Bond2006 0 Denunciar post Postado Abril 3, 2009 OLA PESSOAL DESCONFIO QUE EU TENHA PEGO ALGUM MALWARE OU ALGO DO TIPO POIS MINHA CONEXAO ESTA SUPER LENTA,ABAIXO SEGUE O LOG DO HIJACKTHIS PARA ANALISE,OBRIGADO. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:54:56, on 03/04/09 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe C:\Arquivos de programas\MSN Messenger\msnmsgr.exe C:\Arquivos de programas\Messenger\msmsgs.exe C:\Arquivos de programas\internet explorer\iexplore.exe C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\WINDOWS\system32\notepad.exe C:\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570 O17 - HKLM\System\CCS\Services\Tcpip\..\{E325F22B-DE66-460A-9689-034B6AFD963F}: NameServer = 200.225.159.124 200.225.159.126 O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe -- End of file - 5580 bytes Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 3, 2009 Olá, preciso de uma análise mais detalhada de chaves e registro do seu PC. Faça o download do Random's System Information Tool (RSIT) http://images.malwareremoval.com/random/RSIT.exe Salve na sua área de trabalho. ◘ Execute o RSIT.exe. ◘ Haverá uma janela informativa: ◘ List files/folders created or modified in the last: 1 month ◘ Clique em Continue. Quando terminar, dois blocos de notas serão abertos: log.txt -> abrirá maximizado info.txt -> abrirá minimizado. poste o arquivo log.txt na sua proxima resposta. Uma cópia desses arquivos ficará salva na pasta C:\RSIT Obs: Se o seu firewall alertar sobre o arquivo rsit.exe tentando se conectar, certifique-se de permitir (allow). Compartilhar este post Link para o post Compartilhar em outros sites
Bond2006 0 Denunciar post Postado Abril 4, 2009 OLA AQUI ESTA O NOVO LOG,MAIS EU TAMBEM TENHO UMA DUVIDA:ESSE MALWARE OU SEJA LA O QUE FOR PODE DIFICULTAR MINHA CONEXAO COM A INTERNET ?HJ FIQUEI 25 MINUTOS TENTANDO ME CONECTAR,ENTREI EM CONTATO COM A TELEFONICA E COM O PROVEDOR E AMBOS ME FALARAM QUE ESTA TUDO NORMAL,OBRIGADO! Logfile of random's system information tool 1.06 (written by random/random) Run by home at 2009-04-04 00:40:37 Microsoft Windows XP Professional Service Pack 2 System drive C: has 28 GB (73%) free of 38 GB Total RAM: 446 MB (32% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:41:21, on 04/04/09 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe C:\Arquivos de programas\MSN Messenger\msnmsgr.exe C:\Arquivos de programas\Messenger\msmsgs.exe C:\Arquivos de programas\internet explorer\iexplore.exe C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Documents and Settings\home\Desktop\RSIT.exe C:\home.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570 O17 - HKLM\System\CCS\Services\Tcpip\..\{E325F22B-DE66-460A-9689-034B6AFD963F}: NameServer = 200.225.159.124 200.225.159.126 O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe -- End of file - 5590 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Facilitador de Leitor de Link Adobe PDF - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}] BitComet Helper - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll [2008-02-29 468280] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] SSVHelper Class - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Auxiliar de Conexão do Windows Live - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2007-09-20 328752] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f592709f-ff4a-4862-b659-4afabda56312}] Mininova Toolbar - C:\Arquivos de programas\Mininova\tbMini.dll [2008-09-15 1784856] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {f592709f-ff4a-4862-b659-4afabda56312} - Mininova Toolbar - C:\Arquivos de programas\Mininova\tbMini.dll [2008-09-15 1784856] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AVG7_CC"=C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe [2009-03-01 590848] "NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944] "Timer"=C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe [2003-10-06 913408] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "msnmsgr"=C:\Arquivos de programas\MSN Messenger\msnmsgr.exe [2008-06-20 5674352] "BitComet"=C:\Arquivos de programas\BitComet\BitComet.exe [2008-06-03 2596152] "MSMSGS"=C:\Arquivos de programas\Messenger\msmsgs.exe [2004-08-04 1667584] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] C:\Arquivos de programas\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet] C:\Arquivos de programas\BitComet\BitComet.exe [2008-06-03 2596152] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS] C:\Arquivos de programas\Messenger\msmsgs.exe [2004-08-04 1667584] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr] C:\Arquivos de programas\MSN Messenger\msnmsgr.exe [2008-06-20 5674352] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] C:\WINDOWS\system32\NvCpl.dll [2006-10-31 7634944] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter] C:\WINDOWS\system32\NvMcTray.dll [2006-10-31 86016] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz] nwiz.exe /install [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL] C:\WINDOWS\RTHDCPL.EXE [2007-07-05 16380416] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel] C:\WINDOWS\SkyTel.EXE [2007-06-15 1826816] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] C:\Arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Microsoft Office.lnk] C:\ARQUIV~1\MICROS~2\Office\OSA9.EXE [1999-02-17 65588] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Symantec Fax Starter Edition Port.lnk] C:\ARQUIV~1\MICROS~2\Office\1046\OLFSNT40.EXE [1999-04-01 46080] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^home^Menu Iniciar^Programas^Inicializar^SYSTRAYX.LNK] C:\ARQUIV~1\SysTrayX.EXE [2008-01-05 236816] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDrives"=0 "NoDriveAutoRun"=67108863 "NoDriveTypeAutoRun"=323 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"= "NoDrives"= "NoDriveAutoRun"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe"="C:\Arquivos de programas\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\Arquivos de programas\MSN Messenger\livecall.exe"="C:\Arquivos de programas\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" "C:\Arquivos de programas\Grisoft\AVG7\avginet.exe"="C:\Arquivos de programas\Grisoft\AVG7\avginet.exe:*:Enabled:avginet.exe" "C:\Arquivos de programas\Grisoft\AVG7\avgamsvr.exe"="C:\Arquivos de programas\Grisoft\AVG7\avgamsvr.exe:*:Enabled:avgamsvr.exe" "C:\Arquivos de programas\Grisoft\AVG7\avgcc.exe"="C:\Arquivos de programas\Grisoft\AVG7\avgcc.exe:*:Enabled:avgcc.exe" "C:\Arquivos de programas\Grisoft\AVG7\avgemc.exe"="C:\Arquivos de programas\Grisoft\AVG7\avgemc.exe:*:Enabled:avgemc.exe" "C:\Arquivos de programas\BitComet\BitComet.exe"="C:\Arquivos de programas\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client" "C:\Arquivos de programas\Messenger\msmsgs.exe"="C:\Arquivos de programas\Messenger\msmsgs.exe:*:Enabled:Windows Messenger" "C:\Arquivos de programas\FrostWire\FrostWire.exe"="C:\Arquivos de programas\FrostWire\FrostWire.exe:*:Enabled:FrostWire" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe"="C:\Arquivos de programas\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1" "C:\Arquivos de programas\MSN Messenger\livecall.exe"="C:\Arquivos de programas\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)" ======List of files/folders created in the last 1 months====== 2009-04-04 00:40:38 ----A---- C:\home.exe 2009-04-04 00:40:37 ----D---- C:\rsit 2009-04-03 00:53:19 ----A---- C:\HiJackThis.exe 2009-04-02 01:03:50 ----SHD---- C:\RECYCLER 2009-04-02 00:13:21 ----A---- C:\WINDOWS\system32\config.ini 2009-04-02 00:11:44 ----D---- C:\WINDOWS\temp 2009-04-02 00:11:43 ----A---- C:\ComboFix.txt 2009-03-29 15:23:26 ----A---- C:\WINDOWS\zip.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\VFIND.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\SWXCACLS.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\SWSC.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\SWREG.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\sed.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\NIRCMD.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\grep.exe 2009-03-29 15:23:26 ----A---- C:\WINDOWS\fdsv.exe 2009-03-22 19:48:37 ----HD---- C:\WINDOWS\PIF 2009-03-20 11:32:59 ----A---- C:\WINDOWS\ModemLog_Agere Systems PCI-SV92PP Soft Modem.txt 2009-03-20 11:28:52 ----N---- C:\WINDOWS\system32\agrsmdel.exe 2009-03-20 11:28:47 ----RA---- C:\WINDOWS\agrsmdel.exe 2009-03-20 11:28:21 ----D---- C:\WINDOWS\Options 2009-03-09 10:18:55 ----D---- C:\Arquivos de Programas RFB ======List of files/folders modified in the last 1 months====== 2009-04-04 00:40:41 ----D---- C:\WINDOWS\Prefetch 2009-04-04 00:40:28 ----D---- C:\Downloads 2009-04-04 00:18:16 ----D---- C:\WINDOWS\system32 2009-04-04 00:18:16 ----D---- C:\Arquivos de programas\Timer-Net 2.3 - Grátis 2009-04-03 17:46:52 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-04-03 16:55:40 ----D---- C:\WINDOWS 2009-04-03 10:52:47 ----D---- C:\WINDOWS\Debug 2009-04-03 09:56:17 ----D---- C:\Documents and Settings\home\Dados de aplicativos\AVG7 2009-04-02 23:56:14 ----D---- C:\Arquivos de programas\Mozilla Firefox 2009-04-02 00:10:26 ----A---- C:\WINDOWS\system.ini 2009-04-02 00:09:51 ----D---- C:\WINDOWS\system32\drivers 2009-04-02 00:09:51 ----D---- C:\WINDOWS\AppPatch 2009-04-02 00:09:47 ----D---- C:\Arquivos de programas\Arquivos comuns 2009-04-02 00:08:58 ----D---- C:\WINDOWS\system32\CatRoot2 2009-04-02 00:08:18 ----D---- C:\QooBox 2009-04-02 00:04:24 ----RD---- C:\Arquivos de programas 2009-04-01 12:33:22 ----A---- C:\WINDOWS\avisplitter.INI 2009-03-31 02:11:10 ----A---- C:\WINDOWS\NeroDigital.ini 2009-03-28 18:20:05 ----D---- C:\WINDOWS\system32\config 2009-03-28 18:19:38 ----D---- C:\WINDOWS\system32\wbem 2009-03-28 18:19:36 ----D---- C:\WINDOWS\Registration 2009-03-26 12:22:57 ----D---- C:\Arquivos de programas\DOC 2009-03-20 11:28:52 ----D---- C:\WINDOWS\Driver Cache 2009-03-20 11:28:47 ----HD---- C:\WINDOWS\inf 2009-03-20 11:18:26 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\UOL 2009-03-20 11:18:26 ----D---- C:\Arquivos de programas\UOL 2009-03-20 11:17:48 ----D---- C:\WINDOWS\system32\CatRoot 2009-03-19 12:32:49 ----A---- C:\WINDOWS\ModemLog_Motorola SM56 Speakerphone Modem.txt 2009-03-18 14:04:19 ----SH---- C:\boot.ini 2009-03-18 14:04:19 ----A---- C:\WINDOWS\win.ini 2009-03-14 15:18:58 ----D---- C:\VIDEOS 2009-03-12 00:23:39 ----D---- C:\WINDOWS\Help ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 Avg7Core;AVG7 Kernel; C:\WINDOWS\System32\Drivers\avg7core.sys [2007-06-07 821856] R1 Avg7RsW;AVG7 Wrap Driver; C:\WINDOWS\System32\Drivers\avg7rsw.sys [2007-06-07 4224] R1 Avg7RsXP;AVG7 Resident Driver XP; C:\WINDOWS\System32\Drivers\avg7rsxp.sys [2007-06-07 27776] R1 AvgClean;AVG7 Clean Driver; C:\WINDOWS\System32\Drivers\avgclean.sys [2007-06-07 10760] R2 AvgTdi;AVG Network Redirector; C:\WINDOWS\System32\Drivers\avgtdi.sys [2007-06-07 4960] R2 irda;Protocolo IrDA; C:\WINDOWS\system32\DRIVERS\irda.sys [2004-08-03 87424] R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-01-25 1149888] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-07-09 4449280] R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688] R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-10-31 3964256] R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-11-27 58368] R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-11-27 19968] R3 Rasirda;Miniporta de rede remota (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584] R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624] R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600] R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024] S3 MODEMCSA;Dispositivo de filtro de fluxo unimodem; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128] S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-28 5888] S3 sermouse;Serial Mouse Driver; C:\WINDOWS\system32\DRIVERS\sermouse.sys [2001-10-28 18176] S3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [] S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104] S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Avg7Alrt;AVG7 Alert Manager Server; C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe [2007-06-07 418816] R2 Avg7UpdSvc;AVG7 Update Service; C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe [2007-06-07 49664] R2 AVGEMS;AVG E-mail Scanner; C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe [2007-06-07 406528] R2 Irmon;Monitor de infravermelho; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336] R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-10-31 155715] S3 usnjsvc;Serviço de Compartilhamento de Pastas Messenger do USN Journal Reader; C:\Arquivos de programas\MSN Messenger\usnsvc.exe [2007-01-19 97136] S3 WLSetupSvc;Windows Live Setup Service; C:\Arquivos de programas\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240] -----------------EOF----------------- Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 4, 2009 Poste o log do combofix, ele estar localizado em C:\ComboFix.txt Compartilhar este post Link para o post Compartilhar em outros sites
Bond2006 0 Denunciar post Postado Abril 4, 2009 Segue abaixo o log do ComboFix: ComboFix 09-03-28.06 - home 2009-04-02 0:08:56.19 - NTFSx86 Microsoft Windows XP Professional 5.1.2600.2.1252.1.1046.18.446.151 [GMT -3:00] Executando de: c:\downloads\ComboFix.exe AV: AVG 7.5.557 *On-access scanning enabled* (Updated) ATENÇAO - ESTA MAQUINA NAO TEM O CONSOLE DE RECUPERAÇÃO INSTALADA !! . ((((((((((((((((((((((((((((((((((((( Outras Exclusões ))))))))))))))))))))))))))))))))))))))))))))))))))) . c:\windows\system32\Config.ini . (((((((((((((((( Arquivos/Ficheiros criados de 2009-03-02 to 2009-04-02 )))))))))))))))))))))))))))) . 2009-04-01 01:48 . 2009-04-01 01:48 23,549 --a------ C:\banner.jpg 2009-03-22 19:48 . 2009-03-22 19:48 <DIR> d--h----- c:\windows\PIF 2009-03-20 11:28 . 2009-03-20 11:28 <DIR> d-------- c:\windows\Options 2009-03-20 11:28 . 2006-01-25 05:24 1,149,888 -ra------ c:\windows\system32\drivers\AGRSM.sys 2009-03-20 11:28 . 2006-01-26 03:35 68,096 --------- c:\windows\system32\agrsmdel.exe 2009-03-20 11:28 . 2006-01-26 03:35 68,096 -ra------ c:\windows\agrsmdel.exe 2009-03-09 10:18 . 2009-03-09 10:18 <DIR> d-------- C:\Arquivos de Programas RFB . ((((((((((((((((((((((((((((((((((((( Relatório Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2009-04-02 02:43 --------- d-----w c:\arquivos de programas\Timer-Net 2.3 - Grátis 2009-04-01 17:40 --------- d-----w c:\documents and settings\home\Dados de aplicativos\AVG7 2009-03-26 15:22 --------- d-----w c:\arquivos de programas\DOC 2009-03-20 14:18 --------- d-----w c:\documents and settings\All Users\Dados de aplicativos\UOL 2009-03-20 14:18 --------- d-----w c:\arquivos de programas\UOL 2009-02-15 14:18 --------- d-----w c:\arquivos de programas\Mininova 2008-01-05 19:47 60,696 ----a-w c:\arquivos de programas\STXDLL.DLL 2008-01-05 19:47 40,240 ----a-w c:\arquivos de programas\RUNSTX.EXE 2008-01-05 19:47 236,816 ----a-w c:\arquivos de programas\SysTrayX.EXE 2006-07-03 08:35 3,363 ----a-w c:\arquivos de programas\CHANGES.TXT 2002-04-22 22:09 705 ----a-w c:\arquivos de programas\systrayx.exe.manifest 1999-04-01 15:53 99,840 ----a-w c:\arquivos de programas\Arquivos comuns\IRAABOUT.DLL 1998-12-09 01:53 70,144 ----a-w c:\arquivos de programas\Arquivos comuns\IRAMDMTR.DLL 1998-12-09 01:53 48,640 ----a-w c:\arquivos de programas\Arquivos comuns\IRALPTTR.DLL 1998-12-09 01:53 31,744 ----a-w c:\arquivos de programas\Arquivos comuns\IRAWEBTR.DLL 1998-12-09 01:53 186,368 ----a-w c:\arquivos de programas\Arquivos comuns\IRAREG.DLL 1998-12-09 01:53 17,920 ----a-w c:\arquivos de programas\Arquivos comuns\IRASRIAL.DLL . (((((((((((((((((((((((((( Pontos de Carregamento do Registro ))))))))))))))))))))))))))))))))))))))) . . *Nota* entradas vazias e legítimas por defeito não são mostradas. REGEDIT4 [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks] "{f592709f-ff4a-4862-b659-4afabda56312}"= "c:\arquivos de programas\Mininova\tbMini.dll" [2008-09-15 1784856] [HKEY_CLASSES_ROOT\clsid\{f592709f-ff4a-4862-b659-4afabda56312}] [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{f592709f-ff4a-4862-b659-4afabda56312}] 2008-09-15 06:47 1784856 --a------ c:\arquivos de programas\Mininova\tbMini.dll [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "{f592709f-ff4a-4862-b659-4afabda56312}"= "c:\arquivos de programas\Mininova\tbMini.dll" [2008-09-15 1784856] [HKEY_CLASSES_ROOT\clsid\{f592709f-ff4a-4862-b659-4afabda56312}] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser] "{F592709F-FF4A-4862-B659-4AFABDA56312}"= "c:\arquivos de programas\Mininova\tbMini.dll" [2008-09-15 1784856] [HKEY_CLASSES_ROOT\clsid\{f592709f-ff4a-4862-b659-4afabda56312}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "msnmsgr"="c:\arquivos de programas\MSN Messenger\msnmsgr.exe" [2008-06-20 5674352] "BitComet"="c:\arquivos de programas\BitComet\BitComet.exe" [2008-06-03 2596152] "MSMSGS"="c:\arquivos de programas\Messenger\msmsgs.exe" [2004-08-04 1667584] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AVG7_CC"="c:\arquiv~1\Grisoft\AVG7\avgcc.exe" [2009-03-01 590848] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-31 7634944] "Timer"="c:\arquivos de programas\Timer-Net 2.3 -" [bU] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360] "AVG7_Run"="c:\arquiv~1\Grisoft\AVG7\avgw.exe" [2007-06-07 219136] [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Microsoft Office.lnk] path=c:\documents and settings\All Users\Menu Iniciar\Programas\Inicializar\Microsoft Office.lnk backup=c:\windows\pss\Microsoft Office.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Symantec Fax Starter Edition Port.lnk] path=c:\documents and settings\All Users\Menu Iniciar\Programas\Inicializar\Symantec Fax Starter Edition Port.lnk backup=c:\windows\pss\Symantec Fax Starter Edition Port.lnkCommon Startup [HKLM\~\startupfolder\C:^Documents and Settings^home^Menu Iniciar^Programas^Inicializar^SYSTRAYX.LNK] path=c:\documents and settings\home\Menu Iniciar\Programas\Inicializar\SYSTRAYX.LNK backup=c:\windows\pss\SYSTRAYX.LNKStartup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher] --a------ 2008-01-11 22:16 39792 c:\arquivos de programas\Adobe\Reader 8.0\Reader\reader_sl.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitComet] --a------ 2008-06-03 00:42 2596152 c:\arquivos de programas\BitComet\BitComet.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTFMON.EXE] --a------ 2004-08-04 00:45 15360 c:\windows\system32\ctfmon.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS] --------- 2004-08-04 00:56 1667584 c:\arquivos de programas\Messenger\msmsgs.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr] --a------ 2008-06-20 23:37 5674352 c:\arquivos de programas\MSN Messenger\msnmsgr.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck] --a------ 2001-07-09 11:50 155648 c:\windows\system32\NeroCheck.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon] --a------ 2006-10-31 03:35 7634944 c:\windows\system32\nvcpl.dll [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter] --a------ 2006-10-31 03:35 86016 c:\windows\system32\nvmctray.dll [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] --a------ 2008-06-10 04:27 144784 c:\arquivos de programas\Java\jre1.6.0_07\bin\jusched.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz] --a------ 2006-10-31 03:35 1622016 c:\windows\system32\nwiz.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL] -r------- 2007-07-05 05:08 16380416 c:\windows\RTHDCPL.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel] -r------- 2007-06-15 05:45 1826816 c:\windows\SkyTel.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusDisableNotify"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Arquivos de programas\\MSN Messenger\\msnmsgr.exe"= "c:\\Arquivos de programas\\MSN Messenger\\livecall.exe"= "c:\\Arquivos de programas\\Grisoft\\AVG7\\avginet.exe"= "c:\\Arquivos de programas\\Grisoft\\AVG7\\avgamsvr.exe"= "c:\\Arquivos de programas\\Grisoft\\AVG7\\avgcc.exe"= "c:\\Arquivos de programas\\Grisoft\\AVG7\\avgemc.exe"= "c:\\Arquivos de programas\\BitComet\\BitComet.exe"= "c:\\Arquivos de programas\\Messenger\\msmsgs.exe"= "c:\\Arquivos de programas\\FrostWire\\FrostWire.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "26714:TCP"= 26714:TCP:BitComet 26714 TCP "26714:UDP"= 26714:UDP:BitComet 26714 UDP "22923:TCP"= 22923:TCP:BitComet 22923 TCP "22923:UDP"= 22923:UDP:BitComet 22923 UDP . . ------- Scan Suplementar ------- . uStart Page = hxxp://www.ig.com.br/ IE: Baixar link usando &BitComet - c:\arquivos de programas\BitComet\BitComet.exe/AddLink.htm IE: Baixar todos os links usando BitComet - c:\arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm IE: Baixar todos os vídeos usando BitComet - c:\arquivos de programas\BitComet\BitComet.exe/AddVideo.htm Trusted Zone: hotmail.com\www Trusted Zone: live.com\www Trusted Zone: msn.com\www Trusted Zone: passport.com\www FF - ProfilePath - c:\documents and settings\home\Dados de aplicativos\Mozilla\Firefox\Profiles\ojcdcd48.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.uol.com.br/ . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-04-02 00:10:24 Windows 5.1.2600 Service Pack 2 NTFS Procurando processos ocultos ... Procurando entradas auto inicializáveis ocultas ... Procurando ficheiros/arquivos ocultos ... Varredura completada com sucesso arquivos/ficheiros ocultos: 0 ************************************************************************** . Tempo para conclusão: 2009-04-02 0:11:42 ComboFix-quarantined-files.txt 2009-04-02 03:11:33 ComboFix2.txt 2009-03-29 18:27:20 ComboFix3.txt 2008-11-19 13:02:25 ComboFix4.txt 2008-10-06 13:43:03 ComboFix5.txt 2009-04-02 03:08:18 Pré-execução: 16 pasta(s) 29.185.744.896 bytes disponíveis Pós execução: 15 pasta(s) 29,229,654,016 bytes disponíveis 153 Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 4, 2009 Com o navegador Internet Explorer, acesse o Kaspersky Online Scanner e faça um scan online seguindo o tutorial abaixo. Tutorial Kaspersky Online Scanner Ao término do scan, salve o relatório com a extensão .txt (como mostra no final do tutorial) e poste em sua próxima resposta. Compartilhar este post Link para o post Compartilhar em outros sites
Bond2006 0 Denunciar post Postado Abril 5, 2009 Amigo segui seus conselhos mais nao consegui chegar ao final pq quando o Kaspersky comeca a baixar os arquivos ele so baixa o 1º deles (cerca de 560 Kb) quando chega no 2º arquivo com cerca de 2.1 Mb o computador so chega a baixar 500 kb depois disso ele retorna ao 0 e quando chega por volta dos 500 kb novamente ele recomeça tudo de novo,se voce puder me passar outra soluçao eu agradeceria muito ok?Obrigado. Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 5, 2009 • Baixe: < Kaspersky Virus Removal Tool > • Salve-o em Arquivos de Programas,e instale-o aí mesmo! • Reinicie o computador,em Modo de Segurança! <-- Importante! • Dê início ao exame,clicando em "Scan". • A verificação é um pouco demorada. Aguarde! • Caso seja encontrada infecções,clique em "disinfect". • Terminando,clique na aba Events. • Desmarque a caixa de seleção "Show all events". • Clique em "Save to file". • Nomeie-o e salve-o no desktop! <-- Relatório para postagem! • Poste,também,HijackThis atualizado. Compartilhar este post Link para o post Compartilhar em outros sites
Bond2006 0 Denunciar post Postado Abril 5, 2009 Ola segue anexo o log do Hijackthis e o Relatorio do Kaspersky tb: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:53:36, on 05/04/09 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Safe mode Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: is-A6V1Q.lnk = C:\Documents and Settings\home\Desktop\Virus Removal Tool\is-A6V1Q\startup.exe O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570 O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe -- End of file - 4975 bytes Scan ---- Scanned: 161578 Detected: 6 Untreated: 0 Start time: 05/04/09 19:05:03 Duration: 00:46:09 Finish time: 05/04/09 19:51:12 Detected -------- Status Object ------ ------ disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\ASAS DO PRAZER.mp3 disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\DEIXA O AMOR ACONTECER.mp3 disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\fabio jr - vida.mp3 deleted: Trojan program Trojan-Downloader.WMA.Wimad.n File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\inimigos da hp-tudo como esta.wma disinfected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\SONHO.mp3 deleted: adware not-a-virus:AdWare.Win32.Agent.jb File: C:\QooBox\Quarantine\C\Arquivos de programas\PlayMP3z\PlayMP3.exe.vir Events ------ Time Name Status Reason ---- ---- ------ ------ 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file05 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file06 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file07 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file08 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file09 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file10 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file11 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file12 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file13 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file14 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file15 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file16 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file17 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file18 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file19 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file20 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file21 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file22 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file23 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file24 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file25 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file26 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file27 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file28 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file29 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file30 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file31 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file32 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file33 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file34 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file35 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file36 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file37 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file38 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file39 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file40 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file41 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file42 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file43 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file44 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file45 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file46 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file47 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file48 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file49 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file50 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file51 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file52 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file53 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file54 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file55 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file56 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file57 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file58 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file59 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file60 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file61 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file62 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file63 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file64 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file65 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file66 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file67 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file68 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file69 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file70 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file71 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file72 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file73 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file74 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file75 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file76 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file77 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file78 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file79 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file80 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file81 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file82 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file83 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file84 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file85 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file86 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file87 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file88 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file89 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file90 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file91 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file92 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file93 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file94 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file95 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file96 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file97 password protected 05/04/09 19:27:54 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file98 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file007 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file008 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file009 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file010 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file011 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file012 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file013 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file014 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file015 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file016 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file017 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file018 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file019 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file020 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file021 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file022 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file023 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file024 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file025 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file026 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file028 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file029 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file030 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file031 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file032 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file033 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file034 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file035 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file036 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file037 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file038 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file039 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file040 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file041 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file042 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file043 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file044 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file045 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file046 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file047 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file048 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file049 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file050 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file051 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file052 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file053 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file054 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file055 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file056 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file057 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file058 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file059 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file060 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file061 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file062 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file063 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file064 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file065 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file066 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file067 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file068 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file069 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file070 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file071 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file072 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file073 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file074 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file075 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file076 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file077 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file078 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file079 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file080 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file081 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file082 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file083 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file084 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file085 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file086 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file087 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file088 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file089 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file090 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file091 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file092 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file093 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file094 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file095 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file096 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file097 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file098 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file099 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file100 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file101 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file102 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file103 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file104 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file105 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file106 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file107 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file108 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file109 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file110 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file111 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file112 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file113 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file114 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file115 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file116 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file117 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file118 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file119 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file120 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file121 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file122 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file123 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file124 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file125 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file126 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file127 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file128 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file129 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file130 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file131 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file132 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file133 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file134 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file135 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file136 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file137 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file138 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file139 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file140 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file141 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file142 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file143 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file144 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file145 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file146 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file147 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file148 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file149 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file150 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file151 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file152 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file153 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file154 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file155 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file156 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file157 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file158 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file159 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file160 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file161 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file162 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file163 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file164 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file165 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file166 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file167 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file168 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file169 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file170 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file171 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file172 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file173 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file174 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file175 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file176 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file177 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file178 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file179 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file180 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file181 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file182 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file183 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file184 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file185 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file186 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file187 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file188 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file189 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file190 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file191 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file192 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file193 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file194 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file195 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file196 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file197 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file198 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file199 password protected 05/04/09 19:28:57 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file200 password protected 05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\ASAS DO PRAZER.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\ASAS DO PRAZER.mp3 not disinfected postponed 05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\DEIXA O AMOR ACONTECER.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\DEIXA O AMOR ACONTECER.mp3 not disinfected postponed 05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\fabio jr - vida.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:29:37 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\fabio jr - vida.mp3 not disinfected postponed 05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\inimigos da hp-tudo como esta.wma detected Trojan program 'Trojan-Downloader.WMA.Wimad.n' 05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\inimigos da hp-tudo como esta.wma not disinfected postponed 05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\SONHO.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:29:38 File: C:\Documents and Settings\home\Meus documentos\FrostWire\Saved\SONHO.mp3 not disinfected postponed 05/04/09 19:31:16 File: C:\QooBox\Quarantine\C\Arquivos de programas\PlayMP3z\PlayMP3.exe.vir detected adware 'not-a-virus:AdWare.Win32.Agent.jb' 05/04/09 19:31:16 File: C:\QooBox\Quarantine\C\Arquivos de programas\PlayMP3z\PlayMP3.exe.vir not disinfected postponed 05/04/09 19:49:05 File: c:\documents and settings\home\meus documentos\frostwire\saved\asas do prazer.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:49:17 File: c:\documents and settings\home\meus documentos\frostwire\saved\asas do prazer.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:49:18 File: c:\documents and settings\home\meus documentos\frostwire\saved\deixa o amor acontecer.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:49:27 File: c:\documents and settings\home\meus documentos\frostwire\saved\deixa o amor acontecer.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:49:28 File: c:\documents and settings\home\meus documentos\frostwire\saved\fabio jr - vida.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:49:34 File: c:\documents and settings\home\meus documentos\frostwire\saved\fabio jr - vida.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:49:35 File: c:\documents and settings\home\meus documentos\frostwire\saved\inimigos da hp-tudo como esta.wma detected Trojan program 'Trojan-Downloader.WMA.Wimad.n' 05/04/09 19:50:23 File: c:\documents and settings\home\meus documentos\frostwire\saved\inimigos da hp-tudo como esta.wma deleted 05/04/09 19:50:23 File: c:\documents and settings\home\meus documentos\frostwire\saved\sonho.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:50:29 File: c:\documents and settings\home\meus documentos\frostwire\saved\sonho.mp3 disinfected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 05/04/09 19:50:30 File: c:\qoobox\quarantine\c\arquivos de programas\playmp3z\playmp3.exe.vir detected adware 'not-a-virus:AdWare.Win32.Agent.jb' 05/04/09 19:51:12 File: c:\qoobox\quarantine\c\arquivos de programas\playmp3z\playmp3.exe.vir deleted Statistics ---------- Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted ------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ --------- Settings -------- Parameter Value --------- ----- Security Level Recommended Action Prompt for action when the scan is complete Run mode Manually File types Scan all files Scan only new and changed files No Scan archives All Scan embedded OLE objects All Skip if object is larger than No Skip if scan takes longer than No Parse email formats No Scan password-protected archives No Enable iChecker technology No Enable iSwift technology No Show detected threats on "Detected" tab Yes Rootkits search Yes Deep rootkits search No Use heuristic analyzer Yes Quarantine ---------- Status Object Size Added ------ ------ ---- ----- Backup ------ Status Object Size ------ ------ ---- Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 6, 2009 Execute novamente a ferramenta e clique em disinfect quando algo for detectado. Se não for possível desinfectar o arquivo, clique em delete. Salve o log e poste aqui, juntamente com um novo log do HijackThis. Compartilhar este post Link para o post Compartilhar em outros sites
Bond2006 0 Denunciar post Postado Abril 9, 2009 Segue abaixo os novos logs : Scan ---- Scanned: 295334 Detected: 0 Untreated: 0 Start time: 08/04/09 12:21:29 Duration: 01:25:15 Finish time: 08/04/09 13:46:44 Detected -------- Status Object ------ ------ Events ------ Time Name Status Reason ---- ---- ------ ------ 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file05 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file06 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file07 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file08 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file09 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file10 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file11 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file12 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file13 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file14 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file15 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file16 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file17 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file18 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file19 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file20 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file21 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file22 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file23 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file24 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file25 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file26 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file27 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file28 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file29 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file30 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file31 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file32 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file33 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file34 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file35 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file36 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file37 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file38 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file39 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file40 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file41 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file42 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file43 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file44 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file45 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file46 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file47 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file48 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file49 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file50 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file51 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file52 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file53 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file54 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file55 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file56 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file57 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file58 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file59 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file60 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file61 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file62 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file63 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file64 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file65 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file66 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file67 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file68 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file69 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file70 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file71 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file72 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file73 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file74 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file75 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file76 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file77 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file78 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file79 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file80 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file81 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file82 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file83 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file84 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file85 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file86 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file87 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file88 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file89 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file90 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file91 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file92 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file93 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file94 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file95 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file96 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file97 password protected 08/04/09 12:43:58 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file98 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file007 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file008 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file009 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file010 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file011 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file012 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file013 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file014 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file015 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file016 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file017 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file018 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file019 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file020 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file021 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file022 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file023 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file024 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file025 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file026 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file028 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file029 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file030 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file031 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file032 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file033 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file034 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file035 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file036 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file037 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file038 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file039 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file040 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file041 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file042 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file043 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file044 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file045 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file046 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file047 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file048 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file049 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file050 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file051 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file052 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file053 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file054 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file055 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file056 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file057 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file058 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file059 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file060 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file061 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file062 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file063 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file064 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file065 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file066 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file067 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file068 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file069 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file070 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file071 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file072 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file073 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file074 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file075 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file076 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file077 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file078 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file079 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file080 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file081 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file082 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file083 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file084 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file085 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file086 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file087 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file088 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file089 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file090 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file091 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file092 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file093 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file094 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file095 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file096 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file097 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file098 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file099 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file100 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file101 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file102 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file103 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file104 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file105 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file106 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file107 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file108 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file109 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file110 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file111 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file112 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file113 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file114 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file115 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file116 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file117 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file118 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file119 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file120 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file121 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file122 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file123 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file124 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file125 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file126 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file127 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file128 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file129 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file130 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file131 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file132 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file133 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file134 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file135 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file136 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file137 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file138 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file139 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file140 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file141 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file142 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file143 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file144 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file145 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file146 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file147 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file148 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file149 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file150 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file151 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file152 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file153 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file154 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file155 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file156 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file157 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file158 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file159 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file160 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file161 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file162 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file163 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file164 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file165 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file166 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file167 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file168 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file169 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file170 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file171 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file172 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file173 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file174 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file175 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file176 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file177 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file178 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file179 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file180 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file181 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file182 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file183 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file184 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file185 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file186 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file187 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file188 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file189 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file190 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file191 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file192 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file193 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file194 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file195 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file196 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file197 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file198 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file199 password protected 08/04/09 12:44:59 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file200 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file05 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file06 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file07 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file08 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file09 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file10 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file11 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file12 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file13 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file14 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file15 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file16 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file17 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file18 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file19 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file20 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file21 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file22 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file23 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file24 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file25 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file26 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file27 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file28 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file29 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file30 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file31 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file32 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file33 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file34 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file35 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file36 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file37 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file38 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file39 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file40 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file41 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file42 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file43 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file44 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file45 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file46 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file47 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file48 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file49 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file50 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file51 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file52 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file53 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file54 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file55 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file56 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file57 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file58 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file59 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file60 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file61 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file62 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file63 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file64 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file65 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file66 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file67 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file68 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file69 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file70 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file71 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file72 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file73 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file74 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file75 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file76 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file77 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file78 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file79 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file80 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file81 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file82 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file83 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file84 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file85 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file86 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file87 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file88 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file89 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file90 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file91 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file92 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file93 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file94 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file95 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file96 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file97 password protected 08/04/09 13:25:32 File: C:\Documents and Settings\home\Desktop\realalt180lite.exe//file98 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file007 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file008 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file009 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file010 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file011 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file012 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file013 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file014 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file015 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file016 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file017 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file018 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file019 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file020 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file021 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file022 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file023 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file024 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file025 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file026 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file028 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file029 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file030 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file031 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file032 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file033 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file034 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file035 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file036 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file037 password protected 08/04/09 13:26:33 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file038 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file039 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file040 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file041 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file042 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file043 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file044 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file045 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file046 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file047 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file048 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file049 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file050 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file051 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file052 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file053 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file054 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file055 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file056 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file057 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file058 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file059 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file060 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file061 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file062 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file063 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file064 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file065 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file066 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file067 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file068 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file069 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file070 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file071 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file072 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file073 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file074 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file075 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file076 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file077 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file078 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file079 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file080 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file081 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file082 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file083 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file084 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file085 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file086 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file087 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file088 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file089 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file090 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file091 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file092 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file093 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file094 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file095 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file096 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file097 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file098 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file099 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file100 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file101 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file102 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file103 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file104 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file105 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file106 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file107 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file108 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file109 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file110 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file111 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file112 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file113 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file114 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file115 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file116 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file117 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file118 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file119 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file120 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file121 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file122 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file123 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file124 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file125 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file126 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file127 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file128 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file129 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file130 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file131 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file132 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file133 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file134 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file135 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file136 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file137 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file138 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file139 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file140 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file141 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file142 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file143 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file144 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file145 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file146 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file147 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file148 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file149 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file150 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file151 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file152 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file153 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file154 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file155 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file156 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file157 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file158 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file159 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file160 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file161 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file162 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file163 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file164 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file165 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file166 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file167 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file168 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file169 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file170 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file171 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file172 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file173 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file174 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file175 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file176 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file177 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file178 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file179 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file180 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file181 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file182 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file183 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file184 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file185 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file186 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file187 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file188 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file189 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file190 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file191 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file192 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file193 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file194 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file195 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file196 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file197 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file198 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file199 password protected 08/04/09 13:26:34 File: C:\Documents and Settings\home\Desktop\PROGRAMAS\klcodec395f.exe//file200 password protected Statistics ---------- Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted ------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ --------- Settings -------- Parameter Value --------- ----- Security Level Recommended Action Prompt for action when the scan is complete Run mode Manually File types Scan all files Scan only new and changed files No Scan archives All Scan embedded OLE objects All Skip if object is larger than No Skip if scan takes longer than No Parse email formats No Scan password-protected archives No Enable iChecker technology No Enable iSwift technology No Show detected threats on "Detected" tab Yes Rootkits search Yes Deep rootkits search No Use heuristic analyzer Yes Quarantine ---------- Status Object Size Added ------ ------ ---- ----- Backup ------ Status Object Size ------ ------ ---- Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 13:53:18, on 08/04/09 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Safe mode Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\DOCUME~1\home\CONFIG~1\Temp\_iu14D2N.tmp C:\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ig.com.br/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R3 - URLSearchHook: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O3 - Toolbar: Mininova Toolbar - {f592709f-ff4a-4862-b659-4afabda56312} - C:\Arquivos de programas\Mininova\tbMini.dll O4 - HKLM\..\Run: [AVG7_CC] C:\ARQUIV~1\Grisoft\AVG7\avgcc.exe /STARTUP O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Timer] C:\Arquivos de programas\Timer-Net 2.3 - Grátis\Timer-net.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [bitComet] "C:\Arquivos de programas\BitComet\BitComet.exe" /tray O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\ARQUIV~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: is-A6V1Q.lnk = C:\Documents and Settings\home\Desktop\Virus Removal Tool\is-A6V1Q\startup.exe O8 - Extra context menu item: Baixar link usando &BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddLink.htm O8 - Extra context menu item: Baixar todos os links usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddAllLink.htm O8 - Extra context menu item: Baixar todos os vídeos usando BitComet - res://C:\Arquivos de programas\BitComet\BitComet.exe/AddVideo.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Arquivos de programas\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Arquivos de programas\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...b?1213471087570 O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\ARQUIV~1\Grisoft\AVG7\avgemc.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe -- End of file - 5020 bytes PS: Troquei toda a fiaçao telefonica e minha conexao voltou ao normal,nao sei se era um problema com a fiaçao ou se era devido a algum malware,mais aparente tudo voltou ao normal.Obrigado! Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 9, 2009 Ok, o log estar limpo. Algum problema? Compartilhar este post Link para o post Compartilhar em outros sites
Bond2006 0 Denunciar post Postado Abril 14, 2009 O problema foi resolvido,Obrigado! Compartilhar este post Link para o post Compartilhar em outros sites
PedroN 1 Denunciar post Postado Abril 14, 2009 PROBLEMA RESOLVIDO! Caso o autor necessite que o tópico seja reaberto basta enviar uma Mensagem Privada para um Moderador com um link para o tópico. Compartilhar este post Link para o post Compartilhar em outros sites