# AdwCleaner v6.044 - Relatório criado 07/03/2017 às 21:23:31 # Atualizado em 28/02/2017 por Malwarebytes # Banco de dados : 2017-03-07.1 [Servidor] # Sistema operacional : Windows 10 Pro (X64) # Usuário : PAULO - PC-QUARTO # Executando de : C:\Users\PAULO\Desktop\adwcleaner_6.044.exe # Modo: Limpo # Apoio : https://www.malwarebytes.com/support ***** [ Serviços ] ***** [-] Serviço excluído:SpyHunter 4 Service [-] Serviço excluído:esgiguard [-] Serviço excluído:EsgScanner ***** [ Pastas ] ***** [-] Pasta excluída:C:\Users\PAULO\AppData\Roaming\Enigma Software Group [-] Pasta excluída:C:\Program Files\Enigma Software Group [-] Pasta excluída:C:\sh4ldr ***** [ Arquivos ] ***** [-] Arquivo excluído:C:\Users\PAULO\Desktop\SpyHunter.lnk [-] Arquivo excluído:C:\WINDOWS\SysNative\drivers\EsgScanner.sys ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Atalhos ] ***** ***** [ Atividades agendadas ] ***** ***** [ Registro ] ***** [-] Chave excluída:HKLM\SOFTWARE\ScreenShot [-] Chave excluída:HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyHunter [-] Chave excluída:[x64] HKLM\SOFTWARE\EnigmaSoftwareGroup [-] Chave excluída:HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space [-] Chave excluída:HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space [#] Chave excluída na reinicialização:[x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space [#] Chave excluída na reinicialização:[x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space ***** [ Verificando navegadores ... ] ***** [-] [C:\Users\PAULO\AppData\Local\Chromium\User Data\Default\Web data] [Search Provider] Eliminado:yahoo! powered [-] [C:\Users\PAULO\AppData\Local\Chromium\User Data\Default] [startup_urls] Eliminado:hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=mnn_ir_16_52¶m1=1¶m2=f%3D7%26b%3Dchmm%26cc%3Dbr%26pa%3Dminio%26cd%3D2XzuyEtN2Y1L1QzuzytDtB0BtAyE0FtAyC0FtDzzyDyD0AyDtN0D0Tzu0StCzztBtAtN1L2XzutAtFtByEtFtByBtFyDzztN1L1Czu1BzztN1L1G1B1V1N2Y1L1Qzu2SyE0Ezz0DtD0CtA0BtGtDtC0BtBtGyBtBtA0FtGyB0EyDtBtGyE0FyDtByB0FtC0Ezy0A0AtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0F0F0DtDzzyE0EyEtGyEtC0F0CtGyE0FtBtDtG0A0F0CyBtG0D0DtByB0BtAzz0AyDzytB0D2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtCtBzytC%26cr%3D1687860151%26a%3Dmnn_ir_16_52%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro [-] [C:\Users\PAULO\AppData\Local\Chromium\User Data\Default] [homepage] Eliminado:hxxps://br.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=mnn_ir_16_52¶m1=1¶m2=f%3D1%26b%3Dchmm%26cc%3Dbr%26pa%3Dminio%26cd%3D2XzuyEtN2Y1L1QzuzytDtB0BtAyE0FtAyC0FtDzzyDyD0AyDtN0D0Tzu0StCzztBtAtN1L2XzutAtFtByEtFtByBtFyDzztN1L1Czu1BzztN1L1G1B1V1N2Y1L1Qzu2SyE0Ezz0DtD0CtA0BtGtDtC0BtBtGyBtBtA0FtGyB0EyDtBtGyE0FyDtByB0FtC0Ezy0A0AtC2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0F0F0DtDzzyE0EyEtGyEtC0F0CtGyE0FtBtDtG0A0F0CyBtG0D0DtByB0BtAzz0AyDzytB0D2QtN0A0LzutBtN1B2Z1V1T1S1NzutCtCtBzytC%26cr%3D1687860151%26a%3Dmnn_ir_16_52%26os_ver%3D10.0%26os%3DWindows%2B10%2BPro [-] [C:\Users\PAULO\AppData\Local\Google\Chrome\User Data\Profile 1\Web data] [Search Provider] Eliminado:br.ask.com ************************* :: "Image File Execution Options" chaves excluídas :: Políticas do IE excluídas :: Políticas do Chrome excluídas !! As preferências do Chrome não são redefinidas:C:\Users\PAULO\AppData\Local\Google\Chrome\User Data\Default :: As preferências do Chrome são redefinidas:C:\Users\PAULO\AppData\Local\Google\Chrome\User Data\Profile 1 :: Arquivo de hosts cancelado ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [4158 Bytes] - [07/03/2017 21:23:31] C:\AdwCleaner\AdwCleaner[S0].txt - [3202 Bytes] - [07/03/2017 21:21:28] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [4304 Bytes] ##########