Fórum SecSecurity

Implementando Limpeza e Seguranca em seu computador!

Palavras chave

Últimos assuntos

» Clean_DNS ( ... by g3n-h@ckm@n )
Dom Jul 16, 2017 6:00 pm por joram

»  MCShield ( ... by Borislav Šurbat and Boban Spasić )
Qua Jul 12, 2017 3:22 pm por joram

» CheckDiskGUI ( ... by Emiel Wieldraaijer )
Seg Jul 10, 2017 11:08 am por joram

» Eset Online Scanner ( ... by Eset.com )
Sab Jul 08, 2017 9:32 am por joram

» Virus Total ( ... de virustotal.com )
Dom Jun 11, 2017 9:21 am por joram

» RogueKiller ( ... by adlice.com )
Dom Jun 04, 2017 8:36 pm por joram

» Sophos Virus Removal Tool ( ... by Sophos.com )
Dom Maio 21, 2017 4:44 pm por joram

» 9-Lab Malware Removal Tool ( ... by 9-lab.com )
Sab Dez 31, 2016 4:24 am por joram

» SFCFix ( ... de niemiro )
Sab Dez 24, 2016 9:29 am por joram

Julho 2017

SegTerQuaQuiSexSabDom
     12
3456789
10111213141516
17181920212223
24252627282930
31      

Calendário Calendário

Parceiros

Fórum grátis

Os membros mais marcados


    pc travando, log para analise.

    Compartilhe
    avatar
    Edvan
    Membro
    Membro

    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 36
    Localização : Natal/RN

    pc travando, log para analise.

    Mensagem por Edvan em Sab Jul 06, 2013 10:59 am

    Amigo, mais um para vc analisar, a configuração do pc é ruim, mesmo assim o usuário está reclamando de lentidao e travamento.

    passei essas ferramentas abaixo, por ultimo o log do ZHPDiag. [Você precisa estar registrado e conectado para ver este link.]

    # AdwCleaner v2.304 - Relatório criado em 05/07/2013 às 21:08:09
    # Atualizado em 03/07/2013 por Xplode
    # Sistema Operacional : Microsoft Windows XP Service Pack 3 (32 bits)
    # Usuário : e0054 - FUN0026
    # Modo de Boot : Normal
    # Executado de : C:\Documents and Settings\e0054\Meus documentos\Downloads\adwcleaner.exe
    # Opção [Remover]

    ***** [Serviços] *****
    Encerrado & Removido : SProtection
    ***** [Arquivos/Pastas] *****
    Arquivo Removido : C:\Arquivos de programas\Mozilla Firefox\defaults\pref\all-iminent.js
    Arquivo Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
    Arquivo Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
    Arquivo Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\searchplugins\Askcom.xml
    Arquivo Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\searchplugins\Conduit.xml
    Arquivo Removido : C:\WINDOWS\system32\roboot.exe
    Arquivo Removido : C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
    Pasta Removido : C:\Arquivos de programas\Arquivos comuns\Umbrella
    Pasta Removido : C:\Arquivos de programas\Ask.com
    Pasta Removido : C:\Arquivos de programas\Conduit
    Pasta Removido : C:\Arquivos de programas\DealPly
    Pasta Removido : C:\Arquivos de programas\Iminent
    Pasta Removido : C:\Arquivos de programas\uTorrentBar_PT
    Pasta Removido : C:\DOCUME~1\e0054\CONFIG~1\Temp\CT2851643
    Pasta Removido : C:\DOCUME~1\e0054\CONFIG~1\Temp\Iminent
    Pasta Removido : C:\Documents and Settings\Administrador\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\Documents and Settings\Administrador\Dados de aplicativos\Iminent
    Pasta Removido : C:\Documents and Settings\All Users\Dados de aplicativos\Ask
    Pasta Removido : C:\Documents and Settings\All Users\Dados de aplicativos\Iminent
    Pasta Removido : C:\Documents and Settings\All Users\Menu Iniciar\Programas\DealPly
    Pasta Removido : C:\Documents and Settings\All Users\Menu Iniciar\Programas\Iminent
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\APN
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Conduit
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\uTorrentBar_PT
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\DealPly
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Iminent
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\CT2851643
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\extensions\{e0301295-ab3e-4af3-979f-3d453c5f9f48}
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\extensions\toolbar@ask.com
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\Smartbar
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\PriceGong
    Pasta Removido : C:\Documents and Settings\f002902\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\Documents and Settings\f003651\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\WINDOWS\Installer\{118D6CE9-5F18-42F9-958A-14676A629FDE}
    Pasta Removido : C:\WINDOWS\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\mdebcffgnijbblbinknkbefciofebcda
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\mdebcffgnijbblbinknkbefciofebcda
    ***** [Registro] *****
    Chave Removida : HKCU\Software\APN
    Chave Removida : HKCU\Software\Ask.com
    Chave Removida : HKCU\Software\AskToolbar
    Chave Removida : HKCU\Software\Conduit
    Chave Removida : HKCU\Software\ConduitSearchScopes
    Chave Removida : HKCU\Software\DealPly
    Chave Removida : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Chave Removida : HKCU\Software\Google\Chrome\Extensions\mdebcffgnijbblbinknkbefciofebcda
    Chave Removida : HKCU\Software\Iminent
    Chave Removida : HKCU\Software\InstallCore
    Chave Removida : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
    Chave Removida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{075FB993-E0E5-42BC-9558-BE07965E184A}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
    Chave Removida : HKCU\Software\PriceGong
    Chave Removida : HKCU\Software\SmartBar
    Chave Removida : HKCU\Software\uTorrentBar_PT
    Chave Removida : HKCU\Toolbar
    Chave Removida : HKLM\Software\APN
    Chave Removida : HKLM\Software\AskToolbar
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{075FB993-E0E5-42BC-9558-BE07965E184A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
    Chave Removida : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
    Chave Removida : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
    Chave Removida : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
    Chave Removida : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
    Chave Removida : HKLM\SOFTWARE\Classes\Toolbar.CT2851643
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
    Chave Removida : HKLM\Software\Conduit
    Chave Removida : HKLM\Software\DealPly
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\mdebcffgnijbblbinknkbefciofebcda
    Chave Removida : HKLM\Software\Iminent
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0416048-879D-4680-82B6-BD0EE96B85D2}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA6AB308-E884-48E2-BE1C-AF5839FC50DB}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DealPly
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\IMBoosterARP
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrentBar_PT Toolbar
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{075FB993-E0E5-42BC-9558-BE07965E184A}
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B4750D705E2564409328D661F3A08E1
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\120DFADEB50841F408F04D2A278F9509
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\26E983F1377593143A37E3BA1C65CB74
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BDF3E992C0908741B7C11F4B4E0F775
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3C036A97566BFD147A3318BA9E8EA65E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CC84F27D09408149894EC0F9A7C017F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4BDFB2601A205D344828E68FC902CAE9
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B3BC4CF5ECE1F54BBA174C13A1AB907
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D010CDB0C7815A48A7F780C5F8AACA7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AFEEBDA8013CAA74C8052DC06F9F22D8
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B5BAE2ED018083A4C8DA86D6E3F4B024
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEABAA33A5E68374DBF197F2A00CD011
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB61AF52AD64B6B45930BE969F316720
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC063FFF6402E614191D191F0DE5C5B4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F18FD125C322BC84286AD21D8B685F2F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F1C8F66181D6DDD488BB6F772F71324A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71371A90E93D605C8B0A71F163F625C
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{118D6CE9-5F18-42F9-958A-14676A629FDE}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentBar_PT Toolbar
    Chave Removida : HKLM\Software\Umbrella
    Chave Removida : HKLM\Software\uTorrentBar_PT
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E0301295-AB3E-4AF3-979F-3D453C5F9F48}]
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{E0301295-AB3E-4AF3-979F-3D453C5F9F48}]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{E0301295-AB3E-4AF3-979F-3D453C5F9F48}]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
    Valor Removida : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [webbooster@iminent.com]
    Valor Removida : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Arquivos de programas\Iminent\Iminent.exe]
    Valor Removida : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Arquivos de programas\Iminent\Iminent.Messengers.exe]
    ***** [Navegadores] *****
    -\\ Internet Explorer v8.0.6001.18702
    [OK] Registro está limpo.
    -\\ Mozilla Firefox v17.0.1 (pt-BR)
    Arquivo : C:\Documents and Settings\f002902\Dados de aplicativos\Mozilla\Firefox\Profiles\qprntm97.default\prefs.js
    [OK] Arquivo está limpo.
    Arquivo : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\prefs.js
    Removida : user_pref("CT2851643.1000234.TWC_TMP_city", "SAO PAULO");
    Removida : user_pref("CT2851643.1000234.TWC_TMP_country", "BR");
    Removida : user_pref("CT2851643.1000234.TWC_country", "BRAZIL");
    Removida : user_pref("CT2851643.1000234.TWC_locId", "BRXX0232");
    Removida : user_pref("CT2851643.1000234.TWC_location", "Sao Paulo, Brazil");
    Removida : user_pref("CT2851643.1000234.TWC_region", "BR");
    Removida : user_pref("CT2851643.1000234.TWC_temp_dis", "c");
    Removida : user_pref("CT2851643.1000234.TWC_wind_dis", "kmh");
    Removida : user_pref("CT2851643.1000234.weatherData", "{\"icon\":\"33.png\",\"temperature\":\"18°C\",\"temperat[...]
    Removida : user_pref("CT2851643.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]
    Removida : user_pref("CT2851643.FF19Solved", "true");
    Removida : user_pref("CT2851643.FirstTime", "true");
    Removida : user_pref("CT2851643.FirstTimeFF3", "true");
    Removida : user_pref("CT2851643.PG_ENABLE", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.PG_ENABLE.enc", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.PairingKey.enc", "Q0VFM0ZBM0JFQTNEMThEMzhFMjEzN0Y0REU4RUQxQjQ4QjdCMEEzNg==");
    Removida : user_pref("CT2851643.SF_JUST_INSTALLED.enc", "RkFMU0U=");
    Removida : user_pref("CT2851643.SF_STATUS.enc", "RU5BQkxFRA==");
    Removida : user_pref("CT2851643.SF_USER_ID.enc", "Y2lkXzE1NDIwMTMxNjE4NDI0MzA3NTQz");
    Removida : user_pref("CT2851643.SearchAppState.enc", "Mg==");
    Removida : user_pref("CT2851643.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT285[...]
    Removida : user_pref("CT2851643.UserID", "UN34207218211137825");
    Removida : user_pref("CT2851643.addressBarTakeOverEnabledInHidden", "true");
    Removida : user_pref("CT2851643.autoDisableScopes", -1);
    Removida : user_pref("CT2851643.browser.search.defaultthis.engineName", "true");
    Removida : user_pref("CT2851643.cbfirsttime.enc", "TW9uIE1heSAyNyAyMDEzIDE1OjE0OjEzIEdNVC0wMzAwIChIb3JhIG9maWNp[...]
    Removida : user_pref("CT2851643.defaultSearch", "true");
    Removida : user_pref("CT2851643.embeddedsData", "[{\"appId\":\"129351530870900444\",\"apiPermissions\":{\"cross[...]
    Removida : user_pref("CT2851643.enableAlerts", "always");
    Removida : user_pref("CT2851643.enableFix404ByUser", "FALSE");
    Removida : user_pref("CT2851643.enableSearchFromAddressBar", "true");
    Removida : user_pref("CT2851643.firstTimeDialogOpened", "true");
    Removida : user_pref("CT2851643.fixPageNotFoundError", "true");
    Removida : user_pref("CT2851643.fixPageNotFoundErrorByUser", "true");
    Removida : user_pref("CT2851643.fixPageNotFoundErrorInHidden", "true");
    Removida : user_pref("CT2851643.fixUrls", true);
    Removida : user_pref("CT2851643.installDate", "27/2/2013 14:08:06");
    Removida : user_pref("CT2851643.installType", "xpe");
    Removida : user_pref("CT2851643.isCheckedStartAsHidden", true);
    Removida : user_pref("CT2851643.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.isFirstTimeToolbarLoading", "false");
    Removida : user_pref("CT2851643.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
    Removida : user_pref("CT2851643.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.keyword", "true");
    Removida : user_pref("CT2851643.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://search.conduit[...]
    Removida : user_pref("CT2851643.lastVersion", "10.16.2.509");
    Removida : user_pref("CT2851643.mam_gk_appStateReportTime.enc", "MTM3MzA2OTE1ODQwMQ==");
    Removida : user_pref("CT2851643.mam_gk_appState_CouponBuddy.enc", "b24=");
    Removida : user_pref("CT2851643.mam_gk_appState_PriceGong.enc", "b24=");
    Removida : user_pref("CT2851643.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9w[...]
    Removida : user_pref("CT2851643.mam_gk_appsDefaultEnabled.enc", "bnVsbA==");
    Removida : user_pref("CT2851643.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6IkVhc3l0b2Jvb2tfdGF[...]
    Removida : user_pref("CT2851643.mam_gk_currentVersion.enc", "MS44LjAuNA==");
    Removida : user_pref("CT2851643.mam_gk_eventsCache.enc", "eyJkZmFjNTM0Zi1lMzFkLTRmMDUtODY0YS00Y2ViYWNjZDlhYmMiO[...]
    Removida : user_pref("CT2851643.mam_gk_first_time.enc", "MQ==");
    Removida : user_pref("CT2851643.mam_gk_gadgetOpen.enc", "MA==");
    Removida : user_pref("CT2851643.mam_gk_installer_preapproved.enc", "ZmFsc2U=");
    Removida : user_pref("CT2851643.mam_gk_lastLoginTime.enc", "MTM3MzA2OTE1NDAwOA==");
    Removida : user_pref("CT2851643.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJQb2zDrXRp[...]
    Removida : user_pref("CT2851643.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.mam_gk_settings1.4.3.2.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_settings1.4.4.6.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_settings1.6.0.1.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_settings1.8.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_showCloseButton.enc", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.mam_gk_showWelcomeGadget.enc", "ZmFsc2U=");
    Removida : user_pref("CT2851643.mam_gk_userId.enc", "MDFmZDgzODItYTYxZi00NDliLThhZGYtNjE0ZmQwM2E1NjBh");
    Removida : user_pref("CT2851643.mam_gk_user_apps_selection.enc", "");
    Removida : user_pref("CT2851643.migrateAppsAndComponents", true);
    Removida : user_pref("CT2851643.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fgeneral-changelo[...]
    Removida : user_pref("CT2851643.openThankYouPage", "true");
    Removida : user_pref("CT2851643.openUninstallPage", "false");
    Removida : user_pref("CT2851643.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT28[...]
    Removida : user_pref("CT2851643.price-gong.isManagedApp", "true");
    Removida : user_pref("CT2851643.revertSettingsEnabled", "false");
    Removida : user_pref("CT2851643.scriptSource.enc", "aHR0cDovLzEyNy4wLjAuMToxMDAwMC9ndWkv");
    Removida : user_pref("CT2851643.search.searchAppId", "129351530870900444");
    Removida : user_pref("CT2851643.search.searchCount", "0");
    Removida : user_pref("CT2851643.searchFromAddressBarEnabledByUser", "true");
    Removida : user_pref("CT2851643.searchInNewTabEnabledByUser", "true");
    Removida : user_pref("CT2851643.searchInNewTabEnabledInHidden", "true");
    Removida : user_pref("CT2851643.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]
    Removida : user_pref("CT2851643.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]
    Removida : user_pref("CT2851643.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1371478717302");
    Removida : user_pref("CT2851643.serviceLayer_services_appsMetadata_lastUpdate", "1371575504940");
    Removida : user_pref("CT2851643.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1371576022128");
    Removida : user_pref("CT2851643.serviceLayer_services_location_lastUpdate", "1371575505943");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.14.370.524_lastUpdate", "1364239493865");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.14.65.43_lastUpdate", "1363886488587");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.15.0.562_lastUpdate", "1369678526943");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.16.2.509_lastUpdate", "1371651624832");
    Removida : user_pref("CT2851643.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1371576022284");
    Removida : user_pref("CT2851643.serviceLayer_services_searchAPI_lastUpdate", "1371575505480");
    Removida : user_pref("CT2851643.serviceLayer_services_serviceMap_lastUpdate", "1371575504914");
    Removida : user_pref("CT2851643.serviceLayer_services_setupAPI_lastUpdate", "1363886489325");
    Removida : user_pref("CT2851643.serviceLayer_services_toolbarContextMenu_lastUpdate", "1371576021975");
    Removida : user_pref("CT2851643.serviceLayer_services_toolbarSettings_lastUpdate", "1371651624535");
    Removida : user_pref("CT2851643.serviceLayer_services_translation_lastUpdate", "1371575506236");
    Removida : user_pref("CT2851643.settingsINI", true);
    Removida : user_pref("CT2851643.shouldFirstTimeDialog", "false");
    Removida : user_pref("CT2851643.showToolbarPermission", "false");
    Removida : user_pref("CT2851643.smartbar.CTID", "CT2851643");
    Removida : user_pref("CT2851643.smartbar.Uninstall", "0");
    Removida : user_pref("CT2851643.smartbar.homepage", "true");
    Removida : user_pref("CT2851643.smartbar.toolbarName", "uTorrentBar_PT ");
    Removida : user_pref("CT2851643.startPage", "true");
    Removida : user_pref("CT2851643.toolbarBornServerTime", "21-3-2013");
    Removida : user_pref("CT2851643.toolbarCurrentServerTime", "19-6-2013");
    Removida : user_pref("CT2851643.toolbarLoginClientTime", "Mon Mar 25 2013 16:22:46 GMT-0300 (Hora oficial do Br[...]
    Removida : user_pref("CT2851643.uTTorrents.enc", "eyJidWlsZCI6Mjk2MjUsInRvcnJlbnRzIjpbXSwibGFiZWwiOltdLCJ0b3JyZ[...]
    Removida : user_pref("CT2851643.url_history0001.enc", "aHR0cDovL3d3dy5nb29nbGUuY29tLmJyL3VybD9zYT10JnJjdD1qJnE9[...]
    Removida : user_pref("CT2851643_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
    Removida : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2851643&SearchSource=1[...]
    Removida : user_pref("Smartbar.ConduitSearchEngineList", "uTorrentBar_PT Customized Web Search");
    Removida : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851643[...]
    Removida : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://websearch.ask.com/redirect?client=ff&src=[...]
    Removida : user_pref("Smartbar.keywordURLSelectedCTID", "CT2851643");
    Removida : user_pref("browser.search.defaultengine", "Ask.com");
    Removida : user_pref("browser.search.defaultenginename", "Ask.com");
    Removida : user_pref("browser.search.defaultthis.engineName", "uTorrentBar_PT Customized Web Search");
    Removida : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851643&Sea[...]
    Removida : user_pref("browser.search.order.1", "Ask.com");
    Removida : user_pref("browser.search.selectedEngine", "uTorrentBar_PT Customized Web Search");
    Removida : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT2851643&SearchSource=13&CUI[...]
    Removida : user_pref("extensions.asktb.ff-original-keyword-url", "");
    Removida : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851643&SearchSource=2&CU[...]
    Removida : user_pref("smartBar.searchInNewTabOwner", "CT2851643");
    Removida : user_pref("smartbar.addressBarOwnerCTID", "CT2851643");
    Removida : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT2851643&SearchSource=13[...]
    Removida : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...]
    Removida : user_pref("smartbar.defaultSearchOwnerCTID", "CT2851643");
    Removida : user_pref("smartbar.machineId", "QQODO9FZJZR2OE8JMXPUFDSIVJSHLUOP4DV/3PVNJ/P73LKUUEVUOSPWDYOIDD0FBRA[...]
    Removida : user_pref("smartbar.originalHomepage", "hxxp://www.baixaki.com.br/portal/?utm_source=core&utm_medium[...]
    Removida : user_pref("smartbar.originalSearchAddressUrl", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&t[...]
    Removida : user_pref("smartbar.originalSearchEngine", "Ask.com");
    -\\ Google Chrome v27.0.1453.116
    Arquivo : C:\Documents and Settings\Funpec\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Preferences
    [OK] Arquivo está limpo.
    Arquivo : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Preferences
    Removida [l.31] : icon_url = "hxxp://search.conduit.com/fav.ico",
    Removida [l.34] : keyword = "search.conduit.com",
    Removida [l.38] : search_url = "hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&cui=UN19[...]
    Removida [l.2325] : homepage = "hxxp://search.conduit.com/?CUI=UN19746529532096126&ctid=CT2851643&SearchSource=48",
    Removida [l.2891] : urls_to_restore_on_startup = [ "hxxp://search.conduit.com/?CUI=UN19746529532096126&ctid=CT285[...]
    *************************
    AdwCleaner[S1].txt - [57458 octets] - [05/07/2013 21:08:09]
    ########## EOF - C:\AdwCleaner[S1].txt - [57519 octets] ##########


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 4.8.9 (04.22.2013:1)
    OS: Microsoft Windows XP x86
    Ran by e0054 on 05/07/2013 at 22:07:46,01
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


    ~~~ Services

    ~~~ Registry Values
    Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
    Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL

    ~~~ Registry Keys
    Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
    Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EA4EE50C-7838-4517-9D34-CDDEB51A5E84}

    ~~~ Files

    ~~~ Folders

    ~~~ FireFox
    Successfully deleted the following from C:\Documents and Settings\e0054\Dados de aplicativos\mozilla\firefox\profiles\79faqdwq.default\prefs.js
    user_pref("iminent.webbooster.scripts.minibar.ShowThankyouPixel", "0");
    user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent102", "1104548370377");
    user_pref("iminent.webbooster.scripts.sslminibar.ShowThankyouPixel", "0");
    user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent100", "1371575884565");
    Emptied folder: C:\Documents and Settings\e0054\Dados de aplicativos\mozilla\firefox\profiles\79faqdwq.default\minidumps [5 files]


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on 05/07/2013 at 22:26:24,53
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    avatar
    Edvan
    Membro
    Membro

    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 36
    Localização : Natal/RN

    Re: pc travando, log para analise.

    Mensagem por Edvan em Sab Jul 06, 2013 11:00 am

    Continuação:



    ComboFix 13-07-06.03 - e0054 06/07/2013  10:46:30.1.1 - x86
    Microsoft Windows XP Professional  5.1.2600.3.1252.55.1046.18.1014.665 [GMT -3]
    Executando de: c:\documents and settings\e0054\Desktop\ComboFix.exe
    AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
    .
    .
    (((((((((((((((((((((((((((((((((((((   Outras Exclusões   )))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\windows\system\chron32.dll
    .
    .
    ((((((((((((((((   Arquivos/Ficheiros criados de 2013-06-06 to 2013-07-06  ))))))))))))))))))))))))))))
    .
    .
    2013-07-06 01:07 . 2013-07-06 01:07 -------- d-----w- c:\windows\ERUNT
    2013-07-06 01:07 . 2013-07-06 01:07 -------- d-----w- C:\JRT
    2013-07-05 20:47 . 2013-07-05 20:51 -------- d-----w- c:\documents and settings\e0054\Dados de aplicativos\TeamViewer
    2013-07-05 20:42 . 2001-09-06 02:20 12288 -c--a-w- c:\windows\system32\dllcache\mouhid.sys
    2013-07-05 20:42 . 2001-09-06 02:20 12288 ----a-w- c:\windows\system32\drivers\mouhid.sys
    2013-07-05 20:42 . 2008-04-13 14:45 10368 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
    2013-07-05 20:42 . 2008-04-13 14:45 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((   Relatório Find3M   ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2013-07-05 20:55 . 2013-04-22 19:29 175176 ----a-w- c:\windows\system32\drivers\aswVmm.sys
    2013-07-05 20:55 . 2012-06-25 13:33 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys
    2013-07-05 20:55 . 2012-06-25 13:33 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys
    2013-06-12 19:19 . 2012-06-25 14:50 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
    2013-06-12 19:19 . 2012-06-25 14:50 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
    2013-06-04 20:37 . 2013-06-04 20:38 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
    2013-06-04 20:37 . 2012-06-25 14:53 866720 ----a-w- c:\windows\system32\npdeployJava1.dll
    2013-06-04 20:37 . 2012-06-25 14:53 144896 ----a-w- c:\windows\system32\javacpl.cpl
    2013-06-04 20:37 . 2012-06-25 14:34 788896 ----a-w- c:\windows\system32\deployJava1.dll
    2013-05-09 08:59 . 2013-04-22 19:29 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
    2013-05-09 08:59 . 2012-06-25 13:33 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys
    2013-05-09 08:59 . 2013-04-22 19:29 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
    2013-05-09 08:59 . 2012-06-25 13:33 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys
    2013-05-09 08:59 . 2012-06-25 13:33 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
    2013-05-09 08:58 . 2012-06-25 13:33 41664 ----a-w- c:\windows\avastSS.scr
    2013-05-09 08:58 . 2012-06-25 13:33 229648 ----a-w- c:\windows\system32\aswBoot.exe
    2013-04-15 19:11 . 2013-04-22 19:27 69632 ----a-w- c:\windows\system32\CNAS0MMK.DLL
    2013-02-22 19:30 . 2013-02-22 19:30 0 ----a-w- c:\arquivos de programas\GUM6F.tmp
    2003-03-21 16:37 . 2003-03-21 16:37 16056 ----a-w- c:\arquivos de programas\owcstp16.dll
    2013-04-01 13:40 . 2013-04-01 13:40 262112 ----a-w- c:\arquivos de programas\mozilla firefox\components\browsercomps.dll
    .
    .
    ------- Sigcheck -------
    Note: Unsigned files aren't necessarily malware.
    .
    [-] 2012-05-30 . 1D01C384F3BA123EB6F09769DEA005AC . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
    .
    ((((((((((((((((((((((((((   Pontos de Carregamento do Registro   )))))))))))))))))))))))))))))))))))))))
    .
    .
    *Nota* entradas vazias e legítimas por padrão não são apresentadas.
    REGEDIT4
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
    @="{472083B0-C522-11CF-8763-00608CC02F24}"
    [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
    2013-05-09 08:58 121968 ----a-w- c:\arquivos de programas\AVAST Software\Avast\ashShell.dll
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"="c:\arquivos de programas\uTorrent\uTorrent.exe" [2013-05-06 802136]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avast"="c:\arquivos de programas\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
    "SunJavaUpdateSched"="c:\arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe" [2013-03-12 253816]
    .
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
    2012-12-03 07:35 946352 ----a-w- c:\arquivos de programas\Arquivos comuns\Adobe\ARM\1.0\AdobeARM.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
    2012-07-31 11:20 38872 ----a-w- c:\arquivos de programas\Adobe\Reader 9.0\Reader\reader_sl.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
    2008-04-13 21:20 15360 ----a-w- c:\windows\system32\ctfmon.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
    2012-08-09 18:14 116648 ----atw- c:\documents and settings\e0054\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
    2005-08-23 16:00 77824 ----a-w- c:\windows\system32\hkcmd.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
    2005-08-23 16:00 114688 ----a-w- c:\windows\system32\igfxpers.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
    2005-08-23 16:00 94208 ----a-w- c:\windows\system32\igfxtray.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
    2006-03-01 08:22 577536 ----a-w- c:\windows\soundman.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
    2013-03-12 10:32 253816 ----a-w- c:\arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe
    .
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Arquivos de programas\\uTorrent\\uTorrent.exe"=
    "c:\\Arquivos de programas\\TeamViewer\\Version8\\TeamViewer.exe"=
    "c:\\Arquivos de programas\\TeamViewer\\Version8\\TeamViewer_Service.exe"=
    .
    R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [22/04/2013 16:29 49376]
    R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [22/04/2013 16:29 175176]
    R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [25/06/2012 10:33 770344]
    R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [25/06/2012 10:33 369584]
    R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [25/06/2012 10:33 29816]
    R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [22/04/2013 16:29 66336]
    R2 OrolixDeviceMonitor;Orolix Device Monitor;c:\arquivos de programas\TIM Communicator\module\devicemon.exe [20/04/2010 08:05 27040]
    R2 TeamViewer8;TeamViewer 8;c:\arquivos de programas\TeamViewer\Version8\TeamViewer_Service.exe [05/07/2013 17:49 4150112]
    S3 jrdusbser;Olicard Modem Interface Device for Legacy Serial Communication;c:\windows\system32\drivers\jrdusbser.sys [17/09/2010 12:44 105344]
    S3 Olicard155net;Olicard155 USB-NDIS miniport;c:\windows\system32\drivers\Olicard155Usbnet.sys [17/09/2010 12:44 117760]
    S3 OXSDIDRV_x32;Oxford Semi eSATA Filter (x32);c:\windows\system32\drivers\OXSDIDRV_x32.sys [28/09/2009 09:55 52656]
    S3 OXUDIDRV;OXUDIDRV;c:\windows\system32\drivers\OXUDIDRV_x32.sys [27/06/2012 10:04 24880]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    HPZ12 REG_MULTI_SZ    Pml Driver HPZ12 Net Driver HPZ12
    .
    Conteúdo da pasta 'Tarefas Agendadas'
    .
    2013-07-06 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-25 19:19]
    .
    2013-07-06 c:\windows\Tasks\avast! Emergency Update.job
    - c:\arquivos de programas\AVAST Software\Avast\AvastEmUpdate.exe [2012-07-05 08:58]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{0805268F-E6B6-4152-81D6-4FFA91CAF8A2}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{31DC390A-A06B-41A0-BFDC-265B8576F717}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{CDEA9E91-94F9-4C52-A202-5CD270F19FAB}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{EF54D918-B29A-4640-AC0F-08562B5F5C5A}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    .
    ------- Scan Suplementar -------
    .
    uStart Page = [Você precisa estar registrado e conectado para ver este link.]
    mStart Page = [Você precisa estar registrado e conectado para ver este link.]
    IE: E&xportar para o Microsoft Excel - c:\arquiv~1\MICROS~2\Office12\EXCEL.EXE/3000
    TCP: DhcpNameServer = 10.4.65.16
    FF - ProfilePath - c:\documents and settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\
    .
    .
    **************************************************************************
    .
    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [Você precisa estar registrado e conectado para ver este link.]
    Rootkit scan 2013-07-06 10:56
    Windows 5.1.2600 Service Pack 3 NTFS
    .
    Procurando processos ocultos ...
    .
    Procurando entradas auto inicializáveis ocultas ...
    .
    Procurando ficheiros/arquivos ocultos ...
    .
    Varredura completada com sucesso
    arquivos/ficheiros ocultos: 0
    .
    **************************************************************************
    .
    --------------------- CHAVES DO REGISTRO BLOQUEADAS ---------------------
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    --------------------- DLLs Carregadas Sob os Processos em Execução ---------------------
    .
    - - - - - - - > 'winlogon.exe'(576)
    c:\windows\system32\igfxdev.dll
    .
    Tempo para conclusão: 2013-07-06  10:58:51
    ComboFix-quarantined-files.txt  2013-07-06 13:58
    .
    Pré-execução: 7 pasta(s) 61.996.367.872 bytes disponíveis
    Pós execução: 9 pasta(s) 62.730.485.760 bytes disponíveis
    .
    - - End Of File - - 4382820AF46A618CCCE556AE5860DC0B
    239FC8B1C26D5286165A956F5A98D8D7
    avatar
    joram
    Administrador Fundador
    Administrador Fundador

    Mensagens : 617
    Data de inscrição : 14/08/2012
    Idade : 64
    Localização : Rio de Janeiro

    Re: pc travando, log para analise.

    Mensagem por joram em Sab Jul 06, 2013 12:03 pm

    Boa Tarde! Edvan

    |- Baixe: < [Você precisa estar registrado e conectado para ver este link.] > ( ... by Smeenk )

    |- Ou aqui! < [Você precisa estar registrado e conectado para ver este link.] >

    |- Salve-o no desktop!
    |- Desabilite seu antivírus!
    |- Para Windows 7,execute zoek.exe como administrador.

    startupall; 
    autoclean; 
    filesrcm; 
    emptyalltemp;
     

    |- Copie e cole estas informações,em vermelho,no campo da ferramenta.
    |- Clique "Run Script". <- Aguarde!

    [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Aceite e/ou confirme o reboot!

    zoek.hta failed by unknown error.
    Restart computer, and try again.
    |- Ps: Ao obter algum erro,reinicie o PC e execute,novamente,a ferramenta.
    |- Poste o relatório,que estará em C:\zoek-results.txt << 

    -/-

    |- Feche programas/pastas que estejam abertas.
    |- Feche,também,o navegador!
    |- Para Windows Vista,desabilite a [Você precisa estar registrado e conectado para ver este link.].

    [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Para Windows Vista ou 7,clique direito em ZHPFix.exe e execute-o como administrador.
    |- Selecione e copie estas informações,que estão em vermelho,para o "Bloco de Notas".
    #####

    O2 - BHO: (no name) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} Orphean Key     
    O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} Orphean Key     
    O2 - BHO: (no name) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} Orphean Key     
    O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} Orphean Key     
    O3 - Toolbar: (no name) - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (...) --  (.not file.)

    proxyfix
    firewallraz

    #####
    |- Estando com o Bloco de Notas aberto,acione os atalhos: "Ctrl+A" -> "Ctrl+C"
    |- Minimize o Bloco de Notas.

    [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Clique no menu,"Paste ClipBoard".
    |- Evite a opção "Colar" ( Ctrl+V ),no campo amarelo claro,que não habilita o botão "Go".

    [Você precisa estar registrado e conectado para ver este link.]

    |- Clique "GO" -> Oui.

    [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Ps: Temos,àcima,sequência de imagens para maior exclarecimento.
    |- Poste o relatório: C:\ZHP\ZHPFix[R1].txt

    Abs!


    Última edição por joram em Seg Jul 08, 2013 8:33 am, editado 1 vez(es)
    avatar
    Edvan
    Membro
    Membro

    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 36
    Localização : Natal/RN

    Re: pc travando, log para analise.

    Mensagem por Edvan em Sab Jul 06, 2013 5:21 pm

    Zoek.exe Version 4.0.0.3 Updated 05-July-2013
    Tool run by e0054 on 06/07/2013 at 17:50:32,04.
    Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
    Running in: Normal Mode Internet Access Detected
    ==== Deleting CLSID Registry Keys ======================

    ==== Deleting CLSID Registry Values ======================

    ==== Deleting Services ======================

    ==== FireFox Fix ======================
    ProfilePath: C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default
    user.js not found
    ---- Lines iminent removed from prefs.js ----

    ---- Lines iminent modified from prefs.js ----
    user_pref("extensions.enabledAddons", "%7BEB9394A3-4AD6-4918-9537-31A1FD8E8EDF%7D:2.0,webbooster%40iminent.com:6.9.2.2,%7B87F8774F-B485-47E2-A755-A40A8A5E886C%7D:2.12.1.26.170,%7Be0301295-ab3e-4af3-979f-3d453c5f9f48%7D:10.16.2.509,%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1");
    user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"[email=wrc@avast.com":{"descriptor":"C:\\Arquivos][Você precisa estar registrado e conectado para ver este link.]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\AVAST Software\\\\Avast\\\\WebRep\\\\FF\",\"mtime\":1373057703093},\"[email=webbooster@iminent.com":{"descriptor":"C:\\Arquivos][Você precisa estar registrado e conectado para ver este link.]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\Iminent\\\\webbooster@iminent.com\",\"mtime\":1361984731218}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1364823654640}}},{\"name\":\"app-profile\",\"addons\":{\"[email=toolbar@ask.com":{"descriptor":"C:\\Documents][Você precisa estar registrado e conectado para ver este link.]\":{\"descriptor\":\"C:\\\\Documents[/email] and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\toolbar@ask.com\",\"mtime\":1354649574859},\"{87F8774F-B485-47E2-A755-A40A8A5E886C}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{87F8774F-B485-47E2-A755-A40A8A5E886C}\",\"mtime\":1364827321962},\"{e0301295-ab3e-4af3-979f-3d453c5f9f48}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{e0301295-ab3e-4af3-979f-3d453c5f9f48}\",\"mtime\":1373033511750},\"{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\",\"mtime\":1361984582625}}}]");
    ---- Lines ask.com removed from prefs.js ----

    ---- Lines ask.com modified from prefs.js ----
    user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"[email=wrc@avast.com":{"descriptor":"C:\\Arquivos][Você precisa estar registrado e conectado para ver este link.]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\AVAST Software\\\\Avast\\\\WebRep\\\\FF\",\"mtime\":1373057703093},\"[email=webbooster@disabled.com":{"descriptor":"C:\\Arquivos][Você precisa estar registrado e conectado para ver este link.]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\disabled\\\\webbooster@disabled.com\",\"mtime\":1361984731218}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1364823654640}}},{\"name\":\"app-profile\",\"addons\":{\"[email=toolbar@ask.com":{"descriptor":"C:\\Documents][Você precisa estar registrado e conectado para ver este link.]\":{\"descriptor\":\"C:\\\\Documents[/email] and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\toolbar@ask.com\",\"mtime\":1354649574859},\"{87F8774F-B485-47E2-A755-A40A8A5E886C}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{87F8774F-B485-47E2-A755-A40A8A5E886C}\",\"mtime\":1364827321962},\"{e0301295-ab3e-4af3-979f-3d453c5f9f48}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{e0301295-ab3e-4af3-979f-3d453c5f9f48}\",\"mtime\":1373033511750},\"{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\",\"mtime\":1361984582625}}}]");
    ---- FireFox user.js and prefs.js backups ----
    prefs_072013_1758_.backup
    ProfilePath: C:\Documents and Settings\f002902\Dados de aplicativos\Mozilla\Firefox\Profiles\qprntm97.default
    user.js not found
    ---- Lines iminent removed from prefs.js ----

    ---- Lines iminent modified from prefs.js ----

    ---- Lines ask.com removed from prefs.js ----

    ---- Lines ask.com modified from prefs.js ----

    ---- FireFox user.js and prefs.js backups ----
    prefs_072013_1758_.backup
    ==== Deleting Files \ Folders ======================
    "C:\Arquivos de programas\Iminent\webbooster@iminent.com" not found
    "C:\Arquivos de programas\GUM6F.tmp" deleted
    "C:\Documents and Settings\e0054\Dados de aplicativos\desktop.ini" deleted
    "C:\WINDOWS\SET3.tmp" deleted
    "C:\WINDOWS\SET4.tmp" deleted
    "C:\WINDOWS\SET8.tmp" deleted
    ==== Files Recently Created / Modified ======================
    ====== C:\WINDOWS ====
    2013-07-06 01:43:02 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\WINDOWS\PEV.exe
    2013-07-06 01:43:02 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\WINDOWS\grep.exe
    2013-07-06 01:43:02 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\WINDOWS\zip.exe
    2013-07-06 01:43:02 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\WINDOWS\SWSC.exe
    2013-07-06 01:43:02 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\WINDOWS\MBR.exe
    ====== C:\DOCUME~1\e0054\CONFIG~1\Temp ====
    ====== C:\WINDOWS\system32 =====
    ====== C:\WINDOWS\system32\drivers =====
    2013-07-05 20:55:21 FAF091AA45A6A6CF3CF94FE065950956 175 ----a-w- C:\WINDOWS\System32\drivers\aswSnx.sys.sum
    2013-07-05 20:55:21 3FFBEE694566CADB0A64D8A1ACD7DBCE 175 ----a-w- C:\WINDOWS\System32\drivers\aswSP.sys.sum
    2013-07-05 20:55:21 22EA82FFE8CA4965C1994F24C35DC202 175 ----a-w- C:\WINDOWS\System32\drivers\aswVmm.sys.sum
    2013-07-05 20:42:22 53D3DBA64871148591BFE21B492C3558 12288 ----a-w- C:\WINDOWS\System32\drivers\mouhid.sys
    2013-07-05 20:42:00 CCF82C5EC8A7326C3066DE870C06DAF1 10368 ----a-w- C:\WINDOWS\System32\drivers\hidusb.sys
    ====== C:\WINDOWS\Tasks ======
    ====== C:\WINDOWS\Temp ======
    ======= C:\Arquivos de programas =====
    2013-07-06 14:47:14 -------- d-----w- C:\Arquivos de programas\ZHPDiag
    ======= C: =====
    2013-07-06 14:48:29 23DAB3975E2FBB9E7EEC2E1A17BC197A 512 ----a-w- C:\PhysicalDisk0_MBR.bin
    2013-07-06 01:47:26 FA579938B0733B87066546AFE951082C 211 ----a-w- C:\Boot.bak
    2013-07-06 01:47:22 C51A881398F29071239741AE16D07C1C 261856 --sha-r- C:\cmldr
    2013-07-06 00:08:09 A2964E008544036A9945C486DA3C4425 57589 ----a-w- C:\AdwCleaner[S1].txt
    ====== C:\Documents and Settings\e0054\Dados de aplicativos ======
    2013-07-06 01:42:01 -------- d-----r- C:\Documents and Settings\e0054\Menu Iniciar\Programas\Ferramentas administrativas
    2013-07-05 20:49:59 -------- d-----w- C:\Documents and Settings\All Users\Menu Iniciar\Programas\TeamViewer 8
    2013-07-05 20:47:09 -------- d-----w- C:\Documents and Settings\e0054\Dados de aplicativos\TeamViewer
    ====== C:\Documents and Settings\e0054 ======
    2013-07-06 20:45:53 -------- d-sh--w- C:\Documents and Settings\NetworkService\Cookies
    2013-07-06 14:47:22 AE326A97F634217CAC29739D376DF934 344187 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHP_uninstall.exe
    2013-07-06 01:38:14 E897110EE5E67FABB83B154DF9C68D6A 794216 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHPDiag_silent.exe
    ====== C: exe-files ==
    2013-07-06 14:47:22 AE326A97F634217CAC29739D376DF934 344187 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHP_uninstall.exe
    2013-07-06 14:47:22 8747E33E978E91C7888364E95F53D977 370235 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPDiags.exe
    2013-07-06 14:47:22 74C3DFCC1C6BF8B0BD977EF6F4185208 2709504 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPFix.exe
    2013-07-06 14:47:19 56873D899C0707AA017AA2D74EC190AE 3770368 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPDiag.exe
    2013-07-06 14:47:18 E100F7F1AA506F91A3C64366EE290E33 555944 ----a-w- C:\Arquivos de programas\ZHPDiag\setacl64.exe
    2013-07-06 14:47:18 C3D16F308C98CB3BDC315D996D7D89AD 706512 ----a-w- C:\Arquivos de programas\ZHPDiag\unins000.exe
    2013-07-06 14:47:18 53CDBB093B0AEE9FD6CF1CBD25A95077 290304 ----a-w- C:\Arquivos de programas\ZHPDiag\subinacl.exe
    2013-07-06 14:47:18 417C1BE0BF4D7C505D60D2CEFCDF2347 231048 ----a-w- C:\Arquivos de programas\ZHPDiag\sigcheck.exe
    2013-07-06 14:47:17 CB2D120A4B72422A8141192831B1F500 80384 ----a-w- C:\Arquivos de programas\ZHPDiag\mbrcheck.exe
    2013-07-06 14:47:17 9DAA7218961710008D7385B01BD3F386 89088 ----a-w- C:\Arquivos de programas\ZHPDiag\mbr.exe
    2013-07-06 14:47:17 79C7BC4A7642D908A1527A0EB90138C9 452008 ----a-w- C:\Arquivos de programas\ZHPDiag\setacl32.exe
    2013-07-06 14:47:17 5DAF7081A4BB112FA3F1915819330A3E 61440 ----a-w- C:\Arquivos de programas\ZHPDiag\pv.exe
    2013-07-06 14:47:16 6B8AF3A2A3D9059008B55C444461CA00 61952 ----a-w- C:\Arquivos de programas\ZHPDiag\Lads.exe
    2013-07-06 14:47:16 5BBF2A0351E336646022D09009560CEF 143360 ----a-w- C:\Arquivos de programas\ZHPDiag\FileInfos.exe
    2013-07-06 14:47:15 F3A37421DBD1AAA36558C97572C91C5A 147456 ----a-w- C:\Arquivos de programas\ZHPDiag\catchme.exe
    2013-07-06 01:47:22 F0C08E06A2A3EF0618E3990DE36BAB21 616960 ----a-w- C:\cmdcons\autochk.exe
    2013-07-06 01:47:22 A317FC1D2F892651DEC970B9CCCD6D92 608768 ----a-w- C:\cmdcons\autofmt.exe
    2013-07-06 01:43:02 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\WINDOWS\PEV.exe
    2013-07-06 01:43:02 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\WINDOWS\grep.exe
    2013-07-06 01:43:02 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\WINDOWS\zip.exe
    2013-07-06 01:43:02 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\WINDOWS\SWSC.exe
    2013-07-06 01:43:02 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\WINDOWS\MBR.exe
    2013-07-06 01:38:14 E897110EE5E67FABB83B154DF9C68D6A 794216 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHPDiag_silent.exe
    2013-07-06 01:07:33 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\JRT\erunt\ERUNT.EXE
    2013-07-06 00:07:24 1078C8BD8C62CF4DEE6FE1058C3D56A7 650027 ----a-w- C:\Documents and Settings\e0054\Meus documentos\Downloads\adwcleaner.exe
    2013-07-06 00:04:31 A079519FFD3857560FA11EFBA92C0474 587671 ----a-w- C:\Documents and Settings\e0054\Desktop\Remoção de virus\AdwCleaner\adwcleaner0.exe
    2013-07-06 00:04:29 2C2F20747085946DE79A713879E09C4E 535764 ----a-w- C:\Documents and Settings\e0054\Desktop\Remoção de virus\JRT.exe
    2013-07-05 20:49:21 626F636F011550A28E4D7C419F5E097B 232800 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\tv_x64.exe
    2013-07-05 20:49:21 246C01238F05330BD93EAD9F7112AB36 628040 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\uninstall.exe
    2013-07-05 20:49:20 B35D5C3C453E88AF232668CC7413516A 195936 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\tv_w32.exe
    2013-07-05 20:49:20 57DDE1395F86EE048AB25717EEB8CAEB 4150112 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\TeamViewer_Service.exe
    2013-07-05 20:49:19 8335BEBF5A64B131CF20217511883F61 4310880 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\TeamViewer_Desktop.exe
    2013-07-05 20:49:17 2F3D8900815A96D8E7C8DDC6169DE30E 11077984 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\TeamViewer.exe
    === C: other files ==
    2013-07-06 14:46:56 82BF0B4BA8C5726A9788F914B8CA2E30 5543254 ----a-w- C:\Documents and Settings\e0054\Configurações locais\Temporary Internet Files\Content.IE5\RX9TEWPM\ZHPDiag[1].zip
    2013-07-06 14:46:33 1105E12E939F3BA98AFB622F2BC60460 77 ----a-w- C:\Documents and Settings\e0054\Configurações locais\temp\utt268.tmp.bat
    2013-07-06 01:45:02 4C93CCD8723493DBCEE6ECA6F11CAF6F 7352 ----a-w- C:\Qoobox\BackEnv\SetPath.bat
    2013-07-06 01:07:31 F79A3991927C7B1005E0DE627034002E 11837 ----a-w- C:\JRT\JRT.bat
    2013-07-06 01:07:31 E81B41BEDB4EFDE2BC2C6863E7ABE25A 78772 ----a-w- C:\JRT\misc.bat
    2013-07-06 01:07:31 E4B95882FB080670179EA3605395889B 29803 ----a-w- C:\JRT\iexplore.bat
    2013-07-06 01:07:31 C0C9EBB0F67894B294057F8DFD982FB7 224236 ----a-w- C:\JRT\firefox.bat
    2013-07-06 01:07:31 BC6829679AE4DF51BA5F2B6DF9C0BAFC 14243 ----a-w- C:\JRT\medfos.bat
    2013-07-06 01:07:31 892B8347BAF133646A19D3B90928AE86 15542 ----a-w- C:\JRT\chrome.bat
    2013-07-06 01:07:31 80D02380F1AC33E459324B088392A1EC 732 ----a-w- C:\JRT\ev_clear.bat
    2013-07-06 01:07:31 6AFF3EA276AA312EFBB29BA0D5D2A85A 9763 ----a-w- C:\JRT\modules.bat
    2013-07-06 01:07:31 63FEB4EAF9E8C709C3B3470BC40E3EF8 37373 ----a-w- C:\JRT\ask.bat
    2013-07-06 01:07:31 620AD0970CC18D799A357D5B9C797F31 5379 ----a-w- C:\JRT\runvalues.bat
    2013-07-06 01:07:31 4C021963204579942B72781B032315A0 29023 ----a-w- C:\JRT\prelim.bat
    2013-07-06 01:07:31 357F4F46BA2ADE86E2084DE3EC219A18 13025 ----a-w- C:\JRT\searchlnk.bat
    2013-07-06 01:07:31 33A0F7BBDF15B84FB01A361D09F54DFE 1825 ----a-w- C:\JRT\delfolders.bat
    2013-07-06 01:07:31 31D9F977B48014E79CC35A98D324B16A 1256 ----a-w- C:\JRT\FWPolicy.bat
    2013-07-06 01:07:31 1EE55AF77826E0E6F89A0ED6278E2C35 1040 ----a-w- C:\JRT\TDL4.bat
    2013-07-06 01:07:31 04BA8405091707D31A526A4689E6F5A8 14028 ----a-w- C:\JRT\get.bat
    2013-07-05 20:42:22 53D3DBA64871148591BFE21B492C3558 12288 -c--a-w- C:\WINDOWS\system32\dllcache\mouhid.sys
    2013-07-05 20:42:22 53D3DBA64871148591BFE21B492C3558 12288 ----a-w- C:\WINDOWS\system32\drivers\mouhid.sys
    2013-07-05 20:42:00 CCF82C5EC8A7326C3066DE870C06DAF1 10368 -c--a-w- C:\WINDOWS\system32\dllcache\hidusb.sys
    2013-07-05 20:42:00 CCF82C5EC8A7326C3066DE870C06DAF1 10368 ----a-w- C:\WINDOWS\system32\drivers\hidusb.sys
    ==== Startup Registry Enabled ======================
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
    [HKEY_USERS\S-1-5-21-2586132527-314635491-3328972525-21448\Software\Microsoft\Windows\CurrentVersion\Run]
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
    [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avast"="C:\Arquivos de programas\AVAST Software\Avast\avastUI.exe /nogui"
    "SunJavaUpdateSched"="C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe"
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
    ==== Startup Registry Disabled ======================
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"=""
    "hkey"="HKLM"
    "command"=""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="AdobeARM"
    "hkey"="HKLM"
    "command"="\"C:\\Arquivos de programas\\Arquivos comuns\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="Reader_sl"
    "hkey"="HKLM"
    "command"="\"C:\\Arquivos de programas\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CTFMON.EXE]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="ctfmon"
    "hkey"="HKCU"
    "command"="C:\\WINDOWS\\system32\\ctfmon.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Google Update]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="GoogleUpdate"
    "hkey"="HKCU"
    "command"="\"C:\\Documents and Settings\\e0054\\Configura‡äes locais\\Dados de aplicativos\\Google\\Update\\GoogleUpdate.exe\" /c"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\igfxhkcmd]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="hkcmd"
    "hkey"="HKLM"
    "command"="C:\\WINDOWS\\system32\\hkcmd.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\igfxpers]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="igfxpers"
    "hkey"="HKLM"
    "command"="C:\\WINDOWS\\system32\\igfxpers.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\igfxtray]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="igfxtray"
    "hkey"="HKLM"
    "command"="C:\\WINDOWS\\system32\\igfxtray.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SoundMan]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="SOUNDMAN"
    "hkey"="HKLM"
    "command"="SOUNDMAN.EXE"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="jusched"
    "hkey"="HKLM"
    "command"="\"C:\\Arquivos de programas\\Arquivos comuns\\Java\\Java Update\\jusched.exe\""

    ==== Task Scheduler Jobs ======================
    C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task]
    C:\WINDOWS\tasks\avast\Undetermined Task.exe []
    C:\WINDOWS\tasks\User_Feed_Synchronization-{0805268F-E6B6-4152-81D6-4FFA91CAF8A2}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    C:\WINDOWS\tasks\User_Feed_Synchronization-{31DC390A-A06B-41A0-BFDC-265B8576F717}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    C:\WINDOWS\tasks\User_Feed_Synchronization-{CDEA9E91-94F9-4C52-A202-5CD270F19FAB}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    C:\WINDOWS\tasks\User_Feed_Synchronization-{EF54D918-B29A-4640-AC0F-08562B5F5C5A}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    ==== Firefox Extensions ======================
    ProfilePath: C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default
    - Undetermined - C:\Arquivos de programas\Iminent\webbooster@iminent.com
    - Modulo de Seguranca - Banco do Brasil - %ProfilePath%\extensions\{87F8774F-B485-47E2-A755-A40A8A5E886C}
    ==== Firefox Plugins ======================

    ==== Set IE to Default ======================
    Old Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Você precisa estar registrado e conectado para ver este link.]"
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Você precisa estar registrado e conectado para ver este link.]"
    New Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Você precisa estar registrado e conectado para ver este link.]"
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Você precisa estar registrado e conectado para ver este link.]"
    ==== All HKCU SearchScopes ======================
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
    "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="[Você precisa estar registrado e conectado para ver este link.]"
    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="[Você precisa estar registrado e conectado para ver este link.]}"
    ==== Empty IE Cache ======================
    C:\Documents and Settings\Default User\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Documents and Settings\e0054\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Documents and Settings\LocalService\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Documents and Settings\NetworkService\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\WINDOWS\system32\config\systemprofile\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    ==== Empty FireFox Cache ======================
    No FireFox Cache found
    ==== Empty Chrome Cache ======================
    No Chrome User Data found
    ==== Empty All Flash Cache ======================
    Flash Cache Emptied Successfully
    ==== Empty All Java Cache ======================
    Java Cache cleared successfully
    ==== After Reboot ======================
    ==== Empty Temp Folders ======================
    C:\WINDOWS\Temp successfully emptied
    C:\DOCUME~1\e0054\CONFIG~1\Temp successfully emptied
    ==== EOF on 06/07/2013 at 18:12:20,89 ======================



    Rapport de ZHPFix 1.3.05 par Nicolas Coolman, Update du 09/10/2012
    Fichier d'export Registre :
    Run by e0054 at 06/07/2013 18:15:21
    Windows XP Professional Service Pack 3 (Build 2600)
    Web site : [Você precisa estar registrado e conectado para ver este link.]

    ========== Registry Key ==========
    DELETED Key: CLSID BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
    DELETED Key: CLSID BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
    DELETED Key: CLSID BHO: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
    DELETED Key: CLSID BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9}
    ========== Registry Value ==========
    DELETED Toolbar: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
    ProxyFix : Proxy killed successfully
    DELETED ProxyServer Value
    DELETED ProxyEnable Value
    DELETED EnableHttp1_1 Value
    DELETED ProxyHttp1.1 Value
    DELETED ProxyOverride Value
    DELETED FirewallRaz (SP) : %windir%\Network Diagnostic\xpnetdiag.exe
    DELETED FirewallRaz (SP) : %windir%\system32\sessmgr.exe
    DELETED FirewallRaz (DP) : %windir%\Network Diagnostic\xpnetdiag.exe
    DELETED FirewallRaz (DP) : %windir%\system32\sessmgr.exe
    No Value in Firewall Exception Register Key (FirewallRaz)

    ========== Summary ==========
    4 : Registry Key
    12 : Registry Value

    End of clean in 00mn 08s
    ========== Report File ==========
    C:\ZHP\ZHPFix[R1].txt - 06/07/2013 18:15:21 [1264]
    avatar
    joram
    Administrador Fundador
    Administrador Fundador

    Mensagens : 617
    Data de inscrição : 14/08/2012
    Idade : 64
    Localização : Rio de Janeiro

    Re: pc travando, log para analise.

    Mensagem por joram em Sab Jul 06, 2013 8:13 pm

    Boa Noite! Edvan

    |- Baixe: |[Você precisa estar registrado e conectado para ver este link.]| ( ... de Xplode )

    [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Estando na página,clique na seta verde para o download
    |- Salve-a em um local conveniente! ( desktop! )
    |- Feche aplicativos que estejam abertos.

    [Você precisa estar registrado e conectado para ver este link.]

    |- Execute-a!
    |- Com as duas checkbox marcadas! 
    |- Clique "Run".
    |- Poste o relatório!

    -/-

    |- Baixe: < [Você precisa estar registrado e conectado para ver este link.]> ( ... by OldTimer Tools )

    |- Salve-o no desktop! 
    |- Duplo clique em OTL.exe >> Executar ou [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Ps: Tendo dificuldades ao executar OTL.exe,delete o arquivo e baixe-o [Você precisa estar registrado e conectado para ver este link.] ou [Você precisa estar registrado e conectado para ver este link.].

    < [Você precisa estar registrado e conectado para ver este link.] > << OTL

    |- Ou... baixe-o daqui,que está renomeado,e não será bloqueado por malwares.

    [Você precisa estar registrado e conectado para ver este link.]

    |- Configure a ferramenta,segundo a screenshot!
    |- Em "Exame Extra do Registro",assinale "Nenhum".

    C:\Arquivos de programas\Iminent

    |- Copie esta linha que está em verde,para o Bloco de Notas.
    |- Salve-a em Meus Documentos ou desktop,com o nome scan. << Texto!
    |- Clique na área "Exames Personalizados/Correções".

    [Você precisa estar registrado e conectado para ver este link.] 

    |- Clique em Ok para procurar um arquivo com exame personalizado.
    |- Clique "Abrir". ( scan.txt )
    |- Após colar a linha verde na área branca,clique em [Você precisa estar registrado e conectado para ver este link.] 

    |- Concluindo,poste o relatório: OTL.txt << Link ao relatório!

    [Você precisa estar registrado e conectado para ver este link.] 

    |- Para enviar,acesse: < [Você precisa estar registrado e conectado para ver este link.] >

    |- Ou acesse: < [Você precisa estar registrado e conectado para ver este link.]>

    |- Maiores informações: < |[Você precisa estar registrado e conectado para ver este link.]| >

    Abs!
    avatar
    Edvan
    Membro
    Membro

    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 36
    Localização : Natal/RN

    Re: pc travando, log para analise.

    Mensagem por Edvan em Sab Jul 06, 2013 10:19 pm

    Link OTL [Você precisa estar registrado e conectado para ver este link.]

    # DelFix v10.3 - Logfile created 06/07/2013 at 22:39:02
    # Updated 08/06/2013 by Xplode
    # Username : e0054 - FUN0026
    # Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
    ~ Removing disinfection tools ...
    Deleted : C:\Qoobox
    Deleted : C:\JRT
    Deleted : C:\ZHP
    Deleted : C:\Arquivos de programas\ZHPDiag
    Deleted : C:\AdwCleaner[S1].txt
    Deleted : C:\ComboFix.txt
    Deleted : C:\PhysicalDisk0_MBR.bin
    Deleted : C:\zoek-results.log
    Deleted : C:\Documents and Settings\e0054\Desktop\AdwCleaner[S1].txt
    Deleted : C:\Documents and Settings\e0054\Desktop\ComboFix.exe
    Deleted : C:\Documents and Settings\e0054\Desktop\JRT.txt
    Deleted : C:\Documents and Settings\e0054\Desktop\MBRCheck.lnk
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPDiag.lnk
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPDiag.txt
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPDiag_silent.exe
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPFix.lnk
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPFixReport.txt
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHP_uninstall.exe
    Deleted : C:\Documents and Settings\e0054\Desktop\zoek-results.log
    Deleted : C:\Documents and Settings\e0054\Desktop\zoek.exe
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\adwcleaner.exe
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814142611.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814152724.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814155326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814173218.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815140516.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815140603.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815144700.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815163424.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815171511.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120816142134.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120817141609.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120817143609.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120817143731.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820145624.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820153207.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820154543.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820160805.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820163139.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120821140755.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120822140803.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120822142916.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120823140651.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120823160156.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120823172200.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120824162521.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120824164322.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120827140335.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120827145624.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828142411.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828155738.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828160214.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828162211.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120829140416.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120829143145.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120829163001.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120830141541.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120830154052.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120830154710.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120831165450.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120831165552.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903135637.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903165038.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903171121.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903173957.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120905142135.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120905153102.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120905154919.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120906163206.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120910171717.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120910172914.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911143825.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911154033.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911163601.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911173426.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912142130.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912150053.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912161715.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912171454.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120913144917.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120913144931.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120913145007.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120914141915.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120917165612.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120918143028.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120918145149.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120918152802.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120919153238.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120920155122.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921142410.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921144534.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921151125.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921155419.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921161125.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921162229.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921172533.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120924142031.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120924161403.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120925140505.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120925172014.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120926141356.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120926175123.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120927140850.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120928154929.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120928160900.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121001143047.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121002140337.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121002160149.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121004162616.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121004162732.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121004165525.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005142813.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005151836.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005162329.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005163828.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005180015.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008141758.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008160617.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008164100.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008172011.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121009145034.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121009164305.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121010141542.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121010152021.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121010170150.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121011143425.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121011162747.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121011173648.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121016143959.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121016160322.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121016165444.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022151405.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022153326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022165838.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022182707.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121023155256.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121023164605.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121023171943.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121024153748.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121024163924.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121025162748.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121026174722.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121029154326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121029181202.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121029181808.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121030162809.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121030163230.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121030170559.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121031175500.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121101152342.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121101160051.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121101162241.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121105152825.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121105161903.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121105182028.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121106152802.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121106154750.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121107183328.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121112171534.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121114153328.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121114161222.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121119152349.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121119161115.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121119165445.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121120164922.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121120180616.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121122154140.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121123161013.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121123173515.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121123174325.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126170125.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126175209.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126180640.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126184110.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121127090709.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121127101554.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121127124828.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121128171810.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121128174108.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121203154636.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121203174755.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121204162824.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121204171758.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121205153133.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121205162359.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121206165902.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121206181921.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121207152114.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121212165607.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121212183433.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121217150455.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121217183719.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121218155736.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121219124951.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121221151344.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121221155054.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121228113539.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121228122445.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130102113151.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103094350.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103094528.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103100102.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103101326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103104650.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103105437.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103113004.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103120816.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130104104704.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130104124005.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130107092413.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130107100904.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130108090818.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130108092712.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130108112813.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130109093024.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130109122641.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130111124843.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130116163948.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130116170746.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130118103256.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130118121620.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130121153013.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130121172606.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130122102639.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130122110323.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130123093427.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130123110350.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130129105040.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130130095342.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130130113204.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130130120854.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130131094136.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130131103509.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130201092552.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130204170723.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130204184058.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205153110.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205155833.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205164205.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205180703.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130206164809.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130206164848.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130206180343.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130207111719.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130207120818.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130214153928.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130214183307.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130215150657.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130215160944.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130218145257.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130218161013.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130220162519.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130220173326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130221142341.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130221154146.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130221174226.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130222154438.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130225143020.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130225155345.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130225160240.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130226145752.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130227153829.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130228140742.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130228173517.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130301160342.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130301160418.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130305151518.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130305175310.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130306165113.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130306171312.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130306173916.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307113547.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307152148.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307154124.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307163912.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307171649.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130308150301.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130308164922.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130308173110.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130311145358.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130311151436.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130311171816.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130312144531.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130313141703.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130313154051.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130315170215.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130319143903.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130319165531.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130322170344.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130325141833.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130325152152.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130325172802.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130401170704.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130403150505.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130403150959.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130403162146.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130404150604.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130408142301.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130409141912.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130409144812.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130411161512.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130412113235.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130416154414.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130417152427.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130418151515.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130418155122.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130419081801.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130419161421.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130423163123.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130424141928.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130424171050.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130424175040.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425145510.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425151900.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425160132.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425164906.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130429145705.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130430150121.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130502175352.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130508155451.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130509151554.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130514145441.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130514154354.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130514160930.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130515150959.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130515155833.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130516143804.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130516144131.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130520142520.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130521143316.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130521175506.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130522113506.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130523082033.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130524093101.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130524105221.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130527141941.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130604151305.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130605160000.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130606144918.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130606155247.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130607165331.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130611140829.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130611170656.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130612083435.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130612093516.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130613161620.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130614090558.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130614142520.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130614145000.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618151256.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618151335.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618155548.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618170413.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130625160500.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130626143347.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130626164457.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130628141607.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130701160858.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130702095307.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130703095801.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130703102607.pdf
    Deleted : C:\WINDOWS\grep.exe
    Deleted : C:\WINDOWS\PEV.exe
    Deleted : C:\WINDOWS\NIRCMD.exe
    Deleted : C:\WINDOWS\MBR.exe
    Deleted : C:\WINDOWS\SED.exe
    Deleted : C:\WINDOWS\SWREG.exe
    Deleted : C:\WINDOWS\SWSC.exe
    Deleted : C:\WINDOWS\SWXCACLS.exe
    Deleted : C:\WINDOWS\Zip.exe
    Deleted : HKLM\SOFTWARE\AdwCleaner
    Deleted : HKLM\SOFTWARE\Swearware
    Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
    ~ Cleaning system restore ...
    Deleted : RP #146 [Ponto de verificação do sistema | 05/16/2013 10:46:48]
    Deleted : RP #147 [Ponto de verificação do sistema | 05/17/2013 12:00:54]
    Deleted : RP #148 [Ponto de verificação do sistema | 05/20/2013 10:46:12]
    Deleted : RP #149 [Ponto de verificação do sistema | 05/21/2013 12:03:38]
    Deleted : RP #150 [Ponto de verificação do sistema | 05/22/2013 17:16:25]
    Deleted : RP #151 [Ponto de verificação do sistema | 05/23/2013 19:15:01]
    Deleted : RP #152 [Ponto de verificação do sistema | 05/27/2013 13:03:51]
    Deleted : RP #153 [Ponto de verificação do sistema | 05/28/2013 18:17:08]
    Deleted : RP #154 [Ponto de verificação do sistema | 05/29/2013 19:13:26]
    Deleted : RP #155 [Ponto de verificação do sistema | 05/31/2013 17:24:27]
    Deleted : RP #156 [Ponto de verificação do sistema | 06/03/2013 10:29:02]
    Deleted : RP #157 [Ponto de verificação do sistema | 06/04/2013 10:46:22]
    Deleted : RP #158 [Removido Java 7 Update 17 | 06/04/2013 20:35:49]
    Deleted : RP #159 [Instalado Java 7 Update 21 | 06/04/2013 20:37:07]
    Deleted : RP #160 [Ponto de verificação do sistema | 06/07/2013 10:43:34]
    Deleted : RP #161 [Ponto de verificação do sistema | 06/10/2013 10:36:24]
    Deleted : RP #162 [Ponto de verificação do sistema | 06/12/2013 10:43:10]
    Deleted : RP #163 [Ponto de verificação do sistema | 06/13/2013 10:55:47]
    Deleted : RP #164 [Ponto de verificação do sistema | 06/14/2013 15:09:09]
    Deleted : RP #165 [Ponto de verificação do sistema | 06/17/2013 10:43:27]
    Deleted : RP #166 [Ponto de verificação do sistema | 06/18/2013 11:42:35]
    Deleted : RP #167 [Ponto de verificação do sistema | 06/20/2013 10:40:11]
    Deleted : RP #168 [Ponto de verificação do sistema | 06/21/2013 11:23:50]
    Deleted : RP #169 [Ponto de verificação do sistema | 06/25/2013 10:48:32]
    Deleted : RP #170 [Ponto de verificação do sistema | 06/26/2013 11:26:50]
    Deleted : RP #171 [Ponto de verificação do sistema | 01/01/2005 04:11:48]
    Deleted : RP #172 [Ponto de verificação do sistema | 01/01/2005 03:21:09]
    Deleted : RP #173 [Ponto de verificação do sistema | 01/01/2005 02:34:49]
    Deleted : RP #174 [Ponto de verificação do sistema | 07/02/2013 14:40:40]
    Deleted : RP #175 [Ponto de verificação do sistema | 01/01/2005 03:25:19]
    Deleted : RP #176 [Ponto de verificação do sistema | 01/01/2005 03:16:39]
    Deleted : RP #177 [Ponto de verificação do sistema | 01/01/2005 03:16:37]
    Deleted : RP #178 [Ponto de verificação do sistema | 07/05/2013 21:23:52]
    Deleted : RP #179 [Removed Iminent | 07/06/2013 14:46:18]
    Deleted : RP #180 [zoek.exe restore point | 07/06/2013 18:29:38]
    New restore point created !
    ########## - EOF - ##########
    avatar
    joram
    Administrador Fundador
    Administrador Fundador

    Mensagens : 617
    Data de inscrição : 14/08/2012
    Idade : 64
    Localização : Rio de Janeiro

    Re: pc travando, log para analise.

    Mensagem por joram em Dom Jul 07, 2013 6:27 am

    Bom Dia! Edvan

    |- Execute o OTL.exe.
    |- Copie estas informações que estão em vermelho,para o campo clipboard da ferramenta. ( "Exames Personalizados Correções" ) 
    #####

    :OTL
    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\e0054\CONFIG~1\Temp\catchme.sys -- (catchme)
    FF - user.js - File not found
    File not found (No name found) -- C:\ARQUIVOS DE PROGRAMAS\IMINENT\WEBBOOSTER@IMINENT.COM
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\E0054\DADOS DE APLICATIVOS\MOZILLA\FIREFOX\PROFILES\79FAQDWQ.DEFAULT\EXTENSIONS\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\E0054\DADOS DE APLICATIVOS\MOZILLA\FIREFOX\PROFILES\79FAQDWQ.DEFAULT\EXTENSIONS\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
    CHR - homepage: [Você precisa estar registrado e conectado para ver este link.]
    [2013/05/29 01:02:13 | 000,014,611 | ---- | M] () -- C:\Documents and Settings\e0054\Desktop\Natiruts-Acustico no Rio de Janeiro (FilmesViaTorrents).avi.torrent
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

    :Files
    C:\Arquivos de programas\Iminent
    ipconfig /flushdns /c

    :Commands 
    [purity] 
    [emptytemp] 
    [Reboot]

    #####
    |- Clique no botão Consertar -> Aguarde a conclusão!
    |- O computador vai reiniciar! -> Clique em "Executar". 

    [Você precisa estar registrado e conectado para ver esta imagem.]

    |- Para versões em Inglês,clique em Run Fix que é o mesmo que Consertar.
    |- Poste o relatório: C:\_OTL\MovedFiles\*.log 

    A+
    avatar
    Edvan
    Membro
    Membro

    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 36
    Localização : Natal/RN

    Re: pc travando, log para analise.

    Mensagem por Edvan em Dom Jul 07, 2013 12:17 pm

    All processes killed
    ========== OTL ==========
    Service catchme stopped successfully!
    Service catchme deleted successfully!
    File C:\DOCUME~1\e0054\CONFIG~1\Temp\catchme.sys not found.
    Use Chrome's Settings page to change the HomePage.
    C:\Documents and Settings\e0054\Desktop\Natiruts-Acustico no Rio de Janeiro (FilmesViaTorrents).avi.torrent moved successfully.
    C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
    ========== FILES ==========
    File\Folder C:\Arquivos de programas\Iminent not found.
    < ipconfig /flushdns /c >
    Configuração de IP do Windows
    Liberação do cache do DNS Resolver bem-sucedida.
    C:\Documents and Settings\e0054\Desktop\cmd.bat deleted successfully.
    C:\Documents and Settings\e0054\Desktop\cmd.txt deleted successfully.
    ========== COMMANDS ==========
     
    [EMPTYTEMP]
     
    User: Administrador
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 2991 bytes
    ->Java cache emptied: 0 bytes
     
    User: All Users
     
    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
     
    User: e0054
    ->Temp folder emptied: 872 bytes
    ->Temporary Internet Files folder emptied: 16850424 bytes
    ->Java cache emptied: 0 bytes
    ->FireFox cache emptied: 65735717 bytes
    ->Google Chrome cache emptied: 7144999 bytes
    ->Flash cache emptied: 492 bytes
     
    User: f000537
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
     
    User: f002902
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 2967 bytes
    ->FireFox cache emptied: 20923377 bytes
     
    User: f003407
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 5541350 bytes
    ->Java cache emptied: 0 bytes
    ->Flash cache emptied: 0 bytes
     
    User: f003651
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 5541050 bytes
    ->Flash cache emptied: 0 bytes
     
    User: Funpec
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 2379 bytes
    ->Java cache emptied: 0 bytes
    ->Google Chrome cache emptied: 296613904 bytes
    ->Flash cache emptied: 0 bytes
     
    User: LocalService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 32902 bytes
     
    User: NetworkService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
     
    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\dllcache .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 0 bytes
    RecycleBin emptied: 108704 bytes
     
    Total Files Cleaned = 399,00 mb
     
     
    OTL by OldTimer - Version 3.2.69.0 log created on 07072013_124505
    Files\Folders moved on Reboot...
    File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
    PendingFileRenameOperations files...
    Registry entries deleted on Reboot...
    avatar
    joram
    Administrador Fundador
    Administrador Fundador

    Mensagens : 617
    Data de inscrição : 14/08/2012
    Idade : 64
    Localização : Rio de Janeiro

    Re: pc travando, log para analise.

    Mensagem por joram em Dom Jul 07, 2013 1:10 pm

    Boa Tarde! Edvan

    |- Abra o OTL.exe >> Clique [Você precisa estar registrado e conectado para ver esta imagem.]
    |- Confirme essa solicitação!
    |- Aceite o reboot!

    -/-

    |- Faça manutenção com o JetClean + JetBoost.

    |- Baixe: < [Você precisa estar registrado e conectado para ver este link.] > ( ... by BlueSprig.com )

    < [Você precisa estar registrado e conectado para ver este link.] > << Leia aqui!

    |- Salve-o em Arquivos de programas. ( jetclean-setup.exe )

    [Você precisa estar registrado e conectado para ver este link.]

    |- Instale o software e na guia "1-Click",escolha a opção "Registry Clean".
    |- Vá em "Scan Now" e escolha: Shut down PC after Repair

    [Você precisa estar registrado e conectado para ver este link.]

    |- Ou escolhendo a opção "Repair",sem o reboot do PC.

    < [Você precisa estar registrado e conectado para ver este link.] >

    [Você precisa estar registrado e conectado para ver este link.]

    |- À seguir,tente melhorar a performance com o JetBoost.
    |- Tudo Ok?

    Abs!
    avatar
    Edvan
    Membro
    Membro

    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 36
    Localização : Natal/RN

    Re: pc travando, log para analise.

    Mensagem por Edvan em Dom Jul 07, 2013 7:04 pm

    Tudo Ok amigo, mais uma vez muito obrigado.Very Happy
    avatar
    joram
    Administrador Fundador
    Administrador Fundador

    Mensagens : 617
    Data de inscrição : 14/08/2012
    Idade : 64
    Localização : Rio de Janeiro

    Re: pc travando, log para analise.

    Mensagem por joram em Dom Jul 07, 2013 11:33 pm

    CASO RESOLVIDO!

    Necessitando novo auxílio para este computador,basta abrir "Novo Tópico" e relatar o problema.

    Conteúdo patrocinado

    Re: pc travando, log para analise.

    Mensagem por Conteúdo patrocinado


      Data/hora atual: Dom Jul 23, 2017 12:42 pm