cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado da Correção pela Farbar Recovery Scan Tool (x86) Versão:05-03-2016 01
Executado por Alice Mota (2016-03-19 22:57:20) Run:1
Executando a partir de C:\Users\Alice Mota\Desktop
Perfis Carregados: Alice Mota & DefaultAppPool (Perfis Disponíveis: Alice Mota & DefaultAppPool)
Modo da Inicialização: Normal

==============================================

fixlist Conteúdo:
*****************
start
CreateRestorePoint:
CloseProcesses:
HKLM\...\Run: [HomePageHelper] => c:\programdata\homepage.exe
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\...\Run: [Yeaplayer] => C:\Program Files\Yeaplayer\Yeaplayermd.exe /autostart
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\...\MountPoints2: {71c7f188-d9ab-11e5-8c60-90a4dea47742} - E:\Autorun.exe
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-2328873562-1806874857-566758227-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
2016-02-24 21:26 - 2016-02-24 21:26 - 00000000 ___DC C:\Users\Todos os Usuários\baidu
2016-02-24 21:26 - 2016-02-24 21:26 - 00000000 ___DC C:\Users\Alice Mota\AppData\Roaming\Baidu
2016-02-24 21:26 - 2016-02-24 21:26 - 00000000 ___DC C:\ProgramData\baidu
2016-02-24 18:59 - 2016-02-24 18:59 - 00000000 ___DC C:\Users\Public\Documents\Baidu
FirewallRules: [TCP Query User{0861B400-6A54-4EB2-8F68-CE17CAFC8D05}C:\users\alice mota\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\alice mota\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{9743235D-3574-45B0-AE5A-5ED2461F8FCA}C:\users\alice mota\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\alice mota\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{048B406D-59A9-4F8B-85CC-5204447AD8A9}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{CC93169E-A0FB-49C5-A3C0-FEAC32C5294D}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{BD4214F6-384A-4F69-BB7E-709B5BA72998}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{EB8499B8-ACE4-406F-9304-157ABF679D94}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{DE297A2A-84CA-45D5-81EE-B2D776B70A4F}] => (Allow) C:\Program Files\SprgFiles\SprgFiles.exe
FirewallRules: [{97346896-675D-4064-94A7-46A851712F9F}] => (Allow) C:\Program Files\SprgFiles\SprgFiles.exe
FirewallRules: [{2CD0B02F-ED71-4F55-90DD-90EFC400A161}] => (Allow) C:\Program Files\SprgFiles\downloader.exe
FirewallRules: [{578B6430-137C-41AA-86D1-E5EA78347A34}] => (Allow) C:\Program Files\SprgFiles\downloader.exe
HOSTS:
Removeproxy:
CMD: bitsadmin /reset /allusers
CMD: ipconfig /flushdns
emptytemp:
end
*****************

Ponto de Restauração criado com sucesso.
Processos fechados com sucesso.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HomePageHelper => valor não encontrado (a).
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Yeaplayer => valor removido (a) com sucesso.
"HKU\S-1-5-21-2328873562-1806874857-566758227-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{71c7f188-d9ab-11e5-8c60-90a4dea47742}" => chave removido (a) com sucesso.
HKCR\CLSID\{71c7f188-d9ab-11e5-8c60-90a4dea47742} => chave não encontrado (a).
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => valor restaurado com sucesso
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => valor restaurado com sucesso
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => valor restaurado com sucesso
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => valor restaurado com sucesso
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => valor restaurado com sucesso
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page => valor removido (a) com sucesso.
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => valor restaurado com sucesso
"HKU\S-1-5-21-2328873562-1806874857-566758227-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => chave removido (a) com sucesso.
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => chave não encontrado (a).
C:\Users\Todos os Usuários\baidu => movido com sucesso
C:\Users\Alice Mota\AppData\Roaming\Baidu => movido com sucesso
"C:\ProgramData\baidu" => não encontrado (a).
C:\Users\Public\Documents\Baidu => movido com sucesso
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0861B400-6A54-4EB2-8F68-CE17CAFC8D05}C:\users\alice mota\appdata\roaming\utorrent\utorrent.exe => valor não encontrado (a).
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9743235D-3574-45B0-AE5A-5ED2461F8FCA}C:\users\alice mota\appdata\roaming\utorrent\utorrent.exe => valor não encontrado (a).
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{048B406D-59A9-4F8B-85CC-5204447AD8A9} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CC93169E-A0FB-49C5-A3C0-FEAC32C5294D} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BD4214F6-384A-4F69-BB7E-709B5BA72998} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EB8499B8-ACE4-406F-9304-157ABF679D94} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DE297A2A-84CA-45D5-81EE-B2D776B70A4F} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{97346896-675D-4064-94A7-46A851712F9F} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2CD0B02F-ED71-4F55-90DD-90EFC400A161} => valor removido (a) com sucesso.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{578B6430-137C-41AA-86D1-E5EA78347A34} => valor removido (a) com sucesso.
C:\Windows\System32\Drivers\etc\hosts => movido com sucesso
Hosts restaurado com sucesso.

========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => valor removido (a) com sucesso.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => valor removido (a) com sucesso.
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => valor removido (a) com sucesso.
HKU\S-1-5-21-2328873562-1806874857-566758227-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => valor removido (a) com sucesso.


========= Fim de RemoveProxy: =========


========= bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

{5AF56EF1-8DD6-4598-8946-6852FB7B5702} canceled.
1 out of 1 jobs canceled.

========= Fim de CMD: =========


========= ipconfig /flushdns =========


Configura��o de IP do Windows

Libera��o do Cache do DNS Resolver bem-sucedida.

========= Fim de CMD: =========

EmptyTemp: => 540.7 MB de dados temporários Removidos.


O sistema precisou ser reiniciado.

==== Fim de Fixlog 22:59:34 ====

Publicité


Signaler le contenu de ce document

Publicité