Ir para conteúdo

Arquivado

Este tópico foi arquivado e está fechado para novas respostas.

Gilberto1750

[Resolvido] &nbspSuspeita de Malware.

Recommended Posts

Olá amigos,toda vez que inicio o meu notebook aparece uma janela escrita :

 

Houve um problema na inicializaçao do C:\Users\...\plugins\TBVerifier.dll

 

 

Nao foi possivel encontrar o módulo especificado.

Desconfio que seja algum malware ou algo do tipo,segue abaixo o log:

 

 

 

 

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:24:45, on 12/12/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\Dwm.exe
C:\windows\system32\taskhost.exe
C:\windows\Explorer.EXE
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\System32\rundll32.exe
C:\ProgramData\DatacardService\DCSHelper.exe
C:\windows\system32\taskeng.exe
C:\Program Files\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\BitComet\BitComet.exe
C:\Program Files\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
C:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Local\NativeMessaging\CT3312806\1_0_0_6\TBMessagingHost.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\windows\explorer.exe
D:\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=fft-1&from=fft-1&uid=ST320LM001_HN-M320MBB_S2TJJ9GC405645&ts=1370881254
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.b1.org/?bsrc=4hixr&chid=c167991
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchbomb.info/?pid=500&r=2013/11/27&hid=13873859986090669628&lg=EN&cc=BR&unqvl=42
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=fft-1&from=fft-1&uid=ST320LM001_HN-M320MBB_S2TJJ9GC405645&ts=1370881254
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://websearch.searchbomb.info/?pid=500&r=2013/11/27&hid=13873859986090669628&lg=EN&cc=BR&unqvl=42
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: saafEE. save - {0557D052-FF94-BEFE-527A-C91BDF9A83D5} - C:\ProgramData\saafEE. save\51dc7a1fbfb2e.dll
O2 - BHO: saafe asaave - {068D9A36-15A7-1814-BC6F-FC9B7BFF8528} - C:\ProgramData\saafe asaave\51e043ee9542a.dll
O2 - BHO: Search-NewTuab - {0BDCA3B5-D5E8-7953-C391-DCA3C862C286} - C:\ProgramData\Search-NewTuab\A4aIQlFgVQ.dll
O2 - BHO: safee save - {0DA7AE38-89B7-62F0-F0AE-D5B2F627B617} - C:\ProgramData\safee save\51e727c6e6d92.dll
O2 - BHO: saeffe saaVye - {0E8D47D8-23E9-856B-55BE-C27CF8F5AC75} - C:\ProgramData\saeffe saaVye\51f2e7db41f37.dll
O2 - BHO: saffe saoVe - {10E0B0B2-7773-CDED-AF6A-F19683C4790D} - C:\ProgramData\saffe saoVe\51cf314eb9c22.dll
O2 - BHO: SearchNewTab - {1640135B-E63D-49D2-CBB3-F2E0349CB28B} - C:\Program Files\SearchNewTab\gtRf.dll
O2 - BHO: Surf ANod keePu - {18269449-8A55-F41B-1A6E-CFEB06E1BF53} - C:\Program Files\Surf ANod keePu\KzR7CBM.dll
O2 - BHO: safue ssave - {18ACF13E-1E78-6190-3F06-B142DCAA5BE0} - C:\ProgramData\safue ssave\51dca4d435fbd.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: saffe saoVe - {210F0661-5A44-79D7-A9FA-39A729566160} - C:\ProgramData\saffe saoVe\51cf30075278a.dll
O2 - BHO: ssafe saovei - {2BA867A7-94B7-42A5-A1C0-D90188E1C975} - C:\ProgramData\ssafe saovei\51ed82bc4048e.dll
O2 - BHO: safe savEE - {360507F8-3FDC-C558-6160-96954104B88E} - C:\ProgramData\safe savEE\51e1cb95e213e.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll
O2 - BHO: saafEE. save - {3B60EE4A-576D-FEFF-955C-59156AA0FE05} - C:\ProgramData\saafEE. save\51dc7b2d5a4b3.dll
O2 - BHO: safue ssave - {3F88F39E-09D6-B962-24AD-6FD09BCCB77B} - C:\ProgramData\safue ssave\51dc962d74e26.dll
O2 - BHO: SearchNewTab - {409AB09D-79C1-8EB4-46EE-3B37598E80B8} - C:\Program Files\SearchNewTab\q1Ev.dll
O2 - BHO: saFe saVVee - {4197B2F3-CB49-9E17-E735-FE7F05BBCDB0} - C:\ProgramData\saFe saVVee\51f2af194423a.dll
O2 - BHO: safue ssave - {49A3428A-B92E-F32F-2EB7-E389C22CD98B} - C:\ProgramData\safue ssave\51dc81ede01c0.dll
O2 - BHO: SearchNewTab - {4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} - C:\Program Files\SearchNewTab\yCXyMo.dll
O2 - BHO: sayfE savee - {4E7C898D-93D9-4D2E-C508-6C9AF19C10B5} - C:\ProgramData\sayfE savee\51e5d1ca03350.dll
O2 - BHO: SearchNewTab - {4F8BF3BE-D46A-E939-8B50-19BCE76568AF} - C:\Program Files\SearchNewTab\N0Axo.dll
O2 - BHO: surff aondd keep - {50B032D2-9611-3378-E6A6-1CA7849DA009} - C:\Program Files\surff aondd keep\OIEJIKE.dll
O2 - BHO: SearchNewTab - {5113D56F-ECD2-E653-7341-8F290823CE7D} - C:\Program Files\SearchNewTab\Lo.dll
O2 - BHO: ssafe saveu - {58807ED6-926C-01DF-A43C-D5AABCCFCD32} - C:\ProgramData\ssafe saveu\51e73e9d747c2.dll
O2 - BHO: sayfE savee - {5D95554B-1DB1-BE77-81C4-2526B3556A97} - C:\ProgramData\sayfE savee\51e5b2625cbcd.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: safuey sAivve - {6334064E-EA2B-0BC8-45EA-383AF536F9D4} - C:\ProgramData\safuey sAivve\51f417af1aac6.dll
O2 - BHO: sayfE savee - {655254E5-D51E-55D2-333B-5EDD9EFB6584} - C:\ProgramData\sayfE savee\51e6e4fce2a2c.dll
O2 - BHO: sAvEnsHare - {6B1AA089-3B3F-6631-9153-B1F2B6510DF4} - C:\ProgramData\sAvEnsHare\Mzir.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SearchNewTab - {777BA9A8-BDAD-652A-A86C-3D72748F2767} - C:\Program Files\SearchNewTab\V3ZEeh.dll
O2 - BHO: surfo and kieeop - {77F38C6E-B888-748F-CCD1-1C8FEFFFF096} - C:\Program Files\surfo and kieeop\LnKf.dll
O2 - BHO: safe savEE - {797F4CCC-B4A1-1C95-C693-EE8206501858} - C:\ProgramData\safe savEE\51e1b90467434.dll
O2 - BHO: safee save - {81E232B0-AB3B-4065-4A03-D3EBDF4AF8AE} - C:\ProgramData\safee save\51e6cf6ec4463.dll
O2 - BHO: saafEE. save - {87891211-8E5C-4580-234A-66205DA50295} - C:\ProgramData\saafEE. save\51dcaa5fa53e3.dll
O2 - BHO: SearchNewTab - {8A00E86E-122D-21F1-B863-949A2903D620} - C:\Program Files\SearchNewTab\zvDCab.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: saFe syave - {90BED7E1-66B6-EB44-B057-D76145421EA9} - C:\ProgramData\saFe syave\51ed7f2d37cd3.dll
O2 - BHO: SearchNewTab - {913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} - C:\Program Files\SearchNewTab\eF.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.2.0.38\AVG Secure Search_toolbar.dll
O2 - BHO: surf eaned ikEep - {972C2CAC-83F3-3E16-5A0E-D29EB19C3F2C} - C:\Program Files\surf eaned ikEep\y_.dll
O2 - BHO: safuey sAivve - {9807DB7D-A9DB-D840-BBF1-5021694655FF} - C:\ProgramData\safuey sAivve\51f4163f9d9d4.dll
O2 - BHO: SearchNewTab - {9B686265-8427-7F39-DCC9-E2A92114FA8E} - C:\Program Files\SearchNewTab\FDgfbb5YY.dll
O2 - BHO: safue ssave - {A8A02457-0BBC-4D01-9B57-91B4D9C6E5FF} - C:\ProgramData\safue ssave\51dca7bc38629.dll
O2 - BHO: siaife! sAvie - {A980E1B5-58B6-5776-74EB-A0383029228C} - C:\ProgramData\siaife! sAvie\51e873a991a06.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Samsung BHO Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: SearchNewTab - {AD046418-67D1-0569-EF83-0FC550ABB05A} - C:\Program Files\SearchNewTab\PY4SZklksz.dll
O2 - BHO: IEWebHook - {AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2} - C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\IEPlugin32.dll
O2 - BHO: ssavEnShare - {B9738714-BBD9-2BC2-9D0E-F0800C4A4D68} - C:\ProgramData\ssavEnShare\4oTnu2.dll
O2 - BHO: saafe asaave - {C7708AAB-9AAD-6EC3-FC95-7C075C4CF178} - C:\ProgramData\saafe asaave\51e06267e4309.dll
O2 - BHO: Help the General-Search Project - {CA4520F3-AE13-4FB1-A513-58E23991C86D} - C:\Users\FAMILI~1.DAC\AppData\Roaming\GENERA~1\EXTENS~1\GenCrawl.dll
O2 - BHO: SSurf and keeep - {CF385232-2699-3DEB-D7AA-2EAE9F4F79B9} - C:\Program Files\SSurf and keeep\c9rlr.dll
O2 - BHO: surF anod kkeep - {D3D91924-1D1C-678D-FBDB-1CCA9428E6E1} - C:\Program Files\surF anod kkeep\2nT.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: sayfE savee - {DF4F33EB-B810-0008-97A2-403E00B64A6E} - C:\ProgramData\sayfE savee\51e5d1322af95.dll
O2 - BHO: DOwnloada keepper - {DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} - C:\ProgramData\DOwnloada keepper\S.dll
O2 - BHO: SearchNewTab - {E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} - C:\Program Files\SearchNewTab\K1.dll
O2 - BHO: safe save - {E2404019-8E2E-53B3-0196-D70759ED9F3C} - C:\ProgramData\safe save\51dc4a2a28f07.dll
O2 - BHO: Movies Toolbar (Dist. by Bandoo Media, Inc.) - {ec2bae47-25af-4ce9-9e78-10627a49c9ea} - C:\PROGRA~1\MOVIES~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll (file missing)
O2 - BHO: SearchNewTab - {EEB4FB75-430F-6243-5BB5-9872D7151BDC} - C:\Program Files\SearchNewTab\m.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: SearchNewTab - {F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} - C:\Program Files\SearchNewTab\IL8hYhAZc1.dll
O2 - BHO: SearchNewTab - {FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} - C:\Program Files\SearchNewTab\a6zWyw796B.dll
O2 - BHO: WinToFlash Suggestor - {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll
O2 - BHO: SearchNewTab - {FCBAE501-15EE-49AA-ED8C-18BDC5794F88} - C:\Program Files\SearchNewTab\2.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O3 - Toolbar: SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.2.0.38\AVG Secure Search_toolbar.dll
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: Movies Toolbar (Dist. by Bandoo Media, Inc.) - {ec2bae47-25af-4ce9-9e78-10627a49c9ea} - C:\PROGRA~1\MOVIES~1\Datamngr\SRTOOL~1\IE\searchresultsDx.dll (file missing)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ConduitFloatingPlugin_iokhogohoamdhejdbenjbjkhjmjlggab] "C:\windows\system32\Rundll32.exe" "C:\Users\FAMILI~1.DAC\AppData\Local\Temp\CT3312806\plugins\TBVerifier.dll",RunConduitFloatingPlugin iokhogohoamdhejdbenjbjkhjmjlggab
O8 - Extra context menu item: &B&aixar &com o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &B&aixar tudo usando o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - C:\Program Files\WinToFlash Suggestor\WinToFlashSuggestor.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\17.2.0\ViProtocol.dll
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O20 - AppInit_DLLs: c:\progra~1\movies~1\datamngr\mgrldr.dll c:\progra~2\wincert\win32c~1.dll c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll c:\progra~1\skc4df~1.enh\psupport.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Datamngr Coordinator (DatamngrCoordinator) - Bandoo Media Inc. - C:\Program Files\Movies Toolbar\Datamngr\DatamngrCoordinator.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Baidu PC Faster Service 3.7.0.0 (PCFasterSvc_{PCFaster_3.7.0.0}) - Unknown owner - C:\Program Files\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe (file missing)
O23 - Service: PSafeLockBoxSvc - PSafe - C:\Program Files\PSafe\PSafeCategoryFinder.exe
O23 - Service: PSafeSVC - PSafe S/A - C:\Program Files\PSafe\PSafesvc.exe
O23 - Service: PSafeWD - PSafe - C:\Program Files\PSafe\PSafeWD.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\windows\System32\SUPDSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: vToolbarUpdater17.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.2.0\ToolbarUpdater.exe

--
End of file - 16819 bytes

Compartilhar este post


Link para o post
Compartilhar em outros sites

:) Olá Gilberto!

 

:seta: Siga, por gentileza, as dicas dos tutoriais abaixo:

 

Remova adwares e toolbars maliciosas com o Adwcleaner

 

Tutorial do Junkware Removal Tool

 

* Na sua próxima resposta poste, por gentileza, um novo log do Hijackthis, o log do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[s0].txt e o log do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt e nos diga como está seu PC depois destes procedimentos.

 

Ficamos na espera.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá novamente meu amigo,aquela janela que aparecia nao esta mais aparecendo,talvez o problema tenha sido resolvido,segue abaixo os 3 logs para sua verificaçao :

 

 

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:28:26, on 12/12/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\ProgramData\DatacardService\DCSHelper.exe
C:\windows\system32\NOTEPAD.EXE
C:\windows\system32\taskeng.exe
C:\Program Files\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
C:\windows\explorer.exe
C:\windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
D:\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: saafe asaave - {068D9A36-15A7-1814-BC6F-FC9B7BFF8528} - C:\ProgramData\saafe asaave\51e043ee9542a.dll (file missing)
O2 - BHO: SearchNewTab - {1640135B-E63D-49D2-CBB3-F2E0349CB28B} - C:\Program Files\SearchNewTab\gtRf.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: saffe saoVe - {210F0661-5A44-79D7-A9FA-39A729566160} - C:\ProgramData\saffe saoVe\51cf30075278a.dll (file missing)
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll
O2 - BHO: SearchNewTab - {409AB09D-79C1-8EB4-46EE-3B37598E80B8} - C:\Program Files\SearchNewTab\q1Ev.dll
O2 - BHO: SearchNewTab - {4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} - C:\Program Files\SearchNewTab\yCXyMo.dll
O2 - BHO: SearchNewTab - {4F8BF3BE-D46A-E939-8B50-19BCE76568AF} - C:\Program Files\SearchNewTab\N0Axo.dll
O2 - BHO: SearchNewTab - {5113D56F-ECD2-E653-7341-8F290823CE7D} - C:\Program Files\SearchNewTab\Lo.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SearchNewTab - {777BA9A8-BDAD-652A-A86C-3D72748F2767} - C:\Program Files\SearchNewTab\V3ZEeh.dll
O2 - BHO: SearchNewTab - {8A00E86E-122D-21F1-B863-949A2903D620} - C:\Program Files\SearchNewTab\zvDCab.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SearchNewTab - {913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} - C:\Program Files\SearchNewTab\eF.dll
O2 - BHO: safuey sAivve - {9807DB7D-A9DB-D840-BBF1-5021694655FF} - C:\ProgramData\safuey sAivve\51f4163f9d9d4.dll (file missing)
O2 - BHO: SearchNewTab - {9B686265-8427-7F39-DCC9-E2A92114FA8E} - C:\Program Files\SearchNewTab\FDgfbb5YY.dll
O2 - BHO: siaife! sAvie - {A980E1B5-58B6-5776-74EB-A0383029228C} - C:\ProgramData\siaife! sAvie\51e873a991a06.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Samsung BHO Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: SearchNewTab - {AD046418-67D1-0569-EF83-0FC550ABB05A} - C:\Program Files\SearchNewTab\PY4SZklksz.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: DOwnloada keepper - {DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} - C:\ProgramData\DOwnloada keepper\S.dll (file missing)
O2 - BHO: SearchNewTab - {E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} - C:\Program Files\SearchNewTab\K1.dll
O2 - BHO: SearchNewTab - {EEB4FB75-430F-6243-5BB5-9872D7151BDC} - C:\Program Files\SearchNewTab\m.dll
O2 - BHO: SearchNewTab - {F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} - C:\Program Files\SearchNewTab\IL8hYhAZc1.dll
O2 - BHO: SearchNewTab - {FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} - C:\Program Files\SearchNewTab\a6zWyw796B.dll
O2 - BHO: SearchNewTab - {FCBAE501-15EE-49AA-ED8C-18BDC5794F88} - C:\Program Files\SearchNewTab\2.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &B&aixar &com o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &B&aixar tudo usando o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll/206 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O20 - AppInit_DLLs: c:\progra~1\skc4df~1.enh\psupport.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Baidu PC Faster Service 3.7.0.0 (PCFasterSvc_{PCFaster_3.7.0.0}) - Unknown owner - C:\Program Files\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe (file missing)
O23 - Service: PSafeLockBoxSvc - PSafe - C:\Program Files\PSafe\PSafeCategoryFinder.exe
O23 - Service: PSafeSVC - PSafe S/A - C:\Program Files\PSafe\PSafesvc.exe
O23 - Service: PSafeWD - PSafe - C:\Program Files\PSafe\PSafeWD.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\windows\System32\SUPDSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: vToolbarUpdater17.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.2.0\ToolbarUpdater.exe (file missing)

--
End of file - 9051 bytes

 

 

 

 

# AdwCleaner v3.015 - Relatório criado 12/12/2013 às 14:57:40
# Atualizado 10/12/2013 por Xplode
# Sistema Operacional : Windows 7 Starter Service Pack 1 (32 bits)
# Usuário : familia - DACIORODRIGUES
# Executando de : C:\Users\familia.daciorodrigues\Downloads\adwcleaner.exe
# Opção : Limpar

***** [ Serviços ] *****

[#] Serviço Deletada : BrowserDefendert
Serviço Deletada : DatamngrCoordinator

***** [ Arquivos / Pastas ] *****

Pasta Deletada : C:\ProgramData\Ask
Pasta Deletada : C:\ProgramData\AVG Secure Search
Pasta Deletada : C:\ProgramData\Babylon
Pasta Deletada : C:\ProgramData\BasicServe
Pasta Deletada : C:\ProgramData\BitGuard
Pasta Deletada : C:\ProgramData\BonanzaDealsLive
Pasta Deletada : C:\ProgramData\Browser Manager
[!] Pasta Deletada : C:\ProgramData\BrowserDefender
Pasta Deletada : C:\ProgramData\BrowserProtect
Pasta Deletada : C:\ProgramData\eSafe
Pasta Deletada : C:\ProgramData\QuickSet
Pasta Deletada : C:\ProgramData\StarApp
Pasta Deletada : C:\ProgramData\Tarma Installer
Pasta Deletada : C:\ProgramData\VisualBee
Pasta Deletada : C:\ProgramData\wincert
Pasta Deletada : C:\ProgramData\WinterSoft
Pasta Deletada : C:\ProgramData\DOwnloada keepper
Pasta Deletada : C:\ProgramData\saaFe saave
Pasta Deletada : C:\ProgramData\saafe asaave
Pasta Deletada : C:\ProgramData\saafe saveo
Pasta Deletada : C:\ProgramData\saafEE. save
Pasta Deletada : C:\ProgramData\saeffe saaVye
Pasta Deletada : C:\ProgramData\safe savEE
Pasta Deletada : C:\ProgramData\safe save
Pasta Deletada : C:\ProgramData\saFe saVVee
Pasta Deletada : C:\ProgramData\saFe syave
Pasta Deletada : C:\ProgramData\safee save
Pasta Deletada : C:\ProgramData\saffe saoVe
Pasta Deletada : C:\ProgramData\safue ssave
Pasta Deletada : C:\ProgramData\safuey sAivve
Pasta Deletada : C:\ProgramData\sAvEnsHare
Pasta Deletada : C:\ProgramData\sayfE savee
Pasta Deletada : C:\ProgramData\Search-NewTuab
Pasta Deletada : C:\ProgramData\ssafe saovei
Pasta Deletada : C:\ProgramData\ssafe saveu
Pasta Deletada : C:\ProgramData\ssavEnShare
Pasta Deletada : C:\ProgramData\SSurf and keeep
Pasta Deletada : C:\ProgramData\surF anod kkeep
Pasta Deletada : C:\ProgramData\Surf ANod keePu
Pasta Deletada : C:\ProgramData\surf eaned ikEep
Pasta Deletada : C:\ProgramData\surff aondd keep
Pasta Deletada : C:\ProgramData\surfo and kieeop
Pasta Deletada : C:\Program Files\AVG Secure Search
Pasta Deletada : C:\Program Files\BasicServe
Pasta Deletada : C:\Program Files\BonanzaDealsLive
Pasta Deletada : C:\Program Files\Conduit
Pasta Deletada : C:\Program Files\driver-soft
Pasta Deletada : C:\Program Files\ExpressFiles
Pasta Deletada : C:\Program Files\Gophoto.it
Pasta Deletada : C:\Program Files\Movies Toolbar
Pasta Deletada : C:\Program Files\SimilarSites
Pasta Deletada : C:\Program Files\SweetIM
Pasta Deletada : C:\Program Files\WinToFlash Suggestor
Pasta Deletada : C:\Program Files\YoutubeAdblocker
Pasta Deletada : C:\Program Files\SSurf and keeep
Pasta Deletada : C:\Program Files\surF anod kkeep
Pasta Deletada : C:\Program Files\Surf ANod keePu
Pasta Deletada : C:\Program Files\surf eaned ikEep
Pasta Deletada : C:\Program Files\surff aondd keep
Pasta Deletada : C:\Program Files\surfo and kieeop
Pasta Deletada : C:\Program Files\Common Files\AVG Secure Search
Pasta Deletada : C:\windows\system32\BitGuard
Arquivo Deletada : C:\END
Arquivo Deletada : C:\Program Files\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml
Arquivo Deletada : C:\windows\System32\Tasks\Desk 365 RunAsStdUser
Arquivo Deletada : C:\windows\System32\Tasks\Escolade
Arquivo Deletada : C:\windows\System32\Tasks\Express FilesUpdate
Arquivo Deletada : C:\windows\System32\Tasks\Funmoods
Arquivo Deletada : C:\windows\System32\Tasks\GoforFilesUpdate
Arquivo Deletada : C:\windows\Tasks\UpdaterEX.job
Arquivo Deletada : C:\windows\System32\Tasks\UpdaterEX

***** [ Atalhos ] *****

Atalho Desinfectada : C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk
Atalho Desinfectada : C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk
Atalho Desinfectada : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Atalho Desinfectada : C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Atalho Desinfectada : C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Atalho Desinfectada : C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Atalho Desinfectada : C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Atalho Desinfectada : C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ Registro ] *****

Valor Deletedo : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\acaoakiamfeidcmgooclgeleejkbaecf
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\nbmafkdmkkckhggblphicnnhlgljnoje
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Chave Deletedo : HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4628F963-7739-4F71-A150-7A0C3B183AFA}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4628F963-7739-4F71-A150-7A0C3B183AFA}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AEDAD5CC-CB26-4002-BEC1-CB02CE7F3BB1}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AEDAD5CC-CB26-4002-BEC1-CB02CE7F3BB1}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F5151083-69A7-4937-9927-91D5AB9A03E3}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F5151083-69A7-4937-9927-91D5AB9A03E3}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6AF0B807-CAD0-4A79-A60C-16DA6B8FF01B}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AF0B807-CAD0-4A79-A60C-16DA6B8FF01B}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EAA0869E-AB60-48C6-931B-0EEBD978DD7F}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EAA0869E-AB60-48C6-931B-0EEBD978DD7F}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BBFC2F4D-FD4F-45C9-B235-03BB6D3E8123}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F031BAC8-3DB9-4A97-8350-D6B116072135}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{009958A3-B685-4ECF-A2F3-660CD0CCD7F6}
[#] Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{009958A3-B685-4ECF-A2F3-660CD0CCD7F6}
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\IEPlugin.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\SMBarBroker.EXE
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Chave Deletedo : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Chave Deletedo : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Chave Deletedo : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Chave Deletedo : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Chave Deletedo : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook
Chave Deletedo : HKLM\SOFTWARE\Classes\IEPlugin.IEWebHook.1
Chave Deletedo : HKLM\SOFTWARE\Classes\Prod.cap
Chave Deletedo : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Chave Deletedo : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Chave Deletedo : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Chave Deletedo : HKLM\SOFTWARE\Classes\S
Chave Deletedo : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Chave Deletedo : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Chave Deletedo : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard
Chave Deletedo : HKLM\SOFTWARE\Classes\SearchQUIEHelper.DNSGuard.1
Chave Deletedo : HKLM\SOFTWARE\Classes\SMBarBroker.SMBarDealer
Chave Deletedo : HKLM\SOFTWARE\Classes\SMBarBroker.SMBarDealer.1
Chave Deletedo : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar
Chave Deletedo : HKLM\SOFTWARE\Classes\SWEETIE.IEToolbar.1
Chave Deletedo : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook
Chave Deletedo : HKLM\SOFTWARE\Classes\sweetim_urlsearchhook.toolbarurlsearchhook.1
Chave Deletedo : HKLM\SOFTWARE\Classes\Toolbar3.sweetie
Chave Deletedo : HKLM\SOFTWARE\Classes\Toolbar3.sweetie.1
Chave Deletedo : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Chave Deletedo : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SweetIM
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SweetPacks Communicator
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\DEALPL~1_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\DEALPL~1_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\FTDownloader_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\FTDownloader_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\FunmoodsLatest_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\updateSaltarSmart_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\updateSaltarSmart_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasapi32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasmancs
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bitguard.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BonanzaDealsLive.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\bprotect.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserdefender.exe
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\browserprotect.exe
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs [C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll]
Chave Deletedo : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Valor Deletedo : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x64]
Valor Deletedo : HKLM\SYSTEM\ControlSet002\Control\Session Manager\AppCertDlls [x86]
Chave Deletedo : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc
Chave Deletedo : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc
Chave Deletedo : HKCU\Software\5f558c8de73eef48
Chave Deletedo : HKLM\SOFTWARE\5f558c8de73eef48
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_a-patch_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_a-patch_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_msn-2011_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_msn-2011_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_msn-messenger-polygamy_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_msn-messenger-polygamy_RASMANCS
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_nero-gratis_RASAPI32
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_para_nero-gratis_RASMANCS
Valor Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [ConduitFloatingPlugin_iokhogohoamdhejdbenjbjkhjmjlggab]
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{3A188115-B81B-48F2-A958-F974C8F3F309}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{3F39D17D-50C7-4AC4-A63A-CDF6CDBD0C61}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{C3110516-8EFC-49D6-8B72-69354F332062}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Chave Deletedo : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{43769158-3B03-4932-8D8A-8F0F344BF024}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{806785D0-375F-4C2C-92E3-B8EE65D28E83}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{94496571-6AC5-4836-82D5-D46260C44B17}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{CC1AC828-BB47-4361-AFB5-96EEE259DD87}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{C7708AAB-9AAD-6EC3-FC95-7C075C4CF178}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{87891211-8E5C-4580-234A-66205DA50295}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{0E8D47D8-23E9-856B-55BE-C27CF8F5AC75}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{E2404019-8E2E-53B3-0196-D70759ED9F3C}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{4197B2F3-CB49-9E17-E735-FE7F05BBCDB0}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{90BED7E1-66B6-EB44-B057-D76145421EA9}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{0DA7AE38-89B7-62F0-F0AE-D5B2F627B617}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{10E0B0B2-7773-CDED-AF6A-F19683C4790D}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{A8A02457-0BBC-4D01-9B57-91B4D9C6E5FF}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{6334064E-EA2B-0BC8-45EA-383AF536F9D4}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{6B1AA089-3B3F-6631-9153-B1F2B6510DF4}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{655254E5-D51E-55D2-333B-5EDD9EFB6584}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{0BDCA3B5-D5E8-7953-C391-DCA3C862C286}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{2BA867A7-94B7-42A5-A1C0-D90188E1C975}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{58807ED6-926C-01DF-A43C-D5AABCCFCD32}
Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{B9738714-BBD9-2BC2-9D0E-F0800C4A4D68}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{78CE34FD-F6D4-4866-B79C-A37268D06A04}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{80904944-C726-4C7D-A452-3FFF2A882095}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{AE9908C1-3400-4B10-9061-C6C04D96E3D2}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EEE6C358-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EEE6C359-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EEE6C35A-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Chave Deletedo : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{13ABD093-D46F-40DF-A608-47E162EC799D}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{2D9B1B31-D034-4738-8F6E-40F0AFCC742C}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{71E3A30E-9444-49D9-ABDB-B4B531D0BBA3}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35E-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Classes\TypeLib\{EEE6C35F-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEE6C35C-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7708AAB-9AAD-6EC3-FC95-7C075C4CF178}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{87891211-8E5C-4580-234A-66205DA50295}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8D47D8-23E9-856B-55BE-C27CF8F5AC75}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E2404019-8E2E-53B3-0196-D70759ED9F3C}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4197B2F3-CB49-9E17-E735-FE7F05BBCDB0}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90BED7E1-66B6-EB44-B057-D76145421EA9}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0DA7AE38-89B7-62F0-F0AE-D5B2F627B617}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10E0B0B2-7773-CDED-AF6A-F19683C4790D}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8A02457-0BBC-4D01-9B57-91B4D9C6E5FF}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6334064E-EA2B-0BC8-45EA-383AF536F9D4}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6B1AA089-3B3F-6631-9153-B1F2B6510DF4}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{655254E5-D51E-55D2-333B-5EDD9EFB6584}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0BDCA3B5-D5E8-7953-C391-DCA3C862C286}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2BA867A7-94B7-42A5-A1C0-D90188E1C975}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58807ED6-926C-01DF-A43C-D5AABCCFCD32}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B9738714-BBD9-2BC2-9D0E-F0800C4A4D68}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35B-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEE6C35C-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C7708AAB-9AAD-6EC3-FC95-7C075C4CF178}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87891211-8E5C-4580-234A-66205DA50295}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0E8D47D8-23E9-856B-55BE-C27CF8F5AC75}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E2404019-8E2E-53B3-0196-D70759ED9F3C}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4197B2F3-CB49-9E17-E735-FE7F05BBCDB0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{90BED7E1-66B6-EB44-B057-D76145421EA9}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0DA7AE38-89B7-62F0-F0AE-D5B2F627B617}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10E0B0B2-7773-CDED-AF6A-F19683C4790D}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A8A02457-0BBC-4D01-9B57-91B4D9C6E5FF}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6334064E-EA2B-0BC8-45EA-383AF536F9D4}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6B1AA089-3B3F-6631-9153-B1F2B6510DF4}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{655254E5-D51E-55D2-333B-5EDD9EFB6584}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0BDCA3B5-D5E8-7953-C391-DCA3C862C286}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2BA867A7-94B7-42A5-A1C0-D90188E1C975}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58807ED6-926C-01DF-A43C-D5AABCCFCD32}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B9738714-BBD9-2BC2-9D0E-F0800C4A4D68}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CA4520F3-AE13-4FB1-A513-58E23991C86D}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35B-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEE6C35C-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC36B0BD-27F0-4CDD-8AB1-50651EFC3EFD}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C7708AAB-9AAD-6EC3-FC95-7C075C4CF178}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{87891211-8E5C-4580-234A-66205DA50295}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0E8D47D8-23E9-856B-55BE-C27CF8F5AC75}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7DF6C189-11DB-8B08-45CA-DA24B5CE7B09}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E2404019-8E2E-53B3-0196-D70759ED9F3C}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4197B2F3-CB49-9E17-E735-FE7F05BBCDB0}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{90BED7E1-66B6-EB44-B057-D76145421EA9}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0DA7AE38-89B7-62F0-F0AE-D5B2F627B617}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10E0B0B2-7773-CDED-AF6A-F19683C4790D}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A8A02457-0BBC-4D01-9B57-91B4D9C6E5FF}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6334064E-EA2B-0BC8-45EA-383AF536F9D4}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6B1AA089-3B3F-6631-9153-B1F2B6510DF4}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{655254E5-D51E-55D2-333B-5EDD9EFB6584}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0BDCA3B5-D5E8-7953-C391-DCA3C862C286}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2BA867A7-94B7-42A5-A1C0-D90188E1C975}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{58807ED6-926C-01DF-A43C-D5AABCCFCD32}
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{B9738714-BBD9-2BC2-9D0E-F0800C4A4D68}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6B1AA089-3B3F-6631-9153-B1F2B6510DF4}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{0BDCA3B5-D5E8-7953-C391-DCA3C862C286}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B9738714-BBD9-2BC2-9D0E-F0800C4A4D68}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{377E5D4D-77E5-476A-8716-7E70A9272DA0}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C87FC351-A80D-43E9-9A86-CF1E29DC443A}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EC2BAE47-25AF-4CE9-9E78-10627A49C9EA}]
Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{EEE6C35B-6118-11DC-9C72-001320C79847}]
Dados Restaurada : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Chave Deletedo : HKCU\Software\APN DTX
Chave Deletedo : HKCU\Software\APN PIP
Chave Deletedo : HKCU\Software\AVG Secure Search
Chave Deletedo : HKCU\Software\BabSolution
Chave Deletedo : HKCU\Software\BonanzaDealsLive
Chave Deletedo : HKCU\Software\Conduit
Chave Deletedo : HKCU\Software\DataMngr
[#] Chave Deletedo : HKCU\Software\DataMngr_Toolbar
Chave Deletedo : HKCU\Software\Escolade
Chave Deletedo : HKCU\Software\ilividmoviestoolbardla
Chave Deletedo : HKCU\Software\Iminent
Chave Deletedo : HKCU\Software\InstallCore
Chave Deletedo : HKCU\Software\installedbrowserextensions
Chave Deletedo : HKCU\Software\powerpack
Chave Deletedo : HKCU\Software\Softonic
Chave Deletedo : HKCU\Software\UpdaterEX
Chave Deletedo : HKCU\Software\visualbee
Chave Deletedo : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Chave Deletedo : HKCU\Software\AppDataLow\SProtector
Chave Deletedo : HKCU\Software\AppDataLow\Software\Conduit
Chave Deletedo : HKCU\Software\AppDataLow\Software\Crossrider
Chave Deletedo : HKCU\Software\AppDataLow\Software\Plus-HD-2.2
Chave Deletedo : HKCU\Software\AppDataLow\Software\SmartBar
Chave Deletedo : HKLM\Software\{1146AC44-2F03-4431-B4FD-889BC837521F}
Chave Deletedo : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Chave Deletedo : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Chave Deletedo : HKLM\Software\AVG Secure Search
Chave Deletedo : HKLM\Software\AVG Security Toolbar
Chave Deletedo : HKLM\Software\Babylon
Chave Deletedo : HKLM\Software\BabylonToolbar
Chave Deletedo : HKLM\Software\BonanzaDealsLive
Chave Deletedo : HKLM\Software\DataMngr
Chave Deletedo : HKLM\Software\Desksvc
Chave Deletedo : HKLM\Software\eSafeSecControl
Chave Deletedo : HKLM\Software\ExpressFiles
Chave Deletedo : HKLM\Software\hdcode
Chave Deletedo : HKLM\Software\iLividSRTB
Chave Deletedo : HKLM\Software\InstallCore
Chave Deletedo : HKLM\Software\PIP
Chave Deletedo : HKLM\Software\portaldositesSoftware
Chave Deletedo : HKLM\Software\SP Global
Chave Deletedo : HKLM\Software\SProtector
Chave Deletedo : HKLM\Software\Tarma Installer
Chave Deletedo : HKLM\Software\V9
Chave Deletedo : HKLM\Software\V9Software
Chave Deletedo : HKLM\Software\visualbee
Chave Deletedo : HKLM\Software\Vittalia
Chave Deletedo : HKLM\Software\winzipersvc
Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{c3e85ee9-5892-4142-b537-bceb3dac4c3d}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ea8fa6be-29be-4af2-9352-841f83215eb0}
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ilividmoviestoolbardlaIE
Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Dados Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~1\movies~1\datamngr\mgrldr.dll
Dados Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\wincert\win32c~1.dll
Dados Deletedo : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\browse~1\261519~1.190\{c16c1~1\browse~1.dll
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2E0D3DD9E5E4B74CA43BCE77815E287
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B
Chave Deletedo : HKLM\Software\Classes\Installer\Features\9EE58E3C298524145B73CBBED3CAC4D3
Chave Deletedo : HKLM\Software\Classes\Installer\Features\EB6AF8AEEB922FA4392548F13812E50B
Chave Deletedo : HKLM\Software\Classes\Installer\Products\9EE58E3C298524145B73CBBED3CAC4D3
Chave Deletedo : HKLM\Software\Classes\Installer\Products\EB6AF8AEEB922FA4392548F13812E50B
Chave Deletedo : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0

***** [ Navegadores ] *****

-\\ Internet Explorer v11.0.9600.16428

Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [search Page]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [start Page]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [start Page Before]
Configurações Restauradas : HKCU\Software\Microsoft\Internet Explorer\Main [search Page Before]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Configurações Restauradas : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [start Page]

-\\ Mozilla Firefox v25.0.1 (en-US)

-\\ Google Chrome v31.0.1650.63

*************************

AdwCleaner[R0].txt - [52109 octets] - [12/12/2013 14:53:26]
AdwCleaner[s0].txt - [48527 octets] - [12/12/2013 14:57:40]

########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [48588 octets] ##########

 

 

 

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Starter x86
Ran by familia on 12/12/2013 at 15:03:28,73
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\\DisplayName
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\\URL



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110311341138}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskToolbarNRO3_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\AskToolbarNRO3_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\lyricupdater_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\lyricupdater_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{3AFE6156-1FB8-1E63-BCFA-4666987BDD09}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{B53CDA17-942D-4240-9BCE-45D922CFF267}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{3AFE6156-1FB8-1E63-BCFA-4666987BDD09}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0557D052-FF94-BEFE-527A-C91BDF9A83D5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{0557D052-FF94-BEFE-527A-C91BDF9A83D5}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18ACF13E-1E78-6190-3F06-B142DCAA5BE0}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{18ACF13E-1E78-6190-3F06-B142DCAA5BE0}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{360507F8-3FDC-C558-6160-96954104B88E}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{360507F8-3FDC-C558-6160-96954104B88E}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3B60EE4A-576D-FEFF-955C-59156AA0FE05}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3B60EE4A-576D-FEFF-955C-59156AA0FE05}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3F88F39E-09D6-B962-24AD-6FD09BCCB77B}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3F88F39E-09D6-B962-24AD-6FD09BCCB77B}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{49A3428A-B92E-F32F-2EB7-E389C22CD98B}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{49A3428A-B92E-F32F-2EB7-E389C22CD98B}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4E7C898D-93D9-4D2E-C508-6C9AF19C10B5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4E7C898D-93D9-4D2E-C508-6C9AF19C10B5}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5D95554B-1DB1-BE77-81C4-2526B3556A97}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{5D95554B-1DB1-BE77-81C4-2526B3556A97}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{797F4CCC-B4A1-1C95-C693-EE8206501858}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{797F4CCC-B4A1-1C95-C693-EE8206501858}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{81E232B0-AB3B-4065-4A03-D3EBDF4AF8AE}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{81E232B0-AB3B-4065-4A03-D3EBDF4AF8AE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF4F33EB-B810-0008-97A2-403E00B64A6E}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{DF4F33EB-B810-0008-97A2-403E00B64A6E}



~~~ Files

Successfully deleted: [File] "C:\windows\System32\Tasks\plus-hd-2.2-codedownloader"
Successfully deleted: [File] "C:\windows\System32\Tasks\plus-hd-2.2-enabler"
Successfully deleted: [File] "C:\windows\System32\Tasks\plus-hd-2.2-firefoxinstaller"
Successfully deleted: [File] "C:\windows\System32\Tasks\plus-hd-2.2-updater"
Successfully deleted: [File] C:\windows\System32\Tasks\Plus-HD-2.2-chromeinstaller
Successfully deleted: [File] C:\windows\System32\Tasks\Plus-HD-2.5-chromeinstaller
Successfully deleted: [File] C:\windows\System32\Tasks\Plus-HD-2.5-codedownloader
Successfully deleted: [File] C:\windows\System32\Tasks\Plus-HD-2.5-enabler
Successfully deleted: [File] C:\windows\System32\Tasks\Plus-HD-2.5-firefoxinstaller
Successfully deleted: [File] C:\windows\System32\Tasks\Plus-HD-2.5-updater
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.2-chromeinstaller.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.2-codedownloader.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.2-enabler.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.2-firefoxinstaller.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.2-updater.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.5-chromeinstaller.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.5-codedownloader.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.5-enabler.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.5-firefoxinstaller.job
Successfully deleted: [File] C:\windows\Tasks\Plus-HD-2.5-updater.job
Successfully deleted: [File] "C:\Users\familia.daciorodrigues\appdata\local\google\chrome\user data\default\bprotectorpreferences"
Successfully deleted: [File] "C:\Users\familia.daciorodrigues\appdata\local\google\chrome\user data\default\local storage\http_app.mam.conduit.com_0.localstorage"
Successfully deleted: [File] "C:\Users\familia.daciorodrigues\appdata\local\google\chrome\user data\default\local storage\http_app.mam.conduit.com_0.localstorage-journal"



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\datamngr"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\b1toolbar"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\babsolution"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\dealply"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\funmoods"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\goforfiles"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\metacrawler"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\yourfiledownloader"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\apn"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\b1e"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\babylon"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\bonanzadealslive"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\conduit"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\local\visualbeeexe"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\locallow\datamngr"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\locallow\delta"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\locallow\ilividmoviestoolbardla"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\locallow\sweetim"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\appdata\locallow\toolbar4"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\AppData\Roaming\microsoft\windows\start menu\programs\torntv.com"
Successfully deleted: [Folder] "C:\Users\familia.daciorodrigues\documents\optimizer pro"
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0116913F-43A3-40DF-AD90-0ABD4E9DA8E9}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{01B4ABED-D4B1-4C71-B101-8F7D7CC549DC}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{048627CB-5A26-4618-AFAA-059F4F78BE86}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{04D2D3DF-3B07-4C2F-9608-7A83BEB3382E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0673D0B6-6AC1-4061-BB92-BC2564B132EC}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{07B01B63-55AB-4ADF-89BE-60D0E4355549}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{09637806-D966-4DE4-859A-8329496CE5CE}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0A361733-46D7-46DA-83D8-6D82CAD5A1A8}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0E26FC9A-E4C4-4C1A-9A82-837D5DCC780B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0E4BD914-84A6-4119-B420-615BB49D3A34}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0F0C1F4F-DF91-4A34-8850-4C3CC37B8D58}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{0FA600E2-3387-4568-8AC2-EDE7F8F6A535}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{10524326-FF98-4CAD-A395-501915D3B7A2}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{12DBD9FC-91AC-4199-B981-065A31DAA85F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{13754827-E1E1-475A-9B4A-69A5EB83AB10}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{14456D1B-34FD-4207-85DF-4E5116FDE8B3}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{148BBE32-C94F-40F9-BB75-FD7E2243A62B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{18A90B3F-563E-4818-BC1E-7E66A5A8F0F0}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{19800531-CFC3-40F5-A512-F713DF8563DB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{1B5374E6-A81E-4693-A401-CBC3509373CF}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{1C956421-79C6-41FD-B7F4-A05D1A26E76A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{1D555E36-FE9C-4439-8CAA-170E6FBD9E6A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{1E136041-872F-42EF-9E28-CA1954AA7B98}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{1EC58648-18D1-4CB4-B926-172E8CA40513}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{205B64FB-FB83-4407-8422-F4AFD0E060AC}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{210ACDD5-7411-4480-89B2-F2E2D386CD19}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{248FE4BF-700B-44A8-87F7-2099DB4F4E07}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{26E70DDA-E15E-46D6-A8F6-5841F64CA6D4}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{27F427E0-790B-4572-8540-18CF27C24048}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{2810E734-4955-4735-B3FA-C131154104FD}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{292869AD-A307-438D-9C34-28F8A6920920}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{29C758BE-2E39-4EF2-BB23-EA381CF3D5DF}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{2A457135-FBC1-4653-9EEB-8A6FDFA69E91}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{2AC76021-B811-43E1-9098-C0FF9D491240}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{2ACF35AB-EDB4-4550-8639-A93D306C21BD}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{2B9C6D7B-F5E2-4470-99B9-DB52044DEE5F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{327CA714-CD1A-4D34-A4D1-B2D18AA1DEA9}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{327E5D3B-CAC1-4A4E-8382-B913B2DDAB32}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{34CE9E7D-1F50-4603-8BB0-5126A12ED2A9}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{377D2F12-B742-445B-B2B5-C62FB581E8F3}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{37A63DC1-A79B-4E07-92E3-25BD599FC5C1}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{37DFB0C8-DF05-4701-B2F6-9B44E61A09C4}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{39C08888-876A-4C39-BD06-454AEF7D8127}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{3AA8155A-E0A8-464C-99F4-6A10D223E85E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{3AFF4449-4002-4F10-90C3-6C51745A5AEB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{3D382D01-1DAC-477D-8132-296269B34EAB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{3DAD93A1-41D4-432A-ADAA-53177485BDE6}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{3DEB21C3-E85F-4835-8608-FB3E9C480F62}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{400E99BE-5F28-4C94-8EB6-48E178297571}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{41020584-7055-4F76-B5CE-5F5B0728AF57}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{412F10A3-6B08-4E9D-896B-482940A6886F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{43D62569-3C4F-4B75-8BF5-F695468E48FA}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{43DF230A-574B-474F-ADAA-85D504F45B2B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{45974C6A-9205-4139-8B59-4BA16BE893C9}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{49D62DB5-EA6E-4C48-AD70-91482F696A2C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{49FAEE63-F936-4DC0-A107-2D2E26C54191}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{4B2570B0-0891-468A-9420-BC05E058B9AB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{4B417788-ADCE-42AE-8B48-980BE1FF938E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{4CAA7747-7053-4F77-BBF2-9D8D2E4FA72A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{4D345EC4-23A4-4D22-956A-301E76EE2980}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{4DD6679A-59E9-43C4-B956-AD6B519006EF}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{4F7C3DB0-4380-4772-8489-8E411BAE1643}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{50BDD96E-2EE4-4B9E-900E-7B25ABE67056}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{51136060-F3C3-4E5C-ADCB-5FD6C6C461B5}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{51196D75-4102-4D28-B153-BC42728816A7}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{54B6E4BC-5937-47DF-9806-387B71363D40}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{56C969F7-3408-4DDD-BFC8-D03E04ECD8CB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{5A0F858C-C587-4D67-AEAD-B60F472FEDEC}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{5BA4A9AA-9A93-42CE-A023-236060C00249}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{5C37DCA5-31FB-431D-8F0B-4A5490263696}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{5EB11EB9-337A-4D22-A8CB-A9B6E71932CA}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{5ECCE678-2CF6-4B89-8E91-25019387C25E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{62045799-90A4-416E-82E5-106AB04FFE59}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{638C62AE-9F4A-455F-9885-C2A167749691}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{63927700-AC1D-49BC-825B-71EDCB1E21C0}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{6927567B-BCAB-4EFF-B07E-462A1C09B778}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{699F303A-AC75-4FE1-82B2-9FC9ADDCE7E6}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{6B1BFC51-BE5A-42DB-BD45-8E0C5456781B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{6D6CD49F-C338-4221-95ED-A243E8991C43}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{6F6B0F02-DD5B-4C0F-B35B-A4185F96AD56}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{702AE178-3EF4-41DB-BCB9-05D67F20F565}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{7055DA73-D075-4433-ACC7-934E9FEFD5A4}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{70865E45-DC9E-446B-867A-07A89F18704B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{71DB5E36-2C11-4795-B245-55E211447A81}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{7362DBFC-70D6-4A08-AC89-E7A95D6EB605}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{755D9DC7-45E7-4871-93CE-310B509BA3FA}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{761288D3-562C-4C55-B4A7-B9FF47A16C91}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{762E4F16-4CB1-4879-B0CC-11A0FC9A1103}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{7BB27CDF-BE9B-4F87-953F-6007C40092F5}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{7D4ABA76-F3C3-41F4-ACD3-7666DB00C685}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{7F621720-21FB-4D1E-ADCA-0D3F362EAD78}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{802D19F8-8B5A-4958-BD78-281F6AAE56E8}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{81AAC4A4-9CC6-4F59-8821-E842F809F98A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{81D48FA4-99C6-4B9E-8986-F9776BB1BEEB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{82DB385B-B825-47ED-BAB8-9AC447C27217}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{837F3387-6D42-440D-AD46-97A100913A44}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{838AD85B-8820-470D-93BC-5A2FF4002C7D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{83C49630-96E8-4829-98AC-1AA9B3FABBF6}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{862F93E6-9E5D-4A08-B138-D62B31EB842D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{867CC044-ACB8-46C7-934C-F98CEE0E0338}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{86FC7818-EFD7-4A35-868B-B7290768DC4E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{87365BE9-51CE-49F2-8352-21DF0E524E97}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{87889D3E-F49C-4BC7-8A98-9A0AC0306C63}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{8928525E-ADA4-4991-82DF-E598BA95F719}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{89E0FB32-E985-403A-A2CF-5067A6735720}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{8AB46ECC-54A3-4580-843C-AFF04E26F7D0}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{8AC6D71E-EBDE-4B1D-AA74-99CE2A70471B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{8C05FDF5-BF79-4EBC-9325-0AED6C6A0F8E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{8C086614-5B18-4CC2-8229-8D4E55017F94}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{9115AF7C-BD7E-41DB-9448-99C7C5B37FC4}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{91FB34EF-5022-49A7-82FA-ED0805ACCF61}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{938E8992-570E-409C-A48C-BEEF666ABA82}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{9550932B-E864-48AF-8FFF-96091311CBA8}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{973034FC-3C91-48FC-9F6F-B42B49449D0D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{98D158EB-10CC-459B-B59E-F22B0A74352B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{99017B0A-65DC-4322-9A67-8E10A42ED773}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{990A2737-D7EE-466F-BBA3-91DE98B80891}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{9C6BCAED-F986-4733-89C1-4D38D471C87E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{9F25082F-2CDE-4686-95BB-65EB5110EAE4}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{A0A05E43-5055-4551-A8C8-BBAE8DB31938}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{A2991E82-705D-40D1-B67B-D3F5357529A1}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{A870F728-258C-489D-A821-70AA9C1CC90C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{AA49F717-F0D4-46FB-A864-11DD1245E389}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{ABED1917-E48B-471F-AF57-948584E3307C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{ACAA06EA-709A-4202-8171-969F331E4D94}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{ACC0595D-C71A-4C8C-8231-F74EBD307267}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{AD76D7AD-B7D1-4C84-90C5-4554EF2F8F68}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{ADACBE94-B65A-465D-A562-D597D1B71232}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{AEBFD89F-68B8-43C0-B1D9-E13B3CE44EC3}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{AF173E9A-D269-4F53-BF57-76219C829679}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{AFE94ECF-01C4-4C89-81EB-18A76B843F45}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{AFEBE359-174D-4058-B2D6-81969E929B3D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B01CE8B5-0B61-4C2A-8221-A4C27C47755C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B0706691-D1FF-4CBA-9AE8-ABAE4B31B877}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B0F44C6A-50A9-48A5-AA2D-ED691450C75D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B1DD60C8-52AC-4BC3-8219-754A4981B198}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B1E3C19D-B81F-4125-9483-DA1DAA8B35B7}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B2571453-BBB8-42B4-B9D0-142A2ACAF394}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B293249D-272F-4D10-9CD1-E879959A54EC}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B32FDE38-4D6C-489D-AAA9-DF74781C0E51}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B693106A-5F69-42A5-903D-00F155861B2F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B7C9156D-B0DB-42EE-A4C5-6DB49C32DD65}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B92B76C3-BEED-4651-8A09-41BF9E7981F1}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{B95EFBD0-AD8A-4667-92F1-09438405CB8D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{BF59879F-CA0D-48F0-977C-C0418DAA962F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{BF5C39CD-462D-4DAE-ACAE-2A21C366E5B7}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{BF8E826A-AF35-40B6-87BD-2FC61C039B20}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C0AD7DFD-7AB9-4A6C-ACBA-897DC07E1D7A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C14079A7-82BE-4214-8408-ABFB13451AF6}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C392301B-4752-4EE2-BAB7-CE835DC05DF5}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C56BEB87-CB84-42CF-A0B4-D7081D821082}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C6F8AC1C-3E34-4403-BC7D-28FDB0E5A6A7}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C81A93D0-AA2B-4220-AD33-5926A8658A0E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C8345184-7388-46CC-9623-8BD005C2877D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{C9599345-F4CF-4451-9EB2-31A1D944BC44}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{CC1CBEE2-4A05-482A-975F-D403354D90EB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{CC552005-9F2A-4782-B7AD-B009EEDAFF18}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{CCCBCA79-D7B9-4E61-991F-1A902C5D790C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{CDAA80C4-1A0C-42D8-B002-21DED1139432}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{CFC3C5F2-974C-4F72-AB04-E6FD58DFE233}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D0EC022B-F572-430F-8031-5DB2A9EC2BAE}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D3213CC6-F138-4A3E-BE3E-A97BFB923687}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D485765A-9084-4604-8AC7-1B968E2B03AA}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D4CCE915-5B0E-43C2-A14A-6EEADABB00AB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D54904BE-228B-427B-8949-0E5B2CA966B7}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D6C5F60C-4E2A-41A6-A530-A112FABB427B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D6EB6D58-547E-4E43-8D88-3AB1A2114C22}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{D6FB53EA-4DFE-4B7D-8E12-A51C48DC4500}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DBB7618D-309F-44D2-B9DF-C53C98BF05AD}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DC2E2627-2D8D-4A64-8DDE-22D68A3FF772}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DC4D2638-FD1F-4827-854D-4080DA7EFC6B}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DCC3E16D-2E2F-44DC-8518-48FAB6446948}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DD943D51-055C-45F8-8696-99DD3EB2F6B9}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DF0E2C7D-4A21-47B2-9ED9-D235733CB801}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{DF2053E0-5723-4033-A538-451FC9A1985E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E2A07C85-B22F-4395-AE16-24DE0438D6B3}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E319F107-5954-41FB-873B-3D28165D49AD}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E326BE45-F802-428A-84B8-52056838DF01}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E53D8923-76B3-464A-9663-BABAEAD04229}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E59B4645-30E0-4D44-BEDF-E88ECDF2003E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E5AB0BBD-B6F0-4D8F-B151-D672BE40853A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E5E2C152-6EB0-4F6B-95DE-973DAA0E2494}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E71E3E6A-A219-43BE-9E5C-2EC15937F33F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E73295D3-55AB-4044-A7CA-6A8C02B71E5C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{E8E93FAA-B8F3-4585-936F-0D2725CAF95E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{EBD2BBF4-3437-4D81-BE2A-3E038B1145AB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{EC9F2AFB-DAF7-4A32-ADB6-16B41012F8EA}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{ED2862E6-4568-4C17-8855-62E0748F120A}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{EE47682D-EDE3-4E61-AD32-E652E5A1B5D1}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{EED41538-74E4-49CA-8FF8-AB3879E71902}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F0EB288B-652C-4FC8-BDCA-FCD7F37E241E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F0FC9C90-0E5F-4099-BCEB-997D35993EDA}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F53B6433-7EF9-4258-A2D9-BAB07C805D4E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F59EDD4C-0905-4D8A-848A-814CE985E9A6}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F5D84B3A-226F-478B-9218-FC77B8588F0E}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F88221B0-9BF6-4BC7-843C-D672C977180F}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{F8DD69CE-5864-49C4-8522-8AD136D0319D}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{FAC31E93-B042-467B-8A6E-098465A51D17}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{FBB50197-3BA1-442A-B411-59A0ED48C5CD}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{FBBCA580-503B-4CE9-9953-ADE61FDB803C}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{FDCAB0A1-1081-483F-99C7-A865450740CB}
Successfully deleted: [Empty Folder] C:\Users\familia.daciorodrigues\appdata\local\{FF9D68CD-D289-4D21-B741-7AD5BEF123B7}



~~~ FireFox

Successfully deleted: [File] C:\user.js
Successfully deleted: [File] C:\Users\familia.daciorodrigues\AppData\Roaming\mozilla\firefox\profiles\y1p4bk1a.default\user.js
Successfully deleted: [File] C:\Users\familia.daciorodrigues\AppData\Roaming\mozilla\firefox\profiles\y1p4bk1a.default\searchplugins\websearch.xml
Successfully deleted the following from C:\Users\familia.daciorodrigues\AppData\Roaming\mozilla\firefox\profiles\y1p4bk1a.default\prefs.js

user_pref("browser.search.defaultenginename,S", "WebSearch");
user_pref("browser.search.defaulturl", "hxxp://websearch.searchbomb.info/?pid=500&r=2013/11/27&hid=13873859986090669628&lg=EN&cc=BR&unqvl=42&l=1&q=");
user_pref("browser.search.order.1", "WebSearch");
user_pref("browser.search.order.1,S", "WebSearch");
user_pref("browser.search.selectedEngine,S", "WebSearch");
user_pref("browser.startup.homepage", "hxxp://websearch.searchbomb.info/?pid=500&r=2013/11/27&hid=13873859986090669628&lg=EN&cc=BR&unqvl=42");
user_pref("extensions.0fxIsm.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && w
user_pref("extensions.4O05paVF.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self==window.top){var script=document.create
user_pref("extensions.4O05paVF.url", "hxxp://getsync.info/sync2/?q=hfZ9ofV9CShEAen0pjs9tMqLDe49CNU0nVsMCMlNhd9FrHwFrjwFqHn8rjkMBzqUojwHrjsFrTwGqjCGqGh7hfs0pihPBMn0rjC5rdk9pjk8
user_pref("extensions.9zJS.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n
user_pref("extensions.AiXxDJ.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r
user_pref("extensions.Ajatf.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && wi
user_pref("extensions.CkQtZBg6e2x.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==
user_pref("extensions.GuZ6eEx8q0S.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1
user_pref("extensions.LJGqTJ.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && w
user_pref("extensions.MII2KWmgHrY.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1
user_pref("extensions.OZQnFp.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r
user_pref("extensions.OZ_vDZOkK2Sb.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')=
user_pref("extensions.OiQw.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n
user_pref("extensions.SfN.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{
user_pref("extensions.SvJBj5BpkRuP.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-
user_pref("extensions.W7Wp.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n
user_pref("extensions.WJMKqR.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && w
user_pref("extensions.XQEZcP8i3Vkm.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')=
user_pref("extensions.ZZQ08m.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && w
user_pref("extensions.a4Q.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\r\n{
user_pref("extensions.aizy6cU.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 &&
user_pref("extensions.fcBLbMZ19.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 &
user_pref("extensions.gS4Culc3.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)
user_pref("extensions.ixN.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && wind
user_pref("extensions.jCbreps.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 &&
user_pref("extensions.kYzdLaeb.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)
user_pref("extensions.m7Nsj_rtS9S.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==
user_pref("extensions.s12iqOW.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)\
user_pref("extensions.tHDwT18.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 &&
user_pref("extensions.uzFZcxsv5Vzm.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')=
user_pref("extensions.w9wbuiI4p.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 &
user_pref("extensions.x2vm.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.protocol.indexOf('hxxp')>-1 && win
user_pref("extensions.yBt9eTR9.scode", "(function(){if(window.self.location.hostname.indexOf(\"acebook.co\")>-1){return};if(window.self.location.hostname.indexOf('mail.')==-1)
user_pref("keyword.URL", "hxxp://websearch.searchbomb.info/?pid=500&r=2013/11/27&hid=13873859986090669628&lg=EN&cc=BR&unqvl=42&l=1&q=");
Emptied folder: C:\Users\familia.daciorodrigues\AppData\Roaming\mozilla\firefox\profiles\y1p4bk1a.default\minidumps [1 files]



~~~ Chrome

Successfully deleted: [Folder] C:\Users\familia.daciorodrigues\appdata\local\Google\Chrome\User Data\Default\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
Successfully deleted: [Folder] C:\Users\familia.daciorodrigues\appdata\local\Google\Chrome\User Data\Default\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Successfully deleted: [Folder] C:\Users\familia.daciorodrigues\appdata\local\Google\Chrome\User Data\Default\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
Successfully deleted: [Folder] C:\Users\familia.daciorodrigues\appdata\local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 12/12/2013 at 15:18:23,02
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Compartilhar este post


Link para o post
Compartilhar em outros sites

:) Vários problemas foram removidos.
________________________

:seta: Abra o HijackThis, clique em Do a system scan only, marque as entradas abaixo e clique em Fix checked:

O2 - BHO: saafe asaave - {068D9A36-15A7-1814-BC6F-FC9B7BFF8528} - C:\ProgramData\saafe asaave\51e043ee9542a.dll (file missing)

O2 - BHO: saffe saoVe - {210F0661-5A44-79D7-A9FA-39A729566160} - C:\ProgramData\saffe saoVe\51cf30075278a.dll (file missing)

O2 - BHO: safuey sAivve - {9807DB7D-A9DB-D840-BBF1-5021694655FF} - C:\ProgramData\safuey sAivve\51f4163f9d9d4.dll (file missing)

O2 - BHO: DOwnloada keepper - {DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} - C:\ProgramData\DOwnloada keepper\S.dll (file missing)

O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)

O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll/206 (file missing)
____________________________

:seta: Depois disto, siga também as dicas deste tutorial:

Exclua adwares e outras ameaças de seus browsers com o aplicativo Zoek
_________________________

 

:seta: Após os procedimentos acima poste um novo log do Hijackthis e o log do Zoek que estará em C:\zoek-results

Compartilhar este post


Link para o post
Compartilhar em outros sites

Ola amigo segue novamente os logs :



Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:58:02, on 12/12/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\windows\system32\taskhost.exe
C:\ProgramData\DatacardService\DCSHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\windows\system32\taskeng.exe
C:\Program Files\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
D:\HijackThis.exe
C:\windows\system32\DllHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Samsung BHO Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &B&aixar &com o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &B&aixar tudo usando o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O20 - AppInit_DLLs: c:\progra~1\skc4df~1.enh\psupport.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Baidu PC Faster Service 3.7.0.0 (PCFasterSvc_{PCFaster_3.7.0.0}) - Unknown owner - C:\Program Files\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe (file missing)
O23 - Service: PSafeLockBoxSvc - PSafe - C:\Program Files\PSafe\PSafeCategoryFinder.exe
O23 - Service: PSafeSVC - PSafe S/A - C:\Program Files\PSafe\PSafesvc.exe
O23 - Service: PSafeWD - PSafe - C:\Program Files\PSafe\PSafeWD.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\windows\System32\SUPDSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 6933 bytes

 

 

 


Zoek.exe Version 4.0.0.5 Updated 05-December-2013
Tool run by familia on 12/12/2013 at 16:12:55,87.
Microsoft Windows 7 Starter 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\FAMILI~1.DAC\AppData\Local\Temp\Rar$EXa0.969\zoek.exe [script inserted]

==== System Restore Info ======================

12/12/2013 16:17:39 Zoek.exe System Restore Point Created Succesfully.

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\{47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\SearchScopes\{47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0055C089-8582-441B-A0BF-17B458C2A3A8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0055C089-8582-441B-A0BF-17B458C2A3A8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{068D9A36-15A7-1814-BC6F-FC9B7BFF8528} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{068D9A36-15A7-1814-BC6F-FC9B7BFF8528} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{210F0661-5A44-79D7-A9FA-39A729566160} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{210F0661-5A44-79D7-A9FA-39A729566160} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A980E1B5-58B6-5776-74EB-A0383029228C} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A980E1B5-58B6-5776-74EB-A0383029228C} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9807DB7D-A9DB-D840-BBF1-5021694655FF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9807DB7D-A9DB-D840-BBF1-5021694655FF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5D95554B-1DB1-BE77-81C4-2526B3556A97} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5D95554B-1DB1-BE77-81C4-2526B3556A97} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8C827FCB-D604-7069-068A-991517A1C935} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF4F33EB-B810-0008-97A2-403E00B64A6E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DF4F33EB-B810-0008-97A2-403E00B64A6E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{446BC891-1D00-6B13-9CA4-650B132E7A45} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E7C898D-93D9-4D2E-C508-6C9AF19C10B5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4E7C898D-93D9-4D2E-C508-6C9AF19C10B5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A0E5A4D4-B8BE-DA2B-694F-F10430B49F4A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{81E232B0-AB3B-4065-4A03-D3EBDF4AF8AE} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{81E232B0-AB3B-4065-4A03-D3EBDF4AF8AE} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EB7F7BEA-2602-07C5-DC20-B748BE760235} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{39D0063E-BD70-4ED8-5299-7165B45AB99D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0557D052-FF94-BEFE-527A-C91BDF9A83D5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0557D052-FF94-BEFE-527A-C91BDF9A83D5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{18ACF13E-1E78-6190-3F06-B142DCAA5BE0} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{18ACF13E-1E78-6190-3F06-B142DCAA5BE0} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{360507F8-3FDC-C558-6160-96954104B88E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{360507F8-3FDC-C558-6160-96954104B88E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3B60EE4A-576D-FEFF-955C-59156AA0FE05} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3B60EE4A-576D-FEFF-955C-59156AA0FE05} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3F88F39E-09D6-B962-24AD-6FD09BCCB77B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3F88F39E-09D6-B962-24AD-6FD09BCCB77B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{49A3428A-B92E-F32F-2EB7-E389C22CD98B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{49A3428A-B92E-F32F-2EB7-E389C22CD98B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{797F4CCC-B4A1-1C95-C693-EE8206501858} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{797F4CCC-B4A1-1C95-C693-EE8206501858} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98EC9B57-679E-5384-3725-39C98750FDA9} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{0055C089-8582-441B-A0BF-17B458C2A3A8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{068D9A36-15A7-1814-BC6F-FC9B7BFF8528} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{068D9A36-15A7-1814-BC6F-FC9B7BFF8528} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{210F0661-5A44-79D7-A9FA-39A729566160} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{210F0661-5A44-79D7-A9FA-39A729566160} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{A980E1B5-58B6-5776-74EB-A0383029228C} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A980E1B5-58B6-5776-74EB-A0383029228C} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{9807DB7D-A9DB-D840-BBF1-5021694655FF} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9807DB7D-A9DB-D840-BBF1-5021694655FF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311301136} deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110311341138} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{0055C089-8582-441B-A0BF-17B458C2A3A8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{068D9A36-15A7-1814-BC6F-FC9B7BFF8528} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{210F0661-5A44-79D7-A9FA-39A729566160} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A980E1B5-58B6-5776-74EB-A0383029228C} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{DFF1287A-DBE7-E45B-58D3-32CE6F2651DF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{9807DB7D-A9DB-D840-BBF1-5021694655FF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311301136} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{4D2D3B0F-69BE-477A-90F5-FDDB05357975} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{98889811-442D-49DD-99D7-DC866BE87DBC} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{5D95554B-1DB1-BE77-81C4-2526B3556A97} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{8C827FCB-D604-7069-068A-991517A1C935} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{DF4F33EB-B810-0008-97A2-403E00B64A6E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{446BC891-1D00-6B13-9CA4-650B132E7A45} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{4E7C898D-93D9-4D2E-C508-6C9AF19C10B5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A0E5A4D4-B8BE-DA2B-694F-F10430B49F4A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{81E232B0-AB3B-4065-4A03-D3EBDF4AF8AE} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{9F7F8F06-DEEA-C58D-E1A1-8A2AFE48BA33} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{655254E5-D51E-55D2-333B-5EDD9EFB6584} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{0BDCA3B5-D5E8-7953-C391-DCA3C862C286} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{EB7F7BEA-2602-07C5-DC20-B748BE760235} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{9C996703-ECE3-17AC-FAB6-C969E92EA807} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{0DA7AE38-89B7-62F0-F0AE-D5B2F627B617} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{DC21F42B-5335-4CB4-57A4-C83AD9336C9F} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{58807ED6-926C-01DF-A43C-D5AABCCFCD32} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A4670E21-5A4A-1E87-FF31-13097F87496D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{5E9068E1-5BBB-035E-A9CC-A834B56769E5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{2B94A38E-9394-EBCD-C0FB-1177C515DE94} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{895B9949-3F74-68C1-7BE8-C39B7D7946FE} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{39D0063E-BD70-4ED8-5299-7165B45AB99D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311341138} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{CA4520F3-AE13-4FB1-A513-58E23991C86D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{0557D052-FF94-BEFE-527A-C91BDF9A83D5} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{10E0B0B2-7773-CDED-AF6A-F19683C4790D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{18ACF13E-1E78-6190-3F06-B142DCAA5BE0} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{360507F8-3FDC-C558-6160-96954104B88E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{3B60EE4A-576D-FEFF-955C-59156AA0FE05} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{3F88F39E-09D6-B962-24AD-6FD09BCCB77B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{49A3428A-B92E-F32F-2EB7-E389C22CD98B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{797F4CCC-B4A1-1C95-C693-EE8206501858} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{87891211-8E5C-4580-234A-66205DA50295} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A8A02457-0BBC-4D01-9B57-91B4D9C6E5FF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{C7708AAB-9AAD-6EC3-FC95-7C075C4CF178} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{E2404019-8E2E-53B3-0196-D70759ED9F3C} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{98EC9B57-679E-5384-3725-39C98750FDA9} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{90BED7E1-66B6-EB44-B057-D76145421EA9} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{79BE60CA-C52D-B3BB-38EC-17A4A1A16A75} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{2BA867A7-94B7-42A5-A1C0-D90188E1C975} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{74B511B6-1C89-B437-F29C-60430C0C2216} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{4197B2F3-CB49-9E17-E735-FE7F05BBCDB0} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{D14926D8-1795-72BB-371D-5ECBABBD12CC} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{0E8D47D8-23E9-856B-55BE-C27CF8F5AC75} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{4514FB55-E019-2C91-14EF-765B0CC3E02A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{6334064E-EA2B-0BC8-45EA-383AF536F9D4} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{CF738202-B37A-194E-7F15-A3A97FD5AD34} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{CCEEB7B4-FF68-A0CC-83BD-82EDA0656A07} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{6B1AA089-3B3F-6631-9153-B1F2B6510DF4} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{6A0A08C8-7E48-3A83-0340-7CD02CF51EA2} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{B9738714-BBD9-2BC2-9D0E-F0800C4A4D68} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{CF32BB66-8882-3422-E9E2-0C69CCA18B7E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{1B80BA10-8994-640C-C9AF-1AAB9C56AFDE} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{A4E16767-AD02-0625-6E0A-BC97BF5C96C3} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{7AECB949-0416-DA00-B774-00ACAB6A8022} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{85AC4E6E-0172-463F-EF4A-72C969C19128} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{1EADAA0B-BC57-2D61-E236-26FC126CA091} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{fe063412-bea4-4d76-8ed3-183be6220d17} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{D99A4EC9-00BD-4FE4-85A5-4DB018351265} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{F40B9DAF-D263-75F4-02EF-33FBA57C7E08} deleted successfully

==== Deleting Services ======================

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\vToolbarUpdater17.2.0 deleted successfully
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\vToolbarUpdater17.2.0 deleted successfully

==== FireFox Fix ======================

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\extensions

---- FireFox user.js and prefs.js backups ----

user_122013_1703_.backup
prefs_122013_1703_.backup

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_122013_1703_.backup

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0

---- Lines WebSearch removed from prefs.js ----
user_pref("browser.search.order.1", "WebSearch");
user_pref("browser.search.defaultenginename", "WebSearch");
user_pref("browser.search.defaulturl", "http://websearch.relevantsearch.info/?pid=512&r=2013/10/13&hid=13873859986090669628&lg=EN&cc=BR&unqvl=38&l=1&q
user_pref("browser.search.order.1,S", "WebSearch");
user_pref("browser.search.defaultenginename,S", "WebSearch");
user_pref("browser.search.selectedEngine,S", "WebSearch");
---- FireFox user.js and prefs.js backups ----

user_122013_1703_.backup
prefs_122013_1703_.backup

==== Deleting Files \ Folders ======================

C:\ProgramData\siaife sAvie not found
C:\Users\familia.daciorodrigues\AppData\LocalLow\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{8A00E86E-122D-21F1-B863-949A2903D620} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted
C:\Users\familia.daciorodrigues\daemonprocess.txt deleted
C:\Program Files\SearchNewTab deleted
C:\Program Files\suruF and keep deleted
C:\Program Files\Sk.Enhancer deleted
C:\Program Files\Internet Download Manager deleted
C:\found.000 deleted
C:\found.001 deleted
C:\found.002 deleted
C:\found.003 deleted
C:\found.004 deleted
C:\found.005 deleted
C:\Users\familia\AppData\Roaming\burnaware.ini deleted
C:\Users\familia\AppData\Roaming\baidu deleted
C:\Users\familia\AppData\Roaming\ExpressFiles deleted
C:\Users\familia\AppData\Roaming\Babylon deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\SimilarSites deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\UpdaterEX deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\burnaware.ini deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\WinZipper deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\eIntaller deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\gencrawler@some.com deleted
C:\windows\system32\config\systemprofile\AppData\Roaming\DealPly deleted
C:\ProgramData\InstallMate deleted
C:\ProgramData\SummerSoft deleted
C:\Users\familia\AppData\Local\funmoods-speeddial.crx deleted
C:\Users\familia\AppData\Local\funmoods.crx deleted
C:\Users\familia\AppData\Local\AVG Secure Search deleted
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\External Extensions\{EEE6C373-6118-11DC-9C72-001320C79847} deleted
C:\Users\familia.daciorodrigues\AppData\Local\AVG Secure Search deleted
C:\Users\familia.daciorodrigues\AppData\Local\NativeMessaging deleted
C:\Users\familia.daciorodrigues\AppData\Local\PutLockerDownloader deleted
C:\Users\familia.daciorodrigues\AppData\Local\Mobogenie deleted
C:\Users\familia.daciorodrigues\AppData\Local\emaze deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Create Amazing Presentations.lnk deleted
C:\Users\familia.daciorodrigues\Downloads\DownloadManager (4).exe deleted
C:\Users\familia.daciorodrigues\Downloads\DownloadManager (5).exe deleted
C:\Users\familia.daciorodrigues\Downloads\DownloadManager.exe deleted
C:\Users\familia.daciorodrigues\Downloads\SoftonicDownloader_for_bitcomet(1).exe deleted
C:\Users\familia.daciorodrigues\Downloads\SoftonicDownloader_for_bitcomet.exe deleted
C:\Users\familia.daciorodrigues\Downloads\SoftonicDownloader_para_ffdshow.exe deleted
C:\Users\familia.daciorodrigues\Downloads\SoftonicDownloader_para_windows-movie-maker.exe deleted
C:\Users\familia\AppData\LocalLow\store-pp.jbs deleted
C:\Users\familia\AppData\LocalLow\AVG Secure Search deleted
C:\Users\familia\AppData\LocalLow\Toolbar4 deleted
C:\Users\familia.daciorodrigues\AppData\LocalLow\AVG Secure Search deleted
C:\windows\system32\config\systemprofile\AppData\LocalLow\AVG Secure Search deleted
C:\windows\system32\config\systemprofile\AppData\LocalLow\Toolbar4 deleted
C:\windows\tasks\SK.Enhancer-S-747939423.job deleted
C:\windows\system32\tasks\SK.Enhancer-S-747939423 deleted
C:\windows\tasks\OptimizerPro-S-480333868.job deleted
C:\windows\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job deleted
C:\windows\system32\tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv deleted
C:\windows\system32\tasks\YourFile DownloaderUpdate deleted
C:\windows\System32\searchplugins deleted
C:\windows\System32\Extensions deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\searchplugins\WebSearch.xml deleted
C:\windows\Installer\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D} deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.002.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.004.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.005.exe deleted
C:\Users\familia.daciorodrigues\Downloads\s.S09E08.480p.u197476.Rapidmoviez.com.rar.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.007.exe deleted
C:\Users\familia.daciorodrigues\Downloads\Romancing Sara.avi.001.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.009.exe deleted
C:\Users\familia.daciorodrigues\Downloads\Ladies.in.Love.1936.TVRip.XviD.avi.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.006.exe deleted
C:\Users\familia.daciorodrigues\Downloads\aqos-virginia.2010.dvdrip.xvid.avi.exe deleted
C:\Users\familia.daciorodrigues\Downloads\Kiss Me (2011) BRRip 720p x264 AAC-YiFY ( Extabit ).exe deleted
C:\Users\familia.daciorodrigues\Downloads\Four.Men.And.A.Prayer.1938.DVDRip.x264-NoRBiT.mkv-180upload_accelerator.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.001.exe deleted
C:\Users\familia.daciorodrigues\Downloads\I.Confess.1953.DvDRip.avi.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.008.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.010.exe deleted
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.003.exe deleted
C:\Users\familia.daciorodrigues\Downloads\Ladies.in.Love.1936.TVRip.XviD.avi (1).exe deleted
C:\Users\familia.daciorodrigues\Downloads\For.Whom.The.Bell.Tolls..1943..avi.exe deleted
C:\Users\familia.daciorodrigues\Downloads\The.Great.Ziegfeld.1936.DvDRip.avi.exe deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\aofdsfa@agc-.net deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\c6cfq@qzdqeh-vcb.co.uk deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\cifsmkb_8k@aveea-proojr.net deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\dspau@yuuzobq.com deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\eoovl@jrdjuaai.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\fnwg0y@bdwiqcm.net deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\gx_yiai@wqddxocw-.co.uk deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\habcjf@zawrauos.net deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\hbg2-bmaa@cfhw-wkjo.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\hg9x9-m@owlpuy.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\hqmow@qbawoe.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\jand9tv7@qfsbhe.co.uk deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\jrt-o@lfpj-hxbxl.com deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\k.or@aaurktldy.co.uk deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\lhsvbl@gztwzh.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\lwbzb@kcqu.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\mxuefwd@ptqsahj.com deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\oaai-k@xatjogdmsao.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\oeu-r6e@rcwlgfuyeoiop.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\oi_q@yeiyowxkww.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\olmnaf9uy@ahar-kewsxml.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\oua_g@iobtxko.com deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\ovd-xjaw@upe-hzfq.net deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\qdtncv1@i-tk.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\qkuru_kd@ygfxi-.co.uk deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\qppv_53@sdojcmpv.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\rd_oau5iiu@akiu-ioeaw.co.uk deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\shlm259@sageaiu.org deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\szlbv@keotg.com deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\whp-pcx@uyiekmct.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\yss.rw@jabcmaea.edu deleted
C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\extensions\zu4omj@nycxu.edu deleted
"C:\ProgramData\a3aa8250c7a19f00\{4820778D-AB0D-6D18-C316-52A6A0E1D507}" deleted
"C:\ProgramData\a3aa8250c7a19f00\{4820778D-AB0D-6D18-C316-52A6A0E1D507}.old" deleted
"C:\ProgramData\a3aa8250c7a19f00\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}" deleted
"C:\ProgramData\a3aa8250c7a19f00\{A35CA8FF-CB7D-8361-1CB9-83219CD11C78}.old" deleted
"C:\ProgramData\a3aa8250c7a19f00\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}" deleted
"C:\ProgramData\a3aa8250c7a19f00\{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}.old" deleted
"C:\ProgramData\a3aa8250c7a19f00" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\coFFPlgn_2011_7_13_2" [12/12/2013 15:04]

==== Firefox Extensions ======================

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default
- BitComet - %ProfilePath%\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}

ExtDir: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
- GoPhotoIt - %ExtDir%\gophoto@gophoto.it.xpi

AppDir: C:\Program Files\Mozilla Firefox
- BasicServe - %AppDir%\browser\extensions\{740B3FD5-4483-469D-BE7F-8555B153BD04}
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default
C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update
EE8D96E7899D12FC3AA5DB2034C0853C - C:\windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll - Shockwave Flash
6768C724599214E4F9ADD9F8FF5097EB - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java Platform SE 7 U45
F1CD6E22E5AE5CEEB7712E546A5FC853 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.450.18
BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In
28D2C5CE5944E1B027CF5C8004CF89A1 - C:\Program Files\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat
B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight


==== Deleted Firefox Extensions ======================

C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\gophoto@gophoto.it.xpi deleted
C:\Program Files\Mozilla Firefox\browser\extensions\{740B3FD5-4483-469D-BE7F-8555B153BD04} deleted

==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gkcbebbklfkjeocpmoamnopdllfekind - C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\gdchrome.crx[13/03/2012 18:03]
iokhogohoamdhejdbenjbjkhjmjlggab - C:\Users\familia.daciorodrigues\AppData\Local\CRE\iokhogohoamdhejdbenjbjkhjmjlggab.crx[]
pcidejejpblipcjpnkfkddlkmgndblch - C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\GenCrawler.crx[14/03/2012 17:41]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
iokhogohoamdhejdbenjbjkhjmjlggab - C:\Users\familia.daciorodrigues\AppData\Local\CRE\iokhogohoamdhejdbenjbjkhjmjlggab.crx[]

Funmoods - familia - Default\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
SpeedDial - familia - Default\Extensions\cjpglkicenollcignonpgiafdgfeehoj
DealPly - familia - Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
SweetIM for Facebook - familia - Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
SearchNewTab - familia.daciorodrigues - Default\Extensions\fadifhnkdcaacopailcikgidpgaleljb
surfo and kieeop - familia.daciorodrigues - Default\Extensions\gaojfimidhkbkmganccjopcefoafgdlg
General Downloader plugin - familia.daciorodrigues - Default\Extensions\gkcbebbklfkjeocpmoamnopdllfekind
surff aondd keep - familia.daciorodrigues - Default\Extensions\igidikackbmcmjnfcckkghmikaokckmi
SearchNewTab - familia.daciorodrigues - Default\Extensions\ihejdcgpfehgldkccicepjnjbkejfonh
SearchNewTab - familia.daciorodrigues - Default\Extensions\nfpjmhgaigneilgdaickjmpopdibbpja
suruF and keep - familia.daciorodrigues - Default\Extensions\omjlmnhdpejaeicokakdancpodoodcdb
SearchNewTab - familia.daciorodrigues - Default\Extensions\opodolbmppdgamhmngifhaglkpkjhpbe
General Crawler - familia.daciorodrigues - Default\Extensions\pcidejejpblipcjpnkfkddlkmgndblch
surf eaned ikEep - familia.daciorodrigues - Default\Extensions\pipbongoebgmliphicjbffcabhnpgdbe
SearchNewTab - familia.daciorodrigues - Default\Extensions\pkjffoadnhbejcbakpnkihfbidgegnof
WinToFlash Suggestor - familia.daciorodrigues - Profile 3\Extensions\acaoakiamfeidcmgooclgeleejkbaecf
Funmoods - familia.daciorodrigues - Profile 3\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\blfgncobkbemmbdjijdgofkabflmdgkp
DOwnloada keepper - familia.daciorodrigues - Profile 3\Extensions\bmkamceejpkfhfpmfhjgcjpjpnlapion
YoutubeAdblocker - familia.daciorodrigues - Profile 3\Extensions\bpkenkmaddcigbkbnhhbealamcjnmpkb
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\cdbmhgepemgocklaonplleppbnljejmg
DowNloaad keeper - familia.daciorodrigues - Profile 3\Extensions\clcadfcolnilnlhdlhfhbhkpbmalpomb
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\eceboenkkhbkkbaldmgfdfbngliokjol
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\fadifhnkdcaacopailcikgidpgaleljb
surf aNd keeep - familia.daciorodrigues - Profile 3\Extensions\fbdpfpogbmelameihoncgkajacfclnhj
surfo and kieeop - familia.daciorodrigues - Profile 3\Extensions\gaojfimidhkbkmganccjopcefoafgdlg
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\gdcipgmfjbphkecjeeichjdpanffhakf
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\gfchekemdhdicemjjpmlnbhbgnojiegd
surf and kkeep - familia.daciorodrigues - Profile 3\Extensions\ghbhbdcifbegnobgldncpibehmckgfhm
General Downloader plugin - familia.daciorodrigues - Profile 3\Extensions\gkcbebbklfkjeocpmoamnopdllfekind
Improved Search - familia.daciorodrigues - Profile 3\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
SSurf and keeep - familia.daciorodrigues - Profile 3\Extensions\hhfincadilflcfghpandkahokpdncemi
surff aondd keep - familia.daciorodrigues - Profile 3\Extensions\igidikackbmcmjnfcckkghmikaokckmi
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\ihejdcgpfehgldkccicepjnjbkejfonh
surf iannd keep - familia.daciorodrigues - Profile 3\Extensions\ikekdnejojedljjmbgnamocidnecjpjo
saveNNsharre - familia.daciorodrigues - Profile 3\Extensions\jbakcagmcmmjbbfbilbdkmkbnfajnmje
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\jbgimdfgkinkomhkoeoacmopmgphnpeb
SweetIM for Facebook - familia.daciorodrigues - Profile 3\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\jhdemecfgonfdpohpcmmbplcgghkhfae
surf aand keiepo - familia.daciorodrigues - Profile 3\Extensions\jkfedkolafaahiedgdalccgliojimnip
surf and keEP - familia.daciorodrigues - Profile 3\Extensions\jnamlfjgjcioonlhmmpnmoglmnaonlmm
surf and keep - familia.daciorodrigues - Profile 3\Extensions\kdbpmgmadeemhomkonhgpekaiacpnocj
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\kophemlokkjcpmndfkgeihlmbgkbhmbf
surF anod kkeep - familia.daciorodrigues - Profile 3\Extensions\llkhiidifcplnjkgnfnanhlckdcplckf
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\mbolhejlijpalbpffeengbnmedpakjmi
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\mefhmblhfnliajjkbkkfojapilgjadlk
ssurf anuD akeEp - familia.daciorodrigues - Profile 3\Extensions\mkkfimmicgmecpoibmimadhmdhebdcio
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\mljaehjgmfcpphbffdfidgodkclfadka
surf and keEp - familia.daciorodrigues - Profile 3\Extensions\mnkbdnjaoeelfkkljgdpbkfeojjhcpna
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\nbcfbmfmjkoipiadlmhjliacehcmccjj
AVG Secure Search - familia.daciorodrigues - Profile 3\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\nfpjmhgaigneilgdaickjmpopdibbpja
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\nlmkakaahjhaelglddgkgbmmibmlncel
Surf ANod keePu - familia.daciorodrigues - Profile 3\Extensions\oddagejijhiidhbdjkonehlckbigbfdg
suruF and keep - familia.daciorodrigues - Profile 3\Extensions\omjlmnhdpejaeicokakdancpodoodcdb
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\opodolbmppdgamhmngifhaglkpkjhpbe
General Crawler - familia.daciorodrigues - Profile 3\Extensions\pcidejejpblipcjpnkfkddlkmgndblch
GoPhoto.it - familia.daciorodrigues - Profile 3\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
surf eaned ikEep - familia.daciorodrigues - Profile 3\Extensions\pipbongoebgmliphicjbffcabhnpgdbe
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\pkjffoadnhbejcbakpnkihfbidgegnof
SearchNewTab - familia.daciorodrigues - Profile 3\Extensions\pljkieohmmpcomofeknijjpmonpibapn
WinToFlash Suggestor - familia.daciorodrigues - Profile 4\Extensions\acaoakiamfeidcmgooclgeleejkbaecf
ssavEnShare - familia.daciorodrigues - Profile 4\Extensions\alfcopdhhmnindjidhoflffoacfnjngj
Docs - familia.daciorodrigues - Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake
Funmoods - familia.daciorodrigues - Profile 4\Extensions\bbjciahceamgodcoidkjpchnokgfpphh
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\blfgncobkbemmbdjijdgofkabflmdgkp
DOwnloada keepper - familia.daciorodrigues - Profile 4\Extensions\bmkamceejpkfhfpmfhjgcjpjpnlapion
YoutubeAdblocker - familia.daciorodrigues - Profile 4\Extensions\bpkenkmaddcigbkbnhhbealamcjnmpkb
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\cdbmhgepemgocklaonplleppbnljejmg
SpeedDial - familia.daciorodrigues - Profile 4\Extensions\cjpglkicenollcignonpgiafdgfeehoj
DowNloaad keeper - familia.daciorodrigues - Profile 4\Extensions\clcadfcolnilnlhdlhfhbhkpbmalpomb
Search-NewTuab - familia.daciorodrigues - Profile 4\Extensions\dibllginolnkphbpciggneobchlfbgnl
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\eceboenkkhbkkbaldmgfdfbngliokjol
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\fadifhnkdcaacopailcikgidpgaleljb
surf aNd keeep - familia.daciorodrigues - Profile 4\Extensions\fbdpfpogbmelameihoncgkajacfclnhj
surfo and kieeop - familia.daciorodrigues - Profile 4\Extensions\gaojfimidhkbkmganccjopcefoafgdlg
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\gdcipgmfjbphkecjeeichjdpanffhakf
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\gfchekemdhdicemjjpmlnbhbgnojiegd
surf and kkeep - familia.daciorodrigues - Profile 4\Extensions\ghbhbdcifbegnobgldncpibehmckgfhm
Improved Search - familia.daciorodrigues - Profile 4\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
SSurf and keeep - familia.daciorodrigues - Profile 4\Extensions\hhfincadilflcfghpandkahokpdncemi
Plus-HD-2.5 - familia.daciorodrigues - Profile 4\Extensions\iefogiieekeeeeaiklglonbockmhmkgd
surff aondd keep - familia.daciorodrigues - Profile 4\Extensions\igidikackbmcmjnfcckkghmikaokckmi
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\ihejdcgpfehgldkccicepjnjbkejfonh
surf iannd keep - familia.daciorodrigues - Profile 4\Extensions\ikekdnejojedljjmbgnamocidnecjpjo
saveNNsharre - familia.daciorodrigues - Profile 4\Extensions\jbakcagmcmmjbbfbilbdkmkbnfajnmje
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\jbgimdfgkinkomhkoeoacmopmgphnpeb
SweetIM for Facebook - familia.daciorodrigues - Profile 4\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\jhdemecfgonfdpohpcmmbplcgghkhfae
surf aand keiepo - familia.daciorodrigues - Profile 4\Extensions\jkfedkolafaahiedgdalccgliojimnip
FindLyrics - familia.daciorodrigues - Profile 4\Extensions\jmhhdaimhfblnamlcdijbaakkifakade
surf and keEP - familia.daciorodrigues - Profile 4\Extensions\jnamlfjgjcioonlhmmpnmoglmnaonlmm
surf and keep - familia.daciorodrigues - Profile 4\Extensions\kdbpmgmadeemhomkonhgpekaiacpnocj
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\kophemlokkjcpmndfkgeihlmbgkbhmbf
sAvEnsHare - familia.daciorodrigues - Profile 4\Extensions\lflmkpflepoeeekhepknbmnoeoppolcn
surF anod kkeep - familia.daciorodrigues - Profile 4\Extensions\llkhiidifcplnjkgnfnanhlckdcplckf
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\mbolhejlijpalbpffeengbnmedpakjmi
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\mefhmblhfnliajjkbkkfojapilgjadlk
ssurf anuD akeEp - familia.daciorodrigues - Profile 4\Extensions\mkkfimmicgmecpoibmimadhmdhebdcio
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\mljaehjgmfcpphbffdfidgodkclfadka
surf and keEp - familia.daciorodrigues - Profile 4\Extensions\mnkbdnjaoeelfkkljgdpbkfeojjhcpna
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\nbcfbmfmjkoipiadlmhjliacehcmccjj
AVG Security Toolbar - familia.daciorodrigues - Profile 4\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\nfpjmhgaigneilgdaickjmpopdibbpja
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\nlmkakaahjhaelglddgkgbmmibmlncel
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\oaejaebghfffooeajcafadlenfehdhbk
Surf ANod keePu - familia.daciorodrigues - Profile 4\Extensions\oddagejijhiidhbdjkonehlckbigbfdg
suruF and keep - familia.daciorodrigues - Profile 4\Extensions\omjlmnhdpejaeicokakdancpodoodcdb
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\opodolbmppdgamhmngifhaglkpkjhpbe
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\pemmompcifojdljhcehhnbgjipninhha
GoPhoto.it - familia.daciorodrigues - Profile 4\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk
surf eaned ikEep - familia.daciorodrigues - Profile 4\Extensions\pipbongoebgmliphicjbffcabhnpgdbe
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\pkjffoadnhbejcbakpnkihfbidgegnof
SearchNewTab - familia.daciorodrigues - Profile 4\Extensions\pljkieohmmpcomofeknijjpmonpibapn

==== Chrome Fix ======================

C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.conduit.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_storage.conduit.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_f.dealply.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_h.dealply.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_m.dealply.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_portugues.babylon.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_windows-movie-maker.softonic.com.br_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_www.softonic.com.br_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_b.scorecardresearch.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bzrzz.exclusive-rewards.jopbsearch.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_b.scorecardresearch.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_secure.tlbsearch.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_www.norapidsearch.com_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\iokhogohoamdhejdbenjbjkhjmjlggab deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\alfcopdhhmnindjidhoflffoacfnjngj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_alfcopdhhmnindjidhoflffoacfnjngj_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_alfcopdhhmnindjidhoflffoacfnjngj_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_alfcopdhhmnindjidhoflffoacfnjngj_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_alfcopdhhmnindjidhoflffoacfnjngj_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\lflmkpflepoeeekhepknbmnoeoppolcn deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lflmkpflepoeeekhepknbmnoeoppolcn_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_lflmkpflepoeeekhepknbmnoeoppolcn_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_lflmkpflepoeeekhepknbmnoeoppolcn_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_lflmkpflepoeeekhepknbmnoeoppolcn_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadifhnkdcaacopailcikgidpgaleljb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\fadifhnkdcaacopailcikgidpgaleljb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\fadifhnkdcaacopailcikgidpgaleljb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fadifhnkdcaacopailcikgidpgaleljb_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fadifhnkdcaacopailcikgidpgaleljb_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihejdcgpfehgldkccicepjnjbkejfonh deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ihejdcgpfehgldkccicepjnjbkejfonh deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ihejdcgpfehgldkccicepjnjbkejfonh deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ihejdcgpfehgldkccicepjnjbkejfonh_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ihejdcgpfehgldkccicepjnjbkejfonh_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfpjmhgaigneilgdaickjmpopdibbpja deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nfpjmhgaigneilgdaickjmpopdibbpja deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nfpjmhgaigneilgdaickjmpopdibbpja deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nfpjmhgaigneilgdaickjmpopdibbpja_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nfpjmhgaigneilgdaickjmpopdibbpja_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\opodolbmppdgamhmngifhaglkpkjhpbe deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\opodolbmppdgamhmngifhaglkpkjhpbe deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\opodolbmppdgamhmngifhaglkpkjhpbe deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_opodolbmppdgamhmngifhaglkpkjhpbe_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_opodolbmppdgamhmngifhaglkpkjhpbe_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkjffoadnhbejcbakpnkihfbidgegnof deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkjffoadnhbejcbakpnkihfbidgegnof deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pkjffoadnhbejcbakpnkihfbidgegnof deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pkjffoadnhbejcbakpnkihfbidgegnof_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pkjffoadnhbejcbakpnkihfbidgegnof_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blfgncobkbemmbdjijdgofkabflmdgkp deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\blfgncobkbemmbdjijdgofkabflmdgkp deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_blfgncobkbemmbdjijdgofkabflmdgkp_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_blfgncobkbemmbdjijdgofkabflmdgkp_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_blfgncobkbemmbdjijdgofkabflmdgkp_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_blfgncobkbemmbdjijdgofkabflmdgkp_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cdbmhgepemgocklaonplleppbnljejmg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\cdbmhgepemgocklaonplleppbnljejmg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cdbmhgepemgocklaonplleppbnljejmg_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cdbmhgepemgocklaonplleppbnljejmg_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\eceboenkkhbkkbaldmgfdfbngliokjol deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\eceboenkkhbkkbaldmgfdfbngliokjol deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eceboenkkhbkkbaldmgfdfbngliokjol_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eceboenkkhbkkbaldmgfdfbngliokjol_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gdcipgmfjbphkecjeeichjdpanffhakf deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gdcipgmfjbphkecjeeichjdpanffhakf deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gdcipgmfjbphkecjeeichjdpanffhakf_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gdcipgmfjbphkecjeeichjdpanffhakf_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gfchekemdhdicemjjpmlnbhbgnojiegd deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gfchekemdhdicemjjpmlnbhbgnojiegd deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gfchekemdhdicemjjpmlnbhbgnojiegd_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gfchekemdhdicemjjpmlnbhbgnojiegd_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_gfchekemdhdicemjjpmlnbhbgnojiegd_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_gfchekemdhdicemjjpmlnbhbgnojiegd_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jbgimdfgkinkomhkoeoacmopmgphnpeb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jbgimdfgkinkomhkoeoacmopmgphnpeb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbgimdfgkinkomhkoeoacmopmgphnpeb_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbgimdfgkinkomhkoeoacmopmgphnpeb_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_jbgimdfgkinkomhkoeoacmopmgphnpeb_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_jbgimdfgkinkomhkoeoacmopmgphnpeb_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jhdemecfgonfdpohpcmmbplcgghkhfae deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jhdemecfgonfdpohpcmmbplcgghkhfae deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jhdemecfgonfdpohpcmmbplcgghkhfae_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jhdemecfgonfdpohpcmmbplcgghkhfae_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\kophemlokkjcpmndfkgeihlmbgkbhmbf deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\kophemlokkjcpmndfkgeihlmbgkbhmbf deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\mbolhejlijpalbpffeengbnmedpakjmi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mbolhejlijpalbpffeengbnmedpakjmi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mbolhejlijpalbpffeengbnmedpakjmi_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mbolhejlijpalbpffeengbnmedpakjmi_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\mefhmblhfnliajjkbkkfojapilgjadlk deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mefhmblhfnliajjkbkkfojapilgjadlk deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mefhmblhfnliajjkbkkfojapilgjadlk_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mefhmblhfnliajjkbkkfojapilgjadlk_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\mljaehjgmfcpphbffdfidgodkclfadka deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mljaehjgmfcpphbffdfidgodkclfadka deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mljaehjgmfcpphbffdfidgodkclfadka_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mljaehjgmfcpphbffdfidgodkclfadka_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nbcfbmfmjkoipiadlmhjliacehcmccjj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nbcfbmfmjkoipiadlmhjliacehcmccjj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nbcfbmfmjkoipiadlmhjliacehcmccjj_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nbcfbmfmjkoipiadlmhjliacehcmccjj_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nlmkakaahjhaelglddgkgbmmibmlncel deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nlmkakaahjhaelglddgkgbmmibmlncel deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nlmkakaahjhaelglddgkgbmmibmlncel_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nlmkakaahjhaelglddgkgbmmibmlncel_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pljkieohmmpcomofeknijjpmonpibapn deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pljkieohmmpcomofeknijjpmonpibapn deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pljkieohmmpcomofeknijjpmonpibapn_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pljkieohmmpcomofeknijjpmonpibapn_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\oaejaebghfffooeajcafadlenfehdhbk deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oaejaebghfffooeajcafadlenfehdhbk_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oaejaebghfffooeajcafadlenfehdhbk_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_oaejaebghfffooeajcafadlenfehdhbk_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_oaejaebghfffooeajcafadlenfehdhbk_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pemmompcifojdljhcehhnbgjipninhha deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pemmompcifojdljhcehhnbgjipninhha_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pemmompcifojdljhcehhnbgjipninhha_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_pemmompcifojdljhcehhnbgjipninhha_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_pemmompcifojdljhcehhnbgjipninhha_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jmhhdaimhfblnamlcdijbaakkifakade deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk deleted successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbjciahceamgodcoidkjpchnokgfpphh deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bbjciahceamgodcoidkjpchnokgfpphh deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\bbjciahceamgodcoidkjpchnokgfpphh deleted successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage deleted successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbjciahceamgodcoidkjpchnokgfpphh_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\iefogiieekeeeeaiklglonbockmhmkgd deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_iefogiieekeeeeaiklglonbockmhmkgd_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_iefogiieekeeeeaiklglonbockmhmkgd_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\databases\chrome-extension_iefogiieekeeeeaiklglonbockmhmkgd_0 deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof deleted successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje deleted successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gaiilaahiahdejapggenmdmafpmbipje_0.localstorage deleted successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gaiilaahiahdejapggenmdmafpmbipje_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaojfimidhkbkmganccjopcefoafgdlg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gaojfimidhkbkmganccjopcefoafgdlg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gaojfimidhkbkmganccjopcefoafgdlg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gaojfimidhkbkmganccjopcefoafgdlg_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gaojfimidhkbkmganccjopcefoafgdlg_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\igidikackbmcmjnfcckkghmikaokckmi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\igidikackbmcmjnfcckkghmikaokckmi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\igidikackbmcmjnfcckkghmikaokckmi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igidikackbmcmjnfcckkghmikaokckmi_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igidikackbmcmjnfcckkghmikaokckmi_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\omjlmnhdpejaeicokakdancpodoodcdb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\omjlmnhdpejaeicokakdancpodoodcdb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\omjlmnhdpejaeicokakdancpodoodcdb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_omjlmnhdpejaeicokakdancpodoodcdb_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_omjlmnhdpejaeicokakdancpodoodcdb_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Extensions\pipbongoebgmliphicjbffcabhnpgdbe deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pipbongoebgmliphicjbffcabhnpgdbe deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pipbongoebgmliphicjbffcabhnpgdbe deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pipbongoebgmliphicjbffcabhnpgdbe_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pipbongoebgmliphicjbffcabhnpgdbe_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bmkamceejpkfhfpmfhjgcjpjpnlapion deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\bmkamceejpkfhfpmfhjgcjpjpnlapion deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bmkamceejpkfhfpmfhjgcjpjpnlapion_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bmkamceejpkfhfpmfhjgcjpjpnlapion_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_bmkamceejpkfhfpmfhjgcjpjpnlapion_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_bmkamceejpkfhfpmfhjgcjpjpnlapion_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bpkenkmaddcigbkbnhhbealamcjnmpkb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\bpkenkmaddcigbkbnhhbealamcjnmpkb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\clcadfcolnilnlhdlhfhbhkpbmalpomb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\clcadfcolnilnlhdlhfhbhkpbmalpomb deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_clcadfcolnilnlhdlhfhbhkpbmalpomb_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_clcadfcolnilnlhdlhfhbhkpbmalpomb_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_clcadfcolnilnlhdlhfhbhkpbmalpomb_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_clcadfcolnilnlhdlhfhbhkpbmalpomb_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\fbdpfpogbmelameihoncgkajacfclnhj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\fbdpfpogbmelameihoncgkajacfclnhj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fbdpfpogbmelameihoncgkajacfclnhj_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fbdpfpogbmelameihoncgkajacfclnhj_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbhbdcifbegnobgldncpibehmckgfhm deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbhbdcifbegnobgldncpibehmckgfhm deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\hhfincadilflcfghpandkahokpdncemi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\hhfincadilflcfghpandkahokpdncemi deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ikekdnejojedljjmbgnamocidnecjpjo deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ikekdnejojedljjmbgnamocidnecjpjo deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ikekdnejojedljjmbgnamocidnecjpjo_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ikekdnejojedljjmbgnamocidnecjpjo_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jbakcagmcmmjbbfbilbdkmkbnfajnmje deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jbakcagmcmmjbbfbilbdkmkbnfajnmje deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbakcagmcmmjbbfbilbdkmkbnfajnmje_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jbakcagmcmmjbbfbilbdkmkbnfajnmje_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_jbakcagmcmmjbbfbilbdkmkbnfajnmje_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_jbakcagmcmmjbbfbilbdkmkbnfajnmje_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jkfedkolafaahiedgdalccgliojimnip deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jkfedkolafaahiedgdalccgliojimnip deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jkfedkolafaahiedgdalccgliojimnip_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jkfedkolafaahiedgdalccgliojimnip_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jnamlfjgjcioonlhmmpnmoglmnaonlmm deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jnamlfjgjcioonlhmmpnmoglmnaonlmm deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jnamlfjgjcioonlhmmpnmoglmnaonlmm_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jnamlfjgjcioonlhmmpnmoglmnaonlmm_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\kdbpmgmadeemhomkonhgpekaiacpnocj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\kdbpmgmadeemhomkonhgpekaiacpnocj deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdbpmgmadeemhomkonhgpekaiacpnocj_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdbpmgmadeemhomkonhgpekaiacpnocj_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\llkhiidifcplnjkgnfnanhlckdcplckf deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\llkhiidifcplnjkgnfnanhlckdcplckf deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\mkkfimmicgmecpoibmimadhmdhebdcio deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mkkfimmicgmecpoibmimadhmdhebdcio deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mkkfimmicgmecpoibmimadhmdhebdcio_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mkkfimmicgmecpoibmimadhmdhebdcio_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\mnkbdnjaoeelfkkljgdpbkfeojjhcpna deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\mnkbdnjaoeelfkkljgdpbkfeojjhcpna deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mnkbdnjaoeelfkkljgdpbkfeojjhcpna_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mnkbdnjaoeelfkkljgdpbkfeojjhcpna_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\oddagejijhiidhbdjkonehlckbigbfdg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\oddagejijhiidhbdjkonehlckbigbfdg deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oddagejijhiidhbdjkonehlckbigbfdg_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oddagejijhiidhbdjkonehlckbigbfdg_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\dibllginolnkphbpciggneobchlfbgnl deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dibllginolnkphbpciggneobchlfbgnl_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dibllginolnkphbpciggneobchlfbgnl_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_dibllginolnkphbpciggneobchlfbgnl_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\chrome-extension_dibllginolnkphbpciggneobchlfbgnl_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Start Page Before"="http://www.google.com"
"Search Page"="http://www.google.com"
"Default_Page_URL"="http://www.google.com"
"Search Page Before"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://www.google.com"
"Start Page"="http://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
No DefaultScope Set For HKCU

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page Before"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://www.google.com"
"Start Page Before"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{0CCD5EBD-0D91-5346-8C24-6A09F0F2AC15} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADFA_pt-BRBR496"
{60F87D63-294C-050D-88F4-4CDE76A97DB7} Unknown Url="Not_Found"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8A00E86E-122D-21F1-B863-949A2903D620} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8A00E86E-122D-21F1-B863-949A2903D620} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\SearchScopes\{60F87D63-294C-050D-88F4-4CDE76A97DB7} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{8A00E86E-122D-21F1-B863-949A2903D620} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{8A00E86E-122D-21F1-B863-949A2903D620} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A00E86E-122D-21F1-B863-949A2903D620} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{9B686265-8427-7F39-DCC9-E2A92114FA8E} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{F9AE6FC9-B4B7-1539-598C-B1D57EEAB8B9} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{8A00E86E-122D-21F1-B863-949A2903D620} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{EEB4FB75-430F-6243-5BB5-9872D7151BDC} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{1640135B-E63D-49D2-CBB3-F2E0349CB28B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{4F8BF3BE-D46A-E939-8B50-19BCE76568AF} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{AD046418-67D1-0569-EF83-0FC550ABB05A} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{409AB09D-79C1-8EB4-46EE-3B37598E80B8} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{4AC053F2-EB6A-E4E7-9BB8-4BA3F30E5593} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{FBEE8530-57E6-B5E7-B9BC-4EFBB99A4629} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{777BA9A8-BDAD-652A-A86C-3D72748F2767} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{E0D69573-FCE6-D776-674E-C2A2B0F7FD7B} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{5113D56F-ECD2-E653-7341-8F290823CE7D} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{FCBAE501-15EE-49AA-ED8C-18BDC5794F88} deleted successfully
HKEY_USERS\S-1-5-21-896558980-977426591-2796425657-1000\Software\Microsoft\Internet Explorer\Approved Extensions\{913D5F8B-3E1C-49BE-B004-2C8A33AD9BF8} deleted successfully

==== shortcuts on Users Desktops ======================

C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -
C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -
C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -
C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -
C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -
C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -
C:\Users\familia.daciorodrigues\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\Paint.lnk - C:\windows\system32\mspaint.exe
C:\Users\familia.daciorodrigues\Desktop\Pesquisa do Google.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\2847477.lnk - C:\Users\familia.daciorodrigues\Downloads\2847477.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\A Night To Remember 1942 DVDRip XviD-VH-PROD [www.ilovetorrents.com] [1099599].lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Default.lnk - C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\hjsplit.lnk - C:\Users\familia.daciorodrigues\Downloads\hjsplit.zip
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\InSUBs_legendas_tv_20131013132301.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Levottomat 2.mkv.lnk - D:\Levottomat 2.mkv.bc
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\NgHtTrMnBr1943).mkv.lnk - C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\Downloads\NgHtTrMnBr1943).mkv.001
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\O Mundo Segundo os Brasileiros - Ibiza - 07_10_2013 Completo - HD.lnk -
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.lnk - D:\Spartacus.COMPLETE. [ S01.S02.S03 ]\03.Spartacus.War.Of.The.DamedS03.Season.3.COMPLETE.720p.Bluray.x264.anoXmous\01\Spartacus.S03E01.720p.BluRay.x264.anoXmous_.mp4
C:\Users\familia.daciorodrigues\Desktop\PAKITA\REC\1 NTFS\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Recent\SuBMakerS_legendas_tv_20131013172317.lnk -

==== shortcuts on All Users Desktop ======================

C:\Users\Public\Desktop\BitComet.lnk - C:\Program Files\BitComet\BitComet.exe
C:\Users\Public\Desktop\BurnAware Free.lnk - C:\Program Files\BurnAware Free\BurnAware.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe
C:\Users\Public\Desktop\EASEUS Deleted File Recovery 3.0.1.lnk - C:\Program Files\EASEUS\EASEUS Deleted File Recovery 3.0.1\DFR.exe
C:\Users\Public\Desktop\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\Public\Desktop\Nero StartSmart.lnk - C:\Program Files\Nero\Nero 9\Nero StartSmart\NeroStartSmart.exe -ScParameter=30003
C:\Users\Public\Desktop\Nokia PC Suite.lnk - C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Users\Public\Desktop\Protege.lnk - C:\Program Files\PSafe\PSafeSysTray.exe -run=protege
C:\Users\Public\Desktop\PSafe.lnk - C:\Program Files\PSafe\PSafeSysTray.exe
C:\Users\Public\Desktop\VIVO INTERNET.lnk - C:\Program Files\VIVO INTERNET\VIVO INTERNET.exe

==== shortcuts in Users Start Menu ======================

C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe

==== shortcuts in All Users Start Menu ======================

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet\BitComet.lnk - C:\Program Files\BitComet\BitComet.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet\HomePage.lnk - C:\Program Files\BitComet\BitComet.url
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet\Uninstall.lnk - C:\Program Files\BitComet\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe

==== shortcuts in Quick Launch ======================

C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk - C:\Program Files\GRETECH\GomPlayer\GOM.EXE
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Wordpad.lnk - C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\familia.daciorodrigues\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{010D74DF-6F70-BFC8-98E1-26944D63B817} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{01B43C87-BAA9-89B9-6907-2E5745CE6DFA} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0281E7E5-C3D7-69DD-23C3-B6535A776AE8} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{03607BF8-F829-F3FA-0E9A-4AF78485B11C} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{15BE33D7-7232-19DE-8CED-E2653B0E2B7F} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1A360277-6FBB-B291-CC5A-7005FDE3319E} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1C68A157-562A-2409-2B47-0FE5B2937A61} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{22B0ED81-2C83-7C4D-71C6-F867974F1FCF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{25726DD9-2FDA-26B5-5C9E-7573FA7EC569} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2792D0E2-3E25-AB5E-E61F-B8029D5B1523} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{30F8DC20-0CF3-BA50-2626-E43A72EA1A02} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{31293EED-FBBD-DAF3-D0BC-485506A0DBA2} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{33B53957-0477-4AF5-EFB2-39EDAC8E1825} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{360F8B53-B62D-7276-5D5B-FA8ED9433E30} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{369C4F3B-D525-F578-2894-907E14306FBC} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{432F7209-634E-6E97-0919-08A9F507AF96} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{43526481-6D42-12C0-37C3-6D0DE3FB7C83} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{4445ABF7-6522-191C-F79F-3499EACE118E} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{458799AF-10C9-3589-0463-FF5BE5909196} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{48FA02A7-ED52-B3E6-6669-63D803124FFB} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{53D6C677-A4B2-3462-6132-73EB551F4BF4} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{570203CD-10A5-62C9-E585-2AB945D31A2B} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{581F6F6F-69C4-6CCE-DC66-AC02F90E4A02} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{59BD7C36-D5C0-5D98-588F-E1F05D7934AE} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5DA47A4C-C467-54F2-206B-03A6BFE94AB6} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6273AAAE-7A84-4A79-0C58-A387AFECF8B6} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{650D4DB4-FD03-B900-EDAC-18D962887B52} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{67AFCF8B-8055-3C56-840D-5F68C7CEA60F} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7208828E-78F6-C137-CC02-57C7B22B6C36} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7506B436-EF11-33D7-BEF5-B7ECDF9FE8DF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7D242884-5BD6-5E0E-70CE-F0D1866D70F1} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7EB58316-E198-FA6D-5B94-B5D21C2647AC} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{83F1AE0D-9508-8E7C-53BC-439E49A5C630} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{88A88642-3FFF-F877-D027-F206D2224287} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{94BAFC1A-BC46-5233-3B50-4566913CE9B7} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{94F538BF-A4CA-C3F2-B0EC-E892AC74FB42} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{956F9B59-451E-265E-0030-078CCCCD1DFF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{9AD4484F-8A6B-C9BA-F8A3-9BBA06D838E1} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AF41188F-92D7-9BE5-FD35-7D1D326357C2} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{AFB7D37B-0118-0965-E888-335DA3A3D440} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B4685952-AB27-1510-D449-00E4DADA9367} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B5048D9B-EEA7-F53D-6C26-220A12B95826} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B60C7214-26CC-04D5-DE35-5D4950F3001D} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B6162524-5F1F-2BB8-2A0F-DA241F0F0FAF} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{BC750CD4-14E9-7532-F7EB-8D238F761A68} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{BCDBA64B-069C-5E95-E7A2-B8C0EE872048} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C0883868-D1D4-A9A9-9CAE-6B9F6A2837B9} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C20A1DE9-8A1E-04AE-056B-0A2AFBB42B1C} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C32D3F02-6DB0-5A62-20FF-4E90DCA0CBFE} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C54F1ED1-CD8E-0424-61C4-CB63829446B1} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CFD39D6D-BE30-1DA9-7C79-B217F294ED4C} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D18B7FD3-C1DE-8F9D-34C6-A0EB48A11C52} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{D7CE5409-72BC-5D6F-A0A7-C1184AA09B12} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{DA49E61D-07AA-7DA8-C196-C49675C72F70} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E3F2CF10-EF51-4A90-DA63-3A617EEEAFF7} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E8621F69-E5CB-8532-0485-081D550EFB5D} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E9C3B068-CAB0-199F-1B15-C5826DBB623F} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EB02CCAD-1FD2-01A6-9732-E3CA1E8A9C11} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{EE15ADEB-4C0F-7482-7C8F-E795203C215B} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F055772E-9CD3-66BC-2876-7BFAD10A14B8} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{F9E12064-2F72-9545-21CE-ADB84774EFE9} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FB2417EB-DBA3-C0D1-94BB-87B141AEF951} deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{FF224B99-62F7-B25D-33AC-2FBC930F9335} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\iokhogohoamdhejdbenjbjkhjmjlggab deleted successfully
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\iokhogohoamdhejdbenjbjkhjmjlggab deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Baidu PC Faster 3.7.0.0 deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Deskmedia deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Deskmedia3 deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ROC_roc_ssl_v12 deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\vProt deleted successfully

==== Empty IE Cache ======================

C:\Users\familia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\familia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LO0PA6FU will be deleted at reboot

==== Empty FireFox Cache ======================

C:\Users\familia.daciorodrigues\AppData\Local\Mozilla\Firefox\Profiles\y1p4bk1a.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Application Cache\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\windows\Temp successfully emptied
C:\Users\FAMILI~1.DAC\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\familia.daciorodrigues\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LO0PA6FU" not found

==== EOF on 12/12/2013 at 17:53:32,10 ======================

Compartilhar este post


Link para o post
Compartilhar em outros sites

Mais problemas foram removidos.

_________

 

:seta: Siga, por gentileza, as dicas deste tutorial para fazer uma limpeza de seu PC com o Malwarebytes:

 

Tutorial do Malwarebytes Anti-Malware

 

Na sua próxima resposta poste este log do Malwarebytes juntamente com um novo log do Hijackthis e nos diga como está o seu PC após este procedimento.

 

Ficamos no aguardo.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Boa tarde amigo,seguem abaixo os logs :

 

 

 

 

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:27:02, on 13/12/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\ProgramData\DatacardService\DCSHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\windows\system32\taskeng.exe
C:\Program Files\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\windows\system32\taskmgr.exe
D:\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Samsung BHO Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &B&aixar &com o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &B&aixar tudo usando o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O20 - AppInit_DLLs: c:\progra~1\skc4df~1.enh\psupport.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Baidu PC Faster Service 3.7.0.0 (PCFasterSvc_{PCFaster_3.7.0.0}) - Unknown owner - C:\Program Files\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe (file missing)
O23 - Service: PSafeLockBoxSvc - PSafe - C:\Program Files\PSafe\PSafeCategoryFinder.exe
O23 - Service: PSafeSVC - PSafe S/A - C:\Program Files\PSafe\PSafesvc.exe
O23 - Service: PSafeWD - PSafe - C:\Program Files\PSafe\PSafeWD.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\windows\System32\SUPDSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 6931 bytes

 

 

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Versão da Base de Dados: v2013.12.13.04

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16428
familia :: DACIORODRIGUES [administrador]

13/12/2013 10:58:38
mbam-log-2013-12-13 (10-58-38).txt

Tipo de Verificação: Verificação Completa (C:\|D:\|E:\|)
Opções de verificações ativadas: Memória | Inicialização | Registro | Sistema de arquivos | Heurística/Extra | Heurística/Shuriken | PUP | PUM
Opções de verificação desativadas: P2P
Objetos escaneados: 344539
Tempo decorrido: 2 hora(s), 4 minuto(s), 39 segundo(s)

Processos de Memória Detectados: 0
(Não foram detectados ítens maliciosos)

Módulos de Memória Detectados: 0
(Não foram detectados ítens maliciosos)

Chaves de Registro Detectadas: 0
(Não foram detectados ítens maliciosos)

Valores de Registro Detectadas: 0
(Não foram detectados ítens maliciosos)

Itens de Dados no Registro Detectadas: 0
(Não foram detectados ítens maliciosos)

Pastas Detectadas: 0
(Não foram detectados ítens maliciosos)

Arquivos Detectados: 288
C:\ProgramData\siaife! sAvie\51e873a991a06.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\ProgramData\siaife! sAvie\uninstall.exe (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\Movies Toolbar\Datamngr\Datamngr.dll.vir (PUP.Optional.Bandoo.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\Movies Toolbar\Datamngr\DatamngrCoordinator.exe.vir (PUP.Optional.Bandoo.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\Movies Toolbar\Datamngr\DatamngrUI.exe.vir (PUP.Optional.Bandoo.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\Movies Toolbar\Datamngr\IEBHO.dll.vir (PUP.Optional.Bandoo.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\Movies Toolbar\Datamngr\SRTOOL~1\IE\uninstall.exe.vir (PUP.Optional.MoviesToolBar.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Communicator\mgcommon.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Communicator\mgcommunication.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Communicator\mgsimcommon.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Communicator\mgxml_wrapper.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Communicator\SweetPacksUpdateManager.exe.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Communicator\resources\sqlite\mgSqlite3.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\ClearHist.exe.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgcommon.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgconfig.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mghooking.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mglogger.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll.vir (PUP.Optional.SweetPacks) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\Program Files\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll.vir (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\BasicServe\basicserve111.exe.vir (Adware.OneStep) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\DOwnloada keepper\S.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\eSafe\eGdpSvc.exe.temp.vir (Trojan.Staser) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\eSafe\eGdpSvc.exe.vir (PUP.Optional.Wsys.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saaFe saave\51e1ceb971838.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafe asaave\51e043ee9542a.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafe asaave\51e06267e4309.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafe asaave\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafe saveo\51d1f2b9effb0.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafEE. save\51dc7a1fbfb2e.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafEE. save\51dc7b2d5a4b3.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafEE. save\51dcaa5fa53e3.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saafEE. save\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saeffe saaVye\51f2e7db41f37.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saeffe saaVye\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safe savEE\51e1b90467434.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safe savEE\51e1cb95e213e.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safe savEE\51e1cd0eb13ab.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safe save\51dc4a2a28f07.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safe save\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saFe saVVee\51f2af194423a.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saFe saVVee\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saFe syave\51ed7f2d37cd3.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saFe syave\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safee save\51e6cf6ec4463.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safee save\51e727c6e6d92.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safee save\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saffe saoVe\51cf30075278a.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saffe saoVe\51cf314eb9c22.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\saffe saoVe\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safue ssave\51dc81ede01c0.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safue ssave\51dc962d74e26.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safue ssave\51dca4d435fbd.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safue ssave\51dca7bc38629.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safue ssave\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safuey sAivve\51f4163f9d9d4.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safuey sAivve\51f417af1aac6.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\safuey sAivve\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sAvEnsHare\Mzir.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sAvEnsHare\Vv_T.dll.vir (PUP.Optional.MultiPlugin.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sayfE savee\51e5b2625cbcd.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sayfE savee\51e5d1322af95.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sayfE savee\51e5d1ca03350.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sayfE savee\51e6e4fce2a2c.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\sayfE savee\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\Search-NewTuab\A4aIQlFgVQ.dll.vir (PUP.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\Search-NewTuab\WxYYf2H3JE.dll.vir (PUP.Multiplug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\ssafe saovei\51ed82bc4048e.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\ssafe saovei\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\ssafe saveu\51e73e9d747c2.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\ssafe saveu\uninstall.exe.vir (PUP.Optional.SilentInstall.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\ssavEnShare\4oTnu2.dll.vir (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\ssavEnShare\MmY256.dll.vir (PUP.Optional.MultiPlugin.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\SSurf and keeep\rLsbQ3.exe.vir (PUP.Optional.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\surF anod kkeep\5RhM.exe.vir (PUP.Optional.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\Surf ANod keePu\0TLPdSTZ.exe.vir (PUP.Optional.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\surf eaned ikEep\3mm.exe.vir (PUP.Optional.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\surff aondd keep\yWIzb5JO.exe.vir (PUP.Optional.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\AdwCleaner\Quarantine\C\ProgramData\surfo and kieeop\6j44N.exe.vir (PUP.Optional.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
C:\Qoobox\Quarantine\C\Program Files\v9Soft\v9sof.exe.vir (PUP.Optional.Elex.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.1.0.1_0\mgHelperGCFB.dll (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia\Downloads\Internet Download Manager.rar (PUP.Hacktool.Patcher) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia\Downloads\Compressed\Married.With.Children.S09.DVDRip.XviD-SAiNTS.zip (Rootkit.0Access) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia\Downloads\Programs\SoftonicDownloader_para_msn-2011.exe (PUP.Optional.Softonic.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia\Downloads\Programs\SoftonicDownloader_para_windows-live-messenger-portable.exe (PUP.Optional.Softonic.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\File System\000\t\00\00000000 (PUP.Optional.Installrex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\File System\001\t\00\00000000 (PUP.Optional.OneClickDownloader.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.2.0.0_0\mgHelperGCFB.dll (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.1.0.1_0\mgHelperGCFB.dll (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Ramona.1936.DvDRip.avi.exe (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Renoir_downloader-8OmJ3ZU4.exe (PUP.Optional.Somoto) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\mozilla-firefox-250-32-bits.exe (PUP.Optional.InstallCore) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\aMSN-0.98.9-tcl85-windows-installer.exe (PUP.Optional.OpenCandy) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\setup.exe (PUP.Optional.Domalq) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\7-sex-7-eng-4592309.exe (PUP.Optional.Installrex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Odysseus.S01E01.FRENCH.WEBRIP.x264.archos7592.mp4.exe (Trojan.Dropper) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\easeus-deleted-file-recovery-301-32-bits(1).exe (PUP.Optional.InstallCore) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\easeus-deleted-file-recovery-301-32-bits.exe (PUP.Optional.InstallCore) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\hemel-pob-4617335.exe (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Adobe.Flash.Player12.1.4.6.2.1.exe (Trojan.Banker.AGURL) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Adobe.Flash.Player24.1.5.3.1.exe (Trojan.Banker.AGURL) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Flash-Player_Plugin230913 (1).zip (Trojan.Banker.CPL) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Flash-Player_Plugin230913.zip (Trojan.Banker.CPL) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\The_Unguarded_Hour_downloader_br_291.exe (PUP.Optional.ExpressFiles.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\subtitle-edit-339-32-bits.exe (PUP.Optional.InstallCore) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\N_Avtug_Gb_Erzrzore_1942_QIQEvc_KivQ-IU-CEBQ_(jjj_vybirgbeeragf_pbz) (1).exe (PUP.Optional.OneClickDownloader.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\N_Avtug_Gb_Erzrzore_1942_QIQEvc_KivQ-IU-CEBQ_(jjj_vybirgbeeragf_pbz) (2).exe (PUP.Optional.OneClickDownloader.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\N_Avtug_Gb_Erzrzore_1942_QIQEvc_KivQ-IU-CEBQ_(jjj_vybirgbeeragf_pbz) (3).exe (PUP.Optional.OneClickDownloader.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\N_Avtug_Gb_Erzrzore_1942_QIQEvc_KivQ-IU-CEBQ_(jjj_vybirgbeeragf_pbz).exe (PUP.Optional.OneClickDownloader.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Mediaget.exe (PUP.Optional.Solimba) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Caravan_1934_downloader_br_99374.exe (PUP.Optional.GoForFiles.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\tfile_org_748986.exe (PUP.Optional.LoadMoney) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\installer_skymonk_2_12_Portuguese.exe (PUP.Optional.VIT) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\[Extra_quality]_Letitbit_premium_key_bulucu_downloader_br_99407.exe (PUP.Optional.YourfileDownloader) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Keep2share premium link generator__3039_i141983721_il1199087.exe (PUP.Optional.InstallMonetizer) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\La.Ravisseuse.aka.Song.Of.Innocence.avi.001(1).exe (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\Angus, Thongs and Perfect Snogging.exe (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\angus-thongs-and-perfect-snogging-pob-3440153.exe (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\A.Tout.De.Suite.avi (1).exe (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\Downloads\A.Tout.De.Suite.avi.exe (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\Windows\Installer\93617e.msi (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\Windows\Installer\936184.msi (PUP.Optional.SweetIM) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_aqos-virginia.2010.dvdrip.xvid.avi.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_DownloadManager (4).exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_DownloadManager (5).exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_DownloadManager.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_For.Whom.The.Bell.Tolls..1943..avi.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_Four.Men.And.A.Prayer.1938.DVDRip.x264-NoRBiT.mkv-180upload_accelerator.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_I.Confess.1953.DvDRip.avi.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_Kiss Me (2011) BRRip 720p x264 AAC-YiFY ( Extabit ).exe.vir (PUP.Optional.Installrex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.001.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.002.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.003.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_SoftonicDownloader_para_windows-movie-maker.exe.vir (PUP.Optional.Softonic.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_The.Great.Ziegfeld.1936.DvDRip.avi.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.005.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.006.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.007.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.008.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.009.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.010.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_Ladies.in.Love.1936.TVRip.XviD.avi (1).exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_Ladies.in.Love.1936.TVRip.XviD.avi.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_Romancing Sara.avi.001.exe.vir (PUP.Optional.Installex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_s.S09E08.480p.u197476.Rapidmoviez.com.rar.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_SoftonicDownloader_for_bitcomet(1).exe.vir (PUP.Optional.Softonic.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_SoftonicDownloader_for_bitcomet.exe.vir (PUP.Optional.Softonic.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_La.Ravisseuse.aka.Song.Of.Innocence.avi.004.exe.vir (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_Downloads_SoftonicDownloader_para_ffdshow.exe.vir (PUP.Optional.Softonic) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_Sk.Enhancer\psupport.dll (PUP.Optional.SProtect.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{3CB5BAED-1514-485A-AAB1-5D36E756981B}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{3F6F0D3C-948E-42C7-A02C-DCACE48C2FCA}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{47B90597-77FB-483B-AAD0-3FD99C5A2761}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{83AA3EE7-CB89-4C07-AEEC-83AB58491C11}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{C5B14902-FB65-417D-A396-B3471E526BF4}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{61DDA755-2545-4524-A7CF-6D67BA3E85A3}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{6A025A16-2528-4D8D-AF66-6D0AB1E178E0}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{7069976D-D286-4269-A082-9AA4AB8AB59B}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{79BA2467-B623-424F-A0A4-FE01A2590691}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{A924B57F-9EC0-42D8-A033-D6E272C79789}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{A98D3B86-319A-4C0A-AEE1-79B8726E1970}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{CB990C32-A06D-4A7F-A894-E84F107A2EC4}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{D12BD6CE-198F-4C47-AEAC-51AD0AC8F438}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{DD87A119-54A5-43B6-A15D-1C87066483EF}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{E9DE6637-D6E1-4370-A19B-9EC3323D44C1}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_ProgramData_InstallMate\{F5C3B669-1EF0-4DAC-AF47-56D22E20949F}\Custom.dll (PUP.Optional.InstalleRex) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\Desk365.exe (PUP.Optional.E7) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\2.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\2.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\a6zWyw796B.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\a6zWyw796B.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\eF.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\eF.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\FDgfbb5YY.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\FDgfbb5YY.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\gtRf.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\gtRf.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\IL8hYhAZc1.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\IL8hYhAZc1.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\K1.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\K1.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\Lo.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\Lo.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\m.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\m.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\N0Axo.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\N0Axo.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\PY4SZklksz.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\PY4SZklksz.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\q1Ev.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\q1Ev.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\V3ZEeh.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\V3ZEeh.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\yCXyMo.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\yCXyMo.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\zvDCab.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
C:\zoek_backup\C_Program Files_SearchNewTab\zvDCab.x64.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130607-173751-494.dll (PUP.DealPly) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130607-173751-880.dll (PUP.LyricsAd) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-144.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-180.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-232.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-317.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-326.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-360.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-400.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-429.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-457.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-529.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-577.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-716.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-801.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-816.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-915.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-937.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-944.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-966.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-991.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-998.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-166.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-169.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-219.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-458.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160654-273.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150820-138.dll (PUP.MultiPlug) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-916.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-448.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-499.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-509.dll (PUP.Optional.SweetPacks) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-688.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-698.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130715-160655-902.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150820-111.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150820-485.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150820-528.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150820-581.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150820-979.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-160.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-205.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-236.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-281.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-368.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-384.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-462.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-516.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-561.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-740.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-822.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150821-830.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-128.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-150.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-283.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-289.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-329.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-397.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-454.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-519.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-534.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-546.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-599.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-734.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-775.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-860.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-886.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150822-935.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-151.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-189.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-218.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-302.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130607-173751-193.dll (PUP.Optional.SweetPacks) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20130607-173751-223.dll (Adware.Agent) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-544.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-546.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-589.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-603.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-656.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-657.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-832.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-861.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-903.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-904.dll (PUP.Optional.MultiPlug.A) -> Enviado para a Quarentena e deletado com sucesso.
D:\backups\backup-20131209-150823-910.dll (PUP.Optional.SweetPacks) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cjpglkicenollcignonpgiafdgfeehoj_0.localstorage (PUP.FunMoods) -> Enviado para a Quarentena e deletado com sucesso.
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eooncjejnppfjjklapaamhcdmjbilmde_0.localstorage (PUP.Optional.BrowserDefender.A) -> Enviado para a Quarentena e deletado com sucesso.

(fim)

Compartilhar este post


Link para o post
Compartilhar em outros sites

:) Mais problemas foram removidos.

_________________________________

 

:seta: Clique com o botão direito do mouse no Zoek e selecione 8vq7ma.jpg

 

*Copie e cole as linhas em marrom no espaço do Zoek

 

autoclean;

chrdefaults;

chromelook;

ffdefaults;

firefoxlook;

iedefaults;

resetieproxy;

resethosts;

hijackthis;

 

*Feche o seu navegador e clique [Run Script]

 

*Durante o scan a mensagem abaixo será apresentada. Aguarde o término...pode demorar!

Zoek.exe is running now.

Do not start any browser windows, they will be closed automatically.

Please wait! This window will close when finished.

A logfile will open afterwards and can also be found on your systemdrive as zoek-results.log

*Caso a reinicialização do PC seja solicitada, clique [OK]

 

*Poste o relatório que estará em C:\zoek-results.txt

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá amigo segue os novos logs :


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:57:30, on 14/12/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16428)
Boot mode: Normal

Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\ProgramData\DatacardService\DCSHelper.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\windows\system32\taskeng.exe
C:\Program Files\CyberLink\YouCam\YCMMirage.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\windows\system32\NOTEPAD.EXE
D:\HijackThis.exe
C:\Program Files\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Samsung BHO Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &B&aixar &com o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &B&aixar tudo usando o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O20 - AppInit_DLLs: c:\progra~1\skc4df~1.enh\psupport.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Baidu PC Faster Service 3.7.0.0 (PCFasterSvc_{PCFaster_3.7.0.0}) - Unknown owner - C:\Program Files\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe (file missing)
O23 - Service: PSafeLockBoxSvc - PSafe - C:\Program Files\PSafe\PSafeCategoryFinder.exe
O23 - Service: PSafeSVC - PSafe S/A - C:\Program Files\PSafe\PSafesvc.exe
O23 - Service: PSafeWD - PSafe - C:\Program Files\PSafe\PSafeWD.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\windows\System32\SUPDSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

--
End of file - 6907 bytes

 

 

 

 


Zoek.exe Version 4.0.0.5 Updated 12-December-2013
Tool run by familia on 13/12/2013 at 15:57:28,50.
Microsoft Windows 7 Starter 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\FAMILI~1.DAC\AppData\Local\Temp\Rar$EXa0.716\zoek.exe [script inserted]

==== Older Logs ======================

C:\zoek-results2013-12-12-195332.log 142749 bytes

==== Reset Hosts File ======================

# Copyright © 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js:

Added to C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\prefs.js:

Added to C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

Deleted from C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\prefs.js:

Added to C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0\prefs.js:
user_pref("browser.startup.homepage", "http://www.google.com");
user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "http://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\extensions

---- FireFox user.js and prefs.js backups ----

user_122013_1638_.backup
prefs_122013_1638_.backup

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default

user.js not found
---- Lines Downloader.com modified from prefs.js ----

user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"{BBDA0591-3099-440a-AA10-41764D9DB4DB}\":{\"descriptor\":\"C:\\\\
---- FireFox user.js and prefs.js backups ----

prefs_122013_1638_.backup

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\[ofr2][opt]rs0

---- FireFox user.js and prefs.js backups ----

user_122013_1638_.backup
prefs_122013_1638_.backup

==== Deleting Files \ Folders ======================

C:\ProgramData\siaife! sAvie deleted
C:\Program Files\Uninstaller deleted
C:\Users\familia.daciorodrigues\AppData\Local\cache deleted
C:\windows\system32\tasks\Baidu PC Faster Update deleted
C:\windows\System32\InstallUtil.InstallLog deleted
C:\Users\familia.daciorodrigues\Documents\Mobogenie deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\coFFPlgn_2011_7_13_2" [13/12/2013 13:19]

==== Firefox Extensions ======================

ProfilePath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default
- BitComet - %ProfilePath%\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\familia.daciorodrigues\AppData\Roaming\Mozilla\Firefox\Profiles\y1p4bk1a.default
F891089A6AB9E12FEDEBCC5EC0F40D66 - C:\windows\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll - Shockwave Flash
C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update
6768C724599214E4F9ADD9F8FF5097EB - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java Platform SE 7 U45
F1CD6E22E5AE5CEEB7712E546A5FC853 - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.450.18
BE501CBC29B2025A263D80D399F1797A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll - Silverlight Plug-In
28D2C5CE5944E1B027CF5C8004CF89A1 - C:\Program Files\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat
B27CCB1168B1960AEC6E9D3E0E0F0D2A - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrlui.dll - Microsoft® Silverlight


==== Chrome Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gkcbebbklfkjeocpmoamnopdllfekind - C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\gdchrome.crx[13/03/2012 18:03]
pcidejejpblipcjpnkfkddlkmgndblch - C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\GenCrawler.crx[14/03/2012 17:41]

SpeedDial - familia - Default\Extensions\cjpglkicenollcignonpgiafdgfeehoj
SweetIM for Facebook - familia - Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
General Downloader plugin - familia.daciorodrigues - Default\Extensions\gkcbebbklfkjeocpmoamnopdllfekind
Google Wallet - familia.daciorodrigues - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
General Crawler - familia.daciorodrigues - Default\Extensions\pcidejejpblipcjpnkfkddlkmgndblch
WinToFlash Suggestor - familia.daciorodrigues - Profile 3\Extensions\acaoakiamfeidcmgooclgeleejkbaecf
General Downloader plugin - familia.daciorodrigues - Profile 3\Extensions\gkcbebbklfkjeocpmoamnopdllfekind
Improved Search - familia.daciorodrigues - Profile 3\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
SweetIM for Facebook - familia.daciorodrigues - Profile 3\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Google Wallet - familia.daciorodrigues - Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
General Crawler - familia.daciorodrigues - Profile 3\Extensions\pcidejejpblipcjpnkfkddlkmgndblch
WinToFlash Suggestor - familia.daciorodrigues - Profile 4\Extensions\acaoakiamfeidcmgooclgeleejkbaecf
Docs - familia.daciorodrigues - Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - familia.daciorodrigues - Profile 4\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - familia.daciorodrigues - Profile 4\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
SpeedDial - familia.daciorodrigues - Profile 4\Extensions\cjpglkicenollcignonpgiafdgfeehoj
Google Search - familia.daciorodrigues - Profile 4\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Improved Search - familia.daciorodrigues - Profile 4\Extensions\hahpjplbmicfkmoccokbjejahjjpnena
SweetIM for Facebook - familia.daciorodrigues - Profile 4\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn
Gmail - familia.daciorodrigues - Profile 4\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

==== Chrome Fix ======================

C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.relevantsearch.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.searchannel.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_websearch.searchisbestmy.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_websearch.relevantsearch.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_websearch.searchboxes.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_websearch.searchere.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_websearch.searchesplace.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Local Storage\http_websearch.searchiseasy.info_0.localstorage-journal deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bngaopndnapkgehbemomfhfbpdmhjoin_0.localstorage deleted successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bngaopndnapkgehbemomfhfbpdmhjoin_0.localstorage-journal deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Start Page Before"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
"Start Page Before"="http://www.google.com"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{0CCD5EBD-0D91-5346-8C24-6A09F0F2AC15} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7ADFA_pt-BRBR496"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

==== Reset Google Chrome ======================

C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Preferences was reset successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Preferences was reset successfully
C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Web Data was reset successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Web Data was reset successfully

==== Reset IE Proxy ======================

Value(s) before fix:
"ProxyEnable"=dword:00000000

Value(s) after fix:
"ProxyEnable"=dword:00000000

==== HijackThis Entries ======================

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer, optimized for Bing and MSN
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.12.6.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Samsung BHO Helper - {AA609D72-8482-4076-8991-8CDAE5B93BCB} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: &B&aixar &com o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &B&aixar tudo usando o BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: Samsung AnyWeb Print - {328ECD19-C167-40eb-A0C7-16FE7634105E} - C:\Program Files\Samsung AnyWeb Print\W2PBrowser.dll
O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll
O20 - AppInit_DLLs: c:\progra~1\skc4df~1.enh\psupport.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HWDeviceService.exe - Unknown owner - C:\ProgramData\DatacardService\HWDeviceService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Baidu PC Faster Service 3.7.0.0 (PCFasterSvc_{PCFaster_3.7.0.0}) - Unknown owner - C:\Program Files\Baidu Security\PC Faster\3.7.0.0\PCFasterSvc.exe (file missing)
O23 - Service: PSafeLockBoxSvc - PSafe - C:\Program Files\PSafe\PSafeCategoryFinder.exe
O23 - Service: PSafeSVC - PSafe S/A - C:\Program Files\PSafe\PSafesvc.exe
O23 - Service: PSafeWD - PSafe - C:\Program Files\PSafe\PSafeWD.exe
O23 - Service: Samsung UPD Service - Samsung Electronics CO., LTD. - C:\windows\System32\SUPDSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe

==== Empty IE Cache ======================

C:\Users\familia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\familia\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\familia.daciorodrigues\AppData\Local\Mozilla\Firefox\Profiles\y1p4bk1a.default\Cache emptied successfully

==== Empty Chrome Cache ======================

C:\Users\familia\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 3\Application Cache\Cache emptied successfully
C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Profile 4\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

Compartilhar este post


Link para o post
Compartilhar em outros sites

:seta: Abra o HijackThis, clique em Do a system scan only, marque as entradas abaixo e clique em Fix checked:

 

O9 - Extra button: WinToFlash Suggestor - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)

 

O9 - Extra 'Tools' menuitem: WinToFlash Suggestor options - {A52C66B3-D4A9-4d10-A67D-2BEF0A85AB3F} - (no file)

__________________________

 

:seta: Seria bom desinstalar também este Psafe, para que o mesmo não entre em conflito com o Norton que você já tem no seu PC.

_____________________________

 

:seta: Baixe o DelFix (...de Xplode) e salve-o no Desktop (Área de Trabalho)

 

*Execute-o, deixe selecionadas as opções Remove disinfection tools e Purge system restore

 

2vcyx06.png

 

*Clique [Run] e cole aqui no seu tópico o relatório apresentado por ele.

_________________________

 

:seta: Siga, por gentileza, as dicas deste tutorial para fazer um escaneamento de seu PC pelo Nod32 Online:

 

Tutorial do antivirus Nod32 Online

 

Após o término do escaneamento será gerado um relatório (log) que estará no seguinte local do seu computador:

C:\Arquivos de programas\Eset\Eset Online Scanner\log.txt

 

Na sua próxima resposta poste este log do Nod32 Online e nos diga, por gentileza, como está o seu PC após seguir estes procedimentos. Ficamos no aguardo de sua resposta.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá amigo como tenho muitos arquivos no computador decide fazer o escaneamento em 2 dias,sendo um para cada partiçao,aparente o computador esta normal,segue abaixo os logs :


Disco D :

 

 


ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16268
# end=stopped
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 07:08:48
# local_time=2013-12-14 05:08:48 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36384251 90015734 0 0
# compatibility_mode=5893 16776573 100 94 0 138596519 0 0
# scanned=127104
# found=160
# cleaned=0
# scan_time=14186
sh=E9D11FD771C6A5E09003BC50C2B78F7DD4BED946 ft=1 fh=49e1f93df68f1643 vn="Win32/AdWare.HotBar.T application" ac=I fn="C:\Users\familia\AppData\Local\RavenBleuSA\bin\1.0.16.0\RavenBleuUninstaller.exe"
sh=102C0D5A9816CE3CA9D61E0762778068B48597C0 ft=1 fh=b607ae6c27302d4b vn="Win32/UltraReach.AE application" ac=I fn="C:\Users\familia\Downloadsሃ.exe"
sh=41087310D438378AA81F6FB927BFD5AEDB9A0B12 ft=1 fh=ddf56bcf395442ea vn="a variant of Win32/InstallCore.AL application" ac=I fn="C:\Users\familia\Downloads\winrar-420-baixaki-32-bits.exe"
sh=36FCB5AEDAEBF843A64B527AA0473005E70A6708 ft=1 fh=9f49cace05f5f0c9 vn="a variant of Win32/InstallCore.AY application" ac=I fn="C:\Users\familia\Downloads\Programs\manycam-virtual-webcam-3091-baixaki-32-bits-2102012164959.exe"
sh=F98DBD6E05D8C70E02DB8A6B43631DAE15188D59 ft=1 fh=d03b5d65164a7f8f vn="a variant of Win32/4Shared.N application" ac=I fn="C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000000"
sh=EAD3C20FA0C5C1E7527EEBD572717158AAEB71E1 ft=1 fh=c71c00113aab6ce6 vn="Win32/AdWare.MediaFinder.I application" ac=I fn="C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\IEPlugin32.dll"
sh=CEC6D5B7D6F8A2D613069F3D0F882CFE23C4B92A ft=1 fh=d853b3542beb8cb3 vn="Win32/OpenCandy application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\ac3filter_2_5b.exe"
sh=9E032E0D3C69D6186DC53A3B6A489FE28FB9BB19 ft=1 fh=dd78e6ebc828965f vn="a variant of Win32/ProxyChanger.LM trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Adobe.Flash.Player20.1.5.3.1.exe"
sh=84C1DF21B60F64414195563E8CE912C80A62F4AD ft=1 fh=747d9a3927d4cf06 vn="Win32/TrojanDownloader.Banload.SUA trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\adobe_flash_player13 (2).exe"
sh=20BC930240EC96396C33CFB7F1E35F63D76B6142 ft=1 fh=886825c3448069eb vn="a variant of Win32/Adware.MediaFinder.H application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Beau.Ideal.1931.DVDRip.XViD_SPRiNTER.exe"
sh=79448CCDEC4176D9121FA019588B362F06741987 ft=1 fh=c71c0011a304728b vn="a variant of Win32/InstallCore.ES application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\bitcomet-136-32-bits.exe"
sh=61D790F8D1709C1CF7D41D3FCBC04E92BED18224 ft=1 fh=da162b92168d9139 vn="a variant of Win32/BundleInstaller.C application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Come_to_the_Stable_Downloader (1).exe"
sh=0F5ADC5D6EC6B36D073C29B347C4D61E632DA11C ft=1 fh=a4bf3675168d9139 vn="a variant of Win32/BundleInstaller.C application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Come_to_the_Stable_Downloader.exe"
sh=05519486204AA1F7305D073923CC2B6C0C43D3A2 ft=1 fh=aa55ced82a0c6a58 vn="multiple threats" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\FFSetup300.exe"
sh=C0F69164D6F0835179DBE6985A86DA9698960BB9 ft=1 fh=c71c0011e415e13e vn="a variant of Win32/InstallCore.ES application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Firefox_Setup.exe"
sh=8D356A1A00CA6EF1404311573D00A75E1A5CA4EE ft=0 fh=0000000000000000 vn="a variant of Win32/ProxyChanger.KB trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Flash_Player-v12-129.zip"
sh=B1477B410B03768077EAD15428C59E659D58327B ft=1 fh=178ac026c7628877 vn="a variant of Win32/TrojanDownloader.Delf.AFL trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Instalador_Adobe_FlashPlayer_ver11.7.806.104.exe"
sh=D41E611C2FB4DF930564DCEAAFEE7359F4402118 ft=1 fh=9f28a81c0819235d vn="a variant of Win32/BundleInstaller.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Kentucky_Downloader.exe"
sh=B45C58575FAC1E23883805355AD1122EC553D451 ft=1 fh=4d88db9caf47a5a9 vn="a variant of Win32/Bundled.Toolbar.Ask.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\KMPlayer_3.6.0.87.exe"
sh=F98DBD6E05D8C70E02DB8A6B43631DAE15188D59 ft=1 fh=d03b5d65164a7f8f vn="a variant of Win32/4Shared.N application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\SaveAs.exe"
sh=F22C31B3EFC22951FE6CEED2FB0D8D1F8735D7C9 ft=1 fh=9c7f9876d0931681 vn="a variant of Win32/BundleInstaller.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\The_Unguarded_Hour_Downloader (1).exe"
sh=823CB75C7AC8A9F5FCFFBBC7D1040C57F03452E2 ft=1 fh=95d9e7fb0819235d vn="a variant of Win32/BundleInstaller.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\The_Unguarded_Hour_Downloader.exe"
sh=F59C717D126840AC97B602C01E45DDBEF7FE4FE6 ft=0 fh=0000000000000000 vn="Win32/Adware.OneStep application" ac=I fn="C:\zoek_backup\C_Program Files_Mozilla Firefox_browser_extensions_{740B3FD5-4483-469D-BE7F-8555B153BD04}\chrome\basicserve.jar"
sh=6BB16D37C39BB23A500B12BCE5CDA4182C805D6F ft=1 fh=1a2102acc8b58f79 vn="a variant of Win32/SProtector.B application" ac=I fn="C:\zoek_backup\C_Program Files_Sk.Enhancer\uninstall.exe"
sh=741518CA17409E0C108EA202464829E6C664ED1E ft=1 fh=52477f93f91d8732 vn="a variant of MSIL/DomaIQ.A application" ac=I fn="C:\zoek_backup\C_Program Files_Uninstaller\Uninstall.exe"
sh=A17181FCD3295901FF06BD82E833E3DEE1DC8775 ft=1 fh=4607010b50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{049D28B8-A8D0-43CF-A124-E0F2DF7E0A4E}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{5ECB2BC3-F7F4-493C-ABD7-BFD685280935}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{9D8BBA2D-A307-4BAF-A944-EB25466898DB}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{B30846EF-438B-43A5-A14E-0BA968EB6419}\Custom.dll"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=EF207195F751B27D9D9D4E0FA8360AE6AE4F0C44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_alfcopdhhmnindjidhoflffoacfnjngj\5.10\jmrz1dH.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=368BB71D6A49EB496D9AEF4E36A69292EFF91D3E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_dibllginolnkphbpciggneobchlfbgnl\1.0\wEBk4hNpG6z.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=6F017B63F475C9D94B9FB1FA5739110A86BD12E3 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_iefogiieekeeeeaiklglonbockmhmkgd\1.23.16_0\js\app\extension.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=7C6F273F77B017B6ECD826EB5606C87CA9D3BEEF ft=0 fh=0000000000000000 vn="Win32/Adware.AddLyrics.F application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jmhhdaimhfblnamlcdijbaakkifakade\1.111_0\contentscript.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=80E5AEAD23F3BF43667E93FAF3723FD41F36B0DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_lflmkpflepoeeekhepknbmnoeoppolcn\5.10\iekq3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=7ACBB34DD819DD8511A553071EDC4F0D9E1ED75F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oaejaebghfffooeajcafadlenfehdhbk\1.0\YZdVGhfalt.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=F358E66FEA0A093AC7BE7EBD3C8A9779412FA1C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pemmompcifojdljhcehhnbgjipninhha\1.0\YMNUyBGPk.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=086F56FA97A392AE2113718E2B3A71B1874927BB ft=1 fh=1dd84ec17bd434c9 vn="a variant of Win32/ELEX.M application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eGdpSvc.exe"
sh=CE1EFDA8DB4C2533A0CEC707DDA6624E28584266 ft=1 fh=20c8915953141255 vn="a variant of Win32/ELEX.D application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eXQ.exe"
sh=4F5C4BB5CA28C0B7258AB92A5B27E89582C64298 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_aofdsfa@agc-.net\content\bg.js"
sh=EA6A743864DC56629977123BD18FB6188D22458E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_c6cfq@qzdqeh-vcb.co.uk\content\bg.js"
sh=D227D2961E78AAEC84E97BDD8A02496CD49B62DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_cifsmkb_8k@aveea-proojr.net\content\bg.js"
sh=424CA3CED3C1346C4F2BDE69545F9F57B3AD7CE0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_dspau@yuuzobq.com\content\bg.js"
sh=783F495D685950D20A89ABD20D8738C9AA1F2BEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_eoovl@jrdjuaai.edu\content\bg.js"
sh=C7844191F21CFF9278F0FC4E27112C78F10E3113 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_fnwg0y@bdwiqcm.net\content\bg.js"
sh=25941623CB4FD454BFCE5B694C382D054A88F3EB ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_gx_yiai@wqddxocw-.co.uk\content\bg.js"
sh=7D5BC4D2E9C7EF36338750F298C1F0F303924B3D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_habcjf@zawrauos.net\content\bg.js"
sh=B8913F237411202FF6A3AF16478A201A0ADA0B28 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hbg2-bmaa@cfhw-wkjo.org\content\bg.js"
sh=EF1957E5D3E3E57ADFC4168D4D159A387F9E0DA7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hg9x9-m@owlpuy.org\content\bg.js"
sh=28B939500BF96677439535BE25C5BDDAA3506B86 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hqmow@qbawoe.edu\content\bg.js"
sh=A77A3790BF14940CF1824AB05D1337410B90E9F5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jand9tv7@qfsbhe.co.uk\content\bg.js"
sh=60EEEE0960AC10F676435038CA60D640114A96EF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jrt-o@lfpj-hxbxl.com\content\bg.js"
sh=F13C271294C4D46C2F6B5012CA6092F5910E4445 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_k.or@aaurktldy.co.uk\content\bg.js"
sh=712F755ED1FDFE67817FDB1BDE6E42AD25DF51D8 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lhsvbl@gztwzh.org\content\bg.js"
sh=77A580602AAD5AC4E815B9862D550BA9ADA6D082 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lwbzb@kcqu.org\content\bg.js"
sh=0BE524711C67A7E23A11B42B325FB3D16897603D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_mxuefwd@ptqsahj.com\content\bg.js"
sh=6F528C327DD409F5B3755864D0E3FEECF3416CF5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oaai-k@xatjogdmsao.edu\content\bg.js"
sh=06D452D4EA3D5D0A1E5B4145F464E06CBA32CA55 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oeu-r6e@rcwlgfuyeoiop.org\content\bg.js"
sh=0EAD4AA49AB3D060228516DC3AA2CF970C22E334 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oi_q@yeiyowxkww.org\content\bg.js"
sh=E3D7A265F18EB4448C66854B1E9C8C0AC8B241D5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_olmnaf9uy@ahar-kewsxml.edu\content\bg.js"
sh=37547629EA27510B3A5C96C12E84539D8D1CFDC7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oua_g@iobtxko.com\content\bg.js"
sh=B9EAC03C9269D0ADFEF5E20FED34BF7FE3AC3AD3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_ovd-xjaw@upe-hzfq.net\content\bg.js"
sh=F8C79FC41B4EF81BB3577F60EA344D9185040EEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qdtncv1@i-tk.edu\content\bg.js"
sh=64E1D25DF61F1002CB0F06B09B8B77D542CB1F1C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qkuru_kd@ygfxi-.co.uk\content\bg.js"
sh=90101348D5A3AA225EC01864DB53F14D23EC61DD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qppv_53@sdojcmpv.org\content\bg.js"
sh=9522230494243019CFC5C2BDB7940973D0963C9C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_rd_oau5iiu@akiu-ioeaw.co.uk\content\bg.js"
sh=38272E33AE58C3A2C56382FB0E6C826C9CA72C4A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_shlm259@sageaiu.org\content\bg.js"
sh=D502F4CBD2FDEFF1CCE32A70956D02AE6359C918 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_szlbv@keotg.com\content\bg.js"
sh=51755F81B15F1B4F2B61D95A2EE2BED376F14131 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_whp-pcx@uyiekmct.edu\content\bg.js"
sh=B2B5A921DF8B0EE7E2706465FE1DADF313A4E6E9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_yss.rw@jabcmaea.edu\content\bg.js"
sh=8F5E4CA217CFAEEA715D3ABCDA5155FB0ECB56A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_zu4omj@nycxu.edu\content\bg.js"
sh=444329E675A61AB752AAC433DFEC3DAAA0A26C6A ft=0 fh=0000000000000000 vn="Win32/DealPly.E application" ac=I fn="C:\zoek_backup\C_Users_familia_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\background.html"
sh=69A35E782A90296DC01CD4184D2775CE1A35C4B2 ft=1 fh=7f4a4e7ae8724a95 vn="Win32/DealPly.B application" ac=I fn="C:\zoek_backup\C_windows_system32_config_systemprofile_AppData_Roaming_DealPly\UpdateProc\UpdateTask.exe"
sh=E24C6DE19A9CB6CBC67B1C2E5176710191D3C844 ft=1 fh=bd2457a0e4110a61 vn="Win32/InstallCore.BL application" ac=I fn="D:\nokia-pc-suite-7118094-baixaki-32-bits.exe"
sh=8CEED800A0CAEFD19A4B53FAABF4EE73D295F65B ft=1 fh=61a95c2815235ca2 vn="a variant of Win32/Adware.Yontoo.A application" ac=I fn="D:\backups\backup-20130607-173751-456.dll"
sh=6B4D0E3DB6B4C53A62C5E678E2D756989DC4325B ft=1 fh=921f6791de84d544 vn="a variant of Win32/InstallCore.AY application" ac=I fn="D:\Downloads\ultrasurf-1203-baixaki-32-bits-410201212441.exe"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16274
# end=stopped
# remove_checked=false
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 07:15:24
# local_time=2013-12-14 05:15:24 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36381047 90016130 0 0
# compatibility_mode=5893 16776573 100 94 0 138596915 0 0
# scanned=1
# found=0
# cleaned=0
# scan_time=75
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16274
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 07:18:13
# local_time=2013-12-14 05:18:13 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36384816 90016299 0 0
# compatibility_mode=5893 16776573 100 94 0 138597084 0 0
# scanned=566
# found=3
# cleaned=3
# scan_time=98
sh=E24C6DE19A9CB6CBC67B1C2E5176710191D3C844 ft=1 fh=bd2457a0e4110a61 vn="Win32/InstallCore.BL application (cleaned by deleting - quarantined)" ac=C fn="D:\nokia-pc-suite-7118094-baixaki-32-bits.exe"
sh=8CEED800A0CAEFD19A4B53FAABF4EE73D295F65B ft=1 fh=61a95c2815235ca2 vn="a variant of Win32/Adware.Yontoo.A application (cleaned by deleting - quarantined)" ac=C fn="D:\backups\backup-20130607-173751-456.dll"
sh=6B4D0E3DB6B4C53A62C5E678E2D756989DC4325B ft=1 fh=921f6791de84d544 vn="a variant of Win32/InstallCore.AY application (cleaned by deleting - quarantined)" ac=C fn="D:\Downloads\ultrasurf-1203-baixaki-32-bits-410201212441.exe"

 

 

 

 

 


Disco C :

 

 

 

ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16268
# end=stopped
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 07:08:48
# local_time=2013-12-14 05:08:48 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36384251 90015734 0 0
# compatibility_mode=5893 16776573 100 94 0 138596519 0 0
# scanned=127104
# found=160
# cleaned=0
# scan_time=14186
sh=E9D11FD771C6A5E09003BC50C2B78F7DD4BED946 ft=1 fh=49e1f93df68f1643 vn="Win32/AdWare.HotBar.T application" ac=I fn="C:\Users\familia\AppData\Local\RavenBleuSA\bin\1.0.16.0\RavenBleuUninstaller.exe"
sh=102C0D5A9816CE3CA9D61E0762778068B48597C0 ft=1 fh=b607ae6c27302d4b vn="Win32/UltraReach.AE application" ac=I fn="C:\Users\familia\Downloadsሃ.exe"
sh=41087310D438378AA81F6FB927BFD5AEDB9A0B12 ft=1 fh=ddf56bcf395442ea vn="a variant of Win32/InstallCore.AL application" ac=I fn="C:\Users\familia\Downloads\winrar-420-baixaki-32-bits.exe"
sh=36FCB5AEDAEBF843A64B527AA0473005E70A6708 ft=1 fh=9f49cace05f5f0c9 vn="a variant of Win32/InstallCore.AY application" ac=I fn="C:\Users\familia\Downloads\Programs\manycam-virtual-webcam-3091-baixaki-32-bits-2102012164959.exe"
sh=F98DBD6E05D8C70E02DB8A6B43631DAE15188D59 ft=1 fh=d03b5d65164a7f8f vn="a variant of Win32/4Shared.N application" ac=I fn="C:\Users\familia.daciorodrigues\AppData\Local\Google\Chrome\User Data\Default\File System\000\t\00\00000000"
sh=EAD3C20FA0C5C1E7527EEBD572717158AAEB71E1 ft=1 fh=c71c00113aab6ce6 vn="Win32/AdWare.MediaFinder.I application" ac=I fn="C:\Users\familia.daciorodrigues\AppData\Roaming\General Downloader\Extensions\IEPlugin32.dll"
sh=CEC6D5B7D6F8A2D613069F3D0F882CFE23C4B92A ft=1 fh=d853b3542beb8cb3 vn="Win32/OpenCandy application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\ac3filter_2_5b.exe"
sh=9E032E0D3C69D6186DC53A3B6A489FE28FB9BB19 ft=1 fh=dd78e6ebc828965f vn="a variant of Win32/ProxyChanger.LM trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Adobe.Flash.Player20.1.5.3.1.exe"
sh=84C1DF21B60F64414195563E8CE912C80A62F4AD ft=1 fh=747d9a3927d4cf06 vn="Win32/TrojanDownloader.Banload.SUA trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\adobe_flash_player13 (2).exe"
sh=20BC930240EC96396C33CFB7F1E35F63D76B6142 ft=1 fh=886825c3448069eb vn="a variant of Win32/Adware.MediaFinder.H application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Beau.Ideal.1931.DVDRip.XViD_SPRiNTER.exe"
sh=79448CCDEC4176D9121FA019588B362F06741987 ft=1 fh=c71c0011a304728b vn="a variant of Win32/InstallCore.ES application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\bitcomet-136-32-bits.exe"
sh=61D790F8D1709C1CF7D41D3FCBC04E92BED18224 ft=1 fh=da162b92168d9139 vn="a variant of Win32/BundleInstaller.C application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Come_to_the_Stable_Downloader (1).exe"
sh=0F5ADC5D6EC6B36D073C29B347C4D61E632DA11C ft=1 fh=a4bf3675168d9139 vn="a variant of Win32/BundleInstaller.C application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Come_to_the_Stable_Downloader.exe"
sh=05519486204AA1F7305D073923CC2B6C0C43D3A2 ft=1 fh=aa55ced82a0c6a58 vn="multiple threats" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\FFSetup300.exe"
sh=C0F69164D6F0835179DBE6985A86DA9698960BB9 ft=1 fh=c71c0011e415e13e vn="a variant of Win32/InstallCore.ES application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Firefox_Setup.exe"
sh=8D356A1A00CA6EF1404311573D00A75E1A5CA4EE ft=0 fh=0000000000000000 vn="a variant of Win32/ProxyChanger.KB trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Flash_Player-v12-129.zip"
sh=B1477B410B03768077EAD15428C59E659D58327B ft=1 fh=178ac026c7628877 vn="a variant of Win32/TrojanDownloader.Delf.AFL trojan" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Instalador_Adobe_FlashPlayer_ver11.7.806.104.exe"
sh=D41E611C2FB4DF930564DCEAAFEE7359F4402118 ft=1 fh=9f28a81c0819235d vn="a variant of Win32/BundleInstaller.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\Kentucky_Downloader.exe"
sh=B45C58575FAC1E23883805355AD1122EC553D451 ft=1 fh=4d88db9caf47a5a9 vn="a variant of Win32/Bundled.Toolbar.Ask.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\KMPlayer_3.6.0.87.exe"
sh=F98DBD6E05D8C70E02DB8A6B43631DAE15188D59 ft=1 fh=d03b5d65164a7f8f vn="a variant of Win32/4Shared.N application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\SaveAs.exe"
sh=F22C31B3EFC22951FE6CEED2FB0D8D1F8735D7C9 ft=1 fh=9c7f9876d0931681 vn="a variant of Win32/BundleInstaller.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\The_Unguarded_Hour_Downloader (1).exe"
sh=823CB75C7AC8A9F5FCFFBBC7D1040C57F03452E2 ft=1 fh=95d9e7fb0819235d vn="a variant of Win32/BundleInstaller.D application" ac=I fn="C:\Users\familia.daciorodrigues\Downloads\The_Unguarded_Hour_Downloader.exe"
sh=F59C717D126840AC97B602C01E45DDBEF7FE4FE6 ft=0 fh=0000000000000000 vn="Win32/Adware.OneStep application" ac=I fn="C:\zoek_backup\C_Program Files_Mozilla Firefox_browser_extensions_{740B3FD5-4483-469D-BE7F-8555B153BD04}\chrome\basicserve.jar"
sh=6BB16D37C39BB23A500B12BCE5CDA4182C805D6F ft=1 fh=1a2102acc8b58f79 vn="a variant of Win32/SProtector.B application" ac=I fn="C:\zoek_backup\C_Program Files_Sk.Enhancer\uninstall.exe"
sh=741518CA17409E0C108EA202464829E6C664ED1E ft=1 fh=52477f93f91d8732 vn="a variant of MSIL/DomaIQ.A application" ac=I fn="C:\zoek_backup\C_Program Files_Uninstaller\Uninstall.exe"
sh=A17181FCD3295901FF06BD82E833E3DEE1DC8775 ft=1 fh=4607010b50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{049D28B8-A8D0-43CF-A124-E0F2DF7E0A4E}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{5ECB2BC3-F7F4-493C-ABD7-BFD685280935}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{9D8BBA2D-A307-4BAF-A944-EB25466898DB}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{B30846EF-438B-43A5-A14E-0BA968EB6419}\Custom.dll"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=EF207195F751B27D9D9D4E0FA8360AE6AE4F0C44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_alfcopdhhmnindjidhoflffoacfnjngj\5.10\jmrz1dH.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=368BB71D6A49EB496D9AEF4E36A69292EFF91D3E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_dibllginolnkphbpciggneobchlfbgnl\1.0\wEBk4hNpG6z.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=6F017B63F475C9D94B9FB1FA5739110A86BD12E3 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_iefogiieekeeeeaiklglonbockmhmkgd\1.23.16_0\js\app\extension.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=7C6F273F77B017B6ECD826EB5606C87CA9D3BEEF ft=0 fh=0000000000000000 vn="Win32/Adware.AddLyrics.F application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jmhhdaimhfblnamlcdijbaakkifakade\1.111_0\contentscript.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=80E5AEAD23F3BF43667E93FAF3723FD41F36B0DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_lflmkpflepoeeekhepknbmnoeoppolcn\5.10\iekq3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=7ACBB34DD819DD8511A553071EDC4F0D9E1ED75F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oaejaebghfffooeajcafadlenfehdhbk\1.0\YZdVGhfalt.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=F358E66FEA0A093AC7BE7EBD3C8A9779412FA1C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pemmompcifojdljhcehhnbgjipninhha\1.0\YMNUyBGPk.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=086F56FA97A392AE2113718E2B3A71B1874927BB ft=1 fh=1dd84ec17bd434c9 vn="a variant of Win32/ELEX.M application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eGdpSvc.exe"
sh=CE1EFDA8DB4C2533A0CEC707DDA6624E28584266 ft=1 fh=20c8915953141255 vn="a variant of Win32/ELEX.D application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eXQ.exe"
sh=4F5C4BB5CA28C0B7258AB92A5B27E89582C64298 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_aofdsfa@agc-.net\content\bg.js"
sh=EA6A743864DC56629977123BD18FB6188D22458E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_c6cfq@qzdqeh-vcb.co.uk\content\bg.js"
sh=D227D2961E78AAEC84E97BDD8A02496CD49B62DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_cifsmkb_8k@aveea-proojr.net\content\bg.js"
sh=424CA3CED3C1346C4F2BDE69545F9F57B3AD7CE0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_dspau@yuuzobq.com\content\bg.js"
sh=783F495D685950D20A89ABD20D8738C9AA1F2BEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_eoovl@jrdjuaai.edu\content\bg.js"
sh=C7844191F21CFF9278F0FC4E27112C78F10E3113 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_fnwg0y@bdwiqcm.net\content\bg.js"
sh=25941623CB4FD454BFCE5B694C382D054A88F3EB ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_gx_yiai@wqddxocw-.co.uk\content\bg.js"
sh=7D5BC4D2E9C7EF36338750F298C1F0F303924B3D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_habcjf@zawrauos.net\content\bg.js"
sh=B8913F237411202FF6A3AF16478A201A0ADA0B28 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hbg2-bmaa@cfhw-wkjo.org\content\bg.js"
sh=EF1957E5D3E3E57ADFC4168D4D159A387F9E0DA7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hg9x9-m@owlpuy.org\content\bg.js"
sh=28B939500BF96677439535BE25C5BDDAA3506B86 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hqmow@qbawoe.edu\content\bg.js"
sh=A77A3790BF14940CF1824AB05D1337410B90E9F5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jand9tv7@qfsbhe.co.uk\content\bg.js"
sh=60EEEE0960AC10F676435038CA60D640114A96EF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jrt-o@lfpj-hxbxl.com\content\bg.js"
sh=F13C271294C4D46C2F6B5012CA6092F5910E4445 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_k.or@aaurktldy.co.uk\content\bg.js"
sh=712F755ED1FDFE67817FDB1BDE6E42AD25DF51D8 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lhsvbl@gztwzh.org\content\bg.js"
sh=77A580602AAD5AC4E815B9862D550BA9ADA6D082 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lwbzb@kcqu.org\content\bg.js"
sh=0BE524711C67A7E23A11B42B325FB3D16897603D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_mxuefwd@ptqsahj.com\content\bg.js"
sh=6F528C327DD409F5B3755864D0E3FEECF3416CF5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oaai-k@xatjogdmsao.edu\content\bg.js"
sh=06D452D4EA3D5D0A1E5B4145F464E06CBA32CA55 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oeu-r6e@rcwlgfuyeoiop.org\content\bg.js"
sh=0EAD4AA49AB3D060228516DC3AA2CF970C22E334 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oi_q@yeiyowxkww.org\content\bg.js"
sh=E3D7A265F18EB4448C66854B1E9C8C0AC8B241D5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_olmnaf9uy@ahar-kewsxml.edu\content\bg.js"
sh=37547629EA27510B3A5C96C12E84539D8D1CFDC7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oua_g@iobtxko.com\content\bg.js"
sh=B9EAC03C9269D0ADFEF5E20FED34BF7FE3AC3AD3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_ovd-xjaw@upe-hzfq.net\content\bg.js"
sh=F8C79FC41B4EF81BB3577F60EA344D9185040EEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qdtncv1@i-tk.edu\content\bg.js"
sh=64E1D25DF61F1002CB0F06B09B8B77D542CB1F1C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qkuru_kd@ygfxi-.co.uk\content\bg.js"
sh=90101348D5A3AA225EC01864DB53F14D23EC61DD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qppv_53@sdojcmpv.org\content\bg.js"
sh=9522230494243019CFC5C2BDB7940973D0963C9C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_rd_oau5iiu@akiu-ioeaw.co.uk\content\bg.js"
sh=38272E33AE58C3A2C56382FB0E6C826C9CA72C4A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_shlm259@sageaiu.org\content\bg.js"
sh=D502F4CBD2FDEFF1CCE32A70956D02AE6359C918 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_szlbv@keotg.com\content\bg.js"
sh=51755F81B15F1B4F2B61D95A2EE2BED376F14131 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_whp-pcx@uyiekmct.edu\content\bg.js"
sh=B2B5A921DF8B0EE7E2706465FE1DADF313A4E6E9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_yss.rw@jabcmaea.edu\content\bg.js"
sh=8F5E4CA217CFAEEA715D3ABCDA5155FB0ECB56A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_zu4omj@nycxu.edu\content\bg.js"
sh=444329E675A61AB752AAC433DFEC3DAAA0A26C6A ft=0 fh=0000000000000000 vn="Win32/DealPly.E application" ac=I fn="C:\zoek_backup\C_Users_familia_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\background.html"
sh=69A35E782A90296DC01CD4184D2775CE1A35C4B2 ft=1 fh=7f4a4e7ae8724a95 vn="Win32/DealPly.B application" ac=I fn="C:\zoek_backup\C_windows_system32_config_systemprofile_AppData_Roaming_DealPly\UpdateProc\UpdateTask.exe"
sh=E24C6DE19A9CB6CBC67B1C2E5176710191D3C844 ft=1 fh=bd2457a0e4110a61 vn="Win32/InstallCore.BL application" ac=I fn="D:\nokia-pc-suite-7118094-baixaki-32-bits.exe"
sh=8CEED800A0CAEFD19A4B53FAABF4EE73D295F65B ft=1 fh=61a95c2815235ca2 vn="a variant of Win32/Adware.Yontoo.A application" ac=I fn="D:\backups\backup-20130607-173751-456.dll"
sh=6B4D0E3DB6B4C53A62C5E678E2D756989DC4325B ft=1 fh=921f6791de84d544 vn="a variant of Win32/InstallCore.AY application" ac=I fn="D:\Downloads\ultrasurf-1203-baixaki-32-bits-410201212441.exe"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16274
# end=stopped
# remove_checked=false
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 07:15:24
# local_time=2013-12-14 05:15:24 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36381047 90016130 0 0
# compatibility_mode=5893 16776573 100 94 0 138596915 0 0
# scanned=1
# found=0
# cleaned=0
# scan_time=75
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16274
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 07:18:13
# local_time=2013-12-14 05:18:13 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36384816 90016299 0 0
# compatibility_mode=5893 16776573 100 94 0 138597084 0 0
# scanned=566
# found=3
# cleaned=3
# scan_time=98
sh=E24C6DE19A9CB6CBC67B1C2E5176710191D3C844 ft=1 fh=bd2457a0e4110a61 vn="Win32/InstallCore.BL application (cleaned by deleting - quarantined)" ac=C fn="D:\nokia-pc-suite-7118094-baixaki-32-bits.exe"
sh=8CEED800A0CAEFD19A4B53FAABF4EE73D295F65B ft=1 fh=61a95c2815235ca2 vn="a variant of Win32/Adware.Yontoo.A application (cleaned by deleting - quarantined)" ac=C fn="D:\backups\backup-20130607-173751-456.dll"
sh=6B4D0E3DB6B4C53A62C5E678E2D756989DC4325B ft=1 fh=921f6791de84d544 vn="a variant of Win32/InstallCore.AY application (cleaned by deleting - quarantined)" ac=C fn="D:\Downloads\ultrasurf-1203-baixaki-32-bits-410201212441.exe"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16274
# end=stopped
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-14 10:22:07
# local_time=2013-12-14 08:22:07 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36395850 90027333 0 0
# compatibility_mode=5893 16776573 100 94 0 138608118 0 0
# scanned=125945
# found=131
# cleaned=0
# scan_time=10360
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{5ECB2BC3-F7F4-493C-ABD7-BFD685280935}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{9D8BBA2D-A307-4BAF-A944-EB25466898DB}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L application" ac=I fn="C:\zoek_backup\C_ProgramData_InstallMate\{B30846EF-438B-43A5-A14E-0BA968EB6419}\Custom.dll"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Default_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=EF207195F751B27D9D9D4E0FA8360AE6AE4F0C44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_alfcopdhhmnindjidhoflffoacfnjngj\5.10\jmrz1dH.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=368BB71D6A49EB496D9AEF4E36A69292EFF91D3E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_dibllginolnkphbpciggneobchlfbgnl\1.0\wEBk4hNpG6z.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=6F017B63F475C9D94B9FB1FA5739110A86BD12E3 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_iefogiieekeeeeaiklglonbockmhmkgd\1.23.16_0\js\app\extension.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=7C6F273F77B017B6ECD826EB5606C87CA9D3BEEF ft=0 fh=0000000000000000 vn="Win32/Adware.AddLyrics.F application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jmhhdaimhfblnamlcdijbaakkifakade\1.111_0\contentscript.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=80E5AEAD23F3BF43667E93FAF3723FD41F36B0DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_lflmkpflepoeeekhepknbmnoeoppolcn\5.10\iekq3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=7ACBB34DD819DD8511A553071EDC4F0D9E1ED75F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oaejaebghfffooeajcafadlenfehdhbk\1.0\YZdVGhfalt.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=F358E66FEA0A093AC7BE7EBD3C8A9779412FA1C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pemmompcifojdljhcehhnbgjipninhha\1.0\YMNUyBGPk.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=086F56FA97A392AE2113718E2B3A71B1874927BB ft=1 fh=1dd84ec17bd434c9 vn="a variant of Win32/ELEX.M application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eGdpSvc.exe"
sh=CE1EFDA8DB4C2533A0CEC707DDA6624E28584266 ft=1 fh=20c8915953141255 vn="a variant of Win32/ELEX.D application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eXQ.exe"
sh=4F5C4BB5CA28C0B7258AB92A5B27E89582C64298 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_aofdsfa@agc-.net\content\bg.js"
sh=EA6A743864DC56629977123BD18FB6188D22458E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_c6cfq@qzdqeh-vcb.co.uk\content\bg.js"
sh=D227D2961E78AAEC84E97BDD8A02496CD49B62DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_cifsmkb_8k@aveea-proojr.net\content\bg.js"
sh=424CA3CED3C1346C4F2BDE69545F9F57B3AD7CE0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_dspau@yuuzobq.com\content\bg.js"
sh=783F495D685950D20A89ABD20D8738C9AA1F2BEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_eoovl@jrdjuaai.edu\content\bg.js"
sh=C7844191F21CFF9278F0FC4E27112C78F10E3113 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_fnwg0y@bdwiqcm.net\content\bg.js"
sh=25941623CB4FD454BFCE5B694C382D054A88F3EB ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_gx_yiai@wqddxocw-.co.uk\content\bg.js"
sh=7D5BC4D2E9C7EF36338750F298C1F0F303924B3D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_habcjf@zawrauos.net\content\bg.js"
sh=B8913F237411202FF6A3AF16478A201A0ADA0B28 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hbg2-bmaa@cfhw-wkjo.org\content\bg.js"
sh=EF1957E5D3E3E57ADFC4168D4D159A387F9E0DA7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hg9x9-m@owlpuy.org\content\bg.js"
sh=28B939500BF96677439535BE25C5BDDAA3506B86 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hqmow@qbawoe.edu\content\bg.js"
sh=A77A3790BF14940CF1824AB05D1337410B90E9F5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jand9tv7@qfsbhe.co.uk\content\bg.js"
sh=60EEEE0960AC10F676435038CA60D640114A96EF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jrt-o@lfpj-hxbxl.com\content\bg.js"
sh=F13C271294C4D46C2F6B5012CA6092F5910E4445 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_k.or@aaurktldy.co.uk\content\bg.js"
sh=712F755ED1FDFE67817FDB1BDE6E42AD25DF51D8 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lhsvbl@gztwzh.org\content\bg.js"
sh=77A580602AAD5AC4E815B9862D550BA9ADA6D082 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lwbzb@kcqu.org\content\bg.js"
sh=0BE524711C67A7E23A11B42B325FB3D16897603D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_mxuefwd@ptqsahj.com\content\bg.js"
sh=6F528C327DD409F5B3755864D0E3FEECF3416CF5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oaai-k@xatjogdmsao.edu\content\bg.js"
sh=06D452D4EA3D5D0A1E5B4145F464E06CBA32CA55 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oeu-r6e@rcwlgfuyeoiop.org\content\bg.js"
sh=0EAD4AA49AB3D060228516DC3AA2CF970C22E334 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oi_q@yeiyowxkww.org\content\bg.js"
sh=E3D7A265F18EB4448C66854B1E9C8C0AC8B241D5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_olmnaf9uy@ahar-kewsxml.edu\content\bg.js"
sh=37547629EA27510B3A5C96C12E84539D8D1CFDC7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oua_g@iobtxko.com\content\bg.js"
sh=B9EAC03C9269D0ADFEF5E20FED34BF7FE3AC3AD3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_ovd-xjaw@upe-hzfq.net\content\bg.js"
sh=F8C79FC41B4EF81BB3577F60EA344D9185040EEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qdtncv1@i-tk.edu\content\bg.js"
sh=64E1D25DF61F1002CB0F06B09B8B77D542CB1F1C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qkuru_kd@ygfxi-.co.uk\content\bg.js"
sh=90101348D5A3AA225EC01864DB53F14D23EC61DD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qppv_53@sdojcmpv.org\content\bg.js"
sh=9522230494243019CFC5C2BDB7940973D0963C9C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_rd_oau5iiu@akiu-ioeaw.co.uk\content\bg.js"
sh=38272E33AE58C3A2C56382FB0E6C826C9CA72C4A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_shlm259@sageaiu.org\content\bg.js"
sh=D502F4CBD2FDEFF1CCE32A70956D02AE6359C918 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_szlbv@keotg.com\content\bg.js"
sh=51755F81B15F1B4F2B61D95A2EE2BED376F14131 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_whp-pcx@uyiekmct.edu\content\bg.js"
sh=B2B5A921DF8B0EE7E2706465FE1DADF313A4E6E9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_yss.rw@jabcmaea.edu\content\bg.js"
sh=8F5E4CA217CFAEEA715D3ABCDA5155FB0ECB56A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\zoek_backup\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_zu4omj@nycxu.edu\content\bg.js"
sh=444329E675A61AB752AAC433DFEC3DAAA0A26C6A ft=0 fh=0000000000000000 vn="Win32/DealPly.E application" ac=I fn="C:\zoek_backup\C_Users_familia_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\background.html"
sh=69A35E782A90296DC01CD4184D2775CE1A35C4B2 ft=1 fh=7f4a4e7ae8724a95 vn="Win32/DealPly.B application" ac=I fn="C:\zoek_backup\C_windows_system32_config_systemprofile_AppData_Roaming_DealPly\UpdateProc\UpdateTask.exe"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16286
# end=stopped
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-16 04:33:43
# local_time=2013-12-16 02:33:43 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36544146 90179229 0 0
# compatibility_mode=5893 16776573 100 94 0 138760014 0 0
# scanned=124757
# found=112
# cleaned=0
# scan_time=12654
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 3_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=EF207195F751B27D9D9D4E0FA8360AE6AE4F0C44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_alfcopdhhmnindjidhoflffoacfnjngj\5.10\jmrz1dH.js"
sh=C2871F22E6448DC9B61D9FD82251A709D61A65B7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_blfgncobkbemmbdjijdgofkabflmdgkp\1.0\6sj5.js"
sh=691B54FCD2728A4BDEDC223410BEB1AA70B2E627 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bmkamceejpkfhfpmfhjgcjpjpnlapion\1.6\oI.js"
sh=74B0F2C15BB0F21FAB368C10724A646EB4466A1B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_bpkenkmaddcigbkbnhhbealamcjnmpkb\1.0\ggSkg2i.js"
sh=3B70E02B1B5D9C56A7BA4F986D606579C3CF262B ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_cdbmhgepemgocklaonplleppbnljejmg\1.0\H0V1Yi0jm3x.js"
sh=42DFFB2B325A773B5B913F116648DB46774F1491 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_clcadfcolnilnlhdlhfhbhkpbmalpomb\1.6\8PYEPZ7C.js"
sh=368BB71D6A49EB496D9AEF4E36A69292EFF91D3E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_dibllginolnkphbpciggneobchlfbgnl\1.0\wEBk4hNpG6z.js"
sh=ECBDAD29127469ADDEE4F33CA7DAB60F21AA3564 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_eceboenkkhbkkbaldmgfdfbngliokjol\1.0\Uj.js"
sh=DD907329E731CF31237EE680F1868EC58CDD5D96 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fadifhnkdcaacopailcikgidpgaleljb\1.0\E_xQr.js"
sh=E6B28EF698FA91BE1EBC6A71E07BD226124EF84A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_fbdpfpogbmelameihoncgkajacfclnhj\2.19\OO.js"
sh=1EA6C621CA6B74757273A99C56A8D7AD30A0904C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gaojfimidhkbkmganccjopcefoafgdlg\2.19\b_MmkyR.js"
sh=3EC4E5FFD0FE1AE80679A8667118077EC36624BA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gdcipgmfjbphkecjeeichjdpanffhakf\1.0\MnB_thjn0_m.js"
sh=F5BA6E7F51E2DEB2D0191A80A684A389E7D149B0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_gfchekemdhdicemjjpmlnbhbgnojiegd\1.0\XqjMRXpcb_.js"
sh=B1FD8DD773510631715E6B910F70CB8BF71630A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ghbhbdcifbegnobgldncpibehmckgfhm\2.19\HfHMen.js"
sh=AB6E71368FFF8DDB11B6C041A21B72D7BF7FBE44 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_hhfincadilflcfghpandkahokpdncemi\2.19\KMwha1.js"
sh=6F017B63F475C9D94B9FB1FA5739110A86BD12E3 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_iefogiieekeeeeaiklglonbockmhmkgd\1.23.16_0\js\app\extension.js"
sh=799E7C4E3E56B1D1B9AD4BFD1D884940B221F883 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_igidikackbmcmjnfcckkghmikaokckmi\2.19\atZWtzZC2.js"
sh=95FEE419E4919B76F0DF48A4381143E3929A6904 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ihejdcgpfehgldkccicepjnjbkejfonh\1.0\w_Oj2.js"
sh=515CEB00E899BB7BC33928412920E05D7443A89D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_ikekdnejojedljjmbgnamocidnecjpjo\2.19\MW4we.js"
sh=2CA7BF416A3219A74D6D3A3D693AB7433EB7619F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbakcagmcmmjbbfbilbdkmkbnfajnmje\5.10\c7xnZ5cL4r.js"
sh=33052DD6578DE997792F5B56B17760DEFFE8FACA ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jbgimdfgkinkomhkoeoacmopmgphnpeb\1.0\GeoEUiaD.js"
sh=418DE9E2A433E43D9A6C42EF92877A9967100AE4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jhdemecfgonfdpohpcmmbplcgghkhfae\1.0\LaMxqJOx6Fi.js"
sh=C3B8AF7C64368C6E31C1B55C7ECCC78FDC91E19A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jkfedkolafaahiedgdalccgliojimnip\2.19\CbRc0D.js"
sh=7C6F273F77B017B6ECD826EB5606C87CA9D3BEEF ft=0 fh=0000000000000000 vn="Win32/Adware.AddLyrics.F application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jmhhdaimhfblnamlcdijbaakkifakade\1.111_0\contentscript.js"
sh=9640F476518A3B857B9D65AA1ADABBE4DFFC82D4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_jnamlfjgjcioonlhmmpnmoglmnaonlmm\2.19\qdB7OnBq6Bj.js"
sh=2BA9EA504B694BB565593C08BDD880989DCEBA1D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kdbpmgmadeemhomkonhgpekaiacpnocj\2.19\tPcsA_mIfV.js"
sh=65C2F52B45729DC1781EA685826B04AE1F05D208 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_kophemlokkjcpmndfkgeihlmbgkbhmbf\1.0\ZmnBGxPyH3.js"
sh=80E5AEAD23F3BF43667E93FAF3723FD41F36B0DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_lflmkpflepoeeekhepknbmnoeoppolcn\5.10\iekq3.js"
sh=299B06D5672263B2DC1435EB2F94404C90AAABAD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_llkhiidifcplnjkgnfnanhlckdcplckf\2.19\B_jq7.js"
sh=F35F4205D59B4804EE0DE7215864FD6AC8F95003 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mbolhejlijpalbpffeengbnmedpakjmi\1.0\oxcPp_x.js"
sh=B2E5C71BF49C9467F170F41381C17F94A8953E97 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mefhmblhfnliajjkbkkfojapilgjadlk\1.0\FOQyG.js"
sh=1DB4E07B98EA6CC010368EBC4F9B0D2AB5F9624D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mkkfimmicgmecpoibmimadhmdhebdcio\2.19\TsbeRDbqSQ.js"
sh=935777870C977B80CC312915513CA1F8820994C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mljaehjgmfcpphbffdfidgodkclfadka\1.0\HXhu_Jb.js"
sh=CBCE4BFE6726DB646F0A6004202F00BBA68A1C5A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_mnkbdnjaoeelfkkljgdpbkfeojjhcpna\2.19\5vRtH.js"
sh=E7772416D38070F52C1914368275D5A9E56BF966 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nbcfbmfmjkoipiadlmhjliacehcmccjj\1.0\q_SFgw.js"
sh=E1FE424E40EEB88AC7341EACDBD03A9B14E12F95 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nfpjmhgaigneilgdaickjmpopdibbpja\1.0\rz2.js"
sh=C50135B66365A3545AB943BC459FD2EED0A445C7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_nlmkakaahjhaelglddgkgbmmibmlncel\1.0\fI5LJcz.js"
sh=7ACBB34DD819DD8511A553071EDC4F0D9E1ED75F ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oaejaebghfffooeajcafadlenfehdhbk\1.0\YZdVGhfalt.js"
sh=2489578330A5DD2610C60EDF4A60359599BCDDF4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_oddagejijhiidhbdjkonehlckbigbfdg\2.19\ah9QAvYw.js"
sh=85A56A8847CA5D45CEEBA9D5FEE9C26941CCA1C4 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_omjlmnhdpejaeicokakdancpodoodcdb\2.19\r_jHsVR.js"
sh=11264551060847DAF0AB80D21A69A04209BAB53E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_opodolbmppdgamhmngifhaglkpkjhpbe\1.0\s__33aCkhbiT.js"
sh=F358E66FEA0A093AC7BE7EBD3C8A9779412FA1C3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pemmompcifojdljhcehhnbgjipninhha\1.0\YMNUyBGPk.js"
sh=521E2231FC8CBCA626B19E7A9C91B73FC4325023 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pipbongoebgmliphicjbffcabhnpgdbe\2.19\dn0G.js"
sh=BED5DC54D22266F26AF4CB4728D3C3DD3BBBCDD7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pkjffoadnhbejcbakpnkihfbidgegnof\1.0\E_Y7g.js"
sh=0E40F30722EBA58E9FAEBF281DBADCAD209B7AAF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Local_Google_Chrome_User Data_Profile 4_Extensions_pljkieohmmpcomofeknijjpmonpibapn\1.0\zhLXC.js"
sh=086F56FA97A392AE2113718E2B3A71B1874927BB ft=1 fh=1dd84ec17bd434c9 vn="a variant of Win32/ELEX.M application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eGdpSvc.exe"
sh=CE1EFDA8DB4C2533A0CEC707DDA6624E28584266 ft=1 fh=20c8915953141255 vn="a variant of Win32/ELEX.D application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_eIntaller\0A18A1A3692742a4BC3DE493E44841D8\eXQ.exe"
sh=4F5C4BB5CA28C0B7258AB92A5B27E89582C64298 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_aofdsfa@agc-.net\content\bg.js"
sh=EA6A743864DC56629977123BD18FB6188D22458E ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_c6cfq@qzdqeh-vcb.co.uk\content\bg.js"
sh=D227D2961E78AAEC84E97BDD8A02496CD49B62DE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_cifsmkb_8k@aveea-proojr.net\content\bg.js"
sh=424CA3CED3C1346C4F2BDE69545F9F57B3AD7CE0 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_dspau@yuuzobq.com\content\bg.js"
sh=783F495D685950D20A89ABD20D8738C9AA1F2BEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_eoovl@jrdjuaai.edu\content\bg.js"
sh=C7844191F21CFF9278F0FC4E27112C78F10E3113 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_fnwg0y@bdwiqcm.net\content\bg.js"
sh=25941623CB4FD454BFCE5B694C382D054A88F3EB ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_gx_yiai@wqddxocw-.co.uk\content\bg.js"
sh=7D5BC4D2E9C7EF36338750F298C1F0F303924B3D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_habcjf@zawrauos.net\content\bg.js"
sh=B8913F237411202FF6A3AF16478A201A0ADA0B28 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hbg2-bmaa@cfhw-wkjo.org\content\bg.js"
sh=EF1957E5D3E3E57ADFC4168D4D159A387F9E0DA7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hg9x9-m@owlpuy.org\content\bg.js"
sh=28B939500BF96677439535BE25C5BDDAA3506B86 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_hqmow@qbawoe.edu\content\bg.js"
sh=A77A3790BF14940CF1824AB05D1337410B90E9F5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jand9tv7@qfsbhe.co.uk\content\bg.js"
sh=60EEEE0960AC10F676435038CA60D640114A96EF ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_jrt-o@lfpj-hxbxl.com\content\bg.js"
sh=F13C271294C4D46C2F6B5012CA6092F5910E4445 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_k.or@aaurktldy.co.uk\content\bg.js"
sh=712F755ED1FDFE67817FDB1BDE6E42AD25DF51D8 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lhsvbl@gztwzh.org\content\bg.js"
sh=77A580602AAD5AC4E815B9862D550BA9ADA6D082 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_lwbzb@kcqu.org\content\bg.js"
sh=0BE524711C67A7E23A11B42B325FB3D16897603D ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_mxuefwd@ptqsahj.com\content\bg.js"
sh=6F528C327DD409F5B3755864D0E3FEECF3416CF5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oaai-k@xatjogdmsao.edu\content\bg.js"
sh=06D452D4EA3D5D0A1E5B4145F464E06CBA32CA55 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oeu-r6e@rcwlgfuyeoiop.org\content\bg.js"
sh=0EAD4AA49AB3D060228516DC3AA2CF970C22E334 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oi_q@yeiyowxkww.org\content\bg.js"
sh=E3D7A265F18EB4448C66854B1E9C8C0AC8B241D5 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_olmnaf9uy@ahar-kewsxml.edu\content\bg.js"
sh=37547629EA27510B3A5C96C12E84539D8D1CFDC7 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_oua_g@iobtxko.com\content\bg.js"
sh=B9EAC03C9269D0ADFEF5E20FED34BF7FE3AC3AD3 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_ovd-xjaw@upe-hzfq.net\content\bg.js"
sh=F8C79FC41B4EF81BB3577F60EA344D9185040EEE ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qdtncv1@i-tk.edu\content\bg.js"
sh=64E1D25DF61F1002CB0F06B09B8B77D542CB1F1C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qkuru_kd@ygfxi-.co.uk\content\bg.js"
sh=90101348D5A3AA225EC01864DB53F14D23EC61DD ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_qppv_53@sdojcmpv.org\content\bg.js"
sh=9522230494243019CFC5C2BDB7940973D0963C9C ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_rd_oau5iiu@akiu-ioeaw.co.uk\content\bg.js"
sh=38272E33AE58C3A2C56382FB0E6C826C9CA72C4A ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_shlm259@sageaiu.org\content\bg.js"
sh=D502F4CBD2FDEFF1CCE32A70956D02AE6359C918 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_szlbv@keotg.com\content\bg.js"
sh=51755F81B15F1B4F2B61D95A2EE2BED376F14131 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_whp-pcx@uyiekmct.edu\content\bg.js"
sh=B2B5A921DF8B0EE7E2706465FE1DADF313A4E6E9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_yss.rw@jabcmaea.edu\content\bg.js"
sh=8F5E4CA217CFAEEA715D3ABCDA5155FB0ECB56A9 ft=0 fh=0000000000000000 vn="Win32/Adware.MultiPlug.H application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia.daciorodrigues_AppData_Roaming_Mozilla_Firefox_Profiles_y1p4bk1a.default_extensions_zu4omj@nycxu.edu\content\bg.js"
sh=444329E675A61AB752AAC433DFEC3DAAA0A26C6A ft=0 fh=0000000000000000 vn="Win32/DealPly.E application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_Users_familia_AppData_Local_Google_Chrome_User Data_Default_Extensions_gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\background.html"
sh=69A35E782A90296DC01CD4184D2775CE1A35C4B2 ft=1 fh=7f4a4e7ae8724a95 vn="Win32/DealPly.B application" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-896558980-977426591-2796425657-1000\$R2S3AXW\C_windows_system32_config_systemprofile_AppData_Roaming_DealPly\UpdateProc\UpdateTask.exe"
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=5f8985c335c21d40a6ddcac639cf9bd1
# engine=16286
# end=finished
# remove_checked=false
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2013-12-16 06:35:38
# local_time=2013-12-16 04:35:38 (-0300, Horário brasileiro de verão)
# country="Brazil"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=3588 16777214 85 82 36555061 90186544 0 0
# compatibility_mode=5893 16776573 100 94 0 138767329 0 0
# scanned=123934
# found=0
# cleaned=0
# scan_time=7200

Compartilhar este post


Link para o post
Compartilhar em outros sites

Faltou só você fazer este procedimento abaixo:

 

:seta: Baixe o DelFix (...de Xplode) e salve-o no Desktop (Área de Trabalho)

*Execute-o, deixe selecionadas as opções Remove disinfection tools e Purge system restore

2vcyx06.png

*Clique [Run] e cole aqui no seu tópico o relatório apresentado por ele.

 

Fazendo isto seu PC estará limpo. Um abraço!

Compartilhar este post


Link para o post
Compartilhar em outros sites

Bom dia amigo ai esta o relatorio,acho que voce ja pode fechar o tópico,um abraço.




# DelFix v10.6 - Logfile created 17/12/2013 at 10:54:03
# Updated 11/11/2013 by Xplode
# Username : familia - DACIORODRIGUES
# Operating System : Windows 7 Starter Service Pack 1 (32 bits)

~ Removing disinfection tools ...

Deleted : C:\Users\familia.daciorodrigues\Desktop\esetsmartinstaller_enu.exe
Deleted : C:\Users\familia.daciorodrigues\Desktop\logunD.txt
Deleted : C:\Users\familia.daciorodrigues\Downloads\esetsmartinstaller_enu.exe

~ Cleaning system restore ...

Deleted : RP #669 [End of disinfection | 12/14/2013 14:22:03]
Deleted : RP #671 [Revo Uninstaller's restore point - PSafe | 12/14/2013 14:24:46]
Deleted : RP #673 [Revo Uninstaller's restore point - PSafe | 12/14/2013 14:28:13]

New restore point created !

########## - EOF - ##########

Compartilhar este post


Link para o post
Compartilhar em outros sites

PROBLEMA RESOLVIDO

 

Caso o autor necessite que o tópico seja reaberto basta enviar uma Mensagem Privada para um Moderador com um link para o tópico.

Compartilhar este post


Link para o post
Compartilhar em outros sites

×

Informação importante

Ao usar o fórum, você concorda com nossos Termos e condições.