por Edvan Sex Ago 09, 2013 1:23 pm
Pronto.
Zoek.exe Version 4.0.0.4 Updated 07-August-2013
Tool run by f002489 on 09/08/2013 at 14:13:22,69.
Microsoft Windows XP Professional 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\f002489\Desktop\zoek.exe [Script inserted]
==== System Restore Info ======================
09/08/2013 14:13:53 Zoek.exe System Restore Point Created Succesfully.
==== Creating Sample_082013_1416.zip ======================
Copied file C:\Documents and Settings\f002489\Dados de aplicativos\unins000.exe to sample\unins000.exe
sample\unins000.exe renamed to AD6E810B9CE3D8C0C1FF0203C68C6FA6
C:\Documents and Settings\All Users\Desktop\sample_082013_1416.zip created successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-2586132527-314635491-3328972525-21156\Software\Microsoft\Internet Explorer\SearchScopes\{35e9438f-19d4-4516-b2ac-59ba9241de4d} deleted successfully
HKEY_USERS\S-1-5-21-2586132527-314635491-3328972525-21156\Software\Microsoft\Internet Explorer\SearchScopes\{DC93EF19-E814-4642-AFD4-547D1FCAC556} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
ProfilePath: C:\Documents and Settings\f001869\Dados de aplicativos\Mozilla\Firefox\Profiles\5u7wz305.default
user.js not found
---- Lines Lyric removed from prefs.js ----
---- Lines Lyric modified from prefs.js ----
---- FireFox user.js and prefs.js backups ----
prefs_082013_1416_.backup
ProfilePath: C:\Documents and Settings\f002167\Dados de aplicativos\Mozilla\Firefox\Profiles\ukuvhks2.default
user.js not found
---- Lines Lyric removed from prefs.js ----
---- Lines Lyric modified from prefs.js ----
---- FireFox user.js and prefs.js backups ----
prefs_082013_1416_.backup
ProfilePath: C:\Documents and Settings\f002489\Dados de aplicativos\Mozilla\Firefox\Profiles\kc90vaej.default
user.js not found
---- Lines Lyric removed from prefs.js ----
---- Lines Lyric modified from prefs.js ----
user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"wrc@avast.com\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\Alwil Software\\\\Avast5\\\\WebRep\\\\FF\",\"mtime\":1353936527765,\"rdfTime\":1351637327000}}},{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\Mozilla Firefox\\\\browser\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"mtime\":1372856068675,\"rdfTime\":1372856068409}}},{\"name\":\"winreg-app-user\",\"addons\":{\"findlyrics@findlyrics.co\":{\"descriptor\":\"C:\\\\Arquivos de programas\\\\FindLyrics\\\\FF\",\"mtime\":1370954836413,\"rdfTime\":1366623770000},\"{87F8774F-B485-47E2-A755-A40A8A5E886C}\":{\"descriptor\":\"C:\\\\Documents and Settings\\\\f002489\\\\Configurações locais\\\\Dados de aplicativos\\\\GAS Tecnologia\\\\GBBD\\\\bb\\\\sf.xpi\",\"mtime\":1375099765375}}}]");
---- FireFox user.js and prefs.js backups ----
prefs_082013_1416_.backup
ProfilePath: C:\Documents and Settings\Fun0131\Dados de aplicativos\Mozilla\Firefox\Profiles\z4e8s4wm.default
user.js not found
---- Lines Lyric removed from prefs.js ----
---- Lines Lyric modified from prefs.js ----
---- FireFox user.js and prefs.js backups ----
prefs_082013_1416_.backup
==== Deleting Files \ Folders ======================
"C:\Documents and Settings\f002489\Dados de aplicativos\unins000.exe" deleted
"C:\Arquivos de programas\FindLyrics" deleted
==== Files Recently Created / Modified ======================
====== C:\WINDOWS ====
====== C:\DOCUME~1\f002489\CONFIG~1\Temp ====
====== C:\WINDOWS\system32 =====
====== C:\WINDOWS\system32\drivers =====
====== C:\WINDOWS\Tasks ======
====== C:\WINDOWS\Temp ======
======= C:\Arquivos de programas =====
2013-08-09 14:49:40 -------- d-----w- C:\Arquivos de programas\ZHPDiag
======= C: =====
2013-08-09 14:51:21 E937933A381CB40DCD90A546836EEF29 512 ----a-w- C:\PhysicalDisk0_MBR.bin
====== C:\Documents and Settings\f002489\Dados de aplicativos ======
2013-08-08 13:28:34 -------- d-----w- C:\Documents and Settings\f002489\Dados de aplicativos\Thunderbird
2013-07-29 11:50:57 -------- d-----w- C:\Documents and Settings\All Users\Dados de aplicativos\boost_interprocess
2013-07-29 11:41:42 35D68F26ED814330A50E63E60B5DF1E0 14069 ----a-w- C:\Documents and Settings\f002489\Dados de aplicativos\unins000.dat
====== C:\Documents and Settings\f002489 ======
2013-08-08 14:21:45 -------- d-----w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE
====== C: exe-files ==
2013-08-09 14:49:43 F3A37421DBD1AAA36558C97572C91C5A 147456 ----a-w- C:\Arquivos de programas\ZHPDiag\catchme.exe
2013-08-09 14:49:43 CB2D120A4B72422A8141192831B1F500 80384 ----a-w- C:\Arquivos de programas\ZHPDiag\mbrcheck.exe
2013-08-09 14:49:43 9DAA7218961710008D7385B01BD3F386 89088 ----a-w- C:\Arquivos de programas\ZHPDiag\mbr.exe
2013-08-09 14:49:43 6B8AF3A2A3D9059008B55C444461CA00 61952 ----a-w- C:\Arquivos de programas\ZHPDiag\Lads.exe
2013-08-09 14:49:43 5DAF7081A4BB112FA3F1915819330A3E 61440 ----a-w- C:\Arquivos de programas\ZHPDiag\pv.exe
2013-08-09 14:49:43 5BBF2A0351E336646022D09009560CEF 143360 ----a-w- C:\Arquivos de programas\ZHPDiag\FileInfos.exe
2013-08-09 14:49:43 53CDBB093B0AEE9FD6CF1CBD25A95077 290304 ----a-w- C:\Arquivos de programas\ZHPDiag\subinacl.exe
2013-08-09 14:49:43 451AE03D3C92777F09840CA56F08AB62 454056 ----a-w- C:\Arquivos de programas\ZHPDiag\setacl32.exe
2013-08-09 14:49:43 3E350EB5DF15C06DEC400A39DD1C6F29 559528 ----a-w- C:\Arquivos de programas\ZHPDiag\setacl64.exe
2013-08-09 14:49:43 2312A38B8B003330DB919FA818C48449 231048 ----a-w- C:\Arquivos de programas\ZHPDiag\sigcheck.exe
2013-08-09 14:49:42 A3F7B76494E5F3D32B05824241E82AD0 2726912 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPFix\ZHPFix.exe
2013-08-09 14:49:42 864F3E37BCF2F9BB998414673F1C215A 7711232 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPDiag.exe
2013-08-09 14:49:41 1321DC81E317EE48C4D004775FB29AC9 1916928 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPFix\ZHPhep.exe
2013-08-09 14:49:40 8AE13B97BFCAD6C7D3B8C8A1C298EFB4 694736 ----a-w- C:\Arquivos de programas\ZHPDiag\unins000.exe
2013-08-09 14:49:40 1321DC81E317EE48C4D004775FB29AC9 1916928 ----a-w- C:\Arquivos de programas\ZHPDiag\ZHPhep.exe
2013-08-09 14:49:27 6276219441AFA20AE900104DF712DD29 5003740 ----a-w- C:\Documents and Settings\f002489\Desktop\Ferramenta contra virus\ZHPDiag2.exe
2013-08-08 14:27:52 98664796C9FA1B78D5BB93ACD59911F6 144148 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\ThunderbirdPortable.exe
2013-08-08 14:22:47 B74FFB3BC4378FD3A539F6C8293B1D53 17072 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\App\thunderbird\WSEnable.exe
2013-08-08 14:22:47 691BE48810B487EACB314C1D5554526D 244400 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\App\thunderbird\updater.exe
2013-08-08 14:22:47 1EFE4DE665FFE2BFC592383FF1FC3232 627232 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\App\thunderbird\uninstall\helper.exe
2013-08-08 14:22:45 F2C53C2E1897A52F7F194B3D0CDD48D4 12744368 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\App\thunderbird\thunderbird.exe
2013-08-08 14:22:42 73C19420EC436988A38773A4E4358EE0 107184 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\App\thunderbird\crashreporter.exe
2013-08-07 11:33:28 2EB9611F1FB07E57080F5D06240AC3A3 271768 ----a-w- C:\Documents and Settings\f002489\Configurações locais\Temp\MozUpdater\updater.exe
2013-08-06 18:02:45 ED7719908E5AC110780A9745368D4E0F 21912 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\WSEnable.exe
2013-08-06 18:02:44 E7BF303432E072C387511E8EF90432AB 272792 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\updater.exe
2013-08-06 18:02:44 75CF51C40F6038A31402059FA047B45A 926352 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\uninstall\helper.exe
2013-08-06 18:02:44 34DC1565A166210C42F2369D87218D20 17304 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\plugin-container.exe
2013-08-06 18:02:44 18A2E16BCB1D76DA0A7AE666FB755D35 389016 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\thunderbird.exe
2013-08-06 18:02:43 6C452A07E4F72B31FB93DA153D083179 117656 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\maintenanceservice.exe
2013-08-06 18:02:43 5CD1101CD147B3AE4D928C198A178083 193448 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\maintenanceservice_installer.exe
2013-08-06 18:02:42 51D7F2DF3786D3DFC3409032DB914602 116632 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\crashreporter.exe
=== C: other files ==
2013-08-09 17:16:10 EE107A88F73AFDB36E0B46000A3FD447 331987 ----a-w- C:\Documents and Settings\All Users\Desktop\sample_082013_1416.zip
2013-08-08 14:27:55 A832B24D70E87300753CBB8A5208CD16 180396 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\web-mail-1-3-8.xpi
2013-08-08 14:27:55 0100773F304329F4B5EC7F19A7F28F6D 1334795 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\verificador_ortografico.xpi
2013-08-08 14:27:52 E496EB3378D40D0100CFAF4C4132AF55 159422 ----a-w- C:\Documents and Settings\f002489\Thunderbird_E-MAIL_NÃO_APAGUE\hotmail-1-2-26.xpi
2013-08-06 18:02:42 53A3A9641AD3C0EE0D87152FD59FCA13 548209 ----a-w- C:\Documents and Settings\f002489\Thunderbird VERONICA\App\thunderbird\distribution\extensions\tbtestpilot@labs.mozilla.com.xpi
==== Startup Registry Enabled ======================
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
[HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
[HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
[HKEY_USERS\S-1-5-21-2586132527-314635491-3328972525-21156\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMBgMonitor.exe"
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
[HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HDAudDeck"="C:\Arquivos de programas\VIA\VIAudioi\HDADeck\HDeck.exe 1"
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe"
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe"
"Persistence"="C:\WINDOWS\system32\igfxpers.exe"
"Adobe Reader Speed Launcher"="C:\Arquivos de programas\Adobe\Reader 8.0\Reader\Reader_sl.exe"
"NeroFilterCheck"="C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NeroCheck.exe"
"TrueImageMonitor.exe"="C:\Arquivos de programas\Acronis\TrueImageHome\TrueImageMonitor.exe"
"Acronis Servi‡o Scheduler2"="C:\Arquivos de programas\Arquivos comuns\Acronis\Schedule2\schedhlp.exe"
"SunJavaUpdateSched"="C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe"
"Adobe ARM"="C:\Arquivos de programas\Arquivos comuns\Adobe\ARM\1.0\AdobeARM.exe"
"avast"="C:\Arquivos de programas\Alwil Software\Avast5\avastUI.exe /nogui"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMBgMonitor.exe"
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe"
==== Startup Folders ======================
2011-12-27 13:05:12 1125 ----a-w- C:\Documents and Settings\All Users\Menu Iniciar\Programas\Inicializar\Atalho para ANE.lnk
==== Task Scheduler Jobs ======================
C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [12/06/2013 11:48]
C:\WINDOWS\tasks\avast\Undetermined Task.exe []
C:\WINDOWS\tasks\ConfigExec.job --ah----- C:\WINDOWS\system32\rundll32[C:\Arquivos de programas\Microsoft Fix it Center\MatsApi.dll []
C:\WINDOWS\tasks\DataUpload.job --ah----- C:\WINDOWS\system32\rundll32OC:\Arquivos de programas\MiC:rosoft Fix it C:enter\MatsApi.dll []
C:\WINDOWS\tasks\User_Feed_Synchronization-{4608B342-D588-4AB0-A765-78B6FD96D993}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
C:\WINDOWS\tasks\User_Feed_Synchronization-{4CA09FA7-3099-44F6-B6C0-DB542B001FE1}.job --ah----- C:3C:\WINDOWS\system32\msfeedssync.exe []
C:\WINDOWS\tasks\User_Feed_Synchronization-{4CB2B5D0-0F2A-46BD-907D-1DD329F46A3C}.job --ah----- C:\WINDOWS\system32\msfeedssync.exe [08/03/2009 04:31]
==== Firefox Extensions ======================
ProfilePath: C:\Documents and Settings\f001869\Dados de aplicativos\Mozilla\Firefox\Profiles\5u7wz305.default
- Mdulo de Segurana - Banco do Brasil - %ProfilePath%\extensions\{87F8774F-B485-47E2-A755-A40A8A5E886C}
ProfilePath: C:\Documents and Settings\f002167\Dados de aplicativos\Mozilla\Firefox\Profiles\ukuvhks2.default
- Mdulo de Segurana - Banco do Brasil - %ProfilePath%\extensions\{87F8774F-B485-47E2-A755-A40A8A5E886C}
ProfilePath: C:\Documents and Settings\Fun0131\Dados de aplicativos\Mozilla\Firefox\Profiles\z4e8s4wm.default
- Mdulo de Segurana - Banco do Brasil - %ProfilePath%\extensions\{87F8774F-B485-47E2-A755-A40A8A5E886C}
==== Firefox Plugins ======================
Profilepath: C:\Documents and Settings\f002489\Dados de aplicativos\Mozilla\Firefox\Profiles\kc90vaej.default
3D76B5C0E02ECC19C1F5756E8FD97F72 - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll - Shockwave Flash
3A523765D795DB006C010B915C3A840A - C:\Arquivos de programas\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
42A9B216A7A288512CE2F9A6BCCE96BC - C:\Arquivos de programas\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
D0DA6B2FB50A0667CF4BACC2AEFEA009 - C:\Arquivos de programas\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U5
CF4ABE599858E10EEB911E16FBCFD87D - C:\Arquivos de programas\Windows Media Player\npdrmv2.dll - Microsoft® DRM
76E34EA1089E92709C5725407B565DA1 - C:\Arquivos de programas\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library
02A4A41FAC9BF96155B3E8068D1DF4B6 - C:\Arquivos de programas\Windows Media Player\npwmsdrm.dll - Microsoft® DRM
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
icmlaeflemplmjndnaapfdbbnpncnbda - C:\Arquivos de programas\Alwil Software\Avast5\WebRep\Chrome\aswWebRepChrome.crx[30/10/2012 19:48]
jmhhdaimhfblnamlcdijbaakkifakade - C:\Arquivos de programas\FindLyrics\Chrome.crx[]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.funpec.br/"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.funpec.br/"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions\jmhhdaimhfblnamlcdijbaakkifakade deleted successfully
==== Empty IE Cache ======================
C:\Documents and Settings\Administrador\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Default User\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\f001869\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\f002167\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\f002489\Configurações locais\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\f002489\Configurações locais\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\f002489\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\f003140\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Fun0131\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Configurações locais\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
C:\WINDOWS\system32\config\systemprofile\Configurações locais\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\f002489\CONFIG~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== EOF on 09/08/2013 at 14:23:28,71 ======================
Rapport de ZHPFix 2013.6.12.3 par Nicolas Coolman, Update du 12/06/2013
Fichier d'export Registre :
Run by f002489 at 09/08/2013 14:25:06
High Elevated Privileges : OK
Windows XP Professional Service Pack 3 (Build 2600)
Recycle Files Deleted
========== Software ==========
NOT FOUND Uninstall Process: c:\arquivos de programas\findlyrics\uninstall.exe
========== Registry Key ==========
DELETED [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\findlyrics@findlyrics.co]
DELETED CLSID MPSK: {3238c932-226d-11e1-bc2a-14dae96ff904}
NOT FOUND SearchScopes :{35e9438f-19d4-4516-b2ac-59ba9241de4d}
NOT FOUND SearchScopes :{DC93EF19-E814-4642-AFD4-547D1FCAC556}
NOT FOUND Key: HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\findlyrics@findlyrics.co
DELETED Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}
DELETED Key: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}
DELETED Key: HKLM\Software\Classes\CLSID\{44C9CC91-6A4A-4579-B4B5-899ECDC18DC6}
DELETED Key: HKCU\Software\findlyrics
ctffixCTFMon already disabled
========== Registry Value ==========
ProxyFix : Proxy killed successfully
DELETED ProxyServer Value
DELETED ProxyEnable Value
DELETED EnableHttp1_1 Value
DELETED ProxyHttp1.1 Value
DELETED ProxyOverride Value
DELETED FirewallRaz (SP) : %windir%\system32\sessmgr.exe
DELETED FirewallRaz (SP) : %windir%\Network Diagnostic\xpnetdiag.exe
DELETED FirewallRaz (DP) : %windir%\system32\sessmgr.exe
DELETED FirewallRaz (DP) : %windir%\Network Diagnostic\xpnetdiag.exe
No Value in Firewall Exception Register Key (FirewallRaz)
========== Repertory ==========
No Empty CLSID Directories
DELETED Flash Cookies
========== File ==========
DELETED File: c:\windows\tasks\configexec.job
DELETED File: c:\windows\tasks\dataupload.job
NOT FOUND Folder/File: c:\arquivos de programas\findlyrics
DELETED Window Temporary
DELETED Flash Cookies
========== Summary ==========
10 : Registry Key
11 : Registry Value
2 : Repertory
5 : File
1 : Software
End of clean in 00mn 01s
========== Report File ==========
C:\ZHP\ZHPFix[R1].txt - 09/08/2013 14:25:06 [2191]
# AdwCleaner v2.306 - Relatório criado em 09/08/2013 às 14:29:12
# Atualizado em 19/07/2013 por Xplode
# Sistema Operacional : Microsoft Windows XP Service Pack 3 (32 bits)
# Usuário : f002489 - FUN0133
# Modo de Boot : Normal
# Executado de : C:\Documents and Settings\f002489\Desktop\adwcleaner.exe
# Opção [Remover]
***** [Serviços] *****
***** [Arquivos/Pastas] *****
Pasta Removido : C:\Documents and Settings\All Users\Dados de aplicativos\Ask
Pasta Removido : C:\Documents and Settings\All Users\Dados de aplicativos\boost_interprocess
***** [Registro] *****
Chave Removida : HKCU\Software\InstallCore
Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0214754E-4E7D-4589-829D-E2523E6A3085}
Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{65F159FB-5F5E-46F4-B45D-CCFA236D2073}
Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FE6F06FB-0FC0-4499-828F-EE48088F504F}
Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0214754E-4E7D-4589-829D-E2523E6A3085}
Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{65F159FB-5F5E-46F4-B45D-CCFA236D2073}
Chave Removida : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FE6F06FB-0FC0-4499-828F-EE48088F504F}
Chave Removida : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\findlyrics@findlyrics.co
***** [Navegadores] *****
-\\ Internet Explorer v8.0.6001.18702
[OK] Registro está limpo.
-\\ Mozilla Firefox v22.0 (pt-BR)
Arquivo : C:\Documents and Settings\Fun0131\Dados de aplicativos\Mozilla\Firefox\Profiles\z4e8s4wm.default\prefs.js
[OK] Arquivo está limpo.
Arquivo : C:\Documents and Settings\f002167\Dados de aplicativos\Mozilla\Firefox\Profiles\ukuvhks2.default\prefs.js
[OK] Arquivo está limpo.
Arquivo : C:\Documents and Settings\f001869\Dados de aplicativos\Mozilla\Firefox\Profiles\5u7wz305.default\prefs.js
[OK] Arquivo está limpo.
Arquivo : C:\Documents and Settings\f002489\Dados de aplicativos\Mozilla\Firefox\Profiles\kc90vaej.default\prefs.js
[OK] Arquivo está limpo.
-\\ Google Chrome v [Impossível ler a versão]
Arquivo : C:\Documents and Settings\f002489\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Preferences
[OK] Arquivo está limpo.
*************************
AdwCleaner[S1].txt - [2408 octets] - [09/08/2013 14:29:12]
########## EOF - C:\AdwCleaner[S1].txt - [2468 octets] ##########
Sáb Mar 23, 2024 10:28 am por joram
» KpRm ( ... by Kernel-panik )
Ter Ago 11, 2020 9:47 pm por joram
» ESET Rogue Applications Remover ( ... by Eset.com )
Sáb Ago 01, 2020 7:49 am por joram
» PW Clean 2.7 ( ... by Doutor PW )
Ter maio 15, 2018 9:27 am por joram
» CKScanner ( ... by askey127 )
Sáb maio 05, 2018 1:12 pm por joram
» AdwCleaner ( ... by XPlode )
Seg Abr 16, 2018 8:47 am por joram
» ZHPDiag ( ... de Nicolas Coolman )
Sáb Abr 14, 2018 8:56 am por joram
» Argente - Registry Cleaner ( ... by Argente Software )
Dom Nov 19, 2017 4:36 pm por joram
» ListChkdskResult ( ... by SleepyDude )
Dom Set 24, 2017 1:39 pm por joram