Ir para conteúdo

Arquivado

Este tópico foi arquivado e está fechado para novas respostas.

Bond2006

[Resolvido!] Computador lento D+ ( 1/2 h para abrir uma página )

Recommended Posts

OLA PESSOAL DESCONFIO QUE EU TENHA PEGO ALGUM MALWARE OU ALGO DO TIPO POIS MINHA CONEXAO ESTA SUPER LENTA,ABAIXO SEGUE O LOG DO HIJACKTHIS

PARA ANALISE,OBRIGADO.

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 00:54:56, on 03/04/09

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe

C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe

C:\Arquivos de programas\MSN Messenger\msnmsgr.exe

C:\Arquivos de programas\Messenger\msmsgs.exe

C:\Arquivos de programas\internet explorer\iexplore.exe

C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\WINDOWS\system32\notepad.exe

C:\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray

O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570

O17 - HKLM\System\CCS\Services\Tcpip\..\{E325F22B-DE66-460A-9689-034B6AFD963F}: NameServer = 200.225.159.124 200.225.159.126

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

 

--

End of file - 5580 bytes

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá, preciso de uma análise mais detalhada de chaves e registro do seu PC.

 

Faça o download do Random's System Information Tool (RSIT)

http://images.malwareremoval.com/random/RSIT.exe

Salve na sua área de trabalho.

 

◘ Execute o RSIT.exe.

◘ Haverá uma janela informativa:

List files/folders created or modified in the last: 1 month

◘ Clique em Continue.

 

Quando terminar, dois blocos de notas serão abertos:

log.txt -> abrirá maximizado

info.txt -> abrirá minimizado.

 

poste o arquivo log.txt na sua proxima resposta.

 

Uma cópia desses arquivos ficará salva na pasta C:\RSIT

 

Obs: Se o seu firewall alertar sobre o arquivo rsit.exe tentando se conectar, certifique-se de permitir (allow).

Compartilhar este post


Link para o post
Compartilhar em outros sites

OLA AQUI ESTA O NOVO LOG,MAIS EU TAMBEM TENHO UMA DUVIDA:ESSE MALWARE OU SEJA LA O QUE FOR PODE DIFICULTAR MINHA CONEXAO COM A INTERNET ?HJ FIQUEI 25 MINUTOS TENTANDO ME CONECTAR,ENTREI EM CONTATO COM A TELEFONICA E COM O PROVEDOR E AMBOS ME FALARAM QUE ESTA TUDO NORMAL,OBRIGADO!

 

 

 

 

Logfile of random's system information tool 1.06 (written by random/random)

Run by home at 2009-04-04 00:40:37

Microsoft Windows XP Professional Service Pack 2

System drive C: has 28 GB (73%) free of 38 GB

Total RAM: 446 MB (32% free)

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 00:41:21, on 04/04/09

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe

C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe

C:\Arquivos de programas\MSN Messenger\msnmsgr.exe

C:\Arquivos de programas\Messenger\msmsgs.exe

C:\Arquivos de programas\internet explorer\iexplore.exe

C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Documents and Settings\home\Desktop\RSIT.exe

C:\home.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray

O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570

O17 - HKLM\System\CCS\Services\Tcpip\..\{E325F22B-DE66-460A-9689-034B6AFD963F}: NameServer = 200.225.159.124 200.225.159.126

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

 

--

End of file - 5590 bytes

 

======Registry dump======

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]

Facilitador de Leitor de Link Adobe PDF - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]

BitComet Helper - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll [2008-02-29 468280]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]

SSVHelper Class - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]

Auxiliar de Conexão do Windows Live - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2007-09-20 328752]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f592709f-ff4a-4862-b659-4afabda56312}]

Mininova Toolbar - C:\Arquivos de programas\Mininova\tbMini.dll [2008-09-15 1784856]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

{f592709f-ff4a-4862-b659-4afabda56312} - Mininova Toolbar - C:\Arquivos de programas\Mininova\tbMini.dll [2008-09-15 1784856]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]

"AVG7_CC"=C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe [2009-03-01 590848]

"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944]

"Timer"=C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe [2003-10-06 913408]

 

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]

"msnmsgr"=C:\Arquivos de programas\MSN Messenger\msnmsgr.exe [2008-06-20 5674352]

"BitComet"=C:\Arquivos de programas\BitComet\BitComet.exe [2008-06-03 2596152]

"MSMSGS"=C:\Arquivos de programas\Messenger\msmsgs.exe [2004-08-04 1667584]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

C:\Arquivos de programas\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet]

C:\Arquivos de programas\BitComet\BitComet.exe [2008-06-03 2596152]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]

C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]

C:\Arquivos de programas\Messenger\msmsgs.exe [2004-08-04 1667584]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]

C:\Arquivos de programas\MSN Messenger\msnmsgr.exe [2008-06-20 5674352]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]

C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]

C:\WINDOWS\system32\NvMcTray.dll [2006-10-31 86016]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]

nwiz.exe /install []

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]

C:\WINDOWS\RTHDCPL.EXE [2007-07-05 16380416]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]

C:\WINDOWS\SkyTel.EXE [2007-06-15 1826816]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]

C:\Arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Microsoft Office.lnk]

C:\ARQUIV~1\MICROS~2\Office\OSA9.EXE [1999-02-17 65588]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Symantec Fax Starter Edition Port.lnk]

C:\ARQUIV~1\MICROS~2\Office\1046\OLFSNT40.EXE [1999-04-01 46080]

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^home^Menu Iniciar^Programas^Inicializar^SYSTRAYX.LNK]

C:\ARQUIV~1\SysTrayX.EXE [2008-01-05 236816]

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]

"dontdisplaylastusername"=0

"legalnoticecaption"=

"legalnoticetext"=

"shutdownwithoutlogon"=1

"undockwithoutlogon"=1

 

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

"NoDrives"=0

"NoDriveAutoRun"=67108863

"NoDriveTypeAutoRun"=323

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]

"NoDriveTypeAutoRun"=

"NoDrives"=

"NoDriveAutoRun"=

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\Arquivos de programas\MSN Messenger\msnmsgr.exe"="C:\Arquivos de programas\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"

"C:\Arquivos de programas\MSN Messenger\livecall.exe"="C:\Arquivos de programas\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

"C:\Arquivos de programas\Grisoft\AVG7\avginet.exe"="C:\Arquivos de programas\Grisoft\AVG7\avginet.exe:*:Enabled:avginet.exe"

"C:\Arquivos de programas\Grisoft\AVG7\avgamsvr.exe"="C:\Arquivos de programas\Grisoft\AVG7\avgamsvr.exe:*:Enabled:avgamsvr.exe"

"C:\Arquivos de programas\Grisoft\AVG7\avgcc.exe"="C:\Arquivos de programas\Grisoft\AVG7\avgcc.exe:*:Enabled:avgcc.exe"

"C:\Arquivos de programas\Grisoft\AVG7\avgemc.exe"="C:\Arquivos de programas\Grisoft\AVG7\avgemc.exe:*:Enabled:avgemc.exe"

"C:\Arquivos de programas\BitComet\BitComet.exe"="C:\Arquivos de programas\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"

"C:\Arquivos de programas\Messenger\msmsgs.exe"="C:\Arquivos de programas\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"

"C:\Arquivos de programas\FrostWire\FrostWire.exe"="C:\Arquivos de programas\FrostWire\FrostWire.exe:*:Enabled:FrostWire"

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\Arquivos de programas\MSN Messenger\msnmsgr.exe"="C:\Arquivos de programas\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"

"C:\Arquivos de programas\MSN Messenger\livecall.exe"="C:\Arquivos de programas\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

 

======List of files/folders created in the last 1 months======

 

2009-04-04 00:40:38 ----A---- C:\home.exe

2009-04-04 00:40:37 ----D---- C:\rsit

2009-04-03 00:53:19 ----A---- C:\HiJackThis.exe

2009-04-02 01:03:50 ----SHD---- C:\RECYCLER

2009-04-02 00:13:21 ----A---- C:\WINDOWS\system32\config.ini

2009-04-02 00:11:44 ----D---- C:\WINDOWS\temp

2009-04-02 00:11:43 ----A---- C:\ComboFix.txt

2009-03-29 15:23:26 ----A---- C:\WINDOWS\zip.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\VFIND.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\SWXCACLS.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\SWSC.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\SWREG.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\sed.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\NIRCMD.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\grep.exe

2009-03-29 15:23:26 ----A---- C:\WINDOWS\fdsv.exe

2009-03-22 19:48:37 ----HD---- C:\WINDOWS\PIF

2009-03-20 11:32:59 ----A---- C:\WINDOWS\ModemLog_Agere Systems PCI-SV92PP Soft Modem.txt

2009-03-20 11:28:52 ----N---- C:\WINDOWS\system32\agrsmdel.exe

2009-03-20 11:28:47 ----RA---- C:\WINDOWS\agrsmdel.exe

2009-03-20 11:28:21 ----D---- C:\WINDOWS\Options

2009-03-09 10:18:55 ----D---- C:\Arquivos de Programas RFB

 

======List of files/folders modified in the last 1 months======

 

2009-04-04 00:40:41 ----D---- C:\WINDOWS\Prefetch

2009-04-04 00:40:28 ----D---- C:\Downloads

2009-04-04 00:18:16 ----D---- C:\WINDOWS\system32

2009-04-04 00:18:16 ----D---- C:\Arquivos de programas\Timer-Net 2.3 - Grátis

2009-04-03 17:46:52 ----A---- C:\WINDOWS\SchedLgU.Txt

2009-04-03 16:55:40 ----D---- C:\WINDOWS

2009-04-03 10:52:47 ----D---- C:\WINDOWS\Debug

2009-04-03 09:56:17 ----D---- C:\Documents and Settings\home\Dados de aplicativos\AVG7

2009-04-02 23:56:14 ----D---- C:\Arquivos de programas\Mozilla Firefox

2009-04-02 00:10:26 ----A---- C:\WINDOWS\system.ini

2009-04-02 00:09:51 ----D---- C:\WINDOWS\system32\drivers

2009-04-02 00:09:51 ----D---- C:\WINDOWS\AppPatch

2009-04-02 00:09:47 ----D---- C:\Arquivos de programas\Arquivos comuns

2009-04-02 00:08:58 ----D---- C:\WINDOWS\system32\CatRoot2

2009-04-02 00:08:18 ----D---- C:\QooBox

2009-04-02 00:04:24 ----RD---- C:\Arquivos de programas

2009-04-01 12:33:22 ----A---- C:\WINDOWS\avisplitter.INI

2009-03-31 02:11:10 ----A---- C:\WINDOWS\NeroDigital.ini

2009-03-28 18:20:05 ----D---- C:\WINDOWS\system32\config

2009-03-28 18:19:38 ----D---- C:\WINDOWS\system32\wbem

2009-03-28 18:19:36 ----D---- C:\WINDOWS\Registration

2009-03-26 12:22:57 ----D---- C:\Arquivos de programas\DOC

2009-03-20 11:28:52 ----D---- C:\WINDOWS\Driver Cache

2009-03-20 11:28:47 ----HD---- C:\WINDOWS\inf

2009-03-20 11:18:26 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\UOL

2009-03-20 11:18:26 ----D---- C:\Arquivos de programas\UOL

2009-03-20 11:17:48 ----D---- C:\WINDOWS\system32\CatRoot

2009-03-19 12:32:49 ----A---- C:\WINDOWS\ModemLog_Motorola SM56 Speakerphone Modem.txt

2009-03-18 14:04:19 ----SH---- C:\boot.ini

2009-03-18 14:04:19 ----A---- C:\WINDOWS\win.ini

2009-03-14 15:18:58 ----D---- C:\VIDEOS

2009-03-12 00:23:39 ----D---- C:\WINDOWS\Help

 

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

 

R1 Avg7Core;AVG7 Kernel; C:\WINDOWS\System32\Drivers\avg7core.sys [2007-06-07 821856]

R1 Avg7RsW;AVG7 Wrap Driver; C:\WINDOWS\System32\Drivers\avg7rsw.sys [2007-06-07 4224]

R1 Avg7RsXP;AVG7 Resident Driver XP; C:\WINDOWS\System32\Drivers\avg7rsxp.sys [2007-06-07 27776]

R1 AvgClean;AVG7 Clean Driver; C:\WINDOWS\System32\Drivers\avgclean.sys [2007-06-07 10760]

R2 AvgTdi;AVG Network Redirector; C:\WINDOWS\System32\Drivers\avgtdi.sys [2007-06-07 4960]

R2 irda;Protocolo IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2004-08-03 87424]

R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-01-25 1149888]

R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]

R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-09 4449280]

R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]

R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-31 3964256]

R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368]

R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968]

R3 Rasirda;Miniporta de rede remota (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]

R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]

R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]

R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]

S3 MODEMCSA;Dispositivo de filtro de fluxo unimodem; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]

S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-28 5888]

S3 sermouse;Serial Mouse Driver; C:\WINDOWS\system32\DRIVERS\sermouse.sys [2001-10-28 18176]

S3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys []

S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]

S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]

S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

 

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

 

R2 Avg7Alrt;AVG7 Alert Manager Server; C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe [2007-06-07 418816]

R2 Avg7UpdSvc;AVG7 Update Service; C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe [2007-06-07 49664]

R2 AVGEMS;AVG E-mail Scanner; C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe [2007-06-07 406528]

R2 Irmon;Monitor de infravermelho; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]

R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-31 155715]

S3 usnjsvc;Serviço de Compartilhamento de Pastas Messenger do USN Journal Reader; C:\Arquivos de programas\MSN Messenger\usnsvc.exe [2007-01-19 97136]

S3 WLSetupSvc;Windows Live Setup Service; C:\Arquivos de programas\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]

 

-----------------EOF-----------------

Compartilhar este post


Link para o post
Compartilhar em outros sites

Poste o log do combofix, ele estar localizado em C:\ComboFix.txt

Compartilhar este post


Link para o post
Compartilhar em outros sites

Segue abaixo o log do ComboFix:

 

 

 

ComboFix 09-03-28.06 - home 2009-04-02 0:08:56.19 - NTFSx86

Microsoft Windows XP Professional 5.1.2600.2.1252.1.1046.18.446.151 [GMT -3:00]

Executando de: c:\downloads\ComboFix.exe

AV: AVG 7.5.557 *On-access scanning enabled* (Updated)

 

ATENÇAO - ESTA MAQUINA NAO TEM O CONSOLE DE RECUPERAÇÃO INSTALADA !!

.

 

((((((((((((((((((((((((((((((((((((( Outras Exclusões )))))))))))))))))))))))))))))))))))))))))))))))))))

.

 

c:\windows\system32\Config.ini

 

.

(((((((((((((((( Arquivos/Ficheiros criados de 2009-03-02 to 2009-04-02 ))))))))))))))))))))))))))))

.

 

2009-04-01 01:48 . 2009-04-01 01:48 23,549 --a------ C:\banner.jpg

2009-03-22 19:48 . 2009-03-22 19:48 <DIR> d--h----- c:\windows\PIF

2009-03-20 11:28 . 2009-03-20 11:28 <DIR> d-------- c:\windows\Options

2009-03-20 11:28 . 2006-01-25 05:24 1,149,888 -ra------ c:\windows\system32\drivers\AGRSM.sys

2009-03-20 11:28 . 2006-01-26 03:35 68,096 --------- c:\windows\system32\agrsmdel.exe

2009-03-20 11:28 . 2006-01-26 03:35 68,096 -ra------ c:\windows\agrsmdel.exe

2009-03-09 10:18 . 2009-03-09 10:18 <DIR> d-------- C:\Arquivos de Programas RFB

 

.

((((((((((((((((((((((((((((((((((((( Relatório Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-04-02 02:43 --------- d-----w c:\arquivos de programas\Timer-Net 2.3 - Grátis

2009-04-01 17:40 --------- d-----w c:\documents and settings\home\Dados de aplicativos\AVG7

2009-03-26 15:22 --------- d-----w c:\arquivos de programas\DOC

2009-03-20 14:18 --------- d-----w c:\documents and settings\All Users\Dados de aplicativos\UOL

2009-03-20 14:18 --------- d-----w c:\arquivos de programas\UOL

2009-02-15 14:18 --------- d-----w c:\arquivos de programas\Mininova

2008-01-05 19:47 60,696 ----a-w c:\arquivos de programas\STXDLL.DLL

2008-01-05 19:47 40,240 ----a-w c:\arquivos de programas\RUNSTX.EXE

2008-01-05 19:47 236,816 ----a-w c:\arquivos de programas\SysTrayX.EXE

2006-07-03 08:35 3,363 ----a-w c:\arquivos de programas\CHANGES.TXT

2002-04-22 22:09 705 ----a-w c:\arquivos de programas\systrayx.exe.manifest

1999-04-01 15:53 99,840 ----a-w c:\arquivos de programas\Arquivos comuns\IRAABOUT.DLL

1998-12-09 01:53 70,144 ----a-w c:\arquivos de programas\Arquivos comuns\IRAMDMTR.DLL

1998-12-09 01:53 48,640 ----a-w c:\arquivos de programas\Arquivos comuns\IRALPTTR.DLL

1998-12-09 01:53 31,744 ----a-w c:\arquivos de programas\Arquivos comuns\IRAWEBTR.DLL

1998-12-09 01:53 186,368 ----a-w c:\arquivos de programas\Arquivos comuns\IRAREG.DLL

1998-12-09 01:53 17,920 ----a-w c:\arquivos de programas\Arquivos comuns\IRASRIAL.DLL

.

 

(((((((((((((((((((((((((( Pontos de Carregamento do Registro )))))))))))))))))))))))))))))))))))))))

.

.

*Nota* entradas vazias e legítimas por defeito não são mostradas.

REGEDIT4

 

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]

"{f592709f-ff4a-4862-b659-4afabda56312}"= "c:\arquivos de programas\Mininova\tbMini.dll" [2008-09-15 1784856]

 

[HKEY_CLASSES_ROOT\clsid\{f592709f-ff4a-4862-b659-4afabda56312}]

 

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{f592709f-ff4a-4862-b659-4afabda56312}]

2008-09-15 06:47 1784856 --a------ c:\arquivos de programas\Mininova\tbMini.dll

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]

"{f592709f-ff4a-4862-b659-4afabda56312}"= "c:\arquivos de programas\Mininova\tbMini.dll" [2008-09-15 1784856]

 

[HKEY_CLASSES_ROOT\clsid\{f592709f-ff4a-4862-b659-4afabda56312}]

 

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]

"{F592709F-FF4A-4862-B659-4AFABDA56312}"= "c:\arquivos de programas\Mininova\tbMini.dll" [2008-09-15 1784856]

 

[HKEY_CLASSES_ROOT\clsid\{f592709f-ff4a-4862-b659-4afabda56312}]

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"msnmsgr"="c:\arquivos de programas\MSN Messenger\msnmsgr.exe" [2008-06-20 5674352]

"BitComet"="c:\arquivos de programas\BitComet\BitComet.exe" [2008-06-03 2596152]

"MSMSGS"="c:\arquivos de programas\Messenger\msmsgs.exe" [2004-08-04 1667584]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"AVG7_CC"="c:\arquiv~1\Grisoft\AVG7\avgcc.exe" [2009-03-01 590848]

"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-31 7634944]

"Timer"="c:\arquivos de programas\Timer-Net 2.3 -" [bU]

 

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360]

"AVG7_Run"="c:\arquiv~1\Grisoft\AVG7\avgw.exe" [2007-06-07 219136]

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Microsoft Office.lnk]

path=c:\documents and settings\All Users\Menu Iniciar\Programas\Inicializar\Microsoft Office.lnk

backup=c:\windows\pss\Microsoft Office.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Symantec Fax Starter Edition Port.lnk]

path=c:\documents and settings\All Users\Menu Iniciar\Programas\Inicializar\Symantec Fax Starter Edition Port.lnk

backup=c:\windows\pss\Symantec Fax Starter Edition Port.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^home^Menu Iniciar^Programas^Inicializar^SYSTRAYX.LNK]

path=c:\documents and settings\home\Menu Iniciar\Programas\Inicializar\SYSTRAYX.LNK

backup=c:\windows\pss\SYSTRAYX.LNKStartup

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]

--a------ 2008-01-11 22:16 39792 c:\arquivos de programas\Adobe\Reader 8.0\Reader\reader_sl.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet]

--a------ 2008-06-03 00:42 2596152 c:\arquivos de programas\BitComet\BitComet.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE]

--a------ 2004-08-04 00:45 15360 c:\windows\system32\ctfmon.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]

--------- 2004-08-04 00:56 1667584 c:\arquivos de programas\Messenger\msmsgs.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]

--a------ 2008-06-20 23:37 5674352 c:\arquivos de programas\MSN Messenger\msnmsgr.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

--a------ 2001-07-09 11:50 155648 c:\windows\system32\NeroCheck.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]

--a------ 2006-10-31 03:35 7634944 c:\windows\system32\nvcpl.dll

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]

--a------ 2006-10-31 03:35 86016 c:\windows\system32\nvmctray.dll

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]

--a------ 2008-06-10 04:27 144784 c:\arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]

--a------ 2006-10-31 03:35 1622016 c:\windows\system32\nwiz.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]

-r------- 2007-07-05 05:08 16380416 c:\windows\RTHDCPL.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]

-r------- 2007-06-15 05:45 1826816 c:\windows\SkyTel.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\security center]

"AntiVirusDisableNotify"=dword:00000001

"UpdatesDisableNotify"=dword:00000001

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"c:\\Arquivos de programas\\MSN Messenger\\msnmsgr.exe"=

"c:\\Arquivos de programas\\MSN Messenger\\livecall.exe"=

"c:\\Arquivos de programas\\Grisoft\\AVG7\\avginet.exe"=

"c:\\Arquivos de programas\\Grisoft\\AVG7\\avgamsvr.exe"=

"c:\\Arquivos de programas\\Grisoft\\AVG7\\avgcc.exe"=

"c:\\Arquivos de programas\\Grisoft\\AVG7\\avgemc.exe"=

"c:\\Arquivos de programas\\BitComet\\BitComet.exe"=

"c:\\Arquivos de programas\\Messenger\\msmsgs.exe"=

"c:\\Arquivos de programas\\FrostWire\\FrostWire.exe"=

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]

"26714:TCP"= 26714:TCP:BitComet 26714 TCP

"26714:UDP"= 26714:UDP:BitComet 26714 UDP

"22923:TCP"= 22923:TCP:BitComet 22923 TCP

"22923:UDP"= 22923:UDP:BitComet 22923 UDP

 

.

.

------- Scan Suplementar -------

.

uStart Page = hxxp://www.ig.com.br/

IE: Baixar link usando &BitComet - c:\arquivos de programas\BitComet\BitComet.exe/AddLink.htm

IE: Baixar todos os links usando BitComet - c:\arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm

IE: Baixar todos os vídeos usando BitComet - c:\arquivos de programas\BitComet\BitComet.exe/AddVideo.htm

Trusted Zone: hotmail.com\www

Trusted Zone: live.com\www

Trusted Zone: msn.com\www

Trusted Zone: passport.com\www

FF - ProfilePath - c:\documents and settings\home\Dados de aplicativos\Mozilla\Firefox\Profiles\ojcdcd48.default\

FF - prefs.js: browser.startup.homepage - hxxp://www.uol.com.br/

.

 

**************************************************************************

 

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-04-02 00:10:24

Windows 5.1.2600 Service Pack 2 NTFS

 

Procurando processos ocultos ...

 

Procurando entradas auto inicializáveis ocultas ...

 

Procurando ficheiros/arquivos ocultos ...

 

Varredura completada com sucesso

arquivos/ficheiros ocultos: 0

 

**************************************************************************

.

Tempo para conclusão: 2009-04-02 0:11:42

ComboFix-quarantined-files.txt 2009-04-02 03:11:33

ComboFix2.txt 2009-03-29 18:27:20

ComboFix3.txt 2008-11-19 13:02:25

ComboFix4.txt 2008-10-06 13:43:03

ComboFix5.txt 2009-04-02 03:08:18

 

Pré-execução: 16 pasta(s) 29.185.744.896 bytes disponíveis

Pós execução: 15 pasta(s) 29,229,654,016 bytes disponíveis

 

153

Compartilhar este post


Link para o post
Compartilhar em outros sites

Com o navegador Internet Explorer, acesse o Kaspersky Online Scanner e faça um scan online seguindo o tutorial abaixo.

 

Tutorial Kaspersky Online Scanner

 

Ao término do scan, salve o relatório com a extensão .txt (como mostra no final do tutorial) e poste em sua próxima resposta.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Amigo segui seus conselhos mais nao consegui chegar ao final pq quando o Kaspersky comeca a baixar os arquivos ele so baixa o 1º deles (cerca de 560 Kb) quando chega no 2º arquivo com cerca de 2.1 Mb o computador so chega a baixar 500 kb depois disso ele retorna ao 0 e quando chega por volta dos 500 kb novamente ele recomeça tudo de novo,se voce puder me passar outra soluçao eu agradeceria muito ok?Obrigado.

Compartilhar este post


Link para o post
Compartilhar em outros sites

• Baixe: < Kaspersky Virus Removal Tool >

• Salve-o em Arquivos de Programas,e instale-o aí mesmo!

• Reinicie o computador,em Modo de Segurança! <-- Importante!

• Dê início ao exame,clicando em "Scan".

• A verificação é um pouco demorada. Aguarde!

• Caso seja encontrada infecções,clique em "disinfect".

• Terminando,clique na aba Events.

Desmarque a caixa de seleção "Show all events".

• Clique em "Save to file".

Nomeie-o e salve-o no desktop! <-- Relatório para postagem!

Poste,também,HijackThis atualizado.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Ola segue anexo o log do Hijackthis e o Relatorio do Kaspersky tb:

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 19:53:36, on 05/04/09

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Safe mode

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray

O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Startup: is-A6V1Q.lnk = C:\Documents and Settings\home\Desktop\Virus Removal Tool\is-A6V1Q\startup.exe

O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

 

--

End of file - 4975 bytes

 

 

 

 

 

 

 

 

 

 

 

 

Scan

----

Scanned: 161578

Detected: 6

Untreated: 0

Start time: 05/04/09 19:05:03

Duration: 00:46:09

Finish time: 05/04/09 19:51:12

 

 

Detected

--------

Status Object

------ ------

disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\ASAS DO PRAZER.mp3

disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\DEIXA O AMOR ACONTECER.mp3

disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\fabio jr - vida.mp3

deleted: Trojan program Trojan-Downloader.WMA.Wimad.n File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\inimigos da hp-tudo como esta.wma

disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\SONHO.mp3

deleted: adware not-a-virus:AdWare.Win32.Agent.jb File: C:\QooBox\Quarantine\C\Arquivos de programas\PlayMP3z\PlayMP3.exe.vir

 

 

Events

------

Time Name Status Reason

---- ---- ------ ------

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file05 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file06 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file07 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file08 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file09 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file10 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file11 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file12 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file13 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file14 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file15 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file16 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file17 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file18 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file19 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file20 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file21 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file22 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file23 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file24 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file25 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file26 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file27 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file28 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file29 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file30 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file31 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file32 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file33 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file34 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file35 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file36 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file37 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file38 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file39 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file40 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file41 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file42 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file43 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file44 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file45 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file46 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file47 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file48 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file49 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file50 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file51 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file52 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file53 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file54 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file55 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file56 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file57 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file58 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file59 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file60 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file61 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file62 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file63 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file64 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file65 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file66 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file67 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file68 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file69 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file70 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file71 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file72 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file73 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file74 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file75 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file76 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file77 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file78 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file79 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file80 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file81 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file82 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file83 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file84 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file85 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file86 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file87 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file88 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file89 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file90 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file91 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file92 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file93 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file94 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file95 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file96 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file97 password protected

05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file98 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file007 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file008 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file009 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file010 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file011 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file012 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file013 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file014 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file015 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file016 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file017 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file018 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file019 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file020 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file021 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file022 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file023 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file024 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file025 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file026 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file028 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file029 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file030 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file031 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file032 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file033 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file034 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file035 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file036 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file037 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file038 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file039 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file040 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file041 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file042 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file043 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file044 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file045 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file046 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file047 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file048 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file049 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file050 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file051 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file052 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file053 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file054 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file055 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file056 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file057 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file058 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file059 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file060 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file061 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file062 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file063 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file064 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file065 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file066 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file067 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file068 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file069 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file070 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file071 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file072 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file073 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file074 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file075 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file076 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file077 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file078 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file079 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file080 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file081 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file082 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file083 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file084 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file085 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file086 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file087 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file088 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file089 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file090 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file091 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file092 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file093 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file094 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file095 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file096 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file097 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file098 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file099 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file100 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file101 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file102 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file103 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file104 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file105 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file106 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file107 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file108 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file109 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file110 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file111 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file112 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file113 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file114 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file115 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file116 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file117 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file118 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file119 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file120 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file121 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file122 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file123 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file124 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file125 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file126 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file127 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file128 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file129 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file130 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file131 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file132 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file133 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file134 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file135 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file136 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file137 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file138 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file139 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file140 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file141 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file142 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file143 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file144 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file145 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file146 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file147 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file148 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file149 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file150 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file151 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file152 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file153 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file154 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file155 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file156 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file157 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file158 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file159 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file160 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file161 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file162 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file163 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file164 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file165 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file166 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file167 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file168 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file169 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file170 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file171 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file172 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file173 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file174 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file175 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file176 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file177 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file178 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file179 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file180 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file181 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file182 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file183 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file184 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file185 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file186 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file187 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file188 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file189 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file190 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file191 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file192 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file193 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file194 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file195 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file196 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file197 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file198 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file199 password protected

05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file200 password protected

05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\ASAS DO PRAZER.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\ASAS DO PRAZER.mp3 not disinfected postponed

05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\DEIXA O AMOR ACONTECER.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\DEIXA O AMOR ACONTECER.mp3 not disinfected postponed

05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\fabio jr - vida.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\fabio jr - vida.mp3 not disinfected postponed

05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\inimigos da hp-tudo como esta.wma detected Trojan program 'Trojan-Downloader.WMA.Wimad.n'

05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\inimigos da hp-tudo como esta.wma not disinfected postponed

05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\SONHO.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\SONHO.mp3 not disinfected postponed

05/04/09 19:31:16 File: C:\QooBox\Quarantine\C\Arquivos de programas\PlayMP3z\PlayMP3.exe.vir detected adware 'not-a-virus:AdWare.Win32.Agent.jb'

05/04/09 19:31:16 File: C:\QooBox\Quarantine\C\Arquivos de programas\PlayMP3z\PlayMP3.exe.vir not disinfected postponed

05/04/09 19:49:05 File: c:\documents and settings\home\meus documentos\frostwire\saved\asas do prazer.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:49:17 File: c:\documents and settings\home\meus documentos\frostwire\saved\asas do prazer.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:49:18 File: c:\documents and settings\home\meus documentos\frostwire\saved\deixa o amor acontecer.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:49:27 File: c:\documents and settings\home\meus documentos\frostwire\saved\deixa o amor acontecer.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:49:28 File: c:\documents and settings\home\meus documentos\frostwire\saved\fabio jr - vida.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:49:34 File: c:\documents and settings\home\meus documentos\frostwire\saved\fabio jr - vida.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:49:35 File: c:\documents and settings\home\meus documentos\frostwire\saved\inimigos da hp-tudo como esta.wma detected Trojan program 'Trojan-Downloader.WMA.Wimad.n'

05/04/09 19:50:23 File: c:\documents and settings\home\meus documentos\frostwire\saved\inimigos da hp-tudo como esta.wma deleted

05/04/09 19:50:23 File: c:\documents and settings\home\meus documentos\frostwire\saved\sonho.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:50:29 File: c:\documents and settings\home\meus documentos\frostwire\saved\sonho.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c'

05/04/09 19:50:30 File: c:\qoobox\quarantine\c\arquivos de programas\playmp3z\playmp3.exe.vir detected adware 'not-a-virus:AdWare.Win32.Agent.jb'

05/04/09 19:51:12 File: c:\qoobox\quarantine\c\arquivos de programas\playmp3z\playmp3.exe.vir deleted

 

 

Statistics

----------

Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted

------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------

 

 

Settings

--------

Parameter Value

--------- -----

Security Level Recommended

Action Prompt for action when the scan is complete

Run mode Manually

File types Scan all files

Scan only new and changed files No

Scan archives All

Scan embedded OLE objects All

Skip if object is larger than No

Skip if scan takes longer than No

Parse email formats No

Scan password-protected archives No

Enable iChecker technology No

Enable iSwift technology No

Show detected threats on "Detected" tab Yes

Rootkits search Yes

Deep rootkits search No

Use heuristic analyzer Yes

 

 

Quarantine

----------

Status Object Size Added

------ ------ ---- -----

 

 

Backup

------

Status Object Size

------ ------ ----

Compartilhar este post


Link para o post
Compartilhar em outros sites

Execute novamente a ferramenta e clique em disinfect quando algo for detectado. Se não for possível desinfectar o arquivo, clique em delete. Salve o log e poste aqui, juntamente com um novo log do HijackThis.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Segue abaixo os novos logs :

 

 

 

 

 

 

 

Scan

----

Scanned: 295334

Detected: 0

Untreated: 0

Start time: 08/04/09 12:21:29

Duration: 01:25:15

Finish time: 08/04/09 13:46:44

 

 

Detected

--------

Status Object

------ ------

 

 

Events

------

Time Name Status Reason

---- ---- ------ ------

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file05 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file06 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file07 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file08 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file09 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file10 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file11 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file12 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file13 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file14 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file15 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file16 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file17 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file18 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file19 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file20 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file21 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file22 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file23 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file24 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file25 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file26 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file27 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file28 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file29 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file30 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file31 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file32 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file33 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file34 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file35 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file36 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file37 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file38 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file39 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file40 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file41 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file42 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file43 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file44 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file45 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file46 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file47 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file48 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file49 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file50 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file51 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file52 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file53 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file54 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file55 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file56 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file57 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file58 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file59 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file60 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file61 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file62 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file63 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file64 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file65 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file66 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file67 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file68 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file69 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file70 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file71 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file72 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file73 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file74 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file75 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file76 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file77 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file78 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file79 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file80 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file81 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file82 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file83 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file84 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file85 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file86 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file87 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file88 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file89 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file90 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file91 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file92 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file93 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file94 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file95 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file96 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file97 password protected

08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file98 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file007 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file008 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file009 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file010 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file011 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file012 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file013 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file014 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file015 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file016 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file017 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file018 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file019 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file020 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file021 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file022 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file023 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file024 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file025 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file026 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file028 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file029 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file030 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file031 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file032 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file033 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file034 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file035 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file036 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file037 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file038 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file039 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file040 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file041 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file042 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file043 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file044 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file045 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file046 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file047 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file048 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file049 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file050 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file051 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file052 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file053 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file054 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file055 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file056 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file057 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file058 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file059 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file060 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file061 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file062 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file063 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file064 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file065 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file066 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file067 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file068 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file069 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file070 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file071 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file072 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file073 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file074 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file075 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file076 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file077 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file078 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file079 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file080 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file081 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file082 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file083 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file084 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file085 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file086 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file087 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file088 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file089 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file090 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file091 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file092 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file093 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file094 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file095 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file096 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file097 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file098 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file099 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file100 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file101 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file102 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file103 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file104 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file105 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file106 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file107 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file108 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file109 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file110 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file111 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file112 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file113 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file114 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file115 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file116 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file117 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file118 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file119 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file120 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file121 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file122 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file123 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file124 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file125 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file126 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file127 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file128 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file129 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file130 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file131 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file132 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file133 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file134 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file135 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file136 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file137 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file138 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file139 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file140 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file141 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file142 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file143 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file144 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file145 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file146 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file147 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file148 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file149 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file150 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file151 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file152 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file153 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file154 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file155 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file156 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file157 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file158 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file159 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file160 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file161 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file162 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file163 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file164 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file165 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file166 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file167 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file168 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file169 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file170 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file171 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file172 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file173 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file174 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file175 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file176 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file177 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file178 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file179 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file180 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file181 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file182 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file183 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file184 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file185 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file186 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file187 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file188 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file189 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file190 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file191 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file192 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file193 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file194 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file195 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file196 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file197 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file198 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file199 password protected

08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file200 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file05 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file06 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file07 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file08 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file09 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file10 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file11 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file12 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file13 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file14 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file15 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file16 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file17 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file18 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file19 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file20 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file21 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file22 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file23 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file24 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file25 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file26 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file27 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file28 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file29 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file30 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file31 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file32 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file33 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file34 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file35 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file36 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file37 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file38 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file39 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file40 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file41 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file42 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file43 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file44 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file45 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file46 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file47 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file48 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file49 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file50 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file51 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file52 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file53 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file54 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file55 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file56 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file57 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file58 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file59 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file60 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file61 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file62 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file63 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file64 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file65 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file66 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file67 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file68 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file69 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file70 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file71 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file72 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file73 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file74 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file75 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file76 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file77 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file78 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file79 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file80 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file81 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file82 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file83 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file84 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file85 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file86 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file87 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file88 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file89 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file90 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file91 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file92 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file93 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file94 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file95 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file96 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file97 password protected

08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file98 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file007 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file008 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file009 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file010 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file011 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file012 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file013 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file014 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file015 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file016 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file017 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file018 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file019 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file020 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file021 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file022 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file023 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file024 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file025 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file026 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file028 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file029 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file030 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file031 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file032 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file033 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file034 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file035 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file036 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file037 password protected

08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file038 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file039 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file040 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file041 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file042 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file043 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file044 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file045 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file046 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file047 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file048 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file049 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file050 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file051 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file052 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file053 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file054 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file055 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file056 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file057 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file058 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file059 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file060 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file061 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file062 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file063 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file064 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file065 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file066 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file067 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file068 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file069 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file070 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file071 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file072 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file073 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file074 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file075 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file076 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file077 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file078 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file079 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file080 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file081 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file082 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file083 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file084 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file085 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file086 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file087 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file088 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file089 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file090 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file091 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file092 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file093 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file094 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file095 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file096 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file097 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file098 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file099 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file100 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file101 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file102 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file103 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file104 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file105 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file106 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file107 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file108 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file109 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file110 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file111 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file112 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file113 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file114 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file115 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file116 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file117 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file118 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file119 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file120 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file121 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file122 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file123 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file124 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file125 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file126 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file127 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file128 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file129 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file130 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file131 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file132 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file133 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file134 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file135 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file136 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file137 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file138 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file139 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file140 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file141 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file142 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file143 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file144 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file145 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file146 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file147 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file148 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file149 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file150 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file151 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file152 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file153 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file154 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file155 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file156 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file157 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file158 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file159 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file160 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file161 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file162 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file163 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file164 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file165 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file166 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file167 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file168 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file169 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file170 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file171 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file172 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file173 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file174 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file175 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file176 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file177 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file178 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file179 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file180 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file181 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file182 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file183 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file184 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file185 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file186 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file187 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file188 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file189 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file190 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file191 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file192 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file193 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file194 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file195 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file196 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file197 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file198 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file199 password protected

08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file200 password protected

 

 

Statistics

----------

Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted

------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ ---------

 

 

Settings

--------

Parameter Value

--------- -----

Security Level Recommended

Action Prompt for action when the scan is complete

Run mode Manually

File types Scan all files

Scan only new and changed files No

Scan archives All

Scan embedded OLE objects All

Skip if object is larger than No

Skip if scan takes longer than No

Parse email formats No

Scan password-protected archives No

Enable iChecker technology No

Enable iSwift technology No

Show detected threats on "Detected" tab Yes

Rootkits search Yes

Deep rootkits search No

Use heuristic analyzer Yes

 

 

Quarantine

----------

Status Object Size Added

------ ------ ---- -----

 

 

Backup

------

Status Object Size

------ ------ ----

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 13:53:18, on 08/04/09

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Boot mode: Safe mode

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\DOCUME~1\home\CONFIG~1\Temp\_iu14D2N.tmp

C:\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll

O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background

O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray

O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Startup: is-A6V1Q.lnk = C:\Documents and Settings\home\Desktop\Virus Removal Tool\is-A6V1Q\startup.exe

O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll

O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570

O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe

O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe

O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

 

--

End of file - 5020 bytes

 

 

 

 

 

 

 

 

 

 

 

 

 

 

PS: Troquei toda a fiaçao telefonica e minha conexao voltou ao normal,nao sei se era um problema com a fiaçao ou se era devido a algum malware,mais aparente tudo voltou ao normal.Obrigado!

Compartilhar este post


Link para o post
Compartilhar em outros sites

Ok, o log estar limpo. Algum problema?

Compartilhar este post


Link para o post
Compartilhar em outros sites

PROBLEMA RESOLVIDO!

 

Caso o autor necessite que o tópico seja reaberto basta enviar uma Mensagem Privada para um Moderador com um link para o tópico.

Compartilhar este post


Link para o post
Compartilhar em outros sites

×

Informação importante

Ao usar o fórum, você concorda com nossos Termos e condições.