jucca 0 Denunciar post Postado Maio 13, 2014 Olá Fiz algumas limpezas padrões, deletei algumas extensões, defragmentei. Mas algum tempo já venho tendo este problema que agora piorou. Antes era mais lentidão em certos momentos. Agora acrescentou envio de emails e a lentidão aumentou. Poderia simplesmente formatar, mas tenho adiado isto por querer saber a origem, pois senão depois simplesmente pode voltar. Segue log do Hijackthis Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 09:02:23, on 13/05/2014 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16421) Boot mode: Normal Running processes: C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\RocketDock\RocketDock.exe C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe C:\Program Files (x86)\PowerISO\PWRISOVM.EXE C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files (x86)\BS_Player\tbBS_P.dll F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files (x86)\BS_Player\tbBS_P.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files (x86)\BS_Player\tbBS_P.dll O4 - HKLM\..\Run: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE O4 - HKLM\..\Run: [Fitbit Connect] "C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe" /autorun O4 - HKLM\..\Run: [Firebird] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe -a O4 - HKCU\..\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO LOCAL') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO DE REDE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO DE REDE') O4 - Startup: RocketDock.lnk = C:\Program Files (x86)\RocketDock\RocketDock.exe O8 - Extra context menu item: Append to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Download by Qget - C:\Program Files (x86)\QNAP\Qget\QGetCatch.htm O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O17 - HKLM\System\CCS\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Serviço do Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Intel® Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Fitbit Connect Service (Fitbit Connect) - Fitbit, Inc. - C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Adobe SwitchBoard (SwitchBoard) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 11567 bytes Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 13, 2014 Olá Jucca. Baixe o programa Adwcleaner clicando no link abaixo e depois clique no botão Download Now @BleepingComputer: http://www.bleepingcomputer.com/download/adwcleaner/ :seta: Para executar corretamente o AdwCleaner é só seguir as dicas deste tutorial: Remova adwares e toolbars maliciosas com o Adwcleaner * Na sua próxima resposta poste o log (relatório) do Adwcleaner que estará em C:\AdwCleaner\AdwCleaner[s0].txt Ficamos na espera. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 14, 2014 Olá PowerMax Obrigado pela ajuda! Feito o procedimento, segue relatório solicitado: # AdwCleaner v3.208 - Relatório criado 14/05/2014 às 11:51:22 # Atualizado 11/05/2014 por Xplode # Sistema Operacional : Windows 7 Professional Service Pack 1 (64 bits) # Usuário : Evo - EVO-PC # Executando de : C:\Users\Evo\Downloads\AdwCleaner.exe # Opção : Limpar ***** [ Serviços ] ***** ***** [ Arquivos / Pastas ] ***** Pasta Deletada : C:\ProgramData\apn Pasta Deletada : C:\Program Files (x86)\Conduit Pasta Deletada : C:\Program Files (x86)\BS_Player Pasta Deletada : C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi Pasta Deletada : C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\obciceimmggglbmelaidpjlmodcebijb Arquivo Deletada : C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx Arquivo Deletada : C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage ***** [ Atalhos ] ***** ***** [ Registro ] ***** Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASAPI32 Chave Deletedo : HKLM\SOFTWARE\Microsoft\Tracing\ApnSetup_RASMANCS Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1} Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{9B0FC379-D022-4DD5-BCBA-BE6031DFCCE1} Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} Chave Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9B0FC379-D022-4DD5-BCBA-BE6031DFCCE1} Chave Deletedo : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Chave Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}] Valor Deletedo : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}] Valor Deletedo : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}] Chave Deletedo : HKCU\Software\Conduit Chave Deletedo : HKCU\Software\AppDataLow\Software\Conduit Chave Deletedo : HKCU\Software\AppDataLow\Software\BS_Player Chave Deletedo : HKLM\Software\Conduit Chave Deletedo : HKLM\Software\BS_Player Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BS_Player Toolbar ***** [ Navegadores ] ***** -\\ Internet Explorer v9.0.8112.16421 -\\ Mozilla Firefox v6.0 (pt-BR) [ Arquivo : C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default\prefs.js ] -\\ Google Chrome v34.0.1847.131 [ Arquivo : C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\preferences ] Deletedo [search Provider] : hxxp://br.ask.com/web?q={searchTerms} Deletedo [search Provider] : hxxp://en.softonic.com/s/{searchTerms} Deletedo [search Provider] : hxxp://www.netflix.com/WiSearch?raw_query=&ac_category_type=none&ac_rel_posn=-1&ac_abs_posn=-1&v1={searchTerms}&search_submit= Deletedo [search Provider] : hxxp://www.softonic.com.br/s/{searchTerms} Deletedo [search Provider] : hxxp://br.123rf.com/search.php?word={searchTerms}&imgtype=0&t_word=fractal&t_lang=br&oriSearch=&srch_lang=br Deletedo [Homepage] : hxxps://mail.google.com/mail/u/0/#search/is%3Ainbox+is%3Aunread Deletedo [Extension] : dgpdioedihjhncjafcpgbbjdpbbkikmi Deletedo [Extension] : fjoijdanhaiflhibkljeklcghcmmfffh Deletedo [Extension] : ijblflkdjdopkpdgllkmlbgcffjbnfda Deletedo [Extension] : obciceimmggglbmelaidpjlmodcebijb ************************* AdwCleaner[R0].txt - [3871 octets] - [14/05/2014 11:46:07] AdwCleaner[s0].txt - [4063 octets] - [14/05/2014 11:51:22] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [4123 octets] ########## Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 14, 2014 Desative temporariamente seu antivírus para evitar conflitos. * Acesse este link abaixo e clique no primeiro botão da esquerda que é o botão Download Zoek.exe: http://www.hijackthis.nl/smeenk/ :seta: Para executá-lo corretamente siga as dicas deste tutorial: Exclua adwares e outras ameaças de seu PC e browsers com o aplicativo Zoek * Assim que ele concluir a limpeza dos problemas acesse o log (relatório) do Zoek que estará em C:\zoek-results.txt e copie todo seu conteúdo e poste em sua próxima resposta. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 14, 2014 Obrigado. Segue novo relatório. Zoek.exe v5.0.0.0 Updated 14-April-2014 Tool run by Evo on 14/05/2014 at 12:16:47,45. Microsoft Windows 7 Professional 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Evo\Downloads\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 14/05/2014 12:18:09 Zoek.exe System Restore Point Created Succesfully. ==== Reset Hosts File ====================== # Copyright © 1993-2006 Microsoft Corp. # # This is a sample HOSTS file used by Microsoft TCP/IP for Windows. # # This file contains the mappings of IP addresses to host names. Each # entry should be kept on an individual line. The IP address should # be placed in the first column followed by the corresponding host name. # The IP address and the host name should be separated by at least one # space. # # Additionally, comments (such as these) may be inserted on individual # lines or following the machine name denoted by a '#' symbol. # # For example: # # 102.54.94.97 rhino.acme.com # source server # 38.25.63.10 x.acme.com # x client host # localhost name resolution is handle within DNS itself. 127.0.0.1 localhost ::1 localhost ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== FireFox Fix ====================== Deleted from C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default\prefs.js: user_pref("browser.startup.homepage", "www.google.com.br"); Added to C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default\prefs.js: user_pref("browser.startup.homepage", "http://www.google.com"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "http://www.google.com/"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Google"); user_pref("browser.search.selectedEngine", "Google"); user_pref("browser.search.order.1", "Google"); user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.search.suggest.enabled", true); user_pref("browser.search.useDBForOrder", true); Deleted from C:\Users\Evo\AppData\Roaming\OutWit\outwit-hub\Profiles\o42atsne.default\prefs.js: Added to C:\Users\Evo\AppData\Roaming\OutWit\outwit-hub\Profiles\o42atsne.default\prefs.js: user_pref("browser.startup.homepage", "http://www.google.com"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "http://www.google.com/"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Google"); user_pref("browser.search.selectedEngine", "Google"); user_pref("browser.search.order.1", "Google"); user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.search.suggest.enabled", true); user_pref("browser.search.useDBForOrder", true); Deleted from C:\Users\Evo\AppData\Roaming\Thunderbird\Profiles\pp9g6flk.default\prefs.js: Added to C:\Users\Evo\AppData\Roaming\Thunderbird\Profiles\pp9g6flk.default\prefs.js: user_pref("browser.startup.homepage", "http://www.google.com"); user_pref("browser.search.defaulturl", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.newtab.url", "http://www.google.com/"); user_pref("browser.search.defaultengine", "Google"); user_pref("browser.search.defaultenginename", "Google"); user_pref("browser.search.selectedEngine", "Google"); user_pref("browser.search.order.1", "Google"); user_pref("keyword.URL", "http://www.google.com/search?btnG=Google+Search&q="); user_pref("browser.search.suggest.enabled", true); user_pref("browser.search.useDBForOrder", true); ==== Deleting Files \ Folders ====================== C:\PROGRA~3\CorelDRAW Graphics Suite X6.1 deleted C:\PROGRA~3\CorelDRAW Graphics Suite X6.2 deleted C:\PROGRA~3\CorelDRAW Graphics Suite X6.2 - Hotfix 1 deleted C:\Users\Evo\.android deleted C:\PROGRA~3\Package Cache deleted C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\novo_price_comparison.crx deleted ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "web2pdfextension@web2pdf.adobedotcom"="C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn" [06/02/2014 17:36] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default - DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} ProfilePath: C:\Users\Evo\AppData\Roaming\OutWit\outwit-hub\Profiles\o42atsne.default - OutWit Kernel - %ProfilePath%\extensions\kernel@outwit.com - OutWit Modules - %ProfilePath%\extensions\modules@outwit.com AppDir: C:\Program Files (x86)\Mozilla Firefox - Default - %AppDir%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==== Firefox Plugins ====================== Profilepath: C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default 9FD6A1990289B9290563CA069CB74EF9 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll - Shockwave Flash F6D12679B9112358AC705A1308156F59 - C:\Users\Evo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player 785105A23650755A8F7A72405EB0D923 - C:\Users\Evo\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll - Google Update D4A0F57017841F7E54B3E82B99064982 - C:\Users\Evo\AppData\Roaming\Mozilla\plugins\npo1d.dll - Google Talk Plugin Video Renderer 7EDD991C076F76CDF7C10B0487DEF155 - C:\Users\Evo\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll - Google Talk Plugin ==== Chrome Look ====================== Instapaper - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\acgdjjilmhiofacmdnmmlndeokamkkcl Facebook #Buffer - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\acocaakhkpkcdeadalmmmjppemaeencp Awesome Screenshot: Capture Annotate - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\alelhddbbhepgpmgidjdcjakblofbmce MeasureIt - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aonjhmdcgbgikgjapjckfkefpphjpgma Shortcuts for Googleâ„¢ - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\baohinapilmkigilbbbcccncoljkdpnd Last.fm free music player - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbncpldmanoknoahidbgmkgobgmhnafh Send this page by email - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcamgnkjooghefjjfgfhnepedkodbgec Web Developer - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm ColorZilla - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp Search and Replace - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bldchfkhmnkoimaciljpilanilmbnofo GistBox - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\caoihfibgoiiakncomhccbflmlgjaohf OneTab - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall Discover The Web With Friends - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnfpjiofffembegmljagbelncaodknmm All JS Viewer - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cogpihfjkdnalpenphgjgmpbhnkkghno Lara Croft and the Guardian of Light - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcfdbmpeeihbpddkneaploeinlbaaodn Read Later Fast - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\decdfngdidijkdjgbknlnepdljfaepji Speed Dial - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi Copy All Urls - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\djdmadneanknadilpjiknlnanaolmbfk Guerapa Desprotetor - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\doaaifppmpcnbkmpegmpkkcnlobgifid Axure RP Extension for Chrome - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dogkpdfcklifaemcdfbildhcofnopogp Add to Feedly™ - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejkjjleifeeaccajkekdcckflfpenoen MyMenu - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\embakochaelgijbeolbbgnljfgpbeeoe Visual history for Chrome - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnpecigdjglcgfabfnmlphhgfdifaan Recent History - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbmkfdfomhhlonpbnpiibloacemdhjjm Foxtab Speed Dial - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp Resizer - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gekhbemhcekbaodnijabeajoeolfplbp eBuddy Chat - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\giacidpcfkbjnapjaklcdchjmmnajmpm AdBlock - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Android Desktop Notifications - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\giicnncicnopjohcpamieklkiacdoeni Crimson Steam Pirates - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\glfbkgkceahodalogdpenjoekbacjfcj Translate selection - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\goanabmlmgfinmjohhepcpffcnkeobjm Pin It Button - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic Website Blocker Beta - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hclgegipaehbigmbhdpfapmjadbaldib Feedly - News Blogs and Youtube - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Classic - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkacjpbfdknhflllbcmjibkdeoafencn Concentrate - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\idfmgklhndkcggamadboiaepmohpjhjj Adobe Edge Inspect CC - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ijoeapleklopieoejahbpdnhkjjgddem Desprotetor de Links - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\imcbnnnoghiihopefblgehihofbfbmei History Visualizer Alpha - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipicfimjcegmjebllgapciiojflmncgl WhatFont - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm Breezi - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcddmlaijhcifebdodoofgaojgnahlhk 1 Click Translator - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgpocibfamiaabfcecbphfjepfgcffmg Add to Flipboard - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhdfbfkhcdpfmijgodegdaejagpeaoki Google Forms - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg archify - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnmikoljlndfcmbjkjcfmffgajkmhcgg Speed Dial 2 - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik Cookie Manager - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbnfbcpkiaganjpcanopcgeoehkleeck The Next Web - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfocinodgkchekeanmhdlemdoonpodf table to csv - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\khobgoemenoleeedfbilehnpoelmkbko StayFocusd - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\laankejkbhbdhmipfmgcngdelahlfoji Download Master - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcceagdollnkjlogmdckgjakjapmkdjf Buffer - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjojodpkaeeclkgaidibcbknlhjflhle Naptha - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\molncoemjfmpgdkbdlbjmhlcgniigdnf Domain - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nangghhladpnhlllolmdbdgeggionole Hangouts - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd Feedly - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndhinffkekpekljifjkkkkkhopnjodja Mail this link - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngjdhjgbagpeimgpgloofkfoipgpdgdb Pocket (formerly Read It Later) - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj Google Wallet - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Mural.ly - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnhlnnalackljjehlfocmheepffkiihf Buffer - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\noojglkidnpfjbincgijbaiedldjfbhh Fruumo - New Tab Page - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\npknnddabjhdijgmmbocdicnknegobkm It appears you are not connected to the internet. Your tags will be read only until you are connected. - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\obciceimmggglbmelaidpjlmodcebijb Readability - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi Scoop.it - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn No BBB - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pffipagakjgfndljjpkbdpoimojmgjca Send from Gmail (by Google) - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgphcomnlaojlmmcjmiddhdapjpbgeoc Buffer Status - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\phjogflimgkcjchomcmgaoknnaichekp AVG PrivacyFix - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmejhjjecaldkllonlokhkglbdbkdcni Domain - Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnmchffiealhkdloeffcdnbgdnedheme Instapaper - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\acgdjjilmhiofacmdnmmlndeokamkkcl Google Docs - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake MeasureIt - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aonjhmdcgbgikgjapjckfkefpphjpgma Google Drive - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf Shortcuts for Googleâ„¢ - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\baohinapilmkigilbbbcccncoljkdpnd Last.fm free music player - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bbncpldmanoknoahidbgmkgobgmhnafh Send this page by email - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bcamgnkjooghefjjfgfhnepedkodbgec Web Developer - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm ColorZilla - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp Search and Replace - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bldchfkhmnkoimaciljpilanilmbnofo YouTube - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo GistBox - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\caoihfibgoiiakncomhccbflmlgjaohf OneTab - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\chphlpgkkbolifaimnlloiipkdnihall All JS Viewer - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cogpihfjkdnalpenphgjgmpbhnkkghno Google Search - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Read Later Fast - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\decdfngdidijkdjgbknlnepdljfaepji Speed Dial - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi Copy All Urls - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\djdmadneanknadilpjiknlnanaolmbfk Guerapa Desprotetor - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\doaaifppmpcnbkmpegmpkkcnlobgifid Axure RP Extension for Chrome - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dogkpdfcklifaemcdfbildhcofnopogp MyMenu - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\embakochaelgijbeolbbgnljfgpbeeoe Visual history for Chrome - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emnpecigdjglcgfabfnmlphhgfdifaan Foxtab Speed Dial - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fcoecifcadmambfikillppkoafmgachp Resizer - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gekhbemhcekbaodnijabeajoeolfplbp AdBlock - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom Crimson Steam Pirates - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\glfbkgkceahodalogdpenjoekbacjfcj Translate selection - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\goanabmlmgfinmjohhepcpffcnkeobjm Pin It Button - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic Website Blocker Beta - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hclgegipaehbigmbhdpfapmjadbaldib Feedly - News Blogs and Youtube - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hipbfijinpcgfogaopmgehiegacbhmob Concentrate - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\idfmgklhndkcggamadboiaepmohpjhjj Adobe Edge Inspect CC - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ijoeapleklopieoejahbpdnhkjjgddem Desprotetor de Links - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\imcbnnnoghiihopefblgehihofbfbmei History Visualizer Alpha - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ipicfimjcegmjebllgapciiojflmncgl WhatFont - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm Breezi - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jcddmlaijhcifebdodoofgaojgnahlhk 1 Click Translator - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jgpocibfamiaabfcecbphfjepfgcffmg Add to Flipboard - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhdfbfkhcdpfmijgodegdaejagpeaoki Google Forms - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg archify - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jnmikoljlndfcmbjkjcfmffgajkmhcgg Speed Dial 2 - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik Cookie Manager - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbnfbcpkiaganjpcanopcgeoehkleeck The Next Web - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kdfocinodgkchekeanmhdlemdoonpodf table to csv - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\khobgoemenoleeedfbilehnpoelmkbko StayFocusd - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\laankejkbhbdhmipfmgcngdelahlfoji Download Master - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mcceagdollnkjlogmdckgjakjapmkdjf Buffer - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjojodpkaeeclkgaidibcbknlhjflhle Domain - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nangghhladpnhlllolmdbdgeggionole Feedly - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ndhinffkekpekljifjkkkkkhopnjodja Mail this link - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngjdhjgbagpeimgpgloofkfoipgpdgdb Pocket (formerly Read It Later) - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\niloccemoadcdkdjlinkgdfekeahmflj Google Wallet - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Mural.ly - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nnhlnnalackljjehlfocmheepffkiihf Buffer - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\noojglkidnpfjbincgijbaiedldjfbhh Fruumo - New Tab Page - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\npknnddabjhdijgmmbocdicnknegobkm It appears you are not connected to the internet. Your tags will be read only until you are connected. - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obciceimmggglbmelaidpjlmodcebijb Readability - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi Scoop.it - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn No BBB - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pffipagakjgfndljjpkbdpoimojmgjca Send from Gmail (by Google) - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pgphcomnlaojlmmcjmiddhdapjpbgeoc Buffer Status - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\phjogflimgkcjchomcmgaoknnaichekp Gmail - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia AVG PrivacyFix - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pmejhjjecaldkllonlokhkglbdbkdcni Domain - Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pnmchffiealhkdloeffcdnbgdnedheme ==== Chrome Fix ====================== C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_noticias.softonic.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sd_card_recovery_for_windows.en.softonic.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_suitedpixel.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\acgdjjilmhiofacmdnmmlndeokamkkcl deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aonjhmdcgbgikgjapjckfkefpphjpgma deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\baohinapilmkigilbbbcccncoljkdpnd deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bbncpldmanoknoahidbgmkgobgmhnafh deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bcamgnkjooghefjjfgfhnepedkodbgec deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bldchfkhmnkoimaciljpilanilmbnofo deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\caoihfibgoiiakncomhccbflmlgjaohf deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\chphlpgkkbolifaimnlloiipkdnihall deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cogpihfjkdnalpenphgjgmpbhnkkghno deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\decdfngdidijkdjgbknlnepdljfaepji deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\djdmadneanknadilpjiknlnanaolmbfk deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\doaaifppmpcnbkmpegmpkkcnlobgifid deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dogkpdfcklifaemcdfbildhcofnopogp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\embakochaelgijbeolbbgnljfgpbeeoe deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\emnpecigdjglcgfabfnmlphhgfdifaan deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gekhbemhcekbaodnijabeajoeolfplbp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\glfbkgkceahodalogdpenjoekbacjfcj deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\goanabmlmgfinmjohhepcpffcnkeobjm deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hclgegipaehbigmbhdpfapmjadbaldib deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hipbfijinpcgfogaopmgehiegacbhmob deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\idfmgklhndkcggamadboiaepmohpjhjj deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ijoeapleklopieoejahbpdnhkjjgddem deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\imcbnnnoghiihopefblgehihofbfbmei deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ipicfimjcegmjebllgapciiojflmncgl deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jabopobgcpjmedljpbcaablpmlmfcogm deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jcddmlaijhcifebdodoofgaojgnahlhk deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jgpocibfamiaabfcecbphfjepfgcffmg deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhdfbfkhcdpfmijgodegdaejagpeaoki deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jhknlonaankphkkbnmjdlpehkinifeeg deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jnmikoljlndfcmbjkjcfmffgajkmhcgg deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbnfbcpkiaganjpcanopcgeoehkleeck deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kdfocinodgkchekeanmhdlemdoonpodf deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\khobgoemenoleeedfbilehnpoelmkbko deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\laankejkbhbdhmipfmgcngdelahlfoji deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mcceagdollnkjlogmdckgjakjapmkdjf deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjojodpkaeeclkgaidibcbknlhjflhle deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nangghhladpnhlllolmdbdgeggionole deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ndhinffkekpekljifjkkkkkhopnjodja deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ngjdhjgbagpeimgpgloofkfoipgpdgdb deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\niloccemoadcdkdjlinkgdfekeahmflj deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nnhlnnalackljjehlfocmheepffkiihf deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\noojglkidnpfjbincgijbaiedldjfbhh deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\npknnddabjhdijgmmbocdicnknegobkm deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obciceimmggglbmelaidpjlmodcebijb deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oknpjjbmpnndlpmnhmekjpocelpnlfdi deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\opjkhfahjokocpjfihcbfkmipdhcaknn deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pffipagakjgfndljjpkbdpoimojmgjca deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pgphcomnlaojlmmcjmiddhdapjpbgeoc deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\phjogflimgkcjchomcmgaoknnaichekp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pmejhjjecaldkllonlokhkglbdbkdcni deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pnmchffiealhkdloeffcdnbgdnedheme deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\Temp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_alelhddbbhepgpmgidjdcjakblofbmce_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_alelhddbbhepgpmgidjdcjakblofbmce_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aonjhmdcgbgikgjapjckfkefpphjpgma_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_aonjhmdcgbgikgjapjckfkefpphjpgma_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_baohinapilmkigilbbbcccncoljkdpnd_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_baohinapilmkigilbbbcccncoljkdpnd_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbncpldmanoknoahidbgmkgobgmhnafh_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bbncpldmanoknoahidbgmkgobgmhnafh_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bfbameneiokkgbdmiekhjnmfkcnldhhm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bfbameneiokkgbdmiekhjnmfkcnldhhm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bhlhnicpbhignbdhedgjhgdocnmhomnp_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_bhlhnicpbhignbdhedgjhgdocnmhomnp_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_chphlpgkkbolifaimnlloiipkdnihall_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_chphlpgkkbolifaimnlloiipkdnihall_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cnfpjiofffembegmljagbelncaodknmm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cnfpjiofffembegmljagbelncaodknmm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cpngackimfmofbokmjmljamhdncknpmg_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_cpngackimfmofbokmjmljamhdncknpmg_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_decdfngdidijkdjgbknlnepdljfaepji_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_decdfngdidijkdjgbknlnepdljfaepji_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dgpdioedihjhncjafcpgbbjdpbbkikmi_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dgpdioedihjhncjafcpgbbjdpbbkikmi_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eemcgdkfndhakfknompkggombfjjjeno_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eemcgdkfndhakfknompkggombfjjjeno_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejkjjleifeeaccajkekdcckflfpenoen_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ejkjjleifeeaccajkekdcckflfpenoen_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_embakochaelgijbeolbbgnljfgpbeeoe_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_embakochaelgijbeolbbgnljfgpbeeoe_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_emnpecigdjglcgfabfnmlphhgfdifaan_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_emnpecigdjglcgfabfnmlphhgfdifaan_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fbmkfdfomhhlonpbnpiibloacemdhjjm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fbmkfdfomhhlonpbnpiibloacemdhjjm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcoecifcadmambfikillppkoafmgachp_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcoecifcadmambfikillppkoafmgachp_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_giacidpcfkbjnapjaklcdchjmmnajmpm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_giacidpcfkbjnapjaklcdchjmmnajmpm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_glfbkgkceahodalogdpenjoekbacjfcj_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_glfbkgkceahodalogdpenjoekbacjfcj_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_goanabmlmgfinmjohhepcpffcnkeobjm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_goanabmlmgfinmjohhepcpffcnkeobjm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hclgegipaehbigmbhdpfapmjadbaldib_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hclgegipaehbigmbhdpfapmjadbaldib_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hipbfijinpcgfogaopmgehiegacbhmob_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hipbfijinpcgfogaopmgehiegacbhmob_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idfmgklhndkcggamadboiaepmohpjhjj_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idfmgklhndkcggamadboiaepmohpjhjj_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ijoeapleklopieoejahbpdnhkjjgddem_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ijoeapleklopieoejahbpdnhkjjgddem_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_imcbnnnoghiihopefblgehihofbfbmei_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_imcbnnnoghiihopefblgehihofbfbmei_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jgpocibfamiaabfcecbphfjepfgcffmg_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jgpocibfamiaabfcecbphfjepfgcffmg_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jnmikoljlndfcmbjkjcfmffgajkmhcgg_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jnmikoljlndfcmbjkjcfmffgajkmhcgg_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jpfpebmajhhopeonhlcgidhclcccjcik_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jpfpebmajhhopeonhlcgidhclcccjcik_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kbnfbcpkiaganjpcanopcgeoehkleeck_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kbnfbcpkiaganjpcanopcgeoehkleeck_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdfocinodgkchekeanmhdlemdoonpodf_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_kdfocinodgkchekeanmhdlemdoonpodf_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_laankejkbhbdhmipfmgcngdelahlfoji_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_laankejkbhbdhmipfmgcngdelahlfoji_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mmfklpmdfldnnjbkdmamhokiphfkfieg_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mmfklpmdfldnnjbkdmamhokiphfkfieg_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nbggjgoannejpkpeamcdmnpdngnpkcln_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nbggjgoannejpkpeamcdmnpdngnpkcln_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nckgahadagoaajjgafhacjanaoiihapd_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nckgahadagoaajjgafhacjanaoiihapd_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndhinffkekpekljifjkkkkkhopnjodja_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ndhinffkekpekljifjkkkkkhopnjodja_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_niloccemoadcdkdjlinkgdfekeahmflj_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_niloccemoadcdkdjlinkgdfekeahmflj_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_noojglkidnpfjbincgijbaiedldjfbhh_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_noojglkidnpfjbincgijbaiedldjfbhh_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_npknnddabjhdijgmmbocdicnknegobkm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_npknnddabjhdijgmmbocdicnknegobkm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oknpjjbmpnndlpmnhmekjpocelpnlfdi_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oknpjjbmpnndlpmnhmekjpocelpnlfdi_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pffipagakjgfndljjpkbdpoimojmgjca_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pffipagakjgfndljjpkbdpoimojmgjca_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pgphcomnlaojlmmcjmiddhdapjpbgeoc_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pgphcomnlaojlmmcjmiddhdapjpbgeoc_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_phjogflimgkcjchomcmgaoknnaichekp_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_phjogflimgkcjchomcmgaoknnaichekp_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pmejhjjecaldkllonlokhkglbdbkdcni_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pmejhjjecaldkllonlokhkglbdbkdcni_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pnmchffiealhkdloeffcdnbgdnedheme_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pnmchffiealhkdloeffcdnbgdnedheme_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apps.facebook.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_aws.amazon.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_bitly.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_bitnami.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_blu180.mail.live.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_br.123rf.com_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_br.123rf.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_br.groups.yahoo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_bufferapp.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_calibreapp.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdn.embedly.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdn.extensionanalytics.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdn1.insidesoci.al_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_chrome.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_confluence.atlassian.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_console.aws.amazon.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_disqus.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_dl.dropboxusercontent.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_docs.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_econsultancy.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_groups.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_gs.trrsf.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_litmus.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_lojaonline.claro.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_m.facebook.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_medium.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mega.co.nz_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mural.ly_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_my.pingdom.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_news.google.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.vimeo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_premium.wpmudev.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_productforums.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_pt.khanacademy.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_sb.monetate.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure-a.vimeocdn.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.logmein.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_support.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_twitter.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_w.soundcloud.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.2checkout.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.amazon.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.apachefriends.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.edx.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.fitbit.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.linkedin.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.mercadolivre.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.netflix.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.olark.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.ted.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.udacity.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.udemy.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.woopra.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.zopim.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_192.168.1.120_8080.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_54.213.236.168_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_9gag.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_abertoatedemadrugada.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_adamschwartz.co_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_app.looplogic.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_appshopper.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aprenderphp.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_askubuntu.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_atarde.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aws.amazon.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_awshub.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_backlot-api.ig.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_barnraisersllc.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_basilico.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_beleza.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.cloudflare.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.cpanel.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.crazyegg.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.gsmarena.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.luz.vc_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.marketo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.rakuten.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blog.usabilla.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blogbisolhada.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blogs.coldbuffer.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blogs.estadao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blogs.hbr.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_blogs.sap.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_botao.shopcliq.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_br.123rf.com_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_br.123rf.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_br2.php.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_bragthemes.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_brasildroid.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cafofodoprogramador.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_canaldoensino.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cdn.cxense.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cdn1.insidesoci.al_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cdn1.insidesoci.al_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_chatadegalocha.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cnnespanol.cnn.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_codepen.io_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_colegiojao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_community-micoach.adidas.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_community.babycenter.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_computerworld.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_consumidormoderno.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_contentmarketinginstitute.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_convergecom.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_corais.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_crosstec.de_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_culti-e-popi.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cultura.elpais.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dailycaller.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dba.stackexchange.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_delas.ig.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_deportes.elpais.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_df.bomnegocio.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_diversao.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ebookbrowsee.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ecommercenews.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_economia.ig.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_economia.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_economia.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_edition.cnn.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_eduardo.macan.eng.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ee.php.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_embed.ted.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_epoca.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_epocanegocios.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_es.wiktionary.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_espaco-vital.jusbrasil.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_esportes.r7.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_esportes.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_estadiovip.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_eusouandroid.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_everydaylife.globalpost.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_exame.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_expertmilionario.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_extra.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_f5.folha.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fancy.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fast.player.liquidplatform.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fast.wistia.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fedobe.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitametricaconsultoria.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forum.imasters.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forum.techtudo.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forum.wmonline.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forums.adobe.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_forums.androidcentral.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_freecomicsdownload.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fundacaolemann.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_g1.globo.com_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_g1.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_games.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gazetaonline.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_getcoldturkey.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_globoesporte.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_globotv.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gmaildefault.codeplex.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_go.bomnegocio.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_googleads.g.doubleclick.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_grantland.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_gu-social-share-experiments.appspot.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_hangar81.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_idgnow.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imasters.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_impossiveisbr.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_info.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_insidetv.ew.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_iouee.cgsociety.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ipv6.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_issuu.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ixdchecklist.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_judao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_justcreative.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_karopka.ru_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_klout.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_leandrocarloto.jusbrasil.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_livachu.cgsociety.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_live.huffingtonpost.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_livedemo00.template-help.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_makezine.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_marcocivil.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_marvelclube.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mauriciostycer.blogosfera.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mdemulher.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_meinit.nl_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mentalfloss.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_miniclip.tankionline.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mobihealthnews.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_modernizr.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mulher.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_musardos.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_netdna.webdesignerdepot.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_new.livestream.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_noticias.r7.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_noticias.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_oglobo.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_omelete.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_oplanetatv.clickgratis.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_origin.exame.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_otvfoco.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_oursoforte.dihitt.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pevgoiania.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_photoshopkiller.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_php.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pixelbuddha.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.theplatform.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_portal.comunique-se.com.br_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_portal.comunique-se.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pplware.sapo.pt_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_premium.wpmudev.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pro.imasters.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pt.m.wikipedia.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pt.wikipedia.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_rd1.ig.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_readwrite.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_redeglobo.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_revistamakers.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_revistapegn.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_risingofsilversurfer.blogspot.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_rr.sapo.pt_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s3backupwhm.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_saude.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_searchengineland.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-uk.imrworldwide.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_seesparkbox.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_serverfault.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_servicedisrupted.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shortcatapp.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sitecheck.sucuri.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_slimstat.getused.to.it_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_social.msdn.microsoft.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_social.technet.microsoft.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sportv.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stackoverflow.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.cuponsvip.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.mlstatic.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stilldrinking.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_store.apple.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sunfilmes.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_super.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_supernovo.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_superuser.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tableless.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tankionline.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tecnogeek.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tecnologia.elpais.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tecnologia.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_televisao.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_televisaoonline.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_templates.buscape.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tex.stackexchange.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_thenextweb.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_timkadlec.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_top10mais.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_topalternate.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_transformareducacao.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_travel.nationalgeographic.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tvcominternet.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_tvig.ig.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_twitpic.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_uk.php.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ultimosegundo.ig.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_under.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_uolesporte.blogosfera.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_urbnearth.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_us.cnn.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_us2.php.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_uxmag.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vecto2000.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vectorboom.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_veja.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_videos-virais.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vimeo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vitrines.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_weavesilk.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webhosting.bigresource.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webinsider.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_weheartit.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_widget.placar.abrilm.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_widget.shutterstock.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.123freevectors.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.25moments.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.abcdasaude.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.accelerated-ideas.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.actionsecomics.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.administradores.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adorocinema.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adweek.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.alberton.info_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.allaboutlivingwithlife.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.androidcentral.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aondefica.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.apdata.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.appcoda.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aquidauananews.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.armagedomfilmes.biz_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.artofmanliness.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bahianoticias.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.baixaki.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bemparana.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bizrevolution.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bomnegocio.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bondfaro.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bonitonoticias.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.brainstorm9.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.brasil247.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.brasilgamer.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.brighthub.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.buscape.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.businessinsider.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.buzzfeed.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cadillac.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.caixadedicas.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.calendariobr.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.callcentrehelper.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cartacapital.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.chess.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ciadoslivros.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cmswire.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.codecademy.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.colegiojao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.comercioeletronico.blog.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.comschool.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.conaed.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.conexaogo.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.conrado.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.conversaafiada.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.corais.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.coringa-files.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.correio24horas.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.correiodoestado.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.coursebuffet.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.coxinhanerd.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dailymotion.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.deadline.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.designboom.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.destinationcrm.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.diario24horas.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dicasparablogs.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.digitalspy.co.uk_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.digitalspy.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dn.pt_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.docelimao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.dtelepathy.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.e-farsas.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ea.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ecostaticinc.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.edestinos.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.educacao.comunique-se.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.educatorstechnology.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ehow.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.elivros-gratis.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.endeavor.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.eniopadilha.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.entrepreneur.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ereco.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.esoterica.fm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.espetoflex.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.estadao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.exer-gamer.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.extremos.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.familiaaleluia.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fastcodesign.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fastcompany.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.filehippo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.filmesonlinevk.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.filmesviatorrents.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.findsimilarsites.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.firstpost.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitbit.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flashland.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flatout.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.forbes.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.freebievectors.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fundacaolemann.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fuxiconews.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.g2portal.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gazetadopovo.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gazetaesportiva.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.geledes.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.glibee.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.goal.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gretchenrubin.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.heartratemonitorsusa.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hongkiat.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.huffingtonpost.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hypeness.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.icv2.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.iflscience.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.inc.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.infoescola.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.infomoney.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.istoedinheiro.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.jb.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.jn.pt_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.joseanmatias.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.jquery4u.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.jqueryscript.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.judao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.jusbrasil.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.justicaemfoco.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.kcharged.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.krishnasunuwar.com.np_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.latinpost.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.legiaodosherois.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lifehack.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.linkedin.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.litlovers.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lophost.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.makeuseof.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.marvelbrasil.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mdgadvertising.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mediafire.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.megacurioso.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.meioemensagem.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.menshealth.co.uk_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mercadolivre.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.meutimao.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mg.superesportes.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.minhaserie.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.minhavida.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mintprintables.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.momentoastronomico.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.neatorama.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.netflix.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.newsaqui.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.novateceditora.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nytimes.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.oepelectrics.es_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.olark.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.olx.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.onextrapixel.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.opovo.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pammarketingnut.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.partition-tool.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.partitionwizard.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.patatap.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.patriciadavidson.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pcadvisor.co.uk_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.php.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pinterest.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.portalimprove.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.positivityblog.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.praquempedala.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.preciolandia.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.profissionaisti.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.profissionaldeecommerce.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.programering.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.publico.pt_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.qdivertido.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.qedu.org.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.qnap.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.quora.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.radiolab.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.receita.fazenda.gov.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.reclameaqui.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.reddit.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.rodrigokono.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.rubydoc.info_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.saiadolugar.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.salon.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sanwebe.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.scribd.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sitepoint.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.siteslike.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.skitter-slider.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.slate.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.smh.com.au_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sobral24horas.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.socialfly.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.socialmediaexaminer.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.solutionanalysts.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.spot.im_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sql.ru_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sqlmanager.net_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.squidoo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stockgraphicdesigns.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superdownloads.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superesportes.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tcpdf.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.techtudo.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teckler.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tecmundo.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ted.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.templatemonster.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.terra.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-art-of-web.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.thedevelopersconference.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.theguardian.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.thepetitionsite.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.theverge.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.thevideo.me_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tibbr.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tiespecialistas.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tnonline.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tray.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.treehugger.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.trendhunter.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tutorialspoint.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ubs.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.underconsideration.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.uol.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.uproxx.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.usatoday.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ustream.tv_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.vagrantup.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.vdespa.de_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.viralnova.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wampserver.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wiggle.co.uk_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiconsultoria.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wphub.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.xbox.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.xoops.net.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.yodot.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youpix.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.youtube.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www1.receita.fazenda.gov.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www1.zippyshare.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\__0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_aonjhmdcgbgikgjapjckfkefpphjpgma_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_aonjhmdcgbgikgjapjckfkefpphjpgma_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_bbncpldmanoknoahidbgmkgobgmhnafh_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_bbncpldmanoknoahidbgmkgobgmhnafh_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_bfbameneiokkgbdmiekhjnmfkcnldhhm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_bfbameneiokkgbdmiekhjnmfkcnldhhm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_bhlhnicpbhignbdhedgjhgdocnmhomnp_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_bhlhnicpbhignbdhedgjhgdocnmhomnp_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_chphlpgkkbolifaimnlloiipkdnihall_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_chphlpgkkbolifaimnlloiipkdnihall_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_goanabmlmgfinmjohhepcpffcnkeobjm_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_goanabmlmgfinmjohhepcpffcnkeobjm_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_hclgegipaehbigmbhdpfapmjadbaldib_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_hclgegipaehbigmbhdpfapmjadbaldib_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_jgpocibfamiaabfcecbphfjepfgcffmg_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_jgpocibfamiaabfcecbphfjepfgcffmg_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_jpfpebmajhhopeonhlcgidhclcccjcik_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_jpfpebmajhhopeonhlcgidhclcccjcik_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_kbnfbcpkiaganjpcanopcgeoehkleeck_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_kbnfbcpkiaganjpcanopcgeoehkleeck_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_noojglkidnpfjbincgijbaiedldjfbhh_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_noojglkidnpfjbincgijbaiedldjfbhh_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_oknpjjbmpnndlpmnhmekjpocelpnlfdi_0.localstorage deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\chrome-extension_oknpjjbmpnndlpmnhmekjpocelpnlfdi_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\https_getadblock.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\https_medium.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\https_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_cdn.cxense.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_disqus.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_gigaom.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_issuu.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_mashable.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_oceanicshop.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_premium.wpmudev.org_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_secure-us.imrworldwide.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_tejji.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_thenextweb.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_veja.abril.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_www.computerworld.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_www.flixster.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_www.globo.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_www.minhavida.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_www.superfish.com_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\http_www.valor.com.br_0.localstorage-journal deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_decdfngdidijkdjgbknlnepdljfaepji_0 deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_jpfpebmajhhopeonhlcgidhclcccjcik_0 deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_pnmchffiealhkdloeffcdnbgdnedheme_0 deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\databases\chrome-extension_jpfpebmajhhopeonhlcgidhclcccjcik_0 deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Local Extension Settings\gpdjojdkbbmdfjfahjcgigfpmkopogic deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\fcoecifcadmambfikillppkoafmgachp deleted successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik deleted successfully ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com.br/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] No DefaultScope Set For HKCU New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.google.com.br/" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" ==== Reset Google Chrome ====================== C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data was reset successfully ==== shortcuts on Users Desktops ====================== C:\Users\Evo\Desktop\Novo Xampp Encerrar.lnk - C:\xampp_novo\xampp_stop.exe C:\Users\Evo\Desktop\Novo Xampp Iniciar.lnk - C:\xampp_novo\xampp_start.exe C:\Users\Evo\Desktop\Atalhos\1-Click Maintenance.lnk - C:\Program Files (x86)\TuneUp Utilities 2007\OneClickMaintenance.exe /oneclickscan C:\Users\Evo\Desktop\Atalhos\Adobe Acrobat 8 Professional.lnk - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrobat.exe C:\Users\Evo\Desktop\Atalhos\Adobe Acrobat X Pro.lnk - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat.exe C:\Users\Evo\Desktop\Atalhos\Adobe Dreamweaver CS6.lnk - C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\Dreamweaver.exe C:\Users\Evo\Desktop\Atalhos\Adobe Photoshop CS6 (64 Bit).lnk - C:\Program Files (x86)\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe C:\Users\Evo\Desktop\Atalhos\Adobe Reader X.lnk - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe C:\Users\Evo\Desktop\Atalhos\BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSplayer\bsplayer.exe C:\Users\Evo\Desktop\Atalhos\CCleaner.lnk - C:\Program Files (x86)\CCleaner\CCleaner64.exe C:\Users\Evo\Desktop\Atalhos\CDisplay.lnk - C:\Program Files (x86)\CDisplay\CDisplay.exe C:\Users\Evo\Desktop\Atalhos\Color Cop.lnk - C:\Program Files (x86)\Color_Cop\ColorCop.exe C:\Users\Evo\Desktop\Atalhos\Computador - Atalho.lnk - C:\Users\Evo\Desktop\Atalhos\ConceptDraw Office MINDMAP.lnk - C:\Program Files (x86)\ConceptDraw Office\ConceptDraw MINDMAP\CDMindMap6.exe C:\Users\Evo\Desktop\Atalhos\ConceptDraw Office PRO.lnk - C:\Program Files (x86)\ConceptDraw Office\ConceptDraw PRO\CDPro8.exe C:\Users\Evo\Desktop\Atalhos\ConceptDraw Office PROJECT.lnk - C:\Program Files (x86)\ConceptDraw Office\ConceptDraw PROJECT\CDProject5.exe C:\Users\Evo\Desktop\Atalhos\FileZilla.lnk - C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe C:\Users\Evo\Desktop\Atalhos\Foxit Reader.lnk - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Reader.exe C:\Users\Evo\Desktop\Atalhos\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Evo\Desktop\Atalhos\HiJackThis.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe C:\Users\Evo\Desktop\Atalhos\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe C:\Users\Evo\Desktop\Atalhos\LibreOffice 4.2.lnk - C:\Program Files (x86)\LibreOffice 4\program\soffice.exe C:\Users\Evo\Desktop\Atalhos\Microsoft Office Excel 2007.lnk - C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe C:\Users\Evo\Desktop\Atalhos\Microsoft Office Word 2007.lnk - C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe C:\Users\Evo\Desktop\Atalhos\MiniTool Partition Wizard Home Edition.lnk - C:\Program Files (x86)\MiniTool Partition Wizard Home Edition 8.1.1\loader.exe C:\Users\Evo\Desktop\Atalhos\Mozilla Firefox.lnk - C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Users\Evo\Desktop\Atalhos\MySQL-Front.lnk - C:\Program Files (x86)\MySQL-Front\MySQL-Front.exe C:\Users\Evo\Desktop\Atalhos\PowerISO.lnk - C:\Program Files (x86)\PowerISO\PowerISO.exe C:\Users\Evo\Desktop\Atalhos\Primeiro usuário - Chrome.lnk - C:\Users\Evo\Desktop\Atalhos\Qget.lnk - C:\Program Files (x86)\QNAP\Qget\Qget.exe C:\Users\Evo\Desktop\Atalhos\Rede - Atalho.lnk - C:\Users\Evo\Desktop\Atalhos\Skype.lnk - C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe C:\Users\Evo\Desktop\Atalhos\Sound Forge Pro 10.0.lnk - C:\Program Files (x86)\Sony\Sound Forge Pro 10.0\Forge100.exe C:\Users\Evo\Desktop\Atalhos\SQL Studio for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\ibstudio.exe C:\Users\Evo\Desktop\Atalhos\TeamViewer 9.lnk - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe C:\Users\Evo\Desktop\Atalhos\ThunderbirdPortable.exe - Atalho.lnk - X:\Perfis\I7Julio2013\Thunderbird\ThunderbirdPortable\ThunderbirdPortable.exe C:\Users\Evo\Desktop\Atalhos\Tomboy Notes.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Installer\{727D3A82-85EA-472A-A462-F53D8EB39FCE}\Tomboy.exe C:\Users\Evo\Desktop\Atalhos\TuneUp Utilities 2007.lnk - C:\Program Files (x86)\TuneUp Utilities 2007\Integrator.exe C:\Users\Evo\Desktop\Atalhos\Winamp.lnk - C:\Program Files (x86)\Winamp\winamp.exe C:\Users\Evo\Desktop\Atalhos\XAMPP Control Panel.lnk - C:\xampp\xampp-control.exe C:\Users\Evo\Desktop\Atalhos\XnView.lnk - C:\Program Files (x86)\XnView\xnview.exe ==== shortcuts on All Users Desktop ====================== C:\Users\Public\Desktop\OutWit Hub.lnk - C:\Program Files (x86)\OutWit\OutWit Hub\outwit-hub.exe C:\Users\Public\Desktop\Popcorn-Time.lnk - C:\Program Files (x86)\Time4Popcorn\Popcorn Time\Popcorn-Time.exe ==== shortcuts in Users Start Menu ====================== C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tomboy Notes.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Installer\{727D3A82-85EA-472A-A462-F53D8EB39FCE}\Tomboy.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Friends\XAMPP\Uninstall.lnk - C:\xampp\Uninstall.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Friends\XAMPP\XAMPP Control Panel.lnk - C:\xampp\xampp-control.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Apache Friends\XAMPP\XAMPP httpdoc folder.lnk - C:\xampp\htdocs C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Studio Agent.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\ibagent.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Studio for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\ibstudio.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Studio for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\IbStudio.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Studio for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\ibstudio.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Uninstall SQL Studio for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Uninstall.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Comparer for InterBase & Firebird\Data Comparer Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Comparer\IbDataComparerC.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Comparer for InterBase & Firebird\Data Comparer for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Comparer\IbDataComparer.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Comparer for InterBase & Firebird\Data Comparer for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Comparer\IBDataComparer.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Comparer for InterBase & Firebird\Data Comparer for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Comparer\IbDataComparer.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Export for InterBase & Firebird\Data Export Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Export\IbExportC.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Export for InterBase & Firebird\Data Export for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Export\IbExport.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Export for InterBase & Firebird\Data Export for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Export\ibexport.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Export for InterBase & Firebird\Data Export for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Export\IbExport.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Generator for InterBase & Firebird\Data Generator Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Generator\IbDatagenC.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Generator for InterBase & Firebird\Data Generator for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Generator\IbDataGen.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Generator for InterBase & Firebird\Data Generator for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Generator\ibdatagen.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Generator for InterBase & Firebird\Data Generator for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Generator\IbDataGen.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Import for InterBase & Firebird\Data Import Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Import\IbImportC.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Import for InterBase & Firebird\Data Import for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Import\IbImport.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Import for InterBase & Firebird\Data Import for SQL InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Import\ibimport.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Import for InterBase & Firebird\Data Import for SQL InterBase & Firebird PDF Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Import\IbImport.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Pump for InterBase & Firebird\Data Pump Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Pump\IbDatapumpC.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Pump for InterBase & Firebird\Data Pump for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Pump\ibdatapump.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Pump for InterBase & Firebird\Data Pump for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Pump\ibdatapump.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\Data Pump for InterBase & Firebird\Data Pump for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Data Pump\IbDataPump.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Comparer for InterBase & Firebird\DB Comparer Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Comparer\ibcomparerc.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Comparer for InterBase & Firebird\DB Comparer for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Comparer\IBComparer.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Comparer for InterBase & Firebird\DB Comparer for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Comparer\IbComparer.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Extract for InterBase & Firebird\DB Extract Console for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Extract\IbExtractC.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Extract for InterBase & Firebird\DB Extract for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Extract\IbExtract.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Extract for InterBase & Firebird\DB Extract for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Extract\ibextract.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\DB Extract for InterBase & Firebird\DB Extract for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\DB Extract\IbExtract.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Manager for InterBase & Firebird\Report Designer Reference.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Manager\FRUserManual.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Manager for InterBase & Firebird\SQL Manager for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Manager\IbManager.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Manager for InterBase & Firebird\SQL Manager for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Manager\ibmanager.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Manager for InterBase & Firebird\SQL Manager for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Manager\IBManager.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Manager for InterBase & Firebird\SQL Reference.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Manager\ibsql.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Query for InterBase & Firebird\SQL Query for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Query\IBQuery.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Query for InterBase & Firebird\SQL Query for InterBase & Firebird User's Manual.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Query\ibquery.pdf C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Query for InterBase & Firebird\SQL Query for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Query\IbQuery.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Script for InterBase & Firebird\SQL Script for InterBase & Firebird Help.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Script\Ibsqlscript.chm C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EMS\SQL Studio for InterBase & Firebird\SQL Script for InterBase & Firebird\SQL Script for InterBase & Firebird.lnk - C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\SQL Script\ibsqlscript.exe C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis\HiJackThis.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe ==== shortcuts in All Users Start Menu ====================== C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Client.lnk - C:\Program Files (x86)\LogMeIn\Ignition\LMIIgnition.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Control Panel.lnk - C:\Program Files (x86)\LogMeIn\x64\LogMeInToolkit.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OutWit Hub.lnk - C:\Program Files (x86)\OutWit\OutWit Hub\outwit-hub.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL-Front\Manual.lnk - C:\Program Files (x86)\MySQL-Front\MySQL-Front.pdf C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL-Front\MySQL-Front Help.lnk - C:\Program Files (x86)\MySQL-Front\MySQL-Front.chm C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL-Front\MySQL-Front.lnk - C:\Program Files (x86)\MySQL-Front\MySQL-Front.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL-Front\Uninstall MySQL-Front.lnk - C:\Program Files (x86)\MySQL-Front\unins000.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time\Popcorn-Time.lnk - C:\Program Files (x86)\Time4Popcorn\Popcorn Time\Popcorn-Time.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP\Uninstall XAMPP.lnk - C:\xampp_novo\uninstall.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP\XAMPP Control Panel.lnk - C:\xampp_novo\xampp-control.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP\XAMPP htdocs folder.lnk - C:\xampp_novo\htdocs ==== shortcuts in Quick Launch ====================== C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\BS.Player FREE.lnk - C:\Program Files (x86)\Webteh\BSplayer\bsplayer.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Reader.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Qget.lnk - C:\Program Files (x86)\QNAP\Qget\Qget.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk - C:\Program Files (x86)\Winamp\winamp.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Calculator.lnk - C:\Windows\system32\calc.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Snipping Tool.lnk - C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk - C:\Windows\explorer.exe C:\Users\Evo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 C:\Users\LogMeInRemoteUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\LogMeInRemoteUser\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\LogMeInRemoteUser.Evo-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\LogMeInRemoteUser.Evo-PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk - C:\Users\USURIO~1\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk - ==== Reset IE Proxy ====================== Value(s) before fix: "ProxyOverride"="*.local" "ProxyOverride.Bonjour"="" "ProxyEnable"=dword:00000000 Value(s) after fix: "ProxyOverride.Bonjour"="" "ProxyEnable"=dword:00000000 ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5ZC60WPI will be deleted at reboot C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A3TAOTCE will be deleted at reboot C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FMWMOR6E will be deleted at reboot C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SCBFTYH7 will be deleted at reboot C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== No FireFox Cache found ==== Empty Chrome Cache ====================== C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== No Java Cache Found ==== C:\zoek_backup content ====================== C:\zoek_backup (files=8554 folders=1468 2852790366 bytes) ==== Empty Temp Folders ====================== C:\Users\Default\AppData\Local\Temp emptied successfully C:\Users\Default User\AppData\Local\Temp emptied successfully C:\Users\Evo\AppData\Local\Temp will be emptied at reboot C:\Users\LogMeInRemoteUser\AppData\Local\Temp emptied successfully C:\Users\LogMeInRemoteUser.Evo-PC\AppData\Local\Temp emptied successfully C:\Users\USURIO~1\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Evo\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" deleted "C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5ZC60WPI" not found "C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A3TAOTCE" not found "C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FMWMOR6E" not found "C:\Users\Evo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SCBFTYH7" not found ==== EOF on 14/05/2014 at 12:32:07,98 ====================== Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 14, 2014 Baixe o programa Junkware Removal Tool no link abaixo: http://thisisudax.org/downloads/JRT.exe :seta: Para executar corretamente o programa acima é só seguir as dicas deste tutorial: Tutorial do Junkware Removal Tool * Na sua próxima resposta poste o log (relatório) do Junkware Removal Tool que estará salvo em sua área de trabalho com o nome de JRT.txt Ficamos na espera. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 14, 2014 Olá, obrigado. Segue relatório do JRT: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Professional x64 Ran by Evo on 14/05/2014 at 13:25:45,49 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 14/05/2014 at 13:28:53,73 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 14, 2014 * Faça o download do < ZHPDiag2.exe > < > ( ... de Nicolas Coolman ) :seta: Para instalá-lo e executá-lo corretamente siga as dicas deste artigo: Tutorial de instalação e execução do aplicativo ZHPDiag * Assim que ele concluir a sua verificação, copie todo o conteúdo do seu relatório ZHPDiag.txt e poste em sua próxima resposta. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 14, 2014 Obrigado, segue novo relatório. ~ Relatório do ZHPDiag v2014.5.14.63 - Nicolas Coolman (14/05/2014) ~ Iniciado por Evo (14/05/2014 14:05:16) ~ Endereço do Website : http://nicolascoolman.webs.com ~ Blog de análise de software : http://nicolascoolman.byethost7.com ~ Fóruns de suporte gratuito para desinfecção : http://nicolascoolman.webs.com/apps/links/ ~ Tradução pelo utilizador ~ Estatuto da versão : ~ Lista Branca : Ativado pelo programa ~ Elevação dos Privilégios : OK ~ Controle de Conta de Utilizador : Deactivate by user ---\\ Navegadores Internet MSIE: Internet Explorer v9.0.8112.16421 MFIE: Mozilla Firefox 6.0 GCIE: Google Chrome v34.0.1847.131 (Defaut) ---\\ Informações sobre os produtos Windows ~ Langage: Portugais Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Softwares de proteçao do sistema Microsoft Security Client v4.4.0304.0 Windows Defender W7 ---\\ Softwares d'optimização do sistema CCleaner v3.09 ---\\ Softwares de partilha do PeerToPeer (P2P) ---\\ Monitoramento dos softwares Adobe Flash Player 13 Plugin Adobe Reader X Java 7 Update 51 ---\\ Informações sobre o sistema ~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 16345 MB (81% free) System Restore: Activé (Enable) System drive C: has 34 GB (28%) free of 119 GB ---\\ Modo de conexão ao sistema ~ Computer Name: EVO-PC ~ User Name: Evo ~ All Users Names: LogMeInRemoteUser, Evo, Convidado, Administrador, ~ Unselected Option: 045,061,O62,065,066,080,O82,089 Logged in as Administrator ---\\ As variáveis de ambiente ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Evo\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Evo\AppData\Roaming\ ~ %Desktop% : C:\Users\Evo\Desktop\ ~ %Favorites% : C:\Users\Evo\Favorites\ ~ %LocalAppData% : C:\Users\Evo\AppData\Local\ ~ %StartMenu% : C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumeração das unidades dos discos B: Hard drive, Flash drive, Thumb drive (Free 43 Go of 1863 Go) C: Hard drive, Flash drive, Thumb drive (Free 34 Go of 119 Go) D: CD-ROM drive (Not Inserted) E: Hard drive, Flash drive, Thumb drive (Free 457 Go of 466 Go) F: CD-ROM drive (Not Inserted) G: Floppy drive, Flash card reader, USB Key (Not Inserted) H: Floppy drive, Flash card reader, USB Key (Not Inserted) I: Floppy drive, Flash card reader, USB Key (Not Inserted) J: Floppy drive, Flash card reader, USB Key (Not Inserted) ---\\ Estado do Centro de Segurança do Windows [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyGames: Modified ~ Security Center: 43 Legitimates Filtered in 00mn 00s ---\\ Pesquisa particular de ficheiros genéricos [MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Windows Explorer.) (.21/11/2010 - 00:24:11.) -- C:\Windows\Explorer.exe [2872320] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.1BF2BCC7E3C26FD4C8EF0C9EFB0CC25D] - (.Microsoft Corporation - Internet Extensions para Win32.) (.15/03/2011 - 13:36:53.) -- C:\Windows\System32\wininet.dll [1389056] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.21/11/2010 - 00:24:29.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.21/11/2010 - 00:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.D31DC7A16DEA4A9BAF179F3D6FBDB38C] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/11/2010 - 00:24:08.) -- C:\Windows\system32\Drivers\AFD.sys [499712] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.FAF015B07E3A2874A790A39B7D2C579F] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.21/11/2010 - 00:24:03.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 00:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.21/11/2010 - 00:23:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1659776] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 00:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/11/2010 - 00:25:07.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Estatuto dos ficheiros ocultos (Oculto/Total) ~ Mes images (My Pictures) : 1/19 ~ Mes musiques (My Musics) : 1/7 ~ Mes Favoris (My Favorites) : 1/8 ~ Mes Documents (My Documents) : 1/16 ~ Mon Bureau (My Desktop) : 0/44 ~ Menu demarrer (Programs) : 1/84 ~ Hidden Files: Scanned in 00mn 00s ---\\ Processos lançados [MD5.615E58F9963734185756AEE4959BA964] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [20728480] [PID.3576] [MD5.7DFCCC67990B6DE7F30F553A4E4612A4] - (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe [495616] [PID.3768] [MD5.A005676B30AEB3C7703C317D992B193A] - (.Intel Corporation - Intel® USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648] [PID.3684] [MD5.AA16204FD1F75637E8EAEB593A8FA597] - (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.exe [180224] [PID.3480] [MD5.A668E79F7438B556B8097891FECD978F] - (.Fitbit, Inc. - Fitbit Connect Desktop Client.) -- C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3093024] [PID.2636] [MD5.FB202A64FDA1B8AD152FAB82DC174A03] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe [81920] [PID.3880] [MD5.590A51B21911DFCFF4E186AAF31559F0] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2785280] [PID.3628] [MD5.542459D16B416D054161007FC9B1246E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [841032] [PID.1520] [MD5.E1B4EE856AD8A31B64D9E2AB20542D96] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7874560] [PID.1700] [MD5.62B7936F9036DD6ED36E6A7EFA805DC0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [63928] [PID.1740] [MD5.F518545E5B7623AD49ABE7F8776EFA46] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1768] [MD5.74CA3E6AD08389B78939EA0F1A2A0789] - (.Fitbit, Inc. - Fitbit Connect Service.) -- C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe [1239584] [PID.1860] [MD5.7CF1B716372B89568AE4C0FE769F5869] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872] [PID.1148] [MD5.543A4EF0923BF70D126625B034EF25AF] - (.Protexis Inc. - PsiService PsiService.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [189728] [PID.2108] [MD5.97F6FFB8A305A77D25C6C0E07B71D252] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [5024576] [PID.2424] ~ Processes Running: Scanned in 00mn 00s ---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2) C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Preferences G0 - GCSP: Preference [user Data\Default][HomePage] http://mail.google.com G2 - GCE: Preference [user Data\Default] [acgdjjilmhiofacmdnmmlndeokamkkcl] Instapaper v.1.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Loja v.0.2 (Activé) G2 - GCE: Preference [user Data\Default] [aonjhmdcgbgikgjapjckfkefpphjpgma] MeasureIt! v.1.1.3 (Activé) G2 - GCE: Preference [user Data\Default] [baohinapilmkigilbbbcccncoljkdpnd] Shortcuts for Googleâ„¢ v.3.4.1 (Désactivé) G2 - GCE: Preference [user Data\Default] [bbncpldmanoknoahidbgmkgobgmhnafh] Last.fm free music player v.3.26, (Désactivé) G2 - GCE: Preference [user Data\Default] [bcamgnkjooghefjjfgfhnepedkodbgec] Send this page by email v.1.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [bhlhnicpbhignbdhedgjhgdocnmhomnp] ColorZilla v.0.5.5, (Activé) G2 - GCE: Preference [user Data\Default] [bldchfkhmnkoimaciljpilanilmbnofo] Search and Replace v.1.2.3, (Désactivé) G2 - GCE: Preference [user Data\Default] [caoihfibgoiiakncomhccbflmlgjaohf] GistBox v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [chphlpgkkbolifaimnlloiipkdnihall] OneTab v.1.6 (Activé) =>Adware.OneTab G2 - GCE: Preference [user Data\Default] [cogpihfjkdnalpenphgjgmpbhnkkghno] All JS Viewer v.1.1.0 (Désactivé) G2 - GCE: Preference [user Data\Default] [decdfngdidijkdjgbknlnepdljfaepji] Read Later Fast v.1.6.8, (Désactivé) G2 - GCE: Preference [user Data\Default] [djdmadneanknadilpjiknlnanaolmbfk] Copy All Urls v.2.9 (Activé) G2 - GCE: Preference [user Data\Default] [doaaifppmpcnbkmpegmpkkcnlobgifid] Guerapa Desprotetor v.1.1 (Désactivé) G2 - GCE: Preference [user Data\Default] [embakochaelgijbeolbbgnljfgpbeeoe] MyMenu v.1.0.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [gekhbemhcekbaodnijabeajoeolfplbp] Resizer v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [giicnncicnopjohcpamieklkiacdoeni] Android Desktop Notifications v.2.2.1, (Désactivé) G2 - GCE: Preference [user Data\Default] [glfbkgkceahodalogdpenjoekbacjfcj] Crimson: Steam Pirates v.1.0 (Désactivé) G2 - GCE: Preference [user Data\Default] [goanabmlmgfinmjohhepcpffcnkeobjm] Translate selection v.1.4.6 (Activé) G2 - GCE: Preference [user Data\Default] [gpdjojdkbbmdfjfahjcgigfpmkopogic] Pin It Button v.1.3.1, (Désactivé) G2 - GCE: Preference [user Data\Default] [hclgegipaehbigmbhdpfapmjadbaldib] Website Blocker (Beta) v.0.2.6.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [idfmgklhndkcggamadboiaepmohpjhjj] Concentrate v.1.0.5 (Désactivé) G2 - GCE: Preference [user Data\Default] [ijoeapleklopieoejahbpdnhkjjgddem] Adobe Edge Inspect CC v.1.0.424.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [imcbnnnoghiihopefblgehihofbfbmei] Desprotetor de Links v.2.0.1.7, (Désactivé) G2 - GCE: Preference [user Data\Default] [jgpocibfamiaabfcecbphfjepfgcffmg] 1 Click Translator v.7.5.5 (Activé) G2 - GCE: Preference [user Data\Default] [jhknlonaankphkkbnmjdlpehkinifeeg] Formulários do Google v.0.5 (Désactivé) G2 - GCE: Preference [user Data\Default] [jnmikoljlndfcmbjkjcfmffgajkmhcgg] archify v.0.95, (Désactivé) G2 - GCE: Preference [user Data\Default] [kbnfbcpkiaganjpcanopcgeoehkleeck] Cookie Manager v.1.1 (Activé) G2 - GCE: Preference [user Data\Default] [kdfocinodgkchekeanmhdlemdoonpodf] The Next Web v.1.4.1 (Désactivé) G2 - GCE: Preference [user Data\Default] [khobgoemenoleeedfbilehnpoelmkbko] table to csv v.1.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [laankejkbhbdhmipfmgcngdelahlfoji] StayFocusd v.1.4.9, (Désactivé) G2 - GCE: Preference [user Data\Default] [mcceagdollnkjlogmdckgjakjapmkdjf] Download Master v.4.0.0.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé) G2 - GCE: Preference [user Data\Default] [mjojodpkaeeclkgaidibcbknlhjflhle] Buffer v.1.0.3 (Activé) G2 - GCE: Preference [user Data\Default] [molncoemjfmpgdkbdlbjmhlcgniigdnf] Project Naptha v.0.7.10 (Activé) G2 - GCE: Preference [user Data\Default] [nangghhladpnhlllolmdbdgeggionole] Tendências Histórico v.1.5.1 (Activé) G2 - GCE: Preference [user Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [ngjdhjgbagpeimgpgloofkfoipgpdgdb] Mail this link v.1.1.1 (Activé) G2 - GCE: Preference [user Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [nnhlnnalackljjehlfocmheepffkiihf] Mural.ly v.1.6.4 (Activé) G2 - GCE: Preference [user Data\Default] [noojglkidnpfjbincgijbaiedldjfbhh] Buffer v.2.3.36, (Désactivé) G2 - GCE: Preference [user Data\Default] [npknnddabjhdijgmmbocdicnknegobkm] Fruumo - New Tab Page v.1.4.3, (Désactivé) =>PUP.QuickShare G2 - GCE: Preference [user Data\Default] [opjkhfahjokocpjfihcbfkmipdhcaknn] Scoop.it v.1.1.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [pffipagakjgfndljjpkbdpoimojmgjca] No BBB v.3.1, (Désactivé) G2 - GCE: Preference [user Data\Default] [phjogflimgkcjchomcmgaoknnaichekp] Buffer Status v.2.0.5 (Désactivé) ---\\ Pasta de extensão do Google Chrome ~ Google Lines Browser: 72 Legitimates Filtered in 00mn 10s ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3) C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default\prefs.js M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml ~ Firefox Browser: 16 Legitimates Filtered in 00mn 00s ---\\ Internet Explorer, Gestão do Proxy (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Redireção do ficheiro Hosts (01) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Barras do Internet Explorer (03)) O3 - Toolbar\WebBrowser: (no name) - [HKCU]{41564952-412D-5637-4300-7A786E7484D7} Chave orfã O3 - Toolbar\WebBrowser: (no name) - [HKCU]{47833539-D0C5-4125-9FA8-0819E2EAAC93} Chave orfã ~ Toolbar: Scanned in 00mn 00s ---\\ Aplicações iniciadas por registo & pastas (04) O4 - HKLM\..\Run: [igfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe O4 - HKLM\..\Run: [LogMeIn GUI] . (.LogMeIn, Inc. - LogMeIn Desktop Application.) -- C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe O4 - HKCU\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - HKCU\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4C82CD30F99DCC06E6594531DE47FB57] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - HKLM\..\Wow6432Node\Run: [uSB3MON] . (.Intel Corporation - Intel® USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe O4 - HKLM\..\Wow6432Node\Run: [PWRISOVM.EXE] . (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.exe O4 - HKLM\..\Wow6432Node\Run: [Fitbit Connect] . (.Fitbit, Inc. - Fitbit Connect Desktop Client.) -- C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe O4 - HKLM\..\Wow6432Node\Run: [Firebird] . (.Firebird Project - Firebird SQL Server.) -- C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1018309962-2952455908-291837673-1000\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - HKUS\S-1-5-21-1018309962-2952455908-291837673-1000\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-1018309962-2952455908-291837673-1000\..\Run: [GoogleChromeAutoLaunch_4C82CD30F99DCC06E6594531DE47FB57] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ~ Application: Scanned in 00mn 00s ---\\ Alteração Dominio/Clientes DNS (017) O17 - HKLM\System\CCS\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Protocolo adicional (018) O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft ®.) -- C:\Windows\System32\mshtml.dll O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valor do Registo AppInit_DLLs e sub-chaves Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Tarefas planificadas automaticamente (039) [MD5.634973C2CCE8398A7202316E2DF5F108] [APT] [backup] (...) -- C:\bat\backup.bat [56] O39 - APT: - (..) -- C:\Windows\Tasks\1-Click Maintenance.job [398] O39 - APT: - (..) -- C:\Windows\System32\Tasks\1-Click Maintenance [398] O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [902] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1058] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1062] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1018309962-2952455908-291837673-1000Core [1018] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1018309962-2952455908-291837673-1000UA [1070] ~ Scheduled Task: 14 Legitimates Filtered in 00mn 01s ---\\ Software instalados (042) O42 - Logiciel: Licensing Service (03000201) - (.Protexis Inc..) [HKLM][64Bits] -- {9F9C5C18-9665-41EC-A660-5A3BA213CA1D} O42 - Logiciel: Tomboy Notes - (.Tomboy Project.) [HKLM][64Bits] -- {727D3A82-85EA-472A-A462-F53D8EB39FCE} ~ Logic: 4 Legitimates Filtered in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\CS Odessa] [HKCU\Software\LC Technology Inc] [HKLM\Software\Wow6432Node\CS Odessa] [HKLM\Software\Wow6432Node\Time4Popcorn] [HKLM\Software\Wow6432Node\Tomboy] ~ Key Software: 338 Legitimates Filtered in 00mn 00s ---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 11/05/2014 - 14:54:35 - [] ----D C:\Program Files (x86)\Time4Popcorn O43 - CFD: 05/04/2014 - 10:59:42 - [] ----D C:\Program Files (x86)\Tomboy O43 - CFD: 31/03/2014 - 18:07:18 - [] ----D C:\ProgramData\createpart O43 - CFD: 31/03/2014 - 18:07:57 - [] ----D C:\ProgramData\deletepart O43 - CFD: 07/02/2014 - 14:12:38 - [] ----D C:\ProgramData\subtle O43 - CFD: 12/03/2014 - 14:30:18 - [] ----D C:\Users\Evo\AppData\Roaming\CSOdessa O43 - CFD: 06/02/2014 - 22:05:16 - [] ----D C:\Users\Evo\AppData\Roaming\library_dir O43 - CFD: 05/04/2014 - 11:05:37 - [] ----D C:\Users\Evo\AppData\Roaming\Tomboy O43 - CFD: 11/05/2014 - 15:07:19 - [] ----D C:\Users\Evo\AppData\Local\Popcorn-Time O43 - CFD: 05/04/2014 - 11:01:06 - [] ----D C:\Users\Evo\AppData\Local\Tomboy ~ Program Folder: 211 Legitimates Filtered in 00mn 00s ---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044) O44 - LFC:[MD5.78C710873EFB6A9E84D91AC88DEE45EB] - 03/05/2014 - 09:26:57 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147568] O44 - LFC:[MD5.5A0E9BF172556EE137A90AB8F1D8FD78] - 03/05/2014 - 09:26:57 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [707322] O44 - LFC:[MD5.6FE0FB308956078E237EB8AB147AB156] - 05/05/2014 - 21:29:52 ---A- . (...) -- C:\Windows\FontData.fdb [866594] O44 - LFC:[MD5.CC7AA7B42CF418FC3D926913490048F8] - 14/05/2014 - 12:16:37 ---A- . (...) -- C:\Windows\zoek-delete.exe [24064] O44 - LFC:[MD5.61DCB88ED576666809475B6859C4BDAC] - 14/05/2014 - 12:32:07 ---A- . (...) -- C:\zoek-results.log [158757] ~ Files: 14 Legitimates Filtered in 00mn 02s ---\\ Chave do registo Shell MountPoints2 (MPKS) (O51) O51 - MPSK:{6da6d665-8ed4-11e3-977a-94de8075923e}\AutoRun\command. (...) -- E:\setup.exe (.not file.) ~ Keys: Scanned in 00mn 00s ---\\ Enumeração das chaves do registo StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\SQL Studio Agent for InterBase & Firebird [Key] . (.EMS Database Management Solutions, Inc. - SQL Management Studio for Interbase Agent.) -- C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\ibagent.exe ~ SMSR Keys: 14 Legitimates Filtered in 00mn 00s ---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 18 Legitimates Filtered in 00mn 00s ---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 ~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s ---\\ Lista dos drivers do sistema (SDL) (O58) O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:12/04/2010 - 05:55:00 ---A- . (.PowerISO Computing, Inc. - PowerISO Virtual Drive.) -- C:\Windows\System32\Drivers\scdemu.sys [91568] O58 - SDL:24/02/2012 - 06:14:42 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [99384] O58 - SDL:24/02/2012 - 06:14:42 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [203320] O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:17/01/2010 - 13:10:54 ---A- . (.Windows ® 2000 DDK provider - Image Mounter SCSI Port Driver.) -- C:\Windows\System32\Drivers\uimx64.sys [48144] O58 - SDL:18/03/2013 - 15:51:08 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl64.sys [54784] O58 - SDL:30/09/2013 - 16:26:50 ----- . (...) -- C:\Windows\System32\pwdrvio.sys [19152] O58 - SDL:30/09/2013 - 16:26:48 ----- . (...) -- C:\Windows\System32\pwdspio.sys [12504] ~ Drivers: 68 Legitimates Filtered in 00mn 10s ---\\ Lista das ferramentas de remoção de vírus (LAT) (063) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman O63 - Logiciel: HiJackThis - (.Trend Micro.) [HKLM] -- {45A66726-69BC-466B-A7A4-12FCBA4883D7} ~ ADS: Scanned in 00mn 00s ---\\ Associações Shell Spawning (O67) O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.) ~ FASS Keys: 11 Legitimates Filtered in 00mn 00s ---\\ Menu de inicialização Internet (068) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: <OUTWIT-HUB.EXE> <OutWit Hub>[HKLM\..\Shell\open\Command] (.Mozilla Foundation - No Comment.) -- C:\Program Files (x86)\OutWit\OutWit Hub\outwit-hub.exe ~ Keys: Scanned in 00mn 00s ---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com ~ Keys: Scanned in 00mn 00s ---\\ Search Tracing Registry Key (O100) HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\googletoolbar_RASAPI32 =>Toolbar.Google HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\googletoolbar_RASMANCS =>Toolbar.Google ~ BTK: 161 Legitimates Filtered in 00mn 00s ---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados) SS - | Demand 14/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 24/08/2012 276288 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe SS - | Demand 07/02/2014 654848 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - | Auto 05/02/2014 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 05/02/2014 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 06/02/2014 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe SS - | Auto 13/07/2009 27136 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software GmbH.) - C:\Windows\System32\svchost.exe SS - | Demand 23/06/2013 24576 | (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe SS - | Demand 23/06/2013 12867584 | (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe SS - | Demand 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SS - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 03/01/2012 63928 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 04/05/2010 202752 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 07/01/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - | Auto 30/08/2011 462184 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - | Auto 25/02/2013 1239584 | (Fitbit Connect) . (.Fitbit, Inc..) - C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe SR - | Auto 17/04/2014 376144 | (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe SR - | Auto 17/04/2014 226640 | (LMIMaint) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe SR - | Auto 11/12/2013 407424 | (LogMeIn) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe SR - | Auto 23/10/2013 23808 | (MsMpSvc) . (.Microsoft Corporation.) - C:\Program Files\Microsoft Security Client\MsMpEng.exe SR - | Auto 10/03/2010 189728 | (PSI_SVC_2) . (.Protexis Inc..) - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe SR - | Auto 30/11/2010 336824 | (PSI_SVC_2_x64) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe SR - | Auto 25/04/2014 5024576 | (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 04s ---\\ Scâner Aditional (088) Database Version : 13045 - (14/05/2014) Clés trouvées (Keys found) : 2 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 2 Fichiers trouvés (Files found) : 0 [HKLM\Software\Google\Chrome\Extensions\chphlpgkkbolifaimnlloiipkdnihall] =>Adware.OneTab^ [HKLM\Software\Google\Chrome\Extensions\npknnddabjhdijgmmbocdicnknegobkm] =>PUP.QuickShare^ C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall =>Adware.OneTab^ C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\npknnddabjhdijgmmbocdicnknegobkm =>PUP.QuickShare^ ~ Additionnel Scan: 508070 Items scanned in 00mn 21s ---\\ Sumário das deteções encontradas na sua estação http://nicolascoolman.webs.com/apps/blog/show/27255121-adware-onetab =>Adware.OneTab http://nicolascoolman.byethost7.com/pup-quickshare =>PUP.QuickShare ~ MSI: 2 link(s) detected in 00mn 00s ~ 814 Legitimates filtered by white list End of the scan (473 lines in 03mn 15s)(0) Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 14, 2014 :seta: Há programas desnecessários iniciando junto com o Windows, o que torna o seu PC mais lento. Para corrigir isto, siga as dicas deste tutorial:Escolhendo Programas que Iniciam com o PCDe preferência deixe apenas os programas de segurança (anti-vírus/anti-spywares/firewall) iniciarem junto com o Windows.Use também o programa Ccleaner, indicado neste tutorial acima, para fazer uma limpeza e otimização do PC agora e de tempos em tempos._____________________________________________________________________________________ :seta: Acesse o site https://www.virustotal.com e envie este arquivo destacado em azul abaixo para ser analisado:C:\bat\backup.batAssim que a análise dele for concluída, copie o link que aparecerá na barra de endereços de seu navegador e poste este link em sua próxima resposta juntamente com o log do ZHPFix pedido nesta postagem.Maiores informações de como analisar arquivos no site Virus Total você encontra neste tutorial:Analise arquivos e links suspeitos de forma online e totalmente gratuita_________________________________________________________________________________ :seta: Selecione e copie todo o texto destacado em vermelho que te passei._____________________________________________________________________________________________________________ :seta: Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.Copie este relatório e poste em sua próxima resposta juntamente com o link da análise do arquivo no site Virus Total. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 14, 2014 Obrigado. Sobre retirar arquivos na inicialização, estes dias olhei isto e deixei algumas coisas que não tinha certeza se podia tirar. Mas com seu esclarecimento deixei só uns 3 a 5 carregando na inicialização. O CCleaner eu passei antes de abrir este tópico. Passo de novo? Sobre o arquivo backup.bat ele foi criado por mim mesmo, é um robocopy, pois prefiro o DOS para sincronia de backups. Segue o relatório solicitado: Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014 Fichier d'export Registre : Run by Evo at 14/05/2014 20:00:32 High Elevated Privileges : OK Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601) Reciclagem vazia (00mn 02s) Reparação de atalhos do navegador ========== Chaves do Registo ========== ELIMINÉ CLSID MPSK: {6da6d665-8ed4-11e3-977a-94de8075923e} ELIMINÉ: Service: Bonjour Service ========== Valores do Registo ========== ELIMINÉ: Toolbar: {41564952-412D-5637-4300-7A786E7484D7} ProxyFix : Configuração proxy removida com sucesso ELIMINÉ ProxyServer Value ELIMINÉ ProxyEnable Value ELIMINÉ EnableHttp1_1 Value ELIMINÉ ProxyHttp1.1 Value ELIMINÉ ProxyOverride Value ========== Pastas ========== Nenhuma pasta CLSID local utilizador vazia ========== Ficheiros ========== ELIMINA REINICIAR: c:\program files\bonjour\mdnsresponder.exe ELIMINÉ Temporários windows (245) (6.155.410 octets) ELIMINÉ Flash Cookies (0) (0 octets) ========== Restauração Sistema ========== Ponto de restauro do sistema criado com sucesso ========== Recapitulativo ========== 2 : Chaves do Registo 7 : Valores do Registo 1 : Pastas 3 : Ficheiros 1 : Restauração Sistema End of clean in 00mn 16s ========== Caminho do ficheiro do relatório ========== C:\Users\Evo\AppData\Roaming\ZHP\ZHPFix[R1].txt - 14/05/2014 20:00:34 [1320] Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 14, 2014 Como você já passou o Ccleaner não precisa usar de novo. :seta: Abra novamente o ( ZHPDiag ) |- Clique "SEARCH" ou "PESQUISAR" e aguarde a conclusão. |- Clique OK e, ao concluir, poste o relatório ZHPDiag.txt Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 15, 2014 Obrigado. Segue novo relatório: ~ Relatório do ZHPDiag v2014.5.14.63 - Nicolas Coolman (14/05/2014) ~ Iniciado por Evo (15/05/2014 00:24:05) ~ Endereço do Website : http://nicolascoolman.webs.com ~ Blog de análise de software : http://nicolascoolman.byethost7.com ~ Fóruns de suporte gratuito para desinfecção : http://nicolascoolman.webs.com/apps/links/ ~ Tradução pelo utilizador ~ Estatuto da versão : ~ Lista Branca : Ativado pelo programa ~ Elevação dos Privilégios : OK ~ Controle de Conta de Utilizador : Deactivate by user ---\\ Navegadores Internet MSIE: Internet Explorer v9.0.8112.16421 MFIE: Mozilla Firefox 6.0 GCIE: Google Chrome v34.0.1847.137 (Defaut) ---\\ Informações sobre os produtos Windows ~ Langage: Portugais Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) Windows Server License Manager Script : OK Software Protection Service (Protection logicielle) : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Softwares de proteçao do sistema Microsoft Security Client v4.4.0304.0 Windows Defender W7 ---\\ Softwares d'optimização do sistema CCleaner v3.09 ---\\ Softwares de partilha do PeerToPeer (P2P) ---\\ Monitoramento dos softwares Adobe Flash Player 13 Plugin Adobe Reader X Java 7 Update 51 ---\\ Informações sobre o sistema ~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64 Bits Boot mode: Normal (Normal boot) Total RAM: 16345 MB (73% free) System Restore: Activé (Enable) System drive C: has 33 GB (27%) free of 119 GB ---\\ Modo de conexão ao sistema ~ Computer Name: EVO-PC ~ User Name: Evo ~ All Users Names: LogMeInRemoteUser, Evo, Convidado, Administrador, ~ Unselected Option: 045,061,O62,065,066,080,O82,089 Logged in as Administrator ---\\ As variáveis de ambiente ~ System Unit : C:\ ~ %AppZHP% : C:\Users\Evo\AppData\Roaming\ZHP\ ~ %AppData% : C:\Users\Evo\AppData\Roaming\ ~ %Desktop% : C:\Users\Evo\Desktop\ ~ %Favorites% : C:\Users\Evo\Favorites\ ~ %LocalAppData% : C:\Users\Evo\AppData\Local\ ~ %StartMenu% : C:\Users\Evo\AppData\Roaming\Microsoft\Windows\Start Menu\ ~ %Windir% : C:\Windows\ ~ %System% : C:\Windows\System32\ ---\\ Enumeração das unidades dos discos B: Hard drive, Flash drive, Thumb drive (Free 43 Go of 1863 Go) C: Hard drive, Flash drive, Thumb drive (Free 33 Go of 119 Go) D: CD-ROM drive (Not Inserted) E: Hard drive, Flash drive, Thumb drive (Free 457 Go of 466 Go) F: CD-ROM drive (Not Inserted) G: Floppy drive, Flash card reader, USB Key (Not Inserted) H: Floppy drive, Flash card reader, USB Key (Not Inserted) I: Floppy drive, Flash card reader, USB Key (Not Inserted) J: Floppy drive, Flash card reader, USB Key (Not Inserted) ---\\ Estado do Centro de Segurança do Windows [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowMyGames: Modified ~ Security Center: 43 Legitimates Filtered in 00mn 00s ---\\ Pesquisa particular de ficheiros genéricos [MD5.AC4C51EB24AA95B77F705AB159189E24] - (.Microsoft Corporation - Windows Explorer.) (.21/11/2010 - 00:24:11.) -- C:\Windows\Explorer.exe [2872320] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Aplicativo de Inicialização do Windows.) (.13/07/2009 - 22:39:52.) -- C:\Windows\System32\Wininit.exe [129024] [MD5.1BF2BCC7E3C26FD4C8EF0C9EFB0CC25D] - (.Microsoft Corporation - Internet Extensions para Win32.) (.15/03/2011 - 13:36:53.) -- C:\Windows\System32\wininet.dll [1389056] [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - (.Microsoft Corporation - Aplicativo de Logon do Windows.) (.21/11/2010 - 00:24:29.) -- C:\Windows\System32\Winlogon.exe [390656] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Biblioteca de Licenciamento de Software.) (.21/11/2010 - 00:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.D31DC7A16DEA4A9BAF179F3D6FBDB38C] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/11/2010 - 00:24:08.) -- C:\Windows\system32\Drivers\AFD.sys [499712] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.13/07/2009 - 22:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.13/07/2009 - 20:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Driver de porta i8042.) (.13/07/2009 - 20:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) (.13/07/2009 - 21:10:03.) -- C:\Windows\system32\Drivers\IpNat.sys [116224] [MD5.FAF015B07E3A2874A790A39B7D2C579F] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.21/11/2010 - 00:24:03.) -- C:\Windows\system32\Drivers\MRxSmb.sys [158208] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 00:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632] [MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - (.Microsoft Corporation - Driver do Sistema de Arquivos NT.) (.21/11/2010 - 00:23:55.) -- C:\Windows\system32\Drivers\ntfs.sys [1659776] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Driver de porta paralela.) (.13/07/2009 - 21:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 00:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536] [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/11/2010 - 00:25:07.) -- C:\Windows\system32\Drivers\rdpdr.sys [165888] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.13/07/2009 - 21:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184] [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translation Driver.) (.21/11/2010 - 00:24:32.) -- C:\Windows\system32\Drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Driver de cópia de sombra de volume.) (.21/11/2010 - 00:23:47.) -- C:\Windows\system32\Drivers\volsnap.sys [295808] ~ Generic Processes: Scanned in 00mn 00s ---\\ Estatuto dos ficheiros ocultos (Oculto/Total) ~ Mes images (My Pictures) : 1/19 ~ Mes musiques (My Musics) : 1/7 ~ Mes Favoris (My Favorites) : 1/8 ~ Mes Documents (My Documents) : 1/16 ~ Mon Bureau (My Desktop) : 0/45 ~ Menu demarrer (Programs) : 1/84 ~ Hidden Files: Scanned in 00mn 00s ---\\ Processos lançados [MD5.615E58F9963734185756AEE4959BA964] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [20728480] [PID.3576] [MD5.7DFCCC67990B6DE7F30F553A4E4612A4] - (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe [495616] [PID.3768] [MD5.A005676B30AEB3C7703C317D992B193A] - (.Intel Corporation - Intel® USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648] [PID.3684] [MD5.AA16204FD1F75637E8EAEB593A8FA597] - (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.exe [180224] [PID.3480] [MD5.A668E79F7438B556B8097891FECD978F] - (.Fitbit, Inc. - Fitbit Connect Desktop Client.) -- C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe [3093024] [PID.2636] [MD5.FB202A64FDA1B8AD152FAB82DC174A03] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe [81920] [PID.3880] [MD5.590A51B21911DFCFF4E186AAF31559F0] - (.Firebird Project - Firebird SQL Server.) -- C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2785280] [PID.3628] [MD5.542459D16B416D054161007FC9B1246E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [841032] [PID.4316] [MD5.E1B4EE856AD8A31B64D9E2AB20542D96] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [7874560] [PID.6628] [MD5.62B7936F9036DD6ED36E6A7EFA805DC0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [63928] [PID.1740] [MD5.F518545E5B7623AD49ABE7F8776EFA46] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1768] [MD5.74CA3E6AD08389B78939EA0F1A2A0789] - (.Fitbit, Inc. - Fitbit Connect Service.) -- C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe [1239584] [PID.1860] [MD5.7CF1B716372B89568AE4C0FE769F5869] - (.Microsoft Corporation - Machine Debug Manager.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872] [PID.1148] [MD5.543A4EF0923BF70D126625B034EF25AF] - (.Protexis Inc. - PsiService PsiService.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [189728] [PID.2108] [MD5.97F6FFB8A305A77D25C6C0E07B71D252] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [5024576] [PID.2424] ~ Processes Running: Scanned in 00mn 00s ---\\ Google Chrome, Arranque,Pesquisa,Extensões (G0,G1,G2) C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Preferences G0 - GCSP: Preference [user Data\Default][HomePage] http://mail.google.com G2 - GCE: Preference [user Data\Default] [acgdjjilmhiofacmdnmmlndeokamkkcl] Instapaper v.1.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [ahfgeienlihckogmohjhadlkjgocpleb] Loja v.0.2 (Activé) G2 - GCE: Preference [user Data\Default] [aonjhmdcgbgikgjapjckfkefpphjpgma] MeasureIt! v.1.1.3 (Activé) G2 - GCE: Preference [user Data\Default] [baohinapilmkigilbbbcccncoljkdpnd] Shortcuts for Googleâ„¢ v.3.4.1 (Désactivé) G2 - GCE: Preference [user Data\Default] [bbncpldmanoknoahidbgmkgobgmhnafh] Last.fm free music player v.3.26, (Désactivé) G2 - GCE: Preference [user Data\Default] [bcamgnkjooghefjjfgfhnepedkodbgec] Send this page by email v.1.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [bhlhnicpbhignbdhedgjhgdocnmhomnp] ColorZilla v.0.5.5, (Activé) G2 - GCE: Preference [user Data\Default] [bldchfkhmnkoimaciljpilanilmbnofo] Search and Replace v.1.2.3, (Désactivé) G2 - GCE: Preference [user Data\Default] [caoihfibgoiiakncomhccbflmlgjaohf] GistBox v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [cogpihfjkdnalpenphgjgmpbhnkkghno] All JS Viewer v.1.1.0 (Désactivé) G2 - GCE: Preference [user Data\Default] [decdfngdidijkdjgbknlnepdljfaepji] Read Later Fast v.1.6.8, (Désactivé) G2 - GCE: Preference [user Data\Default] [djdmadneanknadilpjiknlnanaolmbfk] Copy All Urls v.2.9 (Activé) G2 - GCE: Preference [user Data\Default] [doaaifppmpcnbkmpegmpkkcnlobgifid] Guerapa Desprotetor v.1.1 (Désactivé) G2 - GCE: Preference [user Data\Default] [embakochaelgijbeolbbgnljfgpbeeoe] MyMenu v.1.0.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [gekhbemhcekbaodnijabeajoeolfplbp] Resizer v.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [giicnncicnopjohcpamieklkiacdoeni] Android Desktop Notifications v.2.2.1, (Désactivé) G2 - GCE: Preference [user Data\Default] [glfbkgkceahodalogdpenjoekbacjfcj] Crimson: Steam Pirates v.1.0 (Désactivé) G2 - GCE: Preference [user Data\Default] [goanabmlmgfinmjohhepcpffcnkeobjm] Translate selection v.1.4.6 (Activé) G2 - GCE: Preference [user Data\Default] [gpdjojdkbbmdfjfahjcgigfpmkopogic] Pin It Button v.1.3.1, (Désactivé) G2 - GCE: Preference [user Data\Default] [hclgegipaehbigmbhdpfapmjadbaldib] Website Blocker (Beta) v.0.2.6.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [idfmgklhndkcggamadboiaepmohpjhjj] Concentrate v.1.0.5 (Désactivé) G2 - GCE: Preference [user Data\Default] [ijoeapleklopieoejahbpdnhkjjgddem] Adobe Edge Inspect CC v.1.0.424.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [imcbnnnoghiihopefblgehihofbfbmei] Desprotetor de Links v.2.0.1.7, (Désactivé) G2 - GCE: Preference [user Data\Default] [jgpocibfamiaabfcecbphfjepfgcffmg] 1 Click Translator v.8.0 (Activé) G2 - GCE: Preference [user Data\Default] [jhknlonaankphkkbnmjdlpehkinifeeg] Formulários do Google v.0.5 (Désactivé) G2 - GCE: Preference [user Data\Default] [jnmikoljlndfcmbjkjcfmffgajkmhcgg] archify v.0.95, (Désactivé) G2 - GCE: Preference [user Data\Default] [kbnfbcpkiaganjpcanopcgeoehkleeck] Cookie Manager v.1.1 (Activé) G2 - GCE: Preference [user Data\Default] [kdfocinodgkchekeanmhdlemdoonpodf] The Next Web v.1.4.1 (Désactivé) G2 - GCE: Preference [user Data\Default] [khobgoemenoleeedfbilehnpoelmkbko] table to csv v.1.0.1 (Activé) G2 - GCE: Preference [user Data\Default] [laankejkbhbdhmipfmgcngdelahlfoji] StayFocusd v.1.4.9, (Désactivé) G2 - GCE: Preference [user Data\Default] [mcceagdollnkjlogmdckgjakjapmkdjf] Download Master v.4.0.0.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [mfffpogegjflfpflabcdkioaeobkgjik] GaiaAuthExtension v.0.0.1, (Activé) G2 - GCE: Preference [user Data\Default] [mjojodpkaeeclkgaidibcbknlhjflhle] Buffer v.1.0.3 (Activé) G2 - GCE: Preference [user Data\Default] [molncoemjfmpgdkbdlbjmhlcgniigdnf] Project Naptha v.0.7.10 (Activé) G2 - GCE: Preference [user Data\Default] [nangghhladpnhlllolmdbdgeggionole] Tendências Histórico v.1.5.1 (Activé) G2 - GCE: Preference [user Data\Default] [neajdppkdcdipfabeoofebfddakdcjhd] Google Network Speech v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [ngjdhjgbagpeimgpgloofkfoipgpdgdb] Mail this link v.1.1.1 (Activé) G2 - GCE: Preference [user Data\Default] [nkeimhogjdpnpccoofpliimaahmaaome] Hangout Services v.1.0 (Activé) G2 - GCE: Preference [user Data\Default] [nnhlnnalackljjehlfocmheepffkiihf] Mural.ly v.1.6.4 (Activé) G2 - GCE: Preference [user Data\Default] [noojglkidnpfjbincgijbaiedldjfbhh] Buffer v.2.3.36, (Désactivé) G2 - GCE: Preference [user Data\Default] [npknnddabjhdijgmmbocdicnknegobkm] Fruumo - New Tab Page v.1.4.3, (Désactivé) =>PUP.QuickShare G2 - GCE: Preference [user Data\Default] [opjkhfahjokocpjfihcbfkmipdhcaknn] Scoop.it v.1.1.2 (Désactivé) G2 - GCE: Preference [user Data\Default] [pffipagakjgfndljjpkbdpoimojmgjca] No BBB v.3.1, (Désactivé) G2 - GCE: Preference [user Data\Default] [phjogflimgkcjchomcmgaoknnaichekp] Buffer Status v.2.0.5 (Désactivé) ---\\ Pasta de extensão do Google Chrome ~ Google Lines Browser: 71 Legitimates Filtered in 00mn 11s ---\\ Mozilla Firefox, Plugins,Arranque,Pesquisa,Extensões (P2,M0,M1,M2,M3) C:\Users\Evo\AppData\Roaming\Mozilla\Firefox\Profiles\rdu31sqm.default\prefs.js M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\buscape.xml M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\mercadolivre.xml M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\wikipedia-br.xml M3 - MFPP: Plugins - [Evo] -- C:\Program Files (x86)\Mozilla FireFox\searchplugins\yahoo-br.xml ~ Firefox Browser: 16 Legitimates Filtered in 00mn 00s ---\\ Internet Explorer, Gestão do Proxy (R5) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ~ Proxy management: Scanned in 00mn 00s ---\\ Análise das linhas F0, F1, F2, F3 - Ficheiros ini, Carregamento Automático de programas F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe, F2 - REG:system.ini: Shell=C:\Windows\explorer.exe F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe ~ Keys: Scanned in 00mn 00s ---\\ Redireção do ficheiro Hosts (01) ~ Le fichier hosts est sain (The hosts file is clean). ~ Hosts File: Scanned in 00mn 00s ~ Nombre de lignes (Lines number): 21 ---\\ Barras do Internet Explorer (03)) O3 - Toolbar\WebBrowser: (no name) - [HKCU]{47833539-D0C5-4125-9FA8-0819E2EAAC93} Chave orfã ~ Toolbar: Scanned in 00mn 00s ---\\ Aplicações iniciadas por registo & pastas (04) O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gerenciador de áudio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe O4 - HKCU\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O4 - HKLM\..\Wow6432Node\Run: [Fitbit Connect] . (.Fitbit, Inc. - Fitbit Connect Desktop Client.) -- C:\Program Files (x86)\Fitbit Connect\Fitbit Connect.exe O4 - HKLM\..\Wow6432Node\Run: [Firebird] . (.Firebird Project - Firebird SQL Server.) -- C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [sidebar] . (.Microsoft Corporation - Gadgets da Área de Trabalho do Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1018309962-2952455908-291837673-1000\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. ~ Application: Scanned in 00mn 00s ---\\ Alteração Dominio/Clientes DNS (017) O17 - HKLM\System\CCS\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\..\{31CF6375-4E4C-4A80-BA81-19BA0590CB63}: NameServer = 192.168.1.1 ~ Domain: Scanned in 00mn 00s ---\\ Protocolo adicional (018) O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizador de HTML da Microsoft ®.) -- C:\Windows\System32\mshtml.dll O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation ~ Protocole Additionnel: Scanned in 00mn 00s ---\\ Valor do Registo AppInit_DLLs e sub-chaves Winlogon Notify (autorun) (O20) O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll ~ Winlogon: Scanned in 00mn 00s ---\\ Tarefas planificadas automaticamente (039) [MD5.634973C2CCE8398A7202316E2DF5F108] [APT] [backup] (...) -- C:\bat\backup.bat [56] O39 - APT: - (..) -- C:\Windows\Tasks\1-Click Maintenance.job [398] O39 - APT: - (..) -- C:\Windows\System32\Tasks\1-Click Maintenance [398] O39 - APT: - (..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [902] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1058] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1062] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1018309962-2952455908-291837673-1000Core [1018] O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1018309962-2952455908-291837673-1000UA [1070] ~ Scheduled Task: 14 Legitimates Filtered in 00mn 00s ---\\ Software instalados (042) O42 - Logiciel: Licensing Service (03000201) - (.Protexis Inc..) [HKLM][64Bits] -- {9F9C5C18-9665-41EC-A660-5A3BA213CA1D} O42 - Logiciel: Tomboy Notes - (.Tomboy Project.) [HKLM][64Bits] -- {727D3A82-85EA-472A-A462-F53D8EB39FCE} ~ Logic: 4 Legitimates Filtered in 00mn 00s ---\\ HKCU & HKLM Software Keys [HKCU\Software\CS Odessa] [HKCU\Software\LC Technology Inc] [HKLM\Software\Wow6432Node\CS Odessa] [HKLM\Software\Wow6432Node\Time4Popcorn] [HKLM\Software\Wow6432Node\Tomboy] ~ Key Software: 338 Legitimates Filtered in 00mn 00s ---\\ Conteúdo das pastas Programs/ProgramFiles/ProgramData/AppData (O43) O43 - CFD: 11/05/2014 - 14:54:35 - [] ----D C:\Program Files (x86)\Time4Popcorn O43 - CFD: 05/04/2014 - 10:59:42 - [] ----D C:\Program Files (x86)\Tomboy O43 - CFD: 31/03/2014 - 18:07:18 - [] ----D C:\ProgramData\createpart O43 - CFD: 31/03/2014 - 18:07:57 - [] ----D C:\ProgramData\deletepart O43 - CFD: 07/02/2014 - 14:12:38 - [] ----D C:\ProgramData\subtle O43 - CFD: 12/03/2014 - 14:30:18 - [] ----D C:\Users\Evo\AppData\Roaming\CSOdessa O43 - CFD: 06/02/2014 - 22:05:16 - [] ----D C:\Users\Evo\AppData\Roaming\library_dir O43 - CFD: 05/04/2014 - 11:05:37 - [] ----D C:\Users\Evo\AppData\Roaming\Tomboy O43 - CFD: 11/05/2014 - 15:07:19 - [] ----D C:\Users\Evo\AppData\Local\Popcorn-Time O43 - CFD: 05/04/2014 - 11:01:06 - [] ----D C:\Users\Evo\AppData\Local\Tomboy ~ Program Folder: 210 Legitimates Filtered in 00mn 00s ---\\ Últimos ficheiros alterados ou criados no Windows e Sistema32 (044) O44 - LFC:[MD5.78C710873EFB6A9E84D91AC88DEE45EB] - 03/05/2014 - 09:26:57 ---A- . (...) -- C:\Windows\System32\prfc0416.dat [147568] O44 - LFC:[MD5.5A0E9BF172556EE137A90AB8F1D8FD78] - 03/05/2014 - 09:26:57 ---A- . (...) -- C:\Windows\System32\prfh0416.dat [707322] O44 - LFC:[MD5.6FE0FB308956078E237EB8AB147AB156] - 05/05/2014 - 21:29:52 ---A- . (...) -- C:\Windows\FontData.fdb [866594] O44 - LFC:[MD5.CC7AA7B42CF418FC3D926913490048F8] - 14/05/2014 - 12:16:37 ---A- . (...) -- C:\Windows\zoek-delete.exe [24064] O44 - LFC:[MD5.61DCB88ED576666809475B6859C4BDAC] - 14/05/2014 - 12:32:07 ---A- . (...) -- C:\zoek-results.log [158757] ~ Files: 14 Legitimates Filtered in 00mn 00s ---\\ Enumeração das chaves do registo StartupReg (SMSR) (O53) O53 - SMSR:HKLM\...\startupreg\SQL Studio Agent for InterBase & Firebird [Key] . (.EMS Database Management Solutions, Inc. - SQL Management Studio for Interbase Agent.) -- C:\Program Files (x86)\EMS\SQL Studio for InterBase & Firebird\Studio\ibagent.exe ~ SMSR Keys: 21 Legitimates Filtered in 00mn 00s ---\\ Enumeração das chaves do registo PoliciesSystem (MWPS) (O55) O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0 O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0 O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0 O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0 ~ MWPS: 18 Legitimates Filtered in 00mn 00s ---\\ Enumeração das chaves do registo PoliciesExplorer (MWPE) (O56) O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1 ~ MWPE Keys: 3 Legitimates Filtered in 00mn 00s ---\\ Lista dos drivers do sistema (SDL) (O58) O58 - SDL:13/07/2009 - 22:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496] O58 - SDL:10/06/2009 - 17:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232] O58 - SDL:12/04/2010 - 05:55:00 ---A- . (.PowerISO Computing, Inc. - PowerISO Virtual Drive.) -- C:\Windows\System32\Drivers\scdemu.sys [91568] O58 - SDL:24/02/2012 - 06:14:42 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudbus.sys [99384] O58 - SDL:24/02/2012 - 06:14:42 ---A- . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ver.3).) -- C:\Windows\System32\Drivers\ssudmdm.sys [203320] O58 - SDL:13/07/2009 - 22:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656] O58 - SDL:17/01/2010 - 13:10:54 ---A- . (.Windows ® 2000 DDK provider - Image Mounter SCSI Port Driver.) -- C:\Windows\System32\Drivers\uimx64.sys [48144] O58 - SDL:18/03/2013 - 15:51:08 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl64.sys [54784] O58 - SDL:30/09/2013 - 16:26:50 ----- . (...) -- C:\Windows\System32\pwdrvio.sys [19152] O58 - SDL:30/09/2013 - 16:26:48 ----- . (...) -- C:\Windows\System32\pwdspio.sys [12504] ~ Drivers: 68 Legitimates Filtered in 00mn 00s ---\\ Lista das ferramentas de remoção de vírus (LAT) (063) O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman O63 - Logiciel: HiJackThis - (.Trend Micro.) [HKLM] -- {45A66726-69BC-466B-A7A4-12FCBA4883D7} ~ ADS: Scanned in 00mn 00s ---\\ Associações Shell Spawning (O67) O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.) ~ FASS Keys: 11 Legitimates Filtered in 00mn 00s ---\\ Menu de inicialização Internet (068) O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: <OUTWIT-HUB.EXE> <OutWit Hub>[HKLM\..\Shell\open\Command] (.Mozilla Foundation - No Comment.) -- C:\Program Files (x86)\OutWit\OutWit Hub\outwit-hub.exe ~ Keys: Scanned in 00mn 00s ---\\ Pesquisa de infeção nos navegadores da Internet (SBI) (069) O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com ~ Keys: Scanned in 00mn 00s ---\\ Search Tracing Registry Key (O100) HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\googletoolbar_RASAPI32 =>Toolbar.Google HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\googletoolbar_RASMANCS =>Toolbar.Google ~ BTK: 161 Legitimates Filtered in 00mn 00s ---\\ Estado general dos serviços não Microsoft (EGS) (SR=Executados, SS=Parados) SS - | Demand 14/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SS - | Demand 24/08/2012 276288 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe SS - | Demand 07/02/2014 654848 | (FLEXnet Licensing Service) . (.Macrovision Europe Ltd..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - | Auto 05/02/2014 136176 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 05/02/2014 136176 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - | Demand 06/02/2014 641352 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe SS - | Auto 13/07/2009 27136 | C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software GmbH.) - C:\Windows\System32\svchost.exe SS - | Demand 23/06/2013 24576 | (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe SS - | Demand 23/06/2013 12867584 | (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe SS - | Demand 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe SS - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation SR - | Auto 03/01/2012 63928 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SR - | Auto 04/05/2010 202752 | (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe SR - | Auto 07/01/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - | Auto 25/02/2013 1239584 | (Fitbit Connect) . (.Fitbit, Inc..) - C:\Program Files (x86)\Fitbit Connect\FitbitConnectService.exe SR - | Auto 17/04/2014 376144 | (LMIGuardianSvc) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe SR - | Auto 17/04/2014 226640 | (LMIMaint) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe SR - | Auto 11/12/2013 407424 | (LogMeIn) . (.LogMeIn, Inc..) - C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe SR - | Auto 23/10/2013 23808 | (MsMpSvc) . (.Microsoft Corporation.) - C:\Program Files\Microsoft Security Client\MsMpEng.exe SR - | Auto 10/03/2010 189728 | (PSI_SVC_2) . (.Protexis Inc..) - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe SR - | Auto 30/11/2010 336824 | (PSI_SVC_2_x64) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe SR - | Auto 25/04/2014 5024576 | (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe ~ Services: Scanned in 00mn 04s ---\\ Scâner Aditional (088) Database Version : 13045 - (14/05/2014) Clés trouvées (Keys found) : 1 Valeurs trouvées (Values found) : 0 Dossiers trouvés (Folders found) : 1 Fichiers trouvés (Files found) : 0 [HKLM\Software\Google\Chrome\Extensions\npknnddabjhdijgmmbocdicnknegobkm] =>PUP.QuickShare^ C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Extensions\npknnddabjhdijgmmbocdicnknegobkm =>PUP.QuickShare^ ~ Additionnel Scan: 507971 Items scanned in 00mn 12s ---\\ Sumário das deteções encontradas na sua estação http://nicolascoolman.byethost7.com/pup-quickshare =>PUP.QuickShare ~ MSI: 1 link(s) detected in 00mn 00s ~ 819 Legitimates filtered by white list End of the scan (451 lines in 00mn 46s)(0) Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 15, 2014 :seta: Selecione e copie todo o texto destacado em vermelho que te passei._____________________________________________________________________________________________________________ :seta: Vá no menu: Iniciar > Todos os programas > ZHP > Clique com o botão direito do mouse sobre o Zhpfix e escolha a opção de Executar como administrador > Clique em Importação > Clique no botão GO > Clique em Oui > Caso queira que os arquivos da lixeira sejam excluídos clique em Oui novamente > Um relatório aparecerá no bloco de notas.Copie este relatório e poste em sua próxima resposta e nos diga como está seu PC depois disto. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 16, 2014 Obrigado, segue relatório: Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014 Fichier d'export Registre : Run by Evo at 15/05/2014 23:24:10 High Elevated Privileges : OK Windows 7 Ultimate Edition, 64-bit Service Pack 1 (Build 7601) Reciclagem vazia (00mn 02s) ========== Pastas ========== Nenhuma pasta CLSID local utilizador vazia ========== Ficheiros ========== ELIMINÉ Temporários windows (7) (28.139 octets) ELIMINÉ Flash Cookies (0) (0 octets) ========== Restauração Sistema ========== Ponto de restauro do sistema criado com sucesso ========== Recapitulativo ========== 1 : Pastas 2 : Ficheiros 1 : Restauração Sistema End of clean in 00mn 36s ========== Caminho do ficheiro do relatório ========== C:\Users\Evo\AppData\Roaming\ZHP\ZHPFix[R1].txt - 14/05/2014 20:00:34 [1398] C:\Users\Evo\AppData\Roaming\ZHP\ZHPFix[R2].txt - 15/05/2014 23:24:13 [816] Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 16, 2014 * Faça o download do Malwarebytes em um destes links abaixo: http://www.malwarebytes.org/mbam/program/mbam-setup.exe http://downloads.malwarebytes.org/mbam-download.php :seta: Para instalá-lo e executá-lo corretamente siga, por gentileza, as dicas desta postagem: Tutorial do Malwarebytes Anti-Malware Na sua próxima resposta poste este log (relatório) do Malwarebytes. Ficamos no aguardo. Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 16, 2014 Obrigado. Segue relatório: Malwarebytes Anti-Malware www.malwarebytes.org Data de Verificação: 16/05/2014 Hora da Verificação: 13:11:08 Logfile: malwarebytesLog.txt Administrador: Sim Versão: 2.00.1.1004 Malware Database: v2014.05.16.08 Rootkit Database: v2014.03.27.01 Licença: Grátis Proteção de Malware: Desabilitado Proteção de Site Malicioso: Desabilitado Chameleon: Desabilitado OS: Windows 7 Service Pack 1 CPU: x64 Sistema de Arquivo: NTFS Usuário: Evo Tipo da Verificação: Verificação Personalizada Resultado: Completado Arquivos Verificados: 1075309 Tempo Decorrido: 2 hr, 46 min, 16 seg Memória: Enabled Inicialização: Enabled Filesystem: Enabled Arquivos: Enabled Rootkits: Desabilitado Shuriken: Enabled PUP: Enabled PUM: Enabled Processos: 0 (No malicious items detected) Módulos: 0 (No malicious items detected) Chaves de Registro: 0 (No malicious items detected) Valores de Registro: 0 (No malicious items detected) Dados do Registro: 0 (No malicious items detected) Pastas: 0 (No malicious items detected) Arquivos: 22 RiskWare.Tool.HCK, B:\1-Juca\Clientes\Janaina\Banco de Imagens\corel x6 32 bits\keygen CorelDraw x6 .rar, Quarantined, [0e0a0d4564170b2b04d17f5c26dba060], RiskWare.Tool.HCK, B:\1-Juca\Clientes\Janaina\Banco de Imagens\corel x6 32 bits\keygen CorelDraw x6\keygen CorelDraw x6 www.blogbelezagaroto.com.exe, Quarantined, [c058bf93eb902e08fadb479433cee21e], PUP.Optional.PCMega.A, B:\1-Juca\Clientes\Janaina\donwloads jana\arquivo.exe, Quarantined, [da3ee46e55264de9d58da33453b0d52b], PUP.Password.Viewer, B:\1-Juca\Velhos\Cafe Racer\Fotos novas\accesspv.zip, Quarantined, [65b37ed485f6171fa8f7812aa35ebb45], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Audition CS6\amtlib.dll, Quarantined, [35e34210d9a25cda3c0928bd0af7a15f], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Bridge CS6\AMTLib.dll, Quarantined, [83959db5f18ac472dc6901e4f60b35cb], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Dreamweaver CS6\amtlib.dll, Quarantined, [37e100526b102f07ed58faeb05fca35d], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Fireworks CS6\amtlib.dll, Quarantined, [d34542105922fc3a0c39b431fc051ce4], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Flash CS6\amtlib.dll, Quarantined, [9682f2605229a59196af31b4ab56af51], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\amtlib.dll, Quarantined, [35e3c092502b84b26cd9b035b24ffd03], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe InDesign CS6\amtlib.dll, Quarantined, [01170949f08b80b6a1a436afb0519e62], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\amtlib.dll, Quarantined, [a96f5bf76b108fa734118c597f824bb5], PUP.RiskwareTool.CK, C:\Program Files (x86)\Adobe\Adobe Prelude CS6\amtlib.dll, Quarantined, [8395143e7902da5c8db8895cc041e31d], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe After Effects CS6\Support Files\amtlib.dll, Quarantined, [fe1a8ec4d1aab08663e3e7fe7889f50b], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\AMTLib.dll, Quarantined, [ce4ace8489f2e84ef650a73e36cb23dd], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe Encore CS6\amtlib.dll, Quarantined, [c553a9a92f4ca78f1e289253ee137a86], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe Illustrator CS6 (64 Bit)\Support Files\Contents\Windows\amtlib.dll, Quarantined, [be5ab79b2e4dc0765ee8578ef70a6d93], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe Media Encoder CS6\amtlib.dll, Quarantined, [21f7a3af106b84b256f08362728f42be], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\amtlib.dll, Quarantined, [c0581b376e0d9f979ea8c61f8f72718f], PUP.RiskwareTool.CK, C:\Program Files\Adobe\Adobe Premiere Pro CS6\amtlib.dll, Quarantined, [6fa9a8aaa4d732046bdb5590c9388f71], PUP.Optional.Superfish.A, C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Delete-on-Reboot, [bc5cbd956318b086372b2161af5344bc], PUP.Optional.Superfish.A, C:\Users\Evo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Quarantined, [fe1a460cf98201351a48344e877b8b75], Physical Sectors: 0 (No malicious items detected) (end) Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 16, 2014 Como está seu computador depois destes procedimentos? Compartilhar este post Link para o post Compartilhar em outros sites
jucca 0 Denunciar post Postado Maio 16, 2014 Olá Power Max Parece bem melhor. Ainda preciso de mais uns 2 dias para avaliar melhor, principalmente logo que liga, mas os gargalos e lentidões durante o dia sumiram. Foram eliminados alguns recursos que eu utilizava, mas que posso viver sem, como 2 gadgets do Windows, que já sabia que tem brechas de segurança (um calendário e um medidor de recursos de memória RAM e uso de CPU) Estou em busca de uma alternativa para ligar a máquina já logando o Skype que não seja tão pesado, hoje reinstalei ele em uma versão mais antiga, parece que melhorou, se não der, vou para uma versão ainda mais antiga. Perdi apenas uma extensão de Chrome que usava, mas já me adaptei sem ela, estou usando outra que ficou (o OneTabs do Chrome guardava links das tabs para documentação e continuação em outro dia ou leitura posterior, agora estou fazendo de outro jeito). No geral aprendi que extensões do Chrome precisam ser moderadas. Muito obrigado pela ajuda e dicas. Salvou-me de uma formatação, não gosto deste procedimento, prefiro aprender o que estava errando para melhorar o uso. Valeu!!! Compartilhar este post Link para o post Compartilhar em outros sites
Power Max 54 Denunciar post Postado Maio 16, 2014 Fico feliz que o PC esteja melhor, daqui há uns dois dias então você nos diz a situação, por gentileza. Fico na espera. Compartilhar este post Link para o post Compartilhar em outros sites