Ir ao conteúdo
  • Cadastre-se

Galles

Membros Juniores
  • Total de itens

    7
  • Registro em

  • Última visita

  • Qualificações

    N/D
  1. ZHPCleaner (S).txt ZHPCleaner (R).txt AdwCleaner[C02].txt AdwCleaner[S00].txt AdwCleaner[S01].txt AdwCleaner[S02].txt AdwCleaner[S03].txt AdwCleaner[C00].txt AdwCleaner[C01].txt
  2. Não sei de onde veio esse software ja tentei desinstalar umas 3 vezes, mas ele sempre volta, gostaria de saber como remove-lo por completo. obrigado. zoek-results.log
  3. Computador perfeito sem mais problemas, gostaria de parabenizar e agradecer pela paciência e atenção aos nossos problemas!
  4. RogueKiller Anti-Malware V13.1.9.0 (x64) [Mar 27 2019] (Free) by Adlice Software mail : https://adlice.com/contact/ Website : https://adlice.com/download/roguekiller/ Operating System : Windows 10 (10.0.17763) 64 bits Started in : Normal mode User : marce [Administrator] Started from : C:\Users\marce\Desktop\RogueKiller_portable64.exe Signatures : 20190326_132530, Driver : Loaded Mode : Standard Scan, Scan -- Date : 2019/03/28 10:05:29 (Duration : 00:06:31) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ [Test.EICAR (Malicious)] (file) tyav32.dll -- (INCA Internet Co.,Ltd.) C:\Program Files\Common Files\INCA Shared\OnlineEngine\tyav32.dll -> Found ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
  5. roguekiller_report.txt
  6. Malwarebytes www.malwarebytes.com -Detalhes de registro- Data da análise: 26/03/2019 Hora da análise: 02:19 Arquivo de registro: c0cce562-4f86-11e9-b40b-fcaa14fa49e5.json -Informação do software- Versão: 3.7.1.2839 Versão de componentes: 1.0.563 Versão do pacote de definições: 1.0.9852 Licença: Versão de Avaliação -Informação do sistema- Sistema operacional: Windows 10 (Build 17763.379) CPU: x64 Sistema de arquivos: NTFS Usuário: System -Resumo da análise- Tipo de análise: Análise de Ameaças Análise Iniciada Por: Agendamento Resultado: Concluído Objetos verificados: 277067 Ameaças detectadas: 37 Ameaças em quarentena: 37 Tempo decorrido: 3 min, 14 seg -Opções da análise- Memória: Habilitado Inicialização: Habilitado Sistema de arquivos: Habilitado Arquivos compactados: Habilitado Rootkits: Desabilitado Heurística: Habilitado PUP: Detectar PUM: Detectar -Detalhes da análise- Processo: 1 PUP.Optional.JetMedia, C:\PROGRAM FILES (X86)\JETMEDIA\NATIVEDESKTOPMEDIASERVICE\desktop_media_service.exe, Quarentena, [4020], [506353],1.0.9852 Módulo: 1 PUP.Optional.JetMedia, C:\PROGRAM FILES (X86)\JETMEDIA\NATIVEDESKTOPMEDIASERVICE\desktop_media_service.exe, Quarentena, [4020], [506353],1.0.9852 Chave de registro: 17 PUP.Optional.JetMedia, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NativeDesktopMediaService, Quarentena, [4020], [506353],1.0.9852 PUP.Optional.JetMedia, HKLM\SOFTWARE\WOW6432NODE\JETMEDIA\NativeDesktopMediaService, Quarentena, [4020], [544579],1.0.9852 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E, Quarentena, [2924], [260247],1.0.9852 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E, Quarentena, [2924], [260247],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{E98BC2DB-4017-4F0B-A4DE-E848EAC48562}, Quarentena, [625], [258705],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{E98BC2DB-4017-4F0B-A4DE-E848EAC48562}, Quarentena, [625], [241385],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\One System CarePeriod, Quarentena, [625], [241385],1.0.9852 PUP.Optional.JetMedia, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{FC44DE72-60F9-4BC1-B098-D2F6B5A06187}, Quarentena, [4020], [652995],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\0cb081a0-7a72-4129-9a61-0d7fba4d8182, Quarentena, [625], [593715],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F311CFFD-3903-42FF-8E89-4A9DBD8D44ED}, Quarentena, [625], [593715],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{F311CFFD-3903-42FF-8E89-4A9DBD8D44ED}, Quarentena, [625], [593715],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\e27cf011-2700-42c8-88e5-c390dec16aba, Quarentena, [625], [583087],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{551D9547-F4C1-49FE-8D21-09610F938884}, Quarentena, [625], [583087],1.0.9852 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{551D9547-F4C1-49FE-8D21-09610F938884}, Quarentena, [625], [583087],1.0.9852 PUP.Optional.JetMedia, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\{06BABBC8-61E5-451B-A01E-C6425535EA7F}, Quarentena, [4020], [623960],1.0.9852 PUP.Optional.JetMedia, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{FE08B70F-062B-4BD6-9D3D-E57439F37FB9}, Quarentena, [4020], [623960],1.0.9852 PUP.Optional.JetMedia, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{FE08B70F-062B-4BD6-9D3D-E57439F37FB9}, Quarentena, [4020], [623960],1.0.9852 Valor de registro: 4 PUP.Optional.OneSystemCare, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{E98BC2DB-4017-4F0B-A4DE-E848EAC48562}|PATH, Quarentena, [625], [258705],1.0.9852 PUP.Optional.JetMedia, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NATIVEDESKTOPMEDIASERVICE|IMAGEPATH, Quarentena, [4020], [506357],1.0.9852 Adware.NetAdapter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{5A5D5D9B-70D9-4391-B77E-9E20051D3FF2}, Quarentena, [1010], [509082],1.0.9852 Trojan.DNSChanger.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\INTERFACES\{86e4f769-a81d-4658-b205-7f4f5395f778}|NAMESERVER, Quarentena, [7406], [260226],1.0.9852 Dados de registro: 6 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS|NameServer, Substituído, [2924], [-1],0.0.0 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS|DhcpNameServer, Substituído, [2924], [-1],0.0.0 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{86e4f769-a81d-4658-b205-7f4f5395f778}|NameServer, Substituído, [2924], [-1],0.0.0 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{86e4f769-a81d-4658-b205-7f4f5395f778}|DhcpNameServer, Substituído, [2924], [-1],0.0.0 PUP.Optional.DNSUnlocker.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS\Interfaces\{a8288b75-02a1-4e4b-ac43-d7d14405688c}|NameServer, Substituído, [2924], [-1],0.0.0 Trojan.DNSChanger.ACMB2, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\TCPIP\PARAMETERS|NAMESERVER, Substituído, [7406], [293494],1.0.9852 Fluxo de dados: 0 (Nenhum item malicioso detectado) Pasta: 2 PUP.Optional.JetMedia, C:\Program Files (x86)\Jetmedia\NativeDesktopMediaService, Quarentena, [4020], [506353],1.0.9852 PUP.Optional.JetMedia, C:\PROGRAM FILES (X86)\JETMEDIA, Quarentena, [4020], [506353],1.0.9852 Arquivo: 6 PUP.Optional.JetMedia, C:\PROGRAM FILES (X86)\JETMEDIA\NATIVEDESKTOPMEDIASERVICE\desktop_media_service.exe, Quarentena, [4020], [506353],1.0.9852 PUP.Optional.OneSystemCare, C:\WINDOWS\SYSTEM32\TASKS\0cb081a0-7a72-4129-9a61-0d7fba4d8182, Quarentena, [625], [593715],1.0.9852 PUP.Optional.OneSystemCare, C:\WINDOWS\SYSTEM32\TASKS\e27cf011-2700-42c8-88e5-c390dec16aba, Quarentena, [625], [583087],1.0.9852 PUP.Optional.JetMedia, C:\WINDOWS\SYSTEM32\TASKS\{06BABBC8-61E5-451B-A01E-C6425535EA7F}, Quarentena, [4020], [623960],1.0.9852 PUP.Optional.Reimage, C:\$RECYCLE.BIN\S-1-5-21-3139884136-1326152140-1486864598-1001\$RLOPOND.EXE, Quarentena, [337], [331559],1.0.9852 Adware.Adposhel, C:\WINDOWS\INSTALLER\AE322E9.MSI, Quarentena, [486], [651559],1.0.9852 Setor físico: 0 (Nenhum item malicioso detectado) Instrumentação do Windows (WMI): 0 (Nenhum item malicioso detectado) (end) # ------------------------------- # Malwarebytes AdwCleaner 7.2.7.0 # ------------------------------- # Build: 01-30-2019 # Database: 2019-03-25.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 03-26-2019 # Duration: 00:00:03 # OS: Windows 10 Pro # Cleaned: 14 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\ProgramData\IOBIT\Driver Booster Deleted C:\Users\marce\AppData\Roaming\IOBIT\Driver Booster Deleted C:\ProgramData\Jetmedia Deleted C:\Users\marce\AppData\Roaming\Jetmedia ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKLM\Software\Wow6432Node\IObit\Driver Booster Deleted HKLM\Software\Wow6432Node\Jetmedia Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\utop.it Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\utop.it Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\tango-deg.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\tango-deg.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\reimageplus.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\reimageplus.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\warthunder.com Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\warthunder.com ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Tracing Keys [+] Reset Winsock ************************* AdwCleaner[S00].txt - [3437 octets] - [26/03/2019 07:11:27] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## ~ ZHPCleaner v2019.3.25.39 by Nicolas Coolman (2019/03/25) ~ Run by marce (Administrator) (26/03/2019 07:50:01) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook : https://www.facebook.com/nicolascoolman1 ~ State version : Version OK ~ Certificate ZHPCleaner: Legal ~ Type : Repair ~ Report : C:\Users\marce\Desktop\ZHPCleaner (R).txt ~ Quarantine : C:\Users\marce\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt ~ UAC : Activate ~ Boot Mode : Normal (Normal boot) Windows 10 Pro, 64-bit (Build 17763) ---\\ Alternate Data Stream (ADS). (0) ~ No malicious or unnecessary items found. ---\\ Services (0) ~ No malicious or unnecessary items found. ---\\ Browser internet (0) ~ No malicious or unnecessary items found. ---\\ Hosts file (1) ~ The hosts file is legitimate (21) ---\\ Scheduled automatic tasks. (0) ~ No malicious or unnecessary items found. ---\\ Explorer ( File, Folder) (27) MOVED file: C:\Users\marce\Desktop\µTorrent.lnk [Bad : C:\Users\marce\AppData\Roaming\uTorrent\uTorrent.exe](.BitTorrent Inc..) =>BitTorrent (P2P) MOVED file: C:\Users\marce\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk [Bad : C:\Users\marce\AppData\Roaming\uTorrent\uTorrent.exe](.BitTorrent Inc..) =>BitTorrent (P2P) MOVED file: C:\Users\marce\Downloads\uTorrent.exe [BitTorrent Inc. - µTorrent] =>BitTorrent (P2P) MOVED file: C:\Users\marce\AppData\Local\Temp\aria-debug-5900.log =>.SUP.Temporary.OneDrive MOVED file: C:\Users\marce\AppData\Local\Temp\CUsersmarceAppDataLocalProgramsOpera58.0.3135.118opera_autoupdate.download.lock =>.SUP.Temporary.Opera MOVED file: C:\Users\marce\AppData\Local\Temp\CUsersmarceAppDataLocalProgramsOpera58.0.3135.118opera_autoupdate.metrics.lock =>.SUP.Temporary.Opera MOVED file: C:\Users\marce\AppData\Local\Temp\LocalStorage.txt =>.SUP.Temporary.Empty MOVED file: C:\Users\marce\AppData\Local\Temp\wct1E74.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wct5909.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wct8067.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wct813C.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wct9BD4.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wctA4AE.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wctB148.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wctB926.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\wctBAA9.tmp =>.SUP.Temporary.Office MOVED file: C:\Users\marce\AppData\Local\Temp\{234E63FD-7374-492E-ABE5-1D7061098AA7} - OProcSessId.dat =>.SUP.Temporary.Empty MOVED file: C:\Users\marce\AppData\Local\Temp\{8015BEA8-D1B4-41BF-9F6C-68638B494379} - OProcSessId.dat =>.SUP.Temporary.Empty MOVED file: C:\Users\marce\AppData\Local\Temp\{9C27B653-98FF-4ECE-9395-F26B922CDD28} - OProcSessId.dat =>.SUP.Temporary.Empty MOVED file: C:\Users\marce\AppData\Local\Temp\{CD7E2441-5446-45E5-B55B-52CFC433B8C7} - OProcSessId.dat =>.SUP.Temporary.Empty MOVED file: C:\Users\marce\AppData\Local\Temp\{CFC80514-0DE0-4D7E-B70A-41511F42EBA7} - OProcSessId.dat =>.SUP.Temporary.Empty MOVED folder: C:\Program Files (x86)\Mirillis =>.SUP.Empty MOVED folder: C:\Users\marce\AppData\Local\Temp\scoped_dir12544_25435 =>.SUP.Temporary.Steam MOVED folder: C:\Users\marce\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome MOVED folder: C:\Users\marce\AppData\Local\Google\Chrome\User Data\Default\File System\033 =>.SUP.Temporary.Chrome MOVED folder: C:\Users\marce\AppData\Local\Google\Chrome\User Data\Default\File System\034 =>.SUP.Temporary.Chrome MOVED folder: C:\Users\marce\AppData\Local\Google\Chrome\User Data\Default\File System\Plugins =>.SUP.Temporary.Chrome ---\\ Registry ( Key, Value, Data) (24) DELETED data: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{86e4f769-a81d-4658-b205-7f4f5395f778}\\DhcpNameServer [Bad : 181.213.132.2 181.213.132.3] =>Hijacker.Browser DELETED data: HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\\DhcpNameServer [Bad : 181.213.132.2 181.213.132.3] =>Hijacker.Browser DELETED key*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\uTorrent [BitTorrent Inc.] =>BitTorrent (P2P) DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\adaware antivirus\updater\12.6.997.11652\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\adaware antivirus\updater\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\adaware antivirus\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\adaware antivirus\updater\12.6.997.11652\resources\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\adaware antivirus\updater\12.6.997.11652\translations\qtwebengine_locales\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\Common Files\adaware\adaware antivirus\updater\12.6.997.11652\translations\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\Antimalware Engine\3.0.160.0\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\Antimalware Engine\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\AdAwareProxyEngine\1.0.0.8\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\AdAwareProxyEngine\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\Online Threats Engine\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\Antispam Engine\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\AVC Engine\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.6.997.11652\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files\adaware\adaware antivirus\adaware antivirus\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\Program Files (x86)\Brother\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Jetmedia\NativeDesktopMediaService\ [No Folder] =>.SUP.Obsolete.NoFolder DELETED value: HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\\C:\ProgramData\Jetmedia\ [No Folder] =>.SUP.Obsolete.NoFolder ---\\ Summary of the elements found (10) https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.OneDrive https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Opera https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Empty https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Office https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Empty https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Steam https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Obsolete.NoFolder ---\\ Other deletions. (5) ~ Registry Keys Tracing deleted (5) ~ Remove the old reports ZHPCleaner. (0) ---\\ Result of repair ~ Repair carried out successfully ~ Browser not found (Mozilla Firefox) ~ Browser not found (Opera Software) ---\\ Statistics ~ Items scanned : 481 ~ Items found : 0 ~ Items cancelled : 0 ~ Items options : 12/12 ~ Space saving (bytes) : 35901 ~ End of clean in 00h00mn22s ---\\ Reports (2) ZHPCleaner--26032019-07_46_11.txt ZHPCleaner-[R]-26032019-07_50_23.txt
  7. Ao clicar no video do youtube para pausar abre outra janela me direcionando para um site quem conheço, e percebi que existe uma nova barra de busca acima da barra de busca original do youtube, e meu chrome muda meu mecanismo de busca do g oogle para um tal de mysearch. ZA-Scan.txt

Sobre o Clube do Hardware

No ar desde 1996, o Clube do Hardware é uma das maiores, mais antigas e mais respeitadas publicações sobre tecnologia do Brasil. Leia mais

Direitos autorais

Não permitimos a cópia ou reprodução do conteúdo do nosso site, fórum, newsletters e redes sociais, mesmo citando-se a fonte. Leia mais

×
×
  • Criar novo...

GRÁTIS: minicurso “Como ganhar dinheiro montando computadores”

Gabriel TorresGabriel Torres, fundador e editor executivo do Clube do Hardware, acaba de lançar um minicurso totalmente gratuito: "Como ganhar dinheiro montando computadores".

Você aprenderá sobre o quanto pode ganhar, como cobrar, como lidar com a concorrência, como se tornar um profissional altamente qualificado e muito mais!

Inscreva-se agora!