0% found this document useful (0 votes)
126 views

AdwCleaner (S4)

This document is a report from an AdwCleaner scan that found various malware-related folders, files, registry keys, and scheduled tasks on the user's Windows 7 system. Specifically, it detected 13 suspicious folders, 6 files, no DLLs, 10 scheduled tasks, and over 100 registry keys that could be associated with adware, PUPs, or other potentially unwanted programs. The report provides details on the locations and names of the identified issues found during the scan.
Copyright
© © All Rights Reserved
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
126 views

AdwCleaner (S4)

This document is a report from an AdwCleaner scan that found various malware-related folders, files, registry keys, and scheduled tasks on the user's Windows 7 system. Specifically, it detected 13 suspicious folders, 6 files, no DLLs, 10 scheduled tasks, and over 100 registry keys that could be associated with adware, PUPs, or other potentially unwanted programs. The report provides details on the locations and names of the identified issues found during the scan.
Copyright
© © All Rights Reserved
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 14

#

#
#
#
#
#
#
#

AdwCleaner v5.013 - Relatrio criado 18/10/2015 s 02:42:46


Atualizado 09/10/2015 por Xplode
Banco de dados : 2015-10-16.1 [Servidor]
Sistema operacional : Windows 7 Professional (x64)
Usurio : SIL - SIL-PC
Executando de : C:\Benazzi\04 Programa\adwclear\adwcleaner_5.013.exe
Opo : Verificar
Apoio : http://toolslib.net/forum

***** [ Servios ] *****


***** [ Pastas ] *****
Pasta Encontrado : C:\rei
Pasta Encontrado : C:\Program Files\Reimage
Pasta Encontrado : C:\Program Files\shopperz
Pasta Encontrado : C:\Program Files\shopperz
Pasta Encontrado : C:\Program Files (x86)\jogotempo
Pasta Encontrado : C:\Program Files (x86)\PricieMinus
Pasta Encontrado : C:\ProgramData\WindowsMangerProtect
Pasta Encontrado : C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
Pasta Encontrado : C:\ProgramData\{e1105532-1d96-d774-e110-055321d954c8}
Pasta Encontrado : C:\Users\SIL\AppData\Local\Google\Chrome\User Data\Default\Ex
tensions\pflphaooapbgpeakohlggbpidpppgdff
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\OpenCandy
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\MailUpdate
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\ntsvc
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\Pro
grams\PriceMetr
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\Pro
grams\PriceMetr
Pasta Encontrado : C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Defaul
t\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Pasta Encontrado : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\ntsv
c
***** [ Arquivos ] *****
Arquivo Encontrado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\P
rograms\Play Games Online.url
Arquivo Encontrado : C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0
ivw.default\user.js
Arquivo Encontrado : C:\Windows\Reimage.ini
Arquivo Encontrado : C:\Windows\SysNative\SVCProxyOff.ini
Arquivo Encontrado : C:\Windows\SysWOW64\SVCProxyOff.ini
***** [ DLLs ] *****
***** [ Atalhos ] *****
***** [ Tarefas agendadas ] *****
Tarefa
Tarefa
Tarefa
Tarefa
Tarefa

Encontrada
Encontrada
Encontrada
Encontrada
Encontrada

:
:
:
:
:

AmiUpdXp
Binkiland
DriverEasy Scheduled Scan
pricemeterdownloader
Reimage Reminder

Tarefa Encontrada : ReimageUpdater


Tarefa Encontrada : Speedial
Tarefa Encontrada : Systweak Support Dock
***** [ Registro ] *****
Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Chave Encontrada : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\W
indowsMangerProtect
Chave Encontrada : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\I
ePluginService
Chave Encontrada : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\W
pm
Valor Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [bobrowser
]
Chave Encontrada : HKCU\Software\Mozilla\Extends
Chave Encontrada : HKLM\SOFTWARE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\binkila
nd.exe
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLE
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLE.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEFIELDS
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEFIELDS.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEHOLDER
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEHOLDER.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.LSPLOGIC
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.LSPLOGIC.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.READONLYMANAGER
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.READONLYMANAGER.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATACONTAINER.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATACONTROLLER
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATACONTROLLER.1
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATASTATISTICS
Chave Encontrada : HKLM\SOFTWARE\CLASSES\PCPROXY.DATASTATISTICS.1
Chave Encontrada : HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
pdate Browser Good
Chave Encontrada : HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
pdate ScanTack
Chave Encontrada : HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
til Browser Good
Chave Encontrada : HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
til ScanTack
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mbot_br_6
46]
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD
72BD}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{3E28F712-0D6C-4EE3-AC8C-8F060F5D
7C33}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E
977B}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C
3DA4}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{6CE321DA-DC11-45C6-A0FC-4E8A7D97
8ABC}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C
4D96}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{6EEBC7FF-67DA-4B90-9251-C2C5696E
4B48}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{74137531-80F7-406F-9543-7D11385F
A8C8}
Chave Encontrada : HKLM\SOFTWARE\Classes\CLSID\{832599B2-55BF-4437-8F3E-030CF5AE

B262}
Chave Encontrada
54D9}
Chave Encontrada
D3CD}
Chave Encontrada
181B}
Chave Encontrada
7A49}
Chave Encontrada
D8E8}
Chave Encontrada
D762}
Chave Encontrada
C7E6}
Chave Encontrada
4EE8}
Chave Encontrada
4376}
Chave Encontrada
964B}
Chave Encontrada
C4AD}
Chave Encontrada
D2D9}
Chave Encontrada
5C44}
Chave Encontrada
785A}
Chave Encontrada
EF90}
Chave Encontrada
6C4AF54D}
Chave Encontrada
98429D6C}
Chave Encontrada
E0D8CD93}
Chave Encontrada
52CFE8B9}
Chave Encontrada
A4768F5C}
Chave Encontrada
CEA9C4F2}
Chave Encontrada
57FAD67B}
Chave Encontrada
029ECECB}
Chave Encontrada
C6DB2982}
Chave Encontrada
4CCABFCE}
Chave Encontrada
D5EFD2B9}
Chave Encontrada
E4761B77}
Chave Encontrada
8F63F377}
Chave Encontrada
418B5672}
Chave Encontrada

: HKLM\SOFTWARE\Classes\CLSID\{AE91F9CE-0900-4E2A-B673-F3F6E4FC
: HKLM\SOFTWARE\Classes\CLSID\{B1A429DB-FB06-4645-B7C0-0CC405EA
: HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6
: HKLM\SOFTWARE\Classes\CLSID\{DD67706E-819E-4EBD-BF8D-6D6147CC
: HKLM\SOFTWARE\Classes\CLSID\{F62A4AF9-58B4-4FEC-89CC-D717A547
: HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9
: HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245D
: HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E2
: HKLM\SOFTWARE\Classes\CLSID\{363F46BE-27B4-4C8D-99E7-B1E049B8
: HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2
: HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4
: HKLM\SOFTWARE\Classes\CLSID\{90A9B7D2-3794-45EA-9E23-140E3938
: HKLM\SOFTWARE\Classes\CLSID\{A753A1EC-973E-4718-AF8E-A3F554D4
: HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF
: HKLM\SOFTWARE\Classes\CLSID\{02AFA80F-4BEE-41FD-8572-214B58A9
: HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7C-28D1
: HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB1-4998
: HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256
: HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A038-16A3
: HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7F
: HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90FE-F5E0
: HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D21
: HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8B-5A6F
: HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFF
: HKLM\SOFTWARE\Classes\Interface\{7697BC38-D0FA-454B-AC75-968B
: HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A936-FBA9
: HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D47-E2D3
: HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A6
: HKLM\SOFTWARE\Classes\Interface\{ED0D2C81-7DB5-4599-B7C0-1033
: HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371

C6271785}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F
6DC2B3}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3D
DA79E1}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Brows
er Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{197
3D53B-7311-45D7-8270-F44571C041A0}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C72
3A437-2EAF-466D-A95B-3FA0966BF88C}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{109
21475-03CE-4E04-90CE-E2E7EF20C814}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{
C723A437-2EAF-466D-A95B-3FA0966BF88C}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{
10921475-03CE-4E04-90CE-E2E7EF20C814}
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\C
LSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}]
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\C
LSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\C
LSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-16
9048547C23}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{10921475-03CE-4E04-90CE-E2
E7EF20C814}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E
1-1E08D38605D2}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF0
2-3F05EEFDE792}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7
C-28D16C4AF54D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB
1-499898429D6C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-804
8-F256E0D8CD93}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A03
8-16A352CFE8B9}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946
C-5FA5ABCF506B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81C
E-65EFEE41E42D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1D
E-DE7FA4768F5C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90F
E-F5E0CEA9C4F2}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3F
A-2D2157FAD67B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86F
C-08280C99C74D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC6
2-1856B1DA5A24}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8
B-5A6F029ECECB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B30
1-ECFFC6DB2982}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{7697BC38-D0FA-454B-AC7
5-968B4CCABFCE}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D

0-62B8235C6044}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A93
6-FBA9D5EFD2B9}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B18
9-3C389BA140BB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D4
7-E2D3E4761B77}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A2
3-B8A68F63F377}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{ED0D2C81-7DB5-4599-B7C
0-1033418B5672}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A13
9-ABE1EE1111DD}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D
5-1371C6271785}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{31090377-0740-419E-BEFC-A56E50500D5B}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\
{31090377-0740-419E-BEFC-A56E50500D5B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\
{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Encontrada : HKCU\Software\Conduit
Chave Encontrada : HKCU\Software\InstallCore
Chave Encontrada : HKCU\Software\MyBestOffersToday
Chave Encontrada : HKCU\Software\PriceMeter
Chave Encontrada : HKCU\Software\Softonic
Chave Encontrada : HKCU\Software\TutoTag
Chave Encontrada : HKCU\Software\UpToDown
Chave Encontrada : HKCU\Software\Vittalia
Chave Encontrada : HKCU\Software\Reimage
Chave Encontrada : HKCU\Software\BoBrowser
Chave Encontrada : HKCU\Software\Binkiland Browser
Chave Encontrada : HKCU\Software\PRODUCTSETUP
Chave Encontrada : HKLM\SOFTWARE\Conduit
Chave Encontrada : HKLM\SOFTWARE\SupDp
Chave Encontrada : HKLM\SOFTWARE\supWindowsMangerProtect
Chave Encontrada : HKLM\SOFTWARE\Clara
Chave Encontrada : HKLM\SOFTWARE\StrongSignal
Chave Encontrada : HKLM\SOFTWARE\SiteFinder
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Adob
e Flash Player Packages
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pric
e Metr
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Univ
ersal Viewer Pro_is1
Chave Encontrada : [x64] HKCU\Software\Conduit
Chave Encontrada : [x64] HKCU\Software\InstallCore
Chave Encontrada : [x64] HKCU\Software\MyBestOffersToday
Chave Encontrada : [x64] HKCU\Software\PriceMeter
Chave Encontrada : [x64] HKCU\Software\Softonic
Chave Encontrada : [x64] HKCU\Software\TutoTag
Chave Encontrada : [x64] HKCU\Software\UpToDown
Chave Encontrada : [x64] HKCU\Software\Vittalia
Chave Encontrada : [x64] HKCU\Software\Reimage

Chave Encontrada : [x64] HKCU\Software\BoBrowser


Chave Encontrada : [x64] HKCU\Software\Binkiland Browser
Chave Encontrada : [x64] HKCU\Software\PRODUCTSETUP
Chave Encontrada : [x64] HKLM\SOFTWARE\Reimage
Dados Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
- hxxp://istart.webssearches.com/web/?type=ds&ts=1414663427&from=bxk1&uid=ST500L
T012-9WS142_W0V2P3AXXXXXW0V2P3AX&q={searchTerms}
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default
_Search_URL] - hxxp://istart.webssearches.com/web/?type=ds&ts=1414663427&from=bx
k1&uid=ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX&q={searchTerms}
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default
_Page_URL] - hxxp://istart.webssearches.com/?type=hp&ts=1414663427&from=bxk1&uid
=ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start P
age] - hxxp://istart.webssearches.com/?type=hp&ts=1414663427&from=bxk1&uid=ST500
LT012-9WS142_W0V2P3AXXXXXW0V2P3AX
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search
Page] - hxxp://istart.webssearches.com/web/?type=ds&ts=1414663427&from=bxk1&uid=
ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX&q={searchTerms}
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\Web
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633E
E93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0
A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
Web
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : HKU\S-1-5-21-3617545164-1877086934-2898212623-1000\Software\M
icrosoft\Internet Explorer\SearchScopes\Web
Chave Encontrada : HKU\S-1-5-21-3617545164-1877086934-2898212623-1000\Software\M
icrosoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : HKU\S-1-5-21-3617545164-1877086934-2898212623-1000\Software\M
icrosoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
***** [ Navegadores ] *****
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.aflt", "ir_14_24_ff
");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1
Qzu0AyEtCyBtAtC0DzyzzzytBtB0A0EzzzytN0D0Tzu0SzzzyyCtN1L2XzutBtFtBtCtFyEtFtCtN1L1
CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEzytC0AzzyDtCtDtGzyyDyDtBt[...]
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.cr", "605084208");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.instlRef", "142905_
b");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.quick_start.enable_search1", f
alse);
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.quick_start.sd.closeWindowWith
LastTab_prev_state", false);
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js

] [Preference] Encontrada : user_pref("iminent.LayoutId", "1");


[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.enabledAds", "obsolete");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.externalScripts.iRobinHood.menuUR
L", "hxxp://iminent.donation-tools.org/home.aspx?pkgId=wrDCt8K4wrDCtcKywrfCtcKy"
);
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.newtabredirect", "false");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.nomsi", "true");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.searchindex", "1");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.trackExternalScripts1", "13994641
82108");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.trackExternalScripts2", "13994641
83168");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.trackExternalScripts3", "13994641
84197");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.version", "8.17.2.1");
[C:\Users\SIL\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Pr
ovider] Encontrado : br.ask.com
[C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Default\Web data] [Searc
h Provider] Encontrado : br.ask.com
[C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Default\Secure Preferenc
es] [Extension] Encontrada : bakijjialdiiboeaknfpmflphhmljfkd
[C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Default\Secure Preferenc
es] [Extension] Encontrada : pflphaooapbgpeakohlggbpidpppgdff
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [19594 bytes] ##########
# AdwCleaner v5.013 - Relatrio criado 18/10/2015 s 06:59:43
# Atualizado 09/10/2015 por Xplode
# Banco de dados : 2015-10-18.1 [Servidor]
# Sistema operacional : Windows 7 Professional (x64)
# Usurio : SIL - SIL-PC
# Executando de : C:\Benazzi\04 Programa\adwclear\adwcleaner_5.013.exe
# Opo : Verificar
# Apoio : http://toolslib.net/forum
***** [ Servios ] *****
***** [ Pastas ] *****
Pasta Encontrado : C:\rei
Pasta Encontrado : C:\Program Files\Reimage
Pasta Encontrado : C:\Program Files\shopperz
Pasta Encontrado : C:\Program Files\shopperz
Pasta Encontrado : C:\Program Files (x86)\jogotempo
Pasta Encontrado : C:\Program Files (x86)\PricieMinus
Pasta Encontrado : C:\ProgramData\WindowsMangerProtect
Pasta Encontrado : C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
Pasta Encontrado : C:\ProgramData\{e1105532-1d96-d774-e110-055321d954c8}
Pasta Encontrado : C:\Users\SIL\AppData\Local\Google\Chrome\User Data\Default\Ex
tensions\bbmegnmpleoagolcnjnejdacakedpcgd
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\OpenCandy

Pasta Encontrado : C:\Users\SIL\AppData\Roaming\MailUpdate


Pasta Encontrado : C:\Users\SIL\AppData\Roaming\ntsvc
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\Pro
grams\PriceMetr
Pasta Encontrado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\Pro
grams\PriceMetr
Pasta Encontrado : C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Defaul
t\Extensions\pflphaooapbgpeakohlggbpidpppgdff
Pasta Encontrado : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\ntsv
c
***** [ Arquivos ] *****
Arquivo Encontrado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\P
rograms\Play Games Online.url
Arquivo Encontrado : C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Defa
ult\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstora
ge
Arquivo Encontrado : C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Defa
ult\Local Storage\chrome-extension_pflphaooapbgpeakohlggbpidpppgdff_0.localstora
ge-journal
Arquivo Encontrado : C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Defa
ult\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff
Arquivo Encontrado : C:\Windows\Reimage.ini
Arquivo Encontrado : C:\Windows\SysNative\SVCProxyOff.ini
Arquivo Encontrado : C:\Windows\SysWOW64\SVCProxyOff.ini
***** [ DLLs ] *****
***** [ Atalhos ] *****
Atalho Infectado : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessor
ies\System Tools\Internet Explorer (No Add-ons).lnk ( hxxp://istart.webssearches
.com/?type=sc&ts=1414663427&from=bxk1&uid=ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX
)
Atalho Infectado : C:\Users\SIL\AppData\Roaming\Microsoft\Windows\Start Menu\Pro
grams\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( hxxp://istar
t.webssearches.com/?type=sc&ts=1414663427&from=bxk1&uid=ST500LT012-9WS142_W0V2P3
AXXXXXW0V2P3AX )
***** [ Tarefas agendadas ] *****
Tarefa
Tarefa
Tarefa
Tarefa
Tarefa
Tarefa
Tarefa
Tarefa

Encontrada
Encontrada
Encontrada
Encontrada
Encontrada
Encontrada
Encontrada
Encontrada

:
:
:
:
:
:
:
:

AmiUpdXp
Binkiland
DriverEasy Scheduled Scan
pricemeterdownloader
Reimage Reminder
ReimageUpdater
Speedial
Systweak Support Dock

***** [ Registro ] *****


Chave Encontrada : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Chave Encontrada : HKLM\SOFTWARE\Classes\PCProxy.DataContainer
Chave Encontrada : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\W
indowsMangerProtect
Chave Encontrada : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\I
ePluginService

Chave Encontrada :
pm
Valor Encontrada :
]
Chave Encontrada :
Chave Encontrada :
nd.exe
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
Chave Encontrada :
pdate Browser Good
Chave Encontrada :
pdate ScanTack
Chave Encontrada :
til Browser Good
Chave Encontrada :
til ScanTack
Valor Encontrada :
46]
Chave Encontrada :
C205}
Chave Encontrada :
ECD3}
Chave Encontrada :
72BD}
Chave Encontrada :
7C33}
Chave Encontrada :
7C23}
Chave Encontrada :
977B}
Chave Encontrada :
3DA4}
Chave Encontrada :
8ABC}
Chave Encontrada :
4D96}
Chave Encontrada :
4B48}
Chave Encontrada :
A8C8}
Chave Encontrada :
B262}
Chave Encontrada :
54D9}
Chave Encontrada :
D3CD}

HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\W
HKCU\Software\Microsoft\Windows\CurrentVersion\Run [bobrowser
HKCU\Software\Mozilla\Extends
HKLM\SOFTWARE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\binkila
HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLE
HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLE.1
HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEFIELDS
HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEFIELDS.1
HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEHOLDER
HKLM\SOFTWARE\CLASSES\PCPROXY.DATATABLEHOLDER.1
HKLM\SOFTWARE\CLASSES\PCPROXY.LSPLOGIC
HKLM\SOFTWARE\CLASSES\PCPROXY.LSPLOGIC.1
HKLM\SOFTWARE\CLASSES\PCPROXY.READONLYMANAGER
HKLM\SOFTWARE\CLASSES\PCPROXY.READONLYMANAGER.1
HKLM\SOFTWARE\CLASSES\PCPROXY.DATACONTAINER.1
HKLM\SOFTWARE\CLASSES\PCPROXY.DATACONTROLLER
HKLM\SOFTWARE\CLASSES\PCPROXY.DATACONTROLLER.1
HKLM\SOFTWARE\CLASSES\PCPROXY.DATASTATISTICS
HKLM\SOFTWARE\CLASSES\PCPROXY.DATASTATISTICS.1
HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
HKLM\System\CurrentControlSet\Services\Eventlog\Application\U
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mbot_br_6
HKLM\SOFTWARE\Classes\AppID\{9DC8FA51-B596-4F77-802C-5B295919
HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7
HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD
HKLM\SOFTWARE\Classes\CLSID\{3E28F712-0D6C-4EE3-AC8C-8F060F5D
HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-16904854
HKLM\SOFTWARE\Classes\CLSID\{533403E2-6E21-4615-9E28-43F4E97E
HKLM\SOFTWARE\Classes\CLSID\{5EB0259D-AB79-4AE6-A6E6-24FFE21C
HKLM\SOFTWARE\Classes\CLSID\{6CE321DA-DC11-45C6-A0FC-4E8A7D97
HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C
HKLM\SOFTWARE\Classes\CLSID\{6EEBC7FF-67DA-4B90-9251-C2C5696E
HKLM\SOFTWARE\Classes\CLSID\{74137531-80F7-406F-9543-7D11385F
HKLM\SOFTWARE\Classes\CLSID\{832599B2-55BF-4437-8F3E-030CF5AE
HKLM\SOFTWARE\Classes\CLSID\{AE91F9CE-0900-4E2A-B673-F3F6E4FC
HKLM\SOFTWARE\Classes\CLSID\{B1A429DB-FB06-4645-B7C0-0CC405EA

Chave Encontrada
181B}
Chave Encontrada
7A49}
Chave Encontrada
D8E8}
Chave Encontrada
D762}
Chave Encontrada
C7E6}
Chave Encontrada
4EE8}
Chave Encontrada
4376}
Chave Encontrada
964B}
Chave Encontrada
C4AD}
Chave Encontrada
D2D9}
Chave Encontrada
5C44}
Chave Encontrada
785A}
Chave Encontrada
EF90}
Chave Encontrada
D38605D2}
Chave Encontrada
EEFDE792}
Chave Encontrada
6C4AF54D}
Chave Encontrada
98429D6C}
Chave Encontrada
E0D8CD93}
Chave Encontrada
52CFE8B9}
Chave Encontrada
ABCF506B}
Chave Encontrada
EE41E42D}
Chave Encontrada
A4768F5C}
Chave Encontrada
CEA9C4F2}
Chave Encontrada
57FAD67B}
Chave Encontrada
0C99C74D}
Chave Encontrada
B1DA5A24}
Chave Encontrada
029ECECB}
Chave Encontrada
C6DB2982}
Chave Encontrada
4CCABFCE}
Chave Encontrada
235C6044}

: HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6
: HKLM\SOFTWARE\Classes\CLSID\{DD67706E-819E-4EBD-BF8D-6D6147CC
: HKLM\SOFTWARE\Classes\CLSID\{F62A4AF9-58B4-4FEC-89CC-D717A547
: HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9
: HKLM\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245D
: HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E2
: HKLM\SOFTWARE\Classes\CLSID\{363F46BE-27B4-4C8D-99E7-B1E049B8
: HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2
: HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4
: HKLM\SOFTWARE\Classes\CLSID\{90A9B7D2-3794-45EA-9E23-140E3938
: HKLM\SOFTWARE\Classes\CLSID\{A753A1EC-973E-4718-AF8E-A3F554D4
: HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF
: HKLM\SOFTWARE\Classes\CLSID\{02AFA80F-4BEE-41FD-8572-214B58A9
: HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08
: HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05
: HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7C-28D1
: HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB1-4998
: HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-8048-F256
: HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A038-16A3
: HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5
: HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EF
: HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7F
: HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90FE-F5E0
: HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D21
: HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-0828
: HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856
: HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8B-5A6F
: HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFF
: HKLM\SOFTWARE\Classes\Interface\{7697BC38-D0FA-454B-AC75-968B
: HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8

Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A936-FBA9


D5EFD2B9}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C38
9BA140BB}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D47-E2D3
E4761B77}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A6
8F63F377}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{ED0D2C81-7DB5-4599-B7C0-1033
418B5672}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1
EE1111DD}
Chave Encontrada : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371
C6271785}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F
6DC2B3}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{ED721A76-8160-4DA0-A18E-7FD7C4
574774}
Chave Encontrada : HKLM\SOFTWARE\Classes\TypeLib\{81CA8FCD-1420-4A07-B47D-B30F3D
DA79E1}
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Brows
er Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{197
3D53B-7311-45D7-8270-F44571C041A0}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C72
3A437-2EAF-466D-A95B-3FA0966BF88C}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{109
21475-03CE-4E04-90CE-E2E7EF20C814}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{
C723A437-2EAF-466D-A95B-3FA0966BF88C}
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{
10921475-03CE-4E04-90CE-E2E7EF20C814}
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\C
LSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}]
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\C
LSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}]
Valor Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\C
LSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}]
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-16
9048547C23}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\CLSID\{10921475-03CE-4E04-90CE-E2
E7EF20C814}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E
1-1E08D38605D2}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF0
2-3F05EEFDE792}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{22511E2E-7970-414E-BC7
C-28D16C4AF54D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{23C5311E-016D-4999-BCB
1-499898429D6C}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2BEF239C-752E-4001-804
8-F256E0D8CD93}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2C4B6DB8-6413-403B-A03
8-16A352CFE8B9}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946
C-5FA5ABCF506B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81C
E-65EFEE41E42D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1D
E-DE7FA4768F5C}

Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{46803190-228D-470E-90F


E-F5E0CEA9C4F2}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3F
A-2D2157FAD67B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86F
C-08280C99C74D}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC6
2-1856B1DA5A24}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{5180FE16-2E09-497B-9C8
B-5A6F029ECECB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B30
1-ECFFC6DB2982}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{7697BC38-D0FA-454B-AC7
5-968B4CCABFCE}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D
0-62B8235C6044}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{A4F6E1B3-469E-46EF-A93
6-FBA9D5EFD2B9}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B18
9-3C389BA140BB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{C97AF157-6A27-4F57-9D4
7-E2D3E4761B77}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A2
3-B8A68F63F377}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{ED0D2C81-7DB5-4599-B7C
0-1033418B5672}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A13
9-ABE1EE1111DD}
Chave Encontrada : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D
5-1371C6271785}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer
\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{31090377-0740-419E-BEFC-A56E50500D5B}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\
{31090377-0740-419E-BEFC-A56E50500D5B}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\
{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Chave Encontrada : HKCU\Software\Conduit
Chave Encontrada : HKCU\Software\InstallCore
Chave Encontrada : HKCU\Software\MyBestOffersToday
Chave Encontrada : HKCU\Software\PriceMeter
Chave Encontrada : HKCU\Software\Softonic
Chave Encontrada : HKCU\Software\TutoTag
Chave Encontrada : HKCU\Software\UpToDown
Chave Encontrada : HKCU\Software\Vittalia
Chave Encontrada : HKCU\Software\Reimage
Chave Encontrada : HKCU\Software\BoBrowser
Chave Encontrada : HKCU\Software\Binkiland Browser
Chave Encontrada : HKCU\Software\PRODUCTSETUP
Chave Encontrada : HKLM\SOFTWARE\Conduit
Chave Encontrada : HKLM\SOFTWARE\SupDp
Chave Encontrada : HKLM\SOFTWARE\supWindowsMangerProtect
Chave Encontrada : HKLM\SOFTWARE\Tutorials
Chave Encontrada : HKLM\SOFTWARE\webssearchesSoftware
Chave Encontrada : HKLM\SOFTWARE\Clara

Chave Encontrada : HKLM\SOFTWARE\StrongSignal


Chave Encontrada : HKLM\SOFTWARE\SiteFinder
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Adob
e Flash Player Packages
Chave Encontrada : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pric
e Metr
Chave Encontrada : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Univ
ersal Viewer Pro_is1
Chave Encontrada : [x64] HKCU\Software\Conduit
Chave Encontrada : [x64] HKCU\Software\InstallCore
Chave Encontrada : [x64] HKCU\Software\MyBestOffersToday
Chave Encontrada : [x64] HKCU\Software\PriceMeter
Chave Encontrada : [x64] HKCU\Software\Softonic
Chave Encontrada : [x64] HKCU\Software\TutoTag
Chave Encontrada : [x64] HKCU\Software\UpToDown
Chave Encontrada : [x64] HKCU\Software\Vittalia
Chave Encontrada : [x64] HKCU\Software\Reimage
Chave Encontrada : [x64] HKCU\Software\BoBrowser
Chave Encontrada : [x64] HKCU\Software\Binkiland Browser
Chave Encontrada : [x64] HKCU\Software\PRODUCTSETUP
Chave Encontrada : [x64] HKLM\SOFTWARE\Reimage
Dados Encontrada : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
- hxxp://istart.webssearches.com/web/?type=ds&ts=1414663427&from=bxk1&uid=ST500L
T012-9WS142_W0V2P3AXXXXXW0V2P3AX&q={searchTerms}
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default
_Search_URL] - hxxp://istart.webssearches.com/web/?type=ds&ts=1414663427&from=bx
k1&uid=ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX&q={searchTerms}
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default
_Page_URL] - hxxp://istart.webssearches.com/?type=hp&ts=1414663427&from=bxk1&uid
=ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start P
age] - hxxp://istart.webssearches.com/?type=hp&ts=1414663427&from=bxk1&uid=ST500
LT012-9WS142_W0V2P3AXXXXXW0V2P3AX
Dados Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search
Page] - hxxp://istart.webssearches.com/web/?type=ds&ts=1414663427&from=bxk1&uid=
ST500LT012-9WS142_W0V2P3AXXXXXW0V2P3AX&q={searchTerms}
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\Web
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633E
E93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0
A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
Web
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\
{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Chave Encontrada : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\
{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : HKU\S-1-5-21-3617545164-1877086934-2898212623-1000\Software\M
icrosoft\Internet Explorer\SearchScopes\Web
Chave Encontrada : HKU\S-1-5-21-3617545164-1877086934-2898212623-1000\Software\M
icrosoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Chave Encontrada : HKU\S-1-5-21-3617545164-1877086934-2898212623-1000\Software\M
icrosoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
***** [ Navegadores ] *****
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.aflt", "ir_14_24_ff

");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1
Qzu0AyEtCyBtAtC0DzyzzzytBtB0A0EzzzytN0D0Tzu0SzzzyyCtN1L2XzutBtFtBtCtFyEtFtCtN1L1
CzutCyEtBzytDyD1V1StN1L1G1B1V1N2Y1L1Qzu2SyEzytC0AzzyDtCtDtGzyyDyDtBt[...]
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.cr", "605084208");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.irmysearch.instlRef", "142905_
b");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.quick_start.enable_search1", f
alse);
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("extensions.quick_start.sd.closeWindowWith
LastTab_prev_state", false);
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.LayoutId", "1");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.enabledAds", "obsolete");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.externalScripts.iRobinHood.menuUR
L", "hxxp://iminent.donation-tools.org/home.aspx?pkgId=wrDCt8K4wrDCtcKywrfCtcKy"
);
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.newtabredirect", "false");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.nomsi", "true");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.searchindex", "1");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.trackExternalScripts1", "13994641
82108");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.trackExternalScripts2", "13994641
83168");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.trackExternalScripts3", "13994641
84197");
[C:\Users\SIL\AppData\Roaming\Mozilla\Firefox\Profiles\qbys0ivw.default\prefs.js
] [Preference] Encontrada : user_pref("iminent.version", "8.17.2.1");
[C:\Users\SIL\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Pr
ovider] Encontrado : br.ask.com
[C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Default\Web data] [Searc
h Provider] Encontrado : br.ask.com
[C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Default\Secure Preferenc
es] [Extension] Encontrada : bakijjialdiiboeaknfpmflphhmljfkd
[C:\Users\Vitucho\AppData\Local\Google\Chrome\User Data\Default\Secure Preferenc
es] [Extension] Encontrada : pflphaooapbgpeakohlggbpidpppgdff
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [41692 bytes] ##########

You might also like