LipeZO 0 Denunciar post Postado Janeiro 16, 2015 Boa noite, estou tendo vários problemas, meu pc esta lento, não consigo instalar nada, nem baixar atualizações do anti-vírus, se alguém puder me ajudar, ficarei grato. Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 16, 2015 /!\ Bom Dia! LipeZO /!\ > Leia a Regra N° 02 e poste o log do HijackThis,conforme está ali orientado. A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 16, 2015 Bom dia, obrigado por ajudar Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 09:47:38, on 16/01/2015 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16561) Boot mode: Normal Running processes: C:\PROGRA~2\GbPlugin\GbpSv.exe C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe C:\Program Files (x86)\Diebold\Warsaw\core.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avpui.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\HijackThis\Trend Micro\HiJackThis\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: ArcPluginIEBHO - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll O2 - BHO: G-Buster Browser Defense Itaú Unibanco - {C41A1C0E-EA6C-11D4-B1B8-444553540008} - C:\Program Files (x86)\GbPlugin\gbiehuni.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun O4 - HKLM\..\Run: [Diebold - Warsaw] C:\Program Files (x86)\Diebold\Warsaw\core.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [uTorrent] "C:\Users\Panje\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [LightShot] C:\Users\Panje\AppData\Local\Skillbrains\lightshot\Lightshot.exe Flags: uninsdeletevalue O4 - HKCU\..\Run: [CMD] cmd.exe /c start http://ooov.net && exit O4 - Global Startup: NETGEAR WNDA3100v2 Genie.lnk = ? O8 - Extra context menu item: Adicionar ao Antibanner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\ie_banner_deny.htm O9 - Extra button: Teclado Virtual - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll O9 - Extra button: Verificação de URLs - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: *.clonewarsadventures.com O15 - Trusted Zone: *.freerealms.com O15 - Trusted Zone: bankline.itau.com.br O15 - Trusted Zone: clickbanking.itau.com.br O15 - Trusted Zone: guardiao.itau.com.br O15 - Trusted Zone: www.itau.com.br O15 - Trusted Zone: *.itau.com.br O15 - Trusted Zone: *.soe.com O15 - Trusted Zone: *.sony.com O20 - Winlogon Notify: GbPluginUni - C:\Program Files (x86)\GbPlugin\gbiehUni.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: Arc Service (ArcService) - Perfect World Entertainment Inc - C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe O23 - Service: Serviço do Kaspersky Anti-Virus 15.0.0 (AVP15.0.0) - Kaspersky Lab ZAO - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe O23 - Service: Serviço do Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Gbp Service (GbpSv) - GAS Tecnologia - C:\PROGRA~2\GbPlugin\GbpSv.exe O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Hi-Rez Studios - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: Warsaw Technology - GAS Tecnologia LTDA - C:\Program Files (x86)\Diebold\Warsaw\core.exe O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: WSWNDA3100v2 - Unknown owner - C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe -- End of file - 10541 bytes Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 16, 2015 /!\ Boa Tarde! LipeZO /!\ > Baixe e execute estas ferramentas,na ordem proposta. > Baixe: < > ( ... par Xplode ) > > Ou daqui: < AdwCleaner > > Ao acessar,clique em "Download Now". > > Salve-o no desktop! < > > Clique direito em adwcleaner.exe,e escolha sua execução como administrador. > Ps: Dê início ao scan,clicando em "Examinar". > Ao concluir,clique "Limpar" >> Ok >> Ok >> Ok. > Copie o log ou clique "Relatório". > Poste: < C:\AdwCleaner\AdwCleaner[s0].txt > > Baixe: < > ( ... de Nicolas Coolman ) > Estando na página,clique > Salve-a no desktop! > Execute-a e ao abrir,clique "J'accept/I Agree". > Para correções mais abrangentes,marque todas as opções disponíveis. > Clique Réparer. > Clique Rapport. > Poste o relatório! A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 16, 2015 Boa tarde, efetuei os procedimentos, seguem os relatórios. # AdwCleaner v4.107 - Relatório criado 16/01/2015 às 17:10:43 # Atualizado 07/01/2015 por Xplode # Database : 2015-01-13.2 [Live] # Sistema Operacional : Windows 7 Ultimate Service Pack 1 (64 bits) # Usuário : Panje - PANJE-PC # Executando de : C:\Users\Panje\Desktop\AdwCleaner.exe # Opção : Limpar ***** [ Serviços ] ***** ***** [ Arquivos / Pastas ] ***** Pasta Deletada : C:\ProgramData\baidu Pasta Deletada : C:\ProgramData\FreshApp installer Pasta Deletada : C:\ProgramData\NextCoiup Pasta Deletada : C:\ProgramData\a0c90c295cf5a4b2 Pasta Deletada : C:\Program Files (x86)\baidu Pasta Deletada : C:\Program Files (x86)\NextCoiup Pasta Deletada : C:\Users\Administrador\AppData\Local\Chromatic Browser Pasta Deletada : C:\Users\Administrador\AppData\Local\torch Pasta Deletada : C:\Users\Convidado\AppData\Local\Chromatic Browser Pasta Deletada : C:\Users\Convidado\AppData\Local\torch Pasta Deletada : C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser Pasta Deletada : C:\Users\HomeGroupUser$\AppData\Local\torch Pasta Deletada : C:\Users\Panje\AppData\Local\Chromatic Browser Pasta Deletada : C:\Users\Panje\AppData\Local\torch Pasta Deletada : C:\Users\Panje\AppData\Roaming\baidu Pasta Deletada : C:\Users\Public\Documents\baidu Pasta Deletada : C:\Users\UpdatusUser\AppData\Local\Chromatic Browser Pasta Deletada : C:\Users\UpdatusUser\AppData\Local\torch ***** [ Tarefas ] ***** Tarefa Deletedo : DriverEasy Scheduled Scan ***** [ Atalhos ] ***** ***** [ Registro ] ***** Valor Deletedo : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [cmd] Chave Deletedo : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S-828263068 Chave Deletedo : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Chave Deletedo : HKCU\Software\Baidu Chave Deletedo : HKCU\Software\AppDataLow\Software\Safer-Surf Chave Deletedo : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Chave Deletedo : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B} Chave Deletedo : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} Chave Deletedo : HKLM\SOFTWARE\Baidu Chave Deletedo : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA} Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1 Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FDB962F0-B5B8-9460-D12F-7966E97BAA43} Chave Deletedo : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3D0F43D9-C1D7-733C-01F8-4A3001BF8CC3} ***** [ Navegadores ] ***** -\\ Internet Explorer v9.0.8112.16561 -\\ Mozilla Firefox v -\\ Google Chrome v39.0.2171.95 -\\ Comodo Dragon v ************************* AdwCleaner[R0].txt - [3170 octets] - [16/01/2015 17:09:10] AdwCleaner[s0].txt - [2892 octets] - [16/01/2015 17:10:43] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [2952 octets] ########## E o segundo. ~ ZHPCleaner v2015.1.15.22 by Nicolas Coolman (15/01/2015) ~ Run by Panje (Administrator) (16/01/2015 17:19:08) ~ Forum : http://forum.nicolascoolman.fr ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Type : Repair ~ Report : C:\Users\Panje\Desktop\ZHPCleaner.txt ~ Quarantine : C:\Users\Panje\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt ~ UAC : Activate ~ Windows 7, 64-bit Service Pack 1 (Build 7601) ---\\ Services (0) ~ No malicious items found. ---\\ Browser internet (1) REPLACED IE Params: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page ( hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ) ---\\ Hosts file (1) ~ The hosts file is legitimate (1) ---\\ Scheduled automatic tasks. (0) ~ No malicious items found. ---\\ Explorer ( File, Folder) (13) MOVED file: C:\Users\Panje\AppData\Roaming\unins000.exe [ - Setup/Uninstall] (Adware.Pirrit) MOVED folder: C:\Program Files (x86)\Skillbrains\Updater (PUP.SkillBrains) MOVED folder: C:\Program Files (x86)\Skillbrains (PUP.SkillBrains) MOVED folder: C:\ProgramData\InstallMate\328D74D8 (PUP.Tarma) MOVED folder: C:\ProgramData\InstallMate\{9B7A7D8C-C7E8-4EF7-AC1C-8FCA40995F7A} (PUP.Tarma) MOVED folder: C:\ProgramData\InstallMate (PUP.Tarma) MOVED folder: C:\Windows\System32\AI_RecycleBin\{B9209570-BAC4-48EE-BD7E-C761A67194C4} (Adware.Agent) MOVED folder: C:\Windows\System32\AI_RecycleBin\{C00E8807-F083-42CB-A18B-DDE3B5BAEC57} (Adware.Agent) MOVED folder: C:\Windows\System32\AI_RecycleBin (Adware.Agent) MOVED folder: C:\Users\Panje\AppData\Local\Skillbrains\lightshot (PUP.SkillBrains) MOVED folder: C:\Users\Panje\AppData\Local\Skillbrains (PUP.SkillBrains) MOVED file*: C:\Users\Panje\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.speedtest.net_0.localstorage (Adware.ScriptHost) MOVED file*: C:\Users\Panje\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.speedtest.net_0.localstorage-journal (Adware.ScriptHost) ---\\ Registry ( Key, Value, Data) (2) DELETED key: HKCU\Software\Skillbrains [] (Adware.SkillBrains) DELETED key: HKLM\SOFTWARE\Wow6432Node\SkillBrains [] (Adware.SkillBrains) ---\\ Result of repair ~ Repair carried out successfully ~ Browser not found (Opera Software) ~ The system has been restarted. ---\\ Statistics ~ Items scanned : 52834 ~ Items found : 0 ~ Items repaired : 16 End of clean at 17:22:01 =================== ZHPCleaner-[R]-16012015-17_22_01.txt ZHPCleaner--16012015-17_18_54.txt Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 16, 2015 /!\ Boa Noite! LipeZO /!\ > Baixe: < > ( ... by Smeenk ) < zoek.exe > > Salve-o ao desktop! > Desabilite seu antivírus! > Para Windows 7,execute Zoek.exe como administrador. ipconfig /flushdns;b Emptytemp; AutoClean; QuickScan; > Copie e cole estas informações,que estão em vermelho,no campo da ferramenta. > Clique "Run Script". Zoek.exe is running now. Do not start any browser windows, they will be closed automatically. Please wait! This window will close when finished. A logfile will open afterwards and can also be found on your systemdrive as zoek-results.log > Surgirão informações,pedindo-lhe que aguarde o surgimento do relatório. > Ps: Essas informações,podem permanecer estáticas na tela por 20 minutos ou mais. > Confirme o reboot! zoek.hta failed by unknown error. Restart computer, and try again. > Ps: Ao obter algum erro,reinicie o PC e execute,novamente,a ferramenta. > Poste o relatório,que estará em C:\zoek-results.txt << A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 17, 2015 Boa tarde novamente realizei os procedimentos solicitados. Segue o relatório. Zoek.exe v5.0.0.0 Updated 15-01-2015 Tool run by Panje on 17/01/2015 at 12:15:58,76. Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64 Running in: Normal Mode Internet Access Detected Launched: C:\Users\Panje\Desktop\zoek.exe [scan all users] [script inserted] ==== System Restore Info ====================== 17/01/2015 12:17:09 Zoek.exe System Restore Point Created Succesfully. ==== Empty Folders Check ====================== C:\PROGRA~2\AGEIA Technologies deleted successfully C:\PROGRA~2\GetGo Software deleted successfully C:\PROGRA~2\Nexon deleted successfully C:\PROGRA~2\Nokia deleted successfully C:\Program Files\KONAMI deleted successfully C:\PROGRA~3\Oracle deleted successfully C:\Users\Panje\AppData\Local\Adobe deleted successfully C:\Users\Panje\AppData\Local\Warface deleted successfully ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Deleting Services ====================== ==== Batch Command(s) Run By Tool====================== ==== Deleting Files \ Folders ====================== C:\PROGRA~3\QgHWXPAq deleted C:\PROGRA~3\Adobe deleted C:\PROGRA~3\boost_interprocess deleted C:\PROGRA~3\Package Cache deleted C:\Users\Panje\AppData\Local\updater.log deleted C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Clip Converter deleted C:\Users\Panje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lightshot deleted C:\Users\Panje\AppData\LocalLow\{76F713A2-A96A-2E7C-B350-550D6DB2D804} deleted C:\Users\Panje\AppData\LocalLow\{EE6937A1-6EBA-B963-F929-F3DAAEA21915} deleted C:\Windows\SysNative\config\systemprofile\Searches deleted C:\windows\SysNative\GroupPolicy\User deleted C:\Windows\Syswow64\GroupPolicy\gpt.ini deleted ==== Files Recently Created / Modified ====================== ====== C:\Windows ==== ====== C:\Users\Panje\AppData\Local\Temp ==== 2015-01-09 22:59:40 00737C7BC0F107AEB6A34B84BB88A5F3 6968832 ----a-w- C:\Users\Panje\AppData\Local\Temp\e7ad181d-e3e5-419b-8a8a-2a41e574e48f\LUGPatch.exe 2015-01-09 22:55:45 00737C7BC0F107AEB6A34B84BB88A5F3 6968832 ----a-w- C:\Users\Panje\AppData\Local\Temp\d4dfe780-ff69-44bd-a560-8208cc4d273a\LUGPatch.exe 2015-01-09 22:27:59 00737C7BC0F107AEB6A34B84BB88A5F3 6968832 ----a-w- C:\Users\Panje\AppData\Local\Temp\5456d8a6-15d6-47cc-865e-f2d1693a09bf\LUGPatch.exe 2015-01-09 22:13:13 C58368F2B6583E049109406330E539FF 1061696 ----a-w- C:\Users\Panje\AppData\Local\Temp\Epic-55e5cf4f-78cb-472c-91a1-bd56583d6136\Binaries\UnSetup.exe ====== Java Cache ===== ====== C:\Windows\SysWOW64 ===== ====== C:\Windows\SysWOW64\drivers ===== ====== C:\Windows\Sysnative ===== ====== C:\Windows\Sysnative\drivers ===== 2015-01-06 18:31:51 D41D8CD98F00B204E9800998ECF8427E 0 ---ha-w- C:\Windows\Sysnative\drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-12-28 10:36:40 26C43960C99EE861A5D0EDC4DCF3B1C3 129752 ----a-w- C:\Windows\Sysnative\drivers\44C510B1.sys 2014-12-23 23:26:24 7E4355930B28C2798D9F09AB9F81151F 195728 ----a-w- C:\Windows\Sysnative\drivers\nvhda64v.sys 2014-12-23 23:26:23 ED4D88A04D22E6B00DB6BC8FACDBAFED 10345280 ----a-w- C:\Windows\Sysnative\drivers\nvlddmkm.sys ====== C:\Windows\Tasks ====== 2015-01-06 20:44:44 -------- d-----w- C:\Windows\Sysnative\Tasks\Apple ====== C:\Windows\Temp ====== ======= C:\Program Files ===== 2015-01-06 20:40:33 -------- d-----w- C:\Program Files\Common Files\Apple 2015-01-06 20:40:24 -------- d-----w- C:\Program Files\Bonjour ======= C:\PROGRA~2 ===== 2015-01-10 17:06:41 -------- d-----w- C:\PROGRA~2\TibiaRPGBrasil 10.41 2015-01-10 04:42:30 -------- d-----w- C:\PROGRA~2\Tibia 2015-01-09 22:15:03 -------- d-----w- C:\PROGRA~2\Hi-Rez Studios 2015-01-08 04:28:25 -------- d-----w- C:\PROGRA~2\Microsoft ASP.NET 2015-01-06 20:44:40 -------- d-----w- C:\PROGRA~2\Apple Software Update 2015-01-06 20:40:32 -------- d-----w- C:\PROGRA~2\COMMON~1\Apple 2015-01-06 20:40:24 -------- d-----w- C:\PROGRA~2\Bonjour 2015-01-06 04:17:39 -------- d-----w- C:\PROGRA~2\Grinding Gear Games 2014-12-25 21:28:03 -------- d-----w- C:\PROGRA~2\Heroes of the Storm 2014-12-20 22:05:35 -------- d-----w- C:\PROGRA~2\Dragon Age Inquisition ======= C: ===== 2015-01-16 19:21:51 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\essai.txt ====== C:\Users\Panje\AppData\Roaming ====== 2015-01-16 19:15:27 -------- d-----w- C:\Users\Panje\AppData\Roaming\ZHP 2015-01-10 17:06:45 -------- d-----w- C:\Users\Panje\AppData\Roaming\TRPGB 2015-01-10 04:42:46 -------- d-----w- C:\Users\Panje\AppData\Roaming\Tibia 2015-01-09 22:57:19 61B8E1C0545F7A775278F6A15355AC3E 139600 ----a-w- C:\Windows\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat 2015-01-09 22:28:06 -------- d-----w- C:\Users\Panje\AppData\Local\Level Up! 2015-01-09 21:48:57 -------- d-----w- C:\Users\Panje\AppData\Local\IsolatedStorage 2015-01-09 21:48:44 -------- d-----w- C:\Users\Panje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Level Up! Gerenciador 2015-01-09 21:47:59 -------- d-----w- C:\Users\Panje\AppData\Local\Deployment 2015-01-09 21:47:59 -------- d-----w- C:\Users\Panje\AppData\Local\Apps 2015-01-06 20:44:44 -------- d-----w- C:\Users\Panje\AppData\Local\Apple 2014-12-31 01:14:52 -------- d-----w- C:\Users\Panje\AppData\Local\TERA 2014-12-25 14:45:11 -------- d-----w- C:\Users\Panje\AppData\Local\PointBlank ====== C:\Users\Panje ====== 2015-01-16 19:14:15 5CCE9E48D9A39A81E2404D1B86976FAE 1424896 ----a-w- C:\Users\Panje\Desktop\ZHPCleaner.exe 2015-01-16 19:13:57 5CCE9E48D9A39A81E2404D1B86976FAE 1424896 ----a-w- C:\Users\Panje\Downloads\ZHPCleaner.exe 2015-01-16 19:08:31 61CA40317EBF1254770BF8B495B3F8DA 2191360 ----a-w- C:\Users\Panje\Desktop\AdwCleaner.exe 2015-01-16 19:07:44 61CA40317EBF1254770BF8B495B3F8DA 2191360 ----a-w- C:\Users\Panje\Downloads\AdwCleaner.exe 2015-01-10 17:06:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TibiaRPGBrasil 2015-01-10 17:03:20 D50A6E294B7F25796E0B16B422B0C1F8 27698161 ----a-w- C:\Users\Panje\Downloads\TibiaRPGBrasil1041.exe 2015-01-10 04:42:32 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tibia 2015-01-10 04:41:57 98FE6C6E54770DB6A383C8F33BC78488 43260513 ----a-w- C:\Users\Panje\Downloads\tibia1071.exe 2015-01-09 22:24:35 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Level Up 2015-01-09 22:22:59 -------- d-----w- C:\Users\Panje\.aria2 2015-01-09 22:15:15 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2015-01-09 22:15:13 -------- d-----w- C:\Users\TODOSO~1\Hi-Rez Studios 2015-01-09 22:15:13 -------- d-----w- C:\ProgramData\Hi-Rez Studios 2015-01-09 21:48:52 -------- d-----w- C:\Users\TODOSO~1\levelup downloader 2015-01-09 21:48:52 -------- d-----w- C:\ProgramData\levelup downloader 2015-01-09 21:47:44 0472BD275D65B95C2EFA92DA7573EC21 502104 ----a-w- C:\Users\Panje\Downloads\setup.exe 2015-01-06 20:45:17 -------- d-----w- C:\Users\TODOSO~1\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-01-06 20:45:17 -------- d-----w- C:\Users\TODOSO~1\Apple Computer 2015-01-06 20:45:17 -------- d-----w- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-01-06 20:45:17 -------- d-----w- C:\ProgramData\Apple Computer 2015-01-06 20:40:24 -------- d-----w- C:\Users\TODOSO~1\Apple 2015-01-06 20:40:24 -------- d-----w- C:\ProgramData\Apple 2015-01-06 18:32:47 D1E6D9BEEF71DA6FC161C7B259448581 122418480 ----a-w- C:\Users\Panje\Downloads\iTunes64Setup.exe 2015-01-06 04:17:40 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grinding Gear Games 2014-12-31 01:14:53 -------- d-----w- C:\Users\Public\Games 2014-12-25 21:33:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm 2014-12-24 18:01:24 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PointBlank 2014-12-20 23:57:01 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon Age Inquisition ====== C: exe-files == 2015-01-17 01:06:56 5BFA034E3117C744D782F2929D13FAE5 4741872 ----a-w- C:\Users\Panje\AppData\Local\NVIDIA\NvBackend\Packages\00006b3e\DAO.19233915.exe 2015-01-17 00:03:10 BA7DC0C9141BE7292CA7E744B6F19F26 897104 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\39.0.2171.99\39.0.2171.99_39.0.2171.95_chrome_updater.exe 2015-01-16 19:15:27 5CCE9E48D9A39A81E2404D1B86976FAE 1424896 ----a-w- C:\Users\Panje\AppData\Roaming\ZHP\ZHPCleaner.exe 2015-01-16 19:14:15 5CCE9E48D9A39A81E2404D1B86976FAE 1424896 ----a-w- C:\Users\Panje\Desktop\ZHPCleaner.exe 2015-01-16 19:13:57 5CCE9E48D9A39A81E2404D1B86976FAE 1424896 ----a-w- C:\Users\Panje\Downloads\ZHPCleaner.exe 2015-01-16 19:08:31 61CA40317EBF1254770BF8B495B3F8DA 2191360 ----a-w- C:\Users\Panje\Desktop\AdwCleaner.exe 2015-01-16 19:07:44 61CA40317EBF1254770BF8B495B3F8DA 2191360 ----a-w- C:\Users\Panje\Downloads\AdwCleaner.exe 2015-01-16 01:11:23 FA18A83CD2D176C72692F149C549E247 1374032 ----a-w- C:\Users\Panje\AppData\Roaming\uTorrent\updates\3.4.2_37754.exe 2015-01-15 13:19:50 2FB44CF92D0936CB4A4E24DFF1822C0E 24116728 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_game_client\releases\0.0.1.11\deploy\League of Legends.exe 2015-01-15 13:17:06 FFCBD5138F65636D852BF67A8BC16150 114680 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.16\deploy\jpatch.exe 2015-01-15 13:17:06 A8C4625853D744E395759E76525787B6 3149304 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.16\deploy\LoLPatcherUx.exe 2015-01-15 13:17:06 69B541A49C5DAE7CF39591EA136608D3 4113400 ----a-w- C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.16\deploy\LoLPatcher.exe 2015-01-14 19:18:58 A8189EBBCC7C856FC557C177190E4620 10693168 ----a-w- C:\Users\Todos os Usuários\Battle.net\Agent\Agent.3688\Agent.exe 2015-01-14 19:18:58 A8189EBBCC7C856FC557C177190E4620 10693168 ----a-w- C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe 2015-01-13 15:21:07 28988965A4C74EE28037223B0D08503B 47117360 ----a-w- C:\Program Files (x86)\Heroes of the Storm\Versions\Base33684\HeroesOfTheStorm_x64.exe 2015-01-13 15:21:03 00D943531647B5DFE396F7DC8340FDE6 48253488 ----a-w- C:\Program Files (x86)\Heroes of the Storm\Versions\Base33684\HeroesOfTheStorm.exe 2015-01-13 13:02:32 DBD8BC6438E1011CA1B796C7A9C78D78 24224 ----a-w- C:\Users\Panje\AppData\Roaming\LeagueSharp\Repositories\524D096C\trunk\GagongXerath\bin\Release\GagongXerath.vshost.exe 2015-01-13 12:56:47 ECAAD2F835C1A5AE1F9C578A07C74987 9216 ----a-w- C:\Users\Panje\AppData\Roaming\LeagueSharp\Repositories\6155DE2\trunk\SigmaAutoPink\obj\Debug\SigmaAutoPink.exe 2015-01-13 12:56:47 DFD77D4532D0D6AC08A96AEC02DD15A2 6656 ----a-w- C:\Users\Panje\AppData\Roaming\LeagueSharp\Repositories\6155DE2\trunk\SigmaAutoPink\bin\Debug\SigmaAutoPink.exe 2015-01-13 12:18:11 B215998CDCA11E892817592D270A2D1A 20480 ----a-w- C:\Users\Panje\AppData\Roaming\LeagueSharp\Repositories\B5AB2C6A\trunk\MasterYi\obj\Debug\MasterYi.exe 2015-01-13 12:18:11 6374525BB757AD0FD6564A7D90A44EAE 95232 ----a-w- C:\Users\Panje\AppData\Roaming\LeagueSharp\Repositories\B5AB2C6A\trunk\Compiled\MasterActivator.exe 2015-01-13 12:15:33 94058347BCDB4BE08D9CB3344538D033 17920 ----a-w- C:\Users\Panje\AppData\Roaming\LeagueSharp\Repositories\367DEEFB\trunk\KarthusSharp\bin\Debug\KarthusSharp.exe 2015-01-12 23:04:32 48B1FEC0EE27A88D48DBA004C26E7EF0 10631216 ----a-w- C:\Users\Todos os Usuários\Battle.net\Agent\Agent.3669\Agent.exe 2015-01-12 23:04:32 48B1FEC0EE27A88D48DBA004C26E7EF0 10631216 ----a-w- C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe 2015-01-12 19:03:13 B793EE364D6E8955E6DC73DAE9CD1404 10694192 ----a-w- C:\Users\Todos os Usuários\Battle.net\Agent\Agent.3668\Agent.exe 2015-01-12 19:03:13 B793EE364D6E8955E6DC73DAE9CD1404 10694192 ----a-w- C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe 2015-01-10 17:06:41 D6D099066E4A3F93C233A61E1E61FA51 717985 ----a-w- C:\Program Files (x86)\TibiaRPGBrasil 10.41\unins000.exe 2015-01-10 17:06:41 3284762666816FA0FA85A32508AC2F36 5098496 ----a-w- C:\Program Files (x86)\TibiaRPGBrasil 10.41\Tibia.exe 2015-01-10 17:03:20 D50A6E294B7F25796E0B16B422B0C1F8 27698161 ----a-w- C:\Users\Panje\Downloads\TibiaRPGBrasil1041.exe === C: other files == ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-21-3850311949-3553885960-1088866172-1000\Software\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="C:\Users\Panje\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" "LightShot"="C:\Users\Panje\AppData\Local\Skillbrains\lightshot\Lightshot.exe Flags: uninsdeletevalue" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe MSRun" "Diebold - Warsaw"="C:\Program Files (x86)\Diebold\Warsaw\core.exe" "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "uTorrent"="C:\Users\Panje\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED" "LightShot"="C:\Users\Panje\AppData\Local\Skillbrains\lightshot\Lightshot.exe Flags: uninsdeletevalue" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s" "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" "ShadowPlay"="C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart" "XMouseButtonControl"="C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe /notportable" ==== Startup Folders ====================== 2014-08-11 01:34:17 950 ----a-w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WNDA3100v2 Genie.lnk ==== Task Scheduler Jobs ====================== C:\Windows\tasks\Adobe Flash Player Updater.job --a------ C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14/01/2015 00:55] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [11/08/2014 20:43] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [11/08/2014 20:43] ==== Other Scheduled Tasks ====================== "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe] "C:\Windows\SysNative\tasks\Apple\AppleSoftwareUpdate" [C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe] "C:\Windows\SysNative\tasks\ASUS\ASUS Product Register Service" [C:\Program Files (x86)\ASUS\APRP\aprp.exe] "C:\Windows\SysNative\tasks\ASUS\RunDAOD" [C:\Windows\DAODx.exe] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions] "online_banking@kaspersky.com"="C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com" [11/08/2014 01:16] [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions] "{87F8774F-B485-47E2-A755-A40A8A5E8873}"="C:\Users\Panje\AppData\Local\GAS Tecnologia\GBBD\uni\xpi" [05/01/2015 21:52] ==== Firefox Extensions ====================== ProfilePath: C:\Users\Panje\AppData\Roaming\Mozilla\Firefox\Profiles\kx51i4pf.default - Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com - Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com - Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com - Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com - Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com ==== Firefox Plugins ====================== Profilepath: C:\Users\Panje\AppData\Roaming\Mozilla\Firefox\Profiles\kx51i4pf.default F6419D3B99616C80C947B9D7B427348B - C:\Users\Panje\AppData\Local\GAS Tecnologia\GBBD\npsf_uni.dll - Guardião Itaú 30 horas B8CFF778A75C685AAC275BFC00BB8FD8 - C:\Users\Panje\AppData\Local\GAS Tecnologia\GBBD\npsf_uni_64.dll - Guardião Itaú 30 horas ==== Fake Chromium Profiles Check ====================== Fake profile C:\Users\Administrador\AppData\Local\Google\Chrome deleted Fake profile C:\Users\Administrador\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Administrador\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Convidado\AppData\Local\Google\Chrome deleted Fake profile C:\Users\Convidado\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Convidado\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome deleted Fake profile C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\HomeGroupUser$\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\Panje\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\Panje\AppData\Local\Comodo\Dragon deleted Fake profile C:\Users\UpdatusUser\AppData\Local\Google\Chrome deleted Fake profile C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS deleted Fake profile C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon deleted ==== Chromium Look ====================== Google Chrome Version: 39.0.2171.99 (Up to date, latest Stable version: 39.0.2171.99) YouTube - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo panda dumpling - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\caaclfkfmcnlppkambfehbfhlekhpenf AdBlock - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom Twitch Live - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\iiljidcefnbhbpamageahhblhbbhhopm GBBD Guardião - Itaú 30 horas - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgmpojlddncminmkddkpoegdjhojjipg São Paulo FC News - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljfljmhgodnmcoeddiiaefkegoindhnj Google Wallet - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - Panje\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://google.com" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" ==== Deleting Registry Keys ====================== HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\a75cd98f-d70d-4430-a00f-9e94e7135211 deleted successfully ==== Empty IE Cache ====================== C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Panje\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully C:\Users\Panje\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Users\Panje\AppData\Local\Mozilla\Firefox\Profiles\kx51i4pf.default\Cache emptied successfully C:\Users\Panje\AppData\Local\Mozilla\Firefox\Profiles\kx51i4pf.default\cache2 emptied successfully ==== Empty Chrome Cache ====================== C:\Users\Panje\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=42 folders=41 170856371 bytes) ==== Empty Temp Folders ====================== C:\Users\Administrador\AppData\Local\temp emptied successfully C:\Users\Convidado\AppData\Local\temp emptied successfully C:\Users\Default\AppData\Local\temp emptied successfully C:\Users\Default User\AppData\Local\temp emptied successfully C:\Users\HomeGroupUser$\AppData\Local\temp emptied successfully C:\Users\Panje\AppData\Local\Temp will be emptied at reboot C:\Users\Public\AppData\Local\temp emptied successfully C:\Users\UpdatusUser\AppData\Local\temp emptied successfully C:\Users\USURIO~1\AppData\Local\temp emptied successfully C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully C:\Windows\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\Windows\Temp successfully emptied C:\Users\Panje\AppData\Local\Temp successfully emptied ==== Empty Recycle Bin ====================== C:\$RECYCLE.BIN successfully emptied ==== Deleting Files / Folders ====================== "C:\Users\Panje\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted ==== EOF on 17/01/2015 at 12:43:24,57 ====================== Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 17, 2015 /!\ Boa Noite! LipeZO /!\ > Baixe: < > ( ... by Farbar ) > No banner àcima,é para sistemas 32bits! < Farbar Recovery Scan Tool 64-Bit > > No link àcima,é para sistemas 64bits! > Salve-o no desktop! (Área de trabalho ...) > Execute a ferramenta! Clique "Yes" >> "Scan". > Antes de clicar "Scan",verifique se as caixinhas em "Whitelist" estão assinaladas. > Em "Optional Scan",deixe marcada a checkbox "Addition.txt". > Ps: Será gerado,também,o relatório "Addition.txt" que estará disponibilizado na 1ª execução da ferramenta. > Poste os relatórios! (FRST.txt + Addition.txt) > Como o log será extenso,envie-o à > > O link ao relatório,que é este assinalado,deverá ser colado em sua resposta. > Ou clique "Copier le lien (*)" e cole o link ao seu Post. A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 17, 2015 http://cjoint.com/?EAsanptgHU9 http://cjoint.com/?EAsaokuz322 Tiver que postar em 2 links pois são dois arquivos e eu não consegui colocar em um só ok. Obrigado Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 18, 2015 /!\ Bom Dia! LipeZO /!\ () C:\Windows\DAODx.exe > A ferramenta aponta este processo na inicialização. você o conhece? Task: {B7FB2A11-AE96-46BA-B3B0-5574170CC4C7} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () > Aqui está indicando tarefa associada à sua placa Asus. (Microsoft Corporation) C:\Windows\System32\makecab.exe > E este empacotador para ficheiros .cab,você o utiliza sistemáticamente? ==================== Event log errors: ========================= Application errors: ================== Error: (01/16/2015 06:45:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9314 Error: (01/16/2015 06:45:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9314 Error: (01/16/2015 06:45:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/16/2015 06:45:07 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8206 Error: (01/16/2015 06:45:07 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8206 Error: (01/16/2015 06:45:07 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/16/2015 06:45:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7114 Error: (01/16/2015 06:45:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7114 Error: (01/16/2015 06:45:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/16/2015 06:45:05 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6038 Microsoft Office Sessions: ========================= Error: (01/16/2015 06:45:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9314 Error: (01/16/2015 06:45:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9314 Error: (01/16/2015 06:45:08 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/16/2015 06:45:07 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8206 Error: (01/16/2015 06:45:07 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8206 Error: (01/16/2015 06:45:07 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/16/2015 06:45:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7114 Error: (01/16/2015 06:45:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7114 Error: (01/16/2015 06:45:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/16/2015 06:45:05 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 6038 ---- ---- > Existem muitos erros associados ao Bonjour,onde recomendo sua remoção ou desinstalação. ---- ---- O Bonjour detecta tudo o que for necessário para configurar uma rede sem que você faça nadinha. O Bonjour,antes conhecido como Rendezvous,é uma inovação da Apple que implementou o conceito de Zeroconf,ou seja,a identificação e configuração automáticos de componentes dentro de uma rede. Estes componentes incluem computadores, impressoras, dispositivos e serviços. Para isso, o Bonjour utiliza o protocolo IP padrão. Desta maneira, não é necessário que o usuário configure endereços IP ou servidores DNS. O programa utiliza,por padrão,a porta UDP 5353. Caso você utilize um firewall, é necessário configurá-lo para abrir esta porta. Alguns programas de segurança vão bloquear ,parcialmente,as configurações do Bonjour. Logo, se você tiver problemas, configure seu programa manualmente. As últimas atualizações do Bonjour incluem um plugin para a identificação de servidores HTTP e um assistente para impressoras. ---- ---- > O que ele faz? Esta foi a melhor definição que encontrei. > Acredito que,teoricamente,possa alterar a atualização automática de antivírus já que solicita portas de comunicação,podendo conflitar com as de seu antivírus. > > Copie estas informações que estão em vermelho,para o Bloco de Notas. > Salve-as com o nome fixlist. << Texto! > Salve-as no desktop! ( Área de trabalho ... ) /!\ C:\Users\Panje\Desktop /!\ start CloseProcesses: emptytemp: HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3850311949-3553885960-1088866172-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] 2015-01-17 12:43 - 2015-01-17 12:43 - 00000000 ____D () C:\Users\Todos os Usuários\boost_interprocess 2015-01-17 12:43 - 2015-01-17 12:43 - 00000000 ____D () C:\ProgramData\boost_interprocess 2015-01-17 12:33 - 2015-01-17 12:15 - 00024064 _____ () C:\Windows\zoek-delete.exe 2015-01-17 12:16 - 2015-01-17 12:43 - 00023003 _____ () C:\zoek-results.log 2015-01-17 12:15 - 2015-01-17 12:28 - 00000000 ____D () C:\zoek_backup 2015-01-17 12:15 - 2015-01-17 12:15 - 01295360 _____ () C:\Users\Panje\Downloads\zoek.exe 2015-01-17 12:15 - 2015-01-17 12:15 - 01295360 _____ () C:\Users\Panje\Desktop\zoek.exe 2015-01-16 17:22 - 2015-01-16 17:22 - 00003032 _____ () C:\Users\Panje\Desktop\AdwCleaner[s0].txt 2015-01-16 17:21 - 2015-01-16 17:21 - 00000000 _____ () C:\essai.txt 2015-01-16 17:18 - 2015-01-16 17:22 - 00002583 _____ () C:\Users\Panje\Desktop\ZHPCleaner.txt 2015-01-16 17:15 - 2015-01-16 17:22 - 00000000 ____D () C:\Users\Panje\AppData\Roaming\ZHP 2015-01-16 17:14 - 2015-01-16 17:14 - 01424896 _____ () C:\Users\Panje\Desktop\ZHPCleaner.exe 2015-01-16 17:13 - 2015-01-16 17:14 - 01424896 _____ () C:\Users\Panje\Downloads\ZHPCleaner.exe 2015-01-16 17:11 - 2015-01-17 12:42 - 00000646 _____ () C:\Windows\PFRO.log 2015-01-16 17:09 - 2015-01-16 17:10 - 00000000 ____D () C:\AdwCleaner 2015-01-16 17:08 - 2015-01-16 17:07 - 02191360 _____ () C:\Users\Panje\Desktop\AdwCleaner.exe 2015-01-16 17:07 - 2015-01-16 17:07 - 02191360 _____ () C:\Users\Panje\Downloads\AdwCleaner.exe 2015-01-16 09:47 - 2015-01-16 09:47 - 00002957 _____ () C:\Users\Panje\Desktop\HiJackThis.lnk 2015-01-16 09:47 - 2015-01-16 09:47 - 00000000 ____D () C:\Users\Panje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis 2015-01-16 09:45 - 2015-01-16 09:47 - 00000000 ____D () C:\HijackThis 2015-01-16 09:45 - 2015-01-16 09:45 - 01402880 _____ () C:\Users\Panje\Downloads\HijackThis (1).msi 2015-01-16 09:39 - 2015-01-16 09:39 - 01402880 _____ () C:\Users\Panje\Downloads\HijackThis.msi 2015-01-09 20:14 - 2015-01-09 20:14 - 00000383 _____ () C:\Windows\DirectX.log 2014-12-30 10:28 - 2015-01-17 12:43 - 00004955 _____ () C:\Windows\setupact.log 2014-12-30 10:28 - 2014-12-30 10:28 - 00000000 _____ () C:\Windows\setuperr.log 2015-01-17 21:04 - 2014-08-10 23:12 - 01964133 _____ () C:\Windows\WindowsUpdate.log 2015-01-09 19:12 - 2014-11-09 17:55 - 00002369 _____ () C:\YasuoDashes.txt CMD: netsh winsock reset CMD: ipconfig /flushdns end > Execute FRST/FRST64 >> Clique "Fix" << Aguarde! > Na mensagem,clique Executar. > Poste o relatório! (Fixlog.txt) < Peço aos visitantes que não utilizem este script em outros computadores,sob risco de danos irreparáveis aos mesmos! > A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 18, 2015 Bom dia, efetuei os procedimentos, e referente ao DAODx.exe não conheço e .cab também desconheço, até posso estar usando os mesmo para algum programa porem não sei informar ao certo. Removi tambem o bonjour e mesmo assim não consigo atualizar o anti virus. Segue o relatório como solicitado. Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-01-2015 Ran by Panje at 2015-01-18 11:51:56 Run:2 Running from C:\Users\Panje\Desktop Loaded Profiles: Panje (Available profiles: Panje) Boot Mode: Normal ============================================== Content of fixlist: ***************** start CloseProcesses: emptytemp: HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-3850311949-3553885960-1088866172-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] 2015-01-17 12:43 - 2015-01-17 12:43 - 00000000 ____D () C:\Users\Todos os Usuários\boost_interprocess 2015-01-17 12:43 - 2015-01-17 12:43 - 00000000 ____D () C:\ProgramData\boost_interprocess 2015-01-17 12:33 - 2015-01-17 12:15 - 00024064 _____ () C:\Windows\zoek-delete.exe 2015-01-17 12:16 - 2015-01-17 12:43 - 00023003 _____ () C:\zoek-results.log 2015-01-17 12:15 - 2015-01-17 12:28 - 00000000 ____D () C:\zoek_backup 2015-01-17 12:15 - 2015-01-17 12:15 - 01295360 _____ () C:\Users\Panje\Downloads\zoek.exe 2015-01-17 12:15 - 2015-01-17 12:15 - 01295360 _____ () C:\Users\Panje\Desktop\zoek.exe 2015-01-16 17:22 - 2015-01-16 17:22 - 00003032 _____ () C:\Users\Panje\Desktop\AdwCleaner[s0].txt 2015-01-16 17:21 - 2015-01-16 17:21 - 00000000 _____ () C:\essai.txt 2015-01-16 17:18 - 2015-01-16 17:22 - 00002583 _____ () C:\Users\Panje\Desktop\ZHPCleaner.txt 2015-01-16 17:15 - 2015-01-16 17:22 - 00000000 ____D () C:\Users\Panje\AppData\Roaming\ZHP 2015-01-16 17:14 - 2015-01-16 17:14 - 01424896 _____ () C:\Users\Panje\Desktop\ZHPCleaner.exe 2015-01-16 17:13 - 2015-01-16 17:14 - 01424896 _____ () C:\Users\Panje\Downloads\ZHPCleaner.exe 2015-01-16 17:11 - 2015-01-17 12:42 - 00000646 _____ () C:\Windows\PFRO.log 2015-01-16 17:09 - 2015-01-16 17:10 - 00000000 ____D () C:\AdwCleaner 2015-01-16 17:08 - 2015-01-16 17:07 - 02191360 _____ () C:\Users\Panje\Desktop\AdwCleaner.exe 2015-01-16 17:07 - 2015-01-16 17:07 - 02191360 _____ () C:\Users\Panje\Downloads\AdwCleaner.exe 2015-01-16 09:47 - 2015-01-16 09:47 - 00002957 _____ () C:\Users\Panje\Desktop\HiJackThis.lnk 2015-01-16 09:47 - 2015-01-16 09:47 - 00000000 ____D () C:\Users\Panje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis 2015-01-16 09:45 - 2015-01-16 09:47 - 00000000 ____D () C:\HijackThis 2015-01-16 09:45 - 2015-01-16 09:45 - 01402880 _____ () C:\Users\Panje\Downloads\HijackThis (1).msi 2015-01-16 09:39 - 2015-01-16 09:39 - 01402880 _____ () C:\Users\Panje\Downloads\HijackThis.msi 2015-01-09 20:14 - 2015-01-09 20:14 - 00000383 _____ () C:\Windows\DirectX.log 2014-12-30 10:28 - 2015-01-17 12:43 - 00004955 _____ () C:\Windows\setupact.log 2014-12-30 10:28 - 2014-12-30 10:28 - 00000000 _____ () C:\Windows\setuperr.log 2015-01-17 21:04 - 2014-08-10 23:12 - 01964133 _____ () C:\Windows\WindowsUpdate.log 2015-01-09 19:12 - 2014-11-09 17:55 - 00002369 _____ () C:\YasuoDashes.txt CMD: netsh winsock reset CMD: ipconfig /flushdns end ***************** Processes closed successfully. "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully. "HKU\S-1-5-21-3850311949-3553885960-1088866172-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully. EagleX64 => Service deleted successfully. xhunter1 => Service deleted successfully. C:\Users\Todos os Usuários\boost_interprocess => Moved successfully. "C:\ProgramData\boost_interprocess" => File/Directory not found. C:\Windows\zoek-delete.exe => Moved successfully. C:\zoek-results.log => Moved successfully. C:\zoek_backup => Moved successfully. C:\Users\Panje\Downloads\zoek.exe => Moved successfully. C:\Users\Panje\Desktop\zoek.exe => Moved successfully. C:\Users\Panje\Desktop\AdwCleaner[s0].txt => Moved successfully. C:\essai.txt => Moved successfully. C:\Users\Panje\Desktop\ZHPCleaner.txt => Moved successfully. C:\Users\Panje\AppData\Roaming\ZHP => Moved successfully. C:\Users\Panje\Desktop\ZHPCleaner.exe => Moved successfully. C:\Users\Panje\Downloads\ZHPCleaner.exe => Moved successfully. C:\Windows\PFRO.log => Moved successfully. C:\AdwCleaner => Moved successfully. C:\Users\Panje\Desktop\AdwCleaner.exe => Moved successfully. C:\Users\Panje\Downloads\AdwCleaner.exe => Moved successfully. C:\Users\Panje\Desktop\HiJackThis.lnk => Moved successfully. C:\Users\Panje\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis => Moved successfully. C:\HijackThis => Moved successfully. C:\Users\Panje\Downloads\HijackThis (1).msi => Moved successfully. C:\Users\Panje\Downloads\HijackThis.msi => Moved successfully. C:\Windows\DirectX.log => Moved successfully. C:\Windows\setupact.log => Moved successfully. C:\Windows\setuperr.log => Moved successfully. Could not move "C:\Windows\WindowsUpdate.log" => Scheduled to move on reboot. C:\YasuoDashes.txt => Moved successfully. ========= netsh winsock reset ========= Cat�logo Winsock redefinido com �xito. Reinicie o computador para concluir a redefini��o. ========= End of CMD: ========= ========= ipconfig /flushdns ========= Configura��o de IP do Windows Libera��o do Cache do DNS Resolver bem-sucedida. ========= End of CMD: ========= EmptyTemp: => Removed 430.4 MB temporary data. => Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-01-18 11:53:47)<= C:\Windows\WindowsUpdate.log => Is moved successfully. ==== End of Fixlog 11:53:47 ==== Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 18, 2015 /!\ Boa Tarde! LipeZO /!\ < http://support.kaspersky.com/us/9915 > << Link! > Verifique se o acesso a alguns destes ítens,resolve o problema: 1. Check the system date 2. Check your Internet connection via Internet Explorer 3. Configure your Firewall 4. Check whether third-party antivírus software is installed on your computer 5. ------- 6. Contact Kaspersky Lab Technical Support > Infelizmente o suporte,ainda,é em Inglês. > Informe! A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 18, 2015 Boa tarde, consegui atualizar o anti-vrius, agora falta atualizar o Malwarebytes Anti-Malware... e gostaria de saber tambem se é bom utilizar essa ferramente, se compensa, e utilizo também o Auslogics BoostSpeed obrigado pelo suporte. Sensacional como sempre. Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 18, 2015 Boa tarde, consegui atualizar o anti-vrius, agora falta atualizar o Malwarebytes Anti-Malware... e gostaria de saber tambem se é bom utilizar essa ferramente, se compensa, e utilizo também o Auslogics BoostSpeed obrigado pelo suporte. Sensacional como sempre. /!\ Boa Noite! LipeZO /!\ > Tendo o Kaspersky instalado,pode dispensar o antimalware Malwarebytes. > Utilize este limpador,após desinstalar o MBAM. > Baixe: < MBAM_CleanTool > > Salve-o em local adequado e execute-o como administrador. > Aceite o reboot,ao ser solicitado! > Caso não haja mais problemas,remova as ferramentas que foram utilizadas na desinfecção! > Baixe: < > ( ... de Xplode ) > Estando na página,clique em Download Now. > Salve-a em um local conveniente! ( desktop! ) > Feche aplicativos que estejam abertos. > Remover ferramentas de desinfecção > Criar backup do registro > Limpar pontos da restauração do sistema > Com estas caixinhas marcadas,clique Executar! > Reinicie o computador ao concluir! > Tudo Ok? A+ Compartilhar este post Link para o post Compartilhar em outros sites
LipeZO 0 Denunciar post Postado Janeiro 18, 2015 Obrigado a ajuda mais uma vez. Acredito estar tudo resolvido, qualquer duvida volto a perguntar. MUITO obrigado. Compartilhar este post Link para o post Compartilhar em outros sites
DigRam 144 Denunciar post Postado Janeiro 18, 2015 PROBLEMA RESOLVIDO Caso o autor necessite que o tópico seja reaberto basta enviar uma Mensagem Privada para um Moderador com um link para o tópico. Compartilhar este post Link para o post Compartilhar em outros sites