Jump to content
carol2906

[Arquivado] Computador lento e abrindo várias janelas

Recommended Posts

Bom dia,

Domingo deixei meu filho jogar no meu computador e o resultado foi que depois disso o computador está mais lento que o normal e abrindo várias janelas aleatórias.

Preciso de ajuda... desde já agradeço.

Segue log do HijackThis:

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 09:52:36, on 31/01/2017
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\PROGRA~1\GbPlugin\GbpSv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\SiS VGA Utilities\SiSTray.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\Epson Software\Event Manager\EEventManager.exe
C:\Windows\System32\aetcrss1.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\System32\C2MP\UpdateChecker.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\System32\C2MP\TrayMenu.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GR469A~1.DLL
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\PROGRAM FILES\GBPLUGIN\gbieh.dll
O2 - BHO: G-Buster Browser Defense CEF - {C41A1C0E-EA6C-11D4-B1B8-444553540003} - C:\PROGRAM FILES\GBPLUGIN\gbiehcef.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [siSTray] %ProgramFiles%\SiS VGA Utilities\SiSTray.exe
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [LGODDFU] C:\Program Files\lg_fwupdate\lgfw.exe blrun
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [Codec Settings UAC Manager] "C:\Windows\system32\C2MP\CodecUACManager.exe"
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Diebold - Warsaw] C:\Program Files\Diebold\Warsaw\core.exe
O4 - HKLM\..\Run: [CertificateRegistration] aetcrss1.exe
O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [EPSON TX133 TX135 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIHJB.EXE /FU "C:\Windows\TEMP\E_S11B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKCU\..\Run: [Codec Pack Update Checker] "C:\Windows\system32\C2MP\UpdateChecker.exe"
O4 - HKCU\..\Run: [Google Update] C:\Users\Not\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateCore.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_4D013C93135F825B6C898CEE188794F1] "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'SERVIÇO DE REDE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'SERVIÇO DE REDE')
O4 - Global Startup: CodecPackTrayMenu.lnk = C:\Windows\System32\C2MP\TrayMenu.exe
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: www.bancobrasil.com.br
O15 - Trusted Zone: www14.bancobrasil.com.br
O15 - Trusted Zone: www2.bancobrasil.com.br
O15 - Trusted Zone: www.bb.com.br
O15 - Trusted Zone: http://www.bb.com.br
O15 - Trusted Zone: imagem.caixa.gov.br
O15 - Trusted Zone: internetbanking.caixa.gov.br
O15 - Trusted Zone: internetbankingpf.caixa.gov.br
O15 - Trusted Zone: www.caixa.gov.br
O15 - Trusted Zone: http://www.caixa.gov.br
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GRA32A~1.DLL
O20 - Winlogon Notify: GbPluginBb - C:\Program Files\GbPlugin\gbieh.dll
O20 - Winlogon Notify: GbPluginCef - C:\Program Files\GbPlugin\gbiehCef.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: EPSON V5 Service4(04) (EPSON_EB_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50ST7.EXE
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Gbp Service (GbpSv) - GAS Tecnologia - C:\PROGRA~1\GbPlugin\GbpSv.exe
O23 - Service: Serviço do Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Serviço do Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Sentinel HASP License Manager (hasplms) - SafeNet Inc. - C:\Windows\system32\hasplms.exe
O23 - Service: Rapport Management Service (RapportMgmtService) - IBM Corp. - C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
--
End of file - 7731 bytes

Share this post


Link to post
Share on other sites

/_ Boa Tarde! carol2906 _\

> Execute estas duas ferramentas na ordem proposta!

> Baixe: < AdwCleaner_Logo2_zps580bcd78.jpg > ( ... par Xplode )

> Ou daqui: < AdwCleaner > << Link!
> Ao acessar,clique em "Download Now".

> Salve-o no desktop!
> Desabilite seu antivírus!

< Executar_Administrador.jpg >

> Clique direito em adwcleaner.exe,e escolha sua execução como administrador.

x3PdXSYF.jpg

> Clique "Ferramentas" >> "Opções".

9dMG19qG.jpg

> Estando em "Opções",deixe as configurações conforme este banner.
> Clique "Ok".

72mv88Rt.jpg

> Ps: Dê início ao scan,clicando em "Verificar".

AdwCleaner_Limpar_zps06005ae9.jpg

> Ao concluir,clique "Limpar" ou "Cleaning" >> Ok >> Ok >> Ok.
> Copie o log ou clique "Relatorio".
> Poste: < C:\AdwCleaner\AdwCleaner[C0].txt >

> Baixe: < 2wZxkvW.jpg > ( ... by Malwarebytes.org )

> Ou aqui! < JRT.exe >
> Salve-o no desktop!
> Desabilite seu antivírus!
> Para Windows 7,clique direito em JRT.exe e execute-o ...

Executar_Administrador.jpg

> Tendo dificuldades,pode executá-lo em Modo de Segurança com Rede.

KRBKDhB8.jpg

> Aguarde a conclusão e poste o relatório. ( JRT.txt )

[Abs]

Share this post


Link to post
Share on other sites

Boa tarde DigRam,

Seguem os relatórios:

# AdwCleaner v6.043 - Relatório criado 31/01/2017 às 15:20:40
# Atualizado em 27/01/2017 por Malwarebytes
# Banco de dados : 2017-01-30.3 [servidor]
# Sistema operacional : Windows 7 Ultimate Service Pack 1 (X86)
# Usuário : Not - NOT-PC
# Executando de : C:\Users\Not\Desktop\adwcleaner_6.043.exe
# Modo: Limpo
--------------------------------------------------------------------------------
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Windows 7 Ultimate x86
Ran by Not (Administrator) on 31/01/2017 at 15:28:55,47
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 16
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2M6EF2E8 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7QHEUHEJ (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9SO05AX1 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HB1FMNCM (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KVC20TWK (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M83TBDL2 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9L5KHYP (Temporary Internet Files Folder)
Successfully deleted: C:\Users\Not\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VPDMM3QI (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2M6EF2E8 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7QHEUHEJ (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9SO05AX1 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\HB1FMNCM (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KVC20TWK (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M83TBDL2 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R9L5KHYP (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VPDMM3QI (Temporary Internet Files Folder)
Registry: 1
Successfully deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_4D013C93135F825B6C898CEE188794F1 (Registry Value)
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 31/01/2017 at 16:21:59,92
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Share this post


Link to post
Share on other sites

/_ Boa Tarde! carol2906 _\

> Baixe: < ZHPCleaner_zps71d274df.jpg > ( 6LcRokv.jpg ... de Nicolas Coolman )

> Ou |Aqui!| << Mirror!
> Estando na página,clique 7ukwnm8.jpg

> Salve-a no desktop! ( ZHPCleaner.exe )
> Desabilite seu antivírus e execute ZHPCleaner.exe <<

psizeTv.jpg

> Clique "Eu".

6MKUYyzn.jpg

> Clique Scanner.

ljOOETD.jpg

> Aguarde a conclusão!

9g2LW3p.jpg

> Ao concluir,clique Reparar.

CWxMrxRA.jpg

> Acesse as guias que estão assinaladas em vermelho.
> Clique Reparar.

fN86PG8.jpg

> Ao concluir,clique Relatório!
> Poste o log de reparo: ~ Type : Reparo

[Abs]

Share this post


Link to post
Share on other sites

Bom dia,

Havia executado o ZHP na semana passada, porém quando vim aqui o site estava em manutenção.  Aí agora não sei se o log que achei é o correto.

Obrigada

 

~ ZHPCleaner v2017.1.29.20 by Nicolas Coolman (2017/01/29)
~ Run by Not (Administrator)  (31/01/2017 18:45:07)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Reparo
~ Report : C:\Users\Not\Desktop\ZHPCleaner.txt
~ Quarantine : C:\Users\Not\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
~ UAC : Activate
~ Boot Mode : Normal (Normal boot)
Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601)


---\\  Serviços (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.


---\\  Navegadores de Internet (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.


---\\  Arquivo hosts (1)
~ O arquivo hosts é legítimo (21)


---\\  Tarefas automáticas agendadas. (0)
~ Nenhum ítem malicioso o desnecessários foi encontrado.


---\\  Explorer ( Arquivos, Pastas) (27)
MOVIDO pasta: C:\Users\Not\AppData\Roaming\unins000.exe [ - Setup/Uninstall]  =>PUP.Optional.Pirrit
MOVIDO pasta: C:\Users\Not\AppData\Roaming\unins001.exe [ - Setup/Uninstall]  =>PUP.Optional.Pirrit
MOVIDO pasta: C:\Users\Not\AppData\Roaming\unins002.exe [ - Setup/Uninstall]  =>PUP.Optional.Pirrit
MOVIDO pasta: C:\Windows\Installer\wix{462A1E00-58EA-4D63-96F4-3EFAEC9A5BCA}.SchedServiceConfig.rmi    =>.Superfluous.Empty
MOVIDO pasta: C:\Users\Not\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ext.dl.tb.ask.com_0.localstorage    =>Toolbar.Ask
MOVIDO pasta: C:\Users\Not\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ext.dl.tb.ask.com_0.localstorage-journal    =>Toolbar.Ask
MOVIDO arquivo: C:\Users\Not\AppData\Local\Temp\scoped_dir5048_18740  =>.Superfluous.Temporary.Steam
MOVIDO arquivo: C:\Users\Not\AppData\Local\Google\Chrome\User Data\Default\File System\008  =>PUP.Optional.DomaIQ
MOVIDO arquivo: C:\Windows\Installer\MSI4FF9.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIAB5C.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIC18D.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIC604.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSICE6D.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSID003.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSID256.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSID380.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIDC18.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIDE2C.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIDFA3.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIE0FB.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIE418.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIE893.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIEB82.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIED57.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIEEEE.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIF18D.tmp-  =>.Superfluous.Empty
MOVIDO arquivo: C:\Windows\Installer\MSIF51B.tmp-  =>.Superfluous.Empty


---\\  Registro ( Chaves, Valores, Dados ) (8)
SUPRIMIDO chave*: HKLM\SOFTWARE\Classes\P32fec9c6_92f9_4d13_b67d_3358a72dbe73_.P32fec9c6_92f9_4d13_b67d_3358a72dbe73_ [SalePlus]  =>PUP.Optional.Multiplug
SUPRIMIDO chave*: HKLM\SOFTWARE\Classes\P32fec9c6_92f9_4d13_b67d_3358a72dbe73_.P32fec9c6_92f9_4d13_b67d_3358a72dbe73_.9 [SalePlus]  =>PUP.Optional.Multiplug
SUPRIMIDO chave*: HKLM\SOFTWARE\Microsoft\Tracing\Offercast341_ATU3__RASAPI32 []  =>Toolbar.Ask
SUPRIMIDO chave*: HKLM\SOFTWARE\Microsoft\Tracing\Offercast341_ATU3__RASMANCS []  =>Toolbar.Ask
SUPRIMIDO chave*: HKLM\SOFTWARE\Microsoft\Tracing\Offercast349_ATU3__RASAPI32 []  =>Toolbar.Ask
SUPRIMIDO chave*: HKLM\SOFTWARE\Microsoft\Tracing\Offercast349_ATU3__RASMANCS []  =>Toolbar.Ask
SUPRIMIDO chave*: HKLM\SOFTWARE\Microsoft\Tracing\Offercast391_ARS__RASAPI32 []  =>Toolbar.Ask
SUPRIMIDO chave*: HKLM\SOFTWARE\Microsoft\Tracing\Offercast391_ARS__RASMANCS []  =>Toolbar.Ask


---\\  Resumo dos elementos encontrados na sua estação de trabalho (6)
https://www.nicolascoolman.com/fr/pup-pirritsuggestor/  =>PUP.Optional.Pirrit
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/logiciels-superflus  =>.Superfluous.Empty
https://www.anti-malware.top/2016/09/22/toolbar-ask/  =>Toolbar.Ask
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/logiciels-superflus  =>.Superfluous.Temporary.Steam
https://www.nicolascoolman.com/fr/adware-domaiq/  =>PUP.Optional.DomaIQ
https://www.anti-malware.top/2016/04/28/pup-optional-multiplug/  =>PUP.Optional.Multiplug


---\\  Dodatkowe oczyszczenie. (35)
~ Chave de registro Tracing Supprimido (35)
~ Remover os relatórios antigos ZHPCleaner. (0)


---\\ Resultado de reparação
Reparação efectuada com sucesso
~ Este navegador está faltando ! (Opera Software)


---\\ Estatísticas
~ Items scan : 475
~ Items encontrado : 0
~ items cancelados : 0
~ Items réparo : 35


~ End of clean in 00h00mn31s
~====================
ZHPCleaner-[R]-31012017-18_45_38.txt
ZHPCleaner--31012017-18_39_48.txt
 

Share this post


Link to post
Share on other sites

/_ Bom Dia! carol2906 _\

> Baixe: < FRST_Logo.jpg > ( ... by Farbar )

> O banner àcima,acessa a ferramenta para sistemas 32bits!

< Farbar Recovery Scan Tool 64-Bit

> No link àcima,é para uso em sistemas 64bits!
> Salve-o no desktop! (Área de trabalho ...)
> Execute a ferramenta! Clique "Sim" >> "Examinar".

4y9giFrI.jpg

> Antes de clicar "Examinar",verifique se as caixinhas em "Whitelist" estão assinaladas.
> Em "Exame Opcional",deixe marcada as checkbox "Addition.txt" e "Arquivos 90 Dias".
> Ps: Será gerado,também,o relatório "Addition.txt".
> Poste os relatórios! (FRST.txt + Addition.txt)

> Como os logs serão extensos,envie-os à Cjoint_Logo.jpg

EUE4tdb.jpg

> Clique no botão Parcourir... 
> Busque o relatório e clique no botão Abrir.
> Clique no botão "Créer le lien Cjoint".
> Copie o link que está ao lado de "Le lien a été créé" e poste-o em sua resposta.

acrVh6GY.jpg

> O link ao relatório,que é este assinalado,deverá ser colado em sua resposta.

Copierlelien_zpsd51f499f.jpg

> Ou clique "Copier le lien (*)" e cole o link ao seu Post.
> Outra opçãohospedar os relatórios em Hébergement de fichiers, Security-x.fr.
> Fique atenta,pois teremos 2 links a serem postados!

A+
 

Share this post


Link to post
Share on other sites

Tópico Arquivado Como o autor não respondeu por mais de 10 dias, o tópico foi arquivado. Caso você seja o autor do tópico e quer reabrir, envie uma mensagem privada para um moderador da área juntamente com o link para este tópico e explique o motivo da reabertura.

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×

Important Information

Ao usar o fórum, você concorda com nossos Terms of Use.