Ir para conteúdo

POWERED BY:

Arquivado

Este tópico foi arquivado e está fechado para novas respostas.

Victorine

[Arquivado] Estou com Problemas!

Recommended Posts

Pessoal, boa noite!

 

Bem, estou postando aqui pois mais uma vez preciso da ajuda de vocês.

 

Nas últimas duas semanas o meu computador esteve sem antivírus, e devido a isso eu acredito que partes do sistema ficou comprometida. Eu utilizei o Dr. Web Cure It para fazer uma limpeza no sistema, mas como provavelmente o sistema estava muito infectado, muitos arquivos foram deletados. Agora eu não consigo mais ativar o firewall, e consequentemente não estou conseguindo refazer minha conexão com a internet pois ela também acabou sendo excluída com a limpeza, sendo que toda vez que eu tento iniciar o firewall do windows no services.msc, o sistema acusa o seguinte erro:

 

Não foi possível iniciar o serviço Firewall do Windows/Compartilhamento de Conexão com a Internet (ICS) em Computador Local.

 

Erro 2: O sistema não consegue localizar o arquivo especificao.

 

Diante de tudo isto, gostaria que alguém me ajudasse, por favor. Desde já agradeço pela atenção e fico no aguardo de respostas.

 

Obrigado!!!!

Compartilhar este post


Link para o post
Compartilhar em outros sites

Desculpe-me Silas por ter quebrado a regra Nº 2. Bem, o log do HijackThis está logo abaixo. Eu peço que me ajude pois o meu computador está muito infectado, a ponto de estar fazendo log off sozinho. Eu não sei se isto é problema de aquecimento ou se é vírus mesmo. Desde já obrigado pela atenção.

 

 

Logfile of HijackThis v1.99.1

Scan saved at 02:11:02, on 31/3/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

D:\A-SQUARED FREE\a2service.exe

C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe

C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBGuard.EXE

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\mstd.exe

C:\WINDOWS\system32\HPZipm12.exe

C:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\slserv.exe

C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe

C:\WINDOWS\system32\svchost.exe

C:\ARQUIV~1\AVG\AVG8\avgrsx.exe

C:\WINDOWS\system32\svchost.exe

C:\ARQUIV~1\AVG\AVG8\avgemc.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBServer.exe

C:\WINDOWS\explorer.exe

C:\Arquivos de programas\USB Disk Security\USBGuard.exe

C:\ARQUIV~1\AVG\AVG8\avgtray.exe

C:\Arquivos de programas\Java\jre6\bin\jusched.exe

C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

c:\24.tmp

D:\Programas\Programas de Segurança\Hijackthis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R3 - URLSearchHook: Barra de Ferramentas do Yahoo! com bloqueador de pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Arquivos de programas\AVG\AVG8\avgssie.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Barra de Ferramentas do Yahoo! com bloqueador de pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O4 - HKLM\..\Run: [uSB Antivirus] C:\Arquivos de programas\USB Disk Security\USBGuard.exe

O4 - HKLM\..\Run: [AVG8_TRAY] C:\ARQUIV~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe" /background

O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Arquivos de programas\Yahoo!\Common\yinsthelper.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Arquivos de programas\AVG\AVG8\avgpp.dll

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Arquivos de programas\Windows Live\Mail\mailcomm.dll

O20 - AppInit_DLLs: avgrsstx.dll

O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)

O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - D:\A-SQUARED FREE\a2service.exe

O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgemc.exe

O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: InterbaseGuardian - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBGuard.EXE

O23 - Service: InterbaseServer - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBServer.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Arquivos de programas\Java\jre6\bin\jqs.exe" -service -config "C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe

Compartilhar este post


Link para o post
Compartilhar em outros sites

1° Passo: Baixe e execute o HostsXpert.

 

→Execute o HostsXpert, por meio do arquivo HostsXpert.exe,

→clique em Restore Microsoft's Hosts File e aperte em OK.

→Depois disso, finalize o programa.

 

2º Passo

Baixe o Malwarebytes Anti-Malware

 

 

* Inicie a instalação clique em "mbam-setup.exe";

* Marque "Atualizar Malwarebytes Anti-Malware" e "Executar Malwarebytes Anti-Malware", e clique em concluir.

* Marque "Verificação Rápida" e depois clique em Verificar.

* Quando o scan terminar, clique em Ok e em "Mostrar Resultados" para ver o log;

* Se algo for detectado, veja se tudo está marcado e clique em "Remover";

* O log é automaticamente gravado e pode ser consultado clicando em "Logs" do menu principal;

* Copie e cole esse log, juntamente com o novo log do hijacktihis .

Aguado o retorno.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá Silas!

 

Bem, eu fiz o que você disse pra fazer e abaixo estão os logs do HijackThis e do Malwarebytes. Com relação ao Malwarebytes, eu estou postando dois logs, porque primeiramente eu fiz uma verificação rápida, e o prgrama achou, se eu não me engano, 29 infecções, e logo após eu fiz uma verificação completa e o programa achou mais 13 infecções. Então eu estou postando os dois logs. Fico aguardando respostas. Abraços!!!

 

 

 

Logfile of HijackThis v1.99.1

Scan saved at 23:05:47, on 31/3/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

D:\A-SQUARED FREE\a2service.exe

C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe

C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBGuard.EXE

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\mstd.exe

C:\WINDOWS\system32\HPZipm12.exe

C:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\slserv.exe

C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe

C:\WINDOWS\system32\svchost.exe

C:\ARQUIV~1\AVG\AVG8\avgrsx.exe

C:\ARQUIV~1\AVG\AVG8\avgemc.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBServer.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\explorer.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

D:\Programas\Programas de Segurança\Hijackthis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R3 - URLSearchHook: Barra de Ferramentas do Yahoo! com bloqueador de pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Arquivos de programas\AVG\AVG8\avgssie.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Barra de Ferramentas do Yahoo! com bloqueador de pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O4 - HKLM\..\Run: [uSB Antivirus] C:\Arquivos de programas\USB Disk Security\USBGuard.exe

O4 - HKLM\..\Run: [AVG8_TRAY] C:\ARQUIV~1\AVG\AVG8\avgtray.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background

O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Arquivos de programas\Yahoo!\Common\yinsthelper.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Arquivos de programas\AVG\AVG8\avgpp.dll

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Arquivos de programas\Windows Live\Mail\mailcomm.dll

O20 - AppInit_DLLs: avgrsstx.dll

O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)

O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - D:\A-SQUARED FREE\a2service.exe

O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgemc.exe

O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe

O23 - Service: InterbaseGuardian - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBGuard.EXE

O23 - Service: InterbaseServer - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBServer.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Arquivos de programas\Java\jre6\bin\jqs.exe" -service -config "C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe

 

 

 

1º Log do Malwarebytes:

 

 

Malwarebytes' Anti-Malware 1.35

Versão do banco de dados: 1926

Windows 5.1.2600 Service Pack 3

 

31/3/2009 18:57:16

mbam-log-2009-03-31 (18-57-16).txt

 

Tipo de Verificação: Rápida

Objetos verificados: 64282

Tempo decorrido: 59 second(s)

 

Processos da Memória infectados: 0

Módulos de Memória Infectados: 0

Chaves do Registro infectadas: 3

Valores do Registro infectados: 5

Ítens do Registro infectados: 1

Pastas infectadas: 0

Arquivos infectados: 21

 

Processos da Memória infectados:

(Nenhum ítem malicioso foi detectado)

 

Módulos de Memória Infectados:

(Nenhum ítem malicioso foi detectado)

 

Chaves do Registro infectadas:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\defaultlib (Spyware.Passwords) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\softyinforwow1 (Trojan.PWS) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\OKME\softyinforwow1 (Trojan.PWS) -> Quarantined and deleted successfully.

 

Valores do Registro infectados:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\el (Malware.trace) -> Quarantined and deleted successfully.

 

Ítens do Registro infectados:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

 

Pastas infectadas:

(Nenhum ítem malicioso foi detectado)

 

Arquivos infectados:

C:\WINDOWS\Temp\VRT4.tmp (Trojan.Downloader) -> Quarantined and deleted successfully.

C:\WINDOWS\Temp\www.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.

C:\WINDOWS\Temp\fff.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\reader_s.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\3.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\4.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\5.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\6.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\7.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\8.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\9.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\A.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\B.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\C.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\D.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\E.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\F.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\Documents and Settings\jose martins\reader_s.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\opnzqks.dll (Trojan.Vundo) -> Quarantined and deleted successfully.

C:\31.tmp (Heuristics.Malware) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\regsvr32.exe (Malware.trace) -> Quarantined and deleted successfully.

 

 

2º Log do Malwarebytes:

 

Malwarebytes' Anti-Malware 1.35

Versão do banco de dados: 1926

Windows 5.1.2600 Service Pack 3

 

31/3/2009 21:08:55

mbam-log-2009-03-31 (21-08-55).txt

 

Tipo de Verificação: Completa (A:\|C:\|D:\|E:\|F:\|G:\|)

Objetos verificados: 241041

Tempo decorrido: 1 hour(s), 56 minute(s), 32 second(s)

 

Processos da Memória infectados: 1

Módulos de Memória Infectados: 0

Chaves do Registro infectadas: 3

Valores do Registro infectados: 4

Ítens do Registro infectados: 1

Pastas infectadas: 0

Arquivos infectados: 4

 

Processos da Memória infectados:

C:\WINDOWS\services.exe (Backdoor.Bot) -> Failed to unload process.

 

Módulos de Memória Infectados:

(Nenhum ítem malicioso foi detectado)

 

Chaves do Registro infectadas:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\defaultlib (Spyware.Passwords) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\softyinforwow1 (Trojan.PWS) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\OKME\softyinforwow1 (Trojan.PWS) -> Quarantined and deleted successfully.

 

Valores do Registro infectados:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\services (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\services (Trojan.Agent) -> Quarantined and deleted successfully.

 

Ítens do Registro infectados:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

 

Pastas infectadas:

(Nenhum ítem malicioso foi detectado)

 

Arquivos infectados:

C:\WINDOWS\services.exe (Trojan.FakeAlert.H) -> Delete on reboot.

C:\WINDOWS\system32\9.tmp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\Documents and Settings\jose martins\reader_s.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\31.tmp (Heuristics.Malware) -> Quarantined and deleted successfully.

Compartilhar este post


Link para o post
Compartilhar em outros sites

1. Baixe o Kaspersky Virus Removal Tool.

 

2. O arquivo possui aproximadamente 32 Mb, mas o resultado compensará o trabalho.

 

3. Reinicie a máquina em Modo Seguro.

 

4. Execute a ferramenta dando duplo-clique sobre o arquivo baixado.

 

5. Abrir-se-á a seguinte janela:

Kaspersky-Virus-Removal-Tool_1.png

 

6. Marque os diretórios que deseja varrer (é melhor marcar todos).

 

7. Clique em Scan e aguarde o término do processo.

 

8. Terminada a varredura, retorne com o resultado.

 

Aguardo retorno

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá Silas!

 

Eu fiz o que você disse. Só pra você ter uma ideia, foram encontrados mais de 4000 arquivos infectados, e já foram eliminados. Mas o que aconteceu foi o seguinte: quando o computador foi reiniciado, o explorer não apareceu mais, ou seja, o computador consegue entrar no windows mas o windows explorer não é carregado, e quando eu tentei iniciar uma nova tarefa, no taskmgr, colocando explorer.exe, o sistema acusa um erro, dizendo que o windows explorer foi encerrado para proteger dados. Gostaria que você me dissesse o que fazer. Bem, não sei se vai ajudar, mas abaixo estou postando o log do HJT. Espero respostas. Abraço!!!

 

P.S.: Esta mensagem eu estou enviando do meu computador, só que estou logado em modo de segurança com rede, e o log do HJT também foi feito em modo de segurança com rede, pois como já eu disse logo acima, o windows explorer do modo normal não está podendo ser carregado.

 

Logfile of HijackThis v1.99.1

Scan saved at 13:50:47, on 3/4/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\csrss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

C:\WINDOWS\system32\cmd.exe

C:\WINDOWS\services.exe

C:\WINDOWS\System32\reader_s.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\TEMP\BNC.tmp

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Internet Explorer\iexplore.exe

C:\Arquivos de programas\Internet Explorer\iexplore.exe

D:\Programas\Programas de Segurança\Hijackthis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - Default URLSearchHook is missing

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Arquivos de programas\AVG\AVG8\avgssie.dll (file missing)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Barra de Ferramentas do Yahoo! com bloqueador de pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [services] C:\WINDOWS\services.exe

O4 - HKLM\..\Run: [reader_s] C:\WINDOWS\System32\reader_s.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE

O4 - Startup: is-6BF3A.lnk = C:\Documents and Settings\Administrador\Desktop\Virus Removal Tool\is-6BF3A\startup.exe

O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Arquivos de programas\Yahoo!\Common\yinsthelper.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Arquivos de programas\AVG\AVG8\avgpp.dll (file missing)

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Arquivos de programas\Windows Live\Mail\mailcomm.dll

O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)

O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - D:\A-SQUARED FREE\a2service.exe

O23 - Service: InterbaseGuardian - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBGuard.EXE

O23 - Service: InterbaseServer - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBServer.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Arquivos de programas\Java\jre6\bin\jqs.exe" -service -config "C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe

Compartilhar este post


Link para o post
Compartilhar em outros sites

1º Passo

Killbox

 

Siga as instruções abaixo:

 

Baixe o Killbox

Execute o KillBox,clique em Delete on Reboot.

Copie a lista abaixo:

C:\WINDOWS\services.exe

C:\WINDOWS\System32\reader_s.exe

C:\WINDOWS\TEMP\BNC.tmp

 

Vá ao Killbox.E clique em File > Paste from clipboard. Clique em All Files.

 

Pressione "X". Responda "NÃO" à pergunta.

 

Reinicie

o computador em Modo Seguro (após reiniciar aperte a tecla F8 repetidamente até aparecer uma tela preta em DOS e escolha Modo Seguro).

 

Execute o HijackThis, clique em Do a system scan only e selecione as linhas:

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Arquivos de programas\AVG\AVG8\avgssie.dll (file missing)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O4 - HKLM\..\Run: [services] C:\WINDOWS\services.exe

O4 - HKLM\..\Run: [reader_s] C:\WINDOWS\System32\reader_s.exe

O20 - Winlogon Notify: dimsntfy - %SystemRoot%\System32\dimsntfy.dll (file missing)

Clique em Fix Checked

Feito isso Reinicie em modo norma e verifique se o funcionamento do modo normal se normalizou.

Mesmo que ele tenha voltado (ou não a normalidade siga o passos 1e 2 até o fim, mesmo que seja no modo seguro)

 

 

 

2º Passo

 

Baixe o Norman Malware Cleaner aqui:http://superdownloads.uol.com.br/redir.cfm?softid=63672

Depois de instalado execute e adicione todas as áreas físicas e removíveis do seu pc ( ex: C: E: F: e outras) só então clique em StartScan.

Apos isso poste o log do Hijackthis,juntamente com o log do Norman

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá Silas!

 

Antes de mais nada, gostaria de lhe agradecer muito por me ajudar, mas eu acho que nós estamos andando em círculos, pois a cada vez que o sistema é scaneado por uma ferramenta diferente, uma mesma quantidade de vírus é encontrada nos mesmos arquivos. Desta vez eu vou lhe dar o relatório de erros/problemas completo. Vamos lá:

 

1º) Toda vez que eu instalo um antivírus bom, ao reiniciar o sistema, começa a ocorrer conflito na memória, aparecendo a tela azul da morte!

 

P.S.: O sistema estava até funcionando, ai eu resolvi instalar o G DATA AntiVírus versão Trial. Como eu disse acima, após a instalação, começou a ocorrer conflito na memória, só que depois de reiniciar algumas vezes o sistema, o conflito sumiu por si só. Então, após atualizar a sua base de dados, fui scanear o sistema, só que depois disso, ele matou o processo explorer.exe, e como você já sabe, toda a área de trabalho sumiu, e quando eu reiniciei o sistema, começou a ocorrer conflito na memória novamente. Sendo assim, eu só consegui reiniciar em Modo de Segurança. Dai, eu consegui excluir os arquivos do antivírus, tornando-o inativo, para poder conseguir logar em Modo Normal. Mas, quando eu logo neste modo, a área de trabalho não aparece, sendo que quando eu digito explorer.exe no taskmgr, aparece um erro, e eu só consigo a área de trabalho de volta, quando eu executo o HostsXpert e depois o comando explorer.exe.

 

 

2º) Quando eu estou em Modo Normal, de ontem até o exato momento, qualquer programa que eu tento abrir, em vez de abrir normalmente, aparece a opção abri com...

 

3º) Nenhum aplicativo do Painel de Controle está funcionando. Quando eu dô um duplo-clique em qualquer um dos aplicativos, aparece uma mensagem dizendo que o arquivo run32dll.exe não pode ser encontrado. O mesmo ocorre para o Bloco de Notas e O Word Pad.

 

4º) Como você vai ver no relatório do Norman Malware Cleaner, os arquivos estavam infectados por 6 tipos de vírus, mas a grande maioria estavam infectados por: W32/Virut.CC

 

Bem, deve haver mais algumas coisas anormais acontecendo neste meu computador. Eu gostaria que você me desce uma luz com relação a resolução de todo este temporal de problemas que já vem se arrastando por semanas. Logo abaixo, está tanto o relatório do Norman Malware Cleaner, como também o HJT. Eu quero lhe pedir desculpas pelo tamanho do texto texto e fico no aguardo de sua resposta. Obrigado. Abraços!!!!

 

 

P.S.: Os logs do Norman e do HJT estão no post logo abaixo.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Eu tive que ajustar o post, pois está muito longo e o sistema não está deixando postar. Eu postei dividido por unidades do disco.

 

Norman Malware Cleaner

Copyright © 1990 - 2009, Norman ASA. Built 2009/03/31 22:21:04

 

Norman Scanner Engine Version: 6.00.06

Nvcbin.def Version: 6.00.00, Date: 2009/03/31 22:21:04, Variants: 3077047

 

Scan started: 04/04/2009 10:23:54

 

Running pre-scan cleanup routine:

Operating System: Microsoft Windows XP Professional 5.1.2600(Safe mode with network) Service Pack 3

Logged on user: JOSEMARTINS\Administrador

 

Changed service configuration for "wuauserv" from 0x00000004 and 0x00000001 to 0x00000002 and 0xFFFFFFFF

Failed to start service "wuauserv" (0x0000043C)

 

Scanning running processes and process memory...

 

C:\WINDOWS\Explorer.EXE (Infected with W32/Virut.CC)

Terminated process

Removed registry key: HKCR\Applications\ -> Explorer.EXE

Deleted file

C:\Arquivos de programas\Internet Explorer\iexplore.exe (Infected with W32/Virut.CC)

Terminated process

Removed registry key: HKCR\Applications\ -> iexplore.exe

Deleted file

 

Number of processes/threads found: 1193

Number of processes/threads scanned: 1193

Number of processes/threads not scanned: 0

Number of infected processes/threads terminated: 2

Total scanning time: 23s

 

Scanning file system...

 

Scanning: A:\*.*

Scanning: C:\*.*

 

C:\Arquivos de programas\Arquivos comuns\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Arquivos comuns\InstallShield\Professional\RunTime\10\00\Intel32\DotNetInstaller.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\MSInfo\msinfo32.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\gsec.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\ibserver.exe (Infected with W32/Virut.CC)

Removed service: InterbaseServer

Deleted file

C:\Arquivos de programas\Candex2008\Apache-TomCat-5.5.26\bin\tomcat5w.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\CNPJ2007\START.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\CNPJ2007\UNWISE32.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\CNPJ2008\UNWISE32.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\HP\Digital Imaging\bin\hpqclpbd.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\HP\Digital Imaging\bin\hpqptc08.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\HP\Digital Imaging\{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}\hpzcdl01.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\HP\Digital Imaging\{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}\hpzglu12.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Justiça Eleitoral\Divulga2008\Divulga2008.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Outlook Express\oemig50.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Programas RFB\Receitanet Java\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Programas SRF\IRPF2005\IRPF2005.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Programas SRF\IRPF2006\IRPF2006.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\RALINK\Common\xpbridge.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\RALINK\RT6x Wireless LAN Card\Installer\WINXP\devcon.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Receita-PB\Giva\Giva2007Contribuinte\BDE\tregsvr.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\Receita-PB\Giva\Giva2008Contribuinte\Giva2008Contribuinte.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\SRE-PB\GimDigitacao\GimSREPB.exe (Infected with W32/Virut.CC)

Deleted file

C:\Arquivos de programas\WinRAR\WinRAR.exe (Infected with W32/Virut.CC)

Removed registry key: HKCR\Applications\ -> WinRAR.exe

Deleted file

C:\Contab\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

C:\Documents and Settings\Administrador\Configurações locais\Dados de aplicativos\Mozilla\Firefox\Profiles\1ih7ghb2.default\Cache\7994A78Ad01/unknown0 (Error whilst scanning file: I/O Error (0x00220005))

C:\Documents and Settings\Administrador\Configurações locais\Temporary Internet Files\Content.IE5\IPSDSHYR\drm3[1].txt (Infected with W32/Agent.MGVE)

Deleted file

C:\Documents and Settings\jose martins\Desktop\Virus Removal Tool\is-0E3SU\startup.exe (Infected with W32/Virut.CC)

Deleted file

C:\Documents and Settings\jose martins\Meus documentos\Provas\JOS+.BMP (Error opening file: Not found)

C:\Documents and Settings\jose martins\Meus documentos\Provas\PAI_M+E.BMP (Error opening file: Not found)

C:\GDRais2006\GDRais2006.exe (Infected with W32/Virut.CC)

Deleted file

C:\LinhaDefensiva\exec\md5.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000536.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000548.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000565.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000570.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000580.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000610.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000617.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000621.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000622.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000627.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000628.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000646.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000650.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000655.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000657.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000659.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000661.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000670.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000675.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000681.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP11\A0000686.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000694.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000726.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000749.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000753.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000764.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000778.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000779.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000784.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000786.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000791.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000792.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000793.scr (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000795.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000797.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000799.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000805.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000807.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000809.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000812.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000819.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000824.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000828.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000832.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000836.scr (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000844.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000850.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000852.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000857.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000860.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000864.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000870.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000876.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000878.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000879.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000880.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000881.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000886.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000890.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000894.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000904.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000905.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000906.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000908.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000910.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000911.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000916.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000921.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000922.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000923.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000924.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000927.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000933.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000935.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000938.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000939.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000940.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000942.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000946.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000950.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000951.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000953.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000954.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000958.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000960.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000961.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000963.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000965.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490\RP12\A0000967.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000970.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000973.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000975.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000980.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000981.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000984.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490\RP12\A0000988.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000996.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0000998.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001000.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001002.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001005.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001007.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001011.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001012.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001015.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001016.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0001017.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0002031.sys (Infected with W32/Agent.HHSF)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0003031.sys (Infected with W32/Agent.HHSF)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0003067.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP12\A0003127.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP14\A0005288.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015470.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015471.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015472.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015478.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015484.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015487.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015497.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015506.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015508.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015520.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015523.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015532.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015553.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015559.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015577.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015579.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015589.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015617.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015618.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015622.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015731.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015734.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015745.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015750.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015752.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015781.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015787.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015788.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015790.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015805.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015808.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015821.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015831.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015859.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015868.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015873.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015876.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015878.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015884.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015885.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015901.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015908.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015916.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015920.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015926.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015927.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015935.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015936.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015942.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015943.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015947.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015948.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015952.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015953.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015954.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015956.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015975.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015976.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015978.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015979.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015981.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015984.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015986.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015989.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015994.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016001.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016005.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016010.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016018.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016019.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016020.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016021.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016024.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016026.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016027.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016029.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016031.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016035.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016039.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016046.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016049.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016055.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016059.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016073.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016075.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016076.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016082.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016085.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016086.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016087.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016088.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016093.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016096.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016113.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016114.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016118.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016123.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016125.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016128.exe (Infected with W32/Agent.MEXE)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016129.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016130.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016134.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016138.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016147.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016156.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016157.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016158.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016165.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016167.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016168.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016175.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016178.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016192.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016199.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016203.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016204.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016207.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016208.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016213.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016214.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016217.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016228.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016233.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016235.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016237.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016238.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016244.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016246.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016250.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016254.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016258.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016259.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016262.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016274.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016275.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016278.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016282.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016283.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016286.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016287.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016289.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016293.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016296.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016298.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016304.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016306.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016313.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016315.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016318.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016323.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016325.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016326.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016334.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016335.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016338.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016340.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016343.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016348.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016355.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016356.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016357.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016358.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016363.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016365.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016368.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016370.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016375.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016381.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016384.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016392.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016394.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016395.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016397.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016400.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016401.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016402.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016403.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016404.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016405.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016411.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016416.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016420.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016422.scr (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016426.scr (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016428.scr (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016434.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016437.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016442.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016443.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016444.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016447.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016453.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016455.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016457.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016458.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016464.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016465.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016469.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016470.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016474.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016478.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016484.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016485.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016487.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016490.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016498.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016502.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016504.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016520.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016529.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017124.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0020138.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP17\A0021155.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP18\A0021209.rbf (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP18\A0021215.rbf (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP18\A0021253.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0021307.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0021316.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0021320.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0024318.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027350.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027407.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027436.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027483.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027484.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027485.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027486.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027487.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027488.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027489.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027490.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027491.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027492.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027493.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027494.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027495.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027496.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027497.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027498.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027499.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027500.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027501.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027502.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027503.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027504.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027505.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027506.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027507.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027508.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027509.EXE (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027510.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027511.exe (Infected with W32/Virut.CC)

Deleted file

C:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027512.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\IsUninst.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\regedit.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\services.ex_ (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\TASKMAN.EXE (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\Installer\{1EA84402-CD4F-4F19-AFED-C5C228259873}\ARPPRODUCTICON.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\jsc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\pchealth\helpctr\binaries\HelpHost.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\asr_fmt.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\attrib.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\bootcfg.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\bootvrfy.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\cidaemon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\cipher.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\clipbrd.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\ctfmon.exe (Infected with W32/Virut.CC)

Removed registry value: HKCU\Software\Microsoft\Windows\CurrentVersion\Run -> CTFMON.EXE = "C:\WINDOWS\system32\CTFMON.EXE"

Deleted file

C:\WINDOWS\system32\ddeshare.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllhst3g.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dvdplay.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\esentutl.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\extrac32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\fc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\find.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\findstr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\fsquirt.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\fsutil.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\gpupdate.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\grpconv.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\iexpress.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\imapi.exe (Infected with W32/Virut.CC)

Removed service: ImapiService

Deleted file

C:\WINDOWS\system32\ipconfig.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\ipsec6.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\ipxroute.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\mmc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\mqbkup.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\mqsvc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\mrinfo.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\msg.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\mshta.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\msswchx.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\napstat.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\nbtstat.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\net1.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\ntvdm.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\packager.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\ping6.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\qappsrv.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\rdsaddin.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\rdshost.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\recover.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\reg.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\regini.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\relog.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\reset.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\rexec.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\routemon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\rsm.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\rsopprov.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\rsvp.exe (Infected with W32/Virut.CC)

Removed service: RSVP

Deleted file

C:\WINDOWS\system32\rtcshare.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\savedump.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\setup.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\shadow.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\sndrec32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\spider.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\syncapp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\sysocmgr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\systeminfo.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\tcmsetup.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\tftp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\tlntadmn.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\tlntsess.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\tlntsvr.exe (Infected with W32/Virut.CC)

Removed service: TlntSvr

Deleted file

C:\WINDOWS\system32\tourstart.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\tsdiscon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\typeperf.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\userinit.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\wextract.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\wiaacmgr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\WISPTIS.EXE (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\wuauclt1.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\xcopy.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\accwiz.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\actmovie.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\arp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\at.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\calc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\cidaemon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\cintsetp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\cipher.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\cmdl32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\cmstp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\comp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\convert.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\cprofile.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ctfmon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\dmremote.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\dumprep.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\esentutl.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\eudcedit.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\evntcmd.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\evntwin.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\extrac32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\fc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\finger.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\fxssend.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\grpconv.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\helpctr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\helpsvc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\hh.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\hostname.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ie4uinit.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\iexplore.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\iexpress.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\imapi.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\inetin51.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ipsec6.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ipv6.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\label.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\logonui.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\lsass.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\magnify.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\migload.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\migwiza.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\mmc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\mobsync.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\mofcomp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\moviemk.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\mqsvc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\msconfig.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\msg.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\msiregmv.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\mspaint.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\nddeapir.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\net1.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\netsh.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\nslookup.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ntsd.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ntvdm.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\osuninst.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\packager.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\perfmon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ping.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\pintlphr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\print.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\qprocess.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rcimlby.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rcp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rdpclip.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rdsaddin.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rdshost.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\regini.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\regsvr32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\replace.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rexec.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rsmsink.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\rtcshare.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\runonce.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\sctasks.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\secedit.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\services.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\sessmgr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\setup.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\setupn.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\sfc.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\shadow.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\shmgrate.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\shrpubw.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\shutdown.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\sigverif.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\sndvol32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\spider.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\srdiag.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ssbezier.scr (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ssmyst.scr (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\ssstars.scr (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\sysinfo.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\systray.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tcmsetup.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tcpsvcs.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\telnet.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tintsetp.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tracert.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tracert6.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tsdiscon.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tsprof.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\tsshutdn.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\uploadm.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\upnpcont.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\verifier.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\vssadmin.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\wabmig.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\wbemtest.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\winhlp32.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\winver.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\wmiadap.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\wmic.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\wordpad.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\dllcache\wupdmgr.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\oobe\oobebaln.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\Restore\srdiag.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\usmt\migload.exe (Infected with W32/Virut.CC)

Deleted file

C:\WINDOWS\system32\wbem\wmiapsrv.exe (Infected with W32/Virut.CC)

Removed service: WmiApSrv

Deleted file

C:\WINDOWS\system32\wbem\wmiprvse.exe (Infected with W32/Virut.CC)

Deleted file

Compartilhar este post


Link para o post
Compartilhar em outros sites

Scanning: D:\*.*

 

D:\Bkp\Arquivos de programas\Candex2008\Apache-TomCat-5.5.26\bin\tomcat5w.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\HP\Digital Imaging\{5B79CFD1-6845-4158-9D7D-6BE89DF2C135}\common\drivers\com_os\hpztbx12.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Programas RFB\IRPF2008\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Programas SRF\IRPF2003\BACKUP\IRPF2003.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Programas SRF\IRPF2004\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Programas SRF\IRPF2005\IRPF2005.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Programas SRF\IRPF2006\IRPF2006.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Programas SRF\IRPF2006\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Receita-PB\Giva\Giva\Giva Contribuinte 2.0\givacon.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Receita-PB\Giva\Giva2007Contribuinte\Giva2007Contribuinte.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\Receita-PB\Giva\Giva2008Contribuinte\Giva2008Contribuinte.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\SRE-PB\GimDigitacao\GimSREPB.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Arquivos de programas\WinRAR\RarExtLoader.exe (Infected with W32/Virut.CC)

Deleted file

D:\Bkp\Documents and Settings\José Martins\Meus documentos\Provas\JOS+.BMP (Error opening file: Not found)

D:\Bkp\Documents and Settings\José Martins\Meus documentos\Provas\PAI_M+E.BMP (Error opening file: Not found)

D:\Computação\Conteúdo Hacker\WiFi Tools\putty.exe (Infected with W32/Virut.CC)

Deleted file

D:\Computação\Outros Documentos\me0608.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Audio\spuAndy.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Audio\spuEternal141.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Audio\spuPeopsDSound.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Audio\spuPeteDSound.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Bios\SCPH1001.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Bios\SCPH5500.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Bios\SCPH7001.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Bios\SCPH7502.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\CD\cdrmooby2.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\CD\cdrPeops.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\CD\cdrSaPu.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\CD\cdrXeven.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Controle - Teclado\padHellMM.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Controle - Teclado\padNRagePlugin.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Controle - Teclado\padSeguDIJoy.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Consoles\Playstation\Emulador - PSOne\Zipados\Controle - Teclado\padSeguDIKey.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Dev-Cpp\bin\make.exe (Infected with W32/Virut.CC)

Deleted file

D:\Downloads\uefa_champions_league_patch.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Engenharia Elétrica\Apostilas\Outras Apostilas\Como resolver o cubo magico.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Engenharia Elétrica\Leite\Circuitos Logicos\circuitos\programas\Digital.exe (Infected with W32/Virut.CC)

Deleted file

D:\Engenharia Elétrica\Outros Documentos\me0608.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Laércio\Arquivos de Programas\CAIXA\SEFIP\Sefip.exe (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Arquivos de Programas\CAIXA\SEFIP\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Arquivos de Programas\GDRais1999\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Arquivos de Programas\GDRais2005\GDRais2005.exe (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Arquivos de Programas\Programas RFB\IRPF2008\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Arquivos de Programas\Programas SRF\IRPF2004\IRPF2004.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Arquivos de Programas\SPCP\SPCP_Cadastro.exe (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Documents and Settings\Windows XP\Meus documentos\Provas\JOS+.BMP (Error opening file: Not found)

D:\Laércio\Documents and Settings\Windows XP\Meus documentos\Provas\PAI_M+E.BMP (Error opening file: Not found)

D:\Laércio\Win98\BACKUP\GDRais1999\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\CertCli\CertCli.exe (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\CNPJ2003\START.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\EmissorRais\EmisRais.exe (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\GDRais2001\GDRais2001.exe (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\GDRais2006\UNWISE.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\Programas SRF\IRPF2005\IRPF2005.EXE (Infected with W32/Virut.CC)

Deleted file

D:\Laércio\Win98\SfNetCli\HOST32.EXE (Infected with W32/Virut.CC)

Deleted file

D:\My Shared Folder\curso de hacker modulo 4 xp cd 1.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\My Shared Folder\imtoo mpeg encoder (avi & mpeg to 3gp & mp4) + serial by some(rimas).rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\My Shared Folder\kaspersky anti-virus v7 0 1 325 final + key.rar/RR (Error whilst scanning file: I/O Error (0x00000000))

D:\My Shared Folder\todos los juegos java para movil (nokia, samsung, sharp , symbian) by jesules rec.rar/TODOS LOS JUEGOS JAVA PARA MOVIL\S\Snails\Snails.sis (Error whilst scanning file: I/O Error (0x00000000))

D:\My Shared Folder\todos los juegos java para movil (nokia, samsung, sharp , symbian) by jesules rec.rar/TODOS LOS JUEGOS JAVA PARA MOVIL\T\Tomb Raider 2 - Quest For Cinnabar\TombRaider2QuestforCinnabar.jar/com/nokia/mid/sound/SoundListener.class (Error whilst scanning file: I/O Error (0x00220005))

D:\Programas\Alcohol 1.9.5 3105\Alcohol.120.v1.9.5.Build.3105.-.Trial_CRK-FFF.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Programas\Alcohol 1.9.5 3105\setup.exe (Infected with W32/Virut.CC)

Deleted file

D:\Programas\Antivírus\Bitdefender\BitDefender Total Security 2009\BITDEFENDER TOTAL SECURITY - PT BR\Patch.exe (Infected with W32/Virut.CC)

Deleted file

D:\Programas\Antivírus\Kaspersky\Keys\KAV_KIS567.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

D:\Programas\Contabilidade - Programas de Instalação\SFP.exe (Infected with W32/Virut.CC)

Deleted file

D:\Programas\Programas de Segurança\HostsXpert\HostsXpert\HostsXpert.exe (Infected with W32/Virut.CC)

Deleted file

D:\Python 2.5\pythonw.exe (Infected with W32/Virut.CC)

Deleted file

D:\Python25\pythonw.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP1\A0000014.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0000021.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0000045.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0000060.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0003060.exe (Infected with OnLineGames.IAPV)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000007.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000062.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000135.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000151.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000165.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005505.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005520.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005533.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005546.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005559.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0006561.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0006580.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0006593.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0007597.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0007612.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0009615.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010628.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010638.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010830.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010956.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010975.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010979.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011024.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011161.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011166.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011172.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011186.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011199.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0011229.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0012417.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0013571.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0014748.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0015628.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0015639.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0015831.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0015957.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0015976.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0015980.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016025.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016070.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016075.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016081.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016095.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016108.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0016138.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0017322.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0018476.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019628.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019644.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019836.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019962.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019981.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019985.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020030.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020075.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020080.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020086.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020100.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020113.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0020143.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0021327.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0022481.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0023332.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0023628.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0024635.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP2\A0000290.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP3\A0000297.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP3\A0001172.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP4\A0001182.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP4\A0001200.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP5\A0001318.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0001335.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0002198.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0003203.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0003299.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0003307.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0003323.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0004322.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0004340.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0004360.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP8\A0004478.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP8\A0004495.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP9\A0004501.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP9\A0005496.inf (Infected with BAT/AutoRun.BI)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015490.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0015491.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016716.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016724.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016726.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016727.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016729.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016730.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016763.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016767.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016769.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016780.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016793.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016908.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016910.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016911.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016959.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016960.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016968.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016978.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0016992.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017008.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017015.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017019.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017024.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017029.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017040.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017057.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017085.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017094.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017095.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017096.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP16\A0017115.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0021317.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027716.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027717.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027718.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027719.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027720.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027721.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027722.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027723.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027724.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027725.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027726.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027727.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027728.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027729.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027730.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027731.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027732.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027733.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027734.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027735.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027736.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027737.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027738.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027739.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027740.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027741.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027742.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027743.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027744.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027745.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027746.EXE (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027747.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027748.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027749.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027750.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027751.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027752.exe (Infected with W32/Virut.CC)

Deleted file

D:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP6\A0000063.exe (Infected with W32/Virut.CC)

Deleted file

D:\The KMPlayer\Skins\KMP_Modern_Skin.ksf/Min_mini.bmp (Error whilst scanning file: I/O Error (0x00220005))

 

Scanning: E:\*.*

 

E:\Fotos\Hentai\Kelly.Key.Playboy.11DEZ.Por.KickButts.Pootz\PLAYBOY(debora seco,luciana vendramini,ellen roche,luciana gimenez,sheila melo,felinas).zip/Playboy.Brasil.2005.Maio.Fl via.Flavia.Monteiro.28.Fotos.Digitais.por.SexoDigital.com.br.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

E:\Fotos\Hentai\Kelly.Key.Playboy.11DEZ.Por.KickButts.Pootz\PLAYBOY(debora seco,luciana vendramini,ellen roche,luciana gimenez,sheila melo,felinas).zip/Deborah Secco - Playboy Brasil - Agosto De 2002.zip/foto03.jpg (Error whilst scanning file: I/O Error (0x00220005))

E:\Fotos\Hentai\Kelly.Key.Playboy.11DEZ.Por.KickButts.Pootz\Playboy.Brasil.2005.Maio.Flávia.Flavia.Monteiro.28.Fotos.Digitais.por.SexoD

igital.com.br.rar/CMT (Error whilst scanning file: I/O Error (0x00220000))

E:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP1\A0000016.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0000023.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0000047.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{4556A99C-AF8D-43F4-9D75-64D27F49E084}\RP2\A0000062.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000009.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000064.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000137.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000153.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP1\A0000167.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005507.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005522.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005535.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005548.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0005561.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0006563.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0006582.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0006595.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0007599.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0007614.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0009617.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP10\A0010630.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0014750.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0019630.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0023630.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP11\A0024637.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP2\A0000292.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP3\A0000299.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP3\A0001174.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP4\A0001184.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP4\A0001202.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP5\A0001320.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0001337.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0002200.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0003205.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP6\A0003301.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0003309.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0003325.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0004324.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0004342.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP7\A0004362.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP8\A0004480.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP8\A0004497.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP9\A0004503.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\System Volume Information\_restore{BE1C5977-AC97-4C74-A6E3-9125678C2804}\RP9\A0005498.inf (Infected with BAT/AutoRun.BI)

Deleted file

E:\Wallpaperes Paint\Wallpapers\PAI_M+E.BMP (Error opening file: Not found)

 

Scanning: F:\*.*

Scanning: G:\*.*

Scanning: C:\Documents and Settings\All Users\Documentos\*.*

Scanning: C:\Documents and Settings\jose martins\Meus documentos\*.*

 

C:\Documents and Settings\jose martins\Meus documentos\Provas\JOS+.BMP (Error opening file: Not found)

C:\Documents and Settings\jose martins\Meus documentos\Provas\PAI_M+E.BMP (Error opening file: Not found)

 

Scanning: C:\Documents and Settings\Administrador\Desktop\Virus Removal Tool\*.*

Scanning: c:\System Volume Information\*.*

 

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027513.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027514.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027515.EXE (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027516.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027517.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027518.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027519.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027520.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027521.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027522.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027523.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027524.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027525.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027526.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027527.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027528.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027529.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027530.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027531.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027532.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027533.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027534.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027535.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027536.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027537.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027538.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027539.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027540.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027541.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027542.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027543.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027544.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027545.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027546.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027547.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027548.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490\RP19\A0027549.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027550.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027551.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027552.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027553.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027554.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027555.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027556.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027557.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027558.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027559.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027560.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027561.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027562.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027563.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027564.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027565.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027566.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027567.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027568.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027569.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027570.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027571.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027572.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027573.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027574.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027575.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027576.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027577.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027578.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027579.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027580.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027581.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027582.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027583.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027584.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027585.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027586.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027587.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027588.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027589.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027590.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027591.EXE (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027592.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027593.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027594.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027595.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027596.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027597.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027598.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027599.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027600.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027601.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027602.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027603.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027604.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027605.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027606.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027607.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027608.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027609.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027610.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027611.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027612.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027613.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027614.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027615.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027616.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027617.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027618.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027619.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027620.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027621.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027622.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027623.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027624.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027625.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027626.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027627.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027628.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027629.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027630.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027631.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027632.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027633.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027634.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027635.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027636.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027637.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027638.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027639.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027640.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027641.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027642.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027643.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027644.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027645.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027646.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027647.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027648.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027649.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027650.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027651.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027652.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027653.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027654.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027655.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027656.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027657.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027658.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027659.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027660.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027661.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027662.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027663.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027664.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027665.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027666.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027667.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027668.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027669.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027670.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027671.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027672.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027673.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027674.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027675.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027676.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027677.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027678.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027679.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027680.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027681.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027682.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027683.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027684.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027685.scr (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027686.scr (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027687.scr (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027688.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027689.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027690.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027691.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027692.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027693.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027694.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027695.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027696.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027697.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027698.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027699.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027700.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027701.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027702.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027703.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027704.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027705.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027706.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027707.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027708.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027709.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027710.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027711.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027712.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027713.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027714.exe (Infected with W32/Virut.CC)

Deleted file

c:\System Volume Information\_restore{E8BAA8DB-A40D-48CE-B7E6-5B5142FF7490}\RP19\A0027715.exe (Infected with W32/Virut.CC)

Deleted file

 

Running post-scan cleanup routine:

Set registry value: HKCR\regedit\shell\open\command\ = "regedit.exe %1" -> ""%WinDir%\regedit.exe" %1"

Failed to locate shared service executable: C:\WINDOWS\system32\ffo27623420.dll

Removed service: defaultlib

 

Number of files found: 615882

Number of archives unpacked: 4932

Number of files scanned: 615818

Number of files not scanned: 64

Number of files skipped due to exclude list: 0

Number of infected files found: 1043

Number of infected files repaired/deleted: 1043

Number of infections removed: 1043

Total scanning time: 1h 31m 28s

 

P.S.: O post do HJT está logo abaixo, pois o sistema está acusando que o post é muito longo.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Logfile of HijackThis v1.99.1

Scan saved at 13:08:02, on 4/4/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Unable to get Internet Explorer version!

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\TEMP\BND.tmp

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

D:\Programas\Programas de Segurança\Hijackthis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - Default URLSearchHook is missing

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: Barra de Ferramentas do Yahoo! com bloqueador de pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll

O3 - Toolbar: (no name) - {0124123D-61B4-456f-AF86-78C53A0790C5} - (no file)

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"

O4 - HKLM\..\Run: [PromoReg] C:\WINDOWS\TEMP\BND.tmp

O4 - Startup: is-6BF3A.lnk = C:\Documents and Settings\Administrador\Desktop\Virus Removal Tool\is-6BF3A\startup.exe

O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Arquivos de programas\Yahoo!\Common\yinsthelper.dll

O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARQUIV~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Arquivos de programas\Windows Live\Mail\mailcomm.dll

O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - D:\A-SQUARED FREE\a2service.exe

O23 - Service: G DATA AntiVirus Proxy (AVKProxy) - Unknown owner - C:\Arquivos de programas\Arquivos comuns\G DATA\AVKProxy\AVKProxy.exe (file missing)

O23 - Service: G DATA Scheduler (AVKService) - Unknown owner - C:\Arquivos de programas\G DATA\AntiVirus\AVK\AVKService.exe (file missing)

O23 - Service: Sentinela AntiVirus (AVKWCtl) - Unknown owner - C:\Arquivos de programas\G DATA\AntiVirus\AVK\AVKWCtl.exe (file missing)

O23 - Service: InterbaseGuardian - Inprise Corporation - C:\Arquivos de programas\CAIXA\SEFIP\IB6\Bin\IBGuard.EXE

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Unknown owner - C:\Arquivos de programas\Java\jre6\bin\jqs.exe" -service -config "C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\jqs.conf (file missing)

O23 - Service: Windows Download Manage (MSTD) - Unknown owner - C:\WINDOWS\system32\mstd.exe (file missing)

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá Silas!

 

Desta vez venho aqui para lhe avisar que o sistema deu a gota d'agua. É que após efetuar a limpeza com o Norman Malware Cleaner e postar os relatórios dele e do HJT, eu reiniciei o sistema. E o que eu temia aconteceu. Tanto pelo Modo de Segurança quanto pelo Modo Normal o sistema não loga mais, pois o que está acontecendo é que quando loga, o sistema faz log off autómatico, nos dois modos. Então, devido a tantos problemas eu resolvi que vou formatar o meu PC.

 

Mais uma vez quero lhe agradecer por ter se disponibilizado em me ajudar, e espero contar, tanto com você, como também com toda a equipe do iMasters das próximas que eu precisar.

 

Abraços e até a próxima!!!!

Compartilhar este post


Link para o post
Compartilhar em outros sites

Tópico Arquivado

 

Como o autor não respondeu por mais de 30 dias, o tópico foi arquivado.

 

Caso você seja o autor do tópico e quer reabrir, envie uma mensagem privada para um moderador da área juntamente com o link para este tópico e explique o motivo da reabertura.

Compartilhar este post


Link para o post
Compartilhar em outros sites

×

Informação importante

Ao usar o fórum, você concorda com nossos Termos e condições.