Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão:12-06-2016 01 Executado por Humberto (2016-06-12 13:06:59) Run:1 Executando a partir de C:\Users\Humberto\Desktop Perfis Carregados: Humberto (Perfis Disponíveis: Humberto & Regina & Convidado & DefaultAppPool) Modo da Inicialização: Normal ============================================== fixlist Conteúdo: ***************** start CloseProcesses: HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.oursurfing.com/web/?type=ds&ts=1435536464&z=ee09fb238f0ae603dd92865g2zec1w4w9c6qcz0q8c&from=2sq1&uid=ST31000524AS_9VPBW68XXXXX9VPBW68X&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.oursurfing.com/web/?type=ds&ts=1435536464&z=ee09fb238f0ae603dd92865g2zec1w4w9c6qcz0q8c&from=2sq1&uid=ST31000524AS_9VPBW68XXXXX9VPBW68X&q={searchTerms} HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yandex.ru/?win=197&clid=2100767-002 SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://br.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_secureddownload_15_28¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtAtDyCyByByDzy0F0Azz0EyE0E0AtN0D0Tzu0StCtByBzztN1L2XzutAtFtCtDtFtCtDtFtCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDtC0C0AtA0AyE0CtGtByByBtCtG0B0B0ByEtGyCtA0FyDtG0FyEtCyDtCyCyDzytC0CyC0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEtA0A0BtC0CzyyCtGtAyD0E0EtGyE0D0A0EtGzzyCtB0BtGyByE0AyE0CtA0ByDtCtAyEyC2QtN0A0LzuyE%26cr%3D1622668225%26a%3Dwncy_secureddownload_15_28%26os%3DWindows 7 Professional&p={searchTerms} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://br.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_secureddownload_15_28¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtAtDyCyByByDzy0F0Azz0EyE0E0AtN0D0Tzu0StCtByBzztN1L2XzutAtFtCtDtFtCtDtFtCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDtC0C0AtA0AyE0CtGtByByBtCtG0B0B0ByEtGyCtA0FyDtG0FyEtCyDtCyCyDzytC0CyC0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEtA0A0BtC0CzyyCtGtAyD0E0EtGyE0D0A0EtGzzyCtB0BtGyByE0AyE0CtA0ByDtCtAyEyC2QtN0A0LzuyE%26cr%3D1622668225%26a%3Dwncy_secureddownload_15_28%26os%3DWindows 7 Professional&p={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://yandex.ru/search/?win=197&clid=2100768-002&text={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> DBDC3B28AD0623D4123F68A187CFC662 URL = hxxp://br.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_secureddownload_15_28¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtAtDyCyByByDzy0F0Azz0EyE0E0AtN0D0Tzu0StCtByBzztN1L2XzutAtFtCtDtFtCtDtFtCtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDtC0C0AtA0AyE0CtGtByByBtCtG0B0B0ByEtGyCtA0FyDtG0FyEtCyDtCyCyDzytC0CyC0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyEtA0A0BtC0CzyyCtGtAyD0E0EtGyE0D0A0EtGzzyCtB0BtGyByE0AyE0CtA0ByDtCtAyEyC2QtN0A0LzuyE%26cr%3D1622668225%26a%3Dwncy_secureddownload_15_28%26os%3DWindows 7 Professional&p={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://yandex.ru/search/?win=197&clid=2100768-002&text={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=2sq1&utm_campaign=install_ie&utm_content=ds&from=2sq1&uid=ST31000524AS_9VPBW68XXXXX9VPBW68X&ts=1435536524&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=2sq1&utm_campaign=install_ie&utm_content=ds&from=2sq1&uid=ST31000524AS_9VPBW68XXXXX9VPBW68X&ts=1435536524&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=2sq1&utm_campaign=install_ie&utm_content=ds&from=2sq1&uid=ST31000524AS_9VPBW68XXXXX9VPBW68X&ts=1435536524&type=default&q={searchTerms} BHO: Sem Nome -> {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} -> Nenhum Arquivo BHO-x32: Sem Nome -> {D5FEC983-01DB-414A-9456-AF95AC9ED7B5} -> Nenhum Arquivo Toolbar: HKLM - Sem Nome - {91397D20-1446-11D4-8AF4-0040CA1127B6} - Nenhum Arquivo Toolbar: HKLM-x32 - Sem Nome - {91397D20-1446-11D4-8AF4-0040CA1127B6} - Nenhum Arquivo Toolbar: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> Sem Nome - {91397D20-1446-11D4-8AF4-0040CA1127B6} - Nenhum Arquivo Edge HomeButtonPage: HKU\S-1-5-21-2286446856-2293430530-2563395809-1001 -> hxxp://www.yandex.ru/?win=197&clid=2100767-002 FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-06-09] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF CHR HomePage: Default -> hxxp://www.yandex.ru/?__PARAM__from=chromehp CHR DefaultSearchURL: Default -> hxxp://yandex.ru/yandsearch?__PARAM__from=chromesearch&text={searchTerms} CHR DefaultSearchKeyword: Default -> yandex.ru CHR DefaultSuggestURL: Default -> hxxp://suggest.yandex.net/suggest-ff.cgi?uil=ru&part={searchTerms} S3 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] U3 idsvc; não ImagePath S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] 2016-06-11 11:39 - 2016-06-11 11:40 - 00000000 ____D C:\Hijackthis 2016-06-09 18:17 - 2016-06-09 21:25 - 00388608 _____ (Trend Micro Inc.) C:\Users\Humberto\Downloads\HiJackThis.exe Task: {0FF3C7D2-9990-40B9-B6AB-5363F2002025} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Nenhum Arquivo <==== ATENÇÃO Task: {342D8D68-3C15-4D3F-BB95-B97ED2A2E246} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Nenhum Arquivo <==== ATENÇÃO Task: {5C9D5E46-8600-4531-B55C-81FAA9042A84} - System32\Tasks\WinThruster_UPDATES => C:\Program Files (x86)\WinThruster\WinThruster.exe [2012-10-15] (Solvusoft Corporation) <==== ATENÇÃO Task: {6BCB1F17-3E45-4063-803F-8713C7C8EA55} - System32\Tasks\WinThruster_DEFAULT => C:\Program Files (x86)\WinThruster\WinThruster.exe [2012-10-15] (Solvusoft Corporation) <==== ATENÇÃO Task: {71ADDB44-3EA4-4AEA-948E-D4BF976F8DAC} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Nenhum Arquivo <==== ATENÇÃO Task: {762CC1F5-5D31-435A-A7C5-9867F6B05F29} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Nenhum Arquivo <==== ATENÇÃO Task: {8618D220-A679-4D96-83C5-5725A527A686} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Nenhum Arquivo <==== ATENÇÃO Task: {899EBF4D-A3D8-4154-964B-59E14A7CA8B9} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Nenhum Arquivo <==== ATENÇÃO Task: {B3E3725C-5F87-4E29-B11B-C44122487D2E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Nenhum Arquivo <==== ATENÇÃO Task: {BF4859A5-271D-4000-BE14-5DCE5592F58B} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Nenhum Arquivo <==== ATENÇÃO Task: {D0001D45-FACA-4048-8DB2-367959EA5907} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Nenhum Arquivo <==== ATENÇÃO Task: {EB118FEB-D317-436D-9EBB-97B95696986C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Nenhum Arquivo <==== ATENÇÃO Task: {F3AB1542-1D3F-417C-B1C8-8153DFCA652C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Nenhum Arquivo <==== ATENÇÃO Task: C:\WINDOWS\Tasks\WinThruster_DEFAULT.job => C:\Program Files (x86)\WinThruster\WinThruster.exe <==== ATENÇÃO Task: C:\WINDOWS\Tasks\WinThruster_UPDATES.job => C:\Program Files (x86)\WinThruster\WinThruster.exe <==== ATENÇÃO ShortcutWithArgument: C:\Users\Humberto\AppData\Local\Microsoft\Windows\Application Shortcuts\Chrome\Яндекс.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yandex.ru/?win=197&clid=2100779-002 ShortcutWithArgument: C:\Users\Humberto\AppData\Local\Microsoft\Windows\Application Shortcuts\Chrome\Яндекс.Почта.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://mail.yandex.ru/?win=197&clid=2100779-002&from=dist_tl ShortcutWithArgument: C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome\PDF Viewer (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=jccchjobcggajhnmckffhcahkkbioifn CreateRestorePoint: EmptyTemp: Reboot: end ***************** Processos fechados com sucesso. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => valor restaurado com sucesso HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => valor restaurado com sucesso HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => valor restaurado com sucesso HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => valor restaurado com sucesso "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => chave removido (a) com sucesso. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => chave não encontrado (a). HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => valor removido (a) com sucesso. "HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\DBDC3B28AD0623D4123F68A187CFC662" => chave removido (a) com sucesso. HKCR\CLSID\DBDC3B28AD0623D4123F68A187CFC662 => chave não encontrado (a). "HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => chave removido (a) com sucesso. HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => chave não encontrado (a). "HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => chave removido (a) com sucesso. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => chave não encontrado (a). "HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" => chave removido (a) com sucesso. HKCR\CLSID\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} => chave não encontrado (a). "HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146}" => chave removido (a) com sucesso. HKCR\CLSID\{2f23ab71-4ac6-41f2-a955-ea576e553146} => chave não encontrado (a). "HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}" => chave removido (a) com sucesso. HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => chave não encontrado (a). "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5}" => chave removido (a) com sucesso. HKCR\CLSID\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5} => chave não encontrado (a). "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5}" => chave removido (a) com sucesso. HKCR\Wow6432Node\CLSID\{D5FEC983-01DB-414A-9456-AF95AC9ED7B5} => chave não encontrado (a). HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{91397D20-1446-11D4-8AF4-0040CA1127B6} => valor removido (a) com sucesso. HKCR\CLSID\{91397D20-1446-11D4-8AF4-0040CA1127B6} => chave não encontrado (a). HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{91397D20-1446-11D4-8AF4-0040CA1127B6} => valor removido (a) com sucesso. HKCR\Wow6432Node\CLSID\{91397D20-1446-11D4-8AF4-0040CA1127B6} => chave não encontrado (a). HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{91397D20-1446-11D4-8AF4-0040CA1127B6} => valor removido (a) com sucesso. HKCR\CLSID\{91397D20-1446-11D4-8AF4-0040CA1127B6} => chave não encontrado (a). HKU\S-1-5-21-2286446856-2293430530-2563395809-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Main\\HomeButtonPage => valor removido (a) com sucesso. HKLM\Software\Mozilla\Firefox\Extensions\\sp@avast.com => valor removido (a) com sucesso. "C:\Program Files\AVAST Software\Avast\SafePrice\FF" pasta mover: Não pode ser movido "C:\Program Files\AVAST Software\Avast\SafePrice\FF" => Agendado para ser movido na reinicialização. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\sp@avast.com => valor removido (a) com sucesso. Chrome HomePage => removido (a) com sucesso. Chrome DefaultSearchURL => removido (a) com sucesso. Chrome DefaultSearchKeyword => removido (a) com sucesso. Chrome DefaultSuggestURL => removido (a) com sucesso. AvastVBoxSvc => serviço Não pode ser removido idsvc => serviço removido (a) com sucesso. VBoxAswDrv => serviço Não pode ser removido C:\Hijackthis => movido com sucesso "C:\Users\Humberto\Downloads\HiJackThis.exe" => não encontrado (a). "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0FF3C7D2-9990-40B9-B6AB-5363F2002025}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0FF3C7D2-9990-40B9-B6AB-5363F2002025}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{342D8D68-3C15-4D3F-BB95-B97ED2A2E246}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{342D8D68-3C15-4D3F-BB95-B97ED2A2E246}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => chave removido (a) com sucesso. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C9D5E46-8600-4531-B55C-81FAA9042A84} => chave não encontrado (a). C:\WINDOWS\System32\Tasks\WinThruster_UPDATES => não encontrado (a). HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinThruster_UPDATES => chave não encontrado (a). HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6BCB1F17-3E45-4063-803F-8713C7C8EA55} => chave não encontrado (a). C:\WINDOWS\System32\Tasks\WinThruster_DEFAULT => não encontrado (a). HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WinThruster_DEFAULT => chave não encontrado (a). "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{71ADDB44-3EA4-4AEA-948E-D4BF976F8DAC}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71ADDB44-3EA4-4AEA-948E-D4BF976F8DAC}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{762CC1F5-5D31-435A-A7C5-9867F6B05F29}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{762CC1F5-5D31-435A-A7C5-9867F6B05F29}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8618D220-A679-4D96-83C5-5725A527A686}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8618D220-A679-4D96-83C5-5725A527A686}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{899EBF4D-A3D8-4154-964B-59E14A7CA8B9}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{899EBF4D-A3D8-4154-964B-59E14A7CA8B9}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B3E3725C-5F87-4E29-B11B-C44122487D2E}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B3E3725C-5F87-4E29-B11B-C44122487D2E}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BF4859A5-271D-4000-BE14-5DCE5592F58B}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BF4859A5-271D-4000-BE14-5DCE5592F58B}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0001D45-FACA-4048-8DB2-367959EA5907}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0001D45-FACA-4048-8DB2-367959EA5907}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EB118FEB-D317-436D-9EBB-97B95696986C}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB118FEB-D317-436D-9EBB-97B95696986C}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F3AB1542-1D3F-417C-B1C8-8153DFCA652C}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3AB1542-1D3F-417C-B1C8-8153DFCA652C}" => chave removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => chave removido (a) com sucesso. C:\WINDOWS\Tasks\WinThruster_DEFAULT.job => não encontrado (a). C:\WINDOWS\Tasks\WinThruster_UPDATES.job => não encontrado (a). C:\Users\Humberto\AppData\Local\Microsoft\Windows\Application Shortcuts\Chrome\Яндекс.lnk => Atalho argumento removido (a) com sucesso.. C:\Users\Humberto\AppData\Local\Microsoft\Windows\Application Shortcuts\Chrome\Яндекс.Почта.lnk => Atalho argumento removido (a) com sucesso.. C:\Users\Humberto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicativos do Google Chrome\PDF Viewer (1).lnk => Atalho argumento removido (a) com sucesso.. Ponto de Restauração criado com sucesso. EmptyTemp: => 664.1 MB de dados temporários Removidos. Resultado dos arquivos que foram agendados para serem movidos (Modo de Inicialização: Normal) (Data&Hora: 2016-06-12 13:15:57) "C:\Program Files\AVAST Software\Avast\SafePrice\FF" => Não pode ser movido ==== Fim de Fixlog 13:16:00 ====