Fórum SecSecurity

Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Fórum SecSecurity

Implementando Limpeza e Seguranca em seu computador!

Palavras-chaves

Últimos assuntos

» OpenTip (...by Kaspersky.com)
pc travando, log para analise. EmptySáb Mar 23, 2024 10:28 am por joram

» KpRm ( ... by Kernel-panik )
pc travando, log para analise. EmptyTer Ago 11, 2020 9:47 pm por joram

» ESET Rogue Applications Remover ( ... by Eset.com )
pc travando, log para analise. EmptySáb Ago 01, 2020 7:49 am por joram

» PW Clean 2.7 ( ... by Doutor PW )
pc travando, log para analise. EmptyTer maio 15, 2018 9:27 am por joram

» CKScanner ( ... by askey127 )
pc travando, log para analise. EmptySáb maio 05, 2018 1:12 pm por joram

» AdwCleaner ( ... by XPlode )
pc travando, log para analise. EmptySeg Abr 16, 2018 8:47 am por joram

» ZHPDiag ( ... de Nicolas Coolman )
pc travando, log para analise. EmptySáb Abr 14, 2018 8:56 am por joram

» Argente - Registry Cleaner ( ... by Argente Software )
pc travando, log para analise. EmptyDom Nov 19, 2017 4:36 pm por joram

» ListChkdskResult ( ... by SleepyDude )
pc travando, log para analise. EmptyDom Set 24, 2017 1:39 pm por joram

abril 2024

SegTerQuaQuiSexSábDom
1234567
891011121314
15161718192021
22232425262728
2930     

Calendário Calendário

Parceiros

Fórum grátis

Os membros mais mencionados

Nenhum usuário

2 participantes

    pc travando, log para analise.

    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 43
    Localização : Natal/RN

    pc travando, log para analise. Empty pc travando, log para analise.

    Mensagem por Edvan Sáb Jul 06, 2013 10:59 am

    Amigo, mais um para vc analisar, a configuração do pc é ruim, mesmo assim o usuário está reclamando de lentidao e travamento.

    passei essas ferramentas abaixo, por ultimo o log do ZHPDiag. [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    # AdwCleaner v2.304 - Relatório criado em 05/07/2013 às 21:08:09
    # Atualizado em 03/07/2013 por Xplode
    # Sistema Operacional : Microsoft Windows XP Service Pack 3 (32 bits)
    # Usuário : e0054 - FUN0026
    # Modo de Boot : Normal
    # Executado de : C:\Documents and Settings\e0054\Meus documentos\Downloads\adwcleaner.exe
    # Opção [Remover]

    ***** [Serviços] *****
    Encerrado & Removido : SProtection
    ***** [Arquivos/Pastas] *****
    Arquivo Removido : C:\Arquivos de programas\Mozilla Firefox\defaults\pref\all-iminent.js
    Arquivo Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage
    Arquivo Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal
    Arquivo Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\searchplugins\Askcom.xml
    Arquivo Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\searchplugins\Conduit.xml
    Arquivo Removido : C:\WINDOWS\system32\roboot.exe
    Arquivo Removido : C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
    Pasta Removido : C:\Arquivos de programas\Arquivos comuns\Umbrella
    Pasta Removido : C:\Arquivos de programas\Ask.com
    Pasta Removido : C:\Arquivos de programas\Conduit
    Pasta Removido : C:\Arquivos de programas\DealPly
    Pasta Removido : C:\Arquivos de programas\Iminent
    Pasta Removido : C:\Arquivos de programas\uTorrentBar_PT
    Pasta Removido : C:\DOCUME~1\e0054\CONFIG~1\Temp\CT2851643
    Pasta Removido : C:\DOCUME~1\e0054\CONFIG~1\Temp\Iminent
    Pasta Removido : C:\Documents and Settings\Administrador\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\Documents and Settings\Administrador\Dados de aplicativos\Iminent
    Pasta Removido : C:\Documents and Settings\All Users\Dados de aplicativos\Ask
    Pasta Removido : C:\Documents and Settings\All Users\Dados de aplicativos\Iminent
    Pasta Removido : C:\Documents and Settings\All Users\Menu Iniciar\Programas\DealPly
    Pasta Removido : C:\Documents and Settings\All Users\Menu Iniciar\Programas\Iminent
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\APN
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Conduit
    Pasta Removido : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\uTorrentBar_PT
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\DealPly
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Iminent
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\CT2851643
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\extensions\{e0301295-ab3e-4af3-979f-3d453c5f9f48}
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\extensions\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\extensions\toolbar@ask.com
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\Smartbar
    Pasta Removido : C:\Documents and Settings\e0054\Dados de aplicativos\PriceGong
    Pasta Removido : C:\Documents and Settings\f002902\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\Documents and Settings\f003651\Configurações locais\Dados de aplicativos\AskToolbar
    Pasta Removido : C:\WINDOWS\Installer\{118D6CE9-5F18-42F9-958A-14676A629FDE}
    Pasta Removido : C:\WINDOWS\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\mdebcffgnijbblbinknkbefciofebcda
    Removido Durante o reboot : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Extensions\mdebcffgnijbblbinknkbefciofebcda
    ***** [Registro] *****
    Chave Removida : HKCU\Software\APN
    Chave Removida : HKCU\Software\Ask.com
    Chave Removida : HKCU\Software\AskToolbar
    Chave Removida : HKCU\Software\Conduit
    Chave Removida : HKCU\Software\ConduitSearchScopes
    Chave Removida : HKCU\Software\DealPly
    Chave Removida : HKCU\Software\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Chave Removida : HKCU\Software\Google\Chrome\Extensions\mdebcffgnijbblbinknkbefciofebcda
    Chave Removida : HKCU\Software\Iminent
    Chave Removida : HKCU\Software\InstallCore
    Chave Removida : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
    Chave Removida : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{79A765E1-C399-405B-85AF-466F52E918B0}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-6E41-4FD3-8538-502F5495E5FC}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{075FB993-E0E5-42BC-9558-BE07965E184A}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
    Chave Removida : HKCU\Software\PriceGong
    Chave Removida : HKCU\Software\SmartBar
    Chave Removida : HKCU\Software\uTorrentBar_PT
    Chave Removida : HKCU\Toolbar
    Chave Removida : HKLM\Software\APN
    Chave Removida : HKLM\Software\AskToolbar
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\Iminent.WebBooster.InternetExplorer.DLL
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{02C9C7B0-C7C8-4AAC-A9E4-55295BF60F8F}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{0398B101-6DA7-473F-A290-17D2FBC88CC0}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{075FB993-E0E5-42BC-9558-BE07965E184A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{0CC36196-8589-4B80-A771-D659411D7F90}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{143D96F9-EB64-48B3-B192-91C2C41A1F43}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{14F7D91F-F669-45C9-9F42-BACBFDB86EAD}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{187A6488-6E71-4A2A-B118-7BEFBFE58257}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{2D065204-A024-4C39-8A38-EE7078EC7ACF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{30F5476C-677B-4DB0-B397-51F5BFD86840}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3223F2FB-D9B9-45FC-9D66-CD717FFA4EE5}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{351798B1-C1D2-45AB-92B4-4D6C2D6AB5AF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3AEA1BEF-6195-46F4-ACA2-0ED14F7EFA1B}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{3D7F9AC3-BAC3-4E51-81D7-D121D79E550A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{4498C5E9-93C6-4142-B6BE-F0C6DC48B77A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984}
    Chave Removida : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
    Chave Removida : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.DownloadArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.LinkToPromoteArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.RawDataArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.TinyUrlArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Business.Tinyfying.ViralLinkArgs
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ClientCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ContractBase
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GameOverCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetCreditCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.GetVariableResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.InstallationContextResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.LogoutCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.MyAccountCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PlayContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.PostContentCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.SetVariableCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.TestContentCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WarmUpCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.DataContracts.WelcomeCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerCommand
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.Communication.ServerResult
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightContent
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.LightUri
    Chave Removida : HKLM\SOFTWARE\Classes\Iminent.Mediator.MediatorServiceProxy
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandle.1
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ActiveContentHandler
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.BrowserHelperObject.1
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.ScriptExtender.1
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler
    Chave Removida : HKLM\SOFTWARE\Classes\IminentWebBooster.TinyUrlHandler.1
    Chave Removida : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
    Chave Removida : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
    Chave Removida : HKLM\SOFTWARE\Classes\Toolbar.CT2851643
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
    Chave Removida : HKLM\Software\Conduit
    Chave Removida : HKLM\Software\DealPly
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaojmikegpiepcfdkkjaplodkpfmlo
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\mdebcffgnijbblbinknkbefciofebcda
    Chave Removida : HKLM\Software\Iminent
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0AF350D9-3916-454B-AC53-0B0B65F41301}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0416048-879D-4680-82B6-BD0EE96B85D2}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA6AB308-E884-48E2-BE1C-AF5839FC50DB}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\DealPly
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\IMBoosterARP
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\uTorrentBar_PT Toolbar
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{075FB993-E0E5-42BC-9558-BE07965E184A}
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0B4750D705E2564409328D661F3A08E1
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\120DFADEB50841F408F04D2A278F9509
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\26E983F1377593143A37E3BA1C65CB74
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BDF3E992C0908741B7C11F4B4E0F775
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3C036A97566BFD147A3318BA9E8EA65E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CC84F27D09408149894EC0F9A7C017F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4BDFB2601A205D344828E68FC902CAE9
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B3BC4CF5ECE1F54BBA174C13A1AB907
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D010CDB0C7815A48A7F780C5F8AACA7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AFEEBDA8013CAA74C8052DC06F9F22D8
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B5BAE2ED018083A4C8DA86D6E3F4B024
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEABAA33A5E68374DBF197F2A00CD011
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB61AF52AD64B6B45930BE969F316720
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC063FFF6402E614191D191F0DE5C5B4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F18FD125C322BC84286AD21D8B685F2F
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F1C8F66181D6DDD488BB6F772F71324A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F71371A90E93D605C8B0A71F163F625C
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3
    Chave Removida : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{118D6CE9-5F18-42F9-958A-14676A629FDE}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DealPly
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\uTorrentBar_PT Toolbar
    Chave Removida : HKLM\Software\Umbrella
    Chave Removida : HKLM\Software\uTorrentBar_PT
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E0301295-AB3E-4AF3-979F-3D453C5F9F48}]
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{00000000-6E41-4FD3-8538-502F5495E5FC}]
    Valor Removida : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{E0301295-AB3E-4AF3-979F-3D453C5F9F48}]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{E0301295-AB3E-4AF3-979F-3D453C5F9F48}]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [Iminent]
    Valor Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger]
    Valor Removida : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [webbooster@iminent.com]
    Valor Removida : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Arquivos de programas\Iminent\Iminent.exe]
    Valor Removida : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List [C:\Arquivos de programas\Iminent\Iminent.Messengers.exe]
    ***** [Navegadores] *****
    -\\ Internet Explorer v8.0.6001.18702
    [OK] Registro está limpo.
    -\\ Mozilla Firefox v17.0.1 (pt-BR)
    Arquivo : C:\Documents and Settings\f002902\Dados de aplicativos\Mozilla\Firefox\Profiles\qprntm97.default\prefs.js
    [OK] Arquivo está limpo.
    Arquivo : C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\prefs.js
    Removida : user_pref("CT2851643.1000234.TWC_TMP_city", "SAO PAULO");
    Removida : user_pref("CT2851643.1000234.TWC_TMP_country", "BR");
    Removida : user_pref("CT2851643.1000234.TWC_country", "BRAZIL");
    Removida : user_pref("CT2851643.1000234.TWC_locId", "BRXX0232");
    Removida : user_pref("CT2851643.1000234.TWC_location", "Sao Paulo, Brazil");
    Removida : user_pref("CT2851643.1000234.TWC_region", "BR");
    Removida : user_pref("CT2851643.1000234.TWC_temp_dis", "c");
    Removida : user_pref("CT2851643.1000234.TWC_wind_dis", "kmh");
    Removida : user_pref("CT2851643.1000234.weatherData", "{\"icon\":\"33.png\",\"temperature\":\"18°C\",\"temperat[...]
    Removida : user_pref("CT2851643.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"tru[...]
    Removida : user_pref("CT2851643.FF19Solved", "true");
    Removida : user_pref("CT2851643.FirstTime", "true");
    Removida : user_pref("CT2851643.FirstTimeFF3", "true");
    Removida : user_pref("CT2851643.PG_ENABLE", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.PG_ENABLE.enc", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.PairingKey.enc", "Q0VFM0ZBM0JFQTNEMThEMzhFMjEzN0Y0REU4RUQxQjQ4QjdCMEEzNg==");
    Removida : user_pref("CT2851643.SF_JUST_INSTALLED.enc", "RkFMU0U=");
    Removida : user_pref("CT2851643.SF_STATUS.enc", "RU5BQkxFRA==");
    Removida : user_pref("CT2851643.SF_USER_ID.enc", "Y2lkXzE1NDIwMTMxNjE4NDI0MzA3NTQz");
    Removida : user_pref("CT2851643.SearchAppState.enc", "Mg==");
    Removida : user_pref("CT2851643.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT285[...]
    Removida : user_pref("CT2851643.UserID", "UN34207218211137825");
    Removida : user_pref("CT2851643.addressBarTakeOverEnabledInHidden", "true");
    Removida : user_pref("CT2851643.autoDisableScopes", -1);
    Removida : user_pref("CT2851643.browser.search.defaultthis.engineName", "true");
    Removida : user_pref("CT2851643.cbfirsttime.enc", "TW9uIE1heSAyNyAyMDEzIDE1OjE0OjEzIEdNVC0wMzAwIChIb3JhIG9maWNp[...]
    Removida : user_pref("CT2851643.defaultSearch", "true");
    Removida : user_pref("CT2851643.embeddedsData", "[{\"appId\":\"129351530870900444\",\"apiPermissions\":{\"cross[...]
    Removida : user_pref("CT2851643.enableAlerts", "always");
    Removida : user_pref("CT2851643.enableFix404ByUser", "FALSE");
    Removida : user_pref("CT2851643.enableSearchFromAddressBar", "true");
    Removida : user_pref("CT2851643.firstTimeDialogOpened", "true");
    Removida : user_pref("CT2851643.fixPageNotFoundError", "true");
    Removida : user_pref("CT2851643.fixPageNotFoundErrorByUser", "true");
    Removida : user_pref("CT2851643.fixPageNotFoundErrorInHidden", "true");
    Removida : user_pref("CT2851643.fixUrls", true);
    Removida : user_pref("CT2851643.installDate", "27/2/2013 14:08:06");
    Removida : user_pref("CT2851643.installType", "xpe");
    Removida : user_pref("CT2851643.isCheckedStartAsHidden", true);
    Removida : user_pref("CT2851643.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.isFirstTimeToolbarLoading", "false");
    Removida : user_pref("CT2851643.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
    Removida : user_pref("CT2851643.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.keyword", "true");
    Removida : user_pref("CT2851643.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://search.conduit[...]
    Removida : user_pref("CT2851643.lastVersion", "10.16.2.509");
    Removida : user_pref("CT2851643.mam_gk_appStateReportTime.enc", "MTM3MzA2OTE1ODQwMQ==");
    Removida : user_pref("CT2851643.mam_gk_appState_CouponBuddy.enc", "b24=");
    Removida : user_pref("CT2851643.mam_gk_appState_PriceGong.enc", "b24=");
    Removida : user_pref("CT2851643.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9w[...]
    Removida : user_pref("CT2851643.mam_gk_appsDefaultEnabled.enc", "bnVsbA==");
    Removida : user_pref("CT2851643.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6IkVhc3l0b2Jvb2tfdGF[...]
    Removida : user_pref("CT2851643.mam_gk_currentVersion.enc", "MS44LjAuNA==");
    Removida : user_pref("CT2851643.mam_gk_eventsCache.enc", "eyJkZmFjNTM0Zi1lMzFkLTRmMDUtODY0YS00Y2ViYWNjZDlhYmMiO[...]
    Removida : user_pref("CT2851643.mam_gk_first_time.enc", "MQ==");
    Removida : user_pref("CT2851643.mam_gk_gadgetOpen.enc", "MA==");
    Removida : user_pref("CT2851643.mam_gk_installer_preapproved.enc", "ZmFsc2U=");
    Removida : user_pref("CT2851643.mam_gk_lastLoginTime.enc", "MTM3MzA2OTE1NDAwOA==");
    Removida : user_pref("CT2851643.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJQb2zDrXRp[...]
    Removida : user_pref("CT2851643.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.mam_gk_settings1.4.3.2.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_settings1.4.4.6.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_settings1.6.0.1.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_settings1.8.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVyd[...]
    Removida : user_pref("CT2851643.mam_gk_showCloseButton.enc", "dHJ1ZQ==");
    Removida : user_pref("CT2851643.mam_gk_showWelcomeGadget.enc", "ZmFsc2U=");
    Removida : user_pref("CT2851643.mam_gk_userId.enc", "MDFmZDgzODItYTYxZi00NDliLThhZGYtNjE0ZmQwM2E1NjBh");
    Removida : user_pref("CT2851643.mam_gk_user_apps_selection.enc", "");
    Removida : user_pref("CT2851643.migrateAppsAndComponents", true);
    Removida : user_pref("CT2851643.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fgeneral-changelo[...]
    Removida : user_pref("CT2851643.openThankYouPage", "true");
    Removida : user_pref("CT2851643.openUninstallPage", "false");
    Removida : user_pref("CT2851643.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT28[...]
    Removida : user_pref("CT2851643.price-gong.isManagedApp", "true");
    Removida : user_pref("CT2851643.revertSettingsEnabled", "false");
    Removida : user_pref("CT2851643.scriptSource.enc", "aHR0cDovLzEyNy4wLjAuMToxMDAwMC9ndWkv");
    Removida : user_pref("CT2851643.search.searchAppId", "129351530870900444");
    Removida : user_pref("CT2851643.search.searchCount", "0");
    Removida : user_pref("CT2851643.searchFromAddressBarEnabledByUser", "true");
    Removida : user_pref("CT2851643.searchInNewTabEnabledByUser", "true");
    Removida : user_pref("CT2851643.searchInNewTabEnabledInHidden", "true");
    Removida : user_pref("CT2851643.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
    Removida : user_pref("CT2851643.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"d[...]
    Removida : user_pref("CT2851643.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"d[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"strin[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"strin[...]
    Removida : user_pref("CT2851643.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data[...]
    Removida : user_pref("CT2851643.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1371478717302");
    Removida : user_pref("CT2851643.serviceLayer_services_appsMetadata_lastUpdate", "1371575504940");
    Removida : user_pref("CT2851643.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1371576022128");
    Removida : user_pref("CT2851643.serviceLayer_services_location_lastUpdate", "1371575505943");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.14.370.524_lastUpdate", "1364239493865");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.14.65.43_lastUpdate", "1363886488587");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.15.0.562_lastUpdate", "1369678526943");
    Removida : user_pref("CT2851643.serviceLayer_services_login_10.16.2.509_lastUpdate", "1371651624832");
    Removida : user_pref("CT2851643.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1371576022284");
    Removida : user_pref("CT2851643.serviceLayer_services_searchAPI_lastUpdate", "1371575505480");
    Removida : user_pref("CT2851643.serviceLayer_services_serviceMap_lastUpdate", "1371575504914");
    Removida : user_pref("CT2851643.serviceLayer_services_setupAPI_lastUpdate", "1363886489325");
    Removida : user_pref("CT2851643.serviceLayer_services_toolbarContextMenu_lastUpdate", "1371576021975");
    Removida : user_pref("CT2851643.serviceLayer_services_toolbarSettings_lastUpdate", "1371651624535");
    Removida : user_pref("CT2851643.serviceLayer_services_translation_lastUpdate", "1371575506236");
    Removida : user_pref("CT2851643.settingsINI", true);
    Removida : user_pref("CT2851643.shouldFirstTimeDialog", "false");
    Removida : user_pref("CT2851643.showToolbarPermission", "false");
    Removida : user_pref("CT2851643.smartbar.CTID", "CT2851643");
    Removida : user_pref("CT2851643.smartbar.Uninstall", "0");
    Removida : user_pref("CT2851643.smartbar.homepage", "true");
    Removida : user_pref("CT2851643.smartbar.toolbarName", "uTorrentBar_PT ");
    Removida : user_pref("CT2851643.startPage", "true");
    Removida : user_pref("CT2851643.toolbarBornServerTime", "21-3-2013");
    Removida : user_pref("CT2851643.toolbarCurrentServerTime", "19-6-2013");
    Removida : user_pref("CT2851643.toolbarLoginClientTime", "Mon Mar 25 2013 16:22:46 GMT-0300 (Hora oficial do Br[...]
    Removida : user_pref("CT2851643.uTTorrents.enc", "eyJidWlsZCI6Mjk2MjUsInRvcnJlbnRzIjpbXSwibGFiZWwiOltdLCJ0b3JyZ[...]
    Removida : user_pref("CT2851643.url_history0001.enc", "aHR0cDovL3d3dy5nb29nbGUuY29tLmJyL3VybD9zYT10JnJjdD1qJnE9[...]
    Removida : user_pref("CT2851643_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\"[...]
    Removida : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2851643&SearchSource=1[...]
    Removida : user_pref("Smartbar.ConduitSearchEngineList", "uTorrentBar_PT Customized Web Search");
    Removida : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851643[...]
    Removida : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://websearch.ask.com/redirect?client=ff&src=[...]
    Removida : user_pref("Smartbar.keywordURLSelectedCTID", "CT2851643");
    Removida : user_pref("browser.search.defaultengine", "Ask.com");
    Removida : user_pref("browser.search.defaultenginename", "Ask.com");
    Removida : user_pref("browser.search.defaultthis.engineName", "uTorrentBar_PT Customized Web Search");
    Removida : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851643&Sea[...]
    Removida : user_pref("browser.search.order.1", "Ask.com");
    Removida : user_pref("browser.search.selectedEngine", "uTorrentBar_PT Customized Web Search");
    Removida : user_pref("browser.startup.homepage", "hxxp://search.conduit.com/?ctid=CT2851643&SearchSource=13&CUI[...]
    Removida : user_pref("extensions.asktb.ff-original-keyword-url", "");
    Removida : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2851643&SearchSource=2&CU[...]
    Removida : user_pref("smartBar.searchInNewTabOwner", "CT2851643");
    Removida : user_pref("smartbar.addressBarOwnerCTID", "CT2851643");
    Removida : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT2851643&SearchSource=13[...]
    Removida : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...]
    Removida : user_pref("smartbar.defaultSearchOwnerCTID", "CT2851643");
    Removida : user_pref("smartbar.machineId", "QQODO9FZJZR2OE8JMXPUFDSIVJSHLUOP4DV/3PVNJ/P73LKUUEVUOSPWDYOIDD0FBRA[...]
    Removida : user_pref("smartbar.originalHomepage", "hxxp://www.baixaki.com.br/portal/?utm_source=core&utm_medium[...]
    Removida : user_pref("smartbar.originalSearchAddressUrl", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&t[...]
    Removida : user_pref("smartbar.originalSearchEngine", "Ask.com");
    -\\ Google Chrome v27.0.1453.116
    Arquivo : C:\Documents and Settings\Funpec\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Preferences
    [OK] Arquivo está limpo.
    Arquivo : C:\Documents and Settings\e0054\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Preferences
    Removida [l.31] : icon_url = "hxxp://search.conduit.com/fav.ico",
    Removida [l.34] : keyword = "search.conduit.com",
    Removida [l.38] : search_url = "hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&cui=UN19[...]
    Removida [l.2325] : homepage = "hxxp://search.conduit.com/?CUI=UN19746529532096126&ctid=CT2851643&SearchSource=48",
    Removida [l.2891] : urls_to_restore_on_startup = [ "hxxp://search.conduit.com/?CUI=UN19746529532096126&ctid=CT285[...]
    *************************
    AdwCleaner[S1].txt - [57458 octets] - [05/07/2013 21:08:09]
    ########## EOF - C:\AdwCleaner[S1].txt - [57519 octets] ##########


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 4.8.9 (04.22.2013:1)
    OS: Microsoft Windows XP x86
    Ran by e0054 on 05/07/2013 at 22:07:46,01
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


    ~~~ Services

    ~~~ Registry Values
    Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\DisplayName
    Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\\URL

    ~~~ Registry Keys
    Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
    Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{EA4EE50C-7838-4517-9D34-CDDEB51A5E84}

    ~~~ Files

    ~~~ Folders

    ~~~ FireFox
    Successfully deleted the following from C:\Documents and Settings\e0054\Dados de aplicativos\mozilla\firefox\profiles\79faqdwq.default\prefs.js
    user_pref("iminent.webbooster.scripts.minibar.ShowThankyouPixel", "0");
    user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent102", "1104548370377");
    user_pref("iminent.webbooster.scripts.sslminibar.ShowThankyouPixel", "0");
    user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent100", "1371575884565");
    Emptied folder: C:\Documents and Settings\e0054\Dados de aplicativos\mozilla\firefox\profiles\79faqdwq.default\minidumps [5 files]


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on 05/07/2013 at 22:26:24,53
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 43
    Localização : Natal/RN

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por Edvan Sáb Jul 06, 2013 11:00 am

    Continuação:



    ComboFix 13-07-06.03 - e0054 06/07/2013  10:46:30.1.1 - x86
    Microsoft Windows XP Professional  5.1.2600.3.1252.55.1046.18.1014.665 [GMT -3]
    Executando de: c:\documents and settings\e0054\Desktop\ComboFix.exe
    AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
    .
    .
    (((((((((((((((((((((((((((((((((((((   Outras Exclusões   )))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\windows\system\chron32.dll
    .
    .
    ((((((((((((((((   Arquivos/Ficheiros criados de 2013-06-06 to 2013-07-06  ))))))))))))))))))))))))))))
    .
    .
    2013-07-06 01:07 . 2013-07-06 01:07 -------- d-----w- c:\windows\ERUNT
    2013-07-06 01:07 . 2013-07-06 01:07 -------- d-----w- C:\JRT
    2013-07-05 20:47 . 2013-07-05 20:51 -------- d-----w- c:\documents and settings\e0054\Dados de aplicativos\TeamViewer
    2013-07-05 20:42 . 2001-09-06 02:20 12288 -c--a-w- c:\windows\system32\dllcache\mouhid.sys
    2013-07-05 20:42 . 2001-09-06 02:20 12288 ----a-w- c:\windows\system32\drivers\mouhid.sys
    2013-07-05 20:42 . 2008-04-13 14:45 10368 -c--a-w- c:\windows\system32\dllcache\hidusb.sys
    2013-07-05 20:42 . 2008-04-13 14:45 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((   Relatório Find3M   ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2013-07-05 20:55 . 2013-04-22 19:29 175176 ----a-w- c:\windows\system32\drivers\aswVmm.sys
    2013-07-05 20:55 . 2012-06-25 13:33 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys
    2013-07-05 20:55 . 2012-06-25 13:33 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys
    2013-06-12 19:19 . 2012-06-25 14:50 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
    2013-06-12 19:19 . 2012-06-25 14:50 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
    2013-06-04 20:37 . 2013-06-04 20:38 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
    2013-06-04 20:37 . 2012-06-25 14:53 866720 ----a-w- c:\windows\system32\npdeployJava1.dll
    2013-06-04 20:37 . 2012-06-25 14:53 144896 ----a-w- c:\windows\system32\javacpl.cpl
    2013-06-04 20:37 . 2012-06-25 14:34 788896 ----a-w- c:\windows\system32\deployJava1.dll
    2013-05-09 08:59 . 2013-04-22 19:29 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
    2013-05-09 08:59 . 2012-06-25 13:33 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys
    2013-05-09 08:59 . 2013-04-22 19:29 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
    2013-05-09 08:59 . 2012-06-25 13:33 49760 ----a-w- c:\windows\system32\drivers\aswRdr.sys
    2013-05-09 08:59 . 2012-06-25 13:33 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
    2013-05-09 08:58 . 2012-06-25 13:33 41664 ----a-w- c:\windows\avastSS.scr
    2013-05-09 08:58 . 2012-06-25 13:33 229648 ----a-w- c:\windows\system32\aswBoot.exe
    2013-04-15 19:11 . 2013-04-22 19:27 69632 ----a-w- c:\windows\system32\CNAS0MMK.DLL
    2013-02-22 19:30 . 2013-02-22 19:30 0 ----a-w- c:\arquivos de programas\GUM6F.tmp
    2003-03-21 16:37 . 2003-03-21 16:37 16056 ----a-w- c:\arquivos de programas\owcstp16.dll
    2013-04-01 13:40 . 2013-04-01 13:40 262112 ----a-w- c:\arquivos de programas\mozilla firefox\components\browsercomps.dll
    .
    .
    ------- Sigcheck -------
    Note: Unsigned files aren't necessarily malware.
    .
    [-] 2012-05-30 . 1D01C384F3BA123EB6F09769DEA005AC . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
    .
    ((((((((((((((((((((((((((   Pontos de Carregamento do Registro   )))))))))))))))))))))))))))))))))))))))
    .
    .
    *Nota* entradas vazias e legítimas por padrão não são apresentadas.
    REGEDIT4
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
    @="{472083B0-C522-11CF-8763-00608CC02F24}"
    [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
    2013-05-09 08:58 121968 ----a-w- c:\arquivos de programas\AVAST Software\Avast\ashShell.dll
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"="c:\arquivos de programas\uTorrent\uTorrent.exe" [2013-05-06 802136]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avast"="c:\arquivos de programas\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
    "SunJavaUpdateSched"="c:\arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe" [2013-03-12 253816]
    .
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
    2012-12-03 07:35 946352 ----a-w- c:\arquivos de programas\Arquivos comuns\Adobe\ARM\1.0\AdobeARM.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
    2012-07-31 11:20 38872 ----a-w- c:\arquivos de programas\Adobe\Reader 9.0\Reader\reader_sl.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]
    2008-04-13 21:20 15360 ----a-w- c:\windows\system32\ctfmon.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
    2012-08-09 18:14 116648 ----atw- c:\documents and settings\e0054\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
    2005-08-23 16:00 77824 ----a-w- c:\windows\system32\hkcmd.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
    2005-08-23 16:00 114688 ----a-w- c:\windows\system32\igfxpers.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
    2005-08-23 16:00 94208 ----a-w- c:\windows\system32\igfxtray.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
    2006-03-01 08:22 577536 ----a-w- c:\windows\soundman.exe
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
    2013-03-12 10:32 253816 ----a-w- c:\arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe
    .
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "%windir%\\system32\\sessmgr.exe"=
    "c:\\Arquivos de programas\\uTorrent\\uTorrent.exe"=
    "c:\\Arquivos de programas\\TeamViewer\\Version8\\TeamViewer.exe"=
    "c:\\Arquivos de programas\\TeamViewer\\Version8\\TeamViewer_Service.exe"=
    .
    R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [22/04/2013 16:29 49376]
    R0 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [22/04/2013 16:29 175176]
    R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [25/06/2012 10:33 770344]
    R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [25/06/2012 10:33 369584]
    R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [25/06/2012 10:33 29816]
    R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [22/04/2013 16:29 66336]
    R2 OrolixDeviceMonitor;Orolix Device Monitor;c:\arquivos de programas\TIM Communicator\module\devicemon.exe [20/04/2010 08:05 27040]
    R2 TeamViewer8;TeamViewer 8;c:\arquivos de programas\TeamViewer\Version8\TeamViewer_Service.exe [05/07/2013 17:49 4150112]
    S3 jrdusbser;Olicard Modem Interface Device for Legacy Serial Communication;c:\windows\system32\drivers\jrdusbser.sys [17/09/2010 12:44 105344]
    S3 Olicard155net;Olicard155 USB-NDIS miniport;c:\windows\system32\drivers\Olicard155Usbnet.sys [17/09/2010 12:44 117760]
    S3 OXSDIDRV_x32;Oxford Semi eSATA Filter (x32);c:\windows\system32\drivers\OXSDIDRV_x32.sys [28/09/2009 09:55 52656]
    S3 OXUDIDRV;OXUDIDRV;c:\windows\system32\drivers\OXUDIDRV_x32.sys [27/06/2012 10:04 24880]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    HPZ12 REG_MULTI_SZ    Pml Driver HPZ12 Net Driver HPZ12
    .
    Conteúdo da pasta 'Tarefas Agendadas'
    .
    2013-07-06 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-25 19:19]
    .
    2013-07-06 c:\windows\Tasks\avast! Emergency Update.job
    - c:\arquivos de programas\AVAST Software\Avast\AvastEmUpdate.exe [2012-07-05 08:58]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{0805268F-E6B6-4152-81D6-4FFA91CAF8A2}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{31DC390A-A06B-41A0-BFDC-265B8576F717}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{CDEA9E91-94F9-4C52-A202-5CD270F19FAB}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    2013-07-06 c:\windows\Tasks\User_Feed_Synchronization-{EF54D918-B29A-4640-AC0F-08562B5F5C5A}.job
    - c:\windows\system32\msfeedssync.exe [2009-03-08 07:31]
    .
    .
    ------- Scan Suplementar -------
    .
    uStart Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
    mStart Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
    IE: E&xportar para o Microsoft Excel - c:\arquiv~1\MICROS~2\Office12\EXCEL.EXE/3000
    TCP: DhcpNameServer = 10.4.65.16
    FF - ProfilePath - c:\documents and settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default\
    .
    .
    **************************************************************************
    .
    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
    Rootkit scan 2013-07-06 10:56
    Windows 5.1.2600 Service Pack 3 NTFS
    .
    Procurando processos ocultos ...
    .
    Procurando entradas auto inicializáveis ocultas ...
    .
    Procurando ficheiros/arquivos ocultos ...
    .
    Varredura completada com sucesso
    arquivos/ficheiros ocultos: 0
    .
    **************************************************************************
    .
    --------------------- CHAVES DO REGISTRO BLOQUEADAS ---------------------
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
    @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker5"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    --------------------- DLLs Carregadas Sob os Processos em Execução ---------------------
    .
    - - - - - - - > 'winlogon.exe'(576)
    c:\windows\system32\igfxdev.dll
    .
    Tempo para conclusão: 2013-07-06  10:58:51
    ComboFix-quarantined-files.txt  2013-07-06 13:58
    .
    Pré-execução: 7 pasta(s) 61.996.367.872 bytes disponíveis
    Pós execução: 9 pasta(s) 62.730.485.760 bytes disponíveis
    .
    - - End Of File - - 4382820AF46A618CCCE556AE5860DC0B
    239FC8B1C26D5286165A956F5A98D8D7
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 70
    Localização : Rio de Janeiro

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por joram Sáb Jul 06, 2013 12:03 pm

    Boa Tarde! Edvan

    |- Baixe: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > ( ... by Smeenk )

    |- Ou aqui! < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] >

    |- Salve-o no desktop!
    |- Desabilite seu antivírus!
    |- Para Windows 7,execute zoek.exe como administrador.

    startupall; 
    autoclean; 
    filesrcm; 
    emptyalltemp;
     

    |- Copie e cole estas informações,em vermelho,no campo da ferramenta.
    |- Clique "Run Script". <- Aguarde!

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Aceite e/ou confirme o reboot!

    zoek.hta failed by unknown error.
    Restart computer, and try again.
    |- Ps: Ao obter algum erro,reinicie o PC e execute,novamente,a ferramenta.
    |- Poste o relatório,que estará em C:\zoek-results.txt << 

    -/-

    |- Feche programas/pastas que estejam abertas.
    |- Feche,também,o navegador!
    |- Para Windows Vista,desabilite a [Tens de ter uma conta e sessão iniciada para poderes visualizar este link].

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Para Windows Vista ou 7,clique direito em ZHPFix.exe e execute-o como administrador.
    |- Selecione e copie estas informações,que estão em vermelho,para o "Bloco de Notas".
    #####

    O2 - BHO: (no name) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} Orphean Key     
    O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} Orphean Key     
    O2 - BHO: (no name) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} Orphean Key     
    O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} Orphean Key     
    O3 - Toolbar: (no name) - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (...) --  (.not file.)

    proxyfix
    firewallraz

    #####
    |- Estando com o Bloco de Notas aberto,acione os atalhos: "Ctrl+A" -> "Ctrl+C"
    |- Minimize o Bloco de Notas.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Clique no menu,"Paste ClipBoard".
    |- Evite a opção "Colar" ( Ctrl+V ),no campo amarelo claro,que não habilita o botão "Go".

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Clique "GO" -> Oui.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Ps: Temos,àcima,sequência de imagens para maior exclarecimento.
    |- Poste o relatório: C:\ZHP\ZHPFix[R1].txt

    Abs!


    Última edição por joram em Seg Jul 08, 2013 8:33 am, editado 1 vez(es)
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 43
    Localização : Natal/RN

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por Edvan Sáb Jul 06, 2013 5:21 pm

    Zoek.exe Version 4.0.0.3 Updated 05-July-2013
    Tool run by e0054 on 06/07/2013 at 17:50:32,04.
    Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
    Running in: Normal Mode Internet Access Detected
    ==== Deleting CLSID Registry Keys ======================

    ==== Deleting CLSID Registry Values ======================

    ==== Deleting Services ======================

    ==== FireFox Fix ======================
    ProfilePath: C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default
    user.js not found
    ---- Lines iminent removed from prefs.js ----

    ---- Lines iminent modified from prefs.js ----
    user_pref("extensions.enabledAddons", "%7BEB9394A3-4AD6-4918-9537-31A1FD8E8EDF%7D:2.0,webbooster%40iminent.com:6.9.2.2,%7B87F8774F-B485-47E2-A755-A40A8A5E886C%7D:2.12.1.26.170,%7Be0301295-ab3e-4af3-979f-3d453c5f9f48%7D:10.16.2.509,%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1");
    user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"[email=wrc@avast.com":{"descriptor":"C:\\Arquivos][Tens de ter uma conta e sessão iniciada para poderes visualizar este link]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\AVAST Software\\\\Avast\\\\WebRep\\\\FF\",\"mtime\":1373057703093},\"[email=webbooster@iminent.com":{"descriptor":"C:\\Arquivos][Tens de ter uma conta e sessão iniciada para poderes visualizar este link]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\Iminent\\\\webbooster@iminent.com\",\"mtime\":1361984731218}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1364823654640}}},{\"name\":\"app-profile\",\"addons\":{\"[email=toolbar@ask.com":{"descriptor":"C:\\Documents][Tens de ter uma conta e sessão iniciada para poderes visualizar este link]\":{\"descriptor\":\"C:\\\\Documents[/email] and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\toolbar@ask.com\",\"mtime\":1354649574859},\"{87F8774F-B485-47E2-A755-A40A8A5E886C}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{87F8774F-B485-47E2-A755-A40A8A5E886C}\",\"mtime\":1364827321962},\"{e0301295-ab3e-4af3-979f-3d453c5f9f48}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{e0301295-ab3e-4af3-979f-3d453c5f9f48}\",\"mtime\":1373033511750},\"{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\",\"mtime\":1361984582625}}}]");
    ---- Lines ask.com removed from prefs.js ----

    ---- Lines ask.com modified from prefs.js ----
    user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"[email=wrc@avast.com":{"descriptor":"C:\\Arquivos][Tens de ter uma conta e sessão iniciada para poderes visualizar este link]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\AVAST Software\\\\Avast\\\\WebRep\\\\FF\",\"mtime\":1373057703093},\"[email=webbooster@disabled.com":{"descriptor":"C:\\Arquivos][Tens de ter uma conta e sessão iniciada para poderes visualizar este link]\":{\"descriptor\":\"C:\\\\Arquivos[/email] de programas\\\\disabled\\\\webbooster@disabled.com\",\"mtime\":1361984731218}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\Mozilla Firefox\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1364823654640}}},{\"name\":\"app-profile\",\"addons\":{\"[email=toolbar@ask.com":{"descriptor":"C:\\Documents][Tens de ter uma conta e sessão iniciada para poderes visualizar este link]\":{\"descriptor\":\"C:\\\\Documents[/email] and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\toolbar@ask.com\",\"mtime\":1354649574859},\"{87F8774F-B485-47E2-A755-A40A8A5E886C}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{87F8774F-B485-47E2-A755-A40A8A5E886C}\",\"mtime\":1364827321962},\"{e0301295-ab3e-4af3-979f-3d453c5f9f48}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{e0301295-ab3e-4af3-979f-3d453c5f9f48}\",\"mtime\":1373033511750},\"{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\e0054\\\\Dados de aplicativos\\\\Mozilla\\\\Firefox\\\\Profiles\\\\79faqdwq.default\\\\extensions\\\\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}\",\"mtime\":1361984582625}}}]");
    ---- FireFox user.js and prefs.js backups ----
    prefs_072013_1758_.backup
    ProfilePath: C:\Documents and Settings\f002902\Dados de aplicativos\Mozilla\Firefox\Profiles\qprntm97.default
    user.js not found
    ---- Lines iminent removed from prefs.js ----

    ---- Lines iminent modified from prefs.js ----

    ---- Lines ask.com removed from prefs.js ----

    ---- Lines ask.com modified from prefs.js ----

    ---- FireFox user.js and prefs.js backups ----
    prefs_072013_1758_.backup
    ==== Deleting Files \ Folders ======================
    "C:\Arquivos de programas\Iminent\webbooster@iminent.com" not found
    "C:\Arquivos de programas\GUM6F.tmp" deleted
    "C:\Documents and Settings\e0054\Dados de aplicativos\desktop.ini" deleted
    "C:\WINDOWS\SET3.tmp" deleted
    "C:\WINDOWS\SET4.tmp" deleted
    "C:\WINDOWS\SET8.tmp" deleted
    ==== Files Recently Created / Modified ======================
    ====== C:\WINDOWS ====
    2013-07-06 01:43:02 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\WINDOWS\PEV.exe
    2013-07-06 01:43:02 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\WINDOWS\grep.exe
    2013-07-06 01:43:02 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\WINDOWS\zip.exe
    2013-07-06 01:43:02 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\WINDOWS\SWSC.exe
    2013-07-06 01:43:02 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\WINDOWS\MBR.exe
    ====== C:\DOCUME~1\e0054\CONFIG~1\Temp ====
    ====== C:\WINDOWS\system32 =====
    ====== C:\WINDOWS\system32\drivers =====
    2013-07-05 20:55:21 FAF091AA45A6A6CF3CF94FE065950956 175 ----a-w- C:\WINDOWS\System32\drivers\aswSnx.sys.sum
    2013-07-05 20:55:21 3FFBEE694566CADB0A64D8A1ACD7DBCE 175 ----a-w- C:\WINDOWS\System32\drivers\aswSP.sys.sum
    2013-07-05 20:55:21 22EA82FFE8CA4965C1994F24C35DC202 175 ----a-w- C:\WINDOWS\System32\drivers\aswVmm.sys.sum
    2013-07-05 20:42:22 53D3DBA64871148591BFE21B492C3558 12288 ----a-w- C:\WINDOWS\System32\drivers\mouhid.sys
    2013-07-05 20:42:00 CCF82C5EC8A7326C3066DE870C06DAF1 10368 ----a-w- C:\WINDOWS\System32\drivers\hidusb.sys
    ====== C:\WINDOWS\Tasks ======
    ====== C:\WINDOWS\Temp ======
    ======= C:\Arquivos de programas =====
    2013-07-06 14:47:14 -------- d-----w- C:\Arquivos de programas\ZHPDiag
    ======= C: =====
    2013-07-06 14:48:29 23DAB3975E2FBB9E7EEC2E1A17BC197A 512 ----a-w- C:\PhysicalDisk0_MBR.bin
    2013-07-06 01:47:26 FA579938B0733B87066546AFE951082C 211 ----a-w- C:\Boot.bak
    2013-07-06 01:47:22 C51A881398F29071239741AE16D07C1C 261856 --sha-r- C:\cmldr
    2013-07-06 00:08:09 A2964E008544036A9945C486DA3C4425 57589 ----a-w- C:\AdwCleaner[S1].txt
    ====== C:\Documents and Settings\e0054\Dados de aplicativos ======
    2013-07-06 01:42:01 -------- d-----r- C:\Documents and Settings\e0054\Menu Iniciar\Programas\Ferramentas administrativas
    2013-07-05 20:49:59 -------- d-----w- C:\Documents and Settings\All Users\Menu Iniciar\Programas\TeamViewer 8
    2013-07-05 20:47:09 -------- d-----w- C:\Documents and Settings\e0054\Dados de aplicativos\TeamViewer
    ====== C:\Documents and Settings\e0054 ======
    2013-07-06 20:45:53 -------- d-sh--w- C:\Documents and Settings\NetworkService\Cookies
    2013-07-06 14:47:22 AE326A97F634217CAC29739D376DF934 344187 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHP_uninstall.exe
    2013-07-06 01:38:14 E897110EE5E67FABB83B154DF9C68D6A 794216 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHPDiag_silent.exe
    ====== C: exe-files ==
    2013-07-06 14:47:22 AE326A97F634217CAC29739D376DF934 344187 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHP_uninstall.exe
    2013-07-06 14:47:22 8747E33E978E91C7888364E95F53D977 370235 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPDiags.exe
    2013-07-06 14:47:22 74C3DFCC1C6BF8B0BD977EF6F4185208 2709504 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPFix.exe
    2013-07-06 14:47:19 56873D899C0707AA017AA2D74EC190AE 3770368 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPDiag.exe
    2013-07-06 14:47:18 E100F7F1AA506F91A3C64366EE290E33 555944 ----a-w- C:\Arquivos de programas\ZHPDiag\setacl64.exe
    2013-07-06 14:47:18 C3D16F308C98CB3BDC315D996D7D89AD 706512 ----a-w- C:\Arquivos de programas\ZHPDiag\unins000.exe
    2013-07-06 14:47:18 53CDBB093B0AEE9FD6CF1CBD25A95077 290304 ----a-w- C:\Arquivos de programas\ZHPDiag\subinacl.exe
    2013-07-06 14:47:18 417C1BE0BF4D7C505D60D2CEFCDF2347 231048 ----a-w- C:\Arquivos de programas\ZHPDiag\sigcheck.exe
    2013-07-06 14:47:17 CB2D120A4B72422A8141192831B1F500 80384 ----a-w- C:\Arquivos de programas\ZHPDiag\mbrcheck.exe
    2013-07-06 14:47:17 9DAA7218961710008D7385B01BD3F386 89088 ----a-w- C:\Arquivos de programas\ZHPDiag\mbr.exe
    2013-07-06 14:47:17 79C7BC4A7642D908A1527A0EB90138C9 452008 ----a-w- C:\Arquivos de programas\ZHPDiag\setacl32.exe
    2013-07-06 14:47:17 5DAF7081A4BB112FA3F1915819330A3E 61440 ----a-w- C:\Arquivos de programas\ZHPDiag\pv.exe
    2013-07-06 14:47:16 6B8AF3A2A3D9059008B55C444461CA00 61952 ----a-w- C:\Arquivos de programas\ZHPDiag\Lads.exe
    2013-07-06 14:47:16 5BBF2A0351E336646022D09009560CEF 143360 ----a-w- C:\Arquivos de programas\ZHPDiag\FileInfos.exe
    2013-07-06 14:47:15 F3A37421DBD1AAA36558C97572C91C5A 147456 ----a-w- C:\Arquivos de programas\ZHPDiag\catchme.exe
    2013-07-06 01:47:22 F0C08E06A2A3EF0618E3990DE36BAB21 616960 ----a-w- C:\cmdcons\autochk.exe
    2013-07-06 01:47:22 A317FC1D2F892651DEC970B9CCCD6D92 608768 ----a-w- C:\cmdcons\autofmt.exe
    2013-07-06 01:43:02 F042EE4C8D66248D9B86DCF52ABAE416 256000 ----a-w- C:\WINDOWS\PEV.exe
    2013-07-06 01:43:02 9E05A9C264C8A908A8E79450FCBFF047 80412 ----a-w- C:\WINDOWS\grep.exe
    2013-07-06 01:43:02 5E832F4FAF5F481F2EAF3B3A48F603B8 68096 ----a-w- C:\WINDOWS\zip.exe
    2013-07-06 01:43:02 0297C72529807322B152F517FDB0A9FC 406528 ----a-w- C:\WINDOWS\SWSC.exe
    2013-07-06 01:43:02 0277C027A26428DB64EF4F64F52BB4FD 208896 ----a-w- C:\WINDOWS\MBR.exe
    2013-07-06 01:38:14 E897110EE5E67FABB83B154DF9C68D6A 794216 ----a-w- C:\Documents and Settings\e0054\Desktop\ZHPDiag_silent.exe
    2013-07-06 01:07:33 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\JRT\erunt\ERUNT.EXE
    2013-07-06 00:07:24 1078C8BD8C62CF4DEE6FE1058C3D56A7 650027 ----a-w- C:\Documents and Settings\e0054\Meus documentos\Downloads\adwcleaner.exe
    2013-07-06 00:04:31 A079519FFD3857560FA11EFBA92C0474 587671 ----a-w- C:\Documents and Settings\e0054\Desktop\Remoção de virus\AdwCleaner\adwcleaner0.exe
    2013-07-06 00:04:29 2C2F20747085946DE79A713879E09C4E 535764 ----a-w- C:\Documents and Settings\e0054\Desktop\Remoção de virus\JRT.exe
    2013-07-05 20:49:21 626F636F011550A28E4D7C419F5E097B 232800 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\tv_x64.exe
    2013-07-05 20:49:21 246C01238F05330BD93EAD9F7112AB36 628040 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\uninstall.exe
    2013-07-05 20:49:20 B35D5C3C453E88AF232668CC7413516A 195936 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\tv_w32.exe
    2013-07-05 20:49:20 57DDE1395F86EE048AB25717EEB8CAEB 4150112 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\TeamViewer_Service.exe
    2013-07-05 20:49:19 8335BEBF5A64B131CF20217511883F61 4310880 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\TeamViewer_Desktop.exe
    2013-07-05 20:49:17 2F3D8900815A96D8E7C8DDC6169DE30E 11077984 ----a-w- C:\Arquivos de programas\TeamViewer\Version8\TeamViewer.exe
    === C: other files ==
    2013-07-06 14:46:56 82BF0B4BA8C5726A9788F914B8CA2E30 5543254 ----a-w- C:\Documents and Settings\e0054\Configurações locais\Temporary Internet Files\Content.IE5\RX9TEWPM\ZHPDiag[1].zip
    2013-07-06 14:46:33 1105E12E939F3BA98AFB622F2BC60460 77 ----a-w- C:\Documents and Settings\e0054\Configurações locais\temp\utt268.tmp.bat
    2013-07-06 01:45:02 4C93CCD8723493DBCEE6ECA6F11CAF6F 7352 ----a-w- C:\Qoobox\BackEnv\SetPath.bat
    2013-07-06 01:07:31 F79A3991927C7B1005E0DE627034002E 11837 ----a-w- C:\JRT\JRT.bat
    2013-07-06 01:07:31 E81B41BEDB4EFDE2BC2C6863E7ABE25A 78772 ----a-w- C:\JRT\misc.bat
    2013-07-06 01:07:31 E4B95882FB080670179EA3605395889B 29803 ----a-w- C:\JRT\iexplore.bat
    2013-07-06 01:07:31 C0C9EBB0F67894B294057F8DFD982FB7 224236 ----a-w- C:\JRT\firefox.bat
    2013-07-06 01:07:31 BC6829679AE4DF51BA5F2B6DF9C0BAFC 14243 ----a-w- C:\JRT\medfos.bat
    2013-07-06 01:07:31 892B8347BAF133646A19D3B90928AE86 15542 ----a-w- C:\JRT\chrome.bat
    2013-07-06 01:07:31 80D02380F1AC33E459324B088392A1EC 732 ----a-w- C:\JRT\ev_clear.bat
    2013-07-06 01:07:31 6AFF3EA276AA312EFBB29BA0D5D2A85A 9763 ----a-w- C:\JRT\modules.bat
    2013-07-06 01:07:31 63FEB4EAF9E8C709C3B3470BC40E3EF8 37373 ----a-w- C:\JRT\ask.bat
    2013-07-06 01:07:31 620AD0970CC18D799A357D5B9C797F31 5379 ----a-w- C:\JRT\runvalues.bat
    2013-07-06 01:07:31 4C021963204579942B72781B032315A0 29023 ----a-w- C:\JRT\prelim.bat
    2013-07-06 01:07:31 357F4F46BA2ADE86E2084DE3EC219A18 13025 ----a-w- C:\JRT\searchlnk.bat
    2013-07-06 01:07:31 33A0F7BBDF15B84FB01A361D09F54DFE 1825 ----a-w- C:\JRT\delfolders.bat
    2013-07-06 01:07:31 31D9F977B48014E79CC35A98D324B16A 1256 ----a-w- C:\JRT\FWPolicy.bat
    2013-07-06 01:07:31 1EE55AF77826E0E6F89A0ED6278E2C35 1040 ----a-w- C:\JRT\TDL4.bat
    2013-07-06 01:07:31 04BA8405091707D31A526A4689E6F5A8 14028 ----a-w- C:\JRT\get.bat
    2013-07-05 20:42:22 53D3DBA64871148591BFE21B492C3558 12288 -c--a-w- C:\WINDOWS\system32\dllcache\mouhid.sys
    2013-07-05 20:42:22 53D3DBA64871148591BFE21B492C3558 12288 ----a-w- C:\WINDOWS\system32\drivers\mouhid.sys
    2013-07-05 20:42:00 CCF82C5EC8A7326C3066DE870C06DAF1 10368 -c--a-w- C:\WINDOWS\system32\dllcache\hidusb.sys
    2013-07-05 20:42:00 CCF82C5EC8A7326C3066DE870C06DAF1 10368 ----a-w- C:\WINDOWS\system32\drivers\hidusb.sys
    ==== Startup Registry Enabled ======================
    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
    [HKEY_USERS\S-1-5-21-2586132527-314635491-3328972525-21448\Software\Microsoft\Windows\CurrentVersion\Run]
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
    [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avast"="C:\Arquivos de programas\AVAST Software\Avast\avastUI.exe /nogui"
    "SunJavaUpdateSched"="C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe"
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
    ==== Startup Registry Disabled ======================
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"=""
    "hkey"="HKLM"
    "command"=""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe ARM]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="AdobeARM"
    "hkey"="HKLM"
    "command"="\"C:\\Arquivos de programas\\Arquivos comuns\\Adobe\\ARM\\1.0\\AdobeARM.exe\""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="Reader_sl"
    "hkey"="HKLM"
    "command"="\"C:\\Arquivos de programas\\Adobe\\Reader 9.0\\Reader\\Reader_sl.exe\""
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\CTFMON.EXE]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="ctfmon"
    "hkey"="HKCU"
    "command"="C:\\WINDOWS\\system32\\ctfmon.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Google Update]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="GoogleUpdate"
    "hkey"="HKCU"
    "command"="\"C:\\Documents and Settings\\e0054\\Configura‡äes locais\\Dados de aplicativos\\Google\\Update\\GoogleUpdate.exe\" /c"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\igfxhkcmd]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="hkcmd"
    "hkey"="HKLM"
    "command"="C:\\WINDOWS\\system32\\hkcmd.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\igfxpers]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="igfxpers"
    "hkey"="HKLM"
    "command"="C:\\WINDOWS\\system32\\igfxpers.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\igfxtray]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="igfxtray"
    "hkey"="HKLM"
    "command"="C:\\WINDOWS\\system32\\igfxtray.exe"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SoundMan]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="SOUNDMAN"
    "hkey"="HKLM"
    "command"="SOUNDMAN.EXE"
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="jusched"
    "hkey"="HKLM"
    "command"="\"C:\\Arquivos de programas\\Arquivos comuns\\Java\\Java Update\\jusched.exe\""

    ==== Task Scheduler Jobs ======================
    C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ [Undetermined Task]
    C:\WINDOWS\tasks\avast\Undetermined Task.exe []
    C:\WINDOWS\tasks\User_Feed_Synchronization-{0805268F-E6B6-4152-81D6-4FFA91CAF8A2}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    C:\WINDOWS\tasks\User_Feed_Synchronization-{31DC390A-A06B-41A0-BFDC-265B8576F717}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    C:\WINDOWS\tasks\User_Feed_Synchronization-{CDEA9E91-94F9-4C52-A202-5CD270F19FAB}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    C:\WINDOWS\tasks\User_Feed_Synchronization-{EF54D918-B29A-4640-AC0F-08562B5F5C5A}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
    ==== Firefox Extensions ======================
    ProfilePath: C:\Documents and Settings\e0054\Dados de aplicativos\Mozilla\Firefox\Profiles\79faqdwq.default
    - Undetermined - C:\Arquivos de programas\Iminent\webbooster@iminent.com
    - Modulo de Seguranca - Banco do Brasil - %ProfilePath%\extensions\{87F8774F-B485-47E2-A755-A40A8A5E886C}
    ==== Firefox Plugins ======================

    ==== Set IE to Default ======================
    Old Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]"
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]"
    New Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]"
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]"
    ==== All HKCU SearchScopes ======================
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
    "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]"
    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]}"
    ==== Empty IE Cache ======================
    C:\Documents and Settings\Default User\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Documents and Settings\e0054\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Documents and Settings\LocalService\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Documents and Settings\NetworkService\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    C:\WINDOWS\system32\config\systemprofile\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
    ==== Empty FireFox Cache ======================
    No FireFox Cache found
    ==== Empty Chrome Cache ======================
    No Chrome User Data found
    ==== Empty All Flash Cache ======================
    Flash Cache Emptied Successfully
    ==== Empty All Java Cache ======================
    Java Cache cleared successfully
    ==== After Reboot ======================
    ==== Empty Temp Folders ======================
    C:\WINDOWS\Temp successfully emptied
    C:\DOCUME~1\e0054\CONFIG~1\Temp successfully emptied
    ==== EOF on 06/07/2013 at 18:12:20,89 ======================



    Rapport de ZHPFix 1.3.05 par Nicolas Coolman, Update du 09/10/2012
    Fichier d'export Registre :
    Run by e0054 at 06/07/2013 18:15:21
    Windows XP Professional Service Pack 3 (Build 2600)
    Web site : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    ========== Registry Key ==========
    DELETED Key: CLSID BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
    DELETED Key: CLSID BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
    DELETED Key: CLSID BHO: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
    DELETED Key: CLSID BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9}
    ========== Registry Value ==========
    DELETED Toolbar: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
    ProxyFix : Proxy killed successfully
    DELETED ProxyServer Value
    DELETED ProxyEnable Value
    DELETED EnableHttp1_1 Value
    DELETED ProxyHttp1.1 Value
    DELETED ProxyOverride Value
    DELETED FirewallRaz (SP) : %windir%\Network Diagnostic\xpnetdiag.exe
    DELETED FirewallRaz (SP) : %windir%\system32\sessmgr.exe
    DELETED FirewallRaz (DP) : %windir%\Network Diagnostic\xpnetdiag.exe
    DELETED FirewallRaz (DP) : %windir%\system32\sessmgr.exe
    No Value in Firewall Exception Register Key (FirewallRaz)

    ========== Summary ==========
    4 : Registry Key
    12 : Registry Value

    End of clean in 00mn 08s
    ========== Report File ==========
    C:\ZHP\ZHPFix[R1].txt - 06/07/2013 18:15:21 [1264]
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 70
    Localização : Rio de Janeiro

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por joram Sáb Jul 06, 2013 8:13 pm

    Boa Noite! Edvan

    |- Baixe: |[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]| ( ... de Xplode )

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Estando na página,clique na seta verde para o download
    |- Salve-a em um local conveniente! ( desktop! )
    |- Feche aplicativos que estejam abertos.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Execute-a!
    |- Com as duas checkbox marcadas! 
    |- Clique "Run".
    |- Poste o relatório!

    -/-

    |- Baixe: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]> ( ... by OldTimer Tools )

    |- Salve-o no desktop! 
    |- Duplo clique em OTL.exe >> Executar ou [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Ps: Tendo dificuldades ao executar OTL.exe,delete o arquivo e baixe-o [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] ou [Tens de ter uma conta e sessão iniciada para poderes visualizar este link].

    < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > << OTL

    |- Ou... baixe-o daqui,que está renomeado,e não será bloqueado por malwares.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Configure a ferramenta,segundo a screenshot!
    |- Em "Exame Extra do Registro",assinale "Nenhum".

    C:\Arquivos de programas\Iminent

    |- Copie esta linha que está em verde,para o Bloco de Notas.
    |- Salve-a em Meus Documentos ou desktop,com o nome scan. << Texto!
    |- Clique na área "Exames Personalizados/Correções".

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] 

    |- Clique em Ok para procurar um arquivo com exame personalizado.
    |- Clique "Abrir". ( scan.txt )
    |- Após colar a linha verde na área branca,clique em [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] 

    |- Concluindo,poste o relatório: OTL.txt << Link ao relatório!

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] 

    |- Para enviar,acesse: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] >

    |- Ou acesse: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]>

    |- Maiores informações: < |[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]| >

    Abs!
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 43
    Localização : Natal/RN

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por Edvan Sáb Jul 06, 2013 10:19 pm

    Link OTL [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    # DelFix v10.3 - Logfile created 06/07/2013 at 22:39:02
    # Updated 08/06/2013 by Xplode
    # Username : e0054 - FUN0026
    # Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
    ~ Removing disinfection tools ...
    Deleted : C:\Qoobox
    Deleted : C:\JRT
    Deleted : C:\ZHP
    Deleted : C:\Arquivos de programas\ZHPDiag
    Deleted : C:\AdwCleaner[S1].txt
    Deleted : C:\ComboFix.txt
    Deleted : C:\PhysicalDisk0_MBR.bin
    Deleted : C:\zoek-results.log
    Deleted : C:\Documents and Settings\e0054\Desktop\AdwCleaner[S1].txt
    Deleted : C:\Documents and Settings\e0054\Desktop\ComboFix.exe
    Deleted : C:\Documents and Settings\e0054\Desktop\JRT.txt
    Deleted : C:\Documents and Settings\e0054\Desktop\MBRCheck.lnk
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPDiag.lnk
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPDiag.txt
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPDiag_silent.exe
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPFix.lnk
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHPFixReport.txt
    Deleted : C:\Documents and Settings\e0054\Desktop\ZHP_uninstall.exe
    Deleted : C:\Documents and Settings\e0054\Desktop\zoek-results.log
    Deleted : C:\Documents and Settings\e0054\Desktop\zoek.exe
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\adwcleaner.exe
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814142611.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814152724.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814155326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120814173218.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815140516.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815140603.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815144700.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815163424.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120815171511.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120816142134.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120817141609.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120817143609.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120817143731.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820145624.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820153207.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820154543.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820160805.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120820163139.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120821140755.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120822140803.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120822142916.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120823140651.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120823160156.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120823172200.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120824162521.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120824164322.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120827140335.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120827145624.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828142411.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828155738.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828160214.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120828162211.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120829140416.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120829143145.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120829163001.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120830141541.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120830154052.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120830154710.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120831165450.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120831165552.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903135637.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903165038.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903171121.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120903173957.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120905142135.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120905153102.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120905154919.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120906163206.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120910171717.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120910172914.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911143825.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911154033.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911163601.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120911173426.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912142130.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912150053.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912161715.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120912171454.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120913144917.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120913144931.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120913145007.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120914141915.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120917165612.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120918143028.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120918145149.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120918152802.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120919153238.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120920155122.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921142410.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921144534.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921151125.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921155419.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921161125.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921162229.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120921172533.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120924142031.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120924161403.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120925140505.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120925172014.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120926141356.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120926175123.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120927140850.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120928154929.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20120928160900.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121001143047.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121002140337.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121002160149.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121004162616.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121004162732.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121004165525.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005142813.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005151836.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005162329.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005163828.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121005180015.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008141758.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008160617.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008164100.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121008172011.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121009145034.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121009164305.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121010141542.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121010152021.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121010170150.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121011143425.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121011162747.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121011173648.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121016143959.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121016160322.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121016165444.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022151405.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022153326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022165838.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121022182707.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121023155256.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121023164605.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121023171943.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121024153748.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121024163924.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121025162748.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121026174722.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121029154326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121029181202.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121029181808.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121030162809.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121030163230.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121030170559.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121031175500.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121101152342.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121101160051.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121101162241.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121105152825.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121105161903.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121105182028.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121106152802.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121106154750.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121107183328.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121112171534.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121114153328.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121114161222.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121119152349.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121119161115.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121119165445.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121120164922.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121120180616.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121122154140.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121123161013.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121123173515.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121123174325.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126170125.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126175209.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126180640.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121126184110.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121127090709.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121127101554.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121127124828.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121128171810.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121128174108.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121203154636.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121203174755.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121204162824.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121204171758.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121205153133.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121205162359.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121206165902.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121206181921.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121207152114.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121212165607.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121212183433.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121217150455.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121217183719.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121218155736.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121219124951.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121221151344.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121221155054.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121228113539.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20121228122445.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130102113151.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103094350.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103094528.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103100102.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103101326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103104650.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103105437.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103113004.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130103120816.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130104104704.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130104124005.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130107092413.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130107100904.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130108090818.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130108092712.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130108112813.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130109093024.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130109122641.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130111124843.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130116163948.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130116170746.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130118103256.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130118121620.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130121153013.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130121172606.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130122102639.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130122110323.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130123093427.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130123110350.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130129105040.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130130095342.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130130113204.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130130120854.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130131094136.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130131103509.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130201092552.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130204170723.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130204184058.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205153110.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205155833.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205164205.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130205180703.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130206164809.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130206164848.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130206180343.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130207111719.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130207120818.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130214153928.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130214183307.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130215150657.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130215160944.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130218145257.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130218161013.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130220162519.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130220173326.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130221142341.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130221154146.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130221174226.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130222154438.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130225143020.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130225155345.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130225160240.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130226145752.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130227153829.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130228140742.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130228173517.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130301160342.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130301160418.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130305151518.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130305175310.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130306165113.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130306171312.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130306173916.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307113547.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307152148.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307154124.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307163912.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130307171649.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130308150301.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130308164922.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130308173110.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130311145358.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130311151436.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130311171816.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130312144531.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130313141703.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130313154051.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130315170215.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130319143903.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130319165531.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130322170344.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130325141833.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130325152152.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130325172802.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130401170704.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130403150505.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130403150959.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130403162146.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130404150604.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130408142301.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130409141912.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130409144812.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130411161512.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130412113235.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130416154414.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130417152427.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130418151515.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130418155122.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130419081801.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130419161421.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130423163123.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130424141928.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130424171050.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130424175040.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425145510.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425151900.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425160132.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130425164906.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130429145705.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130430150121.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130502175352.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130508155451.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130509151554.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130514145441.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130514154354.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130514160930.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130515150959.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130515155833.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130516143804.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130516144131.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130520142520.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130521143316.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130521175506.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130522113506.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130523082033.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130524093101.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130524105221.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130527141941.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130604151305.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130605160000.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130606144918.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130606155247.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130607165331.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130611140829.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130611170656.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130612083435.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130612093516.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130613161620.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130614090558.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130614142520.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130614145000.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618151256.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618151335.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618155548.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130618170413.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130625160500.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130626143347.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130626164457.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130628141607.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130701160858.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130702095307.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130703095801.pdf
    Deleted : C:\Documents and Settings\e0054\Meus documentos\Downloads\Report_20130703102607.pdf
    Deleted : C:\WINDOWS\grep.exe
    Deleted : C:\WINDOWS\PEV.exe
    Deleted : C:\WINDOWS\NIRCMD.exe
    Deleted : C:\WINDOWS\MBR.exe
    Deleted : C:\WINDOWS\SED.exe
    Deleted : C:\WINDOWS\SWREG.exe
    Deleted : C:\WINDOWS\SWSC.exe
    Deleted : C:\WINDOWS\SWXCACLS.exe
    Deleted : C:\WINDOWS\Zip.exe
    Deleted : HKLM\SOFTWARE\AdwCleaner
    Deleted : HKLM\SOFTWARE\Swearware
    Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
    ~ Cleaning system restore ...
    Deleted : RP #146 [Ponto de verificação do sistema | 05/16/2013 10:46:48]
    Deleted : RP #147 [Ponto de verificação do sistema | 05/17/2013 12:00:54]
    Deleted : RP #148 [Ponto de verificação do sistema | 05/20/2013 10:46:12]
    Deleted : RP #149 [Ponto de verificação do sistema | 05/21/2013 12:03:38]
    Deleted : RP #150 [Ponto de verificação do sistema | 05/22/2013 17:16:25]
    Deleted : RP #151 [Ponto de verificação do sistema | 05/23/2013 19:15:01]
    Deleted : RP #152 [Ponto de verificação do sistema | 05/27/2013 13:03:51]
    Deleted : RP #153 [Ponto de verificação do sistema | 05/28/2013 18:17:08]
    Deleted : RP #154 [Ponto de verificação do sistema | 05/29/2013 19:13:26]
    Deleted : RP #155 [Ponto de verificação do sistema | 05/31/2013 17:24:27]
    Deleted : RP #156 [Ponto de verificação do sistema | 06/03/2013 10:29:02]
    Deleted : RP #157 [Ponto de verificação do sistema | 06/04/2013 10:46:22]
    Deleted : RP #158 [Removido Java 7 Update 17 | 06/04/2013 20:35:49]
    Deleted : RP #159 [Instalado Java 7 Update 21 | 06/04/2013 20:37:07]
    Deleted : RP #160 [Ponto de verificação do sistema | 06/07/2013 10:43:34]
    Deleted : RP #161 [Ponto de verificação do sistema | 06/10/2013 10:36:24]
    Deleted : RP #162 [Ponto de verificação do sistema | 06/12/2013 10:43:10]
    Deleted : RP #163 [Ponto de verificação do sistema | 06/13/2013 10:55:47]
    Deleted : RP #164 [Ponto de verificação do sistema | 06/14/2013 15:09:09]
    Deleted : RP #165 [Ponto de verificação do sistema | 06/17/2013 10:43:27]
    Deleted : RP #166 [Ponto de verificação do sistema | 06/18/2013 11:42:35]
    Deleted : RP #167 [Ponto de verificação do sistema | 06/20/2013 10:40:11]
    Deleted : RP #168 [Ponto de verificação do sistema | 06/21/2013 11:23:50]
    Deleted : RP #169 [Ponto de verificação do sistema | 06/25/2013 10:48:32]
    Deleted : RP #170 [Ponto de verificação do sistema | 06/26/2013 11:26:50]
    Deleted : RP #171 [Ponto de verificação do sistema | 01/01/2005 04:11:48]
    Deleted : RP #172 [Ponto de verificação do sistema | 01/01/2005 03:21:09]
    Deleted : RP #173 [Ponto de verificação do sistema | 01/01/2005 02:34:49]
    Deleted : RP #174 [Ponto de verificação do sistema | 07/02/2013 14:40:40]
    Deleted : RP #175 [Ponto de verificação do sistema | 01/01/2005 03:25:19]
    Deleted : RP #176 [Ponto de verificação do sistema | 01/01/2005 03:16:39]
    Deleted : RP #177 [Ponto de verificação do sistema | 01/01/2005 03:16:37]
    Deleted : RP #178 [Ponto de verificação do sistema | 07/05/2013 21:23:52]
    Deleted : RP #179 [Removed Iminent | 07/06/2013 14:46:18]
    Deleted : RP #180 [zoek.exe restore point | 07/06/2013 18:29:38]
    New restore point created !
    ########## - EOF - ##########
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 70
    Localização : Rio de Janeiro

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por joram Dom Jul 07, 2013 6:27 am

    Bom Dia! Edvan

    |- Execute o OTL.exe.
    |- Copie estas informações que estão em vermelho,para o campo clipboard da ferramenta. ( "Exames Personalizados Correções" ) 
    #####

    :OTL
    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\e0054\CONFIG~1\Temp\catchme.sys -- (catchme)
    FF - user.js - File not found
    File not found (No name found) -- C:\ARQUIVOS DE PROGRAMAS\IMINENT\WEBBOOSTER@IMINENT.COM
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\E0054\DADOS DE APLICATIVOS\MOZILLA\FIREFOX\PROFILES\79FAQDWQ.DEFAULT\EXTENSIONS\{E0301295-AB3E-4AF3-979F-3D453C5F9F48}
    File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\E0054\DADOS DE APLICATIVOS\MOZILLA\FIREFOX\PROFILES\79FAQDWQ.DEFAULT\EXTENSIONS\{EB9394A3-4AD6-4918-9537-31A1FD8E8EDF}
    CHR - homepage: [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
    [2013/05/29 01:02:13 | 000,014,611 | ---- | M] () -- C:\Documents and Settings\e0054\Desktop\Natiruts-Acustico no Rio de Janeiro (FilmesViaTorrents).avi.torrent
    [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

    :Files
    C:\Arquivos de programas\Iminent
    ipconfig /flushdns /c

    :Commands 
    [purity] 
    [emptytemp] 
    [Reboot]

    #####
    |- Clique no botão Consertar -> Aguarde a conclusão!
    |- O computador vai reiniciar! -> Clique em "Executar". 

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Para versões em Inglês,clique em Run Fix que é o mesmo que Consertar.
    |- Poste o relatório: C:\_OTL\MovedFiles\*.log 

    A+
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 43
    Localização : Natal/RN

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por Edvan Dom Jul 07, 2013 12:17 pm

    All processes killed
    ========== OTL ==========
    Service catchme stopped successfully!
    Service catchme deleted successfully!
    File C:\DOCUME~1\e0054\CONFIG~1\Temp\catchme.sys not found.
    Use Chrome's Settings page to change the HomePage.
    C:\Documents and Settings\e0054\Desktop\Natiruts-Acustico no Rio de Janeiro (FilmesViaTorrents).avi.torrent moved successfully.
    C:\WINDOWS\System32\CONFIG.TMP deleted successfully.
    ========== FILES ==========
    File\Folder C:\Arquivos de programas\Iminent not found.
    < ipconfig /flushdns /c >
    Configuração de IP do Windows
    Liberação do cache do DNS Resolver bem-sucedida.
    C:\Documents and Settings\e0054\Desktop\cmd.bat deleted successfully.
    C:\Documents and Settings\e0054\Desktop\cmd.txt deleted successfully.
    ========== COMMANDS ==========
     
    [EMPTYTEMP]
     
    User: Administrador
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 2991 bytes
    ->Java cache emptied: 0 bytes
     
    User: All Users
     
    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
     
    User: e0054
    ->Temp folder emptied: 872 bytes
    ->Temporary Internet Files folder emptied: 16850424 bytes
    ->Java cache emptied: 0 bytes
    ->FireFox cache emptied: 65735717 bytes
    ->Google Chrome cache emptied: 7144999 bytes
    ->Flash cache emptied: 492 bytes
     
    User: f000537
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 67 bytes
     
    User: f002902
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 2967 bytes
    ->FireFox cache emptied: 20923377 bytes
     
    User: f003407
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 5541350 bytes
    ->Java cache emptied: 0 bytes
    ->Flash cache emptied: 0 bytes
     
    User: f003651
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 5541050 bytes
    ->Flash cache emptied: 0 bytes
     
    User: Funpec
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 2379 bytes
    ->Java cache emptied: 0 bytes
    ->Google Chrome cache emptied: 296613904 bytes
    ->Flash cache emptied: 0 bytes
     
    User: LocalService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 32902 bytes
     
    User: NetworkService
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 33170 bytes
     
    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\dllcache .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 0 bytes
    RecycleBin emptied: 108704 bytes
     
    Total Files Cleaned = 399,00 mb
     
     
    OTL by OldTimer - Version 3.2.69.0 log created on 07072013_124505
    Files\Folders moved on Reboot...
    File move failed. C:\WINDOWS\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
    PendingFileRenameOperations files...
    Registry entries deleted on Reboot...
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 70
    Localização : Rio de Janeiro

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por joram Dom Jul 07, 2013 1:10 pm

    Boa Tarde! Edvan

    |- Abra o OTL.exe >> Clique [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]
    |- Confirme essa solicitação!
    |- Aceite o reboot!

    -/-

    |- Faça manutenção com o JetClean + JetBoost.

    |- Baixe: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > ( ... by BlueSprig.com )

    < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > << Leia aqui!

    |- Salve-o em Arquivos de programas. ( jetclean-setup.exe )

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Instale o software e na guia "1-Click",escolha a opção "Registry Clean".
    |- Vá em "Scan Now" e escolha: Shut down PC after Repair

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Ou escolhendo a opção "Repair",sem o reboot do PC.

    < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] >

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- À seguir,tente melhorar a performance com o JetBoost.
    |- Tudo Ok?

    Abs!
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 43
    Localização : Natal/RN

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por Edvan Dom Jul 07, 2013 7:04 pm

    Tudo Ok amigo, mais uma vez muito obrigado.Very Happy
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 70
    Localização : Rio de Janeiro

    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por joram Dom Jul 07, 2013 11:33 pm

    CASO RESOLVIDO!

    Necessitando novo auxílio para este computador,basta abrir "Novo Tópico" e relatar o problema.

    Conteúdo patrocinado


    pc travando, log para analise. Empty Re: pc travando, log para analise.

    Mensagem por Conteúdo patrocinado


      Data/hora atual: Sex Abr 19, 2024 4:28 am