Ir para conteúdo
  • Cadastre-se

Pesquisar na Comunidade

Mostrando resultados para as tags ''Adware''.



Mais opções de pesquisa

  • Pesquisar por Tags

    Digite tags separadas por vírgulas
  • Pesquisar por Autor

Tipo de Conteúdo


Fóruns

  • WINDOWS
    • Windows 10: INSTALAÇÃO, ATIVAÇÃO, REDE E DRIVERS
    • Windows 10: GERAL
    • Windows 10: SEGURANÇA
    • Windows 10: DESEMPENHO
    • Windows 10: TUTORIAIS, GUIAS E DICAS
    • Windows 8.1 e anteriores: GERAL
    • Windows 8.1 e anteriores: TUTORIAIS
    • Windows Server
    • Microsoft Office
  • Remoção de vírus e malware pelo Mr.Million
    • Remoção de vírus e malware
    • Tópicos Resolvidos
    • Tópicos Arquivados
  • Vídeos e Cursos do BABOO
    • Espaço do Baboo
    • Vídeos do BABOO
    • Cursos Online
    • Windows Lento e Inseguro NUNCA MAIS!
  • Arquivo
    • Tópicos Antigos
  • BABOO
    • Notícias do site BABOO
    • Comentários, infos e novidades

Encontrar resultados em...

Encontrar resultados que...


Data de Criação

  • Início

    FIM


Data de Atualização

  • Início

    FIM


Filtrar pelo número de...

Data de Registro

  • Início

    FIM


Grupo


URL do site ou blog


LinkedIn


Facebook


Twitter


Google+


Skype


Idade


Nível de conhecimento de Windows


Nível de conhecimento de Segurança Digital


Sistema operacional que vc utiliza no dia-a-dia

Foram encontradas 5 postagens

  1. Bom dia. Hoje irei falar sobre como habilitar a detecção de Adware no Windows Defender. Segure simultaneamente a tecla Windows + R e digite Regedit e siga esse caminho: Computador\HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender. Na pasta do Windows Defender,clique com o botão direito e vá em Nova Chave e digite MpEngine,clique nessa pasta com o botão esquerdo do mouse e do lado direito,clique com o botão direito e vá em Novo>Valor DWORD(32 Bits) e renomeie esse valor para MpEnablePus e dê enter,dê dois cliques nesse valor e mude o valor para 1 e clique em Ok.Agora volte na chave do Windows Defender e clique com o botão direito no lado direito do regedit e crie o Valor DWORD(32Bits),e nomeie o valor para PUAProtection e enter,dê 2 cliques no valor e mude o valor para 1 e clique em Ok,reinicie o computador e a detecção de Adware no Windows Defender estará habilitada. Para fazer o teste,baixe este arquivo. Nota:Isto vale para o Windows 10 32 e 64 Bits,independentemente de ser Windows de 32 ou 64 Bits,faça exatamente o que eu disse acima,pois muitos acham que por ter um sistema 64 Bits é que pode colocar o valor de 64 Bits,mas NÃO é assim. Nota2:se você está usando antivírus de terceiros,o procedimento não irá servir,se você quer saber se seu AV está com a detecção de Adware habilitada,cheque em suas configurações. Nota3:Para fazer o procedimento você precisa estar logado em uma conta como Administrador.
  2. O pesquisador de segurança Abdulrahman Al-Qabandi disponibilizou um exploit prova-de-conceito para a vulnerabilidade CVE-2018-8495 no Microsoft Edge. Esta vulnerabilidade descoberta por ele já foi corrigida pela Microsoft com as atualizações de segurança disponibilizadas no dia 9 de outubro como parte do seu ciclo mensal. A vulnerabilidade pode ser explorada com o abuso de esquemas URI e scripts no Windows que podem ser executados com parâmetros definidos pelo usuário. Se explorada com sucesso, a vulnerabilidade pode permitir a execução remota de códigos no computador do usuário. Al-Qabandi iniciou sua investigação da vulnerabilidade CVE-2018-8495 no Microsoft Edge a partir do esquema URI mailto: no navegador quando ele percebeu que o Outlook seria executado com um parâmetro personalizado para este cenário: Ao procurar no Registro do Windows por executáveis que aceitam comandos definidos pelo usuário, o pesquisador de segurança encontrou o Windows Script Host (WScript.exe), que pode executar scripts em diversas linguagens. Depois de testar o esquema URI wshfile:test no Microsoft Edge, a primeira resposta do sistema operacional foi perguntar qual aplicativo seria usado para lidar com o procedimento – com o Windows Script Host sendo a opção padrão: De posse de um esquema URI capaz de executar arquivos sob um caminho definido pelo usuário, Al-Qabandi testou um método para fazer com que o Windows Script Host carregasse um VBScript a partir de outro local e o resultado foi positivo. Um detalhe é que como o Microsoft Edge armazena arquivo em cache em locais imprevisíveis, a investigação toda seria inútil a não ser que ele conseguisse descobrir uma forma de fazer com que o VBScript chamado via um esquema URI aceitasse argumentos para assim executar arquivos a partir de locais conhecidos no computador. Por sorte, uma pesquisa anterior mostrou como conseguir isso com um VBScript assinado e vulnerável à técnica “WSH Injection”. A busca de Al-Qabandi por VBScripts que aceitam parâmetros definidos pelo usuário deu resultado: o arquivo SyncAppvPublishingServer.vbs. Este arquivo também pode executar comandos via PowerShell sem que eles sejam filtrados. O processo é invisível ao usuário, já que o PowerShell é executado com o argumento de linha de comando -WindowStyle Hidden. O usuário vê apenas o resultado final. Como bônus, o atacante também pode passar múltiplos argumentos para o WScript.exe. Para demonstrar os resultados de sua investigação sobre a vulnerabilidade CVE-2018-8495 no Microsoft Edge, Al-Qabandi criou um exploit prova-de-conceito que inclui uma solução para lidar automaticamente com a caixa de diálogo que pede para os usuário escolher a aplicação que lidará com o esquema URI: O pesquisador notificou a Microsoft sobre o problema através do programa Zero Day Initiative da Trend Micro, que lida com a comunicação com as empresas afetada. Uma demonstração da vulnerabilidade pode ser vista no vídeo abaixo. Demonstração da vulnerabilidade CVE-2018-8495 no Microsoft Edge: O post Exploit para a vulnerabilidade CVE-2018-8495 no Microsoft Edge já está disponível apareceu primeiro em BABOO. Ler artigo completo
  3. David Cibin

    Solicitação de Análise de Logs

    Já fiz todos os procedimentos solicitados no Tópico Oficial. O meu problema são janelas abrindo com propagandas. Segue meu log para exame: Logfile of Trend Micro HijackThis v2.0.5 Scan saved at 7:38:50 PM, on 9/10/2018 Platform: Unknown Windows (WinNT 6.02.1008) MSIE: Internet Explorer v11.0 (11.00.17134.0001) FIREFOX: 51.0.1 (x86 en-US) Boot mode: Normal Running processes: C:\PROGRA~2\GbPlugin\GbpSv.exe C:\Program Files (x86)\Embers\ratti.exe C:\Program Files (x86)\Embers\ratti.exe C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Users\david_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe C:\Program Files (x86)\Dropbox\Client\Dropbox.exe C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Dropbox\Client\Dropbox.exe C:\Program Files (x86)\Dropbox\Client\Dropbox.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Users\david_000\AppData\Roaming\uTorrent\uTorrent.exe C:\Users\david_000\AppData\Roaming\uTorrent\updates\3.5.4_44520\utorrentie.exe C:\Users\david_000\AppData\Roaming\uTorrent\updates\3.5.4_44520\utorrentie.exe C:\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/?PC=ASJB R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKA1VtC1mRJr0-ErVBA3MCZpd8BH3ySYhzx0k_-qhV1-qShNxods1vx_Cc9rImJX7CnlwuwZfMkaKoEWJn3J_Nu1XFp4zSyhbJInL91Vonfv8zAlDvccjUA5mJDSwBp2w2UoCOABsor1zQvvRdVlQL1-Mf2I3UgSY51Ub1Ed7ByIvPd1oUbVmcDv&q={searchTerms} R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKA1VtC1mRJr0-ErVBA3MCZpd8BH3ySYhzx0k_-qhV1-qShNxods1vx_Cc9rImJX7CnlwuwZfMkaKoEWJn3J_Nu1XFp4zSyhbJInL91Vonfv8zAlDvccjUA5mJDSwBp2w2UoCOABsor1zQvvRdVlQL1-Mf2I3UgSY51Ub1Ed7ByIvPd1oUbVmcDv&q={searchTerms} R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKA1VtC1mRJr0-ErVBA3MCZpd8BH3ySYhzx0k_-qhV1-qShNxods1vx_Cc9rImJX7CnlwuwZfMkaKoEWJn3J_Nu1XFp4zSyhbJInL91Vonfv8zAlDvccjUA5mJDSwBp2w2UoCOABsor1zQvvRdVlQL1-Mf2I3UgSY51Ub1Ed7ByIvPd1oUbVmcDv&q={searchTerms} R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKA1VtC1mRJr0-ErVBA3MCZpd8BH3ySYhzx0k_-qhV1-qShNxods1vx_Cc9rImJX7CnlwuwZfMkaKoEWJn3J_Nu1XFp4zSAlPc-l2U4zjRRnTCOCuDIHXGW4j8JkBFghwQ28Pr5CCSaDJG6IDQ1sQs6_Ke7LezD__PlPZMS4NU_-A7sTdTRE5hTK R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = https://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKA1VtC1mRJr0-ErVBA3MCZpd8BH3ySYhzx0k_-qhV1-qShNxods1vx_Cc9rImJX7CnlwuwZfMkaKoEWJn3J_Nu1XFp4zSyhbJInL91Vonfv8zAlDvccjUA5mJDSwBp2w2UoCOABsor1zQvvRdVlQL1-Mf2I3UgSY51Ub1Ed7ByIvPd1oUbVmcDv&q={searchTerms} R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:47574 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: 162.222.193.86 aoaomo.tremorhub.com O1 - Hosts: 188.95.50.62 bobomo.tremorhub.com O1 - Hosts: 162.222.193.86 www.howcast.com O1 - Hosts: 162.222.193.86 howcast.com O1 - Hosts: 162.222.193.86 www.ustream.tv O1 - Hosts: 162.222.193.86 ustream.tv O1 - Hosts: 162.222.193.86 www.livestream.com O1 - Hosts: 162.222.193.86 livestream.com O1 - Hosts: 162.222.193.86 www.dailymotion.com O1 - Hosts: 162.222.193.86 dailymotion.com O1 - Hosts: 192.192.3.8 www.virustotal.com O1 - Hosts: 192.192.3.8 virustotal.com O2 - BHO: e62a1271b6524ab3b4f60ca546d3b4d20065781 - {11111111-1111-1111-1111-110611571181} - (no file) O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_181\bin\ssv.dll O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\PROGRAM FILES (X86)\GBPLUGIN\gbieh.dll O2 - BHO: G-Buster Browser Defense Itaú Unibanco - {C41A1C0E-EA6C-11D4-B1B8-444553540008} - C:\Program Files (x86)\GbPlugin\gbiehuni.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_181\bin\jp2ssv.dll O2 - BHO: PDFescape Desktop Helper - {E5F815EE-1391-4A6C-A0DD-488E9A6EC0F2} - C:\Program Files (x86)\PDFescape Desktop\creator-ie-helper.dll O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: PDFescape Desktop Toolbar - {BB94CCC5-F838-412D-9760-28A307E376B5} - C:\Program Files (x86)\PDFescape Desktop\creator-ie-plugin.dll O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll O4 - HKLM\..\Run: [KeePass 2 PreLoad] "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [CanonQuickMenu] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon O4 - HKLM\..\Run: [EaseUS EPM tray] C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe O4 - HKLM\..\Run: [EaseUS EPM Tray Agent] "C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe" O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe" O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [vmware-tray.exe] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe" O4 - HKLM\..\Run: [Bakker] "C:\Program Files (x86)\Pitz\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKLM\..\Run: [Erato] "C:\Program Files (x86)\scorers\Adela.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKLM\..\Run: [Lamont] "C:\Program Files (x86)\Whoopie\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_946F6151508261042129031FF88EDFA9] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart O4 - HKCU\..\Run: [OneDrive] "C:\Users\david_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun O4 - HKCU\..\Run: [Slip] "C:\Program Files (x86)\Pitz\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [Deselect] "C:\Program Files (x86)\scorers\Adela.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [Turley] "C:\Program Files (x86)\Whoopie\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [Oxidant] "C:\Program Files (x86)\Pitz\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [Phosphor] "C:\Program Files (x86)\scorers\Adela.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [Internacional] "C:\Program Files (x86)\Whoopie\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [impertinent] "C:\Program Files (x86)\insufferably\impertinent.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [arni] "C:\Program Files (x86)\Pitz\Personalizing.exe" ajifhwajifhwajifhwajifh.ajifhkajifhtajifhjajifh.ajifhpajifhwajifh/ajifhaa2y0y1y8yajifh0j9j0aa7aaajifhyhtml0lIbtajifhN9KiDqXLuwajifhTDzsp O4 - HKCU\..\Run: [UpProVerified] "C:\Users\david_000\AppData\Roaming\UpProVerified\python\pythonw.exe" "load.pyc" ml2 O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [lBZo+U1UP7.exe] C:\Program Files\PartitionGuru\BPMFH938MWAKDN8MJDAILM9\lBZo+U1UP7.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [lBZo+U1UP7.exe] C:\Program Files\PartitionGuru\BPMFH938MWAKDN8MJDAILM9\lBZo+U1UP7.exe (User 'Default user') O4 - Startup: wholly.lnk = ? O4 - Startup: whollywholly.lnk = ? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe O8 - Extra context menu item: Add Web Page to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIEAppend.html O8 - Extra context menu item: Append Lin&k Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convert &Web Page to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIECapture.html O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000 O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - Trusted Zone: www.bancobrasil.com.br O15 - Trusted Zone: www14.bancobrasil.com.br O15 - Trusted Zone: www2.bancobrasil.com.br O15 - Trusted Zone: aapj.bb.com.br O15 - Trusted Zone: seg.bb.com.br O15 - Trusted Zone: www.bb.com.br O15 - Trusted Zone: http://www.bb.com.br O15 - Trusted Zone: cloud.gastecnologia.com.br O15 - Trusted Zone: http://www.itau.com.br O15 - Trusted Zone: http://www.itaupersonnalite.com.br O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O18 - Protocol: Windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll O20 - Winlogon Notify: GbPluginBb - C:\Program Files (x86)\GbPlugin\gbieh.dll O20 - Winlogon Notify: GbPluginUni - C:\Program Files (x86)\GbPlugin\gbiehUni.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Adobe Genuine Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing) O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: COM+ Event Manager (EventSvc) - CloudBees, Inc. - C:\ProgramData\Microsoft\Windows\EventSvc\eventsvc.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Gbp Service (GbpSv) - GAS Tecnologia - C:\PROGRA~2\GbPlugin\GbpSv.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\Windows\system32\igfxCUIService.exe (file missing) O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: PDFescape Desktop - Red Software - C:\Program Files\PDFescape Desktop\ws.exe O23 - Service: PDFescape Desktop CrashHandler - Red Software - C:\Program Files\PDFescape Desktop\crash-handler-ws.exe O23 - Service: PDFescape Desktop Creator - Red Software - C:\Program Files\PDFescape Desktop\creator-ws.exe O23 - Service: Polygen - Unknown owner - C:\ProgramData\\Polygen\\Polygen.exe (file missing) O23 - Service: Power Manager (PowerSvc) - Unknown owner - C:\ProgramData\Microsoft\Windows\Power\PowerSvc.exe O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) - arvato digital services llc - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\Windows\system32\SecurityHealthService.exe (file missing) O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing) O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\Windows\system32\SgrmBroker.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\Windows\system32\spectrum.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: System Manager (SysSvc) - CloudBees, Inc. - C:\Users\david_000\AppData\Local\NtvHost\syssvc.exe O23 - Service: TeamViewer 12 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\SysWOW64\vmnetdhcp.exe O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe O23 - Service: VMware Workstation Server (VMwareHostd) - Unknown owner - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: Warsaw Technology - GAS Tecnologia LTDA - C:\Program Files\Diebold\Warsaw\core.exe O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) O23 - Service: @%systemroot%\system32\xbgmsvc.exe,-100 (xbgm) - Unknown owner - C:\Windows\system32\xbgmsvc.exe (file missing) -- End of file - 22369 bytes
  4. carla

    Como proteger o pc

    Boa tarde! Gostaria de saber quais programas gratuitos são necessários e suficientes para proteger meu computador. Tenho no meu PC instalado o avast antivírus free, malwarebytes anti-malware e o adwcleaner. Será que é o suficiente ou vocês me sugerem outros programas melhores? Obrigada
  5. anjogm

    Programa similar ao comboefix

    gostaria de saber qual ferramenta pra remover virus similar ao comboefix voces recomendam usar-eu usei o comboefix e ele sempre me serviu muito bem removendo tudo entretanto infelizmente o mesmo não tem suporte ao Windows 8.1 ou 10, eu pesquisei e achei o adware que quebra o galho porem o comboefix é muito superior diante disso eu pergunto se alguém conhece um programa igual ou melhor que o comboefix que rode no Windows 8.1
×