Resultado da Correção pela Farbar Recovery Scan Tool (x64) Versão: 09-12-2017 Executado por shaki (11-12-2017 11:07:23) Run:1 Executando a partir de C:\Users\shaki\Desktop Perfis Carregados: shaki (Perfis Disponíveis: shaki) Modo da Inicialização: Normal ============================================== fixlist Conteúdo: ***************** start HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\...\MountPoints2: {43798c84-24ac-11e7-bf37-5cc9d37061b4} - "E:\LG_PC_Programs.exe" SearchScopes: HKU\S-1-5-21-3464429914-1347538951-3989033571-1001 -> DefaultScope {0D17669F-2EE3-44DE-BD1D-E4FC9A146336} URL = SearchScopes: HKU\S-1-5-21-3464429914-1347538951-3989033571-1001 -> {0D17669F-2EE3-44DE-BD1D-E4FC9A146336} URL = BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Nenhum Arquivo BHO-x32: Sem Nome -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Nenhum Arquivo BHO-x32: Sem Nome -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> Nenhum Arquivo Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Nenhum Arquivo ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => -> Nenhum Arquivo ContextMenuHandlers1: [UnLockerMenu] -> {A6FF0E3A-8437-482C-8E04-4F9E15C57538} => -> Nenhum Arquivo ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => -> Nenhum Arquivo ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Nenhum Arquivo ContextMenuHandlers1_S-1-5-21-3464429914-1347538951-3989033571-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => -> Nenhum Arquivo ContextMenuHandlers5_S-1-5-21-3464429914-1347538951-3989033571-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => -> Nenhum Arquivo Task: {0CA0F1A2-BE02-483E-BD5A-C34C3D7DE81D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated) Task: {5E928CA3-720B-431B-BF38-ABA5B2610F42} - System32\Tasks\SUPERAntiSpyware Scheduled Task 566a6ecf-c993-4fb8-a469-e17ca71e620d => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com) Task: {7D770010-A4B3-48EC-AAC7-738495CDB47F} - \Microsoft\Windows\UNP\RunCampaignManager -> Nenhum Arquivo <==== ATEN��O Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 566a6ecf-c993-4fb8-a469-e17ca71e620d.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task c1a092a2-9dca-4058-93eb-541aba9caae9.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe AlternateDataStreams: C:\WINDOWS\system32\Drivers\wsddfac.sys:X5ZN8aGXs4 [2410] EmptyTemp: Reboot: end ***************** "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon" => removido (a) com sucesso. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService" => removido (a) com sucesso. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon" => removido (a) com sucesso. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MBAMService" => removido (a) com sucesso. "HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{43798c84-24ac-11e7-bf37-5cc9d37061b4}" => removido (a) com sucesso. HKLM\Software\Classes\CLSID\{43798c84-24ac-11e7-bf37-5cc9d37061b4} => chave não encontrado (a) HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => valor removido (a) com sucesso. "HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0D17669F-2EE3-44DE-BD1D-E4FC9A146336}" => removido (a) com sucesso. HKLM\Software\Classes\CLSID\{0D17669F-2EE3-44DE-BD1D-E4FC9A146336} => chave não encontrado (a) "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}" => removido (a) com sucesso. "HKLM\Software\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}" => removido (a) com sucesso. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}" => removido (a) com sucesso. HKLM\Software\Wow6432Node\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => chave não encontrado (a) "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}" => removido (a) com sucesso. HKLM\Software\Wow6432Node\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} => chave não encontrado (a) "HKLM\Software\Classes\PROTOCOLS\Handler\sacore" => removido (a) com sucesso. "HKLM\Software\Classes\CLSID\{5513F07E-936B-4E52-9B00-067394E91CC5}" => removido (a) com sucesso. "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\AABdzCtx" => removido (a) com sucesso. HKLM\Software\Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC} => chave não encontrado (a) "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\UnLockerMenu" => removido (a) com sucesso. HKLM\Software\Classes\CLSID\{A6FF0E3A-8437-482C-8E04-4F9E15C57538} => chave não encontrado (a) "HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\AABdzCtx" => removido (a) com sucesso. HKLM\Software\Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC} => chave não encontrado (a) "HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui" => removido (a) com sucesso. HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => chave não encontrado (a) "HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\Software\Classes\*\ShellEx\ContextMenuHandlers\AABdzCtx" => removido (a) com sucesso. HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\SOFTWARE\Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC} => chave não encontrado (a) "HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\AABdzCtx" => removido (a) com sucesso. HKU\S-1-5-21-3464429914-1347538951-3989033571-1001\SOFTWARE\Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC} => chave não encontrado (a) "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0CA0F1A2-BE02-483E-BD5A-C34C3D7DE81D}" => removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0CA0F1A2-BE02-483E-BD5A-C34C3D7DE81D}" => removido (a) com sucesso. C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => movido com sucesso "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => removido (a) com sucesso. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5E928CA3-720B-431B-BF38-ABA5B2610F42} => chave não encontrado (a) C:\WINDOWS\System32\Tasks\SUPERAntiSpyware Scheduled Task 566a6ecf-c993-4fb8-a469-e17ca71e620d => não encontrado (a). HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SUPERAntiSpyware Scheduled Task 566a6ecf-c993-4fb8-a469-e17ca71e620d => chave não encontrado (a) "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7D770010-A4B3-48EC-AAC7-738495CDB47F}" => removido (a) com sucesso. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7D770010-A4B3-48EC-AAC7-738495CDB47F}" => removido (a) com sucesso. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager => chave não encontrado (a) C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 566a6ecf-c993-4fb8-a469-e17ca71e620d.job => não encontrado (a). C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task c1a092a2-9dca-4058-93eb-541aba9caae9.job => não encontrado (a). C:\WINDOWS\system32\Drivers\wsddfac.sys => ":X5ZN8aGXs4" ADS removido (a) com sucesso. =========== EmptyTemp: ========== BITS transfer queue => 7888896 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 55481956 B Java, Flash, Steam htmlcache => 352824127 B Windows/system/drivers => 18783976 B Edge => 13164154 B Chrome => 476758370 B Firefox => 5298620 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 528138 B NetworkService => 207396 B shaki => 189494528 B RecycleBin => 0 B EmptyTemp: => 1 GB de dados temporários Removidos. ================================ O sistema precisou ser reiniciado. ==== Fim de Fixlog 11:10:36 ====