MaoHaWiFi Files权mao 是什么意思思

Document joint :
Publicité
Format du document : text/plain
Prévisualisation
Resultado do exame da Farbar Recovery Scan Tool (FRST) (x86) Vers?o: 18-11-2016
Executado por Cristina (administrador) em CRISTINA-PC (18-11-:19)
Executando a partir de C:\Users\Cristina\Downloads
Perfis Carregados: Cristina (Perfis Disponíveis: Cristina)
Platform: Microsoft Windows 7 Professional
Service Pack 1 (X86) Idioma: Português (Brasil)
Internet Explorer Vers?o 11 (Navegador padr?o: IE)
Modo da Inicializa??o: Normal
Tutorial da Farbar Recovery Scan Tool: /forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processos (Whitelisted) =================
(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo n?o será movido.)
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola.exe
(clean) C:\Users\Cristina\AppData\Roaming\UPUpdata\cleaner.exe
(Lavasoft) C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe
(Spotify Ltd) C:\Users\Cristina\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola_updater.exe
(Lavasoft Limited) C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
(猫哈网络 版权所有) C:\Program Files\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe
(Nero AG) C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
(Prolific Technology Inc.) C:\Windows\System32\IoctlSvc.exe
() C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
(Hola Networks Ltd.) C:\Program Files\Hola\app\hola_svc.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\ONENOTE.EXE
(BitTorrent Inc.) C:\Users\Cristina\AppData\Roaming\uTorrent\uTorrent.exe
(BitTorrent Inc.) C:\Users\Cristina\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe
(BitTorrent Inc.) C:\Users\Cristina\AppData\Roaming\uTorrent\updates\3.4.8_42576\utorrentie.exe
() C:\Program Files\Gramblr\gramblr.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmplayer.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
() C:\Program Files\0-80009\knsbFA9E.tmpfs
() C:\Users\Cristina\AppData\Local\0-80009\qnsc5BFC.tmp
(Google Inc.) C:\Users\Cristina\AppData\Local\Temp\{43A1E86E-B-A614-414D8D1575CB}\GoogleUpdate.exe
(Google Inc.) C:\Users\Cristina\AppData\Local\Temp\{43A1E86E-B-A614-414D8D1575CB}\GoogleUpdateSetup.exe
(Google Inc.) C:\Program Files\GUM97C2.tmp\GoogleUpdate.exe
(FM46RW9MC) C:\Program Files\mpck\AX95NQ.exe
() C:\Program Files\wanttoxiamen\Bind.exe
( ) C:\Program Files\wanttoxiamen\uc.exe
(FM46RW9MC) C:\Users\Cristina\AppData\Local\Temp\LGHGR1MCNS\advise.exe
(FM46RW9MC) C:\Users\Cristina\AppData\Local\Temp\H7UYUZD00P.exe
() C:\Program Files\mpck\wincom_UL7.exe
(FM46RW9MC) C:\Program Files\sunnyday\9SE98B.exe
() C:\Users\Cristina\AppData\Roaming\KoymtPacetu\Wawjebt.exe
() C:\Users\Cristina\AppData\Roaming\Imywi\Imywi.exe
() C:\Users\Cristina\AppData\Roaming\Imywi\Movkix.exe
() C:\Program Files\Ebukfijmijpe\Cudpilh.exe
() C:\Program Files\Ebukfijmijpe\Reinaav.exe
() C:\Program Files\Ebukfijmijpe\FueIzela.exe
() C:\Program Files\Ebukfijmijpe\Owelo.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\YLNC30MHQH\YLNC30MHQ.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\Z5BLTYSLV\Z5BLTYSLV.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\X038NF2RWP\appsoft.exe
() C:\Program Files\sunnyday\wincom_VPQ.exe
(7YZSU) C:\Program Files\gamesdesktop\IWRPSC.exe
() C:\Users\Cristina\AppData\Local\Temp\I64V4UDOD\shopperz.exe
() C:\Users\Cristina\AppData\Local\Temp\nslE44C.tmp\nsE45D.tmp
() C:\Users\Cristina\AppData\Local\Temp\nslE44C.tmp\preinstaller_win.exe
(
) C:\Users\Cristina\AppData\Local\Temp\19HHJU7FS\19HHJU7FS.exe
() C:\Users\Cristina\AppData\Local\Temp\is-1MPKQ.tmp\19HHJU7FS.tmp
() C:\Users\Cristina\AppData\Local\Temp\sdfE8DD.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\PV8KQHXC17\advise.exe
(zdengine) C:\Program Files\OtherSearch\zdengine.exe
() C:\Users\Cristina\AppData\Local\Temp\LPQ7I4P6NE.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\RB90R0ZNSV.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\HNMLLQV1G\HNMLLQV1G.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(7YZSU) C:\Program Files\sunnyday\7SAC8Y.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\is-S01JH.tmp\installer.exe
() C:\Users\Cristina\AppData\Local\Temp\O2KMF50GX\O2KMF50GX.exe
(7YZSU) C:\Users\Cristina\AppData\Local\Temp\QW4GGBDWU\KBMO8F3FP.exe
==================== Registro (Whitelisted) ====================
(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padr?o ou removido. O arquivo n?o será movido.)
HKLM\...\Run: [hola] => C:\Program Files\Hola\app\hola.exe [6-11-02] (Hola Networks Ltd.) <===== ATEN??O
HKLM\...\Run: [NBKeyScan] => C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [8-06-10] (Nero AG)
HKLM\...\Run: [cleaner] => C:\Users\Cristina\AppData\Roaming\UPUpdata\cleaner.exe [6-11-14] (clean)
HKLM\...\Run: [app] => C:\Program Files\wanttoxiamen\uc.exe [6-11-16] ( )
HKLM\...\Run: [WINCOMUL7] => C:\Program Files\mpck\wincom_UL7.exe [6-11-18] ()
HKLM\...\Run: [WINCOMVPQ] => C:\Program Files\sunnyday\wincom_VPQ.exe [6-11-18] ()
HKLM\...\RunOnce: [OTUTPRODUCT_519T8] => C:\Program Files\mpck\AX95NQ.exe [6-11-18] (FM46RW9MC)
HKLM\...\RunOnce: [OMEWPRODUCT_H37XG] => C:\Users\Cristina\AppData\Local\Temp\H7UYUZD00P.exe [6-11-18] (FM46RW9MC) <===== ATEN??O
HKLM\...\RunOnce: [OTUTPRODUCT_Y5253] => C:\Program Files\sunnyday\9SE98B.exe [6-11-18] (FM46RW9MC)
HKLM\...\RunOnce: [OTUTPRODUCT_6P3K5] => C:\Program Files\gamesdesktop\IWRPSC.exe [6-11-18] (7YZSU)
HKLM\...\RunOnce: [OMEWPRODUCT_KONP2] => C:\Users\Cristina\AppData\Local\Temp\RB90R0ZNSV.exe [6-11-18] (7YZSU) <===== ATEN??O
HKLM\...\RunOnce: [OTUTPRODUCT_1NG9G] => C:\Program Files\sunnyday\7SAC8Y.exe [6-11-18] (7YZSU)
HKU\S-1-5-21--0\...\Run: [Web Companion] => C:\Program Files\Lavasoft\Web Companion\Application\WebCompanion.exe [5-06-08] (Lavasoft)
HKU\S-1-5-21--0\...\Run: [uTorrent] => C:\Users\Cristina\AppData\Roaming\uTorrent\uTorrent.exe [6-09-09] (BitTorrent Inc.)
HKU\S-1-5-21--0\...\Run: [Wifi HotSpot] => "C:\Program Files\WifiHotSpot\WifiHotSpot.exe" systray
HKU\S-1-5-21--0\...\Run: [GoogleChromeAutoLaunch_8BD9F80D390] => C:\Users\Cristina\AppData\Local\Chromium\Application\chrome.exe [5-08-11] (The Chromium Authors)
HKU\S-1-5-21--0\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [6-03-01] (Disc Soft Ltd)
HKU\S-1-5-21--0\...\Run: [Spotify] => C:\Users\Cristina\AppData\Roaming\Spotify\Spotify.exe [6-11-14] (Spotify Ltd)
HKU\S-1-5-21--0\...\Run: [Spotify Web Helper] => C:\Users\Cristina\AppData\Roaming\Spotify\SpotifyWebHelper.exe [6-11-14] (Spotify Ltd)
HKU\S-1-5-21--0\...\Run: [msiql] => C:\Windows\Temp\\msiql.exe [6-11-18] () <===== ATEN??O
HKU\S-1-5-21--0\...\Run: [svchost0] => C:\Program Files\wanttoxiamen\uc.exe [6-11-16] ( )
HKU\S-1-5-21--0\...\Run: [2CJ6K3E86W] => C:\Program Files\YLNC30MHQH\YLNC30MHQ.exe [6-11-18] ()
HKU\S-1-5-21--0\...\Run: [HOV197VIOY] => C:\Users\Cristina\AppData\Local\Temp\LPQ7I4P6NE.exe [6-11-18] () <===== ATEN??O
HKU\S-1-5-21--0\...\Run: [M6GHBGY82S] => C:\Users\Cristina\AppData\Local\Temp\O2KMF50GX\O2KMF50GX.exe [6-11-18] () <===== ATEN??O
HKU\S-1-5-21--0\...\MountPoints2: {be8d-11e6-9bf9-c89cdc40a2bc} - F:\LGAutoRun.exe
ShellExecuteHooks:
- {5EBD559E-A5BA-11E6-B9FD-64006A5CFC23} - C:\Users\Cristina\AppData\Roaming\Phucusy\Lerjuch.dll Nenhum Arquivo [ ]
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28--BA2E9197FF8C} => C:\Users\Cristina\AppData\Local\MEGAsync\ShellExtX32.dll [] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B3-DD} => C:\Users\Cristina\AppData\Local\MEGAsync\ShellExtX32.dll [] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {BDD-4C9D-AFDF-873BE6890637} => C:\Users\Cristina\AppData\Local\MEGAsync\ShellExtX32.dll [] ()
Startup: C:\Users\Cristina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Enviar para o OneNote.lnk []
ShortcutTarget: Enviar para o OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation)
GroupPolicy: Restri??o ? <======= ATEN??O
CHR HKLM\SOFTWARE\Policies\Google: Restri??o <======= ATEN??O
==================== Internet (Whitelisted) ====================
(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padr?o.)
Winsock: Catalog9 01 C:\Windows\system32\zdengine.dll [6-11-18] (zdengine)
Winsock: Catalog9 02 C:\Windows\system32\zdengine.dll [6-11-18] (zdengine)
Winsock: Catalog9 31 C:\Windows\system32\zdengine.dll [6-11-18] (zdengine)
Hosts: Há mais de uma entrada no Hosts. Veja a se??o Hosts do Addition.txt
Tcpip\Parameters: [DhcpNameServer] 177.36.96.21 177.36.96.23 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{4CECE5-A9DA-FB}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{B0D04DD9-BB5B-4BBF-8F43-EDFD65769F3E}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{B0D04DD9-BB5B-4BBF-8F43-EDFD65769F3E}: [DhcpNameServer] 177.36.96.21 177.36.96.23 8.8.8.8 8.8.4.4
Tcpip\..\Interfaces\{e29ac6c2-7037-11de-816d-806e6f6e6963}: [NameServer] 104.197.191.4
Tcpip\..\Interfaces\{F7B7B55C-A324-42F5-9E34-ECAA312DB95D}: [NameServer] 104.197.191.4
Internet Explorer:
==================
HKU\S-1-5-21--0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://
SearchScopes: HKLM -> DefaultScope {6-472f-A0FF-EE3A} URL =
SearchScopes: HKLM -> {6-472f-A0FF-EE3A} URL =
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxps://br./yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_fsfrg_16_05&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0Czzzy0C0D0CyEtD0AtB0B0C0CtCyE0EtN0D0Tzu0StCyEzyyDtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDzzyEtA0A0C0CtDtGyCyE0FtDtGyE0BzztAtGyC0B0DyBtGtA0E0DtCtBtBtB0C0CyEtC0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtAyCtC0BtBzytDtGyE0AzytBtGyE0CyD0DtGzzyDtB0DtG0D0ByCyD0C0FyCtD0D0Bzz0F2QtN0A0LzuyE%26cr%3Da%3Dwncy_fsfrg_16_05%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
SearchScopes: HKLM -> {C0C3A6C6-03BC-4195-8FCB-AEA} URL = hxxps://br./yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_fsfrg_16_05&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0Czzzy0C0D0CyEtD0AtB0B0C0CtCyE0EtN0D0Tzu0StCyEzyyDtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDzzyEtA0A0C0CtDtGyCyE0FtDtGyE0BzztAtGyC0B0DyBtGtA0E0DtCtBtBtB0C0CyEtC0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtAyCtC0BtBzytDtGyE0AzytBtGyE0CyD0DtGzzyDtB0DtG0D0ByCyD0C0FyCtD0D0Bzz0F2QtN0A0LzuyE%26cr%3Da%3Dwncy_fsfrg_16_05%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
SearchScopes: HKU\S-1-5-21--0 -> DefaultScope {C0C3A6C6-03BC-4195-8FCB-AEA} URL = hxxps://br./yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_fsfrg_16_05&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0Czzzy0C0D0CyEtD0AtB0B0C0CtCyE0EtN0D0Tzu0StCyEzyyDtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDzzyEtA0A0C0CtDtGyCyE0FtDtGyE0BzztAtGyC0B0DyBtGtA0E0DtCtBtBtB0C0CyEtC0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtAyCtC0BtBzytDtGyE0AzytBtGyE0CyD0DtGzzyDtB0DtG0D0ByCyD0C0FyCtD0D0Bzz0F2QtN0A0LzuyE%26cr%3Da%3Dwncy_fsfrg_16_05%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
SearchScopes: HKU\S-1-5-21--0 -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxps://br./search?fr=vmn&type=vmn__webcompa__1_0__ya__ch_WCYID10194_swoc_campaign_150725__yaie&p={searchTerms}
SearchScopes: HKU\S-1-5-21--0 -> {C0C3A6C6-03BC-4195-8FCB-AEA} URL = hxxps://br./yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_fsfrg_16_05&param1=1&param2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1Qzu0Czzzy0C0D0CyEtD0AtB0B0C0CtCyE0EtN0D0Tzu0StCyEzyyDtN1L2XzutAtFtCyBtFzytFtDtN1L1Czu1TtN1L1G1B1V1N2Y1L1Qzu2SyDzzyEtA0A0C0CtDtGyCyE0FtDtGyE0BzztAtGyC0B0DyBtGtA0E0DtCtBtBtB0C0CyEtC0C2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtAyCtC0BtBzytDtGyE0AzytBtGyE0CyD0DtGzzyDtB0DtG0D0ByCyD0C0FyCtD0D0Bzz0F2QtN0A0LzuyE%26cr%3Da%3Dwncy_fsfrg_16_05%26os_ver%3D6.1%26os%3DWindows%2B7%2BProfessional&p={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [] (Microsoft Corporation)
BHO: Ebukfijmijpe -> {79B33B0A-33F4-4EE0-bAAD-1863429DBACD} -> C:\Program Files\Ebukfijmijpe\Bayqg.dll [] ()
BHO: Youtube AdBlock -> {95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B} -> C:\Program Files\Youtube AdBlock\IEEF\FMOZzJ6jnE.dll => Nenhum Arquivo
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {DB7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF DefaultProfile: v8sjlfsz.default
FF DefaultProfile: v8sjlfsz.default
FF ProfilePath: C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\v8sjlfsz.default\Profiles\v8sjlfsz.default [n?o encontrado (a)]
FF ProfilePath: C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default []
FF user.js: detected! => C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\user.js []
FF NewTab: Mozilla\Firefox\Profiles\v8sjlfsz.default -> hxxp:///?z=3aac1faada45a56dd0bd85fgaz2mct6w0g3z5oag8o&from=wak&uid=STAS_6VPDF82BXXXX6VPDF82B&type=hp
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\v8sjlfsz.default -> youndoo
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\v8sjlfsz.default -> youndoo
FF Homepage: Mozilla\Firefox\Profiles\v8sjlfsz.default -> hxxp:///?z=3aac1faada45a56dd0bd85fgaz2mct6w0g3z5oag8o&from=wak&uid=STAS_6VPDF82BXXXX6VPDF82B&type=hp
FF Extension: (SaveFrom.net - helper) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\Extensions\helper-.xpi []
FF Extension: (Baixou Agora) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\Extensions\jid1-dG9taWNhQGdtYWlsLmNvbS4u@jetpack.xpi []
FF Extension: (Video AdBlock) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\Extensions\{7b8a500a-a464-4624-bd4f-73eaafe0f766} []
FF Extension: (Asynchronous Plugin Rendering) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\features\{e198cdb7-3d52-4115-b14d-fe1d0098d2ad}\asyncrendering@mozilla.org.xpi []
FF Extension: (D3D9 Acceleration Fallback) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\features\{e198cdb7-3d52-4115-b14d-fe1d0098d2ad}\d3d9fallback@mozilla.org.xpi []
FF Extension: (Multi-process staged rollout) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\features\{e198cdb7-3d52-4115-b14d-fe1d0098d2ad}\e10srollout@mozilla.org.xpi []
FF Extension: (Video AdBlock) - C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\extensions\{7b8a500a-a464-4624-bd4f-73eaafe0f766} []
FF SearchPlugin: C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\searchplugins\o3zf4ykj.xml []
FF SearchPlugin: C:\Users\Cristina\AppData\Roaming\Mozilla\Firefox\Profiles\v8sjlfsz.default\searchplugins\Search Provided by Yahoo.xml []
FF Extension: (Multi-process staged rollout) - C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi [] [n?o assinado]
FF Extension: (Pocket) - C:\Program Files\Mozilla Firefox\browser\features\.xpi [] [n?o assinado]
FF Extension: (Web Compat) - C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi [] [n?o assinado]
FF Extension: (Adblocker para o Youtube(TM)) - C:\Program Files\Mozilla Firefox\browser\features\{95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B} [] [n?o assinado]
FF Plugin: @/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [Nenhum Arquivo]
FF Plugin: @/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [] (Microsoft Corporation)
FF Plugin: @/Google Uversion=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [] (Google Inc.)
FF Plugin: @/Google Uversion=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21--0: @hola.org/vlc,version=1.8.649 -> C:\Users\Cristina\AppData\Local\Hola\firefox_hola\app\vlc [] ()
=======
CHR DefaultProfile: ChromeDefaultData
CHR HomePage: ChromeDefaultData -> hxxp:///?z=3aac1faada45a56dd0bd85fgaz2mct6w0g3z5oag8o&from=wak&uid=STAS_6VPDF82BXXXX6VPDF82B&type=hp
CHR StartupUrls: ChromeDefaultData -> "hxxp:///?z=3aac1faada45a56dd0bd85fgaz2mct6w0g3z5oag8o&from=wak&uid=STAS_6VPDF82BXXXX6VPDF82B&type=hp"
CHR DefaultSearchURL: ChromeDefaultData -> hxxp:///search/?q={searchTerms}&z=3aac1faada45a56dd0bd85fgaz2mct6w0g3z5oag8o&from=wak&uid=STAS_6VPDF82BXXXX6VPDF82B&type=sp
CHR DefaultSearchKeyword: ChromeDefaultData -> youndoo
CHR Profile: C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [] <==== ATEN??O
CHR Extension: (Google Apresenta??es) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aapocclcgogkmnckokdopfmhonfmgoek []
CHR Extension: (Google Docs) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\aohghmighlieiainnegkcijnfilokake []
CHR Extension: (Google Drive) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\apdfllckaahabafndbhieahigkjlhalf []
CHR Extension: (Spotiload (former Spotify Vk Downloader)) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\baggnalhgbpeanbhedjlbndhjgmimmhl []
CHR Extension: (YouTube) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo []
CHR Extension: (Google Search) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\coobgpohoikkiipiblmjeljniedjpjpf []
CHR Extension: (Adblocker para o Youtube(TM)) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\dkgcomhcmhlbdokplmbpkejkojkmjglg []
CHR Extension: (Planilhas do Google) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\felcaaldnbdncclmgdcncolpebgiejap []
CHR Extension: (Documentos Google off-line) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi []
CHR Extension: (Conversor de vídeo) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\mcjjnhgakghmggnimjkldjmmpabhnhne []
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda []
CHR Extension: (Red Livros) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nnecgimhifkakdfbjbndjkckjddbjngl []
CHR Extension: (Gmail) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pjkljhegncpnkpknbcohdijeoejaedia []
CHR Extension: (Chrome Media Router) - C:\Users\Cristina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm []
CHR Extension: (easychrome) - C:\Users\Cristina\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk []
CHR HKLM\...\Chrome\Extension: [hegneaniplmfjcmohoclabblbahcbjoe] - hxxp:///service/update2/crx
CHR HKU\S-1-5-21--0\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo] - hxxp:///service/update2/crx
CHR HKU\S-1-5-21--0\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hegneaniplmfjcmohoclabblbahcbjoe] - hxxp:///service/update2/crx
==================== Servi?os (Whitelisted) ====================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo n?o será movido, a menos que seja colocado separadamente.)
R2 96E3E694-F-aEF9-B56B31EAF264; C:\Program Files\Ebukfijmijpe\Reinaav.exe [6-11-18] () [Arquivo n?o assinado]
S2 A C:\Windows\system32\svchost.exe [-07-13] (Microsoft Corporation)
R3 Disc Soft Lite Bus S C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [6-03-01] (Disc Soft Ltd)
R2 Ebukfijmijpe U C:\Program Files\Ebukfijmijpe\Cudpilh.exe [6-11-18] () [Arquivo n?o assinado]
R2 FueI C:\Program Files\Ebukfijmijpe\FueIzela.exe [6-11-18] () [Arquivo n?o assinado]
S2 GoogleChromeUpS C:\ProgramData\service.exe [6-11-14] () [Arquivo n?o assinado]
R2 C:\Program Files\Gramblr\gramblr.exe [6-11-17] () [Arquivo n?o assinado]
R2 G C:\Users\Cristina\AppData\Roaming\KoymtPacetu\Wawjebt.exe [6-11-18] () [Arquivo n?o assinado]
R2 hola_ C:\Program Files\Hola\app\hola_svc.exe [6-11-02] (Hola Networks Ltd.) <==== ATEN??O
R2 hola_ C:\Program Files\Hola\app\hola_updater.exe [6-10-18] (Hola Networks Ltd.) <==== ATEN??O
R2 J C:\Users\Cristina\AppData\Roaming\Imywi\Imywi.exe [6-11-18] () [Arquivo n?o assinado]
R2 J C:\Program Files\Wefashpluqitain\vrzrpr.dll [6-10-28] () [Arquivo n?o assinado]
R2 LavasoftTcpS C:\Program Files\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [5-06-08] (Lavasoft Limited)
R2 MaohaWifiS C:\Program Files\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe [4-12-18] (猫哈网络 版权所有)
R2 PLFlash DeviceIoControl S C:\Windows\system32\IoctlSvc.exe [-12-19] (Prolific Technology Inc.) [Arquivo n?o assinado]
R2 Q C:\Program Files\Nernapyclermocult\Tnrcr.dll [6-11-18] () [Arquivo n?o assinado]
R2 SearchProtectionS C:\Program Files\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [-06-08] ()
R2 WinD C:\Program Files\Windows Defender\mpsvc.dll [3-05-27] (Microsoft Corporation)
R2 WinSAPS C:\ProgramData\WinSAPSvc\WinSAP.dll [6-11-14] () [Arquivo n?o assinado]
R2 C:\Program Files\OtherSearch\zdengine.exe [6-11-18] (zdengine) [Arquivo n?o assinado] <==== ATEN??O
R2 C:\Users\Cristina\AppData\Local\0-80009\qnsc5BFC.tmp [5-12-26] () [Arquivo n?o assinado]
S2 C:\Program Files\0-80009\knsd9B9C.tmpfs [X]
S2 TheCalendarS C:\Program Files\CalendarTool\2.0.0.11382\CalendarServ.exe [X]
R2 C:\Program Files\0-80009\knsbFA9E.tmpfs [X]
S3 WsDrvI "C:\Program Files\Wondershare\Dr.Fone para Android\DriverInstall.exe" [X]
===================== Drivers (Whitelisted) ======================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo n?o será movido, a menos que seja colocado separadamente.)
S3 AndNetD C:\Windows\System32\DRIVERS\lgandnetdiag.sys [-07-03] (LG Electronics Inc.)
S3 ANDNetM C:\Windows\System32\DRIVERS\lgandnetmodem.sys [-07-03] (LG Electronics Inc.)
S3 C:\Windows\System32\DRIVERS\lgandnetndis.sys [-07-04] (LG Electronics Inc.)
R1 C:\Windows\System32\drivers\cherimoya.sys [-11-18] (Cherimoya Ltd) <==== ATEN??O
R3 C:\Windows\System32\DRIVERS\dtlitescsibus.sys [-03-06] (Disc Soft Ltd)
R3 C:\Windows\System32\DRIVERS\dtliteusbbus.sys [-03-06] (Disc Soft Ltd)
R1 MaohaWifiNetP C:\Program Files\GreatMaker\MaohaWiFi\MaoHaWiFiNet.sys [5-10-27] ()
U5 VWiFiF C:\Windows\System32\Drivers\VWiFiFlt.sys [-07-13] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo n?o será movido, a menos que seja colocado separadamente.)
==================== Três Meses Criados arquivos e pastas ========
(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)
_____ C:\Users\Cristina\Downloads\FRST.txt
____D C:\FRST
_____ (Farbar) C:\Users\Cristina\Downloads\FRST.exe
_____ C:\END
____D C:\Program Files\OtherSearch
_____ (zdengine) C:\Windows\system32\zdengine.dll
_____ C:\Windows\system32\zdengineOff.ini
____D C:\Program Files\gamesdesktop
____D C:\Program Files\YLNC30MHQH
____D C:\Users\Cristina\AppData\Roaming\KoymtPacetu
____D C:\Users\Cristina\AppData\Roaming\Imywi
____D C:\Users\Cristina\AppData\Roaming\Company
____D C:\Users\Cristina\AppData\Roaming\{DD-4E26-B4D9-739C4F4C2E9A}
____D C:\Users\Cristina\AppData\Local\Tempfolder
____D C:\uninst
____D C:\Program Files\Ebukfijmijpe
____D C:\Program Files\EbukfijmijpeUn
____D C:\Program Files\sunnyday
____D C:\Users\Cristina\AppData\Local\tuto_monetize_
____D C:\Program Files\wanttoxiamen
_____ C:\Program Files\GUT97C3.tmp
____D C:\Program Files\GUM97C2.tmp
____D C:\Users\Cristina\AppData\Local\0-80009
____D C:\Program Files\0-80009
____D C:\Windows\system32\appmgmt
____D C:\Users\Cristina\AppData\Roaming\Phucusy
____D C:\Users\Cristina\AppData\Local\Dercse
____D C:\Program Files\Nernapyclermocult
_____ C:\Users\Cristina\Downloads\N?o confirmado 151817.crdownload
_____ C:\Users\Cristina\Downloads\KINCB.rar
_____ C:\Users\Cristina\Desktop\08 Slumber Party (feat. Tinashe).m4a
_____ C:\Users\Cristina\Desktop\01 Want to Want Me.m4a
_____ C:\Users\Cristina\Desktop\01 Never Give Up.m4a
____D C:\Users\Cristina\Desktop\Glory Days (Deluxe Concert Film Edition) [Audio]
_____ C:\Users\Cristina\Desktop\02 Library.m4a
_____ C:\Users\Cristina\Downloads\Little Mix - Glory Days (Deluxe Concert Film Edition) [Audio]
[HitseBeats].zip
____D C:\Users\Cristina\Downloads\Esquadr?o Suicida 720p
_____ C:\Users\Cristina\Desktop\Esquadr?o Suicida (2016) Dublado BluRay 720p 5.1 TDF.mp4
_____ (Cherimoya Ltd) C:\Windows\system32\Drivers\cherimoya.sys
____D C:\Program Files\arbd4jp8
_____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
_____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
_____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
_____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
_____ (Adobe Systems) C:\Windows\system32\atmlib.dll
_____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
_____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
_____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
_____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
_____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
_____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
_____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
_____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
_____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
_____ (Microsoft Corporation) C:\Windows\system32\html.iec
_____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
_____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
_____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
_____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
_____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
_____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
_____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
_____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
_____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
_____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
_____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
_____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
_____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
_____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
_____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
_____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
_____ (Microsoft Corporation) C:\Windows\system32\occache.dll
_____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
_____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
_____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
_____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
_____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
_____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
_____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
_____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
_____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
_____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
_____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
_____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
_____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
_____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
_____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
_____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
_____ (Microsoft Corporation) C:\Windows\system32\input.dll
_____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime
_____ (Microsoft Corporation) C:\Windows\system32\quick.ime
_____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime
_____ (Microsoft Corporation) C:\Windows\system32\phon.ime
_____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime
_____ (Microsoft Corporation) C:\Windows\system32\chajei.ime
_____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime
_____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
_____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
_____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
_____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
_____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
_____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
_____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
_____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
_____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
_____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
_____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
_____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
_____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
_____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
_____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
_____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
_____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
_____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
_____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
_____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
_____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
_____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
_____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
_____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
_____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
_____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
_____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
_____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
_____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
_____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
_____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
_____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
_____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
_____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
_____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
_____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
_____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
_____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
_____ (Microsoft Corporation) C:\Windows\system32\smss.exe
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
_____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
_____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
_____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
_____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
____D C:\Program Files\WinArcher
____D C:\Users\Todos os Usuários\ChelfNotify
____D C:\ProgramData\ChelfNotify
____D C:\Program Files\6hvpn4wh
____D C:\Program Files\Common Files\AV
_____ C:\Users\Cristina\Desktop\01 Black Barbies.m4a
_____ C:\autoexec.bat
____D C:\Users\Cristina\AppData\Roaming\AVAST Software
_____ C:\Users\Cristina\Desktop\Procurando Dory 720p (2016) Dual ?udio BluRay 5.1 -- By - Lucas Firmo.mkv
_____ C:\Users\Cristina\Desktop\Procurando Dory 720p (2016) Dual ?udio BluRay 5.1 -- By - Lucas Firmo.avi
____D C:\Users\Cristina\Downloads\Procurando Dory 720p (2016) Dual ?udio BluRay 5.1 -- By - Lucas Firmo
____D C:\Program Files\AVAST Software
____D C:\Users\Cristina\AppData\LocalLow\uTorrent
____D C:\Program Files\mpck
____D C:\Program Files\Mozilla Firefox
____D C:\Program Files\Zilesh_
____D C:\Program Files\Zilesh
____D C:\Users\Cristina\AppData\Roaming\MaohaWifi
____D C:\Program Files\GreatMaker
____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MaohaWiFi
_____ C:\Users\Todos os Usuários\service.exe
_____ C:\ProgramData\service.exe
____D C:\Users\Todos os Usuários\Thunder Network
____D C:\Users\Public\Thunder Network
____D C:\ProgramData\Thunder Network
____D C:\Program Files\CleanBrowser
____D C:\Program Files\360
____D C:\Users\Cristina\AppData\Roaming\360Safe
_____ C:\Users\Cristina\Desktop\ujr.txt
____D C:\Users\Cristina\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk
____D C:\Users\Cristina\AppData\Roaming\UPUpdata
____D C:\Users\Public\Documents\Tools
____D C:\Users\Public\Documents\Baidu
____D C:\Users\Cristina\AppData\Roaming\CalendarTool
____D C:\Users\Public\Documents\Guid
_____ C:\TOSTACK
____D C:\Program Files\0-80009
____D C:\Users\Cristina\Downloads\Pets A Vida Secreta dos Bichos 2016
_____ C:\Users\Cristina\Desktop\Pets A Vida Secreta dos Bichos.p.BluRay.5.1.x264.DUAL-.avi
_____ C:\Users\Cristina\Desktop\Pets A Vida Secreta dos Bichos.p.BluRay.5.1.x264.DUAL-.mkv
____D C:\Users\Cristina\Desktop\Cry Baby (Deluxe Version)
____D C:\Users\Cristina\Desktop\Open Bar EP
_____ C:\Users\Cristina\Downloads\Pabllo Vittar - Open Bar EP [HitseBeats].zip
_____ C:\Users\Cristina\Downloads\12 Nothing Else Matters.rar
_____ C:\Windows\Minidump\52-01.dmp
_____ C:\Users\Public\Desktop\Windows Movie Maker.lnk
____D C:\Users\Cristina\AppData\Local\WMTools Downloaded Files
____D C:\Program Files\Windows Movie Maker
____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker
_____ (Codejock Software) C:\Windows\system32\framework.ocx
____D C:\Users\Cristina\Desktop\Natural Causes
____D C:\Program Files\f5hmm82w
_____ C:\Users\Cristina\Downloads\af0-a-e71f90fd8773
____D C:\Program Files\m2kfsuqf
____D C:\Program Files\f09er35s
____D C:\Users\Todos os Usuários\WinSAPSvc
____D C:\ProgramData\WinSAPSvc
____D C:\Program Files\kdoaa
____D C:\Program Files\6cvw1iy1
_____ C:\Users\Cristina\Downloads\N?o confirmado 175227.crdownload
____D C:\Users\Cristina\Downloads\Hola
_____ C:\Users\Cristina\Desktop\YTaAN2o.jpg[
____D C:\Users\Cristina\Desktop\facebook-album-101
____D C:\Users\Todos os Usuários\AVAST Software
____D C:\ProgramData\AVAST Software
____D C:\Users\Todos os Usuários\Avg
____D C:\ProgramData\Avg
____D C:\Program Files\Wefashpluqitain
____D C:\Users\Cristina\AppData\Local\Lotocultpherjiy
_____ C:\Users\Cristina\Downloads\Tove Lo - Lady Wood [HitseBeats] (1).zip
____D C:\Users\Cristina\Downloads\Truque.de.Mestre.2.BDRip.XviD.Dual.Audio
____R C:\Users\Cristina\Desktop\Truque.de.Mestre.2.BDRip.XviD.Dual.Audio.avi
_____ C:\Users\Cristina\Downloads\TRQM2TORRENT.rar
____D C:\Users\Cristina\Downloads\Ca?a-Fantasmas.Vers?o.de.Cinema.BDRip.XviD.Dual.Audio
_____ C:\Users\Cristina\Desktop\Ca?a-Fantasmas.Vers?o.de.Cinema.BDRip.XviD.Dual.Audio.avi
_____ C:\Users\Cristina\Downloads\CAFTMTORRENT.rar
_____ C:\Users\Cristina\Downloads\Rasterbation (1).pdf
_____ C:\Users\Cristina\Downloads\Rasterbation.pdf
____D C:\Users\Cristina\Downloads\Quando.as.Luzes.se.Apagam.BDRip.XviD.Dual.?udio-BGD
_____ C:\Users\Cristina\Desktop\Quando.as.Luzes.se.Apagam.BDRip.XviD.Dual.?udio-BGD.avi
_____ C:\Users\Cristina\Downloads\QUATORRENT.rar
_____ C:\Users\Cristina\Downloads\Brooke Candy - Opulence - EP [].zip
____D C:\Users\Cristina\AppData\Local\{E--77CE958BACA9}
____D C:\Users\Cristina\Desktop\pendrive
_____ C:\Users\Cristina\Downloads\Hayley Kiyoko - Citrine - EP [HitseBeats].zip
_____ C:\Users\Cristina\Downloads\Tove Lo - Lady Wood [HitseBeats].zip
_____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
_____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
_____ C:\Windows\system32\locale.nls
_____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
_____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
_____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
_____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
_____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
_____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
_____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
_____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
_____ (Microsoft Corporation) C:\Windows\system32\mf.dll
_____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
_____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
_____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
_____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
_____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
_____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
_____ (Microsoft Corporation) C:\Windows\system32\evr.dll
_____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
_____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
_____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
_____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
_____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
_____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
_____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
_____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
_____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
_____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
_____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
_____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
_____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
_____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
_____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
_____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
_____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll
_____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
_____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
_____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
_____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
_____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
_____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
_____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
_____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
_____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
_____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
_____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
_____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
_____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
_____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
_____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
_____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
_____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
_____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
_____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
_____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
_____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
_____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
_____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
_____ (Microsoft Corporation) C:\Windows\system32\centel.dll
_____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
_____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
_____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
_____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
_____ (Microsoft Corporation) C:\Windows\system32\authui.dll
_____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
_____ (Microsoft Corporation) C:\Windows\explorer.exe
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
_____ C:\Users\Cristina\Downloads\100_ Feminista (feat. Karol Conká, Leo Justi & Tropikillaz) - Single [HitseBeats].zip
____D C:\Users\Cristina\AppData\Local\{C1C46F64-CDA0-44F3-B198-D652F918E413}
_____ C:\Users\Cristina\Downloads\AO30TORRENT.rar
_____ C:\Users\Cristina\Downloads\Fifth Harmony - 7_27 (Japan Deluxe Edition) [HitseBeats].zip
_____ C:\Users\Cristina\Downloads\Fifth Harmony - Reflection (Deluxe) [HitseBeats].zip
____D C:\Users\Cristina\Downloads\A.Era.do.Gelo.O.Big.Bang.2016.BDRip.XviD.Dual.?udio-BGD
_____ C:\Users\Cristina\Downloads\AERATORRENT.rar
____D C:\Users\Cristina\AppData\Local\{0F376500-DFBE-47DE-A1F0-B}
_____ C:\Users\Cristina\Downloads\B?RNS - Dopamine [HitseBeats].zip
____D C:\Users\Cristina\Downloads\Os Ca?a-Noivas.2016.BDRip.XviD.Dual.?udio-BGD
_____ C:\Users\Cristina\Downloads\OSCATORRENT.rar
_____ C:\Users\Cristina\Downloads\COMO FAZER CAIXA DE PRESENTE DE ORIGAMI.mp4
_____ C:\Users\Cristina\Downloads\caixa PAI.studio
____D C:\Users\Cristina\Downloads\Alice Através do Espelho [WEB-DL]
____D C:\Users\Cristina\Downloads\The.Magicians.WWW.AZTORRENTS.ORG
____D C:\Users\Cristina\Documents\Arquivos do Outlook
_____ C:\Users\Cristina\Downloads\6__n.mp4
_____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
_____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
_____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
_____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
_____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
_____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
_____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
_____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
_____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
_____ (Microsoft Corporation) C:\Windows\system32\wups.dll
_____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
_____ (Microsoft Corporation) C:\Windows\system32\consent.exe
_____ (Microsoft Corporation) C:\Windows\system32\msi.dll
_____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
_____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
_____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
_____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
_____ (Microsoft Corporation) C:\Windows\system32\user32.dll
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
_____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
_____ C:\Users\Cristina\Downloads\Flordelis - A Volta Por Cima 2014 (PlayBack).rar
_____ C:\Users\Cristina\Downloads\cocaine_sans.zip
_____ C:\Users\Cristina\Downloads\ferro_rosso.zip
_____ C:\Users\Cristina\Downloads\miltown.zip
_____ C:\Users\Cristina\Downloads\black_rose.zip
_____ C:\Users\Cristina\Downloads\blade_2.zip
_____ C:\Users\Cristina\Downloads\old_script.zip
_____ C:\Users\Cristina\Downloads\3D-Wooden-Logo-MockUp.zip
_____ C:\Users\Cristina\Downloads\base_02.zip
_____ C:\Users\Cristina\Downloads\Banda Uo - VENENO [HitseBeats].zip
_____ C:\Users\Cristina\Downloads\Banda Uó - Motel - [].zip
_____ C:\Users\Cristina\Downloads\Britney Spears - Glory (Deluxe Version) [HitseBeats].zip
==================== Três Meses Modificados arquivos e pastas ========
(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)
____D C:\Users\Todos os Usuários\Gramblr
____D C:\ProgramData\Gramblr
____D C:\Users\Cristina\AppData\Roaming\uTorrent
____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B.C9-439d-D005A0
____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B.C9-439d-D005A0
_____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
_____ C:\Users\Cristina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
_____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
____D C:\Users\Cristina\AppData\Local\Google
____D C:\Program Files\Google
____D C:\Program Files\K-Lite Codec Pack
____D C:\Program Files\Hamster Soft
____D C:\Autodesk
____D C:\Program Files\Adobe
____D C:\Program Files\DVDlabPro2
____D C:\Program Files\Nero
____D C:\Program Files\Gramblr
____D C:\Program Files\LG Electronics
___HD C:\Program Files\DrFoneAndroid_Temp
____D C:\Program Files\Wondershare
____D C:\Program Files\Digiarty
____D C:\Program Files\MajorSilence
____D C:\Program Files\DAEMON Tools Lite
____D C:\Program Files\Mp3tag
____D C:\Program Files\VirtualDJ
____D C:\Program Files\DVDStyler
____D C:\Program Files\Microsoft SQL Server
____D C:\Program Files\Microsoft Office
____D C:\Program Files\Microsoft Analysis Services
____D C:\Program Files\MSECache
____D C:\Program Files\Mozilla Maintenance Service
____D C:\Program Files\Freemake
____D C:\Program Files\PicosmosTools
____D C:\Program Files\FormatFactory
____D C:\Program Files\Hola
____D C:\Program Files\PhotoScape
____D C:\searchplugins
____D C:\Program Files\Lavasoft
____D C:\Program Files\WinRAR
____D C:\Program Files\Windows Loader
____D C:\Users\Todos os Usuários\Avira
____D C:\ProgramData\Avira
____D C:\Program Files\Avira
____D C:\Program Files\Windows Sidebar
____D C:\Program Files\Windows Portable Devices
____D C:\Program Files\Windows Photo Viewer
____D C:\Program Files\Windows Defender
____D C:\Program Files\Reference Assemblies
____D C:\Program Files\MSBuild
____D C:\Program Files\DVD Maker
____D C:\Program Files\Windows NT
_____ C:\Windows\Tasks\UpdateTask.job
_____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
____D C:\Users\Cristina\AppData\Local\Spotify
____D C:\Users\Cristina\AppData\Roaming\Spotify
____H C:\Windows\Tasks\SA.DAT
_____ C:\Windows\system32\prfh0416.dat
_____ C:\Windows\system32\prfc0416.dat
_____ C:\Windows\system32\PerfStringBackup.INI
____D C:\Windows\inf
_____ C:\Windows\system32\FNTCACHE.DAT
___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
____D C:\Users\Todos os Usuários\Microsoft Help
_____ C:\Windows\win.ini
____D C:\Users\Cristina\AppData\Local\UmmyVideoDownloader
____D C:\Users\Cristina\AppData\Local\Lavasoft
____D C:\Users\Todos os Usuários\Lavasoft
____D C:\ProgramData\Lavasoft
____D C:\Users\Cristina
____D C:\Windows\registration
____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
____D C:\Users\Cristina\Desktop\BACKUP
____D C:\Users\Cristina\AppData\Roaming\Mp3tag
____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeVeDe
____D C:\Users\Cristina\Desktop\Isac
____D C:\Users\Cristina\Desktop\Originals
____H C:\Users\Cristina\Desktop\photothumb.db
____D C:\Users\Cristina\AppData\Local\MPlayer
____D C:\Windows\system32\NDF
____D C:\Users\Todos os Usuários\Package Cache
____D C:\ProgramData\Package Cache
____D C:\Users\Cristina\AppData\Roaming\Avira
_____ C:\Windows\MEMORY.DMP
____D C:\Windows\Minidump
_____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
____D C:\Users\Cristina\AppData\Roaming\Hola
____D C:\KMPlayer
____D C:\FFOutput
____D C:\PerfLogs
____D C:\Users\Cristina\Downloads\Projeto.X.Uma.Festa.Fora.de.Controle.BDRip.XviD.Dual.?udio-DeadPool
==================== Arquivos na raiz de alguns diretórios =======
22:19 - 7065600 _____ () C:\Program Files\GUT97C3.tmp
13:01 - 0000103 _____ () C:\Users\Cristina\AppData\Roaming\WB.CFG
22:40 - 1620992 _____ () C:\ProgramData\service.exe
Arquivos para serem movidos ou deletados:
====================
C:\Program Files\Hola\app\hola.exe
C:\Users\Cristina\AppData\Local\Temp\H7UYUZD00P.exe
C:\Users\Cristina\AppData\Local\Temp\RB90R0ZNSV.exe
C:\Windows\Temp\\msiql.exe
C:\Users\Cristina\AppData\Local\Temp\LPQ7I4P6NE.exe
C:\Users\Cristina\AppData\Local\Temp\O2KMF50GX\O2KMF50GX.exe
C:\ProgramData\service.exe
C:\Users\Todos os Usuários\service.exe
Alguns arquivos em TEMP:
====================
C:\Users\Cristina\AppData\Local\Temp\3VLDPCF4O1.exe
C:\Users\Cristina\AppData\Local\Temp\60EA.tmp.exe
C:\Users\Cristina\AppData\Local\Temp\AW1J16C6EI.exe
C:\Users\Cristina\AppData\Local\Temp\BB5YG1NJOU.exe
C:\Users\Cristina\AppData\Local\Temp\BMDL1SI6JA.exe
C:\Users\Cristina\AppData\Local\Temp\Browser_V5.6._r_4727_(Build).exe
C:\Users\Cristina\AppData\Local\Temp\Browser_V5.7.15319.5_r_4722_(Build).exe
C:\Users\Cristina\AppData\Local\Temp\DriverInstall.exe
C:\Users\Cristina\AppData\Local\Temp\DriverInstall_X64.exe
C:\Users\Cristina\AppData\Local\Temp\DriverTool.dll
C:\Users\Cristina\AppData\Local\Temp\fsd793A.exe
C:\Users\Cristina\AppData\Local\Temp\H7UYUZD00P.exe
C:\Users\Cristina\AppData\Local\Temp\IQ171VEQDP.exe
C:\Users\Cristina\AppData\Local\Temp\LPQ7I4P6NE.exe
C:\Users\Cristina\AppData\Local\Temp\maohasubstat.dll
C:\Users\Cristina\AppData\Local\Temp\RB90R0ZNSV.exe
C:\Users\Cristina\AppData\Local\Temp\rkinstaller.exe
C:\Users\Cristina\AppData\Local\Temp\rkverify.exe
C:\Users\Cristina\AppData\Local\Temp\sdf4CAF.exe
C:\Users\Cristina\AppData\Local\Temp\sdfE8DD.exe
C:\Users\Cristina\AppData\Local\Temp\softconfig.dll
C:\Users\Cristina\AppData\Local\Temp\TJ8J9WS4VO.exe
C:\Users\Cristina\AppData\Local\Temp\uninstall.dll
C:\Users\Cristina\AppData\Local\Temp\YYCGRF3M5M.exe
==================== Bamital & volsnap ======================
(N?o há corre??o automática para arquivos que n?o passaram na verifica??o.)
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente
LastRegBack:
==================== Fim de FRST.txt ============================
Publicité
Raison du signalement:
Publicité

我要回帖

更多关于 maohawifisvr.exe 的文章

 

随机推荐