monica\Desktop\LogoMaker.lnk - C:\Program Files\Studio V5\LogoMaker\LogoMaker.exe
C:\Users\Monica\Desktop\Paint.lnk - C:\Windows\system32\mspaint.exe
C:\Users\Monica\Desktop\PhotoScape - Atalho.lnk - C:\Users\Monica\Downloads\PhotoScape\PhotoScape.exe
C:\Users\Monica\Desktop\Romance of Rome Deluxe.lnk - C:\Zylom Games\Romance of Rome Deluxe\RomanceofRome.exe

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe
C:\Users\Public\Desktop\LibreOffice 4.0.lnk - C:\Program Files\LibreOffice 4.0\program\soffice.exe

==== shortcuts in Users Start Menu ======================

C:\Users\Monica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitorar alertas de tinta - HP Deskjet 1510 series.lnk - C:\Windows\system32\RunDll32.exe "C:\Program Files\HP\HP Deskjet 1510 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=BR4811F1WP05XJ;CONNECTION=USB;MONITOR=1;

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1046-7B44-AB0000000001}\SC_Reader.ico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast\avast Free Antivirus.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Atualização HP.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Ajuda.lnk - C:\Program Files\HP\HP Deskjet 1510 series\Bin\HelpViewer\hpqlpvwr.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Comprar suprimentos.lnk - C:\Program Files\HP\HP Deskjet 1510 series\Bin\hpqDTSS.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Configuração da impressora & Software.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Desinstalar.lnk - C:\Windows\System32\msiexec.exe /qb /x {09EC1A2F-F639-49BE-8378-746DA9F286F8}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Estudo de aprimoramento de produtos HP.lnk - C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe /changesettings /UA 12.5 /DDV 0x0b00
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Ferramentas de diagnóstico de impressora online HP.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\HP Deskjet 1510 series.lnk - C:\Program Files\HP\HP Deskjet 1510 series\Bin\HP Deskjet 1510 series.exe -Start UDCDevicePage
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\HP Scan.lnk - C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPScan.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 1510 series\Site de suporte do produto.lnk - C:\Program Files\HP\HP Deskjet 1510 series\ProductSupportShortcut.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Photo Creations\Desinstalar HP Photo Creations.lnk - C:\Program Files\HP Photo Creations\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Photo Creations\HP Photo Creations.lnk - C:\Program Files\HP Photo Creations\PhotoProduct.exe

==== shortcuts in Quick Launch ======================

C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PhotoScape.lnk - C:\Users\Monica\Downloads\PhotoScape\PhotoScape.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\SpyHunter.lnk - C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Notepad.lnk - C:\Windows\system32\notepad.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Live Mail.lnk - C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Users\Monica\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== Empty IE Cache ======================

C:\Users\Monica\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Monica\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Monica\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=18 folders=10 7973534 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Monica\AppData\Local\Temp will be emptied at reboot
C:\Users\USURIO~1\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\Monica\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 06/02/2015 at 14:09:25,20 ======================
arkGreen">arkOrange">


Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#7 Por Power Max
06/02/2015 - 14:26
veja.png Faça o download do Malwarebytes em um destes links abaixo:
http://www.malwarebytes.org/mbam/program/mbam-setup.exe
http://downloads.malwarebytes.org/mbam-download.php

Para instalá-lo e executá-lo corretamente siga, por gentileza, as dicas desta postagem:

Tutorial do Malwarebytes Anti-Malware

Na sua próxima resposta poste este log (relatório) do Malwarebytes.

Ficamos no aguardo.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Monica Gurzoni
Monica Gurzo... Membro Senior Registrado
299 Mensagens 15 Curtidas
#10 Por Monica Gurzo...
06/02/2015 - 19:58
Ao término da verificação vi 6 ou 7 ítens detectados e acho que estavam na quarentena. Agora não aparece nada na quarentena.

Encontrei! Consegui! O log:

Malwarebytes Anti-Malware
<a href="'http://www.malwarebytes.org'" target="_blank">www.malwarebytes.org</a>

Data da Verificação: 06/02/2015
Hora da Verificação: 14:43:11
Arquivo de Log: log malwarebytes.txt
Administrador: Sim

Versão: 2.00.4.1028
Base de Dados de Malware: v2015.02.06.06
Base de Dados de Rootkit: v2015.02.03.01
Licença: Grátis
Proteção de Malware: Desabilitado
Proteção de Site Malicioso: Desabilitado
Auto-Proteção: Desabilitado

SO: Windows 7 Service Pack 1
Processador: x86
Sistema de Arquivos: NTFS
Usuário: Monica

Tipo da Verificação: Verificação Personalizada
Resultado: Terminado
Objetos Verificados: 483861
Tempo Decorrido: 4 hr, 23 min, 17 seg

Memória: Habilitado
Inicialização: Habilitado
Sistema de Arquivos: Habilitado
Arquivos Compactados: Habilitado
Rootkits: Habilitado
Heurística: Habilitado
PUP: Habilitado
PUM: Habilitado

Processos: 0
(Nenhum item malicioso detectado)

Módulos: 0
(Nenhum item malicioso detectado)

Chaves de Registro: 2
PUP.FCTPlugin, HKU\S-1-5-21-1748585246-2572997590-2566434535-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{9193fbaf-bdaf-4751-a99a-1f5ef255c35b}, , [a66c87936624ba7ca5343adcd1329f61],
PUP.Optional.FCTPlugin, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\kincjchfokkeneeofpeefomkikfkiedl, , [e032e43651390234cb20e0a9c242956b],

Valores de Registro: 0
(Nenhum item malicioso detectado)

Dados de Registro: 0
(Nenhum item malicioso detectado)

Pastas: 0
(Nenhum item malicioso detectado)

Arquivos: 5
PUP.Optional.Installrex, C:\Users\Monica\Documents\ManualDeMassagem_<a href="'http://www.e-book-gratuito.blogspot.com.pdf.exe'" target="_blank">www.e-book-gratuito.blogspot.com.pdf.exe</a>, , [9b772bef345672c4c3f30e2830d1ba46],
PUP.Optional.Solimba, C:\Users\Monica\Downloads\Watermark Magick.exe, , [62b01109800a8aac3bf96bf67a862ad6],
PUP.Optional.InstallCore, C:\Users\Monica\Downloads\winrar-420-baixaki-32-bits-2ae1901afe4feca0bcc337994cc92ad3.exe, , [868c73a7e5a53afca8e82a02cd34b64a],
Trojan.Repacked, C:\Users\Monica\Downloads\zulus_zoo_b.exe, , [cb47c05a7515181e26a11794ad53a15f],
PUP.Optional.Bandoo, C:\Users\Monica\Videos\iLividSetup-r611-n-bc.exe, , [d33fd74371195fd76a7844ebf809827e],

Setores Físicos: 0
(Nenhum item malicioso detectado)


(end)
arkGreen">arkOrange">


Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#11 Por Power Max
06/02/2015 - 20:35
Está constando que ele encontrou várias ameaças, mas você não removeu elas.

Faça, por gentileza, uma nova verificação da forma indicada no tutorial que te passei e remova todas as ameaças. Depois disto poste o novo log de verificação que ele vai criar.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Monica Gurzoni
Monica Gurzo... Membro Senior Registrado
299 Mensagens 15 Curtidas
#12 Por Monica Gurzo...
06/02/2015 - 20:50
Desculpe Power Max, mas agora acho que removi. Veja o log gerado:

Malwarebytes Anti-Malware
<a href="'http://www.malwarebytes.org'" target="_blank">www.malwarebytes.org</a>

Data da Verificação: 06/02/2015
Hora da Verificação: 14:43:11
Arquivo de Log: LogMalwarebytes..txt
Administrador: Sim

Versão: 2.00.4.1028
Base de Dados de Malware: v2015.02.06.06
Base de Dados de Rootkit: v2015.02.03.01
Licença: Grátis
Proteção de Malware: Desabilitado
Proteção de Site Malicioso: Desabilitado
Auto-Proteção: Desabilitado

SO: Windows 7 Service Pack 1
Processador: x86
Sistema de Arquivos: NTFS
Usuário: Monica

Tipo da Verificação: Verificação Personalizada
Resultado: Terminado
Objetos Verificados: 483861
Tempo Decorrido: 4 hr, 23 min, 17 seg

Memória: Habilitado
Inicialização: Habilitado
Sistema de Arquivos: Habilitado
Arquivos Compactados: Habilitado
Rootkits: Habilitado
Heurística: Habilitado
PUP: Habilitado
PUM: Habilitado

Processos: 0
(Nenhum item malicioso detectado)

Módulos: 0
(Nenhum item malicioso detectado)

Chaves de Registro: 2
PUP.FCTPlugin, HKU\S-1-5-21-1748585246-2572997590-2566434535-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{9193fbaf-bdaf-4751-a99a-1f5ef255c35b}, Quarentena, [a66c87936624ba7ca5343adcd1329f61],
PUP.Optional.FCTPlugin, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\kincjchfokkeneeofpeefomkikfkiedl, Quarentena, [e032e43651390234cb20e0a9c242956b],

Valores de Registro: 0
(Nenhum item malicioso detectado)

Dados de Registro: 0
(Nenhum item malicioso detectado)

Pastas: 0
(Nenhum item malicioso detectado)

Arquivos: 5
PUP.Optional.Installrex, C:\Users\Monica\Documents\ManualDeMassagem_<a href="'http://www.e-book-gratuito.blogspot.com.pdf.exe'" target="_blank">www.e-book-gratuito.blogspot.com.pdf.exe</a>, Quarentena, [9b772bef345672c4c3f30e2830d1ba46],
PUP.Optional.Solimba, C:\Users\Monica\Downloads\Watermark Magick.exe, Quarentena, [62b01109800a8aac3bf96bf67a862ad6],
PUP.Optional.InstallCore, C:\Users\Monica\Downloads\winrar-420-baixaki-32-bits-2ae1901afe4feca0bcc337994cc92ad3.exe, Quarentena, [868c73a7e5a53afca8e82a02cd34b64a],
Trojan.Repacked, C:\Users\Monica\Downloads\zulus_zoo_b.exe, Quarentena, [cb47c05a7515181e26a11794ad53a15f],
PUP.Optional.Bandoo, C:\Users\Monica\Videos\iLividSetup-r611-n-bc.exe, Quarentena, [d33fd74371195fd76a7844ebf809827e],

Setores Físicos: 0
(Nenhum item malicioso detectado)


(end)
arkGreen">arkOrange">


Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#13 Por Power Max
06/02/2015 - 21:46
Faça o download do < ZHPCleaner > < 4560c2e838537857a70e37b22927665a> ( ... de Nicolas Coolman )

Obs: Ao acessar o link acima clique no botão Télécharger referente ao ZHPCleaner para baixá-lo, tal como mostra a imagem abaixo:

58de70529772c242f9f9a79cb07a1430

Para executá-lo corretamente siga as dicas desta postagem:

Tutorial completo do ZHPCleaner

Após a utilização dele, copie todo o conteúdo do seu relatório ZHPCleaner.txt e poste em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Monica Gurzoni
Monica Gurzo... Membro Senior Registrado
299 Mensagens 15 Curtidas
#14 Por Monica Gurzo...
06/02/2015 - 22:53
Aqui:

~ ZHPCleaner v2015.2.6.53 by Nicolas Coolman (06/02/2015)
~ Run by Monica (Administrator) (06/02/2015 22:04:52)
~ Forum : http://forum.nicolascoolman.fr
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Repair
~ Report : C:\Users\Monica\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Monica\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Deactivate
~ Windows 7, 32-bit Service Pack 1 (Build 7601)


---\\ Services (1)
SERVICE STOPPED : SpyHunter 4 Service (Crapware.SpyHunter)


---\\ Browser internet (2)
REPLACED Proxy: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyHttp1.1 ( 1 )
REPLACED Proxy: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyHttp1.1 ( 1 )


---\\ Hosts file (0)
~ No malicious items found.


---\\ Scheduled automatic tasks. (0)
~ No malicious items found.


---\\ Explorer ( File, Folder) (13)
MOVED file: C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys (PUP.EnigmaSoftware)
MOVED file: C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE [Enigma Software Group USA, LLC. - Service scanner interface] (Crapware.SpyHunter)
MOVED folder*: C:\Program Files\Enigma Software Group\SpyHunter (PUP.EnigmaSoftware)
MOVED folder*: C:\Program Files\Enigma Software Group (PUP.EnigmaSoftware)
MOVED folder*: C:\Program Files\Enigma Software Group\SpyHunter (PUP.EnigmaSoftware)
MOVED folder*: C:\Program Files\Enigma Software Group (PUP.EnigmaSoftware)
MOVED file*: C:\Users\Monica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\SpyHunter Emergency Startup.lnk (Crapware.SpyHunter)
MOVED file*: C:\Users\Monica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\SpyHunter.lnk (Crapware.SpyHunter)
MOVED file*: C:\Users\Monica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter\Uninstall SpyHunter.lnk (Crapware.SpyHunter)
MOVED folder*: C:\Users\Monica\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter (Crapware.SpyHunter)
MOVED file*: C:\Windows\Installer\e4953.msi [Enigma Software Group USA, LLC - Windows Installer Editor Standalone] (PUP.EnigmaSoftware)
MOVED file*: C:\Windows\System32\Drivers\EsgScanner.sys (PUP.EnigmaSoftware)
MOVED folder*: C:\Users\Monica\AppData\Local\{C1CBAF5A-3F6F-4A4C-A66B-5EBE9AEBE4AD} (Empty)


---\\ Registry ( Key, Value, Data) (7)
DELETED key: HKLM\SYSTEM\CurrentControlSet\Services\esgiguard [C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys] (PUP.EnigmaSoftware)
DELETED data: HKCR\JSFile\Shell\Open\Command\\Default [Bad : C:\Windows\System32\CScript.exe "%1" %*] (Broken.OpenCommand)
DELETED key: HKLM\SYSTEM\CurrentControlSet\Services\EsgScanner [system32\DRIVERS\EsgScanner.sys] (PUP.EnigmaSoftware)
DELETED key: HKLM\SYSTEM\CurrentControlSet\Services\SpyHunter 4 Service [C:\PROGRA~1\ENIGMA~1\SPYHUN~1\SH4SER~1.EXE] (Crapware.SpyHunter)
DELETED key*: HKCR\Magnet [iLivid.torrent] (Adware.Bandoo)
DELETED key*: HKLM\SOFTWARE\EnigmaSoftwareGroup [] (PUP.EnigmaSoftware)
DELETED key*: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{455F074C-814E-4520-B69B-5584BD90400C} [SpyHunter] (Crapware.SpyHunter)



---\\ Result of repair
~ Repair carried out successfully
~ Browser not found (Mozilla Firefox)
~ Browser not found (Opera Software)
~ Repair canceled by the user (Google Chrome)
~ The system has been restarted.


---\\ Statistics
~ Items scanned : 49268
~ Items found : 0
~ Items repaired : 22


End of clean at 22:33:48
===================
ZHPCleaner-[R]-06022015-22_33_48.txt
arkGreen">arkOrange">


Power Max
Power Max Ubbergeek Registrado
4.2K Mensagens 509 Curtidas
#15 Por Power Max
06/02/2015 - 23:35
Faça o download do < ZHPDiag > < 4560c2e838537857a70e37b22927665a> ( ... de Nicolas Coolman )

Obs: Ao acessar o link acima clique no botão Télécharger referente ao ZHPDiag para baixá-lo, tal como mostra a imagem abaixo:

58de70529772c242f9f9a79cb07a1430

Para instalá-lo e executá-lo corretamente siga as dicas deste artigo:

Tutorial de instalação e execução do aplicativo ZHPDiag

* Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta.
_____________________________________________________________________________

Obs: Caso o relatório do ZHPDiag fique muito grande e não couber na sua resposta, acesse o site Cjoint:
http://cjoint.com

Clique no botão Escolher arquivo > Selecione o arquivo do log (relatório) e clique no botão Abrir.

Clique no botão Créer le lien Cjoint

Copie o link que aparecerá ao lado da frase Le lien a été créé e poste este link em sua próxima resposta.
<><><><><><><><><><><><><><><><>

Caixa de Dicas = Sempre com novos tutoriais e atualidades em informática e tecnologia.
Super Links = Mensagens de fé e esperança ao seu coração.
Responder Tópico
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal