Fórum SecSecurity

Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Fórum SecSecurity

Implementando Limpeza e Seguranca em seu computador!

Palavras-chaves

Últimos assuntos

» OpenTip (...by Kaspersky.com)
pc lento e travando. (dudu) EmptySáb Mar 23, 2024 10:28 am por joram

» KpRm ( ... by Kernel-panik )
pc lento e travando. (dudu) EmptyTer Ago 11, 2020 9:47 pm por joram

» ESET Rogue Applications Remover ( ... by Eset.com )
pc lento e travando. (dudu) EmptySáb Ago 01, 2020 7:49 am por joram

» PW Clean 2.7 ( ... by Doutor PW )
pc lento e travando. (dudu) EmptyTer maio 15, 2018 9:27 am por joram

» CKScanner ( ... by askey127 )
pc lento e travando. (dudu) EmptySáb maio 05, 2018 1:12 pm por joram

» AdwCleaner ( ... by XPlode )
pc lento e travando. (dudu) EmptySeg Abr 16, 2018 8:47 am por joram

» ZHPDiag ( ... de Nicolas Coolman )
pc lento e travando. (dudu) EmptySáb Abr 14, 2018 8:56 am por joram

» Argente - Registry Cleaner ( ... by Argente Software )
pc lento e travando. (dudu) EmptyDom Nov 19, 2017 4:36 pm por joram

» ListChkdskResult ( ... by SleepyDude )
pc lento e travando. (dudu) EmptyDom Set 24, 2017 1:39 pm por joram

novembro 2024

SegTerQuaQuiSexSábDom
    123
45678910
11121314151617
18192021222324
252627282930 

Calendário Calendário

Parceiros

Fórum grátis

Os membros mais mencionados

Nenhum usuário

2 participantes

    pc lento e travando. (dudu)

    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 44
    Localização : Natal/RN

    pc lento e travando. (dudu) Empty pc lento e travando. (dudu)

    Mensagem por Edvan Sáb Ago 03, 2013 9:24 am

    Esse notebook esta muito lento, segue o log.
     Log para analise [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    # AdwCleaner v2.306 - Relatório criado em 03/08/2013 às 09:37:02
    # Atualizado em 19/07/2013 por Xplode
    # Sistema Operacional : Windows 7 Starter  (32 bits)
    # Usuário : Eduardo Ferreira - EDUARDOFERREIRA
    # Modo de Boot : Normal
    # Executado de : C:\Users\Eduardo Ferreira\Downloads\adwcleaner (1).exe
    # Opção [Remover]


    ***** [Serviços] *****

    Encerrado & Removido : WebCake Desktop Updater

    ***** [Arquivos/Pastas] *****

    Arquivo Removido : C:\windows\Tasks\Dealply.job
    Pasta Removido : C:\Program Files\WebCake
    Pasta Removido : C:\ProgramData\APN
    Pasta Removido : C:\ProgramData\boost_interprocess
    Pasta Removido : C:\ProgramData\Tarma Installer
    Pasta Removido : C:\Users\Eduardo Ferreira\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
    Pasta Removido : C:\Users\Eduardo Ferreira\AppData\Roaming\Mozilla\Firefox\Profiles\oxad2sqp.default\extensions\plugin@getwebcake.com
    Pasta Removido : C:\Users\Eduardo Ferreira\AppData\Roaming\WebCake

    ***** [Registro] *****

    Chave Removida : HKCU\Software\InstallCore
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
    Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AF6B0594-6008-4327-93E5-608AD710A6FA}
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\{7169BBB3-3289-4696-B35D-4A88BCF6FB12}
    Chave Removida : HKLM\SOFTWARE\Classes\AppID\WebCakeIEClient.DLL
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{AF6B0594-6008-4327-93E5-608AD710A6FA}
    Chave Removida : HKLM\SOFTWARE\Classes\CLSID\{DF84E609-C3A4-49CB-A160-61767DAF8899}
    Chave Removida : HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899}
    Chave Removida : HKLM\SOFTWARE\Classes\TypeLib\{EFDF368C-8DD9-4E05-87CD-16AA5CB03CB8}
    Chave Removida : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api
    Chave Removida : HKLM\SOFTWARE\Classes\WebCakeIEClient.Api.1
    Chave Removida : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers
    Chave Removida : HKLM\SOFTWARE\Classes\WebCakeIEClient.Layers.1
    Chave Removida : HKLM\SOFTWARE\Google\Chrome\Extensions\fjoijdanhaiflhibkljeklcghcmmfffh
    Chave Removida : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASAPI32
    Chave Removida : HKLM\SOFTWARE\Microsoft\Tracing\WebCakeDesktop_RASMANCS
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A5A2A90-3B30-4E6E-A955-2F232C6EF517}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6C63B7F-2171-47FA-AB34-E64C4737169D}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AF6B0594-6008-4327-93E5-608AD710A6FA}
    Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4ED781C-7394-4906-AAFF-D6AB64FF7C38}
    Chave Removida : HKLM\Software\Tarma Installer
    Valor Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [WebCake Desktop]

    ***** [Navegadores] *****

    -\\ Internet Explorer v9.0.8112.16421

    [OK] Registro está limpo.

    -\\ Mozilla Firefox v22.0 (pt-BR)

    Arquivo : C:\Users\Eduardo Ferreira\AppData\Roaming\Mozilla\Firefox\Profiles\oxad2sqp.default\prefs.js

    C:\Users\Eduardo Ferreira\AppData\Roaming\Mozilla\Firefox\Profiles\oxad2sqp.default\user.js ... Removido !

    [OK] Arquivo está limpo.

    -\\ Google Chrome v28.0.1500.95

    Arquivo : C:\Users\Eduardo Ferreira\AppData\Local\Google\Chrome\User Data\Default\Preferences

    Removida [l.54] : icon_url = "hxxp://www.ask.com/favicon.ico",
    Removida [l.57] : keyword = "ask.com",
    Removida [l.61] : search_url = "hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=ORJ&o=&locale=&apn_uid=B8[...]
    Removida [l.62] : suggest_url = "hxxp://ss.websearch.ask.com/query?qsrc=2922&li=ff&sstype=prefix&q={searchTerms[...]

    *************************

    AdwCleaner[S1].txt - [12438 octets] - [14/06/2013 21:06:29]
    AdwCleaner[S2].txt - [4078 octets] - [03/08/2013 09:37:02]

    ########## EOF - C:\AdwCleaner[S2].txt - [4138 octets] ##########




    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Junkware Removal Tool (JRT) by Thisisu
    Version: 5.3.1 (08.02.2013:3)
    OS: Windows 7 Starter x86
    Ran by Eduardo Ferreira on 03/08/2013 at 10:00:46,60
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




    ~~~ Services



    ~~~ Registry Values



    ~~~ Registry Keys

    Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A0B10EBE-4E51-4CAE-949B-E6B9E7D68CEA}
    Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{BB975E58-E769-4E5A-BA12-B765BC559FF3}
    Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{F511AFDB-726E-4458-90E7-1ECB97406544}
    Failed to delete: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
    Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4}
    Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
    Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
    Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{7850B95A-42FD-446C-A893-1BD68632BA25}



    ~~~ Files

    Successfully deleted [File] C:\Users\Eduardo



    ~~~ Folders



    ~~~ FireFox

    Emptied folder: C:\Users\Eduardo Ferreira\AppData\Roaming\mozilla\firefox\profiles\oxad2sqp.default\minidumps [148 files]



    ~~~ Chrome

    Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Policies\Google\Chrome\extensioninstallforcelist [Blacklisted Policy]



    ~~~ Event Viewer Logs were cleared





    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on 03/08/2013 at 10:12:39,45
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 71
    Localização : Rio de Janeiro

    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por joram Sáb Ago 03, 2013 10:15 am

    Bom Dia! Edvan

    ####

    System drive C: has 8 GB (9%) free of 85 GB

    ####

    |- O drive "C" apresenta pouco espaço disponível.

    -/-

    |- Baixe: < [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] > ( ... by Smeenk )

    |- Ou aqui! < [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem][Tens de ter uma conta e sessão iniciada para poderes visualizar este link] >

    |- Salve-o no desktop!
    |- Desabilite seu antivírus!
    |- Para Windows 7,execute zoek.exe como administrador.

    startupall;
    autoclean;
    filesrcm;
    emptyalltemp;


    |- Copie e cole estas informações,em vermelho,no campo da ferramenta.
    |- Clique "Run Script".

    Zoek.exe is running now.
    Do not start any browser windows, they will be closed automatically.
    Please wait! This window will close when finished.
    A logfile will open afterwards and can also be found on your systemdrive as zoek-results.log
    |- Surgirão estas informações,pedindo-lhe que aguarde o relatório.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Aceite e/ou confirme o reboot!

    zoek.hta failed by unknown error.
    Restart computer, and try again.
    |- Ps: Ao obter algum erro,reinicie o PC e execute,novamente,a ferramenta.
    |- Poste o relatório,que estará em C:\zoek-results.txt <<

    -/-

    |- Feche programas/pastas que estejam abertas.
    |- Feche,também,o navegador!
    |- Para Windows Vista,desabilite a [Tens de ter uma conta e sessão iniciada para poderes visualizar este link].

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Para Windows Vista ou 7,clique direito em ZHPFix.exe e execute-o como administrador.
    |- Selecione e copie estas informações,que estão em vermelho,para o "Bloco de Notas".

    [MD5.00000000000000000000000000000000] [APT] [DealPlyUpdate] (...) -- C:\Program Files\DealPly\DealPlyUpdate.exe (.not file.)    => Infection PUP (PUP.DealPly)
    [MD5.AD6E810B9CE3D8C0C1FF0203C68C6FA6] [SPRF][16/07/2013] (.Unknown owner - Setup/Uninstall.) -- C:\Users\Eduardo Ferreira\AppData\Roaming\unins000.exe   [720082]
    [MD5.00000000000000000000000000000000] [APT] [{1801BB0D-05C0-46F9-983D-F8482A849C95}] (...) -- C:\Users\Eduardo Ferreira\Desktop\E1553WINMACLNXB300D01SP01C150%28CLARO%29\UTPS11.300.04.36.150_MAC15.001.10.O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} Orphean Key    
    O2 - BHO: (no name) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} Orphean Key    
    O2 - BHO: (no name) - {C41A1C0E-EA6C-11D4-B1B8-444553540000} Orphean Key    
    O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} Orphean Key    
    O3 - Toolbar: (no name) - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (...) --  (.not file.)
    03.150_LNX16.001.09.00.150.exe (.not file.)
    [MD5.00000000000000000000000000000000] [APT] [{77FE633B-D77C-479F-8346-F933DC76CDAC}] (...) -- C:\Users\Eduardo Ferreira\Desktop\E1553WINMACLNXB300D01SP01C150%28CLARO%29\UTPS11.300.04.36.150_MAC15.001.10.03.150_LNX16.001.09.00.150.exe (.not file.)
    [MD5.00000000000000000000000000000000] [APT] [{86E4F174-CC18-4D46-8234-A296AC942FBB}] (...) -- C:\Users\Eduardo Ferreira\Desktop\Ferramenta contra virus\ZHPDiag2.exe (.not file.)
    [MD5.00000000000000000000000000000000] [APT] [{E96F057A-8429-4574-BC62-1470B7569967}] (...) -- C:\Users\Eduardo Ferreira\Desktop\E1553WINMACLNXB300D01SP01C150%28CLARO%29\UTPS11.300.04.36.150_MAC15.001.10.03.150_LNX16.001.09.00.150.exe (.not file.)
    [MD5.00000000000000000000000000000000] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files\Ask.com\UpdateTask.exe (.not file.)    => Toolbar.Ask
    O43 - CFD: 24/03/2012 - 16:46:37 - [0] ----D C:\Users\Eduardo Ferreira\AppData\Local\Dados de aplicativos
    O43 - CFD: 24/03/2012 - 16:46:37 - [0] ----D C:\Users\Eduardo Ferreira\AppData\Local\Histórico
    O43 - CFD: 16/07/2013 - 22:34:53 - [0] ----D C:\Users\Eduardo Ferreira\AppData\Local\Programs
    O87 - FAEL: "TCP Query User{79F01C51-D51D-4374-88A7-9F43D49B43BA}C:\users\eduardo ferreira\desktop\call of dutty\codmp.exe" |In - Public - P6 - TRUE | .(...) -- C:\users\eduardo ferreira\desktop\call of dutty\codmp.exe (.not file.)
    O87 - FAEL: "UDP Query User{289377A7-1878-40A7-8E52-A875EA3201F8}C:\users\eduardo ferreira\desktop\call of dutty\codmp.exe" |In - Public - P17 - TRUE | .(...) -- C:\users\eduardo ferreira\desktop\call of dutty\codmp.exe (.not file.)

    emptytemp
    emptyclsid
    emptyflash
    firewallraz
    sysrestore


    |- Estando com o Bloco de Notas aberto,acione os atalhos: "Ctrl+A" -> "Ctrl+C"
    |- Minimize o Bloco de Notas.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Clique no menu,"Paste ClipBoard".
    |- Evite a opção "Colar" ( Ctrl+V ),no campo amarelo claro,que não habilita o botão "Go".

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Clique "GO" -> Oui.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Ps: Temos,àcima,sequência de imagens para maior exclarecimento.
    |- Poste o relatório: C:\ZHP\ZHPFix[R1].txt

    Abs!
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 44
    Localização : Natal/RN

    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por Edvan Sáb Ago 03, 2013 2:43 pm

    Zoek.exe Version 4.0.0.4 Updated 31-07-2013
    Tool run by Eduardo Ferreira on 03/08/2013 at 13:47:04,85.
    Microsoft Windows 7 Starter  6.1.7600  x86
    Running in: Normal Mode Internet Access Detected
    Launched: C:\Users\Eduardo Ferreira\Desktop\remoção de virus\zoek.exe [Script inserted] 

    ==== System Restore Info ======================

    ==== Creating Sample_082013_1414.zip ======================
     
    Copied file C:\Users\Eduardo Ferreira\AppData\Roaming\unins000.exe to sample\unins000.exe
    sample\unins000.exe renamed to AD6E810B9CE3D8C0C1FF0203C68C6FA6

    C:\Users\Public\Desktop\sample_082013_1414.zip created successfully

    ==== Deleting CLSID Registry Keys ======================


    ==== Deleting CLSID Registry Values ======================


    ==== Deleting Services ======================


    ==== Deleting Files \ Folders ======================

    "C:\windows\System32\Tasks\DealPlyUpdate" deleted
    "C:\windows\SYSTEM32\TASKS\Scheduled Update for Ask Toolbar" deleted
    "C:\Users\Eduardo Ferreira\AppData\Roaming\unins000.exe" deleted
    "C:\Users\Eduardo Ferreira\AppData\Roaming\Web Cake" deleted

    ==== Files Recently Created / Modified ======================

    ====== C:\windows ====
    ====== C:\Users\EDUARD~1\AppData\Local\Temp ====
    ====== C:\windows\system32 =====
    2013-08-03 12:23:35 F65CD3C9BF597FD18E2F82372E591F94 147512 ----a-w- C:\windows\System32\temp.001
    2013-08-03 12:23:35 898F06BBE5317236571360E544D1A0E0 244024 ----a-w- C:\windows\System32\MsFlxGrd.ocx
    2013-08-03 12:23:34 483BCB335555ED6FF87ED93ECDD15DF8 82744 ----a-w- C:\windows\System32\PicClp32.ocx
    2013-08-03 12:23:33 C1B4AF41A0370E4081D59AC99BCC929D 647872 ----a-w- C:\windows\System32\MSComCt2.ocx
    2013-08-03 12:23:32 9484C04258830AA3C2F2A70EB041414C 108336 ----a-w- C:\windows\System32\MSWinSck.ocx
    2013-08-03 12:23:32 7BEC181A21753498B6BD001C42A42722 115016 ----a-w- C:\windows\System32\Msinet.ocx
    2013-08-03 12:23:32 39421833CE119E26CDCA2AE48374197C 24576 ----a-w- C:\windows\System32\temp.000
    2013-08-03 12:23:32 12ADE65F40252F7F380C03632A6B0EED 20480 ----a-w- C:\windows\System32\ScrrnCHS.dll
    2013-08-03 12:23:31 8A32B505221206D35DD709D5B886837B 28672 ----a-w- C:\windows\System32\DrawDll.dll
    2013-08-03 12:23:31 0629D2A8CF6856190742C9249C22F68E 290816 ----a-w- C:\windows\System32\DVRClient.ocx
    2013-08-03 12:23:30 57B191952B89103E8518217A0280DA5F 49152 ----a-w- C:\windows\System32\inetocx.ocx
    2013-08-03 12:23:30 4492448DA2DD26BEF7F206EB750B1022 49152 ----a-w- C:\windows\System32\Mp4Decoder.dll
    2013-08-03 12:23:29 989CA13847CB6D2499D1F87842D74DEC 61440 ----a-w- C:\windows\System32\TalkDll.dll
    2013-08-03 12:23:29 7D3995B3DB525E8E858EF459F5B24E91 565248 ----a-w- C:\windows\System32\svmp4.dll
    2013-08-03 12:23:29 5D067EA04BBD03892FE37D8BCF24F76D 77824 ----a-w- C:\windows\System32\xvid.ax
    2013-08-03 12:23:28 9B4FD5A944F1428FA167A55BDCCE59D0 28672 ----a-w- C:\windows\System32\UdpSock.dll
    2013-08-03 12:23:26 D76F0EAB36F83A31D411AEAF70DA7396 140288 ----a-w- C:\windows\System32\COMDLG32.OCX
    2013-08-03 12:23:26 9D1864AE5F6FF8BBDE86A3F5A448110D 368912 ----a-w- C:\windows\System32\vbar332.dll
    ====== C:\windows\system32\drivers =====
    2013-07-17 01:36:42 B7CC2AF3D5604EFDC5F82AF7A5B21FB1 31088 ----a-w- C:\windows\System32\drivers\GbpNdisrd.sys
    2013-07-17 01:36:39 8F866DF9A974BFFDCB2001D303BC0695 49536 ----a-w- C:\windows\System32\drivers\gbpkm.sys
    ====== C:\windows\Tasks ======
    ====== C:\windows\Temp ======
    ======= C:\Program Files =====
    2013-08-03 13:14:46 -------- d-----w- C:\Program Files\ZHPDiag
    2013-08-03 12:23:27 -------- d-----w- C:\Program Files\Client
    2013-08-03 11:50:08 -------- d-----w- C:\Program Files\webrec
    2013-07-29 15:15:43 51992 ----a-w- C:\Program Files\WDesktop.Updater.exe
    2013-07-17 01:35:56 -------- d-----w- C:\Program Files\GbPlugin
    2013-07-11 02:00:24 -------- d-----w- C:\Program Files\WinZip
    ======= C: =====
    2013-08-03 13:19:11 F490A0573C225D955970A39D48BA91FA 512 ----a-w- C:\PhysicalDisk0_MBR.bin
    2013-08-03 12:37:02 F45D571E8FFA9D9FECF0FAC23079698D 4207 ----a-w- C:\AdwCleaner[S2].txt
    2013-07-11 04:22:20 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\[1].avi
    2013-07-11 04:03:39 D41D8CD98F00B204E9800998ECF8427E 0 ----a-w- C:\.avi
    ====== C:\Users\Eduardo Ferreira\AppData\Roaming ======
    2013-08-03 12:23:36 -------- d-----w- C:\users\Eduardo Ferreira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Client
    2013-07-17 01:34:57 0C4FFDB9A2BBD8793C41F53CDA97C66D 13175 ----a-w- C:\users\Eduardo Ferreira\AppData\Roaming\unins000.dat
    2013-07-17 01:34:53 -------- d-----w- C:\users\Eduardo Ferreira\AppData\Local\Programs
    2013-07-11 02:01:23 -------- d-----w- C:\users\Eduardo Ferreira\AppData\Local\WinZip
    ====== C:\Users\Eduardo Ferreira ======
    2013-08-03 13:14:52 AE326A97F634217CAC29739D376DF934 344187 ----a-w- C:\Users\Eduardo Ferreira\Desktop\ZHP_uninstall.exe
    2013-08-03 12:23:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Client
    2013-07-17 01:35:56 -------- d-----w- C:\ProgramData\GbPlugin
    2013-07-11 02:01:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
    2013-07-11 02:00:37 -------- d-----w- C:\ProgramData\WinZip
    2013-07-11 01:58:31 -------- d-----w- C:\Users\Eduardo Ferreira\aTubeCatcher
    2013-07-11 01:55:19 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher

    ====== C: exe-files ==
    2013-08-03 13:14:52 AE326A97F634217CAC29739D376DF934 344187 ----a-w- C:\Users\Eduardo Ferreira\Desktop\ZHP_uninstall.exe
    2013-08-03 13:14:51 74C3DFCC1C6BF8B0BD977EF6F4185208 2709504 ----a-w- C:\Program Files\ZHPDiag\ZHPFix.exe
    2013-08-03 13:14:50 8747E33E978E91C7888364E95F53D977 370235 ----a-w- C:\Program Files\ZHPDiag\ZHPDiags.exe
    2013-08-03 13:14:49 56873D899C0707AA017AA2D74EC190AE 3770368 ----a-w- C:\Program Files\ZHPDiag\ZHPDiag.exe
    2013-08-03 13:14:48 E100F7F1AA506F91A3C64366EE290E33 555944 ----a-w- C:\Program Files\ZHPDiag\setacl64.exe
    2013-08-03 13:14:48 C3D16F308C98CB3BDC315D996D7D89AD 706512 ----a-w- C:\Program Files\ZHPDiag\unins000.exe
    2013-08-03 13:14:48 53CDBB093B0AEE9FD6CF1CBD25A95077 290304 ----a-w- C:\Program Files\ZHPDiag\subinacl.exe
    2013-08-03 13:14:48 417C1BE0BF4D7C505D60D2CEFCDF2347 231048 ----a-w- C:\Program Files\ZHPDiag\sigcheck.exe
    2013-08-03 13:14:47 CB2D120A4B72422A8141192831B1F500 80384 ----a-w- C:\Program Files\ZHPDiag\mbrcheck.exe
    2013-08-03 13:14:47 9DAA7218961710008D7385B01BD3F386 89088 ----a-w- C:\Program Files\ZHPDiag\mbr.exe
    2013-08-03 13:14:47 79C7BC4A7642D908A1527A0EB90138C9 452008 ----a-w- C:\Program Files\ZHPDiag\setacl32.exe
    2013-08-03 13:14:47 5DAF7081A4BB112FA3F1915819330A3E 61440 ----a-w- C:\Program Files\ZHPDiag\pv.exe
    2013-08-03 13:14:46 F3A37421DBD1AAA36558C97572C91C5A 147456 ----a-w- C:\Program Files\ZHPDiag\catchme.exe
    2013-08-03 13:14:46 6B8AF3A2A3D9059008B55C444461CA00 61952 ----a-w- C:\Program Files\ZHPDiag\Lads.exe
    2013-08-03 13:14:46 5BBF2A0351E336646022D09009560CEF 143360 ----a-w- C:\Program Files\ZHPDiag\FileInfos.exe
    2013-08-03 13:00:20 2E0323A94915FAAB10A25F3BABF82584 157696 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\erunt\ERUNT.EXE
    2013-08-03 12:57:17 714DFE51DE75AD85782DABF5DCE48518 560986 ----a-w- C:\Users\Eduardo Ferreira\Desktop\remoção de virus\JRT.exe
    2013-08-03 12:56:27 E897110EE5E67FABB83B154DF9C68D6A 794216 ----a-w- C:\Users\Eduardo Ferreira\Desktop\remoção de virus\ZHPDiag_silent.exe
    2013-08-03 12:23:27 973567B98CDFC147DF4E60471D9DF072 153088 ----a-w- C:\Program Files\Client\UNWISE.EXE
    2013-08-03 12:22:18 8F254FB375452DF0ADD3F751691FA2AC 4748847 ----a-w- C:\Windows\Downloaded Program Files\DVRClient.exe
    2013-08-03 12:21:38 8F254FB375452DF0ADD3F751691FA2AC 4748847 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2BEDNUXJ\DVRClient[1].exe
    2013-08-03 11:25:43 40AF6E444E938BF485B97D97E462AA33 409640 ----a-w- C:\Program Files\GbPlugin\gbpsv.exe
    2013-07-31 23:27:09 4A3B3C915C3FC187689EC0EB116C2616 33792864 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\28.0.1500.95\28.0.1500.95_chrome_installer.exe
    2013-07-31 13:15:48 EB43F540338470C8FE4AAE8378780CAA 784224 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\28.0.1500.95\28.0.1500.95_28.0.1500.72_chrome_updater.exe
    2013-07-29 15:15:43 6E3672209D3EEF85B5FC010A26C11B73 51992 ----a-w- C:\Program Files\WDesktop.Updater.exe
    === C: other files ==
    2013-08-03 17:14:41 596D14A9BAF05236E2B550DD2B5B2315 331980 ----a-w- C:\Users\Public\Desktop\sample_082013_1414.zip
    2013-08-03 13:14:03 82BF0B4BA8C5726A9788F914B8CA2E30 5543254 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\YIQBQBVM\ZHPDiag[1].zip
    2013-08-03 13:00:19 FDB9CF820305FE44231763042642F7A6 12733 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\searchlnk.bat
    2013-08-03 13:00:19 F6CA4866511929B8356C67C40DF7D9B3 28960 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\prelim.bat
    2013-08-03 13:00:19 CE20054428D652DCE56ECEFDB7755517 13748 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\get.bat
    2013-08-03 13:00:19 CBEB19AE2E5A0BF254E3C67F3771C0CA 10178 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\runvalues.bat
    2013-08-03 13:00:19 C86517F975D1B2D18FDC918BFCE33B2B 125716 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\misc.bat
    2013-08-03 13:00:19 B964B792D3692699CD7D4FDB63EE470E 1239 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\FWPolicy.bat
    2013-08-03 13:00:19 A6966902767B2C7C92E9F2B316FB8679 29152 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\iexplore.bat
    2013-08-03 13:00:19 473C58B1782CD917F2515DD2D72E4083 9490 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\modules.bat
    2013-08-03 13:00:19 3453A3171F4D31C1C3697BBAA8BEF4D8 10256 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\JRT.bat
    2013-08-03 13:00:19 1FBF882AA934A741530741FC134872A3 1243 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\TDL4.bat
    2013-08-03 13:00:19 14D6EE8B672684E2232FB430D8C4A928 18668 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\medfos.bat
    2013-08-03 13:00:18 ED760E63A837E896F3228B5065AEDB81 218681 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\firefox.bat
    2013-08-03 13:00:18 80D02380F1AC33E459324B088392A1EC 732 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\ev_clear.bat
    2013-08-03 13:00:18 654E9FE74B930A454EE5BDE165794B65 85 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\delorphans.bat
    2013-08-03 13:00:18 603595734D290C73FA40EDA1ACADF265 14973 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\chrome.bat
    2013-08-03 13:00:18 2CD4D1FFB665F76119D20F88032621C8 22587 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\ask.bat
    2013-08-03 13:00:18 0768E560CCD86C18F35FAD29DCEA7B80 1820 ----a-w- C:\Users\Eduardo Ferreira\AppData\Local\temp\jrt\delfolders.bat

    ==== Startup Registry Enabled ======================

    [HKEY_USERS\S-1-5-21-2190984065-3680493698-2619012717-1000\Software\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"="C:\Program Files\uTorrent\uTorrent.exe  /MINIMIZED"
    "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe /background"
    "Google Update"="C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\GoogleUpdate.exe /c"
    "Facebook Update"="C:\Users\Eduardo Ferreira\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "avast"="C:\Program Files\AVAST Software\Avast\avastUI.exe /nogui"
    "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    "SunJavaUpdateSched"="C:\Program Files\Common Files\Java\Java Update\jusched.exe"

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "uTorrent"="C:\Program Files\uTorrent\uTorrent.exe  /MINIMIZED"
    "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe /background"
    "Google Update"="C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\GoogleUpdate.exe /c"
    "Facebook Update"="C:\Users\Eduardo Ferreira\AppData\Local\Facebook\Update\FacebookUpdate.exe /c /nocrashserver"

    ==== Startup Registry Disabled ======================

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ETDWare]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="ETDWare"
    "hkey"="HKLM"
    "command"="\"%ProgramFiles%\\Elantech\\ETDCtrl.exe\""

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\HotKeysCmds]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="HotKeysCmds"
    "hkey"="HKLM"
    "command"="C:\\windows\\system32\\hkcmd.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IgfxTray]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="IgfxTray"
    "hkey"="HKLM"
    "command"="C:\\windows\\system32\\igfxtray.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Persistence]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="Persistence"
    "hkey"="HKLM"
    "command"="C:\\windows\\system32\\igfxpers.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\RtHDVCpl]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="RtHDVCpl"
    "hkey"="HKLM"
    "command"="C:\\Program Files\\Realtek\\Audio\\HDA\\RtHDVCpl.exe -s"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\UCam_Menu]
    "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
    "item"="UCam_Menu"
    "hkey"="HKLM"
    "command"="\"C:\\Program Files\\CyberLink\\YouCam\\MUITransfer\\MUIStartMenu.exe\" \"C:\\Program Files\\CyberLink\\YouCam\" UpdateWithCreateOnce \"Software\\CyberLink\\YouCam\\2.0\""


    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk]
    "path"="C:\\ProgramData\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\Bluetooth.lnk"
    "backup"="C:\\windows\\pss\\Bluetooth.lnk.CommonStartup"
    "backupExtension"=".CommonStartup"
    "command"="C:\\PROGRA~1\\WIDCOMM\\BLUETO~1\\BTTray.exe "
    "item"="Bluetooth"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Users^Eduardo Ferreira^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk]
    "path"="C:\\Users\\Eduardo Ferreira\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\OpenOffice.org 3.2.lnk"
    "backup"="C:\\windows\\pss\\OpenOffice.org 3.2.lnk.Startup"
    "backupExtension"=".Startup"
    "command"="C:\\PROGRA~1\\OPENOF~1.ORG\\program\\QUICKS~1.EXE "
    "item"="OpenOffice.org 3.2"


    ==== Task Scheduler Jobs ======================

    C:\windows\tasks\Adobe Flash Player Updater.job --a------ C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [03/08/2013 09:49]
    C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-2190984065-3680493698-2619012717-1000Core.job --a------ C:\Users\Eduardo Ferreira\AppData\Local\Facebook\Update\FacebookUpdate.exe [25/01/2013 00:10]
    C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-2190984065-3680493698-2619012717-1000UA.job --a------ C:\Users\Eduardo Ferreira\AppData\Local\Facebook\Update\FacebookUpdate.exe [25/01/2013 00:10]
    C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2190984065-3680493698-2619012717-1000Core.job --a------ C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\GoogleUpdate.exe [13/08/2012 17:38]
    C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-2190984065-3680493698-2619012717-1000UA.job --a------ C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\GoogleUpdate.exe [13/08/2012 17:38]

    ==== Firefox Extensions ======================

    ==== Firefox Plugins ======================

    Profilepath: C:\Users\Eduardo Ferreira\AppData\Roaming\Mozilla\Firefox\Profiles\oxad2sqp.default
    101700E93EB905992B518256CB441829 - C:\Users\Eduardo Ferreira\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll - Google Update
    ABCB4A6EAB701C629378255ABCB308E5 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U25
    D7324EB1EDCB8990F8522DE0311359E9 - C:\windows\system32\npDeployJava1.dll - Java Deployment Toolkit 7.0.250.17
    3D76B5C0E02ECC19C1F5756E8FD97F72 - C:\windows\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll - Shockwave Flash
    DF75FC32D3EB681B6FE7C092D6FC4695 - C:\Users\Eduardo Ferreira\AppData\Local\GAS Tecnologia\GBBD\npsf_bb.dll - Módulo de Proteção - Banco do Brasil
    0B31B0F8FA99CFD009C8FBEA9E20C9DE - C:\Users\Eduardo Ferreira\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll - Facebook Video Calling Plugin
    711A2E6A55EC7BFD59B5F649D58B704B - C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll - Silverlight Plug-In
    CF46E0E1398B382CE0CE738C67A38DD1 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live? Photo Gallery
    28D2C5CE5944E1B027CF5C8004CF89A1 - C:\Program Files\Adobe\Reader 9.0\Reader\browser\nppdf32.dll - Adobe Acrobat
    21A55BABD31DA624449F06A591AE73ED - C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrlui.dll - Microsoft (R) Silverlight
    15E298B5EC5B89C5994A59863969D9FF - C:\windows\system32\npmproxy.dll - Microsoft® Windows® Operating System


    ==== Chrome Look ======================

    HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
    pgacfjdigcddmmncljpflgcfpfahebkh - C:\Users\Eduardo Ferreira\AppData\Local\GAS Tecnologia\GBBD\bb\sf.crx[21/11/2012 15:32]

    GBBD Banco do Brasil - Eduardo Ferreira - Default\Extensions\pgacfjdigcddmmncljpflgcfpfahebkh

    ==== Set IE to Default ======================

    Old Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://www.google.com.br/"
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://www.baixaki.com.br/portal/?utm_source=core&utm_medium=ppi&utm_campaign=portal"

    New Values:
    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://www.google.com.br/"
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
    "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

    ==== All HKCU SearchScopes ======================

    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
    "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
    {0633EE93-D776-472f-A0FF-E1416B8B2E3A} @ieframe.dll,-12512  Url="http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC"
    {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"

    ==== Empty IE Cache ======================

    C:\Users\Eduardo Ferreira\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
    C:\Users\Eduardo Ferreira\AppData\Local\temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Users\Eduardo Ferreira\AppData\Local\temp\Temporary Internet Files\Content.IE5 emptied successfully
    C:\windows\serviceprofiles\NetworkService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
    C:\Users\Eduardo Ferreira\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
    C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot

    ==== Empty FireFox Cache ======================

    C:\users\Eduardo Ferreira\AppData\Local\Mozilla\Firefox\Profiles\oxad2sqp.default\Cache will be emptied at reboot

    ==== Empty Chrome Cache ======================

    C:\users\Eduardo Ferreira\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

    ==== Empty All Flash Cache ======================

    Flash Cache Emptied Successfully

    ==== Empty All Java Cache ======================

    Java Cache cleared successfully

    ==== After Reboot ======================

    ==== Empty Temp Folders ======================

    C:\windows\Temp successfully emptied
    C:\Users\EDUARD~1\AppData\Local\Temp successfully emptied

    ==== Empty Recycle Bin ======================

    C:\$RECYCLE.BIN successfully emptied

    ==== Deleting Files / Folders ======================

    "C:\Users\Eduardo Ferreira\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted
    "C:\windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not deleted

    ==== EOF on 03/08/2013 at 15:40:30,09 ======================




    Rapport de ZHPFix 1.3.05 par Nicolas Coolman, Update du 09/10/2012
    Fichier d'export Registre : 
    Run by Eduardo Ferreira at 03/08/2013 15:47:34
    Windows 7 Starter Edition, 32-bit  (Build 7600)
    Web site : [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]



    ========== Registry Key ==========
    DELETED Key: CLSID BHO: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
    DELETED Key*: CLSID BHO: {C41A1C0E-EA6C-11D4-B1B8-444553540000}
    DELETED Key: CLSID BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9}

    ========== Registry Value ==========
    DELETED Toolbar: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
    NOT FOUND TCP Query User{79F01C51-D51D-4374-88A7-9F43D49B43BA}C:/users/eduardo ferreira/desktop/call of dutty/codmp.exe
    NOT FOUND UDP Query User{289377A7-1878-40A7-8E52-A875EA3201F8}C:/users/eduardo ferreira/desktop/call of dutty/codmp.exe
    No Value in Standard Profile Register Key FirewallRaz : 
    No Value in Domain Profile Register Key FirewallRaz : 
    DELETED FirewallRaz (Public) : TCP Query User{79F01C51-D51D-4374-88A7-9F43D49B43BA}C:\users\eduardo ferreira\desktop\call of dutty\codmp.exe
    DELETED FirewallRaz (Public) : UDP Query User{289377A7-1878-40A7-8E52-A875EA3201F8}C:\users\eduardo ferreira\desktop\call of dutty\codmp.exe

    ========== Repertory ==========
    DELETED Flash Cookies:

    ========== File ==========
    NOT FOUND Folder/File: c:\users\eduardo ferreira\appdata\roaming\unins000.exe
    NOT FOUND Folder/File: c:\users\eduardo ferreira\desktop\e1553winmaclnxb300d01sp01c150%28claro%29\utps11.300.04.36.150_mac15.001.10.o2 - bho: (no name) - {761497bb-d6f0-462c-b6eb-d4da
    DELETED Window Temporary:
    DELETED Flash Cookies:

    ========== Task ==========
    NOT FOUND Task: DealPlyUpdate
    DELETED Task: {1801BB0D-05C0-46F9-983D-F8482A849C95}
    DELETED Task: {77FE633B-D77C-479F-8346-F933DC76CDAC}
    DELETED Task: {86E4F174-CC18-4D46-8234-A296AC942FBB}
    DELETED Task: {E96F057A-8429-4574-BC62-1470B7569967}
    NOT FOUND Task: Scheduled Update for Ask Toolbar

    ========== Restoration ==========
    Restore System Point not created

    ========== Other ==========
    NOT SUPPORTED 03.150_LNX16.001.09.00.150.exe (.not file.)


    ========== Summary ==========
    3 : Registry Key
    7 : Registry Value
    1 : Repertory
    4 : File
    6 : Task
    1 : Restoration
    1 : Other


    End of clean in 01mn 12s

    ========== Report File ==========
    C:\ZHP\ZHPFix[R1].txt - 03/08/2013 15:47:35 [2309]
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 44
    Localização : Natal/RN

    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por Edvan Sáb Ago 03, 2013 2:59 pm

    Novo log [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 71
    Localização : Rio de Janeiro

    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por joram Sáb Ago 03, 2013 4:01 pm

    Boa Tarde! Edvan

    |- Baixe: |[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]| ( ... de Xplode )

    [Tens de ter uma conta e sessão iniciada para poderes visualizar esta imagem]

    |- Estando na página,clique na seta verde para o download.
    |- Salve-a em um local conveniente! ( desktop! )
    |- Feche aplicativos que estejam abertos.

    [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

    |- Execute-a!
    |- Com as 3 checkbox marcadas!
    |- Clique "Run".
    |- Os travamentos permanecem?

     A+
    Edvan
    Edvan
    Membro
    Membro


    Mensagens : 428
    Data de inscrição : 14/02/2013
    Idade : 44
    Localização : Natal/RN

    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por Edvan Dom Ago 04, 2013 4:41 pm

    Está tudo bem agora amigo, valeu por mais essa!!

    Ha!! o fórum está mais bonito.

    # DelFix v10.4 - Logfile created 04/08/2013 at 17:36:40
    # Updated 19/07/2013 by Xplode
    # Username : Eduardo Ferreira - EDUARDOFERREIRA
    # Operating System : Windows 7 Starter  (32 bits)

    ~ Removing disinfection tools ...

    Deleted : C:\ZHP
    Deleted : C:\Program Files\ZHPDiag
    Deleted : C:\AdwCleaner[S1].txt
    Deleted : C:\AdwCleaner[S2].txt
    Deleted : C:\PhysicalDisk0_MBR.bin
    Deleted : C:\zoek-results.log
    Deleted : HKLM\SOFTWARE\AdwCleaner

    ~ Cleaning system restore ...


    New restore point created !

    ~ Resetting system settings ... OK

    ########## - EOF - ##########
    joram
    joram
    Administrador Fundador
    Administrador Fundador


    Mensagens : 626
    Data de inscrição : 14/08/2012
    Idade : 71
    Localização : Rio de Janeiro

    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por joram Seg Ago 05, 2013 3:09 pm

    CASO RESOLVIDO!

    Necessitando novo auxílio para este computador,basta abrir "Novo Tópico" e relatar o problema.

    Conteúdo patrocinado


    pc lento e travando. (dudu) Empty Re: pc lento e travando. (dudu)

    Mensagem por Conteúdo patrocinado


      Data/hora atual: Qui Nov 21, 2024 9:20 am