Ir para conteúdo

POWERED BY:

Arquivado

Este tópico foi arquivado e está fechado para novas respostas.

a.alves

[Resolvido] PROBLEMAS COM WinNT / Bagle.gen

Recommended Posts

PRECISO DE AJUDA PARA ELIMINAR ESTE VIRUS "WinNT / Bagle.gen" - OS SINTOMAS SÃO OS MESMOS QUE TODOS DESCREVEM, ANTIVIRUS NAO ABRE E POR AÍ VAI - JÁ VI EM VÁRIOS TÓPICOS DIVERSAS SOLUÇÕES MAS NÃO CONSEGUI EXITO ! MEU SISTEMA OPERACIONAL É O WINDOWS VISTA.

 

AGUARDO POR AJUDA, DE VERDADE.

 

 

DESDE JÁ OBRIGADO A TODOS

 

ANDREH.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Opa a.alves,

 

Baixe o ComboFix em:

ComboFix

 

ATENÇÃO: Baixe-o, mas salve como KomboFix antes de executá-lo.

 

1) Desabilite o seu anti-vírus temporariamente;

2) Dê um duplo-clique no combofix.exe e tecle "1" para prosseguir. O processo vai durar, em média, 10 minutos;

3) O ComboFix reiniciará o PC automaticamente, a fim de que o processo de remoção seja finalizado (somente se houver infecção);

4) Quando a varredura acabar, será gerado um log, que estará em C:\ComboFix.txt;

5) Não clique na janela do ComboFix, nem feche clicando no X, enquanto a ferramenta estiver sendo executada, pois isto implicará na desconfiguração de seu desktop (ele ficará todo branco);

6) Para parar ou sair do ComboFix, tecle "N";

7) Reabilite o seu anti-vírus;

8) Preciso que você cole o conteúdo do ComboFix.txt em sua próxima resposta.

 

Abraços.

Compartilhar este post


Link para o post
Compartilhar em outros sites

:joia: :clap: :grin: Meu caro jgarcia, fiz o indicado e creio que obtive sucesso pois consegui reabilitar o windows defender e uma mensagem que aparecia de erro do proprio porgrama logo na inicialização do windows não apareceu mais.

 

Conforme solicitado, segue abaixo o Log do Combofix, Desde já muitissimo obrigado pela atenção. De verdade. :clap: :clap:

 

ComboFix 08-05-11.1 - Andreh Alves 2008-05-11 23:41:33.1 - NTFSx86

Microsoft® Windows Vista™ Starter 6.0.6000.0.1252.1.1046.18.105 [GMT -3:00]

Executando de: C:\Users\Andreh Alves\Documents\Downloads\Kombo\KomboFix.exe

* Criado um novo ponto de restauro

.

 

((((((((((((((((((((((((((((((((((((( Outras Exclusäes )))))))))))))))))))))))))))))))))))))))))))))))))))

.

 

C:\Windows\system32\1.exe

C:\Windows\system32\drivers\downld

C:\Windows\system32\drivers\downld\1002109.exe

C:\Windows\system32\drivers\downld\1004500.exe

C:\Windows\system32\drivers\downld\1005671.exe

C:\Windows\system32\drivers\downld\1009859.exe

C:\Windows\system32\drivers\downld\1010968.exe

C:\Windows\system32\drivers\downld\1011093.exe

C:\Windows\system32\drivers\downld\1020609.exe

C:\Windows\system32\drivers\downld\1023187.exe

C:\Windows\system32\drivers\downld\1028062.exe

C:\Windows\system32\drivers\downld\1030968.exe

C:\Windows\system32\drivers\downld\1031578.exe

C:\Windows\system32\drivers\downld\1036109.exe

C:\Windows\system32\drivers\downld\1043265.exe

C:\Windows\system32\drivers\downld\1053937.exe

C:\Windows\system32\drivers\downld\1056843.exe

C:\Windows\system32\drivers\downld\1057671.exe

C:\Windows\system32\drivers\downld\1073828.exe

C:\Windows\system32\drivers\downld\1074453.exe

C:\Windows\system32\drivers\downld\1074937.exe

C:\Windows\system32\drivers\downld\1075015.exe

C:\Windows\system32\drivers\downld\1076390.exe

C:\Windows\system32\drivers\downld\1085359.exe

C:\Windows\system32\drivers\downld\1095156.exe

C:\Windows\system32\drivers\downld\1097359.exe

C:\Windows\system32\drivers\downld\1104562.exe

C:\Windows\system32\drivers\downld\1111296.exe

C:\Windows\system32\drivers\downld\1115984.exe

C:\Windows\system32\drivers\downld\1116750.exe

C:\Windows\system32\drivers\downld\1119078.exe

C:\Windows\system32\drivers\downld\1137328.exe

C:\Windows\system32\drivers\downld\1138781.exe

C:\Windows\system32\drivers\downld\1139765.exe

C:\Windows\system32\drivers\downld\1153687.exe

C:\Windows\system32\drivers\downld\1213671.exe

C:\Windows\system32\drivers\downld\1225750.exe

C:\Windows\system32\drivers\downld\1237593.exe

C:\Windows\system32\drivers\downld\125343.exe

C:\Windows\system32\drivers\downld\1258875.exe

C:\Windows\system32\drivers\downld\1260375.exe

C:\Windows\system32\drivers\downld\1282281.exe

C:\Windows\system32\drivers\downld\1292765.exe

C:\Windows\system32\drivers\downld\1298593.exe

C:\Windows\system32\drivers\downld\1351750.exe

C:\Windows\system32\drivers\downld\1354296.exe

C:\Windows\system32\drivers\downld\139265.exe

C:\Windows\system32\drivers\downld\139578.exe

C:\Windows\system32\drivers\downld\1405734.exe

C:\Windows\system32\drivers\downld\1407859.exe

C:\Windows\system32\drivers\downld\141359.exe

C:\Windows\system32\drivers\downld\1440390.exe

C:\Windows\system32\drivers\downld\1446437.exe

C:\Windows\system32\drivers\downld\1451187.exe

C:\Windows\system32\drivers\downld\145390.exe

C:\Windows\system32\drivers\downld\1468578.exe

C:\Windows\system32\drivers\downld\1479687.exe

C:\Windows\system32\drivers\downld\148343.exe

C:\Windows\system32\drivers\downld\14875234.exe

C:\Windows\system32\drivers\downld\14881984.exe

C:\Windows\system32\drivers\downld\14884078.exe

C:\Windows\system32\drivers\downld\14884125.exe

C:\Windows\system32\drivers\downld\14889687.exe

C:\Windows\system32\drivers\downld\14892078.exe

C:\Windows\system32\drivers\downld\1489296.exe

C:\Windows\system32\drivers\downld\14916140.exe

C:\Windows\system32\drivers\downld\14922203.exe

C:\Windows\system32\drivers\downld\14923203.exe

C:\Windows\system32\drivers\downld\14934312.exe

C:\Windows\system32\drivers\downld\14943921.exe

C:\Windows\system32\drivers\downld\14949171.exe

C:\Windows\system32\drivers\downld\14952734.exe

C:\Windows\system32\drivers\downld\14986437.exe

C:\Windows\system32\drivers\downld\15006218.exe

C:\Windows\system32\drivers\downld\15021937.exe

C:\Windows\system32\drivers\downld\150281.exe

C:\Windows\system32\drivers\downld\15028343.exe

C:\Windows\system32\drivers\downld\150296.exe

C:\Windows\system32\drivers\downld\15044468.exe

C:\Windows\system32\drivers\downld\15066875.exe

C:\Windows\system32\drivers\downld\15075812.exe

C:\Windows\system32\drivers\downld\15096953.exe

C:\Windows\system32\drivers\downld\15106828.exe

C:\Windows\system32\drivers\downld\1510796.exe

C:\Windows\system32\drivers\downld\1511984.exe

C:\Windows\system32\drivers\downld\15133078.exe

C:\Windows\system32\drivers\downld\15162640.exe

C:\Windows\system32\drivers\downld\151828.exe

C:\Windows\system32\drivers\downld\15193281.exe

C:\Windows\system32\drivers\downld\15204671.exe

C:\Windows\system32\drivers\downld\152343.exe

C:\Windows\system32\drivers\downld\15305125.exe

C:\Windows\system32\drivers\downld\15349406.exe

C:\Windows\system32\drivers\downld\15373359.exe

C:\Windows\system32\drivers\downld\154062.exe

C:\Windows\system32\drivers\downld\15430765.exe

C:\Windows\system32\drivers\downld\15444265.exe

C:\Windows\system32\drivers\downld\15450140.exe

C:\Windows\system32\drivers\downld\1545140.exe

C:\Windows\system32\drivers\downld\15481171.exe

C:\Windows\system32\drivers\downld\15527234.exe

C:\Windows\system32\drivers\downld\1554125.exe

C:\Windows\system32\drivers\downld\15571671.exe

C:\Windows\system32\drivers\downld\155750.exe

C:\Windows\system32\drivers\downld\156203.exe

C:\Windows\system32\drivers\downld\157265.exe

C:\Windows\system32\drivers\downld\158531.exe

C:\Windows\system32\drivers\downld\1597281.exe

C:\Windows\system32\drivers\downld\1602734.exe

C:\Windows\system32\drivers\downld\160843.exe

C:\Windows\system32\drivers\downld\160890.exe

C:\Windows\system32\drivers\downld\16184781.exe

C:\Windows\system32\drivers\downld\16190890.exe

C:\Windows\system32\drivers\downld\1622921.exe

C:\Windows\system32\drivers\downld\1624171.exe

C:\Windows\system32\drivers\downld\16249453.exe

C:\Windows\system32\drivers\downld\16271234.exe

C:\Windows\system32\drivers\downld\162750.exe

C:\Windows\system32\drivers\downld\163218.exe

C:\Windows\system32\drivers\downld\163546.exe

C:\Windows\system32\drivers\downld\1643031.exe

C:\Windows\system32\drivers\downld\16463984.exe

C:\Windows\system32\drivers\downld\16492765.exe

C:\Windows\system32\drivers\downld\16513906.exe

C:\Windows\system32\drivers\downld\16521046.exe

C:\Windows\system32\drivers\downld\165796.exe

C:\Windows\system32\drivers\downld\1660890.exe

C:\Windows\system32\drivers\downld\1668343.exe

C:\Windows\system32\drivers\downld\167171.exe

C:\Windows\system32\drivers\downld\167234.exe

C:\Windows\system32\drivers\downld\167562.exe

C:\Windows\system32\drivers\downld\1677625.exe

C:\Windows\system32\drivers\downld\1682015.exe

C:\Windows\system32\drivers\downld\1686921.exe

C:\Windows\system32\drivers\downld\169140.exe

C:\Windows\system32\drivers\downld\1692250.exe

C:\Windows\system32\drivers\downld\169265.exe

C:\Windows\system32\drivers\downld\169406.exe

C:\Windows\system32\drivers\downld\169656.exe

C:\Windows\system32\drivers\downld\169875.exe

C:\Windows\system32\drivers\downld\1705078.exe

C:\Windows\system32\drivers\downld\1712593.exe

C:\Windows\system32\drivers\downld\171312.exe

C:\Windows\system32\drivers\downld\1718859.exe

C:\Windows\system32\drivers\downld\173312.exe

C:\Windows\system32\drivers\downld\174750.exe

C:\Windows\system32\drivers\downld\174796.exe

C:\Windows\system32\drivers\downld\175093.exe

C:\Windows\system32\drivers\downld\175234.exe

C:\Windows\system32\drivers\downld\175484.exe

C:\Windows\system32\drivers\downld\175500.exe

C:\Windows\system32\drivers\downld\1758921.exe

C:\Windows\system32\drivers\downld\176390.exe

C:\Windows\system32\drivers\downld\1769468.exe

C:\Windows\system32\drivers\downld\177187.exe

C:\Windows\system32\drivers\downld\177843.exe

C:\Windows\system32\drivers\downld\178468.exe

C:\Windows\system32\drivers\downld\1799015.exe

C:\Windows\system32\drivers\downld\180078.exe

C:\Windows\system32\drivers\downld\180546.exe

C:\Windows\system32\drivers\downld\180656.exe

C:\Windows\system32\drivers\downld\181531.exe

C:\Windows\system32\drivers\downld\182875.exe

C:\Windows\system32\drivers\downld\183531.exe

C:\Windows\system32\drivers\downld\183546.exe

C:\Windows\system32\drivers\downld\1864875.exe

C:\Windows\system32\drivers\downld\187687.exe

C:\Windows\system32\drivers\downld\189062.exe

C:\Windows\system32\drivers\downld\1892234.exe

C:\Windows\system32\drivers\downld\190562.exe

C:\Windows\system32\drivers\downld\1908406.exe

C:\Windows\system32\drivers\downld\191593.exe

C:\Windows\system32\drivers\downld\1917109.exe

C:\Windows\system32\drivers\downld\191718.exe

C:\Windows\system32\drivers\downld\192187.exe

C:\Windows\system32\drivers\downld\194359.exe

C:\Windows\system32\drivers\downld\195109.exe

C:\Windows\system32\drivers\downld\195843.exe

C:\Windows\system32\drivers\downld\196234.exe

C:\Windows\system32\drivers\downld\1965015.exe

C:\Windows\system32\drivers\downld\196765.exe

C:\Windows\system32\drivers\downld\196906.exe

C:\Windows\system32\drivers\downld\197109.exe

C:\Windows\system32\drivers\downld\197140.exe

C:\Windows\system32\drivers\downld\199031.exe

C:\Windows\system32\drivers\downld\199859.exe

C:\Windows\system32\drivers\downld\200062.exe

C:\Windows\system32\drivers\downld\200671.exe

C:\Windows\system32\drivers\downld\2013906.exe

C:\Windows\system32\drivers\downld\201703.exe

C:\Windows\system32\drivers\downld\201968.exe

C:\Windows\system32\drivers\downld\202031.exe

C:\Windows\system32\drivers\downld\203250.exe

C:\Windows\system32\drivers\downld\203765.exe

C:\Windows\system32\drivers\downld\206500.exe

C:\Windows\system32\drivers\downld\206609.exe

C:\Windows\system32\drivers\downld\207562.exe

C:\Windows\system32\drivers\downld\207890.exe

C:\Windows\system32\drivers\downld\208437.exe

C:\Windows\system32\drivers\downld\208546.exe

C:\Windows\system32\drivers\downld\208968.exe

C:\Windows\system32\drivers\downld\209500.exe

C:\Windows\system32\drivers\downld\209812.exe

C:\Windows\system32\drivers\downld\210031.exe

C:\Windows\system32\drivers\downld\210265.exe

C:\Windows\system32\drivers\downld\210609.exe

C:\Windows\system32\drivers\downld\212671.exe

C:\Windows\system32\drivers\downld\213140.exe

C:\Windows\system32\drivers\downld\214359.exe

C:\Windows\system32\drivers\downld\215500.exe

C:\Windows\system32\drivers\downld\215812.exe

C:\Windows\system32\drivers\downld\216062.exe

C:\Windows\system32\drivers\downld\217093.exe

C:\Windows\system32\drivers\downld\217187.exe

C:\Windows\system32\drivers\downld\217875.exe

C:\Windows\system32\drivers\downld\217953.exe

C:\Windows\system32\drivers\downld\218937.exe

C:\Windows\system32\drivers\downld\219515.exe

C:\Windows\system32\drivers\downld\219937.exe

C:\Windows\system32\drivers\downld\2203968.exe

C:\Windows\system32\drivers\downld\222421.exe

C:\Windows\system32\drivers\downld\222703.exe

C:\Windows\system32\drivers\downld\223593.exe

C:\Windows\system32\drivers\downld\223859.exe

C:\Windows\system32\drivers\downld\224671.exe

C:\Windows\system32\drivers\downld\225046.exe

C:\Windows\system32\drivers\downld\225078.exe

C:\Windows\system32\drivers\downld\225796.exe

C:\Windows\system32\drivers\downld\226203.exe

C:\Windows\system32\drivers\downld\228453.exe

C:\Windows\system32\drivers\downld\229000.exe

C:\Windows\system32\drivers\downld\229406.exe

C:\Windows\system32\drivers\downld\230296.exe

C:\Windows\system32\drivers\downld\231562.exe

C:\Windows\system32\drivers\downld\232015.exe

C:\Windows\system32\drivers\downld\233968.exe

C:\Windows\system32\drivers\downld\234515.exe

C:\Windows\system32\drivers\downld\234656.exe

C:\Windows\system32\drivers\downld\234750.exe

C:\Windows\system32\drivers\downld\235437.exe

C:\Windows\system32\drivers\downld\235828.exe

C:\Windows\system32\drivers\downld\236609.exe

C:\Windows\system32\drivers\downld\2372031.exe

C:\Windows\system32\drivers\downld\237656.exe

C:\Windows\system32\drivers\downld\239312.exe

C:\Windows\system32\drivers\downld\240468.exe

C:\Windows\system32\drivers\downld\241265.exe

C:\Windows\system32\drivers\downld\241859.exe

C:\Windows\system32\drivers\downld\242421.exe

C:\Windows\system32\drivers\downld\243843.exe

C:\Windows\system32\drivers\downld\244515.exe

C:\Windows\system32\drivers\downld\245515.exe

C:\Windows\system32\drivers\downld\246562.exe

C:\Windows\system32\drivers\downld\247187.exe

C:\Windows\system32\drivers\downld\248031.exe

C:\Windows\system32\drivers\downld\249406.exe

C:\Windows\system32\drivers\downld\250812.exe

C:\Windows\system32\drivers\downld\250828.exe

C:\Windows\system32\drivers\downld\252812.exe

C:\Windows\system32\drivers\downld\252937.exe

C:\Windows\system32\drivers\downld\253171.exe

C:\Windows\system32\drivers\downld\256015.exe

C:\Windows\system32\drivers\downld\257093.exe

C:\Windows\system32\drivers\downld\257453.exe

C:\Windows\system32\drivers\downld\257593.exe

C:\Windows\system32\drivers\downld\257671.exe

C:\Windows\system32\drivers\downld\257953.exe

C:\Windows\system32\drivers\downld\259453.exe

C:\Windows\system32\drivers\downld\2595703.exe

C:\Windows\system32\drivers\downld\260234.exe

C:\Windows\system32\drivers\downld\261843.exe

C:\Windows\system32\drivers\downld\262203.exe

C:\Windows\system32\drivers\downld\262250.exe

C:\Windows\system32\drivers\downld\262437.exe

C:\Windows\system32\drivers\downld\263296.exe

C:\Windows\system32\drivers\downld\263562.exe

C:\Windows\system32\drivers\downld\2658484.exe

C:\Windows\system32\drivers\downld\269062.exe

C:\Windows\system32\drivers\downld\269562.exe

C:\Windows\system32\drivers\downld\2700156.exe

C:\Windows\system32\drivers\downld\270687.exe

C:\Windows\system32\drivers\downld\271515.exe

C:\Windows\system32\drivers\downld\271609.exe

C:\Windows\system32\drivers\downld\2716609.exe

C:\Windows\system32\drivers\downld\271796.exe

C:\Windows\system32\drivers\downld\271906.exe

C:\Windows\system32\drivers\downld\272500.exe

C:\Windows\system32\drivers\downld\272531.exe

C:\Windows\system32\drivers\downld\273093.exe

C:\Windows\system32\drivers\downld\274578.exe

C:\Windows\system32\drivers\downld\275890.exe

C:\Windows\system32\drivers\downld\276703.exe

C:\Windows\system32\drivers\downld\277390.exe

C:\Windows\system32\drivers\downld\278156.exe

C:\Windows\system32\drivers\downld\278515.exe

C:\Windows\system32\drivers\downld\278593.exe

C:\Windows\system32\drivers\downld\279031.exe

C:\Windows\system32\drivers\downld\280109.exe

C:\Windows\system32\drivers\downld\280203.exe

C:\Windows\system32\drivers\downld\281375.exe

C:\Windows\system32\drivers\downld\281843.exe

C:\Windows\system32\drivers\downld\282109.exe

C:\Windows\system32\drivers\downld\283296.exe

C:\Windows\system32\drivers\downld\283703.exe

C:\Windows\system32\drivers\downld\284156.exe

C:\Windows\system32\drivers\downld\285453.exe

C:\Windows\system32\drivers\downld\285468.exe

C:\Windows\system32\drivers\downld\287296.exe

C:\Windows\system32\drivers\downld\288484.exe

C:\Windows\system32\drivers\downld\289500.exe

C:\Windows\system32\drivers\downld\290093.exe

C:\Windows\system32\drivers\downld\290906.exe

C:\Windows\system32\drivers\downld\292062.exe

C:\Windows\system32\drivers\downld\292406.exe

C:\Windows\system32\drivers\downld\294296.exe

C:\Windows\system32\drivers\downld\294828.exe

C:\Windows\system32\drivers\downld\294859.exe

C:\Windows\system32\drivers\downld\294937.exe

C:\Windows\system32\drivers\downld\295140.exe

C:\Windows\system32\drivers\downld\295328.exe

C:\Windows\system32\drivers\downld\297781.exe

C:\Windows\system32\drivers\downld\299234.exe

C:\Windows\system32\drivers\downld\301531.exe

C:\Windows\system32\drivers\downld\303093.exe

C:\Windows\system32\drivers\downld\303109.exe

C:\Windows\system32\drivers\downld\303781.exe

C:\Windows\system32\drivers\downld\303984.exe

C:\Windows\system32\drivers\downld\304031.exe

C:\Windows\system32\drivers\downld\304125.exe

C:\Windows\system32\drivers\downld\304406.exe

C:\Windows\system32\drivers\downld\304421.exe

C:\Windows\system32\drivers\downld\304828.exe

C:\Windows\system32\drivers\downld\306093.exe

C:\Windows\system32\drivers\downld\306343.exe

C:\Windows\system32\drivers\downld\307656.exe

C:\Windows\system32\drivers\downld\308031.exe

C:\Windows\system32\drivers\downld\3089046.exe

C:\Windows\system32\drivers\downld\309484.exe

C:\Windows\system32\drivers\downld\310218.exe

C:\Windows\system32\drivers\downld\310375.exe

C:\Windows\system32\drivers\downld\310515.exe

C:\Windows\system32\drivers\downld\310750.exe

C:\Windows\system32\drivers\downld\3113000.exe

C:\Windows\system32\drivers\downld\311328.exe

C:\Windows\system32\drivers\downld\311359.exe

C:\Windows\system32\drivers\downld\3137765.exe

C:\Windows\system32\drivers\downld\314890.exe

C:\Windows\system32\drivers\downld\315031.exe

C:\Windows\system32\drivers\downld\315703.exe

C:\Windows\system32\drivers\downld\317453.exe

C:\Windows\system32\drivers\downld\318125.exe

C:\Windows\system32\drivers\downld\319578.exe

C:\Windows\system32\drivers\downld\320218.exe

C:\Windows\system32\drivers\downld\321218.exe

C:\Windows\system32\drivers\downld\321421.exe

C:\Windows\system32\drivers\downld\321546.exe

C:\Windows\system32\drivers\downld\322531.exe

C:\Windows\system32\drivers\downld\322781.exe

C:\Windows\system32\drivers\downld\324765.exe

C:\Windows\system32\drivers\downld\327718.exe

C:\Windows\system32\drivers\downld\327843.exe

C:\Windows\system32\drivers\downld\328546.exe

C:\Windows\system32\drivers\downld\329875.exe

C:\Windows\system32\drivers\downld\330203.exe

C:\Windows\system32\drivers\downld\330921.exe

C:\Windows\system32\drivers\downld\331203.exe

C:\Windows\system32\drivers\downld\331656.exe

C:\Windows\system32\drivers\downld\333953.exe

C:\Windows\system32\drivers\downld\334750.exe

C:\Windows\system32\drivers\downld\334812.exe

C:\Windows\system32\drivers\downld\334937.exe

C:\Windows\system32\drivers\downld\3357812.exe

C:\Windows\system32\drivers\downld\337390.exe

C:\Windows\system32\drivers\downld\338078.exe

C:\Windows\system32\drivers\downld\3390546.exe

C:\Windows\system32\drivers\downld\3414671.exe

C:\Windows\system32\drivers\downld\341546.exe

C:\Windows\system32\drivers\downld\341656.exe

C:\Windows\system32\drivers\downld\3429812.exe

C:\Windows\system32\drivers\downld\343109.exe

C:\Windows\system32\drivers\downld\347984.exe

C:\Windows\system32\drivers\downld\348046.exe

C:\Windows\system32\drivers\downld\349687.exe

C:\Windows\system32\drivers\downld\350140.exe

C:\Windows\system32\drivers\downld\350687.exe

C:\Windows\system32\drivers\downld\351078.exe

C:\Windows\system32\drivers\downld\353296.exe

C:\Windows\system32\drivers\downld\353343.exe

C:\Windows\system32\drivers\downld\354656.exe

C:\Windows\system32\drivers\downld\354890.exe

C:\Windows\system32\drivers\downld\357343.exe

C:\Windows\system32\drivers\downld\358500.exe

C:\Windows\system32\drivers\downld\359578.exe

C:\Windows\system32\drivers\downld\359921.exe

C:\Windows\system32\drivers\downld\360375.exe

C:\Windows\system32\drivers\downld\361015.exe

C:\Windows\system32\drivers\downld\362093.exe

C:\Windows\system32\drivers\downld\362906.exe

C:\Windows\system32\drivers\downld\363406.exe

C:\Windows\system32\drivers\downld\363640.exe

C:\Windows\system32\drivers\downld\366015.exe

C:\Windows\system32\drivers\downld\366593.exe

C:\Windows\system32\drivers\downld\367406.exe

C:\Windows\system32\drivers\downld\368265.exe

C:\Windows\system32\drivers\downld\373406.exe

C:\Windows\system32\drivers\downld\375593.exe

C:\Windows\system32\drivers\downld\375703.exe

C:\Windows\system32\drivers\downld\376640.exe

C:\Windows\system32\drivers\downld\376781.exe

C:\Windows\system32\drivers\downld\377531.exe

C:\Windows\system32\drivers\downld\378187.exe

C:\Windows\system32\drivers\downld\381125.exe

C:\Windows\system32\drivers\downld\382250.exe

C:\Windows\system32\drivers\downld\384125.exe

C:\Windows\system32\drivers\downld\384984.exe

C:\Windows\system32\drivers\downld\386484.exe

C:\Windows\system32\drivers\downld\387171.exe

C:\Windows\system32\drivers\downld\3873328.exe

C:\Windows\system32\drivers\downld\387703.exe

C:\Windows\system32\drivers\downld\389000.exe

C:\Windows\system32\drivers\downld\389203.exe

C:\Windows\system32\drivers\downld\389515.exe

C:\Windows\system32\drivers\downld\3899281.exe

C:\Windows\system32\drivers\downld\392000.exe

C:\Windows\system32\drivers\downld\393109.exe

C:\Windows\system32\drivers\downld\398437.exe

C:\Windows\system32\drivers\downld\398718.exe

C:\Windows\system32\drivers\downld\400734.exe

C:\Windows\system32\drivers\downld\404062.exe

C:\Windows\system32\drivers\downld\408640.exe

C:\Windows\system32\drivers\downld\409984.exe

C:\Windows\system32\drivers\downld\413000.exe

C:\Windows\system32\drivers\downld\414015.exe

C:\Windows\system32\drivers\downld\415312.exe

C:\Windows\system32\drivers\downld\415468.exe

C:\Windows\system32\drivers\downld\418125.exe

C:\Windows\system32\drivers\downld\418734.exe

C:\Windows\system32\drivers\downld\419078.exe

C:\Windows\system32\drivers\downld\419781.exe

C:\Windows\system32\drivers\downld\421531.exe

C:\Windows\system32\drivers\downld\425531.exe

C:\Windows\system32\drivers\downld\426953.exe

C:\Windows\system32\drivers\downld\427984.exe

C:\Windows\system32\drivers\downld\430187.exe

C:\Windows\system32\drivers\downld\430343.exe

C:\Windows\system32\drivers\downld\431078.exe

C:\Windows\system32\drivers\downld\431734.exe

C:\Windows\system32\drivers\downld\432375.exe

C:\Windows\system32\drivers\downld\435531.exe

C:\Windows\system32\drivers\downld\437578.exe

C:\Windows\system32\drivers\downld\437656.exe

C:\Windows\system32\drivers\downld\437921.exe

C:\Windows\system32\drivers\downld\439218.exe

C:\Windows\system32\drivers\downld\442156.exe

C:\Windows\system32\drivers\downld\442203.exe

C:\Windows\system32\drivers\downld\442453.exe

C:\Windows\system32\drivers\downld\442890.exe

C:\Windows\system32\drivers\downld\442921.exe

C:\Windows\system32\drivers\downld\443171.exe

C:\Windows\system32\drivers\downld\443546.exe

C:\Windows\system32\drivers\downld\446765.exe

C:\Windows\system32\drivers\downld\447765.exe

C:\Windows\system32\drivers\downld\450421.exe

C:\Windows\system32\drivers\downld\451015.exe

C:\Windows\system32\drivers\downld\451437.exe

C:\Windows\system32\drivers\downld\452515.exe

C:\Windows\system32\drivers\downld\452781.exe

C:\Windows\system32\drivers\downld\454250.exe

C:\Windows\system32\drivers\downld\454421.exe

C:\Windows\system32\drivers\downld\454531.exe

C:\Windows\system32\drivers\downld\458125.exe

C:\Windows\system32\drivers\downld\458671.exe

C:\Windows\system32\drivers\downld\459343.exe

C:\Windows\system32\drivers\downld\461421.exe

C:\Windows\system32\drivers\downld\461468.exe

C:\Windows\system32\drivers\downld\461546.exe

C:\Windows\system32\drivers\downld\462531.exe

C:\Windows\system32\drivers\downld\462546.exe

C:\Windows\system32\drivers\downld\462812.exe

C:\Windows\system32\drivers\downld\463046.exe

C:\Windows\system32\drivers\downld\465015.exe

C:\Windows\system32\drivers\downld\466171.exe

C:\Windows\system32\drivers\downld\466312.exe

C:\Windows\system32\drivers\downld\469062.exe

C:\Windows\system32\drivers\downld\471515.exe

C:\Windows\system32\drivers\downld\471890.exe

C:\Windows\system32\drivers\downld\475390.exe

C:\Windows\system32\drivers\downld\475796.exe

C:\Windows\system32\drivers\downld\476437.exe

C:\Windows\system32\drivers\downld\476500.exe

C:\Windows\system32\drivers\downld\479875.exe

C:\Windows\system32\drivers\downld\481671.exe

C:\Windows\system32\drivers\downld\482328.exe

C:\Windows\system32\drivers\downld\483046.exe

C:\Windows\system32\drivers\downld\483312.exe

C:\Windows\system32\drivers\downld\487203.exe

C:\Windows\system32\drivers\downld\490484.exe

C:\Windows\system32\drivers\downld\492390.exe

C:\Windows\system32\drivers\downld\493500.exe

C:\Windows\system32\drivers\downld\493625.exe

C:\Windows\system32\drivers\downld\494031.exe

C:\Windows\system32\drivers\downld\494328.exe

C:\Windows\system32\drivers\downld\495656.exe

C:\Windows\system32\drivers\downld\496578.exe

C:\Windows\system32\drivers\downld\496921.exe

C:\Windows\system32\drivers\downld\4985843.exe

C:\Windows\system32\drivers\downld\500375.exe

C:\Windows\system32\drivers\downld\501156.exe

C:\Windows\system32\drivers\downld\501218.exe

C:\Windows\system32\drivers\downld\501718.exe

C:\Windows\system32\drivers\downld\5021453.exe

C:\Windows\system32\drivers\downld\503515.exe

C:\Windows\system32\drivers\downld\5045718.exe

C:\Windows\system32\drivers\downld\506500.exe

C:\Windows\system32\drivers\downld\5079609.exe

C:\Windows\system32\drivers\downld\5088031.exe

C:\Windows\system32\drivers\downld\510078.exe

C:\Windows\system32\drivers\downld\510531.exe

C:\Windows\system32\drivers\downld\511453.exe

C:\Windows\system32\drivers\downld\5129312.exe

C:\Windows\system32\drivers\downld\5137984.exe

C:\Windows\system32\drivers\downld\515093.exe

C:\Windows\system32\drivers\downld\5157234.exe

C:\Windows\system32\drivers\downld\515921.exe

C:\Windows\system32\drivers\downld\516937.exe

C:\Windows\system32\drivers\downld\5172968.exe

C:\Windows\system32\drivers\downld\518078.exe

C:\Windows\system32\drivers\downld\518937.exe

C:\Windows\system32\drivers\downld\519687.exe

C:\Windows\system32\drivers\downld\520093.exe

C:\Windows\system32\drivers\downld\523359.exe

C:\Windows\system32\drivers\downld\523984.exe

C:\Windows\system32\drivers\downld\526281.exe

C:\Windows\system32\drivers\downld\526562.exe

C:\Windows\system32\drivers\downld\526640.exe

C:\Windows\system32\drivers\downld\532218.exe

C:\Windows\system32\drivers\downld\533640.exe

C:\Windows\system32\drivers\downld\537218.exe

C:\Windows\system32\drivers\downld\5375609.exe

C:\Windows\system32\drivers\downld\5424375.exe

C:\Windows\system32\drivers\downld\544687.exe

C:\Windows\system32\drivers\downld\5459828.exe

C:\Windows\system32\drivers\downld\547406.exe

C:\Windows\system32\drivers\downld\5486343.exe

C:\Windows\system32\drivers\downld\549765.exe

C:\Windows\system32\drivers\downld\554265.exe

C:\Windows\system32\drivers\downld\556484.exe

C:\Windows\system32\drivers\downld\558375.exe

C:\Windows\system32\drivers\downld\565203.exe

C:\Windows\system32\drivers\downld\569609.exe

C:\Windows\system32\drivers\downld\575234.exe

C:\Windows\system32\drivers\downld\575406.exe

C:\Windows\system32\drivers\downld\577421.exe

C:\Windows\system32\drivers\downld\578640.exe

C:\Windows\system32\drivers\downld\5873406.exe

C:\Windows\system32\drivers\downld\588703.exe

C:\Windows\system32\drivers\downld\590343.exe

C:\Windows\system32\drivers\downld\5906109.exe

C:\Windows\system32\drivers\downld\5955890.exe

C:\Windows\system32\drivers\downld\5988390.exe

C:\Windows\system32\drivers\downld\6008937.exe

C:\Windows\system32\drivers\downld\6015390.exe

C:\Windows\system32\drivers\downld\603437.exe

C:\Windows\system32\drivers\downld\626765.exe

C:\Windows\system32\drivers\downld\627000.exe

C:\Windows\system32\drivers\downld\635687.exe

C:\Windows\system32\drivers\downld\638796.exe

C:\Windows\system32\drivers\downld\640109.exe

C:\Windows\system32\drivers\downld\658468.exe

C:\Windows\system32\drivers\downld\666359.exe

C:\Windows\system32\drivers\downld\677406.exe

C:\Windows\system32\drivers\downld\678312.exe

C:\Windows\system32\drivers\downld\679453.exe

C:\Windows\system32\drivers\downld\683093.exe

C:\Windows\system32\drivers\downld\685640.exe

C:\Windows\system32\drivers\downld\689781.exe

C:\Windows\system32\drivers\downld\693546.exe

C:\Windows\system32\drivers\downld\693750.exe

C:\Windows\system32\drivers\downld\695468.exe

C:\Windows\system32\drivers\downld\696312.exe

C:\Windows\system32\drivers\downld\701187.exe

C:\Windows\system32\drivers\downld\702843.exe

C:\Windows\system32\drivers\downld\705296.exe

C:\Windows\system32\drivers\downld\706796.exe

C:\Windows\system32\drivers\downld\710312.exe

C:\Windows\system32\drivers\downld\711125.exe

C:\Windows\system32\drivers\downld\712921.exe

C:\Windows\system32\drivers\downld\712968.exe

C:\Windows\system32\drivers\downld\720171.exe

C:\Windows\system32\drivers\downld\720265.exe

C:\Windows\system32\drivers\downld\720578.exe

C:\Windows\system32\drivers\downld\724171.exe

C:\Windows\system32\drivers\downld\727484.exe

C:\Windows\system32\drivers\downld\728125.exe

C:\Windows\system32\drivers\downld\728281.exe

C:\Windows\system32\drivers\downld\729140.exe

C:\Windows\system32\drivers\downld\730656.exe

C:\Windows\system32\drivers\downld\730750.exe

C:\Windows\system32\drivers\downld\733015.exe

C:\Windows\system32\drivers\downld\735984.exe

C:\Windows\system32\drivers\downld\738125.exe

C:\Windows\system32\drivers\downld\738593.exe

C:\Windows\system32\drivers\downld\740375.exe

C:\Windows\system32\drivers\downld\741562.exe

C:\Windows\system32\drivers\downld\741984.exe

C:\Windows\system32\drivers\downld\743703.exe

C:\Windows\system32\drivers\downld\744687.exe

C:\Windows\system32\drivers\downld\745390.exe

C:\Windows\system32\drivers\downld\746312.exe

C:\Windows\system32\drivers\downld\746843.exe

C:\Windows\system32\drivers\downld\747500.exe

C:\Windows\system32\drivers\downld\749515.exe

C:\Windows\system32\drivers\downld\751734.exe

C:\Windows\system32\drivers\downld\753875.exe

C:\Windows\system32\drivers\downld\756109.exe

C:\Windows\system32\drivers\downld\756531.exe

C:\Windows\system32\drivers\downld\759468.exe

C:\Windows\system32\drivers\downld\759812.exe

C:\Windows\system32\drivers\downld\760171.exe

C:\Windows\system32\drivers\downld\760234.exe

C:\Windows\system32\drivers\downld\764484.exe

C:\Windows\system32\drivers\downld\765421.exe

C:\Windows\system32\drivers\downld\766109.exe

C:\Windows\system32\drivers\downld\766937.exe

C:\Windows\system32\drivers\downld\768390.exe

C:\Windows\system32\drivers\downld\768984.exe

C:\Windows\system32\drivers\downld\774703.exe

C:\Windows\system32\drivers\downld\774843.exe

C:\Windows\system32\drivers\downld\774906.exe

C:\Windows\system32\drivers\downld\776859.exe

C:\Windows\system32\drivers\downld\782359.exe

C:\Windows\system32\drivers\downld\784125.exe

C:\Windows\system32\drivers\downld\785671.exe

C:\Windows\system32\drivers\downld\787546.exe

C:\Windows\system32\drivers\downld\788671.exe

C:\Windows\system32\drivers\downld\791203.exe

C:\Windows\system32\drivers\downld\793109.exe

C:\Windows\system32\drivers\downld\793218.exe

C:\Windows\system32\drivers\downld\793343.exe

C:\Windows\system32\drivers\downld\793953.exe

C:\Windows\system32\drivers\downld\794203.exe

C:\Windows\system32\drivers\downld\797140.exe

C:\Windows\system32\drivers\downld\800187.exe

C:\Windows\system32\drivers\downld\802093.exe

C:\Windows\system32\drivers\downld\802875.exe

C:\Windows\system32\drivers\downld\807765.exe

C:\Windows\system32\drivers\downld\808625.exe

C:\Windows\system32\drivers\downld\809703.exe

C:\Windows\system32\drivers\downld\812171.exe

C:\Windows\system32\drivers\downld\814015.exe

C:\Windows\system32\drivers\downld\814546.exe

C:\Windows\system32\drivers\downld\815515.exe

C:\Windows\system32\drivers\downld\816156.exe

C:\Windows\system32\drivers\downld\817593.exe

C:\Windows\system32\drivers\downld\819359.exe

C:\Windows\system32\drivers\downld\820781.exe

C:\Windows\system32\drivers\downld\821187.exe

C:\Windows\system32\drivers\downld\824984.exe

C:\Windows\system32\drivers\downld\827328.exe

C:\Windows\system32\drivers\downld\827593.exe

C:\Windows\system32\drivers\downld\828234.exe

C:\Windows\system32\drivers\downld\831031.exe

C:\Windows\system32\drivers\downld\832593.exe

C:\Windows\system32\drivers\downld\834031.exe

C:\Windows\system32\drivers\downld\834281.exe

C:\Windows\system32\drivers\downld\834375.exe

C:\Windows\system32\drivers\downld\834546.exe

C:\Windows\system32\drivers\downld\834578.exe

C:\Windows\system32\drivers\downld\836140.exe

C:\Windows\system32\drivers\downld\840578.exe

C:\Windows\system32\drivers\downld\842890.exe

C:\Windows\system32\drivers\downld\843593.exe

C:\Windows\system32\drivers\downld\846968.exe

C:\Windows\system32\drivers\downld\850828.exe

C:\Windows\system32\drivers\downld\855359.exe

C:\Windows\system32\drivers\downld\857765.exe

C:\Windows\system32\drivers\downld\859406.exe

C:\Windows\system32\drivers\downld\860140.exe

C:\Windows\system32\drivers\downld\860171.exe

C:\Windows\system32\drivers\downld\861125.exe

C:\Windows\system32\drivers\downld\861890.exe

C:\Windows\system32\drivers\downld\864812.exe

C:\Windows\system32\drivers\downld\869187.exe

C:\Windows\system32\drivers\downld\871531.exe

C:\Windows\system32\drivers\downld\873062.exe

C:\Windows\system32\drivers\downld\877015.exe

C:\Windows\system32\drivers\downld\882218.exe

C:\Windows\system32\drivers\downld\883812.exe

C:\Windows\system32\drivers\downld\890328.exe

C:\Windows\system32\drivers\downld\890953.exe

C:\Windows\system32\drivers\downld\893937.exe

C:\Windows\system32\drivers\downld\899390.exe

C:\Windows\system32\drivers\downld\900468.exe

C:\Windows\system32\drivers\downld\900984.exe

C:\Windows\system32\drivers\downld\907593.exe

C:\Windows\system32\drivers\downld\907640.exe

C:\Windows\system32\drivers\downld\911703.exe

C:\Windows\system32\drivers\downld\911781.exe

C:\Windows\system32\drivers\downld\925312.exe

C:\Windows\system32\drivers\downld\927187.exe

C:\Windows\system32\drivers\downld\930156.exe

C:\Windows\system32\drivers\downld\934031.exe

C:\Windows\system32\drivers\downld\946859.exe

C:\Windows\system32\drivers\downld\949421.exe

C:\Windows\system32\drivers\downld\950812.exe

C:\Windows\system32\drivers\downld\953078.exe

C:\Windows\system32\drivers\downld\956953.exe

C:\Windows\system32\drivers\downld\961187.exe

C:\Windows\system32\drivers\downld\961218.exe

C:\Windows\system32\drivers\downld\973218.exe

C:\Windows\system32\drivers\downld\981859.exe

C:\Windows\system32\drivers\downld\982171.exe

C:\Windows\system32\drivers\downld\982203.exe

C:\Windows\system32\drivers\downld\985359.exe

C:\Windows\system32\drivers\downld\990031.exe

C:\Windows\system32\drivers\downld\990468.exe

C:\Windows\system32\x64

 

.

((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.

 

-------\Legacy_SROSA

 

 

((((((((((((((((((((((( Ficheiros criados de 2008-04-12 to 2008-05-12 ))))))))))))))))))))))))))))))))

.

 

2008-05-11 23:28 . 2008-05-11 23:38 <DIR> d-------- C:\Users\Andreh Alves\.housecall6.6

2008-05-11 12:32 . 2008-05-11 12:32 <DIR> d-------- C:\Program Files\CCleaner

2008-05-08 17:50 . 2008-05-08 17:51 <DIR> d-------- C:\Program Files\Windows Live Safety Center

2008-04-26 13:51 . 2008-04-26 13:51 <DIR> d-------- C:\Program Files\Microsoft Silverlight

2008-04-25 11:43 . 2008-04-25 11:43 <DIR> d-------- C:\Program Files\MSXML 4.0

2008-04-25 11:41 . 2008-02-21 01:42 1,831,424 --a------ C:\Windows\System32\inetcpl.cpl

2008-04-25 11:41 . 2008-02-21 01:43 826,368 --a------ C:\Windows\System32\wininet.dll

2008-04-25 11:39 . 2008-02-21 01:43 296,448 --a------ C:\Windows\System32\gdi32.dll

2008-04-25 11:39 . 2007-12-16 08:42 83,968 --a------ C:\Windows\System32\dnsrslvr.dll

2008-04-25 11:39 . 2007-12-16 08:41 24,576 --a------ C:\Windows\System32\dnscacheugc.exe

2008-04-16 14:58 . 2008-04-16 14:58 55,596 --a------ C:\Windows\System32\AnalFTP2.exe

2008-04-15 11:42 . 2008-04-15 11:42 <DIR> d-------- C:\Windows\Sun

 

.

((((((((((((((((((((((((((((((((((((( Relat¢rio Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-04-26 16:51 --------- d-----w C:\Program Files\Windows Mail

2008-04-04 20:58 --------- d-----w C:\Program Files\NeroInstall.bak

2008-04-04 20:53 --------- d-----w C:\Users\ANDREH~1\AppData\Roaming\Nero

2008-04-04 20:53 --------- d-----w C:\Users\Andreh Alves\AppData\Roaming\Nero

2008-04-04 20:50 --------- d-----w C:\Program Files\Common Files\Nero

2008-04-04 20:47 --------- d-----w C:\Program Files\Nero

2008-04-04 20:47 --------- d-----w C:\PROGRA~2\Nero

2008-04-03 20:17 --------- d-----w C:\PROGRA~2\TEMP

2008-04-01 13:42 --------- d-----w C:\Program Files\Red Storm Entertainment

2008-02-28 20:38 972,072 ----a-w C:\Windows\UNNeroMediaHome.exe

2008-02-26 19:14 972,072 ----a-w C:\Windows\UNRecode.exe

2008-02-21 04:43 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll

2008-02-17 18:40 52,968 ----a-w C:\Users\ANDREH~1\AppData\Roaming\GDIPFONTCACHEV1.DAT

2008-02-17 18:40 52,968 ----a-w C:\Users\Andreh Alves\AppData\Roaming\GDIPFONTCACHEV1.DAT

2008-02-14 13:20 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll

2008-02-14 13:20 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.dll

2008-02-14 13:20 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll

2008-02-14 13:20 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.dll

2008-02-14 13:20 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll

2008-02-09 20:43 174 --sha-w C:\Program Files\desktop.ini

.

 

------- Sigcheck -------

 

.

(((((((((((((((((((((((((( Pontos de Carregamento do Registro )))))))))))))))))))))))))))))))))))))))

.

.

REGEDIT4

*Nota* entradas vazias & leg¡timas por defeito nÆo sÆo mostradas.

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 10:34 5724184]

"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-02-28 17:07 1828136]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-07-23 17:06 1006264]

"SMSERIAL"="C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe" [2007-01-29 18:22 638976]

"RtHDVCpl"="RtHDVCpl.exe" [2007-10-11 10:53 4702208 C:\Windows\RtHDVCpl.exe]

"Cmiboot"="C:\Windows\cmiboot.exe" [2007-02-12 14:08 65536]

"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 21:16 39792]

"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784]

"IgfxTray"="C:\Windows\system32\igfxtray.exe" [2008-01-02 17:07 141848]

"HotKeysCmds"="C:\Windows\system32\hkcmd.exe" [2008-01-02 17:06 166424]

"Persistence"="C:\Windows\system32\igfxpers.exe" [2008-01-02 17:07 133656]

"NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-02-18 16:29 2221352]

 

C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Startup\

Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2001-02-13 03:01:04 83360]

WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE [2008-02-11 10:28:11 389120]

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]

"NoDFSTab"= 1 (0x1)

 

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]

"NoDFSTab"= 1 (0x1)

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2300546980-345995662-398409026-1000]

"EnableNotificationsRef"=dword:00000004

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]

"{1858B547-FCD4-42F7-A6AC-8811D2B9CCA3}"= Profile=Private|C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)

"TCP Query User{F367AD2F-FB30-4E15-B0B9-872022F03E34}C:\\program files\\internet explorer\\iexplore.exe"= UDP:C:\program files\internet explorer\iexplore.exe:Internet Explorer

"UDP Query User{7830FDAA-FEBC-4906-9BB6-21E77EDE5A42}C:\\program files\\internet explorer\\iexplore.exe"= TCP:C:\program files\internet explorer\iexplore.exe:Internet Explorer

"{37E4A175-F1E1-47DC-B8D6-1BEEF41891AD}"= Disabled:C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)

"TCP Query User{9B200E36-E91D-49E7-A4E5-0655E8E3BACA}C:\\program files\\emule\\emule.exe"= UDP:C:\program files\emule\emule.exe:eMule

"UDP Query User{8D6DD616-5936-4CB2-93FF-B00692B8EFC7}C:\\program files\\emule\\emule.exe"= TCP:C:\program files\emule\emule.exe:eMule

"TCP Query User{6C5E1145-A6E6-4183-9279-5090318A6FF0}C:\\windows\\system32\\wintems.exe"= UDP:C:\windows\system32\wintems.exe:wintems

"UDP Query User{F039219D-72B8-403B-B362-ED62A1306044}C:\\windows\\system32\\wintems.exe"= TCP:C:\windows\system32\wintems.exe:wintems

 

R3 CMISTOR;CMIUCR.SYS CM320/CM220 Card Reader Driver;C:\Windows\system32\DRIVERS\cmiucr.SYS [2007-09-10 11:49]

R3 igfx;igfx;C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-01-02 16:48]

S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 04:30]

S4 O2MDRDR;O2MDRDR;C:\Windows\system32\drivers\o2media.sys [2007-04-25 16:04]

S4 O2SDRDR;O2SDRDR;C:\Windows\system32\drivers\o2sd.sys [2006-11-17 02:58]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]

LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9efa158a-d73a-11dc-8199-0019dbb92031}]

\shell\Auto\command - G:\MicrosoftPowerPoint.exe

\shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\MicrosoftPowerPoint.exe

 

.

**************************************************************************

 

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-05-11 23:53:14

Windows 6.0.6000 NTFS

 

Procurando processos ocultos ...

 

Procurando entradas auto inicializ veis ocultas ...

 

Procurando ficheiros ocultos ...

 

Varredura completada com sucesso

Ficheiros ocultos: 0

 

**************************************************************************

.

------------------------ Other Running Processes ------------------------

.

C:\Windows\System32\audiodg.exe

C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe

C:\Windows\System32\IoctlSvc.exe

C:\Windows\System32\WUDFHost.exe

C:\Windows\System32\conime.exe

C:\Windows\CmUCREye.exe

C:\Windows\System32\igfxsrvc.exe

C:\Windows\System32\WerFault.exe

C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe

.

**************************************************************************

.

Tempo para conclusÆo: 2008-05-11 23:58:36 - machine was rebooted

ComboFix-quarantined-files.txt 2008-05-12 02:58:09

 

Pre-Run: 111,304,003,584 bytes disponíveis

Post-Run: 111,093,530,624 bytes dispon¡veis

 

845 --- E O F --- 2008-05-11 14:57:30

 

 

 

 

 

---------------------------------

 

Creio que seja isto, muito obrigado novamente.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Opa a.alves,

 

Siga as instruções:

 

1. Reinicie a máquina em Modo Seguro.

 

2. Abra o Bloco de Notas -> Copie (Control + C) e Cole (Control + V) todo o texto incluído no "Quote":

File::

C:\Users\Andreh Alves\AppData\Roaming\GDIPFONTCACHEV1.DAT

C:\Windows\System32\AnalFTP2.exe

C:\windows\system32\wintems.exe

C:\Program Files\desktop.ini

G:\MicrosoftPowerPoint.exe

Registry::

[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9efa158a-d73a-11dc-8199-0019dbb92031}]

ATENÇÃO: O script acima foi elaborado especifícamente para a infecção contida neste computador. Utilizá-lo em outra máquina poderá originar graves problemas ao usuário.

  • 3. Salve o arquivo como CFScript.txt;
     
    4. Tal como exemplificado na foto abaixo, arraste o arquivo CFScript.txt para o ComboFix.exe.
    645i642.gif
     
    5. Ao término do processo a ferramenta irá gerar um log. Poste-o (C:\ComboFix.txt) em sua próxima resposta.

Abraços.

Compartilhar este post


Link para o post
Compartilhar em outros sites

jgarcia, fiz o indicado na sua ultima resposta mas creio que houve algum problema pois o Combofix indicou que não pode reconhecer o texto / após ler isto eu cliquei em "2" para sair do programa conforme apareceu na tela / depois o icone do programa sumiu assim como o bloco de notas e não foi gerado o log, enfim o que pode ter ocorrido ?

 

Só por curiosidade e também gostaria de saber o por quê da realização desta segunda etapa. :thumbsup:

Compartilhar este post


Link para o post
Compartilhar em outros sites

Opa a.alves,

 

Baixe o ComboFix novamente e repita a operação.

 

Só por curiosidade e também gostaria de saber o por quê da realização desta segunda etapa.

Ela é necessária ao complemento do processo de desinfecção.

 

Abraços.

Compartilhar este post


Link para o post
Compartilhar em outros sites

PROBLEMA RESOLVIDO!

 

Caso o autor necessite que o tópico seja reaberto é necessário enviar uma Mensagem Privada para um Moderador com um link para o tópico.

Compartilhar este post


Link para o post
Compartilhar em outros sites

×

Informação importante

Ao usar o fórum, você concorda com nossos Termos e condições.