Ir para conteúdo

POWERED BY:

Arquivado

Este tópico foi arquivado e está fechado para novas respostas.

infernal

[Resolvido!]  Comportamento estranho

Recommended Posts

Após passar o combo ComboFix.exe em meu computador foi encontrado C:\WINDOWS\system32\ntos.exe, foi feita a exclusão do arquvo porem, os arquivos do computadores apresentam suas extenções ao abrir suas respectivas pastas, o que não acontecia antes, Ex: contacts messenger.ctt, Aula.ppt

Gostaria que analizasem meu log para ver se ha alguma anormalidade do mesmo, e de outros possiveis infestações. obs: os dois logs foram feitos após a exlusão do arquivo C:\WINDOWS\system32\ntos.exe.

 

HijackThis

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 16:32:12, on 7/9/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0013)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Sygate\SPF\Smc.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

C:\Program Files\ASUS\Probe\AsusProb.exe

C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

C:\Arquivos de programas\Nero\Nero8\Nero BackItUp\NBService.exe

C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe

C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe

C:\Arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe

C:\Arquivos de programas\Atomic Alarm Clock\AtomicAlarmClock.exe

C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NMBgMonitor.exe

C:\WINDOWS\system32\ctfmon.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe

C:\Arquivos de programas\HP\Digital Imaging\bin\hpqtra08.exe

C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NMIndexingService.exe

C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NMIndexStoreSvr.exe

C:\Arquivos de programas\HP\Digital Imaging\bin\hpqSTE08.exe

C:\WINDOWS\system32\wscntfy.exe

C:\Arquivos de programas\HP\Digital Imaging\Product Assistant\bin\hprblog.exe

C:\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Arquivos de programas\IEPro\iepro.dll

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O4 - HKLM\..\Run: [ASUS Probe] "C:\Program Files\ASUS\Probe\AsusProb.exe"

O4 - HKLM\..\Run: [smcService] "C:\ARQUIV~1\Sygate\SPF\Smc.exe" -startgui

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Arquivos de programas\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [AVG7_CC] "C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe" /STARTUP

O4 - HKLM\..\Run: [NeroFilterCheck] "C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NeroCheck.exe"

O4 - HKLM\..\Run: [NBKeyScan] "C:\Arquivos de programas\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"

O4 - HKLM\..\Run: [HP Software Update] "C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe"

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe"

O4 - HKCU\..\Run: [skinClock] C:\Arquivos de programas\Atomic Alarm Clock\AtomicAlarmClock.exe

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [spyEmergency] C:\Arquivos de programas\NETGATE\Spy Emergency 2008\SpyEmergency.exe

O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe

O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')

O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Arquivos de programas\HP\Digital Imaging\bin\hpqtra08.exe

O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Arquivos de programas\IEPro\iepro.dll

O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Arquivos de programas\IEPro\iepro.dll

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll

O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\ARQUIV~1\SPYBOT~1\SDHelper.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1195931550406

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab

O17 - HKLM\System\CCS\Services\Tcpip\..\{51C7C51A-3C6E-4629-9A6C-CA87270161B0}: NameServer = 10.1.1.1

O17 - HKLM\System\CCS\Services\Tcpip\..\{DAA8FE5F-2BF2-4334-8B7A-21DC97B8118B}: NameServer = 201.10.1.2 201.10.120.3

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\ARQUIV~1\ARQUIV~1\Skype\SKYPE4~1.DLL

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Arquivos de programas\Nero\Nero8\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NMIndexingService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Arquivos de programas\Sygate\SPF\Smc.exe

 

--

End of file - 7558 bytes

 

ComboFix.exe

 

ComboFix 08-09-05.03 - Mauricio 2008-09-07 17:02:31.6 - FAT32x86

Microsoft Windows XP Professional 5.1.2600.2.1252.1.1046.18.231 [GMT -3:00]

Executando de: C:\Documents and Settings\Mauricio\Desktop\ComboFix.exe

* Criado um novo ponto de restauro

.

 

((((((((((((((((((((((( Ficheiros criados de 2008-08-07 to 2008-09-07 ))))))))))))))))))))))))))))))))

.

 

2008-09-07 16:30 . 2008-09-07 16:30 <DIR> d-------- C:\Hijack

2008-09-07 16:23 . 2008-09-07 16:23 401,720 --a------ C:\HiJackThis.exe

2008-09-07 14:35 . 2008-06-10 02:32 73,728 --a------ C:\WINDOWS\system32\javacpl.cpl

2008-09-07 14:34 . 2008-09-07 14:34 <DIR> d-------- C:\Arquivos de programas\Java

2008-09-07 13:50 . 2008-09-07 13:50 <DIR> d-------- C:\Documents and Settings\All Users\Dados de aplicativos\Spybot - Search & Destroy

2008-09-07 13:50 . 2008-09-07 13:50 <DIR> d-------- C:\Arquivos de programas\Spybot - Search & Destroy

2008-09-07 13:20 . 2008-09-07 13:20 <DIR> d-------- C:\Arquivos de programas\Arquivos comuns\Java

2008-09-07 02:00 . 2008-09-07 02:00 <DIR> d-------- C:\WINDOWS\system32\config\systemprofile\Configuraþ§es locais

2008-09-07 02:00 . 2008-09-07 02:00 <DIR> d-------- C:\Documents and Settings\NetworkService\Configuraþ§es locais

2008-09-07 02:00 . 2008-09-07 02:00 <DIR> d-------- C:\Documents and Settings\Mauricio\Configuraþ§es locais

2008-09-07 02:00 . 2008-09-07 02:00 <DIR> d-------- C:\Documents and Settings\LocalService\Configuraþ§es locais

2008-08-31 18:55 . 2008-08-31 18:55 46 --a------ C:\Documents and Settings\Mauricio\Dados de aplicativos\svighost.dll

2008-08-31 04:22 . 2008-08-31 04:22 <DIR> d-------- C:\Documents and Settings\Mauricio\Dados de aplicativos\Tibia

2008-08-31 04:13 . 2008-08-31 04:13 <DIR> d-------- C:\Arquivos de programas\CCleaner

2008-08-30 21:48 . 2008-08-30 21:48 <DIR> d-------- C:\Arquivos de programas\TibiaBR Cam Lite

2008-08-30 21:05 . 2008-08-30 21:05 <DIR> d-------- C:\Arquivos de programas\TibiaBR Interaction

2008-08-27 14:29 . 2008-08-27 14:30 98 --a------ C:\WINDOWS\my.ini

2008-08-24 18:12 . 2008-08-24 18:12 <DIR> d-------- C:\Documents and Settings\Mauricio\Dados de aplicativos\Remere's Map Editor

2008-08-24 18:10 . 2008-08-24 18:10 <DIR> d-------- C:\Arquivos de programas\Remere's Map Editor

2008-08-24 17:44 . 2008-08-24 17:44 <DIR> d-------- C:\Documents and Settings\Mauricio\Dados de aplicativos\sqlitestudio

2008-08-23 18:32 . 2008-08-23 18:32 <DIR> d-------- C:\Arquivos de programas\Asprate

2008-08-23 18:24 . 2008-08-23 18:24 <DIR> d-------- C:\Documents and Settings\Mauricio\Dados de aplicativos\MiniDm

2008-08-23 16:32 . 2008-08-23 16:32 <DIR> d-------- C:\Documents and Settings\Mauricio\Dados de aplicativos\IEPro

2008-08-23 16:32 . 2008-08-23 16:32 <DIR> d-------- C:\Arquivos de programas\IEPro

2008-08-09 15:21 . 2008-08-09 15:21 38 --a------ C:\WINDOWS\AviSplitter.INI

2008-08-07 15:11 . 2008-08-07 15:11 <DIR> d-------- C:\Arquivos de programas\Tibia 8.22

 

.

((((((((((((((((((((((((((((((((((((( Relatório Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2008-09-07 17:12 12,367,481 ----a-w C:\AVG7QT.DAT

2008-08-01 03:42 --------- d-----w C:\Arquivos de programas\MessengerDiscovery

2008-07-31 23:15 --------- d-----w C:\Arquivos de programas\KYE

2008-07-15 01:53 --------- d-----w C:\Arquivos de programas\Enlight

2002-06-24 18:46 3,360 ----a-r C:\WINDOWS\inf\OTHER\cmiainfo.sys

.

 

((((((((((((((((((((((((((((( snapshot@2008-08-31_ 3.43.30.78 )))))))))))))))))))))))))))))))))))))))))

.

+ 2008-06-10 04:21:02 135,168 ----a-w C:\WINDOWS\system32\java.exe

+ 2008-06-10 04:21:04 135,168 ----a-w C:\WINDOWS\system32\javaw.exe

+ 2008-06-10 05:32:34 139,264 ----a-w C:\WINDOWS\system32\javaws.exe

.

(((((((((((((((((((((((((( Pontos de Carregamento do Registro )))))))))))))))))))))))))))))))))))))))

.

.

*Nota* entradas vazias & legítimas por defeito não são mostradas.

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"SkinClock"="C:\Arquivos de programas\Atomic Alarm Clock\AtomicAlarmClock.exe" [2007-05-15 568320]

"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NMBgMonitor.exe" [2007-10-23 202024]

"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 15360]

"SpybotSD TeaTimer"="C:\Arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe" [2008-08-18 1832272]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ASUS Probe"="C:\Program Files\ASUS\Probe\AsusProb.exe" [2001-12-17 617984]

"SmcService"="C:\ARQUIV~1\Sygate\SPF\Smc.exe" [2003-01-21 2015303]

"Adobe Reader Speed Launcher"="C:\Arquivos de programas\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 40048]

"AVG7_CC"="C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe" [2008-04-20 579584]

"NeroFilterCheck"="C:\Arquivos de programas\Arquivos comuns\Nero\Lib\NeroCheck.exe" [2007-03-01 153136]

"NBKeyScan"="C:\Arquivos de programas\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2007-09-20 1836328]

"HP Software Update"="C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe" [2005-05-11 49152]

"SunJavaUpdateSched"="C:\Arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]

 

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 15360]

"AVG7_Run"="C:\ARQUIV~1\Grisoft\AVG7\avgw.exe" [2007-11-25 219136]

 

C:\Documents and Settings\All Users\Menu Iniciar\Programas\Inicializar\

HP Digital Imaging Monitor.lnk - C:\Arquivos de programas\HP\Digital Imaging\bin\hpqtra08.exe [2005-05-11 282624]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]

"vidc.ffds"= ffdshow.ax

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Utility Tray.lnk]

path=C:\Documents and Settings\All Users\Menu Iniciar\Programas\Inicializar\Utility Tray.lnk

backup=C:\WINDOWS\pss\Utility Tray.lnkCommon Startup

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SiSUSBRG]

-ra------ 2002-07-12 08:15 106496 C:\WINDOWS\SiSUSBrg.exe

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]

"EnableFirewall"= 0 (0x0)

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"C:\\Arquivos de programas\\Windows Live\\Messenger\\msnmsgr.exe"=

"C:\\Arquivos de programas\\Windows Live\\Messenger\\livecall.exe"=

"C:\\Arquivos de programas\\Soulseek\\slsk.exe"=

"C:\\Arquivos de programas\\uTorrent\\uTorrent.exe"=

"C:\\Arquivos de programas\\IEPro\\MiniDM.exe"=

"C:\\Arquivos de programas\\Skype\\Phone\\Skype.exe"=

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"3389:TCP"= 3389:TCP:@xpsp2res.dll,-22009

 

S3 GNCT511;Genius VideoCAM NB;C:\WINDOWS\system32\DRIVERS\gnct511.sys [2002-11-14 229376]

.

- - - - ORFAOS REMOVIDOS - - - -

 

HKCU-Run-SpyEmergency - C:\Arquivos de programas\NETGATE\Spy Emergency 2008\SpyEmergency.exe

 

 

.

------- Ccan Suplementar -------

.

FireFox -: Profile - C:\Documents and Settings\Mauricio\Dados de aplicativos\Mozilla\Firefox\Profiles\76q1pfbm.default\

FireFox -: prefs.js - STARTUP.HOMEPAGE -

.

 

**************************************************************************

 

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2008-09-07 17:05:26

Windows 5.1.2600 Service Pack 2 FAT NTAPI

 

Procurando processos ocultos ...

 

Procurando entradas auto inicializáveis ocultas ...

 

Procurando ficheiros ocultos ...

 

Varredura completada com sucesso

Ficheiros ocultos: 0

 

**************************************************************************

.

Tempo para conclusão: 2008-09-07 17:06:04

ComboFix-quarantined-files.txt 2008-09-07 20:06:02

ComboFix4.txt 2008-09-07 05:00:24

ComboFix5.txt 2008-09-07 20:01:50

ComboFix3.txt 2008-09-07 05:05:22

ComboFix2.txt 2008-09-07 06:06:38

 

Pre-Run: 1,022,083,072 bytes disponíveis

Post-Run: 1,047,445,504 bytes disponíveis

 

120 --- E O F --- 2007-11-24 22:43:22

 

 

Desde já, obrigado!

Compartilhar este post


Link para o post
Compartilhar em outros sites

Opa infernal,

 

Para resolver o problema citado basta seguir as instruções abaixo:

 

Vá em Iniciar >> Meu Computador >> clique sobre o menu Ferramentas >> Opções de Pasta >> selecione a guia Visualização >> marque a opção "Esconder extensões para tipos de arquivo conhecidos", e assim todos os arquivos passarão a ser mostrados sem a devida extensão.

 

Abraços.

Compartilhar este post


Link para o post
Compartilhar em outros sites
Obrigado!

Sobre os logs, estão limpos?

O único arquivo suspeito é C:\WINDOWS\my.ini.

 

Submeta-o ao site da Jotti e retorne com o resultado.

 

Abraços.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Service load: 0% 100%

 

File: my.ini

Status: OK(Note: file has been scanned before. Therefore, this file's scan results will not be stored in the database)

MD5: a76a25ee7022fe60eb164a579f6e4a06

Packers detected: -

 

Scanner results

Scan taken on 11 Sep 2008 16:27:34 (GMT)

A-Squared Found nothing

AntiVir Found nothing

ArcaVir Found nothing

Avast Found nothing

AVG Antivirus Found nothing

BitDefender Found nothing

ClamAV Found nothing

CPsecure Found nothing

Dr.Web Found nothing

F-Prot Antivirus Found nothing

F-Secure Anti-Virus Found nothing

Ikarus Found nothing

Kaspersky Anti-Virus Found nothing

NOD32 Found nothing

Norman Virus Control Found nothing

Panda Antivirus Found nothing

Sophos Antivirus Found nothing

VirusBuster Found nothing

VBA32 Found nothing

Compartilhar este post


Link para o post
Compartilhar em outros sites

Opa infernal,

 

O resultado (Jotti) corrobora a minha avaliação inicial: seu log está limpo. :thumbsup:

 

Abraços.

Compartilhar este post


Link para o post
Compartilhar em outros sites

PROBLEMA RESOLVIDO!

 

Caso o autor necessite que o tópico seja reaberto basta enviar uma Mensagem Privada para um Moderador com um link para o tópico.

Compartilhar este post


Link para o post
Compartilhar em outros sites

×

Informação importante

Ao usar o fórum, você concorda com nossos Termos e condições.