a.alves 0 Denunciar post Postado Maio 11, 2008 PRECISO DE AJUDA PARA ELIMINAR ESTE VIRUS "WinNT / Bagle.gen" - OS SINTOMAS SÃO OS MESMOS QUE TODOS DESCREVEM, ANTIVIRUS NAO ABRE E POR AÍ VAI - JÁ VI EM VÁRIOS TÓPICOS DIVERSAS SOLUÇÕES MAS NÃO CONSEGUI EXITO ! MEU SISTEMA OPERACIONAL É O WINDOWS VISTA. AGUARDO POR AJUDA, DE VERDADE. DESDE JÁ OBRIGADO A TODOS ANDREH. Compartilhar este post Link para o post Compartilhar em outros sites
jgarcia 1 Denunciar post Postado Maio 12, 2008 Opa a.alves, Baixe o ComboFix em: ComboFix ATENÇÃO: Baixe-o, mas salve como KomboFix antes de executá-lo. 1) Desabilite o seu anti-vírus temporariamente; 2) Dê um duplo-clique no combofix.exe e tecle "1" para prosseguir. O processo vai durar, em média, 10 minutos; 3) O ComboFix reiniciará o PC automaticamente, a fim de que o processo de remoção seja finalizado (somente se houver infecção); 4) Quando a varredura acabar, será gerado um log, que estará em C:\ComboFix.txt; 5) Não clique na janela do ComboFix, nem feche clicando no X, enquanto a ferramenta estiver sendo executada, pois isto implicará na desconfiguração de seu desktop (ele ficará todo branco); 6) Para parar ou sair do ComboFix, tecle "N"; 7) Reabilite o seu anti-vírus; 8) Preciso que você cole o conteúdo do ComboFix.txt em sua próxima resposta. Abraços. Compartilhar este post Link para o post Compartilhar em outros sites
a.alves 0 Denunciar post Postado Maio 12, 2008 :joia: :clap: :grin: Meu caro jgarcia, fiz o indicado e creio que obtive sucesso pois consegui reabilitar o windows defender e uma mensagem que aparecia de erro do proprio porgrama logo na inicialização do windows não apareceu mais. Conforme solicitado, segue abaixo o Log do Combofix, Desde já muitissimo obrigado pela atenção. De verdade. :clap: :clap: ComboFix 08-05-11.1 - Andreh Alves 2008-05-11 23:41:33.1 - NTFSx86 Microsoft® Windows Vista™ Starter 6.0.6000.0.1252.1.1046.18.105 [GMT -3:00] Executando de: C:\Users\Andreh Alves\Documents\Downloads\Kombo\KomboFix.exe * Criado um novo ponto de restauro . ((((((((((((((((((((((((((((((((((((( Outras Exclusäes ))))))))))))))))))))))))))))))))))))))))))))))))))) . C:\Windows\system32\1.exe C:\Windows\system32\drivers\downld C:\Windows\system32\drivers\downld\1002109.exe C:\Windows\system32\drivers\downld\1004500.exe C:\Windows\system32\drivers\downld\1005671.exe C:\Windows\system32\drivers\downld\1009859.exe C:\Windows\system32\drivers\downld\1010968.exe C:\Windows\system32\drivers\downld\1011093.exe C:\Windows\system32\drivers\downld\1020609.exe C:\Windows\system32\drivers\downld\1023187.exe C:\Windows\system32\drivers\downld\1028062.exe C:\Windows\system32\drivers\downld\1030968.exe C:\Windows\system32\drivers\downld\1031578.exe C:\Windows\system32\drivers\downld\1036109.exe C:\Windows\system32\drivers\downld\1043265.exe C:\Windows\system32\drivers\downld\1053937.exe C:\Windows\system32\drivers\downld\1056843.exe C:\Windows\system32\drivers\downld\1057671.exe C:\Windows\system32\drivers\downld\1073828.exe C:\Windows\system32\drivers\downld\1074453.exe C:\Windows\system32\drivers\downld\1074937.exe C:\Windows\system32\drivers\downld\1075015.exe C:\Windows\system32\drivers\downld\1076390.exe C:\Windows\system32\drivers\downld\1085359.exe C:\Windows\system32\drivers\downld\1095156.exe C:\Windows\system32\drivers\downld\1097359.exe C:\Windows\system32\drivers\downld\1104562.exe C:\Windows\system32\drivers\downld\1111296.exe C:\Windows\system32\drivers\downld\1115984.exe C:\Windows\system32\drivers\downld\1116750.exe C:\Windows\system32\drivers\downld\1119078.exe C:\Windows\system32\drivers\downld\1137328.exe C:\Windows\system32\drivers\downld\1138781.exe C:\Windows\system32\drivers\downld\1139765.exe C:\Windows\system32\drivers\downld\1153687.exe C:\Windows\system32\drivers\downld\1213671.exe C:\Windows\system32\drivers\downld\1225750.exe C:\Windows\system32\drivers\downld\1237593.exe C:\Windows\system32\drivers\downld\125343.exe C:\Windows\system32\drivers\downld\1258875.exe C:\Windows\system32\drivers\downld\1260375.exe C:\Windows\system32\drivers\downld\1282281.exe C:\Windows\system32\drivers\downld\1292765.exe C:\Windows\system32\drivers\downld\1298593.exe C:\Windows\system32\drivers\downld\1351750.exe C:\Windows\system32\drivers\downld\1354296.exe C:\Windows\system32\drivers\downld\139265.exe C:\Windows\system32\drivers\downld\139578.exe C:\Windows\system32\drivers\downld\1405734.exe C:\Windows\system32\drivers\downld\1407859.exe C:\Windows\system32\drivers\downld\141359.exe C:\Windows\system32\drivers\downld\1440390.exe C:\Windows\system32\drivers\downld\1446437.exe C:\Windows\system32\drivers\downld\1451187.exe C:\Windows\system32\drivers\downld\145390.exe C:\Windows\system32\drivers\downld\1468578.exe C:\Windows\system32\drivers\downld\1479687.exe C:\Windows\system32\drivers\downld\148343.exe C:\Windows\system32\drivers\downld\14875234.exe C:\Windows\system32\drivers\downld\14881984.exe C:\Windows\system32\drivers\downld\14884078.exe C:\Windows\system32\drivers\downld\14884125.exe C:\Windows\system32\drivers\downld\14889687.exe C:\Windows\system32\drivers\downld\14892078.exe C:\Windows\system32\drivers\downld\1489296.exe C:\Windows\system32\drivers\downld\14916140.exe C:\Windows\system32\drivers\downld\14922203.exe C:\Windows\system32\drivers\downld\14923203.exe C:\Windows\system32\drivers\downld\14934312.exe C:\Windows\system32\drivers\downld\14943921.exe C:\Windows\system32\drivers\downld\14949171.exe C:\Windows\system32\drivers\downld\14952734.exe C:\Windows\system32\drivers\downld\14986437.exe C:\Windows\system32\drivers\downld\15006218.exe C:\Windows\system32\drivers\downld\15021937.exe C:\Windows\system32\drivers\downld\150281.exe C:\Windows\system32\drivers\downld\15028343.exe C:\Windows\system32\drivers\downld\150296.exe C:\Windows\system32\drivers\downld\15044468.exe C:\Windows\system32\drivers\downld\15066875.exe C:\Windows\system32\drivers\downld\15075812.exe C:\Windows\system32\drivers\downld\15096953.exe C:\Windows\system32\drivers\downld\15106828.exe C:\Windows\system32\drivers\downld\1510796.exe C:\Windows\system32\drivers\downld\1511984.exe C:\Windows\system32\drivers\downld\15133078.exe C:\Windows\system32\drivers\downld\15162640.exe C:\Windows\system32\drivers\downld\151828.exe C:\Windows\system32\drivers\downld\15193281.exe C:\Windows\system32\drivers\downld\15204671.exe C:\Windows\system32\drivers\downld\152343.exe C:\Windows\system32\drivers\downld\15305125.exe C:\Windows\system32\drivers\downld\15349406.exe C:\Windows\system32\drivers\downld\15373359.exe C:\Windows\system32\drivers\downld\154062.exe C:\Windows\system32\drivers\downld\15430765.exe C:\Windows\system32\drivers\downld\15444265.exe C:\Windows\system32\drivers\downld\15450140.exe C:\Windows\system32\drivers\downld\1545140.exe C:\Windows\system32\drivers\downld\15481171.exe C:\Windows\system32\drivers\downld\15527234.exe C:\Windows\system32\drivers\downld\1554125.exe C:\Windows\system32\drivers\downld\15571671.exe C:\Windows\system32\drivers\downld\155750.exe C:\Windows\system32\drivers\downld\156203.exe C:\Windows\system32\drivers\downld\157265.exe C:\Windows\system32\drivers\downld\158531.exe C:\Windows\system32\drivers\downld\1597281.exe C:\Windows\system32\drivers\downld\1602734.exe C:\Windows\system32\drivers\downld\160843.exe C:\Windows\system32\drivers\downld\160890.exe C:\Windows\system32\drivers\downld\16184781.exe C:\Windows\system32\drivers\downld\16190890.exe C:\Windows\system32\drivers\downld\1622921.exe C:\Windows\system32\drivers\downld\1624171.exe C:\Windows\system32\drivers\downld\16249453.exe C:\Windows\system32\drivers\downld\16271234.exe C:\Windows\system32\drivers\downld\162750.exe C:\Windows\system32\drivers\downld\163218.exe C:\Windows\system32\drivers\downld\163546.exe C:\Windows\system32\drivers\downld\1643031.exe C:\Windows\system32\drivers\downld\16463984.exe C:\Windows\system32\drivers\downld\16492765.exe C:\Windows\system32\drivers\downld\16513906.exe C:\Windows\system32\drivers\downld\16521046.exe C:\Windows\system32\drivers\downld\165796.exe C:\Windows\system32\drivers\downld\1660890.exe C:\Windows\system32\drivers\downld\1668343.exe C:\Windows\system32\drivers\downld\167171.exe C:\Windows\system32\drivers\downld\167234.exe C:\Windows\system32\drivers\downld\167562.exe C:\Windows\system32\drivers\downld\1677625.exe C:\Windows\system32\drivers\downld\1682015.exe C:\Windows\system32\drivers\downld\1686921.exe C:\Windows\system32\drivers\downld\169140.exe C:\Windows\system32\drivers\downld\1692250.exe C:\Windows\system32\drivers\downld\169265.exe C:\Windows\system32\drivers\downld\169406.exe C:\Windows\system32\drivers\downld\169656.exe C:\Windows\system32\drivers\downld\169875.exe C:\Windows\system32\drivers\downld\1705078.exe C:\Windows\system32\drivers\downld\1712593.exe C:\Windows\system32\drivers\downld\171312.exe C:\Windows\system32\drivers\downld\1718859.exe C:\Windows\system32\drivers\downld\173312.exe C:\Windows\system32\drivers\downld\174750.exe C:\Windows\system32\drivers\downld\174796.exe C:\Windows\system32\drivers\downld\175093.exe C:\Windows\system32\drivers\downld\175234.exe C:\Windows\system32\drivers\downld\175484.exe C:\Windows\system32\drivers\downld\175500.exe C:\Windows\system32\drivers\downld\1758921.exe C:\Windows\system32\drivers\downld\176390.exe C:\Windows\system32\drivers\downld\1769468.exe C:\Windows\system32\drivers\downld\177187.exe C:\Windows\system32\drivers\downld\177843.exe C:\Windows\system32\drivers\downld\178468.exe C:\Windows\system32\drivers\downld\1799015.exe C:\Windows\system32\drivers\downld\180078.exe C:\Windows\system32\drivers\downld\180546.exe C:\Windows\system32\drivers\downld\180656.exe C:\Windows\system32\drivers\downld\181531.exe C:\Windows\system32\drivers\downld\182875.exe C:\Windows\system32\drivers\downld\183531.exe C:\Windows\system32\drivers\downld\183546.exe C:\Windows\system32\drivers\downld\1864875.exe C:\Windows\system32\drivers\downld\187687.exe C:\Windows\system32\drivers\downld\189062.exe C:\Windows\system32\drivers\downld\1892234.exe C:\Windows\system32\drivers\downld\190562.exe C:\Windows\system32\drivers\downld\1908406.exe C:\Windows\system32\drivers\downld\191593.exe C:\Windows\system32\drivers\downld\1917109.exe C:\Windows\system32\drivers\downld\191718.exe C:\Windows\system32\drivers\downld\192187.exe C:\Windows\system32\drivers\downld\194359.exe C:\Windows\system32\drivers\downld\195109.exe C:\Windows\system32\drivers\downld\195843.exe C:\Windows\system32\drivers\downld\196234.exe C:\Windows\system32\drivers\downld\1965015.exe C:\Windows\system32\drivers\downld\196765.exe C:\Windows\system32\drivers\downld\196906.exe C:\Windows\system32\drivers\downld\197109.exe C:\Windows\system32\drivers\downld\197140.exe C:\Windows\system32\drivers\downld\199031.exe C:\Windows\system32\drivers\downld\199859.exe C:\Windows\system32\drivers\downld\200062.exe C:\Windows\system32\drivers\downld\200671.exe C:\Windows\system32\drivers\downld\2013906.exe C:\Windows\system32\drivers\downld\201703.exe C:\Windows\system32\drivers\downld\201968.exe C:\Windows\system32\drivers\downld\202031.exe C:\Windows\system32\drivers\downld\203250.exe C:\Windows\system32\drivers\downld\203765.exe C:\Windows\system32\drivers\downld\206500.exe C:\Windows\system32\drivers\downld\206609.exe C:\Windows\system32\drivers\downld\207562.exe C:\Windows\system32\drivers\downld\207890.exe C:\Windows\system32\drivers\downld\208437.exe C:\Windows\system32\drivers\downld\208546.exe C:\Windows\system32\drivers\downld\208968.exe C:\Windows\system32\drivers\downld\209500.exe C:\Windows\system32\drivers\downld\209812.exe C:\Windows\system32\drivers\downld\210031.exe C:\Windows\system32\drivers\downld\210265.exe C:\Windows\system32\drivers\downld\210609.exe C:\Windows\system32\drivers\downld\212671.exe C:\Windows\system32\drivers\downld\213140.exe C:\Windows\system32\drivers\downld\214359.exe C:\Windows\system32\drivers\downld\215500.exe C:\Windows\system32\drivers\downld\215812.exe C:\Windows\system32\drivers\downld\216062.exe C:\Windows\system32\drivers\downld\217093.exe C:\Windows\system32\drivers\downld\217187.exe C:\Windows\system32\drivers\downld\217875.exe C:\Windows\system32\drivers\downld\217953.exe C:\Windows\system32\drivers\downld\218937.exe C:\Windows\system32\drivers\downld\219515.exe C:\Windows\system32\drivers\downld\219937.exe C:\Windows\system32\drivers\downld\2203968.exe C:\Windows\system32\drivers\downld\222421.exe C:\Windows\system32\drivers\downld\222703.exe C:\Windows\system32\drivers\downld\223593.exe C:\Windows\system32\drivers\downld\223859.exe C:\Windows\system32\drivers\downld\224671.exe C:\Windows\system32\drivers\downld\225046.exe C:\Windows\system32\drivers\downld\225078.exe C:\Windows\system32\drivers\downld\225796.exe C:\Windows\system32\drivers\downld\226203.exe C:\Windows\system32\drivers\downld\228453.exe C:\Windows\system32\drivers\downld\229000.exe C:\Windows\system32\drivers\downld\229406.exe C:\Windows\system32\drivers\downld\230296.exe C:\Windows\system32\drivers\downld\231562.exe C:\Windows\system32\drivers\downld\232015.exe C:\Windows\system32\drivers\downld\233968.exe C:\Windows\system32\drivers\downld\234515.exe C:\Windows\system32\drivers\downld\234656.exe C:\Windows\system32\drivers\downld\234750.exe C:\Windows\system32\drivers\downld\235437.exe C:\Windows\system32\drivers\downld\235828.exe C:\Windows\system32\drivers\downld\236609.exe C:\Windows\system32\drivers\downld\2372031.exe C:\Windows\system32\drivers\downld\237656.exe C:\Windows\system32\drivers\downld\239312.exe C:\Windows\system32\drivers\downld\240468.exe C:\Windows\system32\drivers\downld\241265.exe C:\Windows\system32\drivers\downld\241859.exe C:\Windows\system32\drivers\downld\242421.exe C:\Windows\system32\drivers\downld\243843.exe C:\Windows\system32\drivers\downld\244515.exe C:\Windows\system32\drivers\downld\245515.exe C:\Windows\system32\drivers\downld\246562.exe C:\Windows\system32\drivers\downld\247187.exe C:\Windows\system32\drivers\downld\248031.exe C:\Windows\system32\drivers\downld\249406.exe C:\Windows\system32\drivers\downld\250812.exe C:\Windows\system32\drivers\downld\250828.exe C:\Windows\system32\drivers\downld\252812.exe C:\Windows\system32\drivers\downld\252937.exe C:\Windows\system32\drivers\downld\253171.exe C:\Windows\system32\drivers\downld\256015.exe C:\Windows\system32\drivers\downld\257093.exe C:\Windows\system32\drivers\downld\257453.exe C:\Windows\system32\drivers\downld\257593.exe C:\Windows\system32\drivers\downld\257671.exe C:\Windows\system32\drivers\downld\257953.exe C:\Windows\system32\drivers\downld\259453.exe C:\Windows\system32\drivers\downld\2595703.exe C:\Windows\system32\drivers\downld\260234.exe C:\Windows\system32\drivers\downld\261843.exe C:\Windows\system32\drivers\downld\262203.exe C:\Windows\system32\drivers\downld\262250.exe C:\Windows\system32\drivers\downld\262437.exe C:\Windows\system32\drivers\downld\263296.exe C:\Windows\system32\drivers\downld\263562.exe C:\Windows\system32\drivers\downld\2658484.exe C:\Windows\system32\drivers\downld\269062.exe C:\Windows\system32\drivers\downld\269562.exe C:\Windows\system32\drivers\downld\2700156.exe C:\Windows\system32\drivers\downld\270687.exe C:\Windows\system32\drivers\downld\271515.exe C:\Windows\system32\drivers\downld\271609.exe C:\Windows\system32\drivers\downld\2716609.exe C:\Windows\system32\drivers\downld\271796.exe C:\Windows\system32\drivers\downld\271906.exe C:\Windows\system32\drivers\downld\272500.exe C:\Windows\system32\drivers\downld\272531.exe C:\Windows\system32\drivers\downld\273093.exe C:\Windows\system32\drivers\downld\274578.exe C:\Windows\system32\drivers\downld\275890.exe C:\Windows\system32\drivers\downld\276703.exe C:\Windows\system32\drivers\downld\277390.exe C:\Windows\system32\drivers\downld\278156.exe C:\Windows\system32\drivers\downld\278515.exe C:\Windows\system32\drivers\downld\278593.exe C:\Windows\system32\drivers\downld\279031.exe C:\Windows\system32\drivers\downld\280109.exe C:\Windows\system32\drivers\downld\280203.exe C:\Windows\system32\drivers\downld\281375.exe C:\Windows\system32\drivers\downld\281843.exe C:\Windows\system32\drivers\downld\282109.exe C:\Windows\system32\drivers\downld\283296.exe C:\Windows\system32\drivers\downld\283703.exe C:\Windows\system32\drivers\downld\284156.exe C:\Windows\system32\drivers\downld\285453.exe C:\Windows\system32\drivers\downld\285468.exe C:\Windows\system32\drivers\downld\287296.exe C:\Windows\system32\drivers\downld\288484.exe C:\Windows\system32\drivers\downld\289500.exe C:\Windows\system32\drivers\downld\290093.exe C:\Windows\system32\drivers\downld\290906.exe C:\Windows\system32\drivers\downld\292062.exe C:\Windows\system32\drivers\downld\292406.exe C:\Windows\system32\drivers\downld\294296.exe C:\Windows\system32\drivers\downld\294828.exe C:\Windows\system32\drivers\downld\294859.exe C:\Windows\system32\drivers\downld\294937.exe C:\Windows\system32\drivers\downld\295140.exe C:\Windows\system32\drivers\downld\295328.exe C:\Windows\system32\drivers\downld\297781.exe C:\Windows\system32\drivers\downld\299234.exe C:\Windows\system32\drivers\downld\301531.exe C:\Windows\system32\drivers\downld\303093.exe C:\Windows\system32\drivers\downld\303109.exe C:\Windows\system32\drivers\downld\303781.exe C:\Windows\system32\drivers\downld\303984.exe C:\Windows\system32\drivers\downld\304031.exe C:\Windows\system32\drivers\downld\304125.exe C:\Windows\system32\drivers\downld\304406.exe C:\Windows\system32\drivers\downld\304421.exe C:\Windows\system32\drivers\downld\304828.exe C:\Windows\system32\drivers\downld\306093.exe C:\Windows\system32\drivers\downld\306343.exe C:\Windows\system32\drivers\downld\307656.exe C:\Windows\system32\drivers\downld\308031.exe C:\Windows\system32\drivers\downld\3089046.exe C:\Windows\system32\drivers\downld\309484.exe C:\Windows\system32\drivers\downld\310218.exe C:\Windows\system32\drivers\downld\310375.exe C:\Windows\system32\drivers\downld\310515.exe C:\Windows\system32\drivers\downld\310750.exe C:\Windows\system32\drivers\downld\3113000.exe C:\Windows\system32\drivers\downld\311328.exe C:\Windows\system32\drivers\downld\311359.exe C:\Windows\system32\drivers\downld\3137765.exe C:\Windows\system32\drivers\downld\314890.exe C:\Windows\system32\drivers\downld\315031.exe C:\Windows\system32\drivers\downld\315703.exe C:\Windows\system32\drivers\downld\317453.exe C:\Windows\system32\drivers\downld\318125.exe C:\Windows\system32\drivers\downld\319578.exe C:\Windows\system32\drivers\downld\320218.exe C:\Windows\system32\drivers\downld\321218.exe C:\Windows\system32\drivers\downld\321421.exe C:\Windows\system32\drivers\downld\321546.exe C:\Windows\system32\drivers\downld\322531.exe C:\Windows\system32\drivers\downld\322781.exe C:\Windows\system32\drivers\downld\324765.exe C:\Windows\system32\drivers\downld\327718.exe C:\Windows\system32\drivers\downld\327843.exe C:\Windows\system32\drivers\downld\328546.exe C:\Windows\system32\drivers\downld\329875.exe C:\Windows\system32\drivers\downld\330203.exe C:\Windows\system32\drivers\downld\330921.exe C:\Windows\system32\drivers\downld\331203.exe C:\Windows\system32\drivers\downld\331656.exe C:\Windows\system32\drivers\downld\333953.exe C:\Windows\system32\drivers\downld\334750.exe C:\Windows\system32\drivers\downld\334812.exe C:\Windows\system32\drivers\downld\334937.exe C:\Windows\system32\drivers\downld\3357812.exe C:\Windows\system32\drivers\downld\337390.exe C:\Windows\system32\drivers\downld\338078.exe C:\Windows\system32\drivers\downld\3390546.exe C:\Windows\system32\drivers\downld\3414671.exe C:\Windows\system32\drivers\downld\341546.exe C:\Windows\system32\drivers\downld\341656.exe C:\Windows\system32\drivers\downld\3429812.exe C:\Windows\system32\drivers\downld\343109.exe C:\Windows\system32\drivers\downld\347984.exe C:\Windows\system32\drivers\downld\348046.exe C:\Windows\system32\drivers\downld\349687.exe C:\Windows\system32\drivers\downld\350140.exe C:\Windows\system32\drivers\downld\350687.exe C:\Windows\system32\drivers\downld\351078.exe C:\Windows\system32\drivers\downld\353296.exe C:\Windows\system32\drivers\downld\353343.exe C:\Windows\system32\drivers\downld\354656.exe C:\Windows\system32\drivers\downld\354890.exe C:\Windows\system32\drivers\downld\357343.exe C:\Windows\system32\drivers\downld\358500.exe C:\Windows\system32\drivers\downld\359578.exe C:\Windows\system32\drivers\downld\359921.exe C:\Windows\system32\drivers\downld\360375.exe C:\Windows\system32\drivers\downld\361015.exe C:\Windows\system32\drivers\downld\362093.exe C:\Windows\system32\drivers\downld\362906.exe C:\Windows\system32\drivers\downld\363406.exe C:\Windows\system32\drivers\downld\363640.exe C:\Windows\system32\drivers\downld\366015.exe C:\Windows\system32\drivers\downld\366593.exe C:\Windows\system32\drivers\downld\367406.exe C:\Windows\system32\drivers\downld\368265.exe C:\Windows\system32\drivers\downld\373406.exe C:\Windows\system32\drivers\downld\375593.exe C:\Windows\system32\drivers\downld\375703.exe C:\Windows\system32\drivers\downld\376640.exe C:\Windows\system32\drivers\downld\376781.exe C:\Windows\system32\drivers\downld\377531.exe C:\Windows\system32\drivers\downld\378187.exe C:\Windows\system32\drivers\downld\381125.exe C:\Windows\system32\drivers\downld\382250.exe C:\Windows\system32\drivers\downld\384125.exe C:\Windows\system32\drivers\downld\384984.exe C:\Windows\system32\drivers\downld\386484.exe C:\Windows\system32\drivers\downld\387171.exe C:\Windows\system32\drivers\downld\3873328.exe C:\Windows\system32\drivers\downld\387703.exe C:\Windows\system32\drivers\downld\389000.exe C:\Windows\system32\drivers\downld\389203.exe C:\Windows\system32\drivers\downld\389515.exe C:\Windows\system32\drivers\downld\3899281.exe C:\Windows\system32\drivers\downld\392000.exe C:\Windows\system32\drivers\downld\393109.exe C:\Windows\system32\drivers\downld\398437.exe C:\Windows\system32\drivers\downld\398718.exe C:\Windows\system32\drivers\downld\400734.exe C:\Windows\system32\drivers\downld\404062.exe C:\Windows\system32\drivers\downld\408640.exe C:\Windows\system32\drivers\downld\409984.exe C:\Windows\system32\drivers\downld\413000.exe C:\Windows\system32\drivers\downld\414015.exe C:\Windows\system32\drivers\downld\415312.exe C:\Windows\system32\drivers\downld\415468.exe C:\Windows\system32\drivers\downld\418125.exe C:\Windows\system32\drivers\downld\418734.exe C:\Windows\system32\drivers\downld\419078.exe C:\Windows\system32\drivers\downld\419781.exe C:\Windows\system32\drivers\downld\421531.exe C:\Windows\system32\drivers\downld\425531.exe C:\Windows\system32\drivers\downld\426953.exe C:\Windows\system32\drivers\downld\427984.exe C:\Windows\system32\drivers\downld\430187.exe C:\Windows\system32\drivers\downld\430343.exe C:\Windows\system32\drivers\downld\431078.exe C:\Windows\system32\drivers\downld\431734.exe C:\Windows\system32\drivers\downld\432375.exe C:\Windows\system32\drivers\downld\435531.exe C:\Windows\system32\drivers\downld\437578.exe C:\Windows\system32\drivers\downld\437656.exe C:\Windows\system32\drivers\downld\437921.exe C:\Windows\system32\drivers\downld\439218.exe C:\Windows\system32\drivers\downld\442156.exe C:\Windows\system32\drivers\downld\442203.exe C:\Windows\system32\drivers\downld\442453.exe C:\Windows\system32\drivers\downld\442890.exe C:\Windows\system32\drivers\downld\442921.exe C:\Windows\system32\drivers\downld\443171.exe C:\Windows\system32\drivers\downld\443546.exe C:\Windows\system32\drivers\downld\446765.exe C:\Windows\system32\drivers\downld\447765.exe C:\Windows\system32\drivers\downld\450421.exe C:\Windows\system32\drivers\downld\451015.exe C:\Windows\system32\drivers\downld\451437.exe C:\Windows\system32\drivers\downld\452515.exe C:\Windows\system32\drivers\downld\452781.exe C:\Windows\system32\drivers\downld\454250.exe C:\Windows\system32\drivers\downld\454421.exe C:\Windows\system32\drivers\downld\454531.exe C:\Windows\system32\drivers\downld\458125.exe C:\Windows\system32\drivers\downld\458671.exe C:\Windows\system32\drivers\downld\459343.exe C:\Windows\system32\drivers\downld\461421.exe C:\Windows\system32\drivers\downld\461468.exe C:\Windows\system32\drivers\downld\461546.exe C:\Windows\system32\drivers\downld\462531.exe C:\Windows\system32\drivers\downld\462546.exe C:\Windows\system32\drivers\downld\462812.exe C:\Windows\system32\drivers\downld\463046.exe C:\Windows\system32\drivers\downld\465015.exe C:\Windows\system32\drivers\downld\466171.exe C:\Windows\system32\drivers\downld\466312.exe C:\Windows\system32\drivers\downld\469062.exe C:\Windows\system32\drivers\downld\471515.exe C:\Windows\system32\drivers\downld\471890.exe C:\Windows\system32\drivers\downld\475390.exe C:\Windows\system32\drivers\downld\475796.exe C:\Windows\system32\drivers\downld\476437.exe C:\Windows\system32\drivers\downld\476500.exe C:\Windows\system32\drivers\downld\479875.exe C:\Windows\system32\drivers\downld\481671.exe C:\Windows\system32\drivers\downld\482328.exe C:\Windows\system32\drivers\downld\483046.exe C:\Windows\system32\drivers\downld\483312.exe C:\Windows\system32\drivers\downld\487203.exe C:\Windows\system32\drivers\downld\490484.exe C:\Windows\system32\drivers\downld\492390.exe C:\Windows\system32\drivers\downld\493500.exe C:\Windows\system32\drivers\downld\493625.exe C:\Windows\system32\drivers\downld\494031.exe C:\Windows\system32\drivers\downld\494328.exe C:\Windows\system32\drivers\downld\495656.exe C:\Windows\system32\drivers\downld\496578.exe C:\Windows\system32\drivers\downld\496921.exe C:\Windows\system32\drivers\downld\4985843.exe C:\Windows\system32\drivers\downld\500375.exe C:\Windows\system32\drivers\downld\501156.exe C:\Windows\system32\drivers\downld\501218.exe C:\Windows\system32\drivers\downld\501718.exe C:\Windows\system32\drivers\downld\5021453.exe C:\Windows\system32\drivers\downld\503515.exe C:\Windows\system32\drivers\downld\5045718.exe C:\Windows\system32\drivers\downld\506500.exe C:\Windows\system32\drivers\downld\5079609.exe C:\Windows\system32\drivers\downld\5088031.exe C:\Windows\system32\drivers\downld\510078.exe C:\Windows\system32\drivers\downld\510531.exe C:\Windows\system32\drivers\downld\511453.exe C:\Windows\system32\drivers\downld\5129312.exe C:\Windows\system32\drivers\downld\5137984.exe C:\Windows\system32\drivers\downld\515093.exe C:\Windows\system32\drivers\downld\5157234.exe C:\Windows\system32\drivers\downld\515921.exe C:\Windows\system32\drivers\downld\516937.exe C:\Windows\system32\drivers\downld\5172968.exe C:\Windows\system32\drivers\downld\518078.exe C:\Windows\system32\drivers\downld\518937.exe C:\Windows\system32\drivers\downld\519687.exe C:\Windows\system32\drivers\downld\520093.exe C:\Windows\system32\drivers\downld\523359.exe C:\Windows\system32\drivers\downld\523984.exe C:\Windows\system32\drivers\downld\526281.exe C:\Windows\system32\drivers\downld\526562.exe C:\Windows\system32\drivers\downld\526640.exe C:\Windows\system32\drivers\downld\532218.exe C:\Windows\system32\drivers\downld\533640.exe C:\Windows\system32\drivers\downld\537218.exe C:\Windows\system32\drivers\downld\5375609.exe C:\Windows\system32\drivers\downld\5424375.exe C:\Windows\system32\drivers\downld\544687.exe C:\Windows\system32\drivers\downld\5459828.exe C:\Windows\system32\drivers\downld\547406.exe C:\Windows\system32\drivers\downld\5486343.exe C:\Windows\system32\drivers\downld\549765.exe C:\Windows\system32\drivers\downld\554265.exe C:\Windows\system32\drivers\downld\556484.exe C:\Windows\system32\drivers\downld\558375.exe C:\Windows\system32\drivers\downld\565203.exe C:\Windows\system32\drivers\downld\569609.exe C:\Windows\system32\drivers\downld\575234.exe C:\Windows\system32\drivers\downld\575406.exe C:\Windows\system32\drivers\downld\577421.exe C:\Windows\system32\drivers\downld\578640.exe C:\Windows\system32\drivers\downld\5873406.exe C:\Windows\system32\drivers\downld\588703.exe C:\Windows\system32\drivers\downld\590343.exe C:\Windows\system32\drivers\downld\5906109.exe C:\Windows\system32\drivers\downld\5955890.exe C:\Windows\system32\drivers\downld\5988390.exe C:\Windows\system32\drivers\downld\6008937.exe C:\Windows\system32\drivers\downld\6015390.exe C:\Windows\system32\drivers\downld\603437.exe C:\Windows\system32\drivers\downld\626765.exe C:\Windows\system32\drivers\downld\627000.exe C:\Windows\system32\drivers\downld\635687.exe C:\Windows\system32\drivers\downld\638796.exe C:\Windows\system32\drivers\downld\640109.exe C:\Windows\system32\drivers\downld\658468.exe C:\Windows\system32\drivers\downld\666359.exe C:\Windows\system32\drivers\downld\677406.exe C:\Windows\system32\drivers\downld\678312.exe C:\Windows\system32\drivers\downld\679453.exe C:\Windows\system32\drivers\downld\683093.exe C:\Windows\system32\drivers\downld\685640.exe C:\Windows\system32\drivers\downld\689781.exe C:\Windows\system32\drivers\downld\693546.exe C:\Windows\system32\drivers\downld\693750.exe C:\Windows\system32\drivers\downld\695468.exe C:\Windows\system32\drivers\downld\696312.exe C:\Windows\system32\drivers\downld\701187.exe C:\Windows\system32\drivers\downld\702843.exe C:\Windows\system32\drivers\downld\705296.exe C:\Windows\system32\drivers\downld\706796.exe C:\Windows\system32\drivers\downld\710312.exe C:\Windows\system32\drivers\downld\711125.exe C:\Windows\system32\drivers\downld\712921.exe C:\Windows\system32\drivers\downld\712968.exe C:\Windows\system32\drivers\downld\720171.exe C:\Windows\system32\drivers\downld\720265.exe C:\Windows\system32\drivers\downld\720578.exe C:\Windows\system32\drivers\downld\724171.exe C:\Windows\system32\drivers\downld\727484.exe C:\Windows\system32\drivers\downld\728125.exe C:\Windows\system32\drivers\downld\728281.exe C:\Windows\system32\drivers\downld\729140.exe C:\Windows\system32\drivers\downld\730656.exe C:\Windows\system32\drivers\downld\730750.exe C:\Windows\system32\drivers\downld\733015.exe C:\Windows\system32\drivers\downld\735984.exe C:\Windows\system32\drivers\downld\738125.exe C:\Windows\system32\drivers\downld\738593.exe C:\Windows\system32\drivers\downld\740375.exe C:\Windows\system32\drivers\downld\741562.exe C:\Windows\system32\drivers\downld\741984.exe C:\Windows\system32\drivers\downld\743703.exe C:\Windows\system32\drivers\downld\744687.exe C:\Windows\system32\drivers\downld\745390.exe C:\Windows\system32\drivers\downld\746312.exe C:\Windows\system32\drivers\downld\746843.exe C:\Windows\system32\drivers\downld\747500.exe C:\Windows\system32\drivers\downld\749515.exe C:\Windows\system32\drivers\downld\751734.exe C:\Windows\system32\drivers\downld\753875.exe C:\Windows\system32\drivers\downld\756109.exe C:\Windows\system32\drivers\downld\756531.exe C:\Windows\system32\drivers\downld\759468.exe C:\Windows\system32\drivers\downld\759812.exe C:\Windows\system32\drivers\downld\760171.exe C:\Windows\system32\drivers\downld\760234.exe C:\Windows\system32\drivers\downld\764484.exe C:\Windows\system32\drivers\downld\765421.exe C:\Windows\system32\drivers\downld\766109.exe C:\Windows\system32\drivers\downld\766937.exe C:\Windows\system32\drivers\downld\768390.exe C:\Windows\system32\drivers\downld\768984.exe C:\Windows\system32\drivers\downld\774703.exe C:\Windows\system32\drivers\downld\774843.exe C:\Windows\system32\drivers\downld\774906.exe C:\Windows\system32\drivers\downld\776859.exe C:\Windows\system32\drivers\downld\782359.exe C:\Windows\system32\drivers\downld\784125.exe C:\Windows\system32\drivers\downld\785671.exe C:\Windows\system32\drivers\downld\787546.exe C:\Windows\system32\drivers\downld\788671.exe C:\Windows\system32\drivers\downld\791203.exe C:\Windows\system32\drivers\downld\793109.exe C:\Windows\system32\drivers\downld\793218.exe C:\Windows\system32\drivers\downld\793343.exe C:\Windows\system32\drivers\downld\793953.exe C:\Windows\system32\drivers\downld\794203.exe C:\Windows\system32\drivers\downld\797140.exe C:\Windows\system32\drivers\downld\800187.exe C:\Windows\system32\drivers\downld\802093.exe C:\Windows\system32\drivers\downld\802875.exe C:\Windows\system32\drivers\downld\807765.exe C:\Windows\system32\drivers\downld\808625.exe C:\Windows\system32\drivers\downld\809703.exe C:\Windows\system32\drivers\downld\812171.exe C:\Windows\system32\drivers\downld\814015.exe C:\Windows\system32\drivers\downld\814546.exe C:\Windows\system32\drivers\downld\815515.exe C:\Windows\system32\drivers\downld\816156.exe C:\Windows\system32\drivers\downld\817593.exe C:\Windows\system32\drivers\downld\819359.exe C:\Windows\system32\drivers\downld\820781.exe C:\Windows\system32\drivers\downld\821187.exe C:\Windows\system32\drivers\downld\824984.exe C:\Windows\system32\drivers\downld\827328.exe C:\Windows\system32\drivers\downld\827593.exe C:\Windows\system32\drivers\downld\828234.exe C:\Windows\system32\drivers\downld\831031.exe C:\Windows\system32\drivers\downld\832593.exe C:\Windows\system32\drivers\downld\834031.exe C:\Windows\system32\drivers\downld\834281.exe C:\Windows\system32\drivers\downld\834375.exe C:\Windows\system32\drivers\downld\834546.exe C:\Windows\system32\drivers\downld\834578.exe C:\Windows\system32\drivers\downld\836140.exe C:\Windows\system32\drivers\downld\840578.exe C:\Windows\system32\drivers\downld\842890.exe C:\Windows\system32\drivers\downld\843593.exe C:\Windows\system32\drivers\downld\846968.exe C:\Windows\system32\drivers\downld\850828.exe C:\Windows\system32\drivers\downld\855359.exe C:\Windows\system32\drivers\downld\857765.exe C:\Windows\system32\drivers\downld\859406.exe C:\Windows\system32\drivers\downld\860140.exe C:\Windows\system32\drivers\downld\860171.exe C:\Windows\system32\drivers\downld\861125.exe C:\Windows\system32\drivers\downld\861890.exe C:\Windows\system32\drivers\downld\864812.exe C:\Windows\system32\drivers\downld\869187.exe C:\Windows\system32\drivers\downld\871531.exe C:\Windows\system32\drivers\downld\873062.exe C:\Windows\system32\drivers\downld\877015.exe C:\Windows\system32\drivers\downld\882218.exe C:\Windows\system32\drivers\downld\883812.exe C:\Windows\system32\drivers\downld\890328.exe C:\Windows\system32\drivers\downld\890953.exe C:\Windows\system32\drivers\downld\893937.exe C:\Windows\system32\drivers\downld\899390.exe C:\Windows\system32\drivers\downld\900468.exe C:\Windows\system32\drivers\downld\900984.exe C:\Windows\system32\drivers\downld\907593.exe C:\Windows\system32\drivers\downld\907640.exe C:\Windows\system32\drivers\downld\911703.exe C:\Windows\system32\drivers\downld\911781.exe C:\Windows\system32\drivers\downld\925312.exe C:\Windows\system32\drivers\downld\927187.exe C:\Windows\system32\drivers\downld\930156.exe C:\Windows\system32\drivers\downld\934031.exe C:\Windows\system32\drivers\downld\946859.exe C:\Windows\system32\drivers\downld\949421.exe C:\Windows\system32\drivers\downld\950812.exe C:\Windows\system32\drivers\downld\953078.exe C:\Windows\system32\drivers\downld\956953.exe C:\Windows\system32\drivers\downld\961187.exe C:\Windows\system32\drivers\downld\961218.exe C:\Windows\system32\drivers\downld\973218.exe C:\Windows\system32\drivers\downld\981859.exe C:\Windows\system32\drivers\downld\982171.exe C:\Windows\system32\drivers\downld\982203.exe C:\Windows\system32\drivers\downld\985359.exe C:\Windows\system32\drivers\downld\990031.exe C:\Windows\system32\drivers\downld\990468.exe C:\Windows\system32\x64 . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_SROSA ((((((((((((((((((((((( Ficheiros criados de 2008-04-12 to 2008-05-12 )))))))))))))))))))))))))))))))) . 2008-05-11 23:28 . 2008-05-11 23:38 <DIR> d-------- C:\Users\Andreh Alves\.housecall6.6 2008-05-11 12:32 . 2008-05-11 12:32 <DIR> d-------- C:\Program Files\CCleaner 2008-05-08 17:50 . 2008-05-08 17:51 <DIR> d-------- C:\Program Files\Windows Live Safety Center 2008-04-26 13:51 . 2008-04-26 13:51 <DIR> d-------- C:\Program Files\Microsoft Silverlight 2008-04-25 11:43 . 2008-04-25 11:43 <DIR> d-------- C:\Program Files\MSXML 4.0 2008-04-25 11:41 . 2008-02-21 01:42 1,831,424 --a------ C:\Windows\System32\inetcpl.cpl 2008-04-25 11:41 . 2008-02-21 01:43 826,368 --a------ C:\Windows\System32\wininet.dll 2008-04-25 11:39 . 2008-02-21 01:43 296,448 --a------ C:\Windows\System32\gdi32.dll 2008-04-25 11:39 . 2007-12-16 08:42 83,968 --a------ C:\Windows\System32\dnsrslvr.dll 2008-04-25 11:39 . 2007-12-16 08:41 24,576 --a------ C:\Windows\System32\dnscacheugc.exe 2008-04-16 14:58 . 2008-04-16 14:58 55,596 --a------ C:\Windows\System32\AnalFTP2.exe 2008-04-15 11:42 . 2008-04-15 11:42 <DIR> d-------- C:\Windows\Sun . ((((((((((((((((((((((((((((((((((((( Relat¢rio Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-04-26 16:51 --------- d-----w C:\Program Files\Windows Mail 2008-04-04 20:58 --------- d-----w C:\Program Files\NeroInstall.bak 2008-04-04 20:53 --------- d-----w C:\Users\ANDREH~1\AppData\Roaming\Nero 2008-04-04 20:53 --------- d-----w C:\Users\Andreh Alves\AppData\Roaming\Nero 2008-04-04 20:50 --------- d-----w C:\Program Files\Common Files\Nero 2008-04-04 20:47 --------- d-----w C:\Program Files\Nero 2008-04-04 20:47 --------- d-----w C:\PROGRA~2\Nero 2008-04-03 20:17 --------- d-----w C:\PROGRA~2\TEMP 2008-04-01 13:42 --------- d-----w C:\Program Files\Red Storm Entertainment 2008-02-28 20:38 972,072 ----a-w C:\Windows\UNNeroMediaHome.exe 2008-02-26 19:14 972,072 ----a-w C:\Windows\UNRecode.exe 2008-02-21 04:43 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll 2008-02-17 18:40 52,968 ----a-w C:\Users\ANDREH~1\AppData\Roaming\GDIPFONTCACHEV1.DAT 2008-02-17 18:40 52,968 ----a-w C:\Users\Andreh Alves\AppData\Roaming\GDIPFONTCACHEV1.DAT 2008-02-14 13:20 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll 2008-02-14 13:20 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.dll 2008-02-14 13:20 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll 2008-02-14 13:20 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.dll 2008-02-14 13:20 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll 2008-02-09 20:43 174 --sha-w C:\Program Files\desktop.ini . ------- Sigcheck ------- . (((((((((((((((((((((((((( Pontos de Carregamento do Registro ))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Nota* entradas vazias & leg¡timas por defeito nÆo sÆo mostradas. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 10:34 5724184] "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" [2008-02-28 17:07 1828136] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-07-23 17:06 1006264] "SMSERIAL"="C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe" [2007-01-29 18:22 638976] "RtHDVCpl"="RtHDVCpl.exe" [2007-10-11 10:53 4702208 C:\Windows\RtHDVCpl.exe] "Cmiboot"="C:\Windows\cmiboot.exe" [2007-02-12 14:08 65536] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 21:16 39792] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784] "IgfxTray"="C:\Windows\system32\igfxtray.exe" [2008-01-02 17:07 141848] "HotKeysCmds"="C:\Windows\system32\hkcmd.exe" [2008-01-02 17:06 166424] "Persistence"="C:\Windows\system32\igfxpers.exe" [2008-01-02 17:07 133656] "NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2008-02-18 16:29 2221352] C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Startup\ Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE [2001-02-13 03:01:04 83360] WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE [2008-02-11 10:28:11 389120] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoDFSTab"= 1 (0x1) [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer] "NoDFSTab"= 1 (0x1) [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2300546980-345995662-398409026-1000] "EnableNotificationsRef"=dword:00000004 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules] "{1858B547-FCD4-42F7-A6AC-8811D2B9CCA3}"= Profile=Private|C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone) "TCP Query User{F367AD2F-FB30-4E15-B0B9-872022F03E34}C:\\program files\\internet explorer\\iexplore.exe"= UDP:C:\program files\internet explorer\iexplore.exe:Internet Explorer "UDP Query User{7830FDAA-FEBC-4906-9BB6-21E77EDE5A42}C:\\program files\\internet explorer\\iexplore.exe"= TCP:C:\program files\internet explorer\iexplore.exe:Internet Explorer "{37E4A175-F1E1-47DC-B8D6-1BEEF41891AD}"= Disabled:C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone) "TCP Query User{9B200E36-E91D-49E7-A4E5-0655E8E3BACA}C:\\program files\\emule\\emule.exe"= UDP:C:\program files\emule\emule.exe:eMule "UDP Query User{8D6DD616-5936-4CB2-93FF-B00692B8EFC7}C:\\program files\\emule\\emule.exe"= TCP:C:\program files\emule\emule.exe:eMule "TCP Query User{6C5E1145-A6E6-4183-9279-5090318A6FF0}C:\\windows\\system32\\wintems.exe"= UDP:C:\windows\system32\wintems.exe:wintems "UDP Query User{F039219D-72B8-403B-B362-ED62A1306044}C:\\windows\\system32\\wintems.exe"= TCP:C:\windows\system32\wintems.exe:wintems R3 CMISTOR;CMIUCR.SYS CM320/CM220 Card Reader Driver;C:\Windows\system32\DRIVERS\cmiucr.SYS [2007-09-10 11:49] R3 igfx;igfx;C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-01-02 16:48] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 04:30] S4 O2MDRDR;O2MDRDR;C:\Windows\system32\drivers\o2media.sys [2007-04-25 16:04] S4 O2SDRDR;O2SDRDR;C:\Windows\system32\drivers\o2sd.sys [2006-11-17 02:58] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9efa158a-d73a-11dc-8199-0019dbb92031}] \shell\Auto\command - G:\MicrosoftPowerPoint.exe \shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\MicrosoftPowerPoint.exe . ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-05-11 23:53:14 Windows 6.0.6000 NTFS Procurando processos ocultos ... Procurando entradas auto inicializ veis ocultas ... Procurando ficheiros ocultos ... Varredura completada com sucesso Ficheiros ocultos: 0 ************************************************************************** . ------------------------ Other Running Processes ------------------------ . C:\Windows\System32\audiodg.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\Windows\System32\IoctlSvc.exe C:\Windows\System32\WUDFHost.exe C:\Windows\System32\conime.exe C:\Windows\CmUCREye.exe C:\Windows\System32\igfxsrvc.exe C:\Windows\System32\WerFault.exe C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe . ************************************************************************** . Tempo para conclusÆo: 2008-05-11 23:58:36 - machine was rebooted ComboFix-quarantined-files.txt 2008-05-12 02:58:09 Pre-Run: 111,304,003,584 bytes disponíveis Post-Run: 111,093,530,624 bytes dispon¡veis 845 --- E O F --- 2008-05-11 14:57:30 --------------------------------- Creio que seja isto, muito obrigado novamente. Compartilhar este post Link para o post Compartilhar em outros sites
jgarcia 1 Denunciar post Postado Maio 14, 2008 Opa a.alves, Siga as instruções: 1. Reinicie a máquina em Modo Seguro. 2. Abra o Bloco de Notas -> Copie (Control + C) e Cole (Control + V) todo o texto incluído no "Quote": File::C:\Users\Andreh Alves\AppData\Roaming\GDIPFONTCACHEV1.DAT C:\Windows\System32\AnalFTP2.exe C:\windows\system32\wintems.exe C:\Program Files\desktop.ini G:\MicrosoftPowerPoint.exe Registry:: [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9efa158a-d73a-11dc-8199-0019dbb92031}] ATENÇÃO: O script acima foi elaborado especifícamente para a infecção contida neste computador. Utilizá-lo em outra máquina poderá originar graves problemas ao usuário. 3. Salve o arquivo como CFScript.txt; 4. Tal como exemplificado na foto abaixo, arraste o arquivo CFScript.txt para o ComboFix.exe. 5. Ao término do processo a ferramenta irá gerar um log. Poste-o (C:\ComboFix.txt) em sua próxima resposta. Abraços. Compartilhar este post Link para o post Compartilhar em outros sites
a.alves 0 Denunciar post Postado Maio 14, 2008 jgarcia, fiz o indicado na sua ultima resposta mas creio que houve algum problema pois o Combofix indicou que não pode reconhecer o texto / após ler isto eu cliquei em "2" para sair do programa conforme apareceu na tela / depois o icone do programa sumiu assim como o bloco de notas e não foi gerado o log, enfim o que pode ter ocorrido ? Só por curiosidade e também gostaria de saber o por quê da realização desta segunda etapa. :thumbsup: Compartilhar este post Link para o post Compartilhar em outros sites
jgarcia 1 Denunciar post Postado Maio 15, 2008 Opa a.alves, Baixe o ComboFix novamente e repita a operação. Só por curiosidade e também gostaria de saber o por quê da realização desta segunda etapa. Ela é necessária ao complemento do processo de desinfecção. Abraços. Compartilhar este post Link para o post Compartilhar em outros sites
Mário Monteiro 179 Denunciar post Postado Junho 13, 2008 PROBLEMA RESOLVIDO! Caso o autor necessite que o tópico seja reaberto é necessário enviar uma Mensagem Privada para um Moderador com um link para o tópico. Compartilhar este post Link para o post Compartilhar em outros sites