Usamos cookies para medir audiência e melhorar sua experiência. Você pode aceitar ou recusar a qualquer momento. Veja sobre o iMasters.
gpedit.msc,regedit,gerenciador de tarefas nao funcionam e progamas fexam do nada
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:15:28, on 28/06/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal
Running processes:
D:\WINDOWS.0\System32\smss.exe
D:\WINDOWS.0\system32\winlogon.exe
D:\WINDOWS.0\system32\services.exe
D:\WINDOWS.0\system32\lsass.exe
D:\WINDOWS.0\system32\svchost.exe
D:\WINDOWS.0\System32\svchost.exe
D:\WINDOWS.0\system32\spoolsv.exe
D:\WINDOWS.0\RTHDCPL.EXE
D:\WINDOWS.0\system32\ctfmon.exe
D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\mdm.exe
D:\Arquivos de programas\CDBurnerXP\NMSAccessU.exe
D:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
D:\WINDOWS.0\system32\wuauclt.exe
D:\WINDOWS.0\explorer.exe
D:\HiJackThis (1).exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = [Windows XPhoeNiX]
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Arquivos de programas\Internet Download Manager\IDMIECC.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - D:\Arquivos de programas\AVG\AVG9\avgssie.dll (file missing)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - D:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Arquivos de programas\Java\jre6\bin\ssv.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - D:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - D:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [igfxhkcmd] D:\WINDOWS.0\system32\hkcmd.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [unlockerAssistant] "D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [uTorrent] "D:\Arquivos de programas\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [iDMan] D:\Arquivos de programas\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [EBUNWVLUMV] D:\Temp\Vdh.exe
O4 - HKCU\..\Run: [spybotSD TeaTimer] D:\Arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_2] regsvr32 /s /n /i:U shell32 (User 'Default user')
O4 - Startup: LimeWire On Startup.lnk = D:\Arquivos de programas\LimeWire\LimeWire.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: Download all links with IDM - D:\Arquivos de programas\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - D:\Arquivos de programas\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - D:\Arquivos de programas\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://D:\ARQUIV~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\ARQUIV~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS.0\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS.0\Network Diagnostic\xpnetdiag.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - D:\Arquivos de programas\AVG\AVG9\avgpp.dll (file missing)
O20 - Winlogon Notify: avgrsstarter - D:\WINDOWS.0\SYSTEM32\avgrsstx.dll
O23 - Service: AVG Free E-mail Scanner (avg9emc) - Unknown owner - D:\Arquivos de programas\AVG\AVG9\avgemc.exe (file missing)
O23 - Service: AVG Free WatchDog (avg9wd) - Unknown owner - D:\Arquivos de programas\AVG\AVG9\avgwdsvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - D:\Arquivos de programas\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: NMSAccessU - Unknown owner - D:\Arquivos de programas\CDBurnerXP\NMSAccessU.exe
O23 - Service: Serviço de Compartilhamento de Rede do Windows Media Player (WMPNetworkSvc) - Unknown owner - D:\Arquivos de programas\Windows Media Player\WMPNetwk.exe (file missing)
--
End of file - 6319 bytes
Boa noite,Obrigado pela resposta rapida
o spybot abre mas fexa depois ,o unhook funciona entro no regedit mas fexa depois e novamente é desativado a ediçao do registro e gpedit da um erro:http://img571.imageshack.us/f/imagemzy.png (nao consegui dexa visivel no forum) ja baxei a dll e coloquei em D:\WINDOWS\system32 e nao funcionou
e aqui ta o log:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Versão da Base de Dados: 4251
Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.13
28/06/2010 19:25:22
mbam-log-2010-06-28 (19-25-22).txt
Tipo de Verificação: Verificação Completa (C:\|D:\|)
Objetos escaneados: 250306
Tempo decorrido: 50 minuto(s), 50 segundo(s)
Processos de Memória Infectados: 0
Módulos de Memória Infectados: 0
Chaves de Registro Infectadas: 1
Valores de Registro Infectados: 1
Itens de Dados no Registro Infectados: 5
Pastas Infectadas: 0
Arquivos Infectados: 1
Processos de Memória Infectados:
(Não foram detectados ítens maliciosos)
Módulos de Memória Infectados:
(Não foram detectados ítens maliciosos)
Chaves de Registro Infectadas:
HKEY_CURRENT_USER\SOFTWARE\EBUNWVLUMV (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Valores de Registro Infectados:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ebunwvlumv (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Itens de Dados no Registro Infectados:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Pastas Infectadas:
(Não foram detectados ítens maliciosos)
Arquivos Infectados:
D:\Documents and Settings\Familia\Configurações locais\Temporary Internet Files\Content.IE5\3QBSOWG5\winlogom[1].jpg (Trojan.FakeMS) -> Quarantined and deleted successfully.
*Baixe o Kaspersky Virus Removal Tool e salve-o no desktop
*Instale o programa
*A tela principal do programa será aberta automaticamente
*Selecione a opção:
[] Meu Computador
*Clique em [start scan]....aguarde. Pode demorar.
*Caso encontre algo, clique em [skip]
*Ao término do scan, clique em [Report]
*Uma janela chamada "Detailed report" será aberta
*Clique no sinal [+] ao lado de Autoscan para expandir os eventos encontrados
*Clique com o botão direito do mouse e selecione **"Select all"**
*Clique novamente com o botão direito do mouse e selecione **"Copy"**
*Abra o bloco de notas e cole (Ctrl+v) e salve o arquivo no desktop como log.txt
*Feche a janela "Detailed report" do Kasperky
*Na tela principal do Kaspersky clique em **[Exit] > [No]**
*Cole o relatório salvo no desktop na sua próxima respostadesculpa eu editei a minha resposta só to postando de novo pra que veja que editei la encima =X
o link do kaspersky nao funcionou estou baixando no link abaixo
http://www.baixaki.com.br/download/kaspersky-virus-removal-tool.htm
>
desculpa eu editei a minha resposta só to postando de novo pra que veja que editei la encima =X
o link do kaspersky nao funcionou estou baixando no link abaixo
http://www.baixaki.com.br/download/kaspersky-virus-removal-tool.htm
OK...baixe-o e siga as orientações postadas.
mil perdoes por prolongar meu tópico mas achei que fosse o link que me mandou e fui postando com pressa que iria baixar no Baixaki porem acho que é só aqui mais eu não consigo entrar em nenhum site do kaspersky ou fazer o download do mesmo
por favor se possível hospedar o instalador ou solucionar meu problema ficarei grato
O servidor está fora do ar....é preciso aguardar. Podem estar sendo feitas atualizações.
antes de postar aqui eu estava com problemas porque nenhum arquivo .exe abria entao estive procurando no google o problema e me disseram que seria o AVG que tinha aqui entao deletei os arquivos da pasta do AVG porque o desinstalador nao funcionava e consegui abrir arquivos .exe mas agora o combo fix disse que ele ta ativo o que eu faço?
1.
*Clique em [iniciar] > [Executar] > digite: Combofix /uninstall
*Clique [OK]
/applications/core/interface/imageproxy/imageproxy.php?img=http://h.imagehost.org/0248/92674490.jpg&key=d7625160bdb4f34fddfbe12b72891b63b90fddb13f504a329efcb0a689cdc439" alt="92674490.jpg" />
*Clique em [Executar]
*Aguarde até surgir a mensagem: "ComboFix está desinstalado"
*Clique [OK]
2.
*Use o desinstalador do AVG:
http://download.avg.com/filedir/util/avg_arm_sup_____.dir/avgremover.exe
3. Baixe o Kaspersky Virus Removal Tool. O link já está funcionando. Siga as orientações postadas.
como eu disse parece que só eu tenho problemas com kaspersky ...
continua fora do ar aqui
Enquanto hospedo o Kaspersky.....
1.
*Baixe o RegUnlocker e salve-o no desktop
*Execute o programa e na aba A - Restricciones, selecione:
>
1 - Elimina las restricciones del Sistema
2 - Eliminar restricciones del Explorador
*Clique em [Aplicar]
2.
*Baixe o SalityKiller e salve-o no desktop
*Extraia o seu conteúdo para C:\
*Desative a Restauração do Sistema
Clique com o botão direito do mouse em Meu Computador > Propriedades > Restauração do Sistema > Desativar Restauração do Sistema > OK > Sim
*Este programa irá rodar em 2 janelas distintas ao mesmo tempo!!
*A primeira janela:
*Clique em [iniciar] > [Executar] > copie e cole: C:\salitykiller.exe -m
*Clique [OK]
*Mantenha a janela rodando. Não feche-a!! Se desejar, minimize-a.
*A segunda janela:
*Clique em [iniciar] > [Executar] > copie e cole: C:\salitykiller.exe -y -x -k -j -l sality.txt -v
*Clique [OK]
*Caso não consiga rodar a segunda janela, repita o procedimento com os comandos:
C:\salitykiller.exe -y -x -j -l sality.txt -v
*Ao término, a janela 2 será fechada automaticamente. Feche, então, a janela 1.
*Cole o resumo localizado no final do arquivo C:\sality.txt, conforme mostrado abaixo:
>
23:57:51:0 Infected files: 8
23:57:51:0 Infected processes: 0
23:57:51:0 Infected threads: 2
23:57:51:0 Cured files: 8
23:57:51:0 Executed registry scripts: 1
Segue o link do Kasperky:
http://www.ziddu.com/download/10486342/setup_9.0.0.722_29.06.2010_03-45.exe.html
Não execute-o ainda...aguardarei primeiro o relatório do SalityKiller.
OMG ai o log:
8:42:37:484 Infected files: 228
8:42:37:484 Infected processes: 0
8:42:37:484 Infected threads: 10
8:42:37:484 Cured files: 228
8:42:37:484 Executed registry scripts: 1
Olá!!...vamos torcer para que seja resolvido. Você tem uma contaminação por um vírus de difícil remoção.
Execute o Kaspersky Virus Removal Tool conforme a orientação. Cole o relatório.
achei estranho dar skip pode me explicar?
ta ae :
Autoscan: completed 2 minutes ago (events: 737, objects: 163664, time: 01:32:57)
30/06/2010 08:49:47 Task started
30/06/2010 08:50:54 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
30/06/2010 08:50:59 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe Skipped by user
30/06/2010 08:51:06 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe
30/06/2010 08:51:12 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe Skipped by user
30/06/2010 08:51:37 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 08:51:41 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe Skipped by user
30/06/2010 08:51:45 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 08:51:48 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe Skipped by user
30/06/2010 08:51:56 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 08:52:20 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe Skipped by user
30/06/2010 08:52:20 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 08:52:22 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe Skipped by user
30/06/2010 08:52:26 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 08:52:36 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe Skipped by user
30/06/2010 08:54:55 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe
30/06/2010 08:54:58 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe Skipped by user
30/06/2010 08:55:13 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ODSERV.EXE
30/06/2010 08:55:16 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ODSERV.EXE Skipped by user
30/06/2010 08:55:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE
30/06/2010 08:55:23 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE Skipped by user
30/06/2010 08:55:43 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe
30/06/2010 08:55:48 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe Skipped by user
30/06/2010 08:56:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE
30/06/2010 08:56:15 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE Skipped by user
30/06/2010 08:56:23 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe
30/06/2010 08:56:27 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe Skipped by user
30/06/2010 08:56:31 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe
30/06/2010 08:56:34 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe Skipped by user
30/06/2010 08:56:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe
30/06/2010 08:56:40 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe Skipped by user
30/06/2010 08:56:43 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn2.exe
30/06/2010 08:56:44 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn2.exe Skipped by user
30/06/2010 08:56:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\inetwiz.exe
30/06/2010 08:56:52 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\inetwiz.exe Skipped by user
30/06/2010 08:56:57 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe
30/06/2010 08:57:03 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe Skipped by user
30/06/2010 08:57:08 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe
30/06/2010 08:57:15 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe Skipped by user
30/06/2010 08:57:21 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe
30/06/2010 08:57:26 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe Skipped by user
30/06/2010 08:57:31 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE
30/06/2010 08:57:34 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE Skipped by user
30/06/2010 08:57:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe
30/06/2010 08:57:52 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe Skipped by user
30/06/2010 08:58:04 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSOXMLED.EXE
30/06/2010 08:58:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSOXMLED.EXE Skipped by user
30/06/2010 08:58:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPVIEW.EXE
30/06/2010 08:58:57 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPVIEW.EXE Skipped by user
30/06/2010 08:59:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe
30/06/2010 08:59:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe Skipped by user
30/06/2010 08:59:19 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE
30/06/2010 08:59:24 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE Skipped by user
30/06/2010 08:59:33 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe
30/06/2010 08:59:39 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe Skipped by user
30/06/2010 08:59:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe
30/06/2010 08:59:57 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe Skipped by user
30/06/2010 09:00:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe
30/06/2010 09:00:18 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe Skipped by user
30/06/2010 09:00:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe
30/06/2010 09:00:31 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe Skipped by user
30/06/2010 09:00:43 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe
30/06/2010 09:00:46 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe Skipped by user
30/06/2010 09:00:59 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE
30/06/2010 09:01:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE Skipped by user
30/06/2010 09:01:08 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe
30/06/2010 09:01:11 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe Skipped by user
30/06/2010 09:01:52 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe
30/06/2010 09:01:56 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe Skipped by user
30/06/2010 09:02:19 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe
30/06/2010 09:03:03 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe Skipped by user
30/06/2010 09:03:11 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\Foxit Reader.exe
30/06/2010 09:03:14 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\Foxit Reader.exe Skipped by user
30/06/2010 09:03:33 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe
30/06/2010 09:03:37 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe Skipped by user
30/06/2010 09:03:43 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe
30/06/2010 09:03:46 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe Skipped by user
30/06/2010 09:03:56 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqsnotify.exe
30/06/2010 09:12:29 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqsnotify.exe Skipped by user
30/06/2010 09:13:24 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe
30/06/2010 09:13:29 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe Skipped by user
30/06/2010 09:13:34 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe
30/06/2010 09:13:39 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe Skipped by user
30/06/2010 09:13:44 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe
30/06/2010 09:13:50 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe Skipped by user
30/06/2010 09:13:55 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe
30/06/2010 09:13:58 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe Skipped by user
30/06/2010 09:14:01 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe
30/06/2010 09:14:05 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe Skipped by user
30/06/2010 09:14:08 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe
30/06/2010 09:14:11 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe Skipped by user
30/06/2010 09:14:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe
30/06/2010 09:14:20 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe Skipped by user
30/06/2010 09:14:23 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe
30/06/2010 09:14:27 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe Skipped by user
30/06/2010 09:14:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe
30/06/2010 09:14:34 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe Skipped by user
30/06/2010 09:14:44 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe
30/06/2010 09:14:49 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe Skipped by user
30/06/2010 09:14:50 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe
30/06/2010 09:14:52 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe Skipped by user
30/06/2010 09:14:56 Detected: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp
30/06/2010 09:15:01 Untreated: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp Skipped by user
30/06/2010 09:15:36 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe
30/06/2010 09:30:11 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe Skipped by user
30/06/2010 09:30:39 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe
30/06/2010 09:30:43 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe Skipped by user
30/06/2010 09:31:18 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 09:39:51 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe Skipped by user
30/06/2010 09:39:51 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 09:39:52 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe Skipped by user
30/06/2010 09:39:54 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 09:39:56 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe Skipped by user
30/06/2010 09:39:56 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 09:40:00 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe Skipped by user
30/06/2010 09:40:08 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 09:40:08 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe
30/06/2010 09:40:09 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe Skipped by user
30/06/2010 09:40:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe
30/06/2010 09:40:09 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe Skipped by user
30/06/2010 09:40:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe Skipped by user
30/06/2010 09:40:11 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe
30/06/2010 09:40:12 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE
30/06/2010 09:40:13 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe Skipped by user
30/06/2010 09:40:15 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE Skipped by user
30/06/2010 09:40:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSTORE.EXE
30/06/2010 09:40:22 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mmc.exe
30/06/2010 09:40:25 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSTORE.EXE Skipped by user
30/06/2010 09:40:26 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE
30/06/2010 09:40:26 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mmc.exe Skipped by user
30/06/2010 09:40:27 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE Skipped by user
30/06/2010 09:40:31 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe
30/06/2010 09:40:32 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE
30/06/2010 09:40:32 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSOXMLED.EXE
30/06/2010 09:40:35 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe Skipped by user
30/06/2010 09:40:36 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE Skipped by user
30/06/2010 09:40:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSOXMLED.EXE Skipped by user
30/06/2010 09:40:41 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
30/06/2010 09:40:41 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe
30/06/2010 09:40:41 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 09:40:44 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe Skipped by user
30/06/2010 09:40:45 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe Skipped by user
30/06/2010 09:40:46 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe Skipped by user
30/06/2010 09:40:48 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 09:40:50 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 09:40:51 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 09:40:51 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe Skipped by user
30/06/2010 09:40:53 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe Skipped by user
30/06/2010 09:40:53 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe Skipped by user
30/06/2010 09:40:59 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe
30/06/2010 09:41:00 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe Skipped by user
30/06/2010 09:41:00 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE
30/06/2010 09:41:00 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ODSERV.EXE
30/06/2010 09:41:00 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE Skipped by user
30/06/2010 09:41:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ODSERV.EXE Skipped by user
30/06/2010 09:41:04 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe
30/06/2010 09:41:05 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe Skipped by user
30/06/2010 09:41:05 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe
30/06/2010 09:41:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe
30/06/2010 09:41:06 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe
30/06/2010 09:41:06 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe Skipped by user
30/06/2010 09:41:07 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn2.exe
30/06/2010 09:41:07 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe Skipped by user
30/06/2010 09:41:07 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\inetwiz.exe
30/06/2010 09:41:08 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe Skipped by user
30/06/2010 09:41:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe
30/06/2010 09:41:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn2.exe Skipped by user
30/06/2010 09:41:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\inetwiz.exe Skipped by user
30/06/2010 09:41:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe Skipped by user
30/06/2010 09:41:14 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe
30/06/2010 09:41:14 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPVIEW.EXE
30/06/2010 09:41:15 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe
30/06/2010 09:41:15 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe Skipped by user
30/06/2010 09:41:16 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPVIEW.EXE Skipped by user
30/06/2010 09:41:17 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe Skipped by user
30/06/2010 09:41:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE
30/06/2010 09:41:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe
30/06/2010 09:41:21 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE Skipped by user
30/06/2010 09:41:21 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe
30/06/2010 09:41:22 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe Skipped by user
30/06/2010 09:41:24 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe Skipped by user
30/06/2010 09:41:27 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe
30/06/2010 09:41:29 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe Skipped by user
30/06/2010 09:41:30 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe
30/06/2010 09:41:31 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe Skipped by user
30/06/2010 09:41:32 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe
30/06/2010 09:41:34 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe Skipped by user
30/06/2010 09:41:36 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe
30/06/2010 09:41:36 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe Skipped by user
30/06/2010 09:41:38 Detected: Virus.Win32.Sality.aa D:\HiJackThis (1).exe
30/06/2010 09:41:38 Untreated: Virus.Win32.Sality.aa D:\HiJackThis (1).exe Skipped by user
30/06/2010 09:41:52 Detected: Virus.Win32.Sality.aa D:\SalityKiller.exe
30/06/2010 09:41:52 Untreated: Virus.Win32.Sality.aa D:\SalityKiller.exe Skipped by user
30/06/2010 09:41:57 Detected: Virus.Win32.Sality.aa D:\MsgPlusLive-484.exe
30/06/2010 09:41:57 Untreated: Virus.Win32.Sality.aa D:\MsgPlusLive-484.exe Skipped by user
30/06/2010 09:42:34 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\DW\DWTRIG20.EXE
30/06/2010 09:42:34 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\DW\DWTRIG20.EXE Skipped by user
30/06/2010 09:42:34 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\EQUATION\EQNEDT32.EXE
30/06/2010 09:42:34 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\EQUATION\EQNEDT32.EXE Skipped by user
30/06/2010 09:42:35 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\DW\DW20.EXE
30/06/2010 09:42:35 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\DW\DW20.EXE Skipped by user
30/06/2010 09:42:36 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPOCRDC.EXE
30/06/2010 09:42:36 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPOCRDC.EXE Skipped by user
30/06/2010 09:42:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPVIEW.EXE
30/06/2010 09:42:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MODI\12.0\MSPVIEW.EXE Skipped by user
30/06/2010 09:42:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ACECNFLT.EXE
30/06/2010 09:42:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MSInfo\OINFOP12.EXE
30/06/2010 09:42:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ACECNFLT.EXE Skipped by user
30/06/2010 09:42:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MSInfo\OINFOP12.EXE Skipped by user
30/06/2010 09:42:41 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSE7.EXE
30/06/2010 09:42:41 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSE7.EXE Skipped by user
30/06/2010 09:42:42 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSOXMLED.EXE
30/06/2010 09:42:42 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\MSOXMLED.EXE Skipped by user
30/06/2010 09:42:43 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ODSERV.EXE
30/06/2010 09:42:43 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\ODSERV.EXE Skipped by user
30/06/2010 09:42:45 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\OFFLB.EXE
30/06/2010 09:42:45 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\OFFLB.EXE Skipped by user
30/06/2010 09:42:45 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\OFFDIAG.EXE
30/06/2010 09:42:45 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\OFFDIAG.EXE Skipped by user
30/06/2010 09:42:46 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\Office Setup Controller\ODEPLOY.EXE
30/06/2010 09:42:46 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\Office Setup Controller\ODEPLOY.EXE Skipped by user
30/06/2010 09:42:46 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\Office Setup Controller\SETUP.EXE
30/06/2010 09:42:46 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\OFFICE12\Office Setup Controller\SETUP.EXE Skipped by user
30/06/2010 09:42:52 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE
30/06/2010 09:42:52 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE Skipped by user
30/06/2010 09:42:58 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\vs7jit.exe
30/06/2010 09:42:58 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\vs7jit.exe Skipped by user
30/06/2010 09:42:58 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WLLoginProxy.exe
30/06/2010 09:42:58 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WLLoginProxy.exe Skipped by user
30/06/2010 09:43:03 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\CCleaner\uninst.exe
30/06/2010 09:43:03 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\CCleaner\uninst.exe Skipped by user
30/06/2010 09:43:04 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Ask.com\SaUpdate.exe
30/06/2010 09:43:04 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Ask.com\SaUpdate.exe Skipped by user
30/06/2010 09:43:10 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\CursorXP\AniUtil.exe
30/06/2010 09:43:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\CursorXP\AniUtil.exe Skipped by user
30/06/2010 09:43:10 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\CursorXP\CursorXP.exe
30/06/2010 09:43:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\CursorXP\CursorXP.exe Skipped by user
30/06/2010 09:43:10 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\CursorXP\CurXPCpl.exe
30/06/2010 09:43:10 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\CursorXP\CurXPCpl.exe Skipped by user
30/06/2010 09:43:14 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\Uninstall.exe
30/06/2010 09:43:14 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\Uninstall.exe Skipped by user
30/06/2010 09:43:14 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\UnInstallPDFReaderPlugin.exe
30/06/2010 09:43:14 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\UnInstallPDFReaderPlugin.exe Skipped by user
30/06/2010 09:43:16 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\GamesPirata\Cabal\cabalmain.exe
30/06/2010 09:43:16 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\GamesPirata\Cabal\cabalmain.exe Skipped by user
30/06/2010 09:43:17 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\Foxit Reader.exe
30/06/2010 09:43:17 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Foxit Software\Foxit Reader\Foxit Reader.exe Skipped by user
30/06/2010 09:43:18 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\GamesPirata\Cabal\Uninstal.exe
30/06/2010 09:43:18 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\GamesPirata\Cabal\Uninstal.exe Skipped by user
30/06/2010 09:46:33 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Google\Update\1.2.183.29\GoogleCrashHandler.exe
30/06/2010 09:46:33 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Google\Update\1.2.183.29\GoogleCrashHandler.exe Skipped by user
30/06/2010 09:46:33 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Google\Update\1.2.183.29\GoogleUpdate.exe
30/06/2010 09:46:33 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Google\Update\1.2.183.29\GoogleUpdate.exe Skipped by user
30/06/2010 09:46:34 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Google\GoogleUpdateSetup.exe
30/06/2010 09:46:34 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Google\GoogleUpdateSetup.exe Skipped by user
30/06/2010 09:46:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\InstallShield Installation Information\{21040472-F8DF-48A9-A093-2986C1495670}\setup.exe
30/06/2010 09:46:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\iedw.exe
30/06/2010 09:46:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\iedw.exe Skipped by user
30/06/2010 09:46:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\InstallShield Installation Information\{21040472-F8DF-48A9-A093-2986C1495670}\setup.exe Skipped by user
30/06/2010 09:46:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Download Manager\Uninstall.exe
30/06/2010 09:46:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Download Manager\Uninstall.exe Skipped by user
30/06/2010 09:46:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn2.exe
30/06/2010 09:46:38 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn2.exe Skipped by user
30/06/2010 09:46:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwrmind.exe
30/06/2010 09:46:38 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwrmind.exe Skipped by user
30/06/2010 09:46:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe
30/06/2010 09:46:38 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe Skipped by user
30/06/2010 09:46:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwtutor.exe
30/06/2010 09:46:38 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\icwtutor.exe Skipped by user
30/06/2010 09:46:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\inetwiz.exe
30/06/2010 09:46:38 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Internet Explorer\Connection Wizard\inetwiz.exe Skipped by user
30/06/2010 09:46:47 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javacpl.exe
30/06/2010 09:46:47 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javacpl.exe Skipped by user
30/06/2010 09:46:47 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe
30/06/2010 09:46:47 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe Skipped by user
30/06/2010 09:46:47 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\java.exe
30/06/2010 09:46:47 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\java.exe Skipped by user
30/06/2010 09:46:48 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jbroker.exe
30/06/2010 09:46:48 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jbroker.exe Skipped by user
30/06/2010 09:46:48 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jp2launcher.exe
30/06/2010 09:46:48 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jp2launcher.exe Skipped by user
30/06/2010 09:46:48 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe
30/06/2010 09:46:48 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe Skipped by user
30/06/2010 09:46:48 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqsnotify.exe
30/06/2010 09:46:48 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqsnotify.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jureg.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jureg.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\klist.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\klist.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jusched.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jusched.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\policytool.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\policytool.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\orbd.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\orbd.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\rmid.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\rmid.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\rmiregistry.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\rmiregistry.exe Skipped by user
30/06/2010 09:46:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\ssvagent.exe
30/06/2010 09:46:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\ssvagent.exe Skipped by user
30/06/2010 09:46:50 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\tnameserv.exe
30/06/2010 09:46:50 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\tnameserv.exe Skipped by user
30/06/2010 09:46:50 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\unpack200.exe
30/06/2010 09:46:50 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\unpack200.exe Skipped by user
30/06/2010 09:47:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Filters\Haali\gdsmux.exe
30/06/2010 09:47:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Filters\Haali\gdsmux.exe Skipped by user
30/06/2010 09:47:06 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Real\Update_OB\upgrdhlp.exe
30/06/2010 09:47:06 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Real\Update_OB\upgrdhlp.exe Skipped by user
30/06/2010 09:47:07 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Tools\dsconfig.exe
30/06/2010 09:47:07 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Tools\dsconfig.exe Skipped by user
30/06/2010 09:47:07 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Tools\graphedit.exe
30/06/2010 09:47:07 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Tools\graphedit.exe Skipped by user
30/06/2010 09:47:08 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Tools\gspot\gspot.exe
30/06/2010 09:47:08 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\K-Lite Codec Pack\Tools\gspot\gspot.exe Skipped by user
30/06/2010 09:47:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\LimeWire\uninstall.exe
30/06/2010 09:47:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\LimeWire\uninstall.exe Skipped by user
30/06/2010 09:47:19 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe
30/06/2010 09:47:19 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe Skipped by user
30/06/2010 09:47:19 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbamgui.exe
30/06/2010 09:47:19 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbamgui.exe Skipped by user
30/06/2010 09:47:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbamservice.exe
30/06/2010 09:47:20 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbamservice.exe Skipped by user
30/06/2010 09:47:22 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Messenger Plus! Live\Uninstall.exe
30/06/2010 09:47:22 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Messenger Plus! Live\Uninstall.exe Skipped by user
30/06/2010 09:47:27 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft\Search Enhancement Pack\Choice Guard\CGuard.exe
30/06/2010 09:47:27 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft\Search Enhancement Pack\Choice Guard\CGuard.exe Skipped by user
30/06/2010 09:47:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\DSSM.EXE
30/06/2010 09:47:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\DSSM.EXE Skipped by user
30/06/2010 09:47:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\CLVIEW.EXE
30/06/2010 09:47:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\CLVIEW.EXE Skipped by user
30/06/2010 09:47:46 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\GRAPH.EXE
30/06/2010 09:47:46 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\GRAPH.EXE Skipped by user
30/06/2010 09:47:56 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\excelcnv.exe
30/06/2010 09:47:56 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\excelcnv.exe Skipped by user
30/06/2010 09:47:57 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE
30/06/2010 09:47:57 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE Skipped by user
30/06/2010 09:47:57 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE
30/06/2010 09:47:57 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE Skipped by user
30/06/2010 09:48:00 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSOHTMED.EXE
30/06/2010 09:48:00 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSOHTMED.EXE Skipped by user
30/06/2010 09:48:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSTORE.EXE
30/06/2010 09:48:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSTORE.EXE Skipped by user
30/06/2010 09:48:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSQRY32.EXE
30/06/2010 09:48:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSQRY32.EXE Skipped by user
30/06/2010 09:48:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSTORDB.EXE
30/06/2010 09:48:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSTORDB.EXE Skipped by user
30/06/2010 09:48:04 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE
30/06/2010 09:48:04 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE Skipped by user
30/06/2010 09:48:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OSA.EXE
30/06/2010 09:48:05 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OSA.EXE Skipped by user
30/06/2010 09:48:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\ORGCHART.EXE
30/06/2010 09:48:05 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\ORGCHART.EXE Skipped by user
30/06/2010 09:48:07 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\SETLANG.EXE
30/06/2010 09:48:07 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\SETLANG.EXE Skipped by user
30/06/2010 09:48:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\Wordconv.exe
30/06/2010 09:48:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\Wordconv.exe Skipped by user
30/06/2010 09:48:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\SELFCERT.EXE
30/06/2010 09:48:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\SELFCERT.EXE Skipped by user
30/06/2010 09:48:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE
30/06/2010 09:48:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE Skipped by user
30/06/2010 09:48:41 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft PowerToys\TweakUI.exe
30/06/2010 09:48:41 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft PowerToys\TweakUI.exe Skipped by user
30/06/2010 09:48:42 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\sllauncher.exe
30/06/2010 09:48:42 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\sllauncher.exe Skipped by user
30/06/2010 09:48:42 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\4.0.50524.0\agcp.exe
30/06/2010 09:48:42 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\4.0.50524.0\agcp.exe Skipped by user
30/06/2010 09:48:43 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\4.0.50524.0\coregen.exe
30/06/2010 09:48:43 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\4.0.50524.0\coregen.exe Skipped by user
30/06/2010 09:48:44 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\4.0.50524.0\Silverlight.Configuration.exe
30/06/2010 09:48:44 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Silverlight\4.0.50524.0\Silverlight.Configuration.exe Skipped by user
30/06/2010 09:48:48 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\crashreporter.exe
30/06/2010 09:48:48 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\crashreporter.exe Skipped by user
30/06/2010 09:48:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe
30/06/2010 09:48:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe Skipped by user
30/06/2010 09:48:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe
30/06/2010 09:48:49 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe Skipped by user
30/06/2010 09:48:52 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\NCsoft\Install_L2Brazilian_EPILOGUE\Install L2Brazilian EPILOGUE.exe
30/06/2010 09:48:52 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\NCsoft\Install_L2Brazilian_EPILOGUE\Install L2Brazilian EPILOGUE.exe Skipped by user
30/06/2010 09:48:53 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\uninstall\helper.exe
30/06/2010 09:48:53 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\uninstall\helper.exe Skipped by user
30/06/2010 09:48:55 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\NCsoft\Lineage II\LineageII.exe
30/06/2010 09:48:55 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\NCsoft\Lineage II\LineageII.exe Skipped by user
30/06/2010 09:50:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\uninstall.exe
30/06/2010 09:50:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\uninstall.exe Skipped by user
30/06/2010 09:50:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\updater\GUP.exe
30/06/2010 09:50:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\updater\GUP.exe Skipped by user
30/06/2010 09:50:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe
30/06/2010 09:50:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe Skipped by user
30/06/2010 09:50:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\oemig50.exe
30/06/2010 09:50:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\oemig50.exe Skipped by user
30/06/2010 09:50:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe
30/06/2010 09:50:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe Skipped by user
30/06/2010 09:50:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe
30/06/2010 09:50:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe Skipped by user
30/06/2010 09:50:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe
30/06/2010 09:50:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe Skipped by user
30/06/2010 09:50:03 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\uninstall.exe
30/06/2010 09:50:03 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\uninstall.exe Skipped by user
30/06/2010 09:50:09 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe
30/06/2010 09:50:09 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe Skipped by user
30/06/2010 09:50:12 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\FirefoxPortable.exe
30/06/2010 09:50:12 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\FirefoxPortable.exe Skipped by user
30/06/2010 09:50:13 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\crashreporter.exe
30/06/2010 09:50:13 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\crashreporter.exe Skipped by user
30/06/2010 09:50:13 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\updater.exe
30/06/2010 09:50:13 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\updater.exe Skipped by user
30/06/2010 09:50:14 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\uninstall\helper.exe
30/06/2010 09:50:14 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\uninstall\helper.exe Skipped by user
30/06/2010 09:50:18 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\Data\profile\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe
30/06/2010 09:50:18 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\Data\profile\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe Skipped by user
30/06/2010 09:50:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\ChromeLoader.exe
30/06/2010 09:50:29 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\ChromeLoader.exe Skipped by user
30/06/2010 09:50:30 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\Chrome\crash_service.exe
30/06/2010 09:50:30 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\Chrome\crash_service.exe Skipped by user
30/06/2010 09:50:36 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefragCmd.exe
30/06/2010 09:50:36 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefragCmd.exe Skipped by user
30/06/2010 09:50:36 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\jt.exe
30/06/2010 09:50:36 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\jt.exe Skipped by user
30/06/2010 09:50:36 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\pagedfrg.exe
30/06/2010 09:50:36 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\pagedfrg.exe Skipped by user
30/06/2010 09:50:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\livecall.exe
30/06/2010 09:50:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\livecall.exe Skipped by user
30/06/2010 09:50:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\msvs.exe
30/06/2010 09:50:37 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\msvs.exe Skipped by user
30/06/2010 09:50:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\usnsvc.exe
30/06/2010 09:50:38 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\usnsvc.exe Skipped by user
30/06/2010 09:50:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\dpinst.exe
30/06/2010 09:50:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\dpinst.exe Skipped by user
30/06/2010 09:50:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Rainmeter\uninst.exe
30/06/2010 09:50:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Rainmeter\uninst.exe Skipped by user
30/06/2010 09:50:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\msgrdvmn.exe
30/06/2010 09:50:39 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\msgrdvmn.exe Skipped by user
30/06/2010 09:50:41 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Rainmeter\vcredist_x86.exe
30/06/2010 09:50:41 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Rainmeter\vcredist_x86.exe Skipped by user
30/06/2010 09:51:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\uninst.exe
30/06/2010 09:51:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\uninst.exe Skipped by user
30/06/2010 09:51:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
30/06/2010 09:51:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe Skipped by user
30/06/2010 09:51:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe
30/06/2010 09:51:01 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe Skipped by user
30/06/2010 09:51:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\winampa.exe
30/06/2010 09:51:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\winampa.exe Skipped by user
30/06/2010 09:51:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\UninstWA.exe
30/06/2010 09:51:02 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\UninstWA.exe Skipped by user
30/06/2010 09:51:19 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\wmccds.exe
30/06/2010 09:51:19 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\wmccds.exe Skipped by user
30/06/2010 09:51:19 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\WMCCFG.exe
30/06/2010 09:51:19 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\WMCCFG.exe Skipped by user
30/06/2010 09:51:19 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp Detect\UninstWaDetect.exe
30/06/2010 09:51:19 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp Detect\UninstWaDetect.exe Skipped by user
30/06/2010 09:51:21 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmdbexport.exe
30/06/2010 09:51:21 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmdbexport.exe Skipped by user
30/06/2010 09:51:22 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\migrate.exe
30/06/2010 09:51:22 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\migrate.exe Skipped by user
30/06/2010 09:51:22 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmlaunch.exe
30/06/2010 09:51:22 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmlaunch.exe Skipped by user
30/06/2010 09:51:22 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpenc.exe
30/06/2010 09:51:22 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpenc.exe Skipped by user
30/06/2010 09:51:23 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpnscfg.exe
30/06/2010 09:51:23 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpnscfg.exe Skipped by user
30/06/2010 09:51:24 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\setup_wm.exe
30/06/2010 09:51:24 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\setup_wm.exe Skipped by user
30/06/2010 09:51:28 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\RarExtLoader.exe
30/06/2010 09:51:28 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\RarExtLoader.exe Skipped by user
30/06/2010 09:51:28 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe
30/06/2010 09:51:28 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe Skipped by user
30/06/2010 09:51:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Rar.exe
30/06/2010 09:51:29 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Rar.exe Skipped by user
30/06/2010 09:51:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Uninstall.exe
30/06/2010 09:51:29 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Uninstall.exe Skipped by user
30/06/2010 09:51:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\UnRAR.exe
30/06/2010 09:51:29 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\UnRAR.exe Skipped by user
30/06/2010 09:51:30 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\xmlUpdater.exe
30/06/2010 09:51:30 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\xmlUpdater.exe Skipped by user
30/06/2010 09:51:30 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAD5.tmp\irfanview410br.exe
30/06/2010 09:51:30 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAD5.tmp\irfanview410br.exe Skipped by user
30/06/2010 09:51:31 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSADF.tmp\Java6u10.exe
30/06/2010 09:51:31 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSADF.tmp\Java6u10.exe Skipped by user
30/06/2010 09:51:31 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 09:51:31 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npp.5.1.Installer.exe Skipped by user
30/06/2010 09:51:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npplaunc.exe
30/06/2010 09:51:32 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npplaunc.exe Skipped by user
30/06/2010 09:51:32 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe
30/06/2010 09:51:32 Untreated: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe Skipped by user
30/06/2010 09:53:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\All Users.WINDOWS.0\Dados de aplicativos\Kaspersky Lab Setup Files\Kaspersky Anti-Virus 2009\brazilian\setup.exe
30/06/2010 09:53:18 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\All Users.WINDOWS.0\Dados de aplicativos\Kaspersky Lab Setup Files\Kaspersky Anti-Virus 2009\brazilian\setup.exe Skipped by user
30/06/2010 09:53:23 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\xmlUpdater.exe
30/06/2010 09:53:23 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\xmlUpdater.exe Skipped by user
30/06/2010 09:53:23 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB08.tmp\Java6u10.exe
30/06/2010 09:53:23 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB08.tmp\Java6u10.exe Skipped by user
30/06/2010 09:53:24 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 09:53:24 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npp.5.1.Installer.exe Skipped by user
30/06/2010 09:53:25 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npplaunc.exe
30/06/2010 09:53:25 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npplaunc.exe Skipped by user
30/06/2010 09:53:36 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\Configurações locais\Temp\FP_PL_MSI_INSTALLER.exe
30/06/2010 09:53:36 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\Configurações locais\Temp\FP_PL_MSI_INSTALLER.exe Skipped by user
30/06/2010 09:54:12 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\xmlUpdater.exe
30/06/2010 09:54:12 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\xmlUpdater.exe Skipped by user
30/06/2010 09:54:13 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB08.tmp\Java6u10.exe
30/06/2010 09:54:13 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB08.tmp\Java6u10.exe Skipped by user
30/06/2010 09:54:13 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSAFE.tmp\irfanview410br.exe
30/06/2010 09:54:13 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSAFE.tmp\irfanview410br.exe Skipped by user
30/06/2010 09:54:14 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 09:54:14 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npp.5.1.Installer.exe Skipped by user
30/06/2010 09:54:14 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npplaunc.exe
30/06/2010 09:54:14 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npplaunc.exe Skipped by user
30/06/2010 09:54:15 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\xmlUpdater.exe
30/06/2010 09:54:15 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\xmlUpdater.exe Skipped by user
30/06/2010 09:54:16 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAD5.tmp\irfanview410br.exe
30/06/2010 09:54:16 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAD5.tmp\irfanview410br.exe Skipped by user
30/06/2010 09:54:16 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSADF.tmp\Java6u10.exe
30/06/2010 09:54:16 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSADF.tmp\Java6u10.exe Skipped by user
30/06/2010 09:54:16 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 09:54:16 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npp.5.1.Installer.exe Skipped by user
30/06/2010 09:54:17 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npplaunc.exe
30/06/2010 09:54:17 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npplaunc.exe Skipped by user
30/06/2010 09:54:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 09:54:18 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe Skipped by user
30/06/2010 09:54:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\xmlUpdater.exe
30/06/2010 09:54:18 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\xmlUpdater.exe Skipped by user
30/06/2010 09:54:19 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAD5.tmp\irfanview410br.exe
30/06/2010 09:54:19 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAD5.tmp\irfanview410br.exe Skipped by user
30/06/2010 09:54:19 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSADF.tmp\Java6u10.exe
30/06/2010 09:54:19 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSADF.tmp\Java6u10.exe Skipped by user
30/06/2010 09:54:19 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 09:54:19 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npp.5.1.Installer.exe Skipped by user
30/06/2010 09:54:19 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npplaunc.exe
30/06/2010 09:54:19 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npplaunc.exe Skipped by user
30/06/2010 09:54:22 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe
30/06/2010 09:54:22 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe Skipped by user
30/06/2010 09:54:28 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\5.0.375.86\Installer\setup.exe
30/06/2010 09:54:28 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\5.0.375.86\Installer\setup.exe Skipped by user
30/06/2010 09:54:30 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 09:54:30 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe Skipped by user
30/06/2010 09:54:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleCrashHandler.exe
30/06/2010 09:54:32 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleCrashHandler.exe Skipped by user
30/06/2010 09:54:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleUpdate.exe
30/06/2010 09:54:32 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleUpdate.exe Skipped by user
30/06/2010 09:54:59 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Temp\FP_AX_MSI_INSTALLER.exe
30/06/2010 09:54:59 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Temp\FP_AX_MSI_INSTALLER.exe Skipped by user
30/06/2010 09:55:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\crashreporter.exe
30/06/2010 09:55:32 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\crashreporter.exe Skipped by user
30/06/2010 09:55:33 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpicleanup.exe
30/06/2010 09:55:33 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpicleanup.exe Skipped by user
30/06/2010 09:55:33 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\updater.exe
30/06/2010 09:55:33 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\updater.exe Skipped by user
30/06/2010 09:55:34 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpcshell.exe
30/06/2010 09:55:34 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpcshell.exe Skipped by user
30/06/2010 09:55:35 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_link.exe
30/06/2010 09:55:35 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_link.exe Skipped by user
30/06/2010 09:55:35 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_dump.exe
30/06/2010 09:55:35 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_dump.exe Skipped by user
30/06/2010 09:55:36 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpidl.exe
30/06/2010 09:55:36 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpidl.exe Skipped by user
30/06/2010 09:55:36 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xulrunner.exe
30/06/2010 09:55:36 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xulrunner.exe Skipped by user
30/06/2010 09:55:50 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe
30/06/2010 09:55:50 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe Skipped by user
30/06/2010 09:55:51 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe
30/06/2010 09:55:51 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe Skipped by user
30/06/2010 09:55:52 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\felipe\INTERNET.DOWNLOAD.MANAGER.V5.12.INCL.PATCH\Setup.exe
30/06/2010 09:55:52 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\felipe\INTERNET.DOWNLOAD.MANAGER.V5.12.INCL.PATCH\Setup.exe Skipped by user
30/06/2010 09:55:52 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\hijackthis\HijackThis.exe
30/06/2010 09:55:52 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\hijackthis\HijackThis.exe Skipped by user
30/06/2010 09:56:44 Detected: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/l2pbx.exe
30/06/2010 09:58:26 Untreated: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/l2pbx.exe Write not supported
30/06/2010 09:58:26 Detected: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/inject.dll
30/06/2010 09:58:30 Untreated: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/inject.dll Write not supported
30/06/2010 09:58:33 Detected: Backdoor.Win32.Hupigon.kzbz D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.5.33.164.rar/inject.dll
30/06/2010 09:58:36 Untreated: Backdoor.Win32.Hupigon.kzbz D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.5.33.164.rar/inject.dll Write not supported
30/06/2010 09:58:56 Detected: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/l2pbx.exe
30/06/2010 09:59:00 Untreated: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/l2pbx.exe Write not supported
30/06/2010 09:59:02 Detected: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/inject.dll
30/06/2010 09:59:02 Untreated: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/inject.dll Write not supported
30/06/2010 10:01:07 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\hlds.exe
30/06/2010 10:01:07 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\hlds.exe Skipped by user
30/06/2010 10:01:09 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\uninst.exe
30/06/2010 10:01:09 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\uninst.exe Skipped by user
30/06/2010 10:01:10 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe
30/06/2010 10:01:10 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe Skipped by user
30/06/2010 10:01:11 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\voice_tweak.exe
30/06/2010 10:01:11 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\voice_tweak.exe Skipped by user
30/06/2010 10:01:34 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\platform\steam\cached\steambackup.exe
30/06/2010 10:01:34 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\platform\steam\cached\steambackup.exe Skipped by user
30/06/2010 10:02:04 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\LineageII_Live_Installer\Lineage II Installer\setup.exe
30/06/2010 10:02:04 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\LineageII_Live_Installer\Lineage II Installer\setup.exe Skipped by user
30/06/2010 10:02:04 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4\Metin2 Live.exe
30/06/2010 10:02:04 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4\Metin2 Live.exe Skipped by user
30/06/2010 10:02:42 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\pencil-0.4.4b-win\Pencil.exe
30/06/2010 10:02:42 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\pencil-0.4.4b-win\Pencil.exe Skipped by user
30/06/2010 10:03:03 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\host\c.exe
30/06/2010 10:03:03 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\host\c.exe Skipped by user
30/06/2010 10:03:07 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe
30/06/2010 10:03:07 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe Skipped by user
30/06/2010 10:03:11 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe
30/06/2010 10:03:11 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe Skipped by user
30/06/2010 10:03:16 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\ccsetup233.exe
30/06/2010 10:03:16 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\ccsetup233.exe Skipped by user
30/06/2010 10:03:28 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\dotNetFx35setup.exe
30/06/2010 10:03:28 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\dotNetFx35setup.exe Skipped by user
30/06/2010 10:03:29 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe
30/06/2010 10:03:29 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe Skipped by user
30/06/2010 10:03:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe
30/06/2010 10:03:32 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe Skipped by user
30/06/2010 10:03:32 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\HiJackThis.exe
30/06/2010 10:03:32 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\HiJackThis.exe Skipped by user
30/06/2010 10:03:33 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe
30/06/2010 10:03:33 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe Skipped by user
30/06/2010 10:03:34 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe
30/06/2010 10:03:34 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe Skipped by user
30/06/2010 10:03:57 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe
30/06/2010 10:03:57 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe Skipped by user
30/06/2010 10:03:58 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe
30/06/2010 10:03:58 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe Skipped by user
30/06/2010 10:03:59 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\SoftonicDownloader40696.exe
30/06/2010 10:03:59 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\SoftonicDownloader40696.exe Skipped by user
30/06/2010 10:04:21 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\winamp5572_full_emusic-7plus_pt-br.exe
30/06/2010 10:04:21 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\winamp5572_full_emusic-7plus_pt-br.exe Skipped by user
30/06/2010 10:04:22 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe
30/06/2010 10:04:22 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe Skipped by user
30/06/2010 10:04:22 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe
30/06/2010 10:04:22 Untreated: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe Skipped by user
30/06/2010 10:04:40 Detected: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Meus documentos\Downloads\l2phx.3.4.1.82.english\l2pbx.exe
30/06/2010 10:06:12 Detected: Virus.Win32.Sality.aa D:\Install\Setup\firefox-ultimate-optimizer-11.exe
30/06/2010 10:06:13 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\firefox-ultimate-optimizer-11.exe Skipped by user
30/06/2010 10:06:13 Detected: Virus.Win32.Sality.aa D:\Install\XPlode.exe
30/06/2010 10:06:13 Untreated: Virus.Win32.Sality.aa D:\Install\XPlode.exe Skipped by user
30/06/2010 10:06:14 Detected: Virus.Win32.Sality.aa D:\Install\Setup\googleChrome.exe
30/06/2010 10:06:14 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\googleChrome.exe Skipped by user
30/06/2010 10:06:14 Detected: Virus.Win32.Sality.aa D:\Install\Setup\JkDefragGUI102.exe
30/06/2010 10:06:14 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\JkDefragGUI102.exe Skipped by user
30/06/2010 10:06:15 Detected: Virus.Win32.Sality.aa D:\Install\Setup\LiveMessengerPortable85.exe
30/06/2010 10:06:15 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\LiveMessengerPortable85.exe Skipped by user
30/06/2010 10:06:19 Detected: Virus.Win32.Sality.aa D:\Install\Setup\PSkill.exe
30/06/2010 10:06:19 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\PSkill.exe Skipped by user
30/06/2010 10:06:20 Detected: Virus.Win32.Sality.aa D:\Install\Setup\ReOrderDirectories.exe
30/06/2010 10:06:20 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\ReOrderDirectories.exe Skipped by user
30/06/2010 10:06:20 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd37.exe
30/06/2010 10:06:20 Untreated: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd37.exe Skipped by user
30/06/2010 10:06:20 Detected: Virus.Win32.Sality.aa D:\Install\Setup\teracopy.exe
30/06/2010 10:06:20 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\teracopy.exe Skipped by user
30/06/2010 10:06:21 Detected: Virus.Win32.Sality.aa D:\Install\Setup\xfoundrytw.exe
30/06/2010 10:06:21 Untreated: Virus.Win32.Sality.aa D:\Install\Setup\xfoundrytw.exe Skipped by user
30/06/2010 10:06:22 Detected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\ose.exe
30/06/2010 10:06:22 Untreated: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\ose.exe Skipped by user
30/06/2010 10:06:23 Detected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\setup.exe
30/06/2010 10:06:23 Untreated: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\setup.exe Skipped by user
30/06/2010 10:06:25 Detected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-006E-0416-0000-0000000FF1CE}-D\dwtrig20.exe
30/06/2010 10:06:25 Untreated: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-006E-0416-0000-0000000FF1CE}-D\dwtrig20.exe Skipped by user
30/06/2010 10:06:30 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd55.exe
30/06/2010 10:06:30 Untreated: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd55.exe Skipped by user
30/06/2010 10:06:34 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\BFHeroes.exe
30/06/2010 10:06:34 Untreated: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\BFHeroes.exe Skipped by user
30/06/2010 10:06:36 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\Uninstaller.exe
30/06/2010 10:06:36 Untreated: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\Uninstaller.exe Skipped by user
30/06/2010 10:06:56 Detected: Virus.Win32.Sality.aa D:\Temp\67.tmp\edS.exe
30/06/2010 10:06:56 Untreated: Virus.Win32.Sality.aa D:\Temp\67.tmp\edS.exe Skipped by user
30/06/2010 10:06:56 Detected: Virus.Win32.Sality.aa D:\Temp\67.tmp\etPathS.exe
30/06/2010 10:06:56 Untreated: Virus.Win32.Sality.aa D:\Temp\67.tmp\etPathS.exe Skipped by user
30/06/2010 10:06:57 Detected: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp
30/06/2010 10:06:57 Untreated: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp Skipped by user
30/06/2010 10:07:07 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avadmin.exe
30/06/2010 10:07:07 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avadmin.exe Skipped by user
30/06/2010 10:07:08 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avcenter.exe
30/06/2010 10:07:08 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avcenter.exe Skipped by user
30/06/2010 10:07:08 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avconfig.exe
30/06/2010 10:07:08 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avconfig.exe Skipped by user
30/06/2010 10:07:08 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avgnt.exe
30/06/2010 10:07:08 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avgnt.exe Skipped by user
30/06/2010 10:07:08 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avguard.exe
30/06/2010 10:07:08 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avguard.exe Skipped by user
30/06/2010 10:07:09 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avnotify.exe
30/06/2010 10:07:09 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avnotify.exe Skipped by user
30/06/2010 10:07:09 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avscan.exe
30/06/2010 10:07:09 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avscan.exe Skipped by user
30/06/2010 10:07:09 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avupgsvc.exe
30/06/2010 10:07:09 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avupgsvc.exe Skipped by user
30/06/2010 10:07:09 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avwsc.exe
30/06/2010 10:07:09 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avwsc.exe Skipped by user
30/06/2010 10:07:10 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\fact.exe
30/06/2010 10:07:10 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\fact.exe Skipped by user
30/06/2010 10:07:10 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\guardgui.exe
30/06/2010 10:07:10 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\guardgui.exe Skipped by user
30/06/2010 10:07:10 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\licmgr.exe
30/06/2010 10:07:10 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\licmgr.exe Skipped by user
30/06/2010 10:07:11 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\presetup.exe
30/06/2010 10:07:11 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\presetup.exe Skipped by user
30/06/2010 10:07:11 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\sched.exe
30/06/2010 10:07:11 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\sched.exe Skipped by user
30/06/2010 10:07:11 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\setup.exe
30/06/2010 10:07:11 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\setup.exe Skipped by user
30/06/2010 10:07:12 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\update.exe
30/06/2010 10:07:12 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\update.exe Skipped by user
30/06/2010 10:07:12 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\updfix.exe
30/06/2010 10:07:12 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\updfix.exe Skipped by user
30/06/2010 10:07:13 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\vcredist_x86.exe
30/06/2010 10:07:13 Untreated: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\vcredist_x86.exe Skipped by user
30/06/2010 10:07:15 Detected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleCrashHandler.exe
30/06/2010 10:07:15 Untreated: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleCrashHandler.exe Skipped by user
30/06/2010 10:07:15 Detected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleUpdate.exe
30/06/2010 10:07:16 Untreated: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleUpdate.exe Skipped by user
30/06/2010 10:14:45 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe
30/06/2010 10:14:45 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe Skipped by user
30/06/2010 10:14:49 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 10:14:49 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe Skipped by user
30/06/2010 10:20:17 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\calc.exe
30/06/2010 10:20:17 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\calc.exe Skipped by user
30/06/2010 10:20:18 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe
30/06/2010 10:20:18 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe Skipped by user
30/06/2010 10:20:20 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 10:20:20 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe Skipped by user
30/06/2010 10:20:35 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe
30/06/2010 10:20:35 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe Skipped by user
30/06/2010 10:20:51 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\logagent.exe
30/06/2010 10:20:51 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\logagent.exe Skipped by user
30/06/2010 10:20:55 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mmc.exe
30/06/2010 10:20:55 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mmc.exe Skipped by user
30/06/2010 10:20:58 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe
30/06/2010 10:20:58 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe Skipped by user
30/06/2010 10:21:00 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mstinit.exe
30/06/2010 10:21:00 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mstinit.exe Skipped by user
30/06/2010 10:21:05 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\odbcconf.exe
30/06/2010 10:21:05 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\odbcconf.exe Skipped by user
30/06/2010 10:21:14 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe
30/06/2010 10:21:14 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe Skipped by user
30/06/2010 10:21:15 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 10:21:15 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe Skipped by user
30/06/2010 10:21:16 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\setup.exe
30/06/2010 10:21:16 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\setup.exe Skipped by user
30/06/2010 10:21:19 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe
30/06/2010 10:21:19 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe Skipped by user
30/06/2010 10:21:25 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wiaacmgr.exe
30/06/2010 10:21:25 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wiaacmgr.exe Skipped by user
30/06/2010 10:21:28 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wuauclt.exe
30/06/2010 10:21:28 Untreated: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wuauclt.exe Skipped by user
30/06/2010 10:22:44 Task completed
É...a coisa tá feia...o Sality contaminou muitos arquivos.
Salve seus arquivos pessoais (.doc, .jpeg, etc..)...exceto aplicativos (.exe). Pode haver a necessidade de formatação.
*Abra a pasta Virus Removal Tool, localizada no desktop, duplo clique no atalho Start
*A tela principal do Kaspersky será aberta novamente
*Selecione a opção:
[] Meu Computador
*Clique em [start scan]....aguarde. Pode demorar.
*Caso encontre algo, clique em [Disinfect], caso não seja possível, clique em [Delete]
*Ao término do scan, clique em [Report]
*Clique no sinal [+] ao lado de Autoscan para expandir os eventos encontrados
*Clique com o botão direito do mouse e selecione **"Select all"**
*Clique novamente com o botão direito do mouse e selecione **"Copy"**
*Abra o bloco de notas e cole (Ctrl+v) e salve o arquivo no desktop como log2.txt
*Feche a janela "Detailed report" do Kasperky
*Na tela principal do Kaspersky clique em **[Exit] > [No]**
*Cole o relatório salvo no desktop na sua próxima resposta e novo log do hijackOHHH grande kaspersky
hoje eu eu liguei e o pc tava muito lerdo depois que fiz o que foi dito acima a lerdeza acabou e porcausa disso fui ver se os problemas estavam resolvidos e o regedit ta funcionando 100% agora só falta o gpedit e o gerenciador de tarefas...
(lembrando que o regunlocker nao funcionou)
só um palpite creio eu que seria esse arquivos os malditos virus rauoza.exe e vivihoa.exe =D
abaixo o log :
Autoscan: completed 3 hours ago (events: 738, objects: 163664, time: 01:32:57)
Virus Scan: completed 2 hours ago (events: 6, objects: 55, time: 00:00:19)
30/06/2010 11:14:12 Task started
30/06/2010 11:14:14 Detected: Virus.Win32.Sality.aa F:\rauoza.exe
30/06/2010 11:14:15 Detected: Virus.Win32.Sality.aa F:\rauoza.scr
30/06/2010 11:14:30 Deleted: Virus.Win32.Sality.aa F:\rauoza.exe
30/06/2010 11:14:31 Deleted: Virus.Win32.Sality.aa F:\rauoza.scr
30/06/2010 11:14:31 Task completed
Autoscan: stopped 1 hour ago (events: 21, objects: 35, time: 00:04:42)
30/06/2010 11:24:43 Task started
30/06/2010 11:25:22 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
30/06/2010 11:25:52 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
30/06/2010 11:25:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
30/06/2010 11:25:55 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe
30/06/2010 11:26:29 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe
30/06/2010 11:26:42 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\regsvr32.exe
30/06/2010 11:26:46 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:27:03 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:27:31 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:27:32 Will be disinfected on system restart: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:27:36 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:27:59 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:28:27 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:28:27 Will be disinfected on system restart: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:28:46 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:28:49 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:16 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:16 Detected: Worm.Win32.VBNA.a D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:25 Will be disinfected on system restart: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:25 Task stopped
Disinfect active threats: completed 1 hour ago (events: 147, objects: 2620, time: 00:33:37)
30/06/2010 11:29:25 Task started
30/06/2010 11:29:25 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:33 Will be deleted on system restart: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:47 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:29:47 Disinfection on system restart failed: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:29:47 Will be deleted on system restart: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:29:48 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:29:49 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 11:29:52 Disinfection on system restart failed: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 11:30:00 Will be deleted on system restart: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 11:30:00 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:30:03 Disinfection on system restart failed: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:30:11 Will be deleted on system restart: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:32:58 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:33:25 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:33:25 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\rundll32.exe
30/06/2010 11:33:25 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\ctfmon.exe
30/06/2010 11:33:27 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\rauoza.exe
30/06/2010 11:33:46 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe
30/06/2010 11:34:16 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe
30/06/2010 11:34:25 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\jqs.exe
30/06/2010 11:36:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe
30/06/2010 11:36:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe
30/06/2010 11:36:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\setup50.exe
30/06/2010 11:37:02 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE
30/06/2010 11:37:30 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE
30/06/2010 11:37:30 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\EXCEL.EXE
30/06/2010 11:37:45 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe
30/06/2010 11:38:25 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe
30/06/2010 11:38:25 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\chrome.exe
30/06/2010 11:38:25 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe
30/06/2010 11:38:51 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe
30/06/2010 11:38:58 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Mozilla Firefox\firefox.exe
30/06/2010 11:40:35 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe
30/06/2010 11:41:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe
30/06/2010 11:41:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Java\jre6\bin\javaws.exe
30/06/2010 11:41:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe
30/06/2010 11:41:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe
30/06/2010 11:41:29 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Malwarebytes' Anti-Malware\mbam.exe
30/06/2010 11:41:30 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe
30/06/2010 11:41:51 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe
30/06/2010 11:41:51 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Movie Maker\moviemk.exe
30/06/2010 11:42:01 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE
30/06/2010 11:43:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE
30/06/2010 11:43:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\MSACCESS.EXE
30/06/2010 11:43:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe
30/06/2010 11:43:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe
30/06/2010 11:43:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\msimn.exe
30/06/2010 11:43:34 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe
30/06/2010 11:44:15 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe
30/06/2010 11:47:17 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Notepad++\notepad++.exe
30/06/2010 11:47:18 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE
30/06/2010 11:47:43 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE
30/06/2010 11:47:43 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\OIS.EXE
30/06/2010 11:47:44 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe
30/06/2010 11:48:12 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe
30/06/2010 11:48:22 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mspaint.exe
30/06/2010 11:48:34 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe
30/06/2010 11:49:36 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe
30/06/2010 11:49:36 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\PhotoScape\PhotoScape.exe
30/06/2010 11:49:37 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe
30/06/2010 11:50:02 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe
30/06/2010 11:50:02 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\Unlocker.exe
30/06/2010 11:50:03 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe
30/06/2010 11:50:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe
30/06/2010 11:50:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Outlook Express\wab.exe
30/06/2010 11:50:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe
30/06/2010 11:50:54 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe
30/06/2010 11:50:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\WinRAR.exe
30/06/2010 11:50:55 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE
30/06/2010 11:51:22 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE
30/06/2010 11:51:22 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Microsoft Office\Office12\WINWORD.EXE
30/06/2010 11:51:22 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe
30/06/2010 11:51:48 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe
30/06/2010 11:51:59 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows NT\Acessórios\wordpad.exe
30/06/2010 11:52:14 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe
30/06/2010 11:52:40 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe
30/06/2010 11:52:41 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\cmd.exe
30/06/2010 11:52:43 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe
30/06/2010 11:53:10 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe
30/06/2010 11:53:10 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\regedit.exe
30/06/2010 11:53:17 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe
30/06/2010 11:53:43 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe
30/06/2010 11:53:44 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\RegUnlocker.exe
30/06/2010 11:53:46 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe
30/06/2010 11:54:11 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe
30/06/2010 11:54:11 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\unlocker1.8.9.exe
30/06/2010 11:54:12 Detected: Worm.Win32.VBNA.a D:\Documents and Settings\Familia\rauoza.exe.kav
30/06/2010 11:54:16 Deleted: Worm.Win32.VBNA.a D:\Documents and Settings\Familia\rauoza.exe.kav
30/06/2010 11:54:16 Deleted: Worm.Win32.VBNA.a D:\Documents and Settings\Familia\rauoza.exe.kav
30/06/2010 11:54:30 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\setup_wm.exe
30/06/2010 11:54:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\setup_wm.exe
30/06/2010 11:54:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\setup_wm.exe
30/06/2010 11:54:56 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:54:56 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:55:22 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:55:22 Will be disinfected on system restart: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\GoogleUpdate.exe
30/06/2010 11:55:27 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe
30/06/2010 11:55:53 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe
30/06/2010 11:55:53 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\procexp.exe
30/06/2010 11:55:56 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe
30/06/2010 11:56:22 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe
30/06/2010 11:56:22 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\14282_avira_antivir_personal_gratuito_90015.exe
30/06/2010 11:56:24 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe
30/06/2010 11:56:50 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe
30/06/2010 11:56:53 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Firefox Setup 3.6.4.exe
30/06/2010 11:56:55 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe
30/06/2010 11:57:21 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe
30/06/2010 11:57:22 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\FoxitReader331_enu_Setup.exe
30/06/2010 11:57:23 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe
30/06/2010 11:57:48 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe
30/06/2010 11:57:48 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\Rainmeter-1.1-32bit.exe
30/06/2010 11:57:49 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe
30/06/2010 11:58:16 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe
30/06/2010 11:58:16 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\avgremover.exe
30/06/2010 11:58:17 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe
30/06/2010 11:58:43 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe
30/06/2010 11:58:44 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\idman519.exe
30/06/2010 11:58:44 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe
30/06/2010 11:59:10 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe
30/06/2010 11:59:10 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\kav8.0.0.506br.exe
30/06/2010 11:59:11 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe
30/06/2010 11:59:38 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe
30/06/2010 11:59:38 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\procexp.exe
30/06/2010 11:59:39 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe
30/06/2010 12:00:05 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe
30/06/2010 12:00:05 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br.exe
30/06/2010 12:00:06 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe
30/06/2010 12:00:32 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe
30/06/2010 12:00:33 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\wrar393br (1).exe
30/06/2010 12:00:34 Detected: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp
30/06/2010 12:01:00 Disinfected: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp
30/06/2010 12:01:00 Disinfected: Virus.Win32.Sality.aa D:\Temp\IDM_Setup_Temp\IDM1.tmp
30/06/2010 12:01:01 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 12:01:02 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 12:01:28 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 12:01:28 Will be disinfected on system restart: Virus.Win32.Sality.aa D:\WINDOWS.0\Vvihoa.exe
30/06/2010 12:01:31 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe
30/06/2010 12:01:58 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe
30/06/2010 12:01:58 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\grpconv.exe
30/06/2010 12:02:03 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe
30/06/2010 12:02:31 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe
30/06/2010 12:02:31 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\taskmgr.exe
30/06/2010 12:02:33 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wuauclt.exe
30/06/2010 12:03:00 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wuauclt.exe
30/06/2010 12:03:00 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wuauclt.exe
30/06/2010 12:03:02 Task completed
Autoscan: completed 15 minutes ago (events: 423, objects: 101934, time: 00:46:09)
30/06/2010 12:26:36 Task started
30/06/2010 12:26:48 Detected: Virus.Win32.Sality.aa F:\WORRQE.PIF
30/06/2010 12:27:17 Disinfected: Virus.Win32.Sality.aa F:\WORRQE.PIF
30/06/2010 12:27:19 Disinfected: Virus.Win32.Sality.aa F:\WORRQE.PIF
30/06/2010 12:29:26 Detected: Virus.Win32.Sality.aa d:\WINDOWS.0\system32\mmc.exe
30/06/2010 12:29:42 Disinfected: Virus.Win32.Sality.aa d:\WINDOWS.0\system32\mmc.exe
30/06/2010 12:29:43 Disinfected: Virus.Win32.Sality.aa d:\WINDOWS.0\system32\mmc.exe
30/06/2010 12:29:46 Detected: Virus.Win32.Sality.aa d:\HiJackThis (1).exe
30/06/2010 12:29:51 Disinfected: Virus.Win32.Sality.aa d:\HiJackThis (1).exe
30/06/2010 12:29:52 Disinfected: Virus.Win32.Sality.aa d:\HiJackThis (1).exe
30/06/2010 12:29:53 Detected: Virus.Win32.Sality.aa d:\SalityKiller.exe
30/06/2010 12:29:54 Detected: Virus.Win32.Sality.aa d:\MsgPlusLive-484.exe
30/06/2010 12:30:00 Disinfected: Virus.Win32.Sality.aa d:\SalityKiller.exe
30/06/2010 12:30:00 Disinfected: Virus.Win32.Sality.aa d:\SalityKiller.exe
30/06/2010 12:30:00 Disinfected: Virus.Win32.Sality.aa d:\MsgPlusLive-484.exe
30/06/2010 12:30:00 Disinfected: Virus.Win32.Sality.aa d:\MsgPlusLive-484.exe
30/06/2010 12:30:03 Detected: Virus.Win32.Sality.aa d:\arquivos de programas\arquivos comuns\microsoft shared\DW\DW20.EXE
30/06/2010 12:30:10 Disinfected: Virus.Win32.Sality.aa d:\arquivos de programas\arquivos comuns\microsoft shared\DW\DW20.EXE
30/06/2010 12:30:10 Disinfected: Virus.Win32.Sality.aa d:\arquivos de programas\arquivos comuns\microsoft shared\DW\DW20.EXE
30/06/2010 12:36:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\FirefoxPortable.exe
30/06/2010 12:36:49 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\crashreporter.exe
30/06/2010 12:36:50 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\updater.exe
30/06/2010 12:37:03 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\FirefoxPortable.exe
30/06/2010 12:37:03 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\FirefoxPortable.exe
30/06/2010 12:37:03 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\uninstall\helper.exe
30/06/2010 12:37:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\crashreporter.exe
30/06/2010 12:37:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\crashreporter.exe
30/06/2010 12:37:04 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\updater.exe
30/06/2010 12:37:05 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\updater.exe
30/06/2010 12:37:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\Data\profile\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe
30/06/2010 12:37:09 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\uninstall\helper.exe
30/06/2010 12:37:17 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\App\Firefox\uninstall\helper.exe
30/06/2010 12:37:17 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\Chrome\crash_service.exe
30/06/2010 12:37:17 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\ChromeLoader.exe
30/06/2010 12:37:18 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\Data\profile\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe
30/06/2010 12:37:18 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Firefox\Data\profile\extensions\battlefieldheroespatcher@ea.com\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe
30/06/2010 12:37:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefragCmd.exe
30/06/2010 12:37:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\Chrome\crash_service.exe
30/06/2010 12:37:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\Chrome\crash_service.exe
30/06/2010 12:37:32 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\jt.exe
30/06/2010 12:37:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefragCmd.exe
30/06/2010 12:37:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\ChromeLoader.exe
30/06/2010 12:37:32 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\googleChrome\ChromeLoader.exe
30/06/2010 12:37:33 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\pagedfrg.exe
30/06/2010 12:37:33 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefragCmd.exe
30/06/2010 12:37:33 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\livecall.exe
30/06/2010 12:37:38 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\jt.exe
30/06/2010 12:37:38 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\jt.exe
30/06/2010 12:37:39 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\pagedfrg.exe
30/06/2010 12:37:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\msvs.exe
30/06/2010 12:37:39 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\livecall.exe
30/06/2010 12:37:39 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\JkDefragGUI\Programs\pagedfrg.exe
30/06/2010 12:37:39 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\usnsvc.exe
30/06/2010 12:37:40 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\livecall.exe
30/06/2010 12:37:41 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\dpinst.exe
30/06/2010 12:37:45 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\usnsvc.exe
30/06/2010 12:37:45 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\usnsvc.exe
30/06/2010 12:37:46 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\msgrdvmn.exe
30/06/2010 12:37:46 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\msvs.exe
30/06/2010 12:37:46 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\msvs.exe
30/06/2010 12:37:54 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\dpinst.exe
30/06/2010 12:37:54 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\uninst.exe
30/06/2010 12:37:54 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\dpinst.exe
30/06/2010 12:37:54 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\UninstWA.exe
30/06/2010 12:37:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\msgrdvmn.exe
30/06/2010 12:37:55 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\portables\Windows Live\Messenger\Device Manager\msgrdvmn.exe
30/06/2010 12:37:55 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\winampa.exe
30/06/2010 12:38:02 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\uninst.exe
30/06/2010 12:38:02 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\winampa.exe
30/06/2010 12:38:03 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\winampa.exe
30/06/2010 12:38:03 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Unlocker\uninst.exe
30/06/2010 12:38:04 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\wmccds.exe
30/06/2010 12:38:04 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp Detect\UninstWaDetect.exe
30/06/2010 12:38:05 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\UninstWA.exe
30/06/2010 12:38:05 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp\UninstWA.exe
30/06/2010 12:38:05 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\WMCCFG.exe
30/06/2010 12:38:19 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\wmccds.exe
30/06/2010 12:38:19 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\wmccds.exe
30/06/2010 12:38:20 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\WMCCFG.exe
30/06/2010 12:38:20 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp Detect\UninstWaDetect.exe
30/06/2010 12:38:20 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Connect 2\WMCCFG.exe
30/06/2010 12:38:20 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Winamp Detect\UninstWaDetect.exe
30/06/2010 12:38:20 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\migrate.exe
30/06/2010 12:38:21 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmdbexport.exe
30/06/2010 12:38:21 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmlaunch.exe
30/06/2010 12:38:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\migrate.exe
30/06/2010 12:38:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\migrate.exe
30/06/2010 12:38:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmlaunch.exe
30/06/2010 12:38:28 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmlaunch.exe
30/06/2010 12:38:28 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpenc.exe
30/06/2010 12:38:29 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmdbexport.exe
30/06/2010 12:38:29 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmdbexport.exe
30/06/2010 12:38:29 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpnscfg.exe
30/06/2010 12:38:30 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Rar.exe
30/06/2010 12:38:37 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpenc.exe
30/06/2010 12:38:37 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpenc.exe
30/06/2010 12:38:38 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\RarExtLoader.exe
30/06/2010 12:38:40 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpnscfg.exe
30/06/2010 12:38:40 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\Windows Media Player\wmpnscfg.exe
30/06/2010 12:38:40 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Rar.exe
30/06/2010 12:38:40 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Rar.exe
30/06/2010 12:38:40 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Uninstall.exe
30/06/2010 12:38:41 Detected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\UnRAR.exe
30/06/2010 12:38:44 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Uninstall.exe
30/06/2010 12:38:44 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\Uninstall.exe
30/06/2010 12:38:44 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\xmlUpdater.exe
30/06/2010 12:38:53 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\RarExtLoader.exe
30/06/2010 12:38:53 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\RarExtLoader.exe
30/06/2010 12:38:53 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\UnRAR.exe
30/06/2010 12:38:53 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:38:53 Disinfected: Virus.Win32.Sality.aa D:\Arquivos de programas\WinRAR\UnRAR.exe
30/06/2010 12:38:53 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSADF.tmp\Java6u10.exe
30/06/2010 12:39:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:39:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\xmlUpdater.exe
30/06/2010 12:39:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:39:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSADF.tmp\Java6u10.exe
30/06/2010 12:39:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\xmlUpdater.exe
30/06/2010 12:39:03 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:39:03 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:39:05 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSADF.tmp\Java6u10.exe
30/06/2010 12:39:15 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:39:15 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:39:15 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:39:15 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Administrador\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:40:11 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\All Users.WINDOWS.0\Dados de aplicativos\Kaspersky Lab Setup Files\Kaspersky Anti-Virus 2009\brazilian\setup.exe
30/06/2010 12:40:17 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\All Users.WINDOWS.0\Dados de aplicativos\Kaspersky Lab Setup Files\Kaspersky Anti-Virus 2009\brazilian\setup.exe
30/06/2010 12:40:17 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\All Users.WINDOWS.0\Dados de aplicativos\Kaspersky Lab Setup Files\Kaspersky Anti-Virus 2009\brazilian\setup.exe
30/06/2010 12:40:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\xmlUpdater.exe
30/06/2010 12:40:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB08.tmp\Java6u10.exe
30/06/2010 12:40:18 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 12:40:38 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\xmlUpdater.exe
30/06/2010 12:40:38 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\xmlUpdater.exe
30/06/2010 12:40:38 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npplaunc.exe
30/06/2010 12:40:38 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 12:40:38 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 12:40:39 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\Configurações locais\Temp\FP_PL_MSI_INSTALLER.exe
30/06/2010 12:40:40 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB08.tmp\Java6u10.exe
30/06/2010 12:40:42 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB08.tmp\Java6u10.exe
30/06/2010 12:40:47 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\Configurações locais\Temp\FP_PL_MSI_INSTALLER.exe
30/06/2010 12:40:47 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\Configurações locais\Temp\FP_PL_MSI_INSTALLER.exe
30/06/2010 12:40:47 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npplaunc.exe
30/06/2010 12:40:47 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Clayton\7zSB24.tmp\npplaunc.exe
30/06/2010 12:41:12 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\xmlUpdater.exe
30/06/2010 12:41:12 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSAFE.tmp\irfanview410br.exe
30/06/2010 12:41:12 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB08.tmp\Java6u10.exe
30/06/2010 12:41:23 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\xmlUpdater.exe
30/06/2010 12:41:24 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\xmlUpdater.exe
30/06/2010 12:41:27 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 12:41:27 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSAFE.tmp\irfanview410br.exe
30/06/2010 12:41:27 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSAFE.tmp\irfanview410br.exe
30/06/2010 12:41:29 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npplaunc.exe
30/06/2010 12:41:32 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB08.tmp\Java6u10.exe
30/06/2010 12:41:33 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB08.tmp\Java6u10.exe
30/06/2010 12:41:33 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\xmlUpdater.exe
30/06/2010 12:41:36 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 12:41:36 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npp.5.1.Installer.exe
30/06/2010 12:41:36 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npplaunc.exe
30/06/2010 12:41:36 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User\7zSB24.tmp\npplaunc.exe
30/06/2010 12:41:36 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:41:37 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSADF.tmp\Java6u10.exe
30/06/2010 12:41:42 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\xmlUpdater.exe
30/06/2010 12:41:42 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\xmlUpdater.exe
30/06/2010 12:41:42 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:41:46 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSADF.tmp\Java6u10.exe
30/06/2010 12:41:49 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSADF.tmp\Java6u10.exe
30/06/2010 12:41:49 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:41:49 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:41:50 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:41:50 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:41:50 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:41:50 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\xmlUpdater.exe
30/06/2010 12:41:50 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:41:55 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:41:58 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Default User.WINDOWS.0\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:41:58 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSADF.tmp\Java6u10.exe
30/06/2010 12:41:59 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:41:59 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\xmlUpdater.exe
30/06/2010 12:41:59 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAD5.tmp\irfanview410br.exe
30/06/2010 12:41:59 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\xmlUpdater.exe
30/06/2010 12:42:00 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:42:00 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:42:05 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSADF.tmp\Java6u10.exe
30/06/2010 12:42:06 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSADF.tmp\Java6u10.exe
30/06/2010 12:42:06 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\5.0.375.86\Installer\setup.exe
30/06/2010 12:42:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:42:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npplaunc.exe
30/06/2010 12:42:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:42:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\7zSAFB.tmp\npp.5.1.Installer.exe
30/06/2010 12:42:16 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\5.0.375.86\Installer\setup.exe
30/06/2010 12:42:16 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\Application\5.0.375.86\Installer\setup.exe
30/06/2010 12:42:20 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleUpdate.exe
30/06/2010 12:42:20 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleCrashHandler.exe
30/06/2010 12:42:21 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Temp\FP_AX_MSI_INSTALLER.exe
30/06/2010 12:42:25 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleUpdate.exe
30/06/2010 12:42:25 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleUpdate.exe
30/06/2010 12:42:29 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Temp\FP_AX_MSI_INSTALLER.exe
30/06/2010 12:42:29 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Temp\FP_AX_MSI_INSTALLER.exe
30/06/2010 12:42:30 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleCrashHandler.exe
30/06/2010 12:42:30 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Update\1.2.183.29\GoogleCrashHandler.exe
30/06/2010 12:42:46 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\crashreporter.exe
30/06/2010 12:42:47 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpcshell.exe
30/06/2010 12:42:47 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\updater.exe
30/06/2010 12:42:57 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\crashreporter.exe
30/06/2010 12:42:57 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\crashreporter.exe
30/06/2010 12:42:58 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\updater.exe
30/06/2010 12:42:58 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpcshell.exe
30/06/2010 12:42:58 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpicleanup.exe
30/06/2010 12:42:58 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpcshell.exe
30/06/2010 12:42:58 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\updater.exe
30/06/2010 12:42:58 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_dump.exe
30/06/2010 12:42:58 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpidl.exe
30/06/2010 12:43:06 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\hijackthis\HijackThis.exe
30/06/2010 12:43:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpicleanup.exe
30/06/2010 12:43:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpicleanup.exe
30/06/2010 12:43:07 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_link.exe
30/06/2010 12:43:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_dump.exe
30/06/2010 12:43:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpidl.exe
30/06/2010 12:43:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_dump.exe
30/06/2010 12:43:07 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpidl.exe
30/06/2010 12:43:08 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xulrunner.exe
30/06/2010 12:43:09 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\Mozilla\Firefox\Profiles\yiuzvcce.default\extensions\toolbar@ask.com\chrome\temp\askToolbar.exe
30/06/2010 12:43:10 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\hijackthis\HijackThis.exe
30/06/2010 12:43:12 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_link.exe
30/06/2010 12:43:12 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xpt_link.exe
30/06/2010 12:43:14 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xulrunner.exe
30/06/2010 12:43:14 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\LimeWire\browser\xulrunner\xulrunner.exe
30/06/2010 12:43:15 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\felipe\INTERNET.DOWNLOAD.MANAGER.V5.12.INCL.PATCH\Setup.exe
30/06/2010 12:43:15 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\Mozilla\Firefox\Profiles\yiuzvcce.default\extensions\toolbar@ask.com\chrome\temp\askToolbar.exe
30/06/2010 12:43:16 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Dados de aplicativos\Mozilla\Firefox\Profiles\yiuzvcce.default\extensions\toolbar@ask.com\chrome\temp\askToolbar.exe
30/06/2010 12:43:17 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\felipe\INTERNET.DOWNLOAD.MANAGER.V5.12.INCL.PATCH\Setup.exe
30/06/2010 12:43:17 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\felipe\INTERNET.DOWNLOAD.MANAGER.V5.12.INCL.PATCH\Setup.exe
30/06/2010 12:43:19 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\hijackthis\HijackThis.exe
30/06/2010 12:43:21 Detected: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/l2pbx.exe
30/06/2010 12:43:31 Untreated: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/l2pbx.exe Write not supported
30/06/2010 12:43:31 Detected: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/inject.dll
30/06/2010 12:43:33 Untreated: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.4.1.82.english.rar/inject.dll Write not supported
30/06/2010 12:43:36 Detected: Backdoor.Win32.Hupigon.kzbz D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.5.33.164.rar/inject.dll
30/06/2010 12:43:37 Untreated: Backdoor.Win32.Hupigon.kzbz D:\Documents and Settings\Familia\Desktop\kalebe\l2phx.3.5.33.164.rar/inject.dll Write not supported
30/06/2010 12:43:42 Detected: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/l2pbx.exe
30/06/2010 12:43:45 Untreated: Trojan-PSW.Win32.LdPinch.amte D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/l2pbx.exe Write not supported
30/06/2010 12:43:49 Detected: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/inject.dll
30/06/2010 12:43:50 Untreated: Trojan.Win32.Genome.avjc D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar/inject.dll Write not supported
30/06/2010 12:43:52 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\hlds.exe
30/06/2010 12:43:53 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\uninst.exe
30/06/2010 12:43:53 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\voice_tweak.exe
30/06/2010 12:44:01 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\hlds.exe
30/06/2010 12:44:01 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\hlds.exe
30/06/2010 12:44:01 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\uninst.exe
30/06/2010 12:44:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\uninst.exe
30/06/2010 12:44:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\voice_tweak.exe
30/06/2010 12:44:02 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\voice_tweak.exe
30/06/2010 12:44:51 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\platform\steam\cached\steambackup.exe
30/06/2010 12:44:55 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\platform\steam\cached\steambackup.exe
30/06/2010 12:44:55 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\CS1.6 em cleiton\platform\steam\cached\steambackup.exe
30/06/2010 12:46:02 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\LineageII_Live_Installer\Lineage II Installer\setup.exe
30/06/2010 12:46:03 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4\Metin2 Live.exe
30/06/2010 12:46:08 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\LineageII_Live_Installer\Lineage II Installer\setup.exe
30/06/2010 12:46:08 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\LineageII_Live_Installer\Lineage II Installer\setup.exe
30/06/2010 12:46:08 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4\Metin2 Live.exe
30/06/2010 12:46:08 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4\Metin2 Live.exe
30/06/2010 12:47:36 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\pencil-0.4.4b-win\Pencil.exe
30/06/2010 12:47:42 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\pencil-0.4.4b-win\Pencil.exe
30/06/2010 12:47:42 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Desktop\kalebe\pencil-0.4.4b-win\Pencil.exe
30/06/2010 12:48:42 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\host\c.exe
30/06/2010 12:49:06 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\ccsetup233.exe
30/06/2010 12:49:23 Deleted: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\host\c.exe
30/06/2010 12:49:24 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\ccsetup233.exe
30/06/2010 12:49:25 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\ccsetup233.exe
30/06/2010 12:49:27 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\dotNetFx35setup.exe
30/06/2010 12:49:31 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\dotNetFx35setup.exe
30/06/2010 12:49:34 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\dotNetFx35setup.exe
30/06/2010 12:49:46 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\HiJackThis.exe
30/06/2010 12:49:50 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\HiJackThis.exe
30/06/2010 12:49:54 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\HiJackThis.exe
30/06/2010 12:49:57 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\SoftonicDownloader40696.exe
30/06/2010 12:50:01 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\SoftonicDownloader40696.exe
30/06/2010 12:50:13 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\SoftonicDownloader40696.exe
30/06/2010 12:50:13 Detected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\winamp5572_full_emusic-7plus_pt-br.exe
30/06/2010 12:50:22 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\winamp5572_full_emusic-7plus_pt-br.exe
30/06/2010 12:50:22 Disinfected: Virus.Win32.Sality.aa D:\Documents and Settings\Familia\Meus documentos\Downloads\winamp5572_full_emusic-7plus_pt-br.exe
30/06/2010 12:52:44 Detected: Virus.Win32.Sality.aa D:\Install\XPlode.exe
30/06/2010 12:52:45 Detected: Virus.Win32.Sality.aa D:\Install\Setup\firefox-ultimate-optimizer-11.exe
30/06/2010 12:52:45 Detected: Virus.Win32.Sality.aa D:\Install\Setup\googleChrome.exe
30/06/2010 12:52:48 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd37.exe
30/06/2010 12:53:03 Deleted: Virus.Win32.Sality.aa D:\Install\XPlode.exe
30/06/2010 12:53:04 Detected: Virus.Win32.Sality.aa D:\Install\Setup\JkDefragGUI102.exe
30/06/2010 12:53:04 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\firefox-ultimate-optimizer-11.exe
30/06/2010 12:53:04 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\firefox-ultimate-optimizer-11.exe
30/06/2010 12:53:04 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\googleChrome.exe
30/06/2010 12:53:04 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\googleChrome.exe
30/06/2010 12:53:04 Detected: Virus.Win32.Sality.aa D:\Install\Setup\LiveMessengerPortable85.exe
30/06/2010 12:53:05 Detected: Virus.Win32.Sality.aa D:\Install\Setup\PSkill.exe
30/06/2010 12:53:06 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd37.exe
30/06/2010 12:53:06 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd37.exe
30/06/2010 12:53:45 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\LiveMessengerPortable85.exe
30/06/2010 12:53:45 Deleted: Virus.Win32.Sality.aa D:\Install\Setup\PSkill.exe
30/06/2010 12:53:45 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\LiveMessengerPortable85.exe
30/06/2010 12:53:46 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\JkDefragGUI102.exe
30/06/2010 12:53:46 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\JkDefragGUI102.exe
30/06/2010 12:53:46 Detected: Virus.Win32.Sality.aa D:\Install\Setup\ReOrderDirectories.exe
30/06/2010 12:53:46 Detected: Virus.Win32.Sality.aa D:\Install\Setup\teracopy.exe
30/06/2010 12:53:46 Detected: Virus.Win32.Sality.aa D:\Install\Setup\xfoundrytw.exe
30/06/2010 12:54:03 Deleted: Virus.Win32.Sality.aa D:\Install\Setup\ReOrderDirectories.exe
30/06/2010 12:54:03 Detected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\ose.exe
30/06/2010 12:54:04 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\teracopy.exe
30/06/2010 12:54:04 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\teracopy.exe
30/06/2010 12:54:04 Detected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\setup.exe
30/06/2010 12:54:05 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\xfoundrytw.exe
30/06/2010 12:54:05 Disinfected: Virus.Win32.Sality.aa D:\Install\Setup\xfoundrytw.exe
30/06/2010 12:54:05 Detected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-006E-0416-0000-0000000FF1CE}-D\dwtrig20.exe
30/06/2010 12:54:10 Disinfected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\setup.exe
30/06/2010 12:54:10 Detected: Trojan-Downloader.Win32.Agent.dsif D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\setup.exe
30/06/2010 12:54:10 Disinfected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-006E-0416-0000-0000000FF1CE}-D\dwtrig20.exe
30/06/2010 12:54:10 Disinfected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-006E-0416-0000-0000000FF1CE}-D\dwtrig20.exe
30/06/2010 12:54:10 Disinfected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\ose.exe
30/06/2010 12:54:10 Disinfected: Virus.Win32.Sality.aa D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\ose.exe
30/06/2010 12:54:15 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd55.exe
30/06/2010 12:54:15 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\BFHeroes.exe
30/06/2010 12:54:19 Deleted: Trojan-Downloader.Win32.Agent.dsif D:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-D\setup.exe
30/06/2010 12:54:23 Detected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\Uninstaller.exe
30/06/2010 12:54:26 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd55.exe
30/06/2010 12:54:28 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-1606980848-1001\Dd55.exe
30/06/2010 12:54:30 Detected: Virus.Win32.Sality.aa D:\Temp\67.tmp\edS.exe
30/06/2010 12:54:32 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\BFHeroes.exe
30/06/2010 12:54:32 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\BFHeroes.exe
30/06/2010 12:54:33 Detected: Virus.Win32.Sality.aa D:\Temp\67.tmp\etPathS.exe
30/06/2010 12:54:33 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\Uninstaller.exe
30/06/2010 12:54:33 Disinfected: Virus.Win32.Sality.aa D:\RECYCLER\S-1-5-21-1177238915-179605362-2146978909-1001\Dd7\Battlefield Heroes\Uninstaller.exe
30/06/2010 12:54:33 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avadmin.exe
30/06/2010 12:54:44 Deleted: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avadmin.exe
30/06/2010 12:54:45 Deleted: Virus.Win32.Sality.aa D:\Temp\67.tmp\edS.exe
30/06/2010 12:54:45 Deleted: Virus.Win32.Sality.aa D:\Temp\67.tmp\etPathS.exe
30/06/2010 12:54:45 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avcenter.exe
30/06/2010 12:54:45 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avconfig.exe
30/06/2010 12:54:45 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avgnt.exe
30/06/2010 12:54:54 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avcenter.exe
30/06/2010 12:54:54 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avcenter.exe
30/06/2010 12:54:54 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avguard.exe
30/06/2010 12:55:06 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avgnt.exe
30/06/2010 12:55:12 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avconfig.exe
30/06/2010 12:55:15 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avgnt.exe
30/06/2010 12:55:15 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avguard.exe
30/06/2010 12:55:15 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avguard.exe
30/06/2010 12:55:15 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avconfig.exe
30/06/2010 12:55:15 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avnotify.exe
30/06/2010 12:55:15 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avscan.exe
30/06/2010 12:55:15 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avupgsvc.exe
30/06/2010 12:55:23 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avnotify.exe
30/06/2010 12:55:23 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avscan.exe
30/06/2010 12:55:23 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avnotify.exe
30/06/2010 12:55:23 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avscan.exe
30/06/2010 12:55:24 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avupgsvc.exe
30/06/2010 12:55:24 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\fact.exe
30/06/2010 12:55:24 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avwsc.exe
30/06/2010 12:55:24 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avupgsvc.exe
30/06/2010 12:55:24 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\guardgui.exe
30/06/2010 12:55:32 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\fact.exe
30/06/2010 12:55:32 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\fact.exe
30/06/2010 12:55:32 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\licmgr.exe
30/06/2010 12:55:41 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\licmgr.exe
30/06/2010 12:55:44 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avwsc.exe
30/06/2010 12:55:45 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\licmgr.exe
30/06/2010 12:55:45 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\avwsc.exe
30/06/2010 12:55:45 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\sched.exe
30/06/2010 12:55:45 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\presetup.exe
30/06/2010 12:55:46 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\guardgui.exe
30/06/2010 12:55:46 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\guardgui.exe
30/06/2010 12:55:47 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\sched.exe
30/06/2010 12:55:47 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\sched.exe
30/06/2010 12:55:47 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\presetup.exe
30/06/2010 12:55:47 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\presetup.exe
30/06/2010 12:55:47 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\setup.exe
30/06/2010 12:55:47 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\update.exe
30/06/2010 12:55:47 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\updfix.exe
30/06/2010 12:55:51 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\setup.exe
30/06/2010 12:55:51 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\setup.exe
30/06/2010 12:55:51 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\updfix.exe
30/06/2010 12:55:51 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\updfix.exe
30/06/2010 12:55:51 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\update.exe
30/06/2010 12:55:51 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\update.exe
30/06/2010 12:55:51 Detected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleCrashHandler.exe
30/06/2010 12:55:52 Detected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleUpdate.exe
30/06/2010 12:55:52 Detected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\vcredist_x86.exe
30/06/2010 12:55:53 Disinfected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleCrashHandler.exe
30/06/2010 12:55:54 Disinfected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleCrashHandler.exe
30/06/2010 12:56:02 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\vcredist_x86.exe
30/06/2010 12:56:02 Disinfected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleUpdate.exe
30/06/2010 12:56:02 Disinfected: Virus.Win32.Sality.aa D:\Temp\{07AB27CB-F4A4-49D2-B47C-12E07005A9E6}\GoogleUpdate.exe
30/06/2010 12:56:03 Disinfected: Virus.Win32.Sality.aa D:\Temp\RarSFX0\basic\vcredist_x86.exe
30/06/2010 12:58:01 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\calc.exe
30/06/2010 12:58:02 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\calc.exe
30/06/2010 12:58:02 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\calc.exe
30/06/2010 12:58:12 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\logagent.exe
30/06/2010 12:58:14 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\logagent.exe
30/06/2010 12:58:14 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\logagent.exe
30/06/2010 12:58:17 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mstinit.exe
30/06/2010 12:58:18 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mstinit.exe
30/06/2010 12:58:18 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\mstinit.exe
30/06/2010 12:58:19 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\odbcconf.exe
30/06/2010 12:58:21 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\odbcconf.exe
30/06/2010 12:58:22 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\odbcconf.exe
30/06/2010 12:58:23 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\setup.exe
30/06/2010 12:58:24 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\setup.exe
30/06/2010 12:58:25 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\setup.exe
30/06/2010 12:58:27 Detected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wiaacmgr.exe
30/06/2010 12:58:28 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wiaacmgr.exe
30/06/2010 12:58:28 Disinfected: Virus.Win32.Sality.aa D:\WINDOWS.0\system32\wiaacmgr.exe
30/06/2010 12:59:13 Detected: Virus.Win32.Sality.aa F:\rauoya.exe
30/06/2010 12:59:13 Detected: Virus.Win32.Sality.aa F:\rauoya.scr
30/06/2010 12:59:15 Detected: Virus.Win32.Sality.aa F:\aqdqh.exe
30/06/2010 12:59:17 Disinfected: Virus.Win32.Sality.aa F:\rauoya.exe
30/06/2010 12:59:18 Disinfected: Virus.Win32.Sality.aa F:\rauoya.scr
30/06/2010 12:59:20 Detected: Worm.Win32.VBNA.a F:\rauoya.exe
30/06/2010 12:59:21 Disinfected: Virus.Win32.Sality.aa F:\aqdqh.exe
30/06/2010 12:59:21 Disinfected: Virus.Win32.Sality.aa F:\aqdqh.exe
30/06/2010 12:59:22 Detected: Worm.Win32.VBNA.a F:\rauoya.scr
30/06/2010 12:59:38 Detected: Virus.Win32.Sality.aa F:\wkfztk.exe
30/06/2010 13:00:13 Disinfected: Virus.Win32.Sality.aa F:\wkfztk.exe
30/06/2010 13:00:13 Disinfected: Virus.Win32.Sality.aa F:\wkfztk.exe
30/06/2010 13:00:24 Deleted: Worm.Win32.VBNA.a F:\rauoya.exe
30/06/2010 13:00:27 Deleted: Worm.Win32.VBNA.a F:\rauoya.scr
30/06/2010 13:12:44 Processing error F:\FOUND.000\FILE3180.CHK Read error
30/06/2010 13:12:45 Task completed
Virus Scan: completed 11 minutes ago (events: 482, objects: 3999, time: 00:04:24)
Por favor...novo log do hijack.
Logfile of HijackThis v1.99.1
Scan saved at 13:34:39, on 30/06/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Unable to get Internet Explorer version!
Running processes:
D:\WINDOWS.0\System32\smss.exe
D:\WINDOWS.0\system32\winlogon.exe
D:\WINDOWS.0\system32\services.exe
D:\WINDOWS.0\system32\lsass.exe
D:\WINDOWS.0\system32\svchost.exe
D:\WINDOWS.0\System32\svchost.exe
D:\WINDOWS.0\system32\spoolsv.exe
D:\WINDOWS.0\RTHDCPL.EXE
D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe
D:\Arquivos de programas\Internet Download Manager\IDMan.exe
D:\Arquivos de programas\Google\Update\GoogleUpdate.exe
D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\mdm.exe
D:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
D:\Arquivos de programas\Internet Download Manager\IEMonitor.exe
D:\WINDOWS.0\explorer.exe
D:\Arquivos de programas\Windows Media Player\wmplayer.exe
D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe
D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe
D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe
D:\Documents and Settings\Familia\Desktop\hijackthis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = [Windows XPhoeNiX]
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Arquivos de programas\Internet Download Manager\IDMIECC.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - D:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Arquivos de programas\Java\jre6\bin\ssv.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Arquivos de programas\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - D:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll (file missing)
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - D:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll (file missing)
O3 - Toolbar: Foxit Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Arquivos de programas\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [igfxhkcmd] D:\WINDOWS.0\system32\hkcmd.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [unlockerAssistant] "D:\Arquivos de programas\Unlocker\UnlockerAssistant.exe"
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS.0\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "D:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [uTorrent] "D:\Arquivos de programas\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [spybotSD TeaTimer] D:\Arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [QNB2EB90WX] D:\Temp\Vdg.exe
O4 - HKCU\..\Run: [iDMan] D:\Arquivos de programas\Internet Download Manager\IDMan.exe /onboot
O4 - Startup: LimeWire On Startup.lnk = D:\Arquivos de programas\LimeWire\LimeWire.exe
O4 - Startup: setup_9.0.0.722_29.06.2010_03-45.lnk = D:\Documents and Settings\Familia\Desktop\Virus Removal Tool\setup_9.0.0.722_29.06.2010_03-45\startup.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: Download all links with IDM - D:\Arquivos de programas\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - D:\Arquivos de programas\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - D:\Arquivos de programas\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://D:\ARQUIV~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\ARQUIV~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [iNTERNATIONAL] International*
O11 - Options group: [TABS] Tabbed Browsing
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - D:\ARQUIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (file missing)
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - D:\ARQUIV~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL (file missing)
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - D:\Arquivos de programas\Windows Live\Mail\mailcomm.dll (file missing)
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - D:\ARQUIV~1\ARQUIV~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)
O20 - Winlogon Notify: igfxcui - D:\WINDOWS.0\SYSTEM32\igfxdev.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS.0\system32\WPDShServiceObj.dll
O23 - Service: Google Update Service (gupdate) (gupdate) - Unknown owner - D:\Arquivos de programas\Google\Update\GoogleUpdate.exe" /svc (file missing)
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - D:\Arquivos de programas\Java\jre6\bin\jqs.exe" -service -config "D:\Arquivos de programas\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)
O23 - Service: Serviço de Compartilhamento de Rede do Windows Media Player (WMPNetworkSvc) - Unknown owner - D:\Arquivos de programas\Windows Media Player\WMPNetwk.exe (file missing)
Pelo log do hijack não aparece mais sinais do sality.
Por enquanto, estás com sorte.
1.
**Baixe o SystemLook e salve-o no desktop
*Duplo clique em SystemLook.exe
*Cole o código abaixo no espaço em branco:
:fileD:\Temp\Vdg.exe
*Clique em [Look]
*Cole o relatório apresentado em SystemLook.txt localizado no desktop
2.
*Baixe o RootKit Unhooker LE e salve-o no desktop
*Execute o programa
*Clique em [Report] > [scan]
*Clique [OK]
*Ao término será apresentado um relatório
*Clique em [File] > [save Report] e salve-o no desktop
*Clique em [Close] > [Yes]
*Cole-o na sua próxima resposta
SystemLook v1.0 by jpshortstuff (11.01.10)
Log created at 14:20 on 01/07/2010 by Familia (Administrator - Elevation successful)
========== file ==========
D:\Temp\Vdg.exe - Unable to find/read file.
-=End Of File=-
RkU Version: 3.8.388.590, Type LE (SR2)
==============================================
OS Name: Windows XP
Version 5.1.2600 (Service Pack 3)
Number of processors #2
==============================================
>SSDT State
==============================================
==============================================
>Shadow
==============================================
==============================================
>Processes
==============================================
0x89B61A00 [4] System
0x88FB3020 [268] D:\WINDOWS.0\system32\svchost.exe (Microsoft Corporation, Generic Host Process for Win32 Services)
0x89258DA0 [624] D:\WINDOWS.0\system32\smss.exe (Microsoft Corporation, Gerenciador de Sessão do Windows NT)
0x89302BA0 [680] D:\WINDOWS.0\system32\csrss.exe (Microsoft Corporation, Client Server Runtime Process)
0x891CD6A0 [704] D:\WINDOWS.0\system32\winlogon.exe (Microsoft Corporation, Aplicativo de logon do Windows NT)
0x891E7320 [748] D:\WINDOWS.0\system32\services.exe (Microsoft Corporation, Aplicativo de serviços e controle)
0x891E4020 [760] D:\WINDOWS.0\system32\lsass.exe (Microsoft Corporation, LSA Shell (Export Version))
0x891A3CD0 [924] D:\WINDOWS.0\system32\svchost.exe (Microsoft Corporation, Generic Host Process for Win32 Services)
0x89180DA0 [992] D:\WINDOWS.0\system32\svchost.exe (Microsoft Corporation, Generic Host Process for Win32 Services)
0x8916B020 [1088] D:\WINDOWS.0\system32\svchost.exe (Microsoft Corporation, Generic Host Process for Win32 Services)
0x89158020 [1260] D:\WINDOWS.0\system32\spoolsv.exe (Microsoft Corporation, Spooler SubSystem App)
0x88EFBCE0 [1324] D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe (Google Inc., Google Chrome)
0x8915B680 [1480] D:\WINDOWS.0\explorer.exe (Microsoft Corporation, Windows Explorer)
0x89135DA0 [1604] D:\WINDOWS.0\RTHDCPL.EXE (Realtek Semiconductor Corp., Realtek HD Audio Control Panel)
0x8912BDA0 [1620] D:\Arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd., System settings protector)
0x8912B608 [1628] D:\Arquivos de programas\Internet Download Manager\IDMan.exe (Tonec Inc., Internet Download Manager (IDM))
0x890EEDA0 [1728] D:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\mdm.exe (Microsoft Corporation, Machine Debug Manager)
0x890FB598 [1732] D:\Arquivos de programas\Google\Update\GoogleUpdate.exe (Google Inc., Google Installer)
0x890E1968 [1952] D:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe (Microsoft Corp., Microsoft SeaPort Search Enhancement Broker)
0x883B1DA0 [2216] D:\Documents and Settings\Familia\Desktop\RKUnhookerLE.EXE (UG North, RKULE, SR2 Normandy)
0x88B43AA8 [2684] D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe (Google Inc., Google Chrome)
0x88D743A8 [2696] D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe (Google Inc., Google Chrome)
0x8838EC38 [3396] D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe (Google Inc., Google Chrome)
0x88BEDDA0 [3596] D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe (Google Inc., Google Chrome)
0x890A0960 [3908] D:\Arquivos de programas\portables\googleChrome\Chrome\chrome.exe (Google Inc., Google Chrome)
0x883BA020 [4012] D:\WINDOWS.0\system32\notepad.exe (Microsoft Corporation, Bloco de notas)
==============================================
>Drivers
==============================================
0xA8D29000 D:\WINDOWS.0\system32\DRIVERS\54982931.sys 5373952 bytes (Kaspersky Lab, Kaspersky Unified Driver)
0xA94CD000 D:\WINDOWS.0\system32\drivers\RtkHDAud.sys 4874240 bytes (Realtek Semiconductor Corp., Realtek® High Definition Audio Function Driver)
0x804D7000 D:\WINDOWS.0\system32\ntkrnlpa.exe 2154496 bytes (Microsoft Corporation, Núcleo e sistema do NT)
0x804D7000 PnpManager 2154496 bytes
0x804D7000 RAW 2154496 bytes
0x804D7000 WMIxWDM 2154496 bytes
0xBF800000 Win32k 1863680 bytes
0xBF800000 D:\WINDOWS.0\System32\win32k.sys 1863680 bytes (Microsoft Corporation, Driver Win32 multiusuário)
0xB9C62000 D:\WINDOWS.0\system32\DRIVERS\ialmnt5.sys 1400832 bytes (Intel Corporation, Intel Graphics Miniport Driver)
0xBF07C000 D:\WINDOWS.0\System32\ialmdd5.DLL 978944 bytes (Intel Corporation, DirectDraw® Driver for Intel® Graphics Technology)
0xB9E47000 Ntfs.sys 577536 bytes (Microsoft Corporation, NT File System Driver)
0xA9249000 D:\WINDOWS.0\system32\DRIVERS\mrxsmb.sys 458752 bytes (Microsoft Corporation, Windows NT SMB Minirdr)
0xB9AD3000 D:\WINDOWS.0\system32\DRIVERS\update.sys 385024 bytes (Microsoft Corporation, Update Driver)
0xA937C000 D:\WINDOWS.0\system32\DRIVERS\tcpip.sys 364544 bytes (Microsoft Corporation, TCP/IP Protocol Driver)
0xA86F7000 D:\WINDOWS.0\system32\DRIVERS\srv.sys 356352 bytes (Microsoft Corporation, Server driver)
0xA9408000 D:\WINDOWS.0\system32\DRIVERS\5498293.sys 331776 bytes (Kaspersky Lab, Klif Mini-Filter [fre_wnet_x86])
0xBFFA0000 D:\WINDOWS.0\System32\ATMFD.DLL 286720 bytes (Adobe Systems Incorporated, Windows NT OpenType/Type 1 Font Driver)
0xA836E000 D:\WINDOWS.0\System32\Drivers\HTTP.sys 266240 bytes (Microsoft Corporation, HTTP Protocol Stack)
0xBF043000 D:\WINDOWS.0\System32\ialmdev5.DLL 233472 bytes (Intel Corporation, Component GHAL Driver)
0xB9B59000 D:\WINDOWS.0\system32\DRIVERS\rdpdr.sys 196608 bytes (Microsoft Corporation, Microsoft RDP Device redirector)
0xB9F79000 ACPI.sys 188416 bytes (Microsoft Corporation, ACPI Driver for NT)
0xB9E1A000 NDIS.sys 184320 bytes (Microsoft Corporation, NDIS 5.1 wrapper driver)
0xA818B000 D:\WINDOWS.0\system32\drivers\kmixer.sys 176128 bytes (Microsoft Corporation, Kernel Mode Audio Mixer)
0xA92B9000 D:\WINDOWS.0\system32\DRIVERS\rdbss.sys 176128 bytes (Microsoft Corporation, Redirected Drive Buffering SubSystem Driver)
0xB9C26000 D:\WINDOWS.0\system32\DRIVERS\HDAudBus.sys 163840 bytes (Windows ® Server 2003 DDK provider, High Definition Audio Bus Driver v1.0a)
0xA932C000 D:\WINDOWS.0\system32\DRIVERS\netbt.sys 163840 bytes (Microsoft Corporation, MBT Transport driver)
0xB9F23000 dmio.sys 155648 bytes (Microsoft Corp., Veritas Software, NT Disk Manager I/O Driver)
0xA9306000 D:\WINDOWS.0\system32\DRIVERS\ipnat.sys 155648 bytes (Microsoft Corporation, IP Network Address Translator)
0xA9481000 D:\WINDOWS.0\system32\drivers\portcls.sys 147456 bytes (Microsoft Corporation, Port Class (Class Driver for Port/Miniport Devices))
0xB9BE8000 D:\WINDOWS.0\system32\DRIVERS\USBPORT.SYS 147456 bytes (Microsoft Corporation, USB 1.1 & 2.0 Port Driver)
0xB9BB1000 D:\WINDOWS.0\system32\DRIVERS\ks.sys 143360 bytes (Microsoft Corporation, Kernel CSA Library)
0xA92E4000 D:\WINDOWS.0\System32\drivers\afd.sys 139264 bytes (Microsoft Corporation, Ancillary Function Driver for WinSock)
0xBF021000 D:\WINDOWS.0\System32\ialmdnt5.dll 139264 bytes (Intel Corporation, Controller Hub for Intel Graphics Driver)
0x806E5000 ACPI_HAL 134400 bytes
0x806E5000 D:\WINDOWS.0\system32\hal.dll 134400 bytes (Microsoft Corporation, Hardware Abstraction Layer DLL)
0xB9EEB000 fltMgr.sys 131072 bytes (Microsoft Corporation, Microsoft Filesystem Filter Manager)
0xB9F49000 ftdisk.sys 126976 bytes (Microsoft Corporation, Driver de disco com tolerância a falhas)
0xB9E00000 Mup.sys 106496 bytes (Microsoft Corporation, Multiple UNC Provider driver)
0xB9C0C000 D:\WINDOWS.0\system32\DRIVERS\Rtenicxp.sys 106496 bytes (Realtek Semiconductor Corporation , Realtek 10/100/1000 NDIS 5.1 Driver )
0xB9F0B000 atapi.sys 98304 bytes (Microsoft Corporation, IDE/ATAPI Port Driver)
0xB9ED4000 KSecDD.sys 94208 bytes (Microsoft Corporation, Kernel Security Support Provider Interface)
0xB9B9A000 D:\WINDOWS.0\system32\DRIVERS\ndiswan.sys 94208 bytes (Microsoft Corporation, MS PPP Framing Driver (Strong Encryption))
0xA89F4000 D:\WINDOWS.0\system32\drivers\wdmaud.sys 86016 bytes (Microsoft Corporation, MMSYSTEM Wave/Midi API mapper)
0xB9BD4000 D:\WINDOWS.0\system32\DRIVERS\parport.sys 81920 bytes (Microsoft Corporation, Driver de porta paralela)
0xB9C4E000 D:\WINDOWS.0\system32\DRIVERS\VIDEOPRT.SYS 81920 bytes (Microsoft Corporation, Video Port Driver)
0xA93D5000 D:\WINDOWS.0\system32\DRIVERS\ipsec.sys 77824 bytes (Microsoft Corporation, IPSec Driver)
0xBF000000 D:\WINDOWS.0\System32\drivers\dxg.sys 73728 bytes (Microsoft Corporation, DirectX Graphics Driver)
0xB9F68000 pci.sys 69632 bytes (Microsoft Corporation, Enumerador NT Plug and Play PCI)
0xB9B89000 D:\WINDOWS.0\system32\DRIVERS\psched.sys 69632 bytes (Microsoft Corporation, MS QoS Packet Scheduler)
0xBA278000 D:\WINDOWS.0\System32\Drivers\Cdfs.SYS 65536 bytes (Microsoft Corporation, CD-ROM File System Driver)
0xBA178000 D:\WINDOWS.0\system32\DRIVERS\cdrom.sys 65536 bytes (Microsoft Corporation, SCSI CD-ROM Driver)
0xBA148000 D:\WINDOWS.0\system32\DRIVERS\serial.sys 65536 bytes (Microsoft Corporation, Driver de dispositivo serial)
0xBA1F8000 D:\WINDOWS.0\system32\drivers\drmk.sys 61440 bytes (Microsoft Corporation, Microsoft Kernel DRM Descrambler Filter)
0xBF012000 D:\WINDOWS.0\System32\ialmrnt5.dll 61440 bytes (Intel Corporation, Controller Hub for Intel Graphics Driver)
0xBA188000 D:\WINDOWS.0\system32\DRIVERS\redbook.sys 61440 bytes (Microsoft Corporation, Redbook Audio Filter Driver)
0xA8B59000 D:\WINDOWS.0\system32\drivers\sysaudio.sys 61440 bytes (Microsoft Corporation, System Audio WDM Filter)
0xBA208000 D:\WINDOWS.0\system32\DRIVERS\usbhub.sys 61440 bytes (Microsoft Corporation, Default Hub Driver for USB)
0xBA158000 D:\WINDOWS.0\system32\DRIVERS\i8042prt.sys 57344 bytes (Microsoft Corporation, Driver de porta i8042)
0xBA0A8000 54982932.sys 53248 bytes (Kaspersky Lab, Kaspersky Lab Boot Guard Driver)
0xBA0F8000 D:\WINDOWS.0\system32\DRIVERS\CLASSPNP.SYS 53248 bytes (Microsoft Corporation, SCSI Class System Dll)
0xBA198000 D:\WINDOWS.0\system32\DRIVERS\rasl2tp.sys 53248 bytes (Microsoft Corporation, RAS L2TP mini-port/call-manager driver)
0xBA0D8000 VolSnap.sys 53248 bytes (Microsoft Corporation, Driver de cópia de sombra de volume)
0xBA1B8000 D:\WINDOWS.0\system32\DRIVERS\raspptp.sys 49152 bytes (Microsoft Corporation, Peer-to-Peer Tunneling Protocol)
0xBA238000 D:\WINDOWS.0\System32\Drivers\Fips.SYS 45056 bytes (Microsoft Corporation, FIPS Crypto Driver)
0xBA168000 D:\WINDOWS.0\system32\DRIVERS\imapi.sys 45056 bytes (Microsoft Corporation, IMAPI Kernel Driver)
0xBA0C8000 MountMgr.sys 45056 bytes (Microsoft Corporation, Mount Manager)
0xBA1A8000 D:\WINDOWS.0\system32\DRIVERS\raspppoe.sys 45056 bytes (Microsoft Corporation, RAS PPPoE mini-port/call-manager driver)
0xBA138000 D:\WINDOWS.0\system32\DRIVERS\intelppm.sys 40960 bytes (Microsoft Corporation, Driver de dispositivo de processador)
0xBA0B8000 isapnp.sys 40960 bytes (Microsoft Corporation, PNP ISA Bus Driver)
0xBA1D8000 D:\WINDOWS.0\System32\Drivers\NDProxy.SYS 40960 bytes (Microsoft Corporation, NDIS Proxy)
0xBA108000 PxHelp20.sys 40960 bytes (Sonic Solutions, Px Engine Device Driver for Windows 2000/XP)
0xBA0E8000 disk.sys 36864 bytes (Microsoft Corporation, PnP Disk Driver)
0xBA268000 D:\WINDOWS.0\system32\DRIVERS\HIDCLASS.SYS 36864 bytes (Microsoft Corporation, Hid Class Library)
0xBA1C8000 D:\WINDOWS.0\system32\DRIVERS\msgpc.sys 36864 bytes (Microsoft Corporation, MS General Packet Classifier)
0xBA228000 D:\WINDOWS.0\system32\DRIVERS\netbios.sys 36864 bytes (Microsoft Corporation, NetBIOS interface driver)
0xA8CC1000 D:\WINDOWS.0\System32\Drivers\Normandy.SYS 36864 bytes (RKU Driver)
0xBA218000 D:\WINDOWS.0\system32\DRIVERS\wanarp.sys 36864 bytes (Microsoft Corporation, MS Remote Access and Routing ARP Driver)
0xBA468000 D:\WINDOWS.0\System32\Drivers\Npfs.SYS 32768 bytes (Microsoft Corporation, NPFS Driver)
0xBA390000 D:\WINDOWS.0\system32\DRIVERS\usbehci.sys 32768 bytes (Microsoft Corporation, EHCI eUSB Miniport Driver)
0xBA488000 D:\WINDOWS.0\system32\DRIVERS\HIDPARSE.SYS 28672 bytes (Microsoft Corporation, Hid Parsing Library)
0xBA3A0000 D:\WINDOWS.0\system32\DRIVERS\kbdclass.sys 28672 bytes (Microsoft Corporation, Driver de classe teclado)
0xBA328000 D:\WINDOWS.0\system32\DRIVERS\PCIIDEX.SYS 28672 bytes (Microsoft Corporation, PCI IDE Bus Driver Extension)
0xBA440000 D:\WINDOWS.0\system32\DRIVERS\mouclass.sys 24576 bytes (Microsoft Corporation, Driver de classe modem)
0xBA388000 D:\WINDOWS.0\system32\DRIVERS\usbuhci.sys 24576 bytes (Microsoft Corporation, UHCI USB Miniport Driver)
0xBA448000 D:\WINDOWS.0\System32\drivers\vga.sys 24576 bytes (Microsoft Corporation, VGA/Super VGA Video Driver)
0xBA458000 D:\WINDOWS.0\System32\Drivers\Msfs.SYS 20480 bytes (Microsoft Corporation, Mailslot driver)
0xBA330000 PartMgr.sys 20480 bytes (Microsoft Corporation, Partition Manager)
0xBA3D8000 D:\WINDOWS.0\system32\DRIVERS\ptilink.sys 20480 bytes (Parallel Technologies, Inc., Parallel Technologies DirectParallel IO Library)
0xBA3E8000 D:\WINDOWS.0\system32\DRIVERS\raspti.sys 20480 bytes (Microsoft Corporation, PTI DirectParallel® mini-port/call-manager driver)
0xBA3C8000 D:\WINDOWS.0\system32\DRIVERS\TDI.SYS 20480 bytes (Microsoft Corporation, TDI Wrapper)
0xBA4A8000 D:\WINDOWS.0\System32\watchdog.sys 20480 bytes (Microsoft Corporation, Watchdog Driver)
0xA8ABD000 D:\WINDOWS.0\System32\Drivers\Aspi32.SYS 16384 bytes (Adaptec, ASPI for WIN32 Kernel Driver)
0xBA578000 D:\WINDOWS.0\system32\DRIVERS\mssmbios.sys 16384 bytes (Microsoft Corporation, System Management BIOS Driver)
0xBA540000 D:\WINDOWS.0\system32\DRIVERS\serenum.sys 16384 bytes (Microsoft Corporation, Serial Port Enumerator)
0xBA4B8000 D:\WINDOWS.0\system32\BOOTVID.dll 12288 bytes (Microsoft Corporation, VGA Boot Driver)
0xA9465000 D:\WINDOWS.0\System32\drivers\Dxapi.sys 12288 bytes (Microsoft Corporation, DirectX API Driver)
0xA94B5000 D:\WINDOWS.0\system32\DRIVERS\hidusb.sys 12288 bytes (Microsoft Corporation, USB Miniport Driver for Input Devices)
0xA94A9000 D:\WINDOWS.0\system32\DRIVERS\mouhid.sys 12288 bytes (Microsoft Corporation, HID Mouse Filter Driver)
0xBA554000 D:\WINDOWS.0\system32\DRIVERS\ndistapi.sys 12288 bytes (Microsoft Corporation, NDIS 3.0 connection wrapper driver)
0xB9B49000 D:\WINDOWS.0\system32\DRIVERS\rasacd.sys 12288 bytes (Microsoft Corporation, RAS Automatic Connection Driver)
0xBA588000 D:\Arquivos de programas\System\CPL Bonus\Vcdrom.sys 12288 bytes (Microsoft Corporation, Driver for Virtual CD-ROMs)
0xBA5CA000 D:\WINDOWS.0\System32\Drivers\Beep.SYS 8192 bytes (Microsoft Corporation, BEEP Driver)
0xBA5AC000 dmload.sys 8192 bytes (Microsoft Corp., Veritas Software., NT Disk Manager Startup Driver)
0xBA5C6000 D:\WINDOWS.0\System32\Drivers\Fs_Rec.SYS 8192 bytes (Microsoft Corporation, File System Recognizer Driver)
0xBA5A8000 D:\WINDOWS.0\system32\KDCOM.DLL 8192 bytes (Microsoft Corporation, Kernel Debugger HW Extension DLL)
0xBA61E000 D:\WINDOWS.0\System32\Drivers\ParVdm.SYS 8192 bytes (Microsoft Corporation, Driver paralelo VDM)
0xBA5CE000 D:\WINDOWS.0\System32\DRIVERS\RDPCDD.sys 8192 bytes (Microsoft Corporation, RDP Miniport)
0xBA5B6000 D:\WINDOWS.0\system32\DRIVERS\swenum.sys 8192 bytes (Microsoft Corporation, Plug and Play Software Device Enumerator)
0xBA5BE000 D:\WINDOWS.0\system32\DRIVERS\USBD.SYS 8192 bytes (Microsoft Corporation, Universal Serial Bus Driver)
0xBA5AA000 D:\WINDOWS.0\system32\DRIVERS\WMILIB.SYS 8192 bytes (Microsoft Corporation, WMILIB WMI support library Dll)
0xBA761000 D:\WINDOWS.0\system32\DRIVERS\audstub.sys 4096 bytes (Microsoft Corporation, AudStub Driver)
0xBA702000 D:\WINDOWS.0\System32\drivers\dxgthk.sys 4096 bytes (Microsoft Corporation, DirectX Graphics Driver Thunk)
0xBA7B5000 D:\WINDOWS.0\System32\Drivers\Null.SYS 4096 bytes (Microsoft Corporation, NULL Driver)
0xBA670000 pciide.sys 4096 bytes (Microsoft Corporation, Generic PCI IDE Bus Driver)
==============================================
>Stealth
==============================================
==============================================
>Files
==============================================
!-->[Hidden] D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Current Session::$DATA
!-->[Hidden] D:\Documents and Settings\Familia\Configurações locais\Dados de aplicativos\Google\Chrome\User Data\Default\Visited Links::$DATA
==============================================
>Hooks
==============================================
ntkrnlpa.exe+0x0006ECAE, Type: Inline - RelativeJump 0x80545CAE-->80545CB5 [ntkrnlpa.exe]
[1480]explorer.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77F51218-->00000000 [shimeng.dll]
[1480]explorer.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77E510B4-->00000000 [shimeng.dll]
[1480]explorer.exe-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x01001268-->00000000 [shimeng.dll]
[1480]explorer.exe-->shell32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x7C9C15A4-->00000000 [shimeng.dll]
[1480]explorer.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x7E36133C-->00000000 [shimeng.dll]
[1480]explorer.exe-->wininet.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x3FA514B0-->00000000 [shimeng.dll]
[1480]explorer.exe-->ws2_32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x71A7109C-->00000000 [shimeng.dll]
1.
*Delete o Rootkit Unhook LE e seu relatório
2.
*Delete o SystemLook e seu relatório
3.
*Abra a pasta Virus Removal Tool, localizada no desktop, duplo clique no atalho Start
*A tela principal do Kaspersky será aberta novamente
*Clique em [Exit] > [Yes] > [sim] > [sim]
*O PC será reiniciado
*Delete o arquivo setup do Kaspersky e os logs salvos no desktop
4.
*Execute o hijack, clique em [Do a system scan only], selecione a entrada abaixo e clique em [Fix checked]
O4 - HKCU\..\Run: [QNB2EB90WX] D:\Temp\Vdg.exe
*Feche o hijack
5.
*Delete os os arquivos C:\SalityKiller.exe e C:\sality.txt
6.
*Baixe o taskmanagerfix e salve-o no desktop
http://www.taskmanagerfix.com/dl/download.php?id=1
*Execute o programa e clique em [Fix Task Manager]
7.
*Acesse a página abaixo
http://www.kellys-korner-xp.com/regs_edits/mmc.reg
*Clique com o botão direito do mouse nela e selecione "Salvar como..."
*Salve no desktop
*Duplo clique em mmc.reg e aceite a entrada no registro
8.
*Baixe o sality_regkeys e salve-o no desktop
*Extraia o conteúdo para o desktop
*Na pasta SalityRegKeys execute o arquivo SafeBootWinXP.reg e aceite a entrada no registro
*Reinicie o PC
9.
*O PROCEDIMENTO ABAIXO SÓ PODERÁ SER FEITO USANDO O INTERNET EXPLORER
*Faça um scan online com o BitDefender seguindo este tutorial:
http://dicasetutoriaisparapc.blogspot.com/2009/04/tutorial-do-antivirus-bitdefender.html
*Ao término cole o resultado criado em C:\Windows\BDOSCAN8\bdoscan.log
BitDefender Online Scanner
Scan report generated at: Thu, Jul 01, 2010 - 17:58:44
Scan path: C:\;D:\;E:\;
Statistics:
Time:00:43:35
Files:218036
Folders :8035
Boot Sectors:0
Archives:1839
Packed Files:7281
Results
Identified Viruses:5
Infected Files:6
Suspect Files:0
Warnings:0
Disinfected:0
Deleted Files:2
Engines Info
Virus Definitions:6357267
Engine build
AVCORE v2.1 Windows/i386 11.0.0.33 (Jun 10 2010)
Scan plugins:17
Archive plugins:44
Unpack plugins:10
E-mail plugins:6
System plugins:4
Scan Settings
First Action:Disinfect
Second Action:Delete
Heuristics:Yes
Enable Warnings:Yes
Scanned Extensions:*;
Exclude Extensions:
Scan Emails:Yes
Scan Archives:Yes
Scan Packed:Yes
Scan Files:Yes
Scan BooT:Yes
Scanned File:
Status
D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefrag.exe
Infected with: Gen:Win32.Sality.Dam
D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefrag.exe
Disinfection failed
D:\Arquivos de programas\portables\JkDefragGUI\Programs\JkDefrag.exe
Deleted
D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar=>l2pbx.exe
Infected with: Trojan.Generic.3895234
D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar=>l2pbx.exe
Disinfection failed
D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar=>inject.dll
Infected with: Trojan.Generic.1542779
D:\Documents and Settings\Familia\Desktop\kalebe\l2phx34182english.rar=>inject.dll
Disinfection failed
D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4.rar=>Metin2 Live v4\mc.exe
Infected with: Backdoor.Generic.323183
D:\Documents and Settings\Familia\Desktop\kalebe\Metin2 Live v4.rar=>Metin2 Live v4\mc.exe
Disinfection failed
D:\Documents and Settings\Familia\Meus documentos\Downloads\mt2live_patch_atualizacao (1).rar=>mc.exe
Infected with: Backdoor.Generic.323183
D:\Documents and Settings\Familia\Meus documentos\Downloads\mt2live_patch_atualizacao (1).rar=>mc.exe
Disinfection failed
D:\Temp\sshnas21.dll
Infected with: Trojan.FakeAV.LAZ
D:\Temp\sshnas21.dll
Deleted
Eu havia colocado mais procedimentos...
Dê uma olhada.
Caso tenha feito todos, verifique se gpedit e o gerenciador podem ser abertos.
sim todos os procedimentos feitos mas o gpedit ainda nao ta funcionando
ta ae a imagem do erro:
perdao imagem errada e nao consigo editar acima
aqui esse erro
Boa tarde.....
1.
Clique em [Ferramentas] > [Residente]
Desmarque a opção Ativar "TeaTimer" do Residente (proteção geral das configurações de sistema).
Feche o programa.
2.
*Acesse o link abaixo:
http://securityresponse.symantec.com/avcenter/UnHookExec.inf
*Clique com o botão direito do mouse na página e selecione "Salvar como"...
*Salve no desktop
*Clique com o botão direito do mouse no arquivo UnHookExec.inf e selecione "Instalar".
3.
*Baixe o MalwareBytes Anti-malware e salve-o no desktop
*Instale o programa
*Se alguma atualização existir,o download será automático. Aguarde...
*O programa será aberto automaticamente.
*Na aba [Verificação], selecione a opção [Verificação completa]
*Clique em [Verificar] e selecione as partições a serem examinadas (geralmente C:\ e D:\)
*Ao término do scan, poderá ser interrogado se deseja remover objetos da memória. Clique [sIM] > [OK] > [Mostrar Resultados]
*Clique em [Remover Selecionados]
*Um relatório (mbam-log-ano-mês-data.txt) será apresentado.
*Cole-o na sua próxima resposta