Forums

  1. Linha Defensiva

    1. Novidades e Avisos

      Novidades do site e avisos da administração do fórum.

      481
      posts
    2. Informações do Fórum

      Regras, informações e FAQs sobre o fórum.

      15
      posts
    3. Boletim Linha Defensiva

      Arquivos do Boletim.

      34
      posts
    4. Comentários, críticas e sugestões

      Se você tem dúvidas, comentários, críticas, elogios ou sugestões sobre o site ou fórum, você pode postar aqui.

      4,048
      posts
  2. Serviços

    1. Remoção de Malware

      Ajuda para a remoção de vírus, worms, trojans e spyware.
      Leia os tópicos destacados dentro do fórum antes de postar!

      293,856
      posts
    2. Experiências Online

      Divida suas experiências online em lojas e outros prestadores de serviço na web. Observe atentamente as regras antes de postar.
      [Pré-moderado+]

      82
      posts
    3. BankerFix

      Dúvidas, tópicos e problemas com a ferramenta de remoção de Bankers BankerFix

      2,803
      posts
    4. ARIS-LD

      Use este fórum para fazer denúncias de links ou arquivos maliciosos ao ARIS, o time de Análise e Resposta a Incidentes de Segurança da Linha Defensiva.

      78
      posts
  3. Malware

    1. Informações e FAQs

      Tutoriais e informações sobre novos spywares, trojans e vírus.
      Somente leitura

      24
      posts
    2. Dúvidas sobre Malware

      Outras dúvidas sobre malware (vírus, trojans, worms, etc)
      Não coloque tópicos para remoção de malware aqui

      19,205
      posts
  4. Segurança

    1. Alertas de Segurança

      Novo vírus à solta? É aqui que você pode avisar sobre ele e ficar sabendo de outros acontecimentos da segurança na Internet.
      [Pré-moderado]

      4,098
      posts
    2. Segurança Geral

      Discuta sobre utilitários de segurança, métodos de proteção e outras dúvidas sobre segurança que não sejam sobre os assuntos dos fóruns acima.

      7,736
      posts
    3. Programas e soluções de backup

      Dicas e dúvidas sobre programas de backup, gerenciamento de mídias e catálogos, soluções de software e hardware para criação de cópias de segurança.

      689
      posts
    4. Redes

      Segurança em redes, redes sem fio, utilização de proxies seguros, proxies e configurações que podem ajudar uma rede, seus clientes e servidores a estarem livre de perigos.

      11,550
      posts
    5. Antivírus

      Problemas e dúvidas sobre antivírus

      14,331
      posts
    6. Anti-Spywares

      Dúvidas e tutorials para Anti-Spywares (Ad-Aware, Spybot, etc).

      5,213
      posts
    7. Firewalls e Filtros

      Dúvidas e tutoriais sobre software e hardware firewalls, proxies e filtros de conteúdo.

      4,331
      posts
    8. Privacidade

      Discussão sobre privacidade e softwares relacionados a privacidade.

      1,529
      posts
  5. Computação Geral

    1. 29,162
      posts
    2. 35,785
      posts
    3. Navegadores & Websites

      Discussão sobre navegadores e clientes FTP, incluindo problemas com websites e curiosidades na web.

      10,899
      posts
    4. Programas de e-mail e anti-spam

      Dúvidas sobre serviços e clientes de e-mail e lixo eletrônico. Questões sobre protocolos de e-mail (POP, IMAP, SMTP) e técnicas anti-spam podem ser colocadas aqui.

      2,303
      posts
    5. Software Geral & Internet

      Ajuda com outros softwares, como Office, utilitários, ferramentas e softwares de Internet como programas P2P, comunicadores instantâneos e outros. Dúvidas sobre navegadores devem ser colocadas no fórum Navegadores & Websites

      18,828
      posts
    6. Discussão e Dúvidas Gerais

      Fórum para dúvidas sobre computação que não estão incluídas nos outros fóruns.

      12,403
      posts
    7. Programação

      Discussão geral sobre programação (C/C++/C#, Delphi, Java, Ruby, Python, etc)

      1,172
      posts
  6. Geral & Entretenimento

    1. Jogos

      Discussão e dúvidas sobre jogos. Emuladores, consoles, lançamentos e dúvidas.

      2,392
      posts
    2. Deskmod

      Tire dúvidas sobre a personalização do seu desktop! Conheça ferramentas e troque idéias para ter uma área de trabalho mais eficiente e bonita.

      696
      posts
    3. Livros, HQs e Mangás

      Fórum para troca de opiniões, resenhas e discussões sobre livros, histórias em quadrinhos e mangás.

      227
      posts
    4. Filmes, séries, animes e músicas

      Fórum para discutir e comentar shows de TV, filmes, seriados, músicas e desenhos animados.

      912
      posts
    5. Casemod

      Discussão, dicas, tutoriais e dúvidas sobre casemod.

      89
      posts
    6. Celulares, câmeras e tablets

      Troque idéias, opiniões e experiências sobre telefones móveis, câmeras fotográficas e eletrônicos de consumo (tablets, TVs, DVD players, etc)

      1,111
      posts
  7. Outros

    1. Notícias da Linha Defensiva

      Notícias publicadas pela Linha Defensiva.

      91
      posts
    2. Notícias

      Notícias gerais sobre o mundo e sobre tecnologia da informação.
      [Pré-moderado] [sCP]

      2,945
      posts
    3. Enquetes

      Para postar suas enquetes.
      [Pré-moderado] [sCP]

      2,004
      posts
    4. Mesa Redonda

      Discussões sobre qualquer tema, da política à religião. Enquetes sobre assuntos que não se enquadram na área de tecnologia também podem ser postadas aqui.
      [Pré-moderado] [sCP]

      1,929
      posts
  • Recent Status Updates

    • Lukass  »  Elias Pereira

      Bom dia! Conforme pediu no seu primeiro contato, estou lhe avisando que estou a mais de cinco dias sem resposta sua. Obrigado!!
      · 0 replies
    • Rangel de Jesus

      Ainda estou com o mesmo problema. Já ajudaram a mim, mas nem no google encontrei solução. Se alguém ai possuir uma luz agradecerei muito. Entrei em contato com o suporte Google também, mas nada de resposta até agora, então, resolvi apelar mais uma vez. Um abraço.
      · 0 replies
    • Ana Paula Vieira

      Boa tarde,
      Estou desesperada, meu netbook está muitooo lento. Além disso, abre páginas da Internet 12334...
      Desliga sozinho, informando que houve um erro no sistema. E agora não estou conseguindo acessar a Internet porque dá erro de certificado da página, mesmo a hora e a data estando corretas. O antivírus acusa que uma ameaça foi detectada, mas mesmo escaneando não consigo resolver e nem atualizar para o Windows 10. Por favor, me ajudem!!!
      · 1 reply
    • Ciro-Mota

      “A noite chega, e agora começa a minha vigia. Não terminará até a minha morte. Não tomarei esposa, não possuirei terras, não gerarei filhos. Não usarei coroas e não conquistarei glórias. Viverei e morrerei no meu posto. Sou a espada na escuridão. Sou o vigilante nas muralhas. Sou o fogo que arde contra o frio, a luz que traz consigo a alvorada, a trombeta que acorda os que dormem, o escudo que defende os reinos dos homens. Dou a minha vida e a minha honra à Patrulha da Noite, por esta noite e...
      · 0 replies
    • Jayzon

      rencontre internet gratuit
      · 0 replies
    • deuler

      Pessoas de sucesso são pessoas comuns com uma determinação extraordinária
      · 0 replies
    • mpvpaiva  »  Sam Spade

      Sam Spade, não sei se minha mensagem foi para você. Meu tópico foi arquivado por eu não ter respondido no prazo, foi porque estou com muitos problemas no notebook e na rede e não conseguia postar os logs. Por favor, reabra meu tópico que já tenho os logs para postar: http://www.linhadefensiva.org/forum/topic/167178-não-consigo-mais-entrar-no-internet-banking-da-caixa-e-o-site-está-estranho/
      · 0 replies
    • Damguimarães

      "A pressa é inimiga da conexão"
      · 2 replies
  • Recent Topics

  • "Censo" de antivírus da Linha Defensiva   42 members have voted

    1. 1. Seu antivírus é pago ou gratuito?


      • Gratuito
      • Pago
    2. 2. Qual antivírus você usa?


      • AVG
      • Avast
      • Avira
      • Baidu
      • BitDefender
      • ESET
      • Kaspersky
      • MalwareBytes
      • McAfee
      • Panda
      • PSafe/Qihoo 360
      • Sophos
      • Symantec/Norton
      • Trend Micro
      • Windows Defender
      • Outro software não listado

    Please sign in or register to vote in this poll. View topic
  • Últimos posts

    • Ola, continua lento amigo. Quando abro o gestor o que mais está gastando cpu é o firefox....o pc continua fazendo reset sozinho e dando crash com ecran azul, o erro é algo com 000000C5, nao consegui ainda fixar muito bem porque acontece bem rapido.
    • Olá. Meu problema é o seguinte, meu computador está lento. Estou sem conseguir acessar alguns sites também, e aparece a seguinte mensagem ao tentar se conectar com o site:  Obs: ao iniciar o scan do MBR, depois de uns segundos ele pede para fechar o programa. Segue abaixo o print do ocorrido. ZA-Scan.txt FSS.txt
    • Boa tarde, Recentemente tem aparecido uma tela falsa de erro do Windows e meu CMD abre e fecha sozinho, sem nada escrito dentro.   ZA-Scan ZA-Scan V1.0.0.5 Updated 19-September-2016
      Tool run by Diego Gadelha on 01/10/2016 at 15:15:30,68.
      Microsoft Windows 10 Pro 10.0.14393  x64
      Running in: Normal Mode Internet Access Detected
      Launched: C:\Users\Diego Gadelha\Desktop\ZA-Scan.exe [Z-Analyse Scan] ==== Running Processes ====================== C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe
      C:\PROGRA~2\GbPlugin\GbpSv.exe
      C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe
      C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
      C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
      C:\Program Files (x86)\Origin\OriginWebHelperService.exe
      C:\PROGRA~2\GbPlugin\GbpSv.exe
      C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
      C:\Users\Diego Gadelha\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
      C:\Windows\SysWOW64\Codecs\TrayMenu.exe
      C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
      C:\Users\Diego Gadelha\Desktop\ZA-Scan.exe
      C:\WINDOWS\SysWoW64\cmd.exe
      C:\WINDOWS\SysWoW64\cmd.exe
      C:\WINDOWS\SysWoW64\cmd.exe
      C:\Users\DIEGOG~1\AppData\Local\Temp\ZAScan.exe ==== Services(whitelist) ======================
      Powered by E Dev R2 - [AdobeARMservice] - Adobe Acrobat Update Service - c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe
      R2 - [BstHdLogRotatorSvc] - BlueStacks Log Rotator Service - c:\program files (x86)\bluestacks\hd-logrotatorservice.exe
      R2 - [ClickToRunSvc] - Microsoft Office Click-to-Run Service - c:\program files\common files\microsoft shared\clicktorun\officeclicktorun.exe
      R2 - [GbpSv] - Gbp Service - c:\progra~2\gbplugin\gbpsv.exe
      R2 - [GfExperienceService] - NVIDIA GeForce Experience Service - c:\program files\nvidia corporation\geforce experience service\gfexperienceservice.exe
      R2 - [NvNetworkService] - NVIDIA Network Service - c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe
      R2 - [NvStreamSvc] - NVIDIA Streamer Service - c:\program files\nvidia corporation\nvstreamsrv\nvstreamservice.exe
      R2 - [nvsvc] - NVIDIA Display Driver Service - c:\windows\system32\nvvsvc.exe
      R2 - [Origin Web Helper Service] - Origin Web Helper Service - c:\program files (x86)\origin\originwebhelperservice.exe
      R2 - [Stereo Service] - NVIDIA Stereoscopic 3D Driver Service - c:\program files (x86)\nvidia corporation\3d vision\nvscpapisvr.exe
      R2 - [Warsaw Technology] - Warsaw Technology - c:\program files\diebold\warsaw\core.exe
      R2 - [WinDefend] - Serviço Windows Defender - c:\program files\windows defender\msmpeng.exe
      R2 - [WSearch] - Windows Search - c:\windows\system32\searchindexer.exe
      R3 - [NvStreamNetworkSvc] - NVIDIA Streamer Network Service - c:\program files\nvidia corporation\nvstreamsrv\nvstreamnetworkservice.exe
      R3 - [WdNisSvc] - Serviço de Inspeção de Rede do Windows Defender - c:\program files\windows defender\nissrv.exe
      S2 - [gupdate] - Serviço do Google Update (gupdate) - c:\program files (x86)\google\update\googleupdate.exe
      S2 - [SkypeUpdate] - Skype Updater - c:\program files (x86)\skype\updater\updater.exe
      S2 - [sppsvc] - Proteção de Software - c:\windows\system32\sppsvc.exe
      S3 - [AdobeFlashPlayerUpdateSvc] - Adobe Flash Player Update Service - c:\windows\syswow64\macromed\flash\flashplayerupdateservice.exe
      S3 - [ALG] - Serviço Gateway de Camada de Aplicativo - c:\windows\system32\alg.exe
      S3 - [BstHdAndroidSvc] - BlueStacks Android Service  - c:\program files (x86)\bluestacks\hd-service.exe
      S3 - [BstHdPlusAndroidSvc] - BlueStacks Plus Android Service  - c:\program files (x86)\bluestacks\hd-plus-service.exe
      S3 - [COMSysApp] - COM+ System Application - c:\windows\system32\dllhost.exe
      S3 - [diagnosticshub.standardcollector.service] - Serviço Coletor de Padrões de Hub de Diagnóstico da Microsoft (R) - c:\windows\system32\diagsvcs\diagnosticshub.standardcollector.service.exe
      S3 - [Fax] - Fax - c:\windows\system32\fxssvc.exe
      S3 - [FontCache3.0.0.0] - Windows Presentation Foundation Font Cache 3.0.0.0 - c:\windows\microsoft.net\framework64\v3.0\wpf\presentationfontcache.exe
      S3 - [gupdatem] - Serviço do Google Update (gupdatem) - c:\program files (x86)\google\update\googleupdate.exe
      S3 - [MozillaMaintenance] - Mozilla Maintenance Service - c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe
      S3 - [MSDTC] - Coordenador de transações distribuídas - c:\windows\system32\msdtc.exe
      S3 - [msiserver] - Windows Installer - c:\windows\system32\msiexec.exe
      S3 - [NMIndexingService] - NMIndexingService - c:\program files (x86)\common files\ahead\lib\nmindexingservice.exe
      S3 - [Origin Client Service] - Origin Client Service - c:\program files (x86)\origin\originclientservice.exe
      S3 - [ose64] - Office 64 Source Engine - c:\program files\common files\microsoft shared\source engine\ose.exe
      S3 - [PerfHost] - Host de DLL de Contador de Desempenho - c:\windows\syswow64\perfhost.exe
      S3 - [RpcLocator] - Alocador Remote Procedure Call (RPC) - c:\windows\system32\locator.exe
      S3 - [Sense] - Serviço Proteção Avançada contra Ameaças do Windows Defender - c:\program files\windows defender advanced threat protection\mssense.exe
      S3 - [SensorDataService] - Serviço de Dados de Sensor - c:\windows\system32\sensordataservice.exe
      S3 - [SNMPTRAP] - Interceptação SNMP - c:\windows\system32\snmptrap.exe
      S3 - [Steam Client Service] - Steam Client Service - c:\program files (x86)\common files\steam\steamservice.exe
      S3 - [SwitchBoard] - SwitchBoard - c:\program files (x86)\common files\adobe\switchboard\switchboard.exe
      S3 - [TieringEngineService] - Gerenciamento de Camadas de Armazenamento - c:\windows\system32\tieringengineservice.exe
      S3 - [TrustedInstaller] - Instalador de Módulos do Windows - c:\windows\servicing\trustedinstaller.exe
      S3 - [vds] - Disco Virtual - c:\windows\system32\vds.exe
      S3 - [VSS] - Cópia de Sombra de Volume - c:\windows\system32\vssvc.exe
      S3 - [wbengine] - Serviço de Mecanismo de Backup em Nível de Bloco - c:\windows\system32\wbengine.exe
      S3 - [wmiApSrv] - Adaptador de Desempenho WMI - c:\windows\system32\wbem\wmiapsrv.exe
      S3 - [WMPNetworkSvc] - Serviço de Compartilhamento de Rede do Windows Media Player - c:\program files\windows media player\wmpnetwk.exe
      S4 - [AppVClient] - Microsoft App-V Client - c:\windows\system32\appvclient.exe
      S4 - [UevAgentService] - Serviço de User Experience Virtualization - c:\windows\system32\agentservice.exe ==== Drivers(whitelist) ======================
      Powered by E Dev R0 - [FileInfo] - File Information FS MiniFilter - C:\WINDOWS\system32\Drivers\FileInfo.sys
      R0 - [FltMgr] - FltMgr - C:\WINDOWS\system32\Drivers\FltMgr.sys
      R0 - [Mup] - Mup - C:\WINDOWS\system32\Drivers\Mup.sys
      R0 - [WdFilter] - Driver de Minifiltro do Windows Defender - C:\WINDOWS\system32\Drivers\WdFilter.sys
      R0 - [Wof] - Windows Overlay File System Filter Driver - C:\WINDOWS\system32\Drivers\Wof.sys
      R1 - [NetBIOS] - NetBIOS Interface - C:\WINDOWS\system32\Drivers\NetBIOS.sys
      R2 - [srv] - Driver SMB 1.xxx do Servidor - C:\WINDOWS\system32\Drivers\srv.sys
      R3 - [srv2] - Driver SMB 2.xxx do Servidor - C:\WINDOWS\system32\Drivers\srv2.sys
      R0 - [ACPI] - Microsoft ACPI Driver - C:\WINDOWS\system32\Drivers\ACPI.sys
      R0 - [acpiex] - Microsoft ACPIEx Driver - C:\WINDOWS\system32\Drivers\acpiex.sys
      R0 - [atapi] - Canal de IDE - C:\WINDOWS\system32\Drivers\atapi.sys
      R0 - [CLFS] - Common Log (CLFS) - C:\WINDOWS\system32\Drivers\CLFS.sys
      R0 - [CNG] - CNG - C:\WINDOWS\system32\Drivers\CNG.sys
      R0 - [disk] - Driver de disco - C:\WINDOWS\system32\Drivers\disk.sys
      R0 - [EhStorClass] - Enhanced Storage Filter Driver - C:\WINDOWS\system32\Drivers\EhStorClass.sys
      R0 - [fvevol] - Driver de Filtro de Criptografia de Unidade de Disco BitLocker - C:\WINDOWS\system32\Drivers\fvevol.sys
      R0 - [gbpddreg] - Gbpddreg svc - C:\WINDOWS\system32\Drivers\gbpddreg.sys [x]
      R0 - [intelpep] - Driver Intel(R) Power Engine Plug-in - C:\WINDOWS\system32\Drivers\intelpep.sys
      R0 - [iorate] - iorate - C:\WINDOWS\system32\Drivers\iorate.sys
      R0 - [KSecDD] - KSecDD - C:\WINDOWS\system32\Drivers\KSecDD.sys
      R0 - [KSecPkg] - KSecPkg - C:\WINDOWS\system32\Drivers\KSecPkg.sys
      R0 - [mountmgr] - Gerenciador de Pontos de Montagem - C:\WINDOWS\system32\Drivers\mountmgr.sys
      R0 - [msisadrv] - msisadrv - C:\WINDOWS\system32\Drivers\msisadrv.sys
      R0 - [mv61xx] - mv61xx - C:\WINDOWS\system32\Drivers\mv61xx.sys
      R0 - [mv91xx] - mv91xx - C:\WINDOWS\system32\Drivers\mv91xx.sys
      R0 - [NDIS] - Driver do Sistema NDIS - C:\WINDOWS\system32\Drivers\NDIS.sys
      R0 - [partmgr] - Driver de partição - C:\WINDOWS\system32\Drivers\partmgr.sys
      R0 - [pci] - PCI Bus Driver - C:\WINDOWS\system32\Drivers\pci.sys
      R0 - [pciide] - pciide - C:\WINDOWS\system32\Drivers\pciide.sys
      R0 - [pcw] - Performance Counters for Windows Driver - C:\WINDOWS\system32\Drivers\pcw.sys
      R0 - [pdc] - pdc - C:\WINDOWS\system32\Drivers\pdc.sys
      R0 - [rdyboost] - ReadyBoost - C:\WINDOWS\system32\Drivers\rdyboost.sys
      R0 - [spaceport] - Driver de Espaços de Armazenamento - C:\WINDOWS\system32\Drivers\spaceport.sys
      R0 - [storahci] - Driver AHCI SATA Padrão da Microsoft - C:\WINDOWS\system32\Drivers\storahci.sys
      R0 - [Tcpip] - Driver de Protocolo TCP/IP - C:\WINDOWS\system32\Drivers\Tcpip.sys
      R0 - [vdrvroot] - Enumerador de Unidade Virtual Microsoft - C:\WINDOWS\system32\Drivers\vdrvroot.sys
      R0 - [volmgr] - Driver de Gerenciador de Volumes - C:\WINDOWS\system32\Drivers\volmgr.sys
      R0 - [volmgrx] - Gerenciador de Volume Dinâmico - C:\WINDOWS\system32\Drivers\volmgrx.sys
      R0 - [volsnap] - Volume Shadow Copy driver - C:\WINDOWS\system32\Drivers\volsnap.sys
      R0 - [volume] - Driver do volume - C:\WINDOWS\system32\Drivers\volume.sys
      R0 - [Wdf01000] - Serviço de Estruturas de Driver em Modo Kernel - C:\WINDOWS\system32\Drivers\Wdf01000.sys
      R0 - [WFPLWFS] - Plataforma para Filtros do Microsoft Windows - C:\WINDOWS\system32\Drivers\WFPLWFS.sys
      R0 - [WindowsTrustedRT] - Windows Trusted Execution Environment Class Extension - C:\WINDOWS\system32\Drivers\WindowsTrustedRT.sys
      R0 - [WindowsTrustedRTProxy] - Serviço de Proteção de Tempo de Execução Confiável do Microsoft Windows - C:\WINDOWS\system32\Drivers\WindowsTrustedRTProxy.sys
      R1 - [AFD] - Ancillary Function Driver for Winsock - C:\WINDOWS\system32\Drivers\AFD.sys
      R1 - [Beep] - Beep - C:\WINDOWS\system32\Drivers\Beep.sys
      R1 - [tdx] - Driver de Suporte a TDI Herdado de NetIO - C:\WINDOWS\system32\Drivers\tdx.sys
      R2 - [tcpipreg] - TCP/IP Registry Compatibility - C:\WINDOWS\system32\Drivers\tcpipreg.sys
      S0 - [hwpolicy] - Hardware Policy Driver - C:\WINDOWS\system32\Drivers\hwpolicy.sys
      S0 - [WdBoot] - Driver de Inicialização do Windows Defender - C:\WINDOWS\system32\Drivers\WdBoot.sys
      S3 - [Tcpip6] - @todo.dll,-100;Microsoft IPv6 Protocol Driver - C:\WINDOWS\system32\Drivers\Tcpip6.sys [x] ==== Startup Registry Enabled ====================== [HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup" [HKEY_USERS\S-1-5-21-2136716795-1872570704-365749601-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "OneDrive"="C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background"
      "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
      "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
      "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun"
      "BlueStacks Agent"="C:\Program Files (x86)\Bluestacks\HD-Agent.exe"
      "Codec Pack Update Checker"="C:\WINDOWS\system32\Codecs\UpdateChecker.exe" [HKEY_USERS\S-1-5-21-2136716795-1872570704-365749601-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225"
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "SwitchBoard"="C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
      "AdobeCS6ServiceManager"="C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe -launchedbylogin"
      "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
      "Codec Settings UAC Manager"="C:\WINDOWS\system32\Codecs\CodecUACManager.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
      "OneDrive"="C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background"
      "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
      "CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
      "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun"
      "BlueStacks Agent"="C:\Program Files (x86)\Bluestacks\HD-Agent.exe"
      "Codec Pack Update Checker"="C:\WINDOWS\system32\Codecs\UpdateChecker.exe" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64"
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6302.0225"
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64"
      "Uninstall C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1"="C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1" ==== Startup Registry Enabled x64 ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "NvBackend"="C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
      "ShadowPlay"="C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart"
      "AdobeAAMUpdater-1.0"="C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
      "Diebold - Warsaw"="C:\Program Files\Diebold\Warsaw\core.exe"
      "WindowsDefender"=""%ProgramFiles%\Windows Defender\MSASCuiL.exe"" ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- [Undetermined Task]
      C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/03/2016 01:35]
      C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a-------- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [18/03/2016 01:35] ==== Other Scheduled Tasks ====================== "C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
      "C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
      "C:\WINDOWS\SysNative\tasks\AutoKMS" [C:\WINDOWS\AutoKMS\AutoKMS.exe]
      "C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
      "C:\WINDOWS\SysNative\tasks\CorelUpdateHelperTaskCore" [c:\Program Files (x86)\Corel\CUH\v2\CUH.exe]
      "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
      "C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
      "C:\WINDOWS\SysNative\tasks\klcp_update" ["C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe"]
      "C:\WINDOWS\SysNative\tasks\OneDrive Standalone Update Task" [C:\Users\Diego Gadelha\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe]
      "C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{B2E0E385-8CB7-45FA-AAB8-EAC9BB2AB2D4}" [C:\WINDOWS\system32\msfeedssync.exe] ==== Firefox Start and Search pages ====================== ProfilePath: C:\Users\DIEGOG~1\AppData\Roaming\Mozilla\Firefox\Profiles\2p6du99e.default
      user_pref("browser.startup.homepage", "www.google.com.br"); ==== Firefox Extensions ====================== ProfilePath: C:\Users\DIEGOG~1\AppData\Roaming\Mozilla\Firefox\Profiles\2p6du99e.default
      - Firefox Hotfix - %ProfilePath%\extensions\firefox-hotfix@mozilla.org.xpi
      - Video DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
      - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ProfilePath: C:\Users\DIEGOG~1\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
      - Video DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
      - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ProfilePath: C:\Users\DIEGOG~1\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
      - Video DownloadHelper - %ProfilePath%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
      - Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi AppDir: C:\Program Files (x86)\Mozilla Firefox
      - Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi ==== Firefox Plugins ====================== Profilepath: C:\Users\Diego Gadelha\AppData\Roaming\Mozilla\Firefox\Profiles\2p6du99e.default
      6125592781619FA73DD5A0B8A7C2D434    - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL -    Microsoft Office 2016
      46570C8745DA5C5E697BD99B9C2D93B8    - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll -    Microsoft Office 2016
      8CE35D76726DFC8C3848BB26B3C79A54    - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll -    Shockwave for Director / Shockwave for Director
      7FB1DC8C464CAFC230E7AD6392AE859B    - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_162.dll -    Shockwave Flash Profilepath: C:\Users\Diego Gadelha\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
      8CE35D76726DFC8C3848BB26B3C79A54    - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll -    Shockwave for Director / Shockwave for Director Profilepath: C:\Users\Diego Gadelha\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
      8CE35D76726DFC8C3848BB26B3C79A54    - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1224194.dll -    Shockwave for Director / Shockwave for Director
      ==== Chromium Look ======================
      Google Docs - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
      Google Drive - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
      YouTube - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
      Google Docs Offline - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi
      Whitelisted domains - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
      Chrome Web Store Payments - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
      Gmail - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
      Chrome Media Router - Diego Gadelha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm ==== IE Start and Search Settings ====================== [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Start Page"="http://www.google.com.br/"
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
      "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" ==== All HKLM and HKCU SearchScopes ====================== HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
      HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
      HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
      HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
      HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 ==== HijackThis Entries ====================== R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
      F2 - REG:system.ini: UserInit=
      O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
      O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
      O2 - BHO: G-Buster Browser Defense Itaú Unibanco - {C41A1C0E-EA6C-11D4-B1B8-444553540008} - C:\PROGRAM FILES (X86)\GBPLUGIN\gbiehuni.dll
      O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL
      O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll ==== EOF on 01/10/2016 at 15:18:16,71 ======================
          MbrScan MBRScan v1.1.1 OS             : Windows 8  (64 bit) PROCESSOR      : Intel64 Family 6 Model 26 Stepping 5, GenuineIntel BOOT           : Normal Boot DATE           : 2016/10/01 (ISO 8601) at 15:23:46 ________________________________________________________________________________ DISK           : Device\Harddisk0\DR0 __ST31000528AS (CC38) BUS_TYPE       : (0x0B)  S-ATA USE_PIO        : YES MAX_TRANSFER   : 128 Kb ALIGNMENT_MASK : word aligned ________________________________________________________________________________ Device\Harddisk0\DR0    931.5 Go  [Fixed] ==> 7 MBR Code MBR_MD5   : F6DFAD0773B44721ABCF554119405E0F MBR_SHA1  : ADAACDB5D3E4800E33BD020EED81269BDD8E094A Device\Harddisk0\Partition1    100.0 Mo      0x07 NTFS / HPFS __ BOOTABLE __ Device\Harddisk0\Partition2    931.0 Go      0x07 NTFS / HPFS Device\Harddisk0\Partition3    450.0 Mo      0x27 RE Hidden partition  ________________________________________________________________________________ ############################### Additional scan ################################ DRIVER  : C:\WINDOWS\system32\ntoskrnl.exe => Invisible on the disk ADDRESS : 0x66C78000 SIZE    : 8.12 Mo DRIVER  : C:\WINDOWS\system32\hal.dll => Invisible on the disk ADDRESS : 0x66C03000 SIZE    : 468.0 Ko DRIVER  : C:\WINDOWS\system32\kd.dll => Invisible on the disk ADDRESS : 0x65C98000 SIZE    : 44.0 Ko DRIVER  : C:\WINDOWS\system32\mcupdate_GenuineIntel.dll => Invisible on the disk ADDRESS : 0x63EC0000 SIZE    : 568.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\werkernel.sys => Invisible on the disk ADDRESS : 0x63F50000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\CLFS.SYS => Invisible on the disk ADDRESS : 0x63F60000 SIZE    : 396.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\tm.sys => Invisible on the disk ADDRESS : 0x63FD0000 SIZE    : 148.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\FLTMGR.SYS => Invisible on the disk ADDRESS : 0x63A30000 SIZE    : 392.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\msrpc.sys => Invisible on the disk ADDRESS : 0x63AA0000 SIZE    : 372.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\ksecdd.sys => Invisible on the disk ADDRESS : 0x63B00000 SIZE    : 160.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\clipsp.sys => Invisible on the disk ADDRESS : 0x63B30000 SIZE    : 704.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\cmimcext.sys => Invisible on the disk ADDRESS : 0x63BE0000 SIZE    : 52.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\ntosext.sys => Invisible on the disk ADDRESS : 0x63BF0000 SIZE    : 48.0 Ko DRIVER  : C:\WINDOWS\system32\CI.dll => Invisible on the disk ADDRESS : 0x63C00000 SIZE    : 640.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\Wdf01000.sys => Invisible on the disk ADDRESS : 0x63CA0000 SIZE    : 848.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\WDFLDR.SYS => Invisible on the disk ADDRESS : 0x63D80000 SIZE    : 76.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\acpiex.sys => Invisible on the disk ADDRESS : 0x63DA0000 SIZE    : 140.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\WppRecorder.sys => Invisible on the disk ADDRESS : 0x63DD0000 SIZE    : 56.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\cng.sys => Invisible on the disk ADDRESS : 0x63DE0000 SIZE    : 624.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\ACPI.sys => Invisible on the disk ADDRESS : 0x64B70000 SIZE    : 716.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\WMILIB.SYS => Invisible on the disk ADDRESS : 0x64C30000 SIZE    : 48.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\intelpep.sys => Invisible on the disk ADDRESS : 0x64C50000 SIZE    : 68.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys => Invisible on the disk ADDRESS : 0x64C70000 SIZE    : 124.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys => Invisible on the disk ADDRESS : 0x64C90000 SIZE    : 44.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\pcw.sys => Invisible on the disk ADDRESS : 0x64CA0000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\msisadrv.sys => Invisible on the disk ADDRESS : 0x64CC0000 SIZE    : 44.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\pci.sys => Invisible on the disk ADDRESS : 0x64CD0000 SIZE    : 348.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\vdrvroot.sys => Invisible on the disk ADDRESS : 0x64D30000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\pdc.sys => Invisible on the disk ADDRESS : 0x64D50000 SIZE    : 132.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\CEA.sys => Invisible on the disk ADDRESS : 0x64D80000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\partmgr.sys => Invisible on the disk ADDRESS : 0x64DA0000 SIZE    : 144.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\pciide.sys => Invisible on the disk ADDRESS : 0x64DD0000 SIZE    : 40.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\PCIIDEX.SYS => Invisible on the disk ADDRESS : 0x64DE0000 SIZE    : 68.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\spaceport.sys => Invisible on the disk ADDRESS : 0x64000000 SIZE    : 564.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\intelide.sys => Invisible on the disk ADDRESS : 0x64090000 SIZE    : 40.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\volmgr.sys => Invisible on the disk ADDRESS : 0x640A0000 SIZE    : 96.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\volmgrx.sys => Invisible on the disk ADDRESS : 0x640C0000 SIZE    : 376.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mountmgr.sys => Invisible on the disk ADDRESS : 0x64120000 SIZE    : 120.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\atapi.sys => Invisible on the disk ADDRESS : 0x64140000 SIZE    : 48.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\ataport.SYS => Invisible on the disk ADDRESS : 0x64150000 SIZE    : 212.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\storahci.sys => Invisible on the disk ADDRESS : 0x64190000 SIZE    : 144.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\storport.sys => Invisible on the disk ADDRESS : 0x641C0000 SIZE    : 520.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\stornvme.sys => Invisible on the disk ADDRESS : 0x64250000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mv91xx.sys => Invisible on the disk ADDRESS : 0x64270000 SIZE    : 568.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\SCSIPORT.SYS => Invisible on the disk ADDRESS : 0x64300000 SIZE    : 192.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mvxxmm.sys => Invisible on the disk ADDRESS : 0x64330000 SIZE    : 32.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mv61xx.sys => Invisible on the disk ADDRESS : 0x64340000 SIZE    : 284.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mv61xxmm.sys => Invisible on the disk ADDRESS : 0x64390000 SIZE    : 32.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\EhStorClass.sys => Invisible on the disk ADDRESS : 0x643A0000 SIZE    : 112.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\fileinfo.sys => Invisible on the disk ADDRESS : 0x643C0000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\Wof.sys => Invisible on the disk ADDRESS : 0x643E0000 SIZE    : 224.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\WdFilter.sys => Invisible on the disk ADDRESS : 0x64420000 SIZE    : 308.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\NTFS.sys => Invisible on the disk ADDRESS : 0x64470000 SIZE    : 2.20 Mo DRIVER  : C:\WINDOWS\system32\drivers\gbpddreg64.sys => Invisible on the disk ADDRESS : 0x646B0000 SIZE    : 44.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\Fs_Rec.sys => Invisible on the disk ADDRESS : 0x646C0000 SIZE    : 52.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\ndis.sys => Invisible on the disk ADDRESS : 0x646D0000 SIZE    : 1.16 Mo DRIVER  : C:\WINDOWS\system32\drivers\NETIO.SYS => Invisible on the disk ADDRESS : 0x64800000 SIZE    : 484.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\ksecpkg.sys => Invisible on the disk ADDRESS : 0x64880000 SIZE    : 192.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\tcpip.sys => Invisible on the disk ADDRESS : 0x648B0000 SIZE    : 2.47 Mo DRIVER  : C:\WINDOWS\System32\drivers\fwpkclnt.sys => Invisible on the disk ADDRESS : 0x65350000 SIZE    : 420.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\wfplwfs.sys => Invisible on the disk ADDRESS : 0x653C0000 SIZE    : 168.0 Ko DRIVER  : C:\WINDOWS\System32\DRIVERS\fvevol.sys => Invisible on the disk ADDRESS : 0x64E00000 SIZE    : 652.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\volume.sys => Invisible on the disk ADDRESS : 0x64EB0000 SIZE    : 44.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\volsnap.sys => Invisible on the disk ADDRESS : 0x64EC0000 SIZE    : 400.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\rdyboost.sys => Invisible on the disk ADDRESS : 0x64F30000 SIZE    : 288.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\mup.sys => Invisible on the disk ADDRESS : 0x64F80000 SIZE    : 148.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\iorate.sys => Invisible on the disk ADDRESS : 0x64FB0000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\disk.sys => Invisible on the disk ADDRESS : 0x64FD0000 SIZE    : 120.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\CLASSPNP.SYS => Invisible on the disk ADDRESS : 0x64FF0000 SIZE    : 392.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\crashdmp.sys => Invisible on the disk ADDRESS : 0x65080000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\cdrom.sys => Invisible on the disk ADDRESS : 0x65160000 SIZE    : 196.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\filecrypt.sys => Invisible on the disk ADDRESS : 0x651A0000 SIZE    : 116.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\tbs.sys => Invisible on the disk ADDRESS : 0x651C0000 SIZE    : 56.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\Null.SYS => Invisible on the disk ADDRESS : 0x651D0000 SIZE    : 40.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\Beep.SYS => Invisible on the disk ADDRESS : 0x651E0000 SIZE    : 40.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\BasicDisplay.sys => Invisible on the disk ADDRESS : 0x651F0000 SIZE    : 80.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\watchdog.sys => Invisible on the disk ADDRESS : 0x65210000 SIZE    : 80.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\dxgkrnl.sys => Invisible on the disk ADDRESS : 0x66590000 SIZE    : 2.12 Mo DRIVER  : C:\WINDOWS\System32\drivers\BasicRender.sys => Invisible on the disk ADDRESS : 0x667B0000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\wsddfac.sys => Invisible on the disk ADDRESS : 0x667D0000 SIZE    : 164.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\Npfs.SYS => Invisible on the disk ADDRESS : 0x65A00000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\Msfs.SYS => Invisible on the disk ADDRESS : 0x65A20000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\gbpddfac64.sys => Invisible on the disk ADDRESS : 0x65A30000 SIZE    : 48.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\tdx.sys => Invisible on the disk ADDRESS : 0x65A40000 SIZE    : 140.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\TDI.SYS => Invisible on the disk ADDRESS : 0x65A70000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\DRIVERS\netbt.sys => Invisible on the disk ADDRESS : 0x65A80000 SIZE    : 300.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\afd.sys => Invisible on the disk ADDRESS : 0x65AD0000 SIZE    : 596.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\vwififlt.sys => Invisible on the disk ADDRESS : 0x65B70000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\pacer.sys => Invisible on the disk ADDRESS : 0x65B90000 SIZE    : 172.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\netbios.sys => Invisible on the disk ADDRESS : 0x65BC0000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\rdbss.sys => Invisible on the disk ADDRESS : 0x65BE0000 SIZE    : 468.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\csc.sys => Invisible on the disk ADDRESS : 0x65C60000 SIZE    : 568.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\wsddpp.sys => Invisible on the disk ADDRESS : 0x65CF0000 SIZE    : 152.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\nsiproxy.sys => Invisible on the disk ADDRESS : 0x65D20000 SIZE    : 68.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\npsvctrig.sys => Invisible on the disk ADDRESS : 0x65D40000 SIZE    : 52.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mssmbios.sys => Invisible on the disk ADDRESS : 0x65D50000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\gpuenergydrv.sys => Invisible on the disk ADDRESS : 0x65D60000 SIZE    : 40.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\dfsc.sys => Invisible on the disk ADDRESS : 0x65D70000 SIZE    : 168.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\ahcache.sys => Invisible on the disk ADDRESS : 0x65DC0000 SIZE    : 252.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\kdnic.sys => Invisible on the disk ADDRESS : 0x65E20000 SIZE    : 56.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\umbus.sys => Invisible on the disk ADDRESS : 0x65E30000 SIZE    : 84.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\intelppm.sys => Invisible on the disk ADDRESS : 0x65E50000 SIZE    : 172.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\USBXHCI.SYS => Invisible on the disk ADDRESS : 0x65E80000 SIZE    : 396.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\ucx01000.sys => Invisible on the disk ADDRESS : 0x65EF0000 SIZE    : 224.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys => Invisible on the disk ADDRESS : 0x682B0000 SIZE    : 13.32 Mo DRIVER  : C:\WINDOWS\System32\drivers\HDAudBus.sys => Invisible on the disk ADDRESS : 0x69010000 SIZE    : 108.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\portcls.sys => Invisible on the disk ADDRESS : 0x69030000 SIZE    : 388.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\drmk.sys => Invisible on the disk ADDRESS : 0x690A0000 SIZE    : 132.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\ks.sys => Invisible on the disk ADDRESS : 0x690D0000 SIZE    : 416.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\e1y60x64.sys => Invisible on the disk ADDRESS : 0x69140000 SIZE    : 296.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\usbuhci.sys => Invisible on the disk ADDRESS : 0x69190000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\USBPORT.SYS => Invisible on the disk ADDRESS : 0x67600000 SIZE    : 472.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\usbehci.sys => Invisible on the disk ADDRESS : 0x67680000 SIZE    : 112.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\e1i63x64.sys => Invisible on the disk ADDRESS : 0x676A0000 SIZE    : 536.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\1394ohci.sys => Invisible on the disk ADDRESS : 0x67730000 SIZE    : 256.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\wmiacpi.sys => Invisible on the disk ADDRESS : 0x67770000 SIZE    : 48.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\nvvad64v.sys => Invisible on the disk ADDRESS : 0x67780000 SIZE    : 52.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\ksthunk.sys => Invisible on the disk ADDRESS : 0x67790000 SIZE    : 56.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\NdisVirtualBus.sys => Invisible on the disk ADDRESS : 0x677A0000 SIZE    : 52.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\swenum.sys => Invisible on the disk ADDRESS : 0x677B0000 SIZE    : 48.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\rdpbus.sys => Invisible on the disk ADDRESS : 0x677C0000 SIZE    : 56.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\usbhub.sys => Invisible on the disk ADDRESS : 0x677D0000 SIZE    : 512.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\USBD.SYS => Invisible on the disk ADDRESS : 0x67850000 SIZE    : 56.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\UsbHub3.sys => Invisible on the disk ADDRESS : 0x67860000 SIZE    : 540.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\nvhda64v.sys => Invisible on the disk ADDRESS : 0x678F0000 SIZE    : 208.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\HdAudio.sys => Invisible on the disk ADDRESS : 0x67930000 SIZE    : 424.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\HIDPARSE.SYS => Invisible on the disk ADDRESS : 0x67D30000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\System32\win32kbase.sys => Invisible on the disk ADDRESS : 0xF0F90000 SIZE    : 1.50 Mo DRIVER  : C:\WINDOWS\System32\Drivers\dump_diskdump.sys => Invisible on the disk ADDRESS : 0x67EE0000 SIZE    : 60.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\dump_storahci.sys => Invisible on the disk ADDRESS : 0x67F20000 SIZE    : 144.0 Ko DRIVER  : C:\WINDOWS\System32\Drivers\dump_dumpfve.sys => Invisible on the disk ADDRESS : 0x67F70000 SIZE    : 116.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\hidusb.sys => Invisible on the disk ADDRESS : 0x67F90000 SIZE    : 68.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\HIDCLASS.SYS => Invisible on the disk ADDRESS : 0x67FB0000 SIZE    : 188.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mouhid.sys => Invisible on the disk ADDRESS : 0x67FE0000 SIZE    : 60.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mouclass.sys => Invisible on the disk ADDRESS : 0x67FF0000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\dxgmms2.sys => Invisible on the disk ADDRESS : 0x68010000 SIZE    : 668.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\monitor.sys => Invisible on the disk ADDRESS : 0x680C0000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\TSDDD.dll => Invisible on the disk ADDRESS : 0xF1120000 SIZE    : 40.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\usbccgp.sys => Invisible on the disk ADDRESS : 0x680D0000 SIZE    : 192.0 Ko DRIVER  : C:\WINDOWS\System32\cdd.dll => Invisible on the disk ADDRESS : 0xF11A0000 SIZE    : 256.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\kbdhid.sys => Invisible on the disk ADDRESS : 0x68100000 SIZE    : 64.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\kbdclass.sys => Invisible on the disk ADDRESS : 0x68110000 SIZE    : 76.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\luafv.sys => Invisible on the disk ADDRESS : 0x68130000 SIZE    : 152.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\wcifs.sys => Invisible on the disk ADDRESS : 0x68160000 SIZE    : 128.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\storqosflt.sys => Invisible on the disk ADDRESS : 0x68180000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\wcnfs.sys => Invisible on the disk ADDRESS : 0x681A0000 SIZE    : 88.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\registry.sys => Invisible on the disk ADDRESS : 0x681C0000 SIZE    : 96.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\mslldp.sys => Invisible on the disk ADDRESS : 0x681E0000 SIZE    : 96.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\condrv.sys => Invisible on the disk ADDRESS : 0x68200000 SIZE    : 72.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\rspndr.sys => Invisible on the disk ADDRESS : 0x68220000 SIZE    : 104.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\lltdio.sys => Invisible on the disk ADDRESS : 0x68240000 SIZE    : 88.0 Ko DRIVER  : C:\WINDOWS\System32\DRIVERS\wanarp.sys => Invisible on the disk ADDRESS : 0x68260000 SIZE    : 108.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\HTTP.sys => Invisible on the disk ADDRESS : 0x679A0000 SIZE    : 1.02 Mo DRIVER  : C:\WINDOWS\system32\drivers\WudfPf.sys => Invisible on the disk ADDRESS : 0x67AC0000 SIZE    : 120.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\bowser.sys => Invisible on the disk ADDRESS : 0x67AE0000 SIZE    : 136.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\mrxsmb.sys => Invisible on the disk ADDRESS : 0x67B10000 SIZE    : 468.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys => Invisible on the disk ADDRESS : 0x67B90000 SIZE    : 236.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\mpsdrv.sys => Invisible on the disk ADDRESS : 0x67BD0000 SIZE    : 100.0 Ko DRIVER  : C:\WINDOWS\System32\DRIVERS\srvnet.sys => Invisible on the disk ADDRESS : 0x67BF0000 SIZE    : 272.0 Ko DRIVER  : C:\WINDOWS\System32\DRIVERS\srv2.sys => Invisible on the disk ADDRESS : 0x67C40000 SIZE    : 720.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\peauth.sys => Invisible on the disk ADDRESS : 0x67D50000 SIZE    : 776.0 Ko DRIVER  : C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys => Invisible on the disk ADDRESS : 0x67E20000 SIZE    : 308.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\tcpipreg.sys => Invisible on the disk ADDRESS : 0x67E70000 SIZE    : 80.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\Ndu.sys => Invisible on the disk ADDRESS : 0x67E90000 SIZE    : 152.0 Ko DRIVER  : C:\WINDOWS\system32\drivers\mmcss.sys => Invisible on the disk ADDRESS : 0x68280000 SIZE    : 80.0 Ko DRIVER  : C:\WINDOWS\System32\DRIVERS\srv.sys => Invisible on the disk ADDRESS : 0x65F30000 SIZE    : 560.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\tunnel.sys => Invisible on the disk ADDRESS : 0x691A0000 SIZE    : 188.0 Ko DRIVER  : C:\WINDOWS\system32\Drivers\WdNisDrv.sys => Invisible on the disk ADDRESS : 0x691D0000 SIZE    : 136.0 Ko DRIVER  : C:\WINDOWS\System32\drivers\umpass.sys => Invisible on the disk ADDRESS : 0x67D20000 SIZE    : 44.0 Ko BCD EmsSettings {0CE4991B-E6B3-4B16-B23C-5E0D9250E5D9} => BcdLibraryBoolean_EmsEnabled (16000020) SystemStartOptions :  NOEXECUTE=OPTIN ________________________________________________________________________________ _______MBR   \Device\Harddisk0\DR0   0x00000000   33 C0 8E D0 BC 00 7C 8E C0 8E D8 BE 00 7C BF 00   3À.м.|.À.ؾ.|¿. 0x00000010   06 B9 00 02 FC F3 A4 50 68 1C 06 CB FB B9 04 00   .¹..üó¤Ph..Ëû¹.. 0x00000020   BD BE 07 80 7E 00 00 7C 0B 0F 85 0E 01 83 C5 10   ½¾..~..|......Å. 0x00000030   E2 F1 CD 18 88 56 00 55 C6 46 11 05 C6 46 10 00   âñÍ..V.UÆF..ÆF.. 0x00000040   B4 41 BB AA 55 CD 13 5D 72 0F 81 FB 55 AA 75 09   ´A»ªUÍ.]r..ûUªu. 0x00000050   F7 C1 01 00 74 03 FE 46 10 66 60 80 7E 10 00 74   ÷Á..t.þF.f`.~..t 0x00000060   26 66 68 00 00 00 00 66 FF 76 08 68 00 00 68 00   &fh....f.v.h..h. 0x00000070   7C 68 01 00 68 10 00 B4 42 8A 56 00 8B F4 CD 13   |h..h..´B.V..ôÍ. 0x00000080   9F 83 C4 10 9E EB 14 B8 01 02 BB 00 7C 8A 56 00   ..Ä..ë.¸..».|.V. 0x00000090   8A 76 01 8A 4E 02 8A 6E 03 CD 13 66 61 73 1C FE   .v..N..n.Í.fas.þ 0x000000A0   4E 11 75 0C 80 7E 00 80 0F 84 8A 00 B2 80 EB 84   N.u..~......².ë. 0x000000B0   55 32 E4 8A 56 00 CD 13 5D EB 9E 81 3E FE 7D 55   U2ä.V.Í.]ë..>þ}U 0x000000C0   AA 75 6E FF 76 00 E8 8D 00 75 17 FA B0 D1 E6 64   ªun.v.è..u.ú°Ñæd 0x000000D0   E8 83 00 B0 DF E6 60 E8 7C 00 B0 FF E6 64 E8 75   è..°ßæ`è|.°.ædèu 0x000000E0   00 FB B8 00 BB CD 1A 66 23 C0 75 3B 66 81 FB 54   .û¸.»Í.f#Àu;f.ûT 0x000000F0   43 50 41 75 32 81 F9 02 01 72 2C 66 68 07 BB 00   CPAu2.ù..r,fh.». 0x00000100   00 66 68 00 02 00 00 66 68 08 00 00 00 66 53 66   .fh....fh....fSf 0x00000110   53 66 55 66 68 00 00 00 00 66 68 00 7C 00 00 66   SfUfh....fh.|..f 0x00000120   61 68 00 00 07 CD 1A 5A 32 F6 EA 00 7C 00 00 CD   ah...Í.Z2öê.|..Í 0x00000130   18 A0 B7 07 EB 08 A0 B6 07 EB 03 A0 B5 07 32 E4   ..·.ë..¶.ë..µ.2ä 0x00000140   05 00 07 8B F0 AC 3C 00 74 09 BB 07 00 B4 0E CD   ....ð¬<.t.»..´.Í 0x00000150   10 EB F2 F4 EB FD 2B C9 E4 64 EB 00 24 02 E0 F8   .ëòôëý+Éädë.$.àø 0x00000160   24 02 C3 49 6E 76 61 6C 69 64 20 70 61 72 74 69   $.ÃInvalid parti 0x00000170   74 69 6F 6E 20 74 61 62 6C 65 00 45 72 72 6F 72   tion table.Error 0x00000180   20 6C 6F 61 64 69 6E 67 20 6F 70 65 72 61 74 69    loading operati 0x00000190   6E 67 20 73 79 73 74 65 6D 00 4D 69 73 73 69 6E   ng system.Missin 0x000001A0   67 20 6F 70 65 72 61 74 69 6E 67 20 73 79 73 74   g operating syst 0x000001B0   65 6D 00 00 00 63 7B 9A 84 30 14 FA 00 00 80 20   em...c{..0.ú...  0x000001C0   21 00 07 DF 13 0C 00 08 00 00 00 20 03 00 00 86   !..ß....... .... 0x000001D0   0F 30 07 DF D3 FF 00 28 03 00 00 20 5F 74 00 DF   .0.ßÓ..(... _t.ß 0x000001E0   D3 FF 27 DF D3 FF 00 48 62 74 00 10 0E 00 00 00   Ó.'ßÓ..Hbt...... 0x000001F0   00 00 00 00 00 00 00 00 00 00 00 00 00 00 55 AA   ..............Uª
    • Olá Sam. Log ADW: # AdwCleaner v6.020 - Relatório criado 01/10/2016 às 15:05:20
      # *Updated on 14/09/2016 by ToolsLib
      # Banco de dados : 2016-10-01.1 [Servidor]
      # Sistema operacional : Windows 10 Home Single Language  (X64)
      # Usuário : danid - DESKTOP-PUDC31A
      # Executando de : C:\Users\danid\Desktop\AdwCleaner.exe
      # *Mode: Scan
      # Apoio : https://toolslib.net/forum ***** [ Serviços ] ***** Serviço Update service
      ***** [ Pastas ] ***** *No malicious folders found.
      ***** [ Arquivos ] ***** *No malicious files found.
      ***** [ DLL ] ***** *No malicious DLLs found.
      ***** [ WMI ] ***** *No malicious keys found.
      ***** [ Atalhos ] ***** Atalho C:\Users\danid\Desktop\Google Chrome.lnk ( "hxxp://tech-connect.biz/?ssid=1474135572&a=1057987&src=sh&uuid=063b983f-c474-4fa3-9b3a-93f46cd16745,1474135467297" )
      Atalho C:\Users\danid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk ( "hxxp://tech-connect.biz/?ssid=1474135572&a=1057987&src=sh&uuid=063b983f-c474-4fa3-9b3a-93f46cd16745,1474135467
      Atalho C:\Users\danid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk ( "hxxp://tech-connect.biz/?ssid=1474135572&a=1057987&src=sh&uuid=063b983f-c474-4fa3-9b3a-93f46cd
      Atalho C:\Users\danid\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk ( "hxxp://tech-connect.biz/?ssid=1474135572&a=1057987&src=sh&uuid=063b983f-c474-4fa3-9b3a-93f46cd16745,1474135
      Atalho C:\Users\danid\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk ( "hxxp://tech-connect.biz/?ssid=1474135572&a=1057987&src=sh&uuid=063b983f-c474-4fa3-9b3a-
      ***** [ Tarefas agendadas ] ***** *No malicious task found.
      ***** [ Registro ] ***** Encontrado HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
      Encontrado HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
      Encontrado [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK
      Encontrado [x64] HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1
      Encontrado HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146}
      Encontrado HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
      Encontrado HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270}
      Encontrado HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A}
      Encontrado HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552}
      Encontrado HKU\S-1-5-21-3163458801-1482829450-1186468729-1001\Software\csastats
      Encontrado HKCU\Software\csastats
      Encontrado [x64] HKCU\Software\csastats
      Encontrado HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
      Encontrado HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
      Encontrado [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
      Encontrado [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
      ***** [ Navegadores ] ***** Procurando por itens do registro 
      Procurando por itens do registro  ************************* C:\AdwCleaner\AdwCleaner[S0].txt - [3027 *Bytes] - [01/10/2016 15:05:20] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3101 *Bytes] ##########     Log JRT:   ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Junkware Removal Tool (JRT) by Malwarebytes
      Version: 8.0.8 (09.20.2016)
      Operating System: Windows 10 Home Single Language x64 
      Ran by danid (Administrator) on 01/10/2016 at 15:10:15,10
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      File System: 0 
      Registry: 0  ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
      Scan was completed on 01/10/2016 at 15:13:13,87
      End of JRT log
      ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
          Log ZHP: ~ ZHPCleaner v2016.9.30.153 by Nicolas Coolman (2016/09/30)
      ~ Run by danid (Administrator)  (01/10/2016 15:23:00)
      ~ Web: https://www.nicolascoolman.com
      ~ Blog: https://www.anti-malware.top
      ~ Facebook : https://www.facebook.com/nicolascoolman1
      ~ State version : Version OK
      ~ Type : Reparo
      ~ Report : C:\Users\danid\Desktop\ZHPCleaner.txt
      ~ Quarantine : C:\Users\danid\AppData\Roaming\ZHP\ZHPCleaner_Quarantine.txt
      ~ UAC : Activate
      ~ Boot Mode : Normal (Normal boot)
      Windows 10 Home Single Language, 64-bit  (Build 14393)
      ---\\  Serviços (0)
      ~ Nenhum ítem malicioso o desnecessários foi encontrado.
      ---\\  Navegadores de Internet (0)
      ~ Nenhum ítem malicioso o desnecessários foi encontrado.
      ---\\  Arquivo hosts (1)
      ~ O arquivo hosts é legítimo (21)
      ---\\  Tarefas automáticas agendadas. (0)
      ~ Nenhum ítem malicioso o desnecessários foi encontrado.
      ---\\  Explorer ( Arquivos, Pastas) (40)
      MOVIDO pasta: C:\Users\danid\Downloads\PopcornTime-latest.exe [Popcorn Time - Popcorn Time Setup]  =>.Superfluous.PopcornTime
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.00D57B0F-01FA-B79F-08D6-878ED20C4C9B_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.0116DC02-781B-D1D1-FC1C-C80195511E17_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.0862A72D-A96C-83E5-AD0F-78B6AA06F9C6_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.0C8CF327-9D17-CCDE-18AF-DFF4F20070E5_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.18DDC675-D472-0DB4-9563-7DF7C34F512C_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.1A7994D6-5342-8581-71FB-A2BD1C895D93_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.1F63B8C3-2D48-9497-0A0A-2CBD462EDE76_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.1FE89C0B-9BED-CC5D-7426-9E4025D6BDD9_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.31A692E0-F967-E4F8-A441-21A804580E9E_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.32A48683-F264-932C-7870-B93BB448ED69_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.3BFD26C9-8DA9-B940-F638-55890012AAB4_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.50611331-FE19-D366-B049-694B8AC9D758_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.557EA3BB-623E-ADD9-4DFB-629A8648A038_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.558F5D32-0827-EB7B-6AD6-D5DB4138B3AA_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.62B49C0A-499E-A02D-EBCB-EB168E148E52_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.664AA17A-2D25-0823-3315-3708FE16147A_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.674C4C14-7BAA-F782-E214-956DC3BEDF39_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.68BC3251-2D8B-A604-92BA-893638CA72EA_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.68E019EB-0B92-5E08-5D86-9BFE6DBA8517_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.69F3BCAB-8975-C526-30F5-39FA70C77AD9_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.6D151227-6BD9-726D-B30E-A8A018DCC82B_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.6EA6FC2E-9305-586B-3411-02826D151533_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.86FD8AB2-940B-DBA1-BA34-7A3DAD8B9B98_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.8F700A8E-3731-B777-A6DD-000FE1F8FCB2_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.97612282-D1E8-1D6A-9E92-C271E7F177EF_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.993325CD-9CA8-DD49-50C4-377C092AEF1B_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.9D4DED89-CABC-F4FB-8133-BC5EDB1C7EDA_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.A8849751-10C4-3F5D-1F42-DA79DB2C7BE9_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.A90B8400-D36D-8235-8BF2-A21A53D3FB65_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.AB7C46F6-66DE-8533-C6B1-FFE36BF92E97_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.B1B6FBCA-CD11-CB52-6CA7-06B47EB7C197_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.DFBE09D0-1F22-A9C0-2D3D-3F4C6351E58F_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.E336BB8F-16ED-7CBE-AFEE-971DD3041585_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.E6658C19-4221-2EBE-763A-F0493FBA2BB0_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.E6D3B497-80AF-7F14-F9E6-9606EE369FC3_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.F17D97AE-2226-4AEB-C1D8-15A83D914E17_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO pasta: C:\Users\danid\AppData\Local\Temp\sa.FACF9DDE-1FF1-B57D-4D1D-CE479FDD42AF_5__.Public.AppUpdate.dat    =>.Superfluous.Temporary
      MOVIDO arquivo: C:\Users\danid\Downloads\PopcornTime  =>.Superfluous.PopcornTime
      MOVIDO arquivo: C:\Users\danid\AppData\Local\PopcornTimeDesktop  =>.Superfluous.PopcornTime
      ---\\  Registro ( Chaves, Valores, Dados ) (2)
      SUPRIMIDO chave*: HKEY_USERS\S-1-5-21-3163458801-1482829450-1186468729-1001\SOFTWARE\PopcornTime []  =>.Superfluous.PopcornTime
      SUPRIMIDO chave: HKCU\Software\PopcornTime []  =>.Superfluous.PopcornTime
      ---\\  Resumo dos elementos encontrados na sua estação de trabalho (2)
      https://www.anti-malware.top/2016/09/28/superfluous-popcorntime/  =>.Superfluous.PopcornTime
      https://www.nicolascoolman.com/fr/logiciels-superflus  =>.Superfluous.Temporary
      ---\\  Dodatkowe oczyszczenie. (8)
      ~ Chave de registro Tracing Supprimido (5)
      ~ Remover os relatórios antigos ZHPCleaner. (3)
      ---\\ Resultado de reparação
      Reparação efectuada com sucesso
      ~ Este navegador está faltando ! (Mozilla Firefox)
      ~ Este navegador está faltando ! (Opera Software)
      ---\\ Estatísticas
      ~ Items scan : 300
      ~ Items encontrado : 0
      ~ items cancelados : 0
      ~ Items réparo : 42
      ~ End of clean in 00h00mn09s
      ~====================
      ZHPCleaner-[R]-01102016-15_23_09.txt
      ZHPCleaner--01102016-15_20_58.txt
       
    • Luiz Gabriel Pereira, Sugiro que desinstale: Baidu PC Faster. ----------------------------------- 1) Faça o download da ferramenta Shortcut Cleaner e salve na sua área de trabalho:
      http://www.bleepingcomputer.com/download/shortcut-cleaner/ Clique no botão para iniciar o download da ferramenta: Execute o sc-cleaner.exe Após o termino da execução uma mensagem irá aparecer informando que terminou. Clique em OK e um bloco de notas será aberto. Anexe este log na sua próxima resposta. 2) Baixe o AdwCleaner e salve no desktop.
      https://toolslib.net/downloads/viewdownload/1-adwcleaner/ Execute o arquivo adwcleaner.exe Clique no botão Eu concordo. Clique no botão Examinar e aguarde o exame finalizar. Clique no botão Limpar. Abrirá um bloco de notas de nome AdwCleaner[C1].txt com o resultado. Anexe-o na próxima resposta. 3) Desative temporariamente seu antivírus, anti spywares e firewall, para não causar conflitos. Baixe a ferramenta JRT e salve no desktop.
      http://thisisudax.org/downloads/JRT.exe Execute o arquivo JRT.exe A ferramenta começará o exame do seu sistema. Tenha paciência pois pode demorar um pouco dependendo da quantidades de itens a examinar. Ao final, um log se abrirá salvo no desktop com o nome de JRT.txt. Anexe-o na próxima resposta. 4) Faça o download da ferramenta ZHPcleaner e salve na sua área de trabalho.
      http://www.nicolascoolman.fr/download/zhpcleaner-2/?wpdmdl=2148 Execute o arquivo ZHPcleaner.exe Clique no botão Scanner e aguarde a verificação. Em seguida clique no botão Reparar. Após concluído, caso o log não seja exibido, clique no botão Relatório e salve o log. Anexe-o na próxima resposta. 5) Baixe o Malwarebytes' Anti-Malware (MBAM)
      http://malwarebytes.org/mbam-download.php Dê um duplo-clique no mbam-setup.exe, para a instalação. Desmarque a caixa Ativar trial gratuito do MalwareBytes Anti-Malware PRO. Verifique se as caixas Atualizar Malwarebytes Anti-Malware (se houver) e Executar Malwarebytes Anti-Malware estão marcadas e clique então, em Concluir. Se houver atualizações a serem feitas, serão baixadas e instaladas. Ao final da atualização, caso o programa tenha sido instalado em Inglês, com o programa aberto, clique em Settings e no campo Language mude para Portuguese (Brasil). Ainda na tela de Configurações, clique em Detecção e proteção, marque Verificar por Rootkits. Em Detecções PUP (programas potencialmente indesejados):, selecione Tratar detecções como malware. Clique em Verificar em seguida Verificar Ameaça por fim clique em Verificar Agora >>. Começará então o exame. Aguarde, pois pode demorar. Ao acabar o exame, se houver itens encontrados, clique no botão Exportar Log -> Arquivo texto (*.txt) e salve-o na sua área de trabalho. Clique em Aplicar Ações. Ao final da desinfecção, poderá aparecer um aviso se quer reiniciar o PC. (Ver Nota abaixo) O log é automaticamente salvo pelo MBAM e caso não consiga salva-lo será possível vê-lo clicando na aba Histórico -> Logs de aplicativos na janela principal do programa após a desinfecção ter sido realizada. NÃO USE O FORMATO .XML PARA EXPORTAR O LOG. O log de Proteção é desnecessário para a análise, exporte sempre o log correto. Anexe este log na sua próxima resposta.
      NOTA: Se o MBAM encontrar arquivos que não consiga remover, poderá ter de reiniciar o PC (talvez mais de uma vez). Faça isso imediatamente, ao ser perguntado se quer reiniciar o PC.  
    • SharkCode, Basta reiniciar que a ferramenta abortará a verificação. Informe por gentileza a versão de arquitetura que utiliza (32 ou 64 bits).
    • leosouto, Selecione e copie o texto dentro do CODE [caixa cinza abaixo]. Abra o Bloco de notas e cole o que copiou e salve então na sua área de trabalho com o nome de fixlist. CreateRestorePoint: HKU\S-1-5-21-2108088397-3841326767-3016481523-1002\...\Run: [Norton Download Manager{NIS2250215-SHPD-FSD51083}] => C:\Users\Public\Downloads\Norton\{NIS2250215-SHPD-FSD51083}\FSDUI_Custom.exe /m /SHOWONECLICK /WIN10_UPGRADE "C:\Users\Leonardo\AppData\Local\Temp\{B442B9AC-4900-4D93-87A3-5200669CCB9D}\Upgrade.exe" <===== ATENÇÃO HKU\S-1-5-21-2108088397-3841326767-3016481523-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Norton Download Manager{NIS2250215-SHPD-FSD51083}] => C:\Users\Public\Downloads\Norton\{NIS2250215-SHPD-FSD51083}\FSDUI_Custom.exe /m /SHOWONECLICK /WIN10_UPGRADE "C:\Users\Leonardo\AppData\Local\Temp\{B442B9AC-4900-4D93-87A3-5200669CCB9D}\Upgrade.exe" <===== ATENÇÃO ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Nenhum Arquivo ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  Nenhum Arquivo ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  Nenhum Arquivo ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Nenhum Arquivo ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  Nenhum Arquivo ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  Nenhum Arquivo HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKU\S-1-5-21-2108088397-3841326767-3016481523-1002\Software\Microsoft\Internet Explorer\Main,Start Page = HKU\S-1-5-21-2108088397-3841326767-3016481523-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = SearchScopes: HKU\S-1-5-21-2108088397-3841326767-3016481523-1005 -> {2CEAD537-6521-4CCA-8CC9-B9FE1A227A36} URL = SearchScopes: HKU\S-1-5-21-2108088397-3841326767-3016481523-1005 -> {73cd434e-8e1e-46b6-bb8d-7dd935140717} URL = SearchScopes: HKU\S-1-5-21-2108088397-3841326767-3016481523-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {2CEAD537-6521-4CCA-8CC9-B9FE1A227A36} URL = SearchScopes: HKU\S-1-5-21-2108088397-3841326767-3016481523-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {2CEAD537-6521-4CCA-8CC9-B9FE1A227A36} URL = SearchScopes: HKU\S-1-5-21-2108088397-3841326767-3016481523-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {73cd434e-8e1e-46b6-bb8d-7dd935140717} URL = C:\Windows\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job C:\Windows\Tasks\{3CCF17A5-1B3E-417B-9407-3D8D400EEA36}.job Task: {DA195C65-C368-4C0F-9C3F-7460E2C312D6} - System32\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935} => C:\Users\Leonardo\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}\InstallHelp.exe [2015-05-15] () <==== ATENÇÃO Task: C:\WINDOWS\Tasks\{2A6A6C0A-6DF1-4478-807F-2FF9BF46B935}.job => C:\Users\Leonardo\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}\InstallHelp.exe›-RunCheckUpdate C:\Users\Leonardo\AppData\Roaming\{2F3AA0F6-976C-4b02-A66A-5D1DEA00811F}\CheckUpdate.exe <==== ATENÇÃO EmptyTemp: Execute o arquivo FRST64. Clique no botão Fix/Corrigir. Aguarde e ao final, o log Fixlog será salvo na sua área de trabalho. Anexe este log em sua próxima resposta.  
    • Boa tarde AlineR. Faça o download do ESET Online Scanner e salve na sua área de trabalho.
      http://download.eset.com/special/eos/ESETOnlineScanner_PTB.exe
      Execute o arquivo ESETOnlineScanner_PTB.exe. Clique em Eu aceito. Marque as opções abaixo: Ativar detecção de arquivos potencialmente indesejados. Clique em Configurações avançadas e marque: Ativar detecção de arquivos potencialmente inseguros Ativar detecção de arquivos suspeitos Rastrear arquivos Ativar tecnologia Anti-Stealth Limpar ameaças automaticamente Clique em Rastrear para iniciar o download da base de dados do antiví­rus onde ele vai atualizar por conta própria, e escanear o computador. Tenha paciência, o processo pode demorar horas dependendo da quantidade de arquivos presentes em seu PC.
      Quando o scan terminar, clique em Exibir lista de resultados e em seguida clique em Salvar em arquivo de texto... e salve o arquivo na sua área de trabalho. Cole o conteúdo (caso seja conteúdo pequeno) ou anexe o arquivo em sua próxima resposta. Obs: Se nada for encontrado, nenhum log será gerado clique em Concluir e feche o programa.  
  • Today's Birthdays

    1. Conceicao10
      Conceicao10
      (40 years old)
    2. FabiSanca
      FabiSanca
      (37 years old)
    3. fadgs
      fadgs
      (36 years old)
    4. Hiroshi
      Hiroshi
      (24 years old)
    View all
  • Upcoming Events

    No upcoming events found