Ir para conteúdo

POWERED BY:

Arquivado

Este tópico foi arquivado e está fechado para novas respostas.

elismarmota

[Resolvido!] Problema com Proteção Residente do Avast e AVG

Recommended Posts

desculpe - me, estou postando novamente aqui é que havia creio eu postado no lugar errado.

 

bom dia, preciso de ajuda pra solicionar este problema recentemente fui infectado pelo virus Bagle e etc. com ajuda de alguns topicos de vcs conseguir eliminar o virus más ao instalar estes anti virus AVAST e AVG, separadamente claro os dois da o mesmo erro, sendo que o AVG indica que tem outro anti virus instalado só que eu tenho certeza que não tem até spybot e spyware terminator eu desinstalei mesmo assim o AVG indica antivirus instalado o AVAST instala normal só que assim como o AVG não funciona a proteção residente em outra dica de vcs eu usei o comboFix e ai esta o resultado mas o problema continua peço ajuda de vcs, desde já agradeço.

 

 

ComboFix 09-04-04.01 - Proprietário 2009-04-04 21:42:40.2 - NTFSx86

Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1046.18.1918.1318 [GMT -3:00]

Executando de: c:\documents and settings\Proprietário\Desktop\ComboFix.exe

Comandos utilizados :: c:\documents and settings\Proprietário\Desktop\CFScript.txt

AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated)

* Criado um novo ponto de restauro

.

 

(((((((((((((((( Arquivos/Ficheiros criados de 2009-03-05 to 2009-04-05 ))))))))))))))))))))))))))))

.

 

2009-04-04 11:17 . 2009-04-04 11:17 <DIR> d-------- c:\documents and settings\Rose\Dados de aplicativos\vlc

2009-04-04 10:27 . 2009-04-04 11:15 <DIR> d-------- c:\documents and settings\Rose\Dados de aplicativos\dvdcss

2009-04-03 23:09 . 2009-04-03 23:13 <DIR> d-------- c:\windows\system32\drivers\Avg

2009-04-03 23:09 . 2009-04-03 23:09 325,640 --a------ c:\windows\system32\drivers\avgldx86.sys

2009-04-03 23:09 . 2009-04-03 23:09 108,552 --a------ c:\windows\system32\drivers\avgtdix.sys

2009-04-03 23:09 . 2009-04-03 23:09 10,520 --a------ c:\windows\system32\avgrsstx.dll

2009-04-03 23:08 . 2009-04-03 23:08 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\avg8

2009-04-03 23:08 . 2009-04-03 23:08 <DIR> d-------- c:\arquivos de programas\AVG

2009-04-03 16:39 . 2009-04-03 16:40 4,212 --ah----- c:\windows\system32\zllictbl.dat

2009-04-03 16:37 . 2009-04-03 19:40 <DIR> d-------- c:\windows\Internet Logs

2009-04-03 13:32 . 2009-04-03 13:33 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\vlc

2009-04-03 11:08 . 2009-04-03 11:45 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\dvdcss

2009-04-03 09:47 . 2009-04-03 09:47 111 --a------ c:\windows\system32\BIN_STRSBW.SPT

2009-04-03 09:29 . 2009-04-03 09:29 <DIR> d-------- C:\!KillBox

2009-04-03 09:15 . 2009-04-03 09:15 <DIR> d-------- c:\arquivos de programas\Windows Defender

2009-04-03 09:03 . 2009-04-03 09:03 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\Malwarebytes

2009-04-03 09:03 . 2009-04-03 09:03 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\Malwarebytes

2009-04-03 09:03 . 2009-04-03 09:03 <DIR> d-------- c:\arquivos de programas\Malwarebytes' Anti-Malware

2009-04-03 09:03 . 2009-03-26 16:49 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys

2009-04-03 09:03 . 2009-03-26 16:49 15,504 --a------ c:\windows\system32\drivers\mbam.sys

2009-04-03 08:58 . 2009-04-03 09:01 <DIR> d-------- c:\arquivos de programas\Windows Live Safety Center

2009-04-03 07:52 . 2009-04-03 07:52 <DIR> d-------- c:\arquivos de programas\VideoLAN

2009-04-02 21:12 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\17539689.sys

2009-04-02 21:06 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\15667646.sys

2009-04-02 20:29 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\84787047.sys

2009-04-02 20:28 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\34374809.sys

2009-04-02 15:55 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\93140114.sys

2009-04-02 14:09 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\05917892.sys

2009-04-02 13:51 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\26434630.sys

2009-04-02 13:48 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\57062493.sys

2009-04-02 13:42 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\71881065.sys

2009-04-02 10:09 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\65014460.sys

2009-04-02 09:37 . 2009-04-02 22:49 <DIR> d--h----- c:\documents and settings\Proprietário\Dados de aplicativos\dias

2009-04-02 08:53 . 2009-04-02 08:53 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\PCToolsFirewallPlus

2009-04-01 23:56 . 2009-04-01 23:56 <DIR> d--hs---- c:\documents and settings\NetworkService\IETldCache

2009-04-01 21:56 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\29645321.sys

2009-04-01 21:52 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\80039397.sys

2009-04-01 21:49 . 2009-04-04 21:45 17,848,352 --ahs---- c:\windows\system32\drivers\fidbox.dat

2009-04-01 21:49 . 2009-04-04 21:28 201,956 --ahs---- c:\windows\system32\drivers\fidbox.idx

2009-04-01 21:49 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\61080953.sys

2009-04-01 21:41 . 2008-07-08 14:54 148,496 --a------ c:\windows\system32\drivers\09714174.sys

2009-04-01 08:11 . 2009-04-01 08:22 49 --a------ c:\windows\NeroDigital.ini

2009-03-29 21:33 . 2009-03-29 22:03 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\CyberLink

2009-03-29 21:33 . 2009-03-29 21:33 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\CyberLink

2009-03-29 19:02 . 2009-03-29 19:02 <DIR> d-------- c:\arquivos de programas\Defraggler

2009-03-29 17:14 . 2009-03-29 21:33 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\Ahead

2009-03-29 17:08 . 2009-03-29 17:08 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\Ahead

2009-03-29 17:06 . 2009-03-29 17:06 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\Nero

2009-03-29 17:06 . 2009-03-29 17:06 <DIR> d-------- c:\arquivos de programas\Nero

2009-03-29 17:06 . 2009-03-29 17:08 <DIR> d-------- c:\arquivos de programas\Arquivos comuns\Ahead

2009-03-29 17:02 . 2002-12-11 20:11 35,916 --a------ c:\windows\WMPrfPTG.prx

2009-03-29 17:01 . 2009-03-29 17:01 <DIR> d-------- C:\MyWorks

2009-03-29 17:01 . 2001-03-08 18:30 24,064 --------- c:\windows\system32\msxml3a.dll

2009-03-29 17:00 . 2009-03-29 17:01 <DIR> d-------- c:\arquivos de programas\CyberLink

2009-03-29 14:40 . 2009-03-29 14:40 <DIR> d--hs---- c:\documents and settings\Administrador\IETldCache

2009-03-29 14:39 . 2009-02-28 22:06 <DIR> d--h----- c:\documents and settings\Administrador\Modelos

2009-03-29 14:39 . 2009-02-28 18:57 <DIR> d-------- c:\documents and settings\Administrador\Meus documentos

2009-03-29 14:39 . 2009-02-28 18:57 <DIR> dr------- c:\documents and settings\Administrador\Menu Iniciar

2009-03-29 14:39 . 2009-02-28 18:57 <DIR> d-------- c:\documents and settings\Administrador\Favoritos

2009-03-29 14:39 . 2009-02-28 18:57 <DIR> dr-h----- c:\documents and settings\Administrador\Dados de aplicativos

2009-03-29 14:39 . 2009-04-04 21:45 <DIR> d--h----- c:\documents and settings\Administrador\Configurações locais

2009-03-29 14:39 . 2009-02-28 18:57 <DIR> d--h----- c:\documents and settings\Administrador\Ambiente de rede

2009-03-29 14:39 . 2009-02-28 18:57 <DIR> d--h----- c:\documents and settings\Administrador\Ambiente de impressão

2009-03-29 14:39 . 2009-04-03 23:09 <DIR> d-------- c:\documents and settings\Administrador

2009-03-29 04:28 . 2009-02-28 22:06 <DIR> d--h----- c:\documents and settings\Rose\Modelos

2009-03-29 04:28 . 2009-03-30 07:17 <DIR> dr------- c:\documents and settings\Rose\Meus documentos

2009-03-29 04:28 . 2009-02-28 18:57 <DIR> dr------- c:\documents and settings\Rose\Menu Iniciar

2009-03-29 04:28 . 2009-03-29 04:28 <DIR> d--hs---- c:\documents and settings\Rose\IETldCache

2009-03-29 04:28 . 2009-03-29 04:28 <DIR> dr------- c:\documents and settings\Rose\Favoritos

2009-03-29 04:28 . 2009-04-04 11:55 <DIR> d-------- c:\documents and settings\Rose\Dados de aplicativos\Orbit

2009-03-29 04:28 . 2009-04-04 11:17 <DIR> dr-h----- c:\documents and settings\Rose\Dados de aplicativos

2009-03-29 04:28 . 2009-04-04 21:45 <DIR> d--h----- c:\documents and settings\Rose\Configurações locais

2009-03-29 04:28 . 2009-02-28 18:57 <DIR> d--h----- c:\documents and settings\Rose\Ambiente de rede

2009-03-29 04:28 . 2009-02-28 18:57 <DIR> d--h----- c:\documents and settings\Rose\Ambiente de impressão

2009-03-29 04:28 . 2009-04-03 23:09 <DIR> d-------- c:\documents and settings\Rose

2009-03-29 04:25 . 2009-03-29 04:25 0 --a------ C:\list

2009-03-28 21:49 . 2009-03-28 21:49 <DIR> d-------- c:\windows\Sun

2009-03-28 21:46 . 2009-03-28 21:48 <DIR> d-------- C:\LinhaDefensiva

2009-03-28 21:41 . 2009-03-28 21:41 <DIR> d-------- c:\windows\McAfee.com

2009-03-28 21:18 . 2009-03-28 21:18 <DIR> d-------- c:\arquivos de programas\Panda Security

2009-03-28 20:10 . 2008-06-19 16:20 57,344 --a------ c:\windows\ALCMTR.EXE

2009-03-28 15:56 . 2009-03-28 15:56 <DIR> d-------- c:\arquivos de programas\EasyPrediction

2009-03-28 15:47 . 2009-03-28 15:47 <DIR> d-------- c:\arquivos de programas\GameVicio

2009-03-28 15:47 . 2009-03-31 23:03 43,520 --a------ c:\windows\system32\CmdLineExt03.dll

2009-03-28 15:40 . 2009-03-31 23:01 <DIR> d-------- c:\arquivos de programas\GameSpy Arcade

2009-03-28 15:33 . 2009-03-29 21:17 <DIR> d-------- c:\arquivos de programas\Illusion Softworks

2009-03-28 12:59 . 2009-03-28 12:59 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\Desktopicon

2009-03-28 12:59 . 2009-03-28 12:59 <DIR> d-------- c:\arquivos de programas\DsNET Corp

2009-03-28 12:59 . 2004-03-09 00:00 124,688 --a------ c:\windows\system32\MSWINSCK.OCX

2009-03-26 21:35 . 2009-03-26 22:11 42,112 --a------ c:\windows\system32\drivers\motodrv.sys

2009-03-26 21:26 . 2009-03-26 21:26 3,567 --a------ c:\windows\system32\drivers\PortTalk.sys

2009-03-25 13:53 . 2009-03-25 13:53 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\Trymedia

2009-03-25 13:53 . 2009-03-25 13:58 <DIR> d-------- c:\arquivos de programas\Fishing Trip

2009-03-25 13:43 . 2009-03-25 13:43 <DIR> d-------- c:\arquivos de programas\FreeGames4Rest

2009-03-25 07:54 . 2008-04-25 19:41 218,624 --a--c--- c:\windows\system32\dllcache\uxtheme.dll

2009-03-23 23:46 . 2009-03-23 23:46 <DIR> d--hs---- c:\documents and settings\LocalService\IETldCache

2009-03-23 22:36 . 2009-03-23 22:36 <DIR> d-------- c:\documents and settings\Proprietário\fontconfig

2009-03-23 22:36 . 2009-03-23 22:36 <DIR> d-------- c:\documents and settings\Proprietário\fontconfig

2009-03-23 21:58 . 2009-03-23 21:58 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\VSRevoGroup

2009-03-23 21:03 . 2009-03-23 21:03 <DIR> d-------- c:\arquivos de programas\SopCast

2009-03-23 20:42 . 2009-03-23 20:42 <DIR> d-------- c:\arquivos de programas\Free ISO Creator

2009-03-23 20:26 . 2009-03-23 20:26 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\DAEMON Tools Pro

2009-03-23 20:26 . 2009-03-23 20:26 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\DAEMON Tools

2009-03-23 20:26 . 2009-03-23 20:26 <DIR> d-------- c:\documents and settings\All Users\Dados de aplicativos\DAEMON Tools Lite

2009-03-23 20:25 . 2009-03-23 20:25 <DIR> d-------- c:\arquivos de programas\DAEMON Tools Toolbar

2009-03-23 20:25 . 2009-03-24 07:45 <DIR> d-------- c:\arquivos de programas\DAEMON Tools Lite

2009-03-23 20:22 . 2009-03-23 20:35 <DIR> d-------- c:\documents and settings\Proprietário\Dados de aplicativos\DAEMON Tools Lite

2009-03-23 20:22 . 2009-03-23 20:22 717,296 --a------ c:\windows\system32\drivers\sptd.sys

2009-03-22 21:21 . 2008-10-16 14:06 268,648 --a------ c:\windows\system32\mucltui.dll

2009-03-22 21:21 . 2008-10-16 14:06 208,744 --a------ c:\windows\system32\muweb.dll

2009-03-22 21:21 . 2008-10-16 14:06 27,496 --a------ c:\windows\system32\mucltui.dll.mui

2009-03-22 13:49 . 2009-03-23 20:25 <DIR> d-------- c:\documents and settings\Proprietário\Tracing

2009-03-22 13:49 . 2009-03-23 20:25 <DIR> d-------- c:\documents and settings\Proprietário\Tracing

2009-03-22 13:49 . 2006-11-29 13:06 3,426,072 --a------ c:\windows\system32\d3dx9_32.dll

2009-03-22 13:48 . 2009-03-22 13:48 <DIR> d-------- c:\arquivos de programas\Microsoft SQL Server Compact Edition

2009-03-22 13:48 . 2009-03-22 13:48 <DIR> d-------- c:\arquivos de programas\Microsoft

2009-03-22 13:47 . 2009-03-22 13:47 <DIR> d-------- c:\arquivos de programas\Windows Live SkyDrive

2009-03-22 13:47 . 2009-03-22 13:49 <DIR> d-------- c:\arquivos de programas\Windows Live

2009-03-22 13:40 . 2009-03-22 13:40 <DIR> d-------- c:\arquivos de programas\Arquivos comuns\Windows Live

2009-03-20 20:07 . 2009-03-20 20:07 <DIR> d--hs---- c:\documents and settings\Proprietário\IECompatCache

2009-03-20 20:07 . 2009-03-20 20:07 <DIR> d--hs---- c:\documents and settings\Proprietário\IECompatCache

2009-03-20 20:04 . 2009-03-20 20:04 <DIR> d--hs---- c:\documents and settings\Proprietário\PrivacIE

2009-03-20 20:04 . 2009-03-20 20:04 <DIR> d--hs---- c:\documents and settings\Proprietário\PrivacIE

2009-03-20 20:02 . 2009-03-20 20:02 <DIR> d--hs---- c:\documents and settings\Proprietário\IETldCache

2009-03-20 20:02 . 2009-03-20 20:02 <DIR> d--hs---- c:\documents and settings\Proprietário\IETldCache

 

.

((((((((((((((((((((((((((((((((((((( Relatório Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2009-04-05 00:30 --------- d-----w c:\documents and settings\Proprietário\Dados de aplicativos\Orbit

2009-04-04 02:00 --------- d-----w c:\arquivos de programas\Alwil Software

2009-04-03 22:43 --------- d---a-w c:\documents and settings\All Users\Dados de aplicativos\TEMP

2009-04-01 02:01 --------- d--h--w c:\arquivos de programas\InstallShield Installation Information

2009-03-28 23:10 --------- d-----w c:\arquivos de programas\Realtek

2009-03-28 23:08 15,600 ----a-w c:\windows\gdrv.sys

2009-03-28 18:13 --------- d-----w c:\arquivos de programas\Arquivos comuns\InstallShield

2009-03-28 16:46 --------- d-----w c:\arquivos de programas\Orbitdownloader

2009-03-24 00:42 --------- d-----w c:\arquivos de programas\NTFS Undelete

2009-03-13 02:15 --------- d-----w c:\arquivos de programas\ABBYY FineReader 6.0 Sprint

2009-03-13 02:14 --------- d-----w c:\documents and settings\All Users\Dados de aplicativos\UDL

2009-03-08 07:34 914,944 ----a-w c:\windows\system32\wininet.dll

2009-03-08 07:34 43,008 ----a-w c:\windows\system32\licmgr10.dll

2009-03-08 07:33 420,352 ----a-w c:\windows\system32\vbscript.dll

2009-03-08 07:33 18,944 ----a-w c:\windows\system32\corpol.dll

2009-03-08 07:32 72,704 ----a-w c:\windows\system32\admparse.dll

2009-03-08 07:32 71,680 ----a-w c:\windows\system32\iesetup.dll

2009-03-08 07:31 48,128 ----a-w c:\windows\system32\mshtmler.dll

2009-03-08 07:31 45,568 ----a-w c:\windows\system32\mshta.exe

2009-03-08 07:31 34,816 ----a-w c:\windows\system32\imgutil.dll

2009-03-08 07:22 156,160 ----a-w c:\windows\system32\msls31.dll

2009-03-08 00:53 --------- d-----w c:\arquivos de programas\Escolar

2009-03-05 11:12 --------- d-----w c:\documents and settings\All Users\Dados de aplicativos\EPSON

2009-03-04 16:40 --------- d-----w c:\arquivos de programas\Real

2009-03-04 16:40 --------- d-----w c:\arquivos de programas\Arquivos comuns\xing shared

2009-03-04 16:40 --------- d-----w c:\arquivos de programas\Arquivos comuns\Real

2009-03-04 11:17 --------- d-----w c:\arquivos de programas\BrOffice.org 3

2009-03-03 12:42 --------- d-----w c:\documents and settings\Proprietário\Dados de aplicativos\GrabPro

2009-03-02 12:31 --------- d-----w c:\arquivos de programas\epson

2009-03-02 12:30 --------- d-----w c:\arquivos de programas\Epson Software

2009-03-02 11:51 --------- d-----w c:\documents and settings\Proprietário\Dados de aplicativos\BrOffice.org

2009-03-02 02:33 --------- d-----w c:\arquivos de programas\CONEXANT

2009-03-02 01:32 --------- d-----w c:\documents and settings\Proprietário\Dados de aplicativos\Media Player Classic

2009-03-02 01:31 --------- d-----w c:\arquivos de programas\K-Lite Codec Pack

2009-03-02 01:29 --------- d-----w c:\arquivos de programas\SpeedBit Video Accelerator

2009-03-02 01:26 --------- d-----w c:\arquivos de programas\DAP

2009-03-02 01:24 50,688 ----a-w c:\windows\system32\wbhelp2.dll

2009-03-02 01:24 --------- d-----w c:\documents and settings\All Users\Dados de aplicativos\SpeedBit

2009-03-01 20:48 --------- d-----w c:\arquivos de programas\Lavalys

2009-03-01 16:09 --------- d-----w c:\arquivos de programas\XPC3

2009-03-01 16:09 --------- d-----w c:\arquivos de programas\Firebird

2009-03-01 15:39 --------- d-----w c:\arquivos de programas\Arquivos comuns\Borland Shared

2009-03-01 01:30 --------- d-----w c:\documents and settings\Proprietário\Dados de aplicativos\InstallShield

2009-03-01 01:27 --------- d-----w c:\documents and settings\Proprietário\Dados de aplicativos\ATI

2009-03-01 01:27 --------- d-----w c:\documents and settings\All Users\Dados de aplicativos\ATI

2009-03-01 01:27 --------- d-----w c:\arquivos de programas\DIFX

2009-03-01 01:24 --------- d-----w c:\arquivos de programas\ATI Technologies

2009-03-01 01:19 --------- d-----w c:\arquivos de programas\Yahoo!

2009-03-01 01:10 --------- d-----w c:\arquivos de programas\microsoft frontpage

2009-03-01 01:09 --------- d-----w c:\arquivos de programas\Serviços on-line

2009-03-01 01:08 --------- d-----w c:\arquivos de programas\Arquivos comuns\Serviços

2009-02-09 18:56 67,584 ----a-w c:\windows\system32\ff_vfw.dll

2009-02-09 14:06 1,846,912 ----a-w c:\windows\system32\win32k.sys

2009-02-06 22:14 308,088 ----a-w c:\windows\WLXPGSS.SCR

2009-02-06 21:52 49,504 ----a-w c:\windows\system32\sirenacm.dll

2009-01-16 21:34 499,712 ----a-w c:\windows\system32\msvcp71.dll

2009-01-16 21:34 348,160 ----a-w c:\windows\system32\msvcr71.dll

2009-01-07 21:21 26,144 ----a-w c:\windows\system32\spupdsvc.exe

2009-01-07 21:20 265,720 ----a-w c:\windows\system32\msdbg2.dll

2009-01-07 21:20 26,112 ----a-w c:\windows\system32\idndl.dll

2009-01-07 21:20 24,576 ----a-w c:\windows\system32\nlsdl.dll

2009-01-07 21:20 23,552 ----a-w c:\windows\system32\normaliz.dll

2009-01-05 22:33 3,751,995 ----a-w c:\windows\system32\GPhotos.scr

.

 

((((((((((((((((((((((((((((( SnapShot@2009-04-04_21.24.17.03 )))))))))))))))))))))))))))))))))))))))))

.

+ 2009-04-05 00:29:32 16,384 ----atw c:\windows\Temp\Perflib_Perfdata_26c.dat

.

(((((((((((((((((((((((((( Pontos de Carregamento do Registro )))))))))))))))))))))))))))))))))))))))

.

.

*Nota* entradas vazias e legítimas por defeito não são mostradas.

REGEDIT4

 

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-13 15360]

"SpybotSD TeaTimer"="c:\arquivos de programas\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 2144088]

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"AVG8_TRAY"="c:\arquiv~1\AVG\AVG8\avgtray.exe" [2009-04-03 1932568]

 

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]

"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-13 15360]

 

c:\documents and settings\All Users\Menu Iniciar\Programas\Inicializar\

Orbit.lnk - c:\arquivos de programas\Orbitdownloader\orbitdm.exe [2009-03-08 1719496]

 

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]

2009-04-03 23:09 10520 c:\windows\system32\avgrsstx.dll

 

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Orbit.lnk]

path=c:\documents and settings\All Users\Menu Iniciar\Programas\Inicializar\Orbit.lnk

backup=c:\windows\pss\Orbit.lnkCommon Startup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-2FQPQ.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-2FQPQ.lnk

backup=c:\windows\pss\is-2FQPQ.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-4F4IP.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-4F4IP.lnk

backup=c:\windows\pss\is-4F4IP.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-5BOGA.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-5BOGA.lnk

backup=c:\windows\pss\is-5BOGA.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-5F1HU.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-5F1HU.lnk

backup=c:\windows\pss\is-5F1HU.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-5NOQ6.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-5NOQ6.lnk

backup=c:\windows\pss\is-5NOQ6.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-74OBD.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-74OBD.lnk

backup=c:\windows\pss\is-74OBD.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-CT1H7.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-CT1H7.lnk

backup=c:\windows\pss\is-CT1H7.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-IDOLH.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-IDOLH.lnk

backup=c:\windows\pss\is-IDOLH.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-NVICL.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-NVICL.lnk

backup=c:\windows\pss\is-NVICL.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-PO9J1.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-PO9J1.lnk

backup=c:\windows\pss\is-PO9J1.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-R50C5.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-R50C5.lnk

backup=c:\windows\pss\is-R50C5.lnkStartup

 

[HKLM\~\startupfolder\C:^Documents and Settings^Proprietário^Menu Iniciar^Programas^Inicializar^is-UGR95.lnk]

path=c:\documents and settings\Proprietário\Menu Iniciar\Programas\Inicializar\is-UGR95.lnk

backup=c:\windows\pss\is-UGR95.lnkStartup

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON TX105 Series]

--a------ 2008-02-05 02:00 188928 c:\windows\system32\spool\drivers\w32x86\3\E_FATIEDB.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\InCD]

--a------ 2007-05-15 15:55 1057328 c:\arquivos de programas\Nero\Nero 7\InCD\InCD.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LanguageShortcut]

--a------ 2006-12-05 22:55 54832 c:\arquivos de programas\CyberLink\PowerDVD\Language\Language.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]

--a------ 2007-03-01 15:57 153136 c:\arquivos de programas\Arquivos comuns\Ahead\Lib\NeroCheck.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SecurDisc]

--a------ 2007-05-15 15:55 1628208 c:\arquivos de programas\Nero\Nero 7\InCD\NBHGui.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]

--a------ 2009-03-04 13:40 198160 c:\arquivos de programas\Arquivos comuns\Real\Update_OB\realsched.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]

--a------ 2008-06-19 16:20 57344 c:\windows\ALCMTR.EXE

 

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]

--a------ 2008-12-26 16:20 18081280 c:\windows\RTHDCPL.EXE

 

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]

"%windir%\\system32\\sessmgr.exe"=

"c:\\Arquivos de programas\\DAP\\DAP.exe"=

"%windir%\\Network Diagnostic\\xpnetdiag.exe"=

"c:\\Arquivos de programas\\Orbitdownloader\\orbitdm.exe"=

"c:\\Arquivos de programas\\Orbitdownloader\\orbitnet.exe"=

"c:\\Arquivos de programas\\Valve\\hl.exe"=

"c:\\Arquivos de programas\\Kodak\\Kodak EasyShare software\\bin\\EasyShare.exe"=

"c:\\Arquivos de programas\\eMule\\emule.exe"=

"c:\\Arquivos de programas\\Garena\\Garena.exe"=

"c:\\Arquivos de programas\\Windows Live\\Messenger\\wlcsdk.exe"=

"c:\\Arquivos de programas\\Windows Live\\Messenger\\msnmsgr.exe"=

"c:\\Arquivos de programas\\Windows Live\\Sync\\WindowsLiveSync.exe"=

"c:\\Arquivos de programas\\SopCast\\SopCast.exe"=

"c:\\Arquivos de programas\\SopCast\\adv\\SopAdver.exe"=

"c:\\Arquivos de programas\\GameSpy Arcade\\Aphex.exe"=

 

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-04-03 114768]

R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-04-03 325640]

R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-04-03 108552]

R1 is-4F4IPdrv;is-4F4IPdrv;c:\windows\system32\drivers\84787047.sys [2009-04-02 148496]

R1 is-5F1HUdrv;is-5F1HUdrv;c:\windows\system32\drivers\93140114.sys [2009-04-02 148496]

R1 is-74OBDdrv;is-74OBDdrv;c:\windows\system32\drivers\26434630.sys [2009-04-02 148496]

R1 is-NVICLdrv;is-NVICLdrv;c:\windows\system32\drivers\61080953.sys [2009-04-01 148496]

R1 is-O01RIdrv;is-O01RIdrv;c:\windows\system32\drivers\09714174.sys [2009-04-01 21:41:56 148496]

R1 is-PO9J1drv;is-PO9J1drv;c:\windows\system32\drivers\65014460.sys [2009-04-02 148496]

R1 is-UGR95drv;is-UGR95drv;c:\windows\system32\drivers\71881065.sys [2009-04-02 148496]

R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-04-03 20560]

R2 avg8wd;AVG Free8 WatchDog;c:\arquiv~1\AVG\AVG8\avgwdsvc.exe [2009-04-03 298264]

R2 VideoAcceleratorService;VideoAcceleratorService;c:\arquiv~1\SPEEDB~1\VideoAcceleratorService.exe -start -scm --> c:\arquiv~1\SPEEDB~1\VideoAcceleratorService.exe -start -scm [?]

R2 WinDefend;Windows Defender;c:\arquivos de programas\Windows Defender\MsMpEng.exe [2006-11-03 13592]

S0 pavboot;pavboot;c:\windows\system32\drivers\pavboot.sys --> c:\windows\system32\drivers\pavboot.sys [?]

S1 is-2FQPQdrv;is-2FQPQdrv;c:\windows\system32\drivers\17539689.sys [2009-04-02 148496]

S1 is-5BOGAdrv;is-5BOGAdrv;c:\windows\system32\drivers\57062493.sys [2009-04-02 148496]

S1 is-5NOQ6drv;is-5NOQ6drv;c:\windows\system32\drivers\80039397.sys [2009-04-01 148496]

S1 is-CT1H7drv;is-CT1H7drv;c:\windows\system32\drivers\15667646.sys [2009-04-02 148496]

S1 is-IDOLHdrv;is-IDOLHdrv;c:\windows\system32\drivers\05917892.sys [2009-04-02 14:09:16 148496]

S1 is-R50C5drv;is-R50C5drv;c:\windows\system32\drivers\29645321.sys [2009-04-01 148496]

S1 is-VF2MIdrv;is-VF2MIdrv;c:\windows\system32\drivers\34374809.sys [2009-04-02 148496]

S2 gupdate1c9a173b590da90;Google Update Service (gupdate1c9a173b590da90);c:\arquivos de programas\Google\Update\GoogleUpdate.exe [2009-03-10 133104]

S3 GarenaPEngine;GarenaPEngine;\??\c:\docume~1\PROPRI~1\CONFIG~1\Temp\EAX13C.tmp --> c:\docume~1\PROPRI~1\CONFIG~1\Temp\EAX13C.tmp [?]

S3 PortTalk;PortTalk;c:\windows\system32\drivers\PortTalk.sys [2009-03-26 3567]

 

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1159451f-16f0-11de-832d-001d7df62663}]

\Shell\AutoRun\command - sysnt.exe

\Shell\explore\Command - sysnt.exe

\Shell\open\Command - sysnt.exe

 

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]

"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP

.

Conteúdo da pasta 'Tarefas Agendadas'

 

2009-04-05 c:\windows\Tasks\Google Software Updater.job

- c:\arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-23 23:46]

 

2009-04-05 c:\windows\Tasks\GoogleUpdateTaskMachine.job

- c:\arquivos de programas\Google\Update\GoogleUpdate.exe [2009-03-10 08:31]

 

2009-04-05 c:\windows\Tasks\MP Scheduled Scan.job

- c:\arquivos de programas\Windows Defender\MpCmdRun.exe [2006-11-03 19:20]

 

2009-04-05 c:\windows\Tasks\User_Feed_Synchronization-{0A01E1EB-3F5B-4228-A5E0-D48198796531}.job

- c:\windows\system32\msfeedssync.exe [2009-03-08 04:31]

.

.

------- Scan Suplementar -------

.

uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7

uSearchURL,(Default) = hxxp://www.google.com/search?q=%s

FF - ProfilePath - c:\documents and settings\Proprietário\Dados de aplicativos\Mozilla\Firefox\Profiles\wpfm4233.default\

FF - prefs.js: browser.search.selectedEngine - DAEMON Search

FF - prefs.js: browser.startup.homepage - hxxp://www.google.com.br/

FF - component: c:\arquivos de programas\AVG\AVG8\Firefox\components\avgssff.dll

FF - component: c:\arquivos de programas\DAEMON Tools Toolbar\FirefoxDTT\components\DTToolbarFF.dll

FF - component: c:\arquivos de programas\DAP\DAPFireFox\components\DAPFireFox.dll

FF - component: c:\documents and settings\Proprietário\Dados de aplicativos\Mozilla\Firefox\Profiles\wpfm4233.default\extensions\{3DB3D228-A2E9-4581-B400-CE1331C5269E}\components\LTff.dll

FF - plugin: c:\arquivos de programas\Google\Google Earth Plugin\npgeplugin.dll

FF - plugin: c:\arquivos de programas\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll

FF - plugin: c:\arquivos de programas\Google\Picasa3\npPicasa3.dll

FF - plugin: c:\arquivos de programas\Google\Update\1.2.141.5\npGoogleOneClick7.dll

FF - plugin: c:\arquivos de programas\Windows Live\Photo Gallery\NPWLPG.dll

 

---- FIREFOX POLICIES ----

c:\arquivos de programas\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".com.br");

.

 

**************************************************************************

 

catchme 0.3.1375 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-04-04 21:45:28

Windows 5.1.2600 Service Pack 3 NTFS

 

Procurando processos ocultos ...

 

Procurando entradas auto inicializáveis ocultas ...

 

Procurando ficheiros/arquivos ocultos ...

 

Varredura completada com sucesso

arquivos/ficheiros ocultos: 0

 

**************************************************************************

 

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\GarenaPEngine]

"ImagePath"="\??\c:\docume~1\PROPRI~1\CONFIG~1\Temp\EAX13C.tmp"

.

--------------------- DLLs Carregadas Sob os Processos em Execução ---------------------

 

- - - - - - - > 'winlogon.exe'(764)

c:\windows\system32\Ati2evxx.dll

.

Tempo para conclusão: 2009-04-04 21:47:41

ComboFix-quarantined-files.txt 2009-04-05 00:47:37

ComboFix2.txt 2009-04-05 00:25:39

 

Pré-execução: 18 pasta(s) 135.025.549.312 bytes disponíveis

Pós execução: 17 pasta(s) 135,007,395,840 bytes disponíveis

 

376 --- E O F --- 2009-03-14 03:36:45

Compartilhar este post


Link para o post
Compartilhar em outros sites

:thumbsup: Olá Elismarmota!

 

Poste, por gentileza, um log do Hijackthis seguindo as dicas deste tópico:

http://forum.imasters.com.br/index.php?showtopic=165906

_________________________________________________________________

 

:seta: Faça também o seguinte:

 

Sugiro que você salve ou imprima essas instruções abaixo, pois em alguns momentos você poderá precisar usar o computador sem o acesso à internet:

 

Vi que você tem o Malwarebytes instalado em seu PC. Atualize-o (faça um update) e depois siga as dicas abaixo:

 

*Reinicie o PC em Modo de Segurança (apertando a tecla F8 (ou a tecla F5 em alguns computadores) repetidas vezes quando o computador estiver reiniciando e escolhendo a opção Modo Seguro ou Modo de Segurança).

* Se não possível executar o computador em Modo Seguro, faça o escaneamento no modo normal

*Execute o programa MalwareBytes'Anti-Malware e clique na aba: "Verificação", selecione a opção "Verificação completa"

*Clique no botão: "Verificar"

* Marque todas as partes do computador que você deseja escanear e clique no botão: “Iniciar verificação”

*Ao término do scan, clique em "OK" > "Mostrar Resultados"

*Selecione todas as entradas e clique em "Remover Selecionados"

*Após a remoção poderá ser interrogado se deseja remover objetos da memória. Clique "SIM"

*Um log será apresentado com o resultado das ações

*Alguns malwares são rebeldes e necessitam de uma reinicialização para a remoção. Caso isto seja solicitado, clique para reiniciar o PC.

*Ao término do processo, reinicie o PC em Modo Normal.

* Depois de alguns dias, se o seu computador estiver funcionando normalmente sem estes arquivos que foram excluidos pelo Malwarebytes Anti-malware, abra (execute) o Malwarebytes Anti-malware, clique na aba: Quarentena e clique no botão: Remover tudo.

*Execute novamente o programa Malwarebytes Anti-malware e clique na aba “Logs”, dê um duplo clique com o mouse sobre o log mais recente, selecione o log completo e copie-o.

 

Poste este log gerado pelo Malwarebytes Anti-Malware juntamente com o log do Hijackthis na sua próxima resposta e nos diga como está o seu computador depois de seguir este procedimento acima.

 

Ficamos no aguardo de sua resposta.

Compartilhar este post


Link para o post
Compartilhar em outros sites

obrigado vou fazer isso hoje e em 3 dias posto o resultado final.

DUVIDA:sempre quando inicio o computador fica pedindo para instalar um drive só que o nome diz é desconhecido fui no painel de controle adicionar hardwere e tem 4 opçoes com ponto de interrogação amarelo. é algum problema ,? desde já agradeço.

Compartilhar este post


Link para o post
Compartilhar em outros sites
obrigado vou fazer isso hoje e em 3 dias posto o resultado final.

:) Tudo bem, ficamos no aguardo.

 

DUVIDA:sempre quando inicio o computador fica pedindo para instalar um drive só que o nome diz é desconhecido fui no painel de controle adicionar hardwere e tem 4 opçoes com ponto de interrogação amarelo. é algum problema ,? desde já agradeço.

Vamos primeiramente ver se há algum virus ou malware no seu PC e eliminá-lo. Depois você abre um tópico na área mais específica do Fórum para resolver estes outros detalhes.

Compartilhar este post


Link para o post
Compartilhar em outros sites

amigo, ai está o que me pediu como o MalwareBytes'Anti-Malware não encontrou nada resolvi enviar os logs que me pediu.

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 23:01:20, on 5/4/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\WINDOWS\Explorer.EXE

C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

C:\Arquivos de programas\Spyware Terminator\SpywareTerminatorShield.exe

C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Arquivos de programas\IObit\Advanced SystemCare 3\AWC.exe

C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

C:\cHijack\HiJackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Arquivos de programas\Orbitdownloader\orbitcth.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Arquivos de programas\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Arquivos de programas\Orbitdownloader\GrabPro.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)

O4 - HKLM\..\Run: [spywareTerminator] "C:\Arquivos de programas\Spyware Terminator\SpywareTerminatorShield.exe"

O4 - HKLM\..\Run: [avast!] C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Arquivos de programas\IObit\Advanced SystemCare 3\AWC.exe" /startup

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/...lscbase5483.cab

O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab

O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...567/mcfscan.cab

O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Unknown owner - C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe (file missing)

O23 - Service: Avira AntiVir Guard (AntiVirService) - Unknown owner - C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe (file missing)

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Google Update Service (gupdate1c9a173b590da90) (gupdate1c9a173b590da90) - Google Inc. - C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe

O23 - Service: NBService - Nero AG - C:\Arquivos de programas\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

 

--

End of file - 6829 bytes

 

 

 

 

 

 

 

 

Malwarebytes' Anti-Malware 1.35

Versão do banco de dados: 1942

Windows 5.1.2600 Service Pack 3

 

5/4/2009 22:44:19

mbam-log-2009-04-05 (22-44-19).txt

 

Tipo de Verificação: Completa (A:\|C:\|D:\|E:\|F:\|)

Objetos verificados: 141036

Tempo decorrido: 1 hour(s), 14 minute(s), 42 second(s)

 

Processos da Memória infectados: 0

Módulos de Memória Infectados: 0

Chaves do Registro infectadas: 0

Valores do Registro infectados: 0

Ítens do Registro infectados: 0

Pastas infectadas: 0

Arquivos infectados: 0

 

Processos da Memória infectados:

(Nenhum ítem malicioso foi detectado)

 

Módulos de Memória Infectados:

(Nenhum ítem malicioso foi detectado)

 

Chaves do Registro infectadas:

(Nenhum ítem malicioso foi detectado)

 

Valores do Registro infectados:

(Nenhum ítem malicioso foi detectado)

 

Ítens do Registro infectados:

(Nenhum ítem malicioso foi detectado)

 

Pastas infectadas:

(Nenhum ítem malicioso foi detectado)

 

Arquivos infectados:

(Nenhum ítem malicioso foi detectado)

Compartilhar este post


Link para o post
Compartilhar em outros sites

:seta: Abra o HijackThis, clique em Do a system scan only, marque as entradas abaixo e clique em Fix checked:

 

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

 

O2 - BHO: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)

 

O3 - Toolbar: (no name) - {A057A204-BACC-4D26-9990-79A187E2698E} - (no file)

________________________________________________________________________________

 

:seta: Além disso está constando no seu log o Avira e o Avast instalados em conjunto e seria muito importante desinstalar um deles. Depois de de desinstalar um deles, atualize o seu antivirus (faça um update) e reinicie o seu computador e entre pelo Modo de Segurança (apertando a tecla F8 (ou a tecla F5 em alguns computadores) repetidas vezes quando o computador estiver reiniciando e escolhendo a opção Modo Seguro ou Modo de Segurança). Aí quando o computador tiver reiniciado, você escaneia o computador com seu antivírus e à medida em que forem sendo achados vírus e programas espiões vá enviando eles para a quarentena. Depois de algumas semanas, se o seu computador estiver funcionando normalmente sem estes arquivos que foram para a quarentena, você pode ir na quarentena e excluí-los definitivamente.

________________________________________________________________________________

 

:seta: Siga, por gentileza, as dicas deste tutorial para fazer um escaneamento de seu PC pelo Nod32 Online:

 

Tutorial do antivirus Nod32 Online

 

Após o término do escaneamento será gerado um relatório (log) que estará no seguinte local do seu computador:

C:\Arquivos de programas\EsetOnlineScanner\log

 

Na sua próxima resposta poste este log do Nod32 Online juntamente com um novo log do Hijackthis e nos diga, por gentileza, como está o seu PC após seguir estes procedimentos.

 

Ficamos no aguardo de sua resposta.

Compartilhar este post


Link para o post
Compartilhar em outros sites

boa noite amigo, desinstalei as pastas e registro ou qualquer coisa referente ao avira,por que o programa mesmo eu já tinha desinstalado removir o AVAST e em modo de segurança instalei novamente antes fui no site do AVAST e baixei a ultima atualização de hoje e executei pediu para dar boot no computador o AVAST escaneou todo o computador e não detectou nada, quando iniciou o computador o icone do avast estava com o mesmo circulo vermelho indicando que o mesmo esta desatualizado, so que instalei antes o AVG, e a proteção residente dos dois não ativa é o unico problema que apresenta no modo de segurança eu abro a tela do AVAST e no modo normal apareçe um aviso dizendo que o sistema não pode abrir o dispositivo ou o arquivo especificado abaixo está os log que você havia pedido, o escaneamento online encontrou um virus, mas o problema do anti virus continua a proteção residente não funciona mais uma vez conto com sua ajuda, fica com DEUS.

 

 

 

NOD 32 ONLINE

 

# version=4

# OnlineScanner.ocx=1.0.0.635

# OnlineScannerDLLA.dll=1, 0, 0, 79

# OnlineScannerDLLW.dll=1, 0, 0, 78

# OnlineScannerUninstaller.exe=1, 0, 0, 49

# vers_standard_module=3990 (20090406)

# vers_arch_module=1.064 (20080214)

# vers_adv_heur_module=1.066 (20070917)

# EOSSerial=ef2867625b8f1440bf9949b0d7301610

# end=finished

# remove_checked=true

# unwanted_checked=true

# utc_time=2009-04-06 08:06:36

# local_time=2009-04-06 05:06:36 (-0300, Hora oficial do Brasil)

# country="Brazil"

# osver=5.1.2600 NT Service Pack 3

# scanned=350821

# found=1

# scan_time=11998

C:\downloads\fishingtripSetup-dm.exe Win32/Adware.Trymedia application (unable to clean - deleted) 00000000000000000000000000000000

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 21:59:50, on 6/4/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\WINDOWS\Explorer.EXE

C:\Arquivos de programas\Spyware Terminator\SpywareTerminatorShield.exe

C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

C:\Arquivos de programas\IObit\Advanced SystemCare 3\AWC.exe

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEDB.EXE

C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

C:\ARQUIV~1\Crawler\CToolbar.exe

C:\Arquivos de programas\Alwil Software\Avast4\ashAvast.exe

C:\cHijack\HiJackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.a...&tbid=60446

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60446

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60446

R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\ARQUIV~1\Crawler\ctbr.dll

O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Arquivos de programas\Orbitdownloader\orbitcth.dll

O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\ARQUIV~1\Crawler\ctbr.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Arquivos de programas\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Arquivos de programas\Orbitdownloader\GrabPro.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: Barra de ferramentas &Crawler - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\ARQUIV~1\Crawler\ctbr.dll

O4 - HKLM\..\Run: [spywareTerminator] "C:\Arquivos de programas\Spyware Terminator\SpywareTerminatorShield.exe"

O4 - HKLM\..\Run: [avast!] C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Arquivos de programas\IObit\Advanced SystemCare 3\AWC.exe" /startup

O4 - HKCU\..\Run: [EPSON TX105 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEDB.EXE /FU "C:\DOCUME~1\PROPRI~1\CONFIG~1\Temp\E_S81.tmp" /EF "HKCU"

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: Crawler Search - tbr:iemenu

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/...lscbase5483.cab

O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab

O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...567/mcfscan.cab

O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\ARQUIV~1\Crawler\ctbr.dll

O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Unknown owner - C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe (file missing)

O23 - Service: Avira AntiVir Guard (AntiVirService) - Unknown owner - C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe (file missing)

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Google Update Service (gupdate1c9a173b590da90) (gupdate1c9a173b590da90) - Google Inc. - C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe

O23 - Service: NBService - Nero AG - C:\Arquivos de programas\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

 

--

End of file - 8150 bytes

Compartilhar este post


Link para o post
Compartilhar em outros sites

:seta: Ainda constam restos do Avira em seu PC.

 

Vá no menu: Iniciar > Executar e digite:

 

services.msc

 

Tecle Enter.

 

Ache esse Serviço: "Avira AntiVir Scheduler (AntiVirSchedulerService)", dê um duplo clique sobre ele com o botão esquerdo do mouse e escolha a opção: Desativado. Clique também em Parar e troque o Tipo de Inicialização para Desativado.

 

Reinicie o PC em entre em Modo Seguro (Fique apertando intermitentemente a tecla F8, ou a tecla F5 em alguns computadores, até que apareça uma tela preta em DOS e escolha a opção: Modo Seguro).

 

Estando no modo seguro, abra o HijackThis e clique no botão Open the Misc Tools section e depois em Delete an NT service.

 

Coloque isto: sched

 

Dê ok.

 

Reinicie o computador em Modo Normal.

 

Vá no menu: Iniciar - Todos os programas - Acessórios - Windows Explorer - vá até a pasta que está em destaque abaixo e a exclua (se ela ainda existir):

 

C:\Arquivos de programas\Avira

______________________________________________________________________________

 

:seta: Vá novamente no menu: Iniciar > Executar e digite:

 

services.msc

 

Tecle Enter.

 

Ache esse Serviço: "Avira AntiVir Guard (AntiVirService)", dê um duplo clique sobre ele com o botão esquerdo do mouse e escolha a opção: Desativado. Clique também em Parar e troque o Tipo de Inicialização para Desativado.

 

Reinicie o PC em entre em Modo Seguro (Fique apertando intermitentemente a tecla F8, ou a tecla F5 em alguns computadores, até que apareça uma tela preta em DOS e escolha a opção: Modo Seguro).

 

Estando no modo seguro, abra o HijackThis e clique no botão Open the Misc Tools section e depois em Delete an NT service.

 

Coloque isto: avguard

 

Dê ok.

 

Reinicie o computador em Modo Normal.

______________________________________________________________________________

 

:seta: Sugiro que você salve ou imprima essas instruções abaixo, pois em alguns momentos você poderá precisar usar o computador sem o acesso à internet:

 

- Faça o download do FindyKill e salve-o no desktop (área de trabalho):

http://sd-1.archive-host.com/membres/up/11...8/FindyKill.exe

 

- Dê um duplo clique sobre o ícone do instalador do FindyKill que estará no desktop.

- Clique no botão Next >

- marque a opção: I agree with the above terms and conditions;

- Clique no botão Next >

- Escolha o local de seu computador onde você deseja instalar o FindyKill e clique no botão Next >;

- Se aparecer uma mensagem de confirmação em inglês para a criação deste novo diretório clique no botão Sim;

- Clique no botão Start;

- Clique no botão Exit.

- Dê um duplo clique no ícone que será criado no desktop;

- Será aberta uma tela onde você deve escolher a linguagem de mais fácil entendimento para você. Caso seja o inglês que você tenha mais facilidade, digite E e tecle a tecla Enter.

- Na tela que abrir, pressione a tecla 2 + Enter para remover as infecções;

- Se aparecer uma mensagem de confirmação para a remoção dos virus clique no botão Ok.

- O PC poderá reiniciar 2 vezes durante o processo;

- Um relatório será criado em C:\FindyKill.txt.

 

Poste o relatório dele que estará em C:\FindyKill.txt juntamente com um novo log do Hijackthis em sua próxima resposta e nos diga como está o PC depois destes procedimentos. Ficamos no aguardo.

 

- Retorne ao programa FindyKill e tecle 3 + ENTER para desinstalá-lo.

Compartilhar este post


Link para o post
Compartilhar em outros sites

boa noite amigo, estou aqui mais uma vez contando com sua ajuda fiz todos os passos e o resultado alem do que você verá logo abaixo é desinstalei o avast com o revo unisntaller e reiniciei o computador e os mesmos icones do avast com a bolinha vermelha indicando que proteção residente está desativada tentei abrir o programa que tinha acabado de desinstalar e apareceu a mesma mensagem de antes fui na pasta dele para desinstalar a pasta e fui negado, fui no registro para fazer a mesma coisa o sistema não pérmitiu tambem, reiniciei e iniciei no modo de segurança e pude desinstalar as duas pastas no arquivos e programas e no registro já havia baixado outro aplicativo do avast e tambem ultima atualização de hoje no modo de segurança instalei ambos e reiniciei no modo normal o AVAST apareceu com a mesma bolinha vermelha e o alerta de segurança indicando risco antivir desatualizado executei novamente o findykill e além do log abaixo sem reiniciar o computador no modo normal na barra de inicialização não apareçe mais nenhum icone do avast. vou reiniciar novamente se aparecer de novo o icone eu logo em seguida posto novamente

más desde já agradeço pela atenção que DEUS continue te dando força e vontade voluntária para auxiliar as pessoas.

 

############################## [ FindyKill V4.722 ]

 

# User : Proprietário (Administradores) # ELISMAR

# Update on 04/04/09 by Chiquitine29

# Start at: 20:41:18 | 8/4/2009

# Website : http://pagesperso-orange.fr/FindyKill.Ad.Remover/

 

# AMD Athlon 64 X2 Dual Core Processor 4000+

# Microsoft Windows XP Home Edition (5.1.2600 32-bit) # Service Pack 3

# Internet Explorer 8.0.6001.18702

# Windows Firewall Status : Enabled

# AV : AntiVir Desktop 9.0.1.26 [ Enabled | (!) Outdated ]

 

# A:\ # Unidade de disquete de 3 1/2 polegadas

# C:\ # Disco fixo local # 149,04 Go (124,9 Go free) # NTFS

# D:\ # Disco CD-ROM

# E:\ # Disco CD-ROM

# F:\ # Disco CD-ROM

 

############################## [ Active Processes ]

 

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\csrss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\logonui.exe

C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\System32\SCardSvr.exe

C:\Arquivos de programas\Alwil Software\Avast4\setup\avast.setup

C:\WINDOWS\system32\userinit.exe

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\WINDOWS\Explorer.EXE

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe

C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\alg.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\system32\wbem\wmiprvse.exe

 

################## [ C:\WINDOWS # C:\WINDOWS\Prefetch ]

 

Deleted ! C:\WINDOWS\Prefetch\WINUPGRO.EXE-17681AA8.pf

 

################## [ C:\WINDOWS\System32... ]

 

 

################## [ C:\Users\...\AppData\Roaming ]

 

 

################## [ Cleaning .. Temp Files... ]

 

 

################## [ Registry / Infected keys ]

 

 

################## [ Cleaning Removable drives ]

 

# Deleting Files :

 

 

################## [ Registry / Mountpoint2 ]

 

# -> Not found !

 

################## [ States / Restarting of services ]

 

# Services : [ Auto=2 / Request=3 / Disable=4 ]

 

# Ndisuio -> # Type of startup =3

# EapHost -> # Type of startup =2

# Ip6Fw -> # Type of startup =2

# SharedAccess -> # Type of startup =2

# wuauserv -> # Type of startup =2

# wscsvc -> # Type of startup =2

# WinDefend -> # Type of startup =2

 

################## [ Searching Other Infections ]

 

# -> Nothing found.

 

################## [ Corrupted files # Re-Installation required ]

 

C:\Arquivos de programas\Garena\update.exe

C:\Arquivos de programas\Mozilla Firefox\uninstall\helper.exe

 

################## [ ! End of Report # FindyKill V4.722 ! ]

 

 

 

HijackThis v2.0.2

 

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 20:29:38, on 8/4/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

C:\Arquivos de programas\Spyware Terminator\SpywareTerminatorShield.exe

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Arquivos de programas\IObit\Advanced SystemCare 3\AWC.exe

C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\wscntfy.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

C:\ARQUIV~1\Crawler\CToolbar.exe

C:\cHijack\HiJackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.a...&tbid=60446

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60446

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60446

R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\ARQUIV~1\Crawler\ctbr.dll

O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Arquivos de programas\Orbitdownloader\orbitcth.dll

O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\ARQUIV~1\Crawler\ctbr.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Arquivos de programas\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Arquivos de programas\Orbitdownloader\GrabPro.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: Barra de ferramentas &Crawler - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\ARQUIV~1\Crawler\ctbr.dll

O4 - HKLM\..\Run: [spywareTerminator] "C:\Arquivos de programas\Spyware Terminator\SpywareTerminatorShield.exe"

O4 - HKLM\..\Run: [avast!] C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Advanced SystemCare 3] "C:\Arquivos de programas\IObit\Advanced SystemCare 3\AWC.exe" /startup

O4 - HKCU\..\Run: [EPSON TX105 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEDB.EXE /FU "C:\DOCUME~1\PROPRI~1\CONFIG~1\Temp\E_S81.tmp" /EF "HKCU"

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: Crawler Search - tbr:iemenu

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/...lscbase5483.cab

O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab

O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...567/mcfscan.cab

O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\ARQUIV~1\Crawler\ctbr.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Google Update Service (gupdate1c9a173b590da90) (gupdate1c9a173b590da90) - Google Inc. - C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe

O23 - Service: NBService - Nero AG - C:\Arquivos de programas\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

 

--

End of file - 7724 bytes

Compartilhar este post


Link para o post
Compartilhar em outros sites

Mais um problema foi removido pelo FindyKill.

 

:seta: Sugiro que você salve ou imprima essas instruções abaixo, pois em alguns momentos você poderá precisar usar o computador sem o acesso à internet:

 

Faça o download do SDFix:

http://downloads.andymanchesta.com/RemovalTools/SDFix.exe

 

Salve-o em sua Área de Trabalho (desktop).

 

Dê um duplo clique no SDFix.exe e a Ferramenta será instalada geralmente em C:\SDFix

 

Reinicie o computador em Modo Seguro (pressione a tecla F8 intermitentemente, ou F5 em alguns casos, durante a inicialização) e selecione a opção de Modo Seguro ou Modo de Segurança;

 

Entre na pasta SDFix que foi instalada no seu computador e dê um duplo clique no arquivo RunThis.bat

 

Tecle Y para que a Ferramenta inicie o processo de remoção.

 

Quando tudo terminar, você verá um aviso dizendo para apertar qualquer tecla para continuar.

 

Ao pressionar qualquer tecla, o computador será reiniciado automaticamente.

 

Após reiniciar, a Ferramenta ainda será executada novamente e irá terminar o seu trabalho, e ao surgir "The FixTool has finished", pressione qualquer tecla, uma janela com o Relatório do SDFix irá aparecer.

 

Caso você tenha fechado a janela, uma cópia do Relatório estará na pasta SDFix com o nome Report.txt.

 

Poste este relatório do SDFix na sua próxima resposta juntamente com um novo log do Hijackthis e nos diga como está o seu computador depois de seguir estes procedimentos. Ficamos no aguardo.

 

Depois de usar o SDFix, delete a ferramenta SDFix e a pasta C:\SDFix.

Compartilhar este post


Link para o post
Compartilhar em outros sites

boa tarde amigo, mais uma vez estou lhe enviando os resultados obtidos e informando a situação no momento. meu computador está funcionando normalmente em termos de velocidade reconhecimento de todos os programas e abertura normal dos mesmos o problema é que desinstalei o AVAST e continuava aparecendo os icones de inicialização as pastas dele sÓ conseguir excluir no modo de segurança fui instalar novamente no modo de segurança ele instala mas o icone dele continua em vermelho (sem proteçao residente) fiz o mesmo processo desistalando e excluindo e tentei instalar o AVG, não deu constava que tinha já instalado outro outro anti virus no computador más não tem, OBS: no aviso de segurança do windows avisa que o Antivir do Desktop deve está desatualizado, fui em pesquizar e procurei pelo nome Antivir e encontrei 4 arquivos com o nome e um não aceitou excluir nem mesmo pelo modo de segurança indicando que estava em uso encontra-se na pasta c:\ windows\ sistem 32\ config\Antivirus.Evt tentei instalar o Avira no modo normal E DEU ERRO e no modo segurança não foi possível porque precisa da internet para registrar o cadastro, creio que este problema esta proximo pra se resolver segue abaixo os logs que me pediu, desde já agradeço fica com DEUS.

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 10:42:39, on 11/4/2009

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\Arquivos de programas\Windows Defender\MsMpEng.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\System32\svchost.exe

C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

C:\Arquivos de programas\Java\jre6\bin\jqs.exe

C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\ctfmon.exe

C:\WINDOWS\system32\wscntfy.exe

C:\Arquivos de programas\Mozilla Firefox\firefox.exe

C:\ARQUIV~1\Crawler\CToolbar.exe

C:\cHijack\HiJackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.a...&tbid=60446

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.orbitdownloader.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60446

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60446

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60446

R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\ARQUIV~1\Crawler\ctbr.dll

O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Arquivos de programas\Orbitdownloader\orbitcth.dll

O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - C:\ARQUIV~1\Crawler\ctbr.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Arquivos de programas\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Arquivos de programas\Orbitdownloader\GrabPro.dll

O3 - Toolbar: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Arquivos de programas\Epson Software\Easy Photo Print\EPTBL.dll

O3 - Toolbar: Barra de ferramentas &Crawler - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - C:\ARQUIV~1\Crawler\ctbr.dll

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: &Download by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/201

O8 - Extra context menu item: &Grab video by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/204

O8 - Extra context menu item: Crawler Search - tbr:iemenu

O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/203

O8 - Extra context menu item: Down&load all by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/202

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe

O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp

O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/...lscbase5483.cab

O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab

O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...567/mcfscan.cab

O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - C:\ARQUIV~1\Crawler\ctbr.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe (file missing)

O23 - Service: Google Update Service (gupdate1c9a173b590da90) (gupdate1c9a173b590da90) - Google Inc. - C:\Arquivos de programas\Google\Update\GoogleUpdate.exe

O23 - Service: Google Software Updater (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Arquivos de programas\Nero\Nero 7\InCD\InCDsrv.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe

O23 - Service: NBService - Nero AG - C:\Arquivos de programas\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Arquivos de programas\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Arquivos de programas\Spyware Terminator\sp_rsser.exe

 

--

End of file - 7159 bytes

 

 

 

 

 

 

 

SDFix: Version 1.240

Run by Proprietário on sáb 11/04/2009 at 10:03

 

Microsoft Windows XP [versão 5.1.2600]

Running From: C:\SDFix

 

Checking Services :

 

 

Restoring Default Security Values

Restoring Default Hosts File

 

Rebooting

 

 

Checking Files :

 

No Trojan Files Found

 

 

 

 

 

 

Removing Temp Files

 

ADS Check :

 

 

 

Final Check :

 

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2009-04-11 10:14:16

Windows 5.1.2600 Service Pack 3 NTFS

 

scanning hidden processes ...

 

scanning hidden services & system hive ...

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]

"s1"=dword:2df9c43f

"s2"=dword:110480d0

"h0"=dword:00000001

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]

"p0"="C:\Arquivos de programas\DAEMON Tools Lite\"

"h0"=dword:00000000

"khjeh"=hex:b5,90,d5,b3,eb,8f,fc,9f,9e,5a,79,4d,e7,58,e4,4f,21,32,58,88,10,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]

"a0"=hex:20,01,00,00,2a,81,a4,21,93,c9,fd,31,36,e8,f0,94,5a,4a,dd,81,0c,..

"khjeh"=hex:39,1b,1f,f0,d3,a6,a2,dd,03,d2,94,d8,23,a3,35,62,7f,0a,1f,1f,23,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]

"khjeh"=hex:33,b1,34,b4,53,35,35,38,07,b4,d6,93,a8,b9,93,88,b3,51,46,53,fb,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41]

"khjeh"=hex:c8,e1,02,42,37,0a,a1,00,69,ca,91,f7,e2,a4,ac,48,f9,aa,f4,12,02,..

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]

"p0"="C:\Arquivos de programas\DAEMON Tools Lite\"

"h0"=dword:00000000

"khjeh"=hex:b5,90,d5,b3,eb,8f,fc,9f,9e,5a,79,4d,e7,58,e4,4f,21,32,58,88,10,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]

"a0"=hex:20,01,00,00,2a,81,a4,21,93,c9,fd,31,36,e8,f0,94,5a,4a,dd,81,0c,..

"khjeh"=hex:39,1b,1f,f0,d3,a6,a2,dd,03,d2,94,d8,23,a3,35,62,7f,0a,1f,1f,23,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]

"khjeh"=hex:33,b1,34,b4,53,35,35,38,07,b4,d6,93,a8,b9,93,88,b3,51,46,53,fb,..

 

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41]

"khjeh"=hex:c8,e1,02,42,37,0a,a1,00,69,ca,91,f7,e2,a4,ac,48,f9,aa,f4,12,02,..

 

scanning hidden registry entries ...

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]

"TracesProcessed"=dword:00000052

 

scanning hidden files ...

 

scan completed successfully

hidden processes: 0

hidden services: 0

hidden files: 0

 

 

Remaining Services :

 

 

 

 

Authorized Application Key Export:

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"C:\\Arquivos de programas\\DAP\\DAP.exe"="C:\\Arquivos de programas\\DAP\\DAP.exe:*:Enabled:Download Accelerator Plus (DAP)"

"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

"C:\\Arquivos de programas\\Orbitdownloader\\orbitdm.exe"="C:\\Arquivos de programas\\Orbitdownloader\\orbitdm.exe:*:Enabled:Orbit"

"C:\\Arquivos de programas\\Orbitdownloader\\orbitnet.exe"="C:\\Arquivos de programas\\Orbitdownloader\\orbitnet.exe:*:Enabled:Orbit"

"C:\\Arquivos de programas\\Valve\\hl.exe"="C:\\Arquivos de programas\\Valve\\hl.exe:*:Enabled:Half-Life Launcher"

"C:\\Arquivos de programas\\Kodak\\Kodak EasyShare software\\bin\\EasyShare.exe"="C:\\Arquivos de programas\\Kodak\\Kodak EasyShare software\\bin\\EasyShare.exe:*:Enabled:EasyShare"

"C:\\Arquivos de programas\\eMule\\emule.exe"="C:\\Arquivos de programas\\eMule\\emule.exe:*:Enabled:eMule"

"C:\\Arquivos de programas\\Garena\\Garena.exe"="C:\\Arquivos de programas\\Garena\\Garena.exe:*:Enabled:Garena"

"C:\\Arquivos de programas\\Windows Live\\Messenger\\wlcsdk.exe"="C:\\Arquivos de programas\\Windows Live\\Messenger\\wlcsdk.exe:*:Enabled:Windows Live Call"

"C:\\Arquivos de programas\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Arquivos de programas\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"

"C:\\Arquivos de programas\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Arquivos de programas\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

"C:\\Arquivos de programas\\SopCast\\SopCast.exe"="C:\\Arquivos de programas\\SopCast\\SopCast.exe:*:Enabled:SopCast Main Application"

"C:\\Arquivos de programas\\SopCast\\adv\\SopAdver.exe"="C:\\Arquivos de programas\\SopCast\\adv\\SopAdver.exe:*:Enabled:SopCast Adver"

"C:\\Arquivos de programas\\GameSpy Arcade\\Aphex.exe"="C:\\Arquivos de programas\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"

"C:\\Arquivos de programas\\SecondLife\\SLVoice.exe"="C:\\Arquivos de programas\\SecondLife\\SLVoice.exe:*:Enabled:SLVoice"

 

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"

"C:\\Arquivos de programas\\Windows Live\\Messenger\\wlcsdk.exe"="C:\\Arquivos de programas\\Windows Live\\Messenger\\wlcsdk.exe:*:Enabled:Windows Live Call"

"C:\\Arquivos de programas\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Arquivos de programas\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"

"C:\\Arquivos de programas\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Arquivos de programas\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

 

Remaining Files :

 

 

 

Files with Hidden Attributes :

 

Thu 8 Jan 2009 9,934,392 A..H. --- "C:\Arquivos de programas\Google\Picasa3\setup.exe"

Sat 28 Mar 2009 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"

Mon 13 Nov 2006 319,456 A..H. --- "C:\Arquivos de programas\Arquivos comuns\Motorola Shared\MotPCSDrivers\difxapi.dll"

Sat 28 Mar 2009 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"

 

Finished!

Compartilhar este post


Link para o post
Compartilhar em outros sites

:thumbsup: Muito bem, os seus logs estão limpos.

 

Mas quanto ao problema com os antivirus, com qual deles você deseja ficar? Com o Avira, o Avast ou o Avg?

Compartilhar este post


Link para o post
Compartilhar em outros sites

Realmente o Avira é melhor.

 

:seta: Para remover completamente o Avg de seu computador você pode usar o desinstalador que o Avg oferece:

 

AVG Remover(32bit) - Use esta opção se o seu sistema for de 32 bit.

AVG Remover(64bit) - Use esta opção se o seu sistema for de 64 bit.

 

E para remover completamente o Avast siga esses passos abaixo:

 

1. Faça o download do aswClear.exe no link abaixo e salve-o no seu desktop (área de trabalho do seu computador):

http://files.avast.com/files/eng/aswclear.exe

2. A Ferramenta acima deve ser executada em Modo de Segurança.

Para entrar no Modo de Segurança é necessário pressionar F8 (ou F5 em alguns computadores) intermitentemente durante a inicialização do Windows e escolher "Modo Seguro" na tela que se apresenta.

3. Abra (execute) a ferramenta de desinstalação do Avast.

4. Se você instalou o Avast! em uma pasta diferente da que é comum na instalação deste antivírus, selecione esse local onde você instalou o Avast na hora em que estiver executando este desinstalador (Nota: Seja Cuidadoso! O conteúdo da pasta que você selecionar será apagado)

5. Clique em Remove

6. Reinicie o seu computador.

_______________________________________________________________________________

 

:seta: Depois de usar o desinstalador acima, instale estes programas e use-os agora e semanalmente para fazer uma limpeza do seu PC e para deixá-lo mais eficiente e otimizado:

 

Ccleaner

 

MV RegClean

 

MV AntiSpy

 

SpywareBlaster

 

Siga também as dicas deste tutorial:

 

Dicas para deixar seu computador mais rápido e eficiente

_______________________________________________________________________________

 

:seta: Depois disto siga as dicas dos tutoriais abaixo para instalar, configurar e usar corretamente o Avira antivir:

 

Tutorial do Avira Antivir 9 free (instalação e configuração)

 

Tutorial do Avira Antivir 9 free (como usá-lo corretamente)

_______________________________________________________________________________

 

:seta: Depois de seguir os passos acima nos diga como está o seu PC e se o problema foi resolvido.

Compartilhar este post


Link para o post
Compartilhar em outros sites

amigo estou aqui novamente, fiz tudo e fui instalar o Avira e de novo apareceu esta mensagem na hora que me cadastrei e ia começar a instalação do Avira eu traduzir pelo altavista o setep podia copiar toda a permissão das limas negada. é possível que você não possui as autorizações necessárias. por favor, setap da estrela outra vez erros: O AVG diz que tem outro antivirus instalado, o AVAST no modo de segurança instala normal até faz o escaneamento no boot mas quando inicia o windows fica sem proteção residente e o AVIRA apareçe esta mensagem como se eu não tive alguma permissão de alguma coisa que não entendi e aquele arquivo do avira na pasta que lhe indiquei não aceita excluir nem pelo modo de segurança

 

OBS: executei os programas e foi limpo muita sujeira más continuo sem anti virus no meu computador más sinto que é por pouco tempo, mais uma vez te agradeço pela atenção e paciência.

Compartilhar este post


Link para o post
Compartilhar em outros sites

amigo, fiz tudo e o resultado foi que o alerta do windows de segurança continua avisando que o antivir está desatualizado, más a unica coisa que resta dele ainda é aquela pasta no c:\ windows que não quer ser excluida tentei sim instalar o avira novamente baixei outro aplicativo direto do site e deu o mesmo erro instalei o spybot mas ele não abre e quando abre opção só em inglês e não escaneia

 

Amigo, eu não vou desistir e acredito que você também não (não há problema maior do que a solução) fica com DEUS.

Compartilhar este post


Link para o post
Compartilhar em outros sites

Olá Elismar!

 

:seta: Sugiro que você salve ou imprima essas instruções abaixo, pois em alguns momentos você poderá precisar usar o computador sem o acesso à internet:

 

Faça download do Kaspersky Virus Removal Tool

* Salve na pasta de Arquivos de programas.

* Instale o programa normalmente seguindo todos os seus passos.

*Não faça ainda scan!

*Reinicie o PC em Modo de Segurança (apertando a tecla F8 (ou a tecla F5 em alguns computadores) repetidas vezes quando o computador estiver reiniciando e escolhendo a opção Modo Seguro ou Modo de Segurança).

* Se não possível executar o computador em Modo Seguro, faça o escaneamento no modo normal

* Na tela principal do programa marque todas as caixas disponíveis, como mostra a imagem abaixo:

kasperskyvirusremovaltoak2.png

* Clique no botão Scan.

* Seja paciente, o scan pode demorar

* Se ele encontrar alguma infecção confirme a solicitação de remoção aos virus detectados.

* Após completar tudo clique na aba Events, desmarque a caixa de seleção "Show all events" e depois clique em Reports... e clique em "Save to file".

* Dê um nome para o arquivo e salve numa pasta de sua preferência (de preferência salve este relatório no Desktop (área de trabalho) para facilitar a sua localização.

* Poste o conteúdo desse relatório em sua próxima resposta juntamente com um novo log do Hijackthis e nos diga como está o seu PC depois destes procedimentos.

* Ficamos no aguardo.

Compartilhar este post


Link para o post
Compartilhar em outros sites

boa noite, amigo o resultado abaixo está dividido em partes devido o comteúdo ser extenço foi encontrado um virus más ainda continuo sem poder instalar um antivirus e nem o spybot no caso do spybot da erro que não encontrou, ( sqlite. 3dll.) fico no aguardo DEUS, abençõe.

 

Scan

----

Scanned: 867440

Detected: 1

Untreated: 0

Start time: 12/4/2009 23:05:37

Duration: 08:53:00

Finish time: 13/4/2009 07:58:37

 

 

Detected

--------

Status Object

------ ------

deleted: Trojan program Trojan-Downloader.Win32.Bagle.hp File: C:\Qoobox\Quarantine\Registry_backups\Legacy_SROSA.reg.dat

 

 

Events

------

Time Name Status Reason

---- ---- ------ ------

13/4/2009 00:58:25 File: C:\Arquivos de programas\Garena\mdata.ggz/mh.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn.ggz/default_cn.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn.ggz/dota65x_cn.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn.ggz/dota648b_cn.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn.ggz/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn_s.ggz/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\cn_s.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en.ggz/default.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en.ggz/dota65x.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en.ggz/dota648b.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en.ggz/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en_s.ggz/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\en_s.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\id_s.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw.ggz/default_tw.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw.ggz/dota65x_tw.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw.ggz/dota648b_tw.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw.ggz/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw_s.ggz/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\GarenaTV\tw_s.ggz/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\FPSGame.dll.cn/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\FPSGame.dll.en/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\FPSGame.dll.tw/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.br/Garena.exe.br.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.cn/Garena.exe.cn.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.en/Garena.exe.en.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.id/Garena.exe.id.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.ru/Garena.exe.ru.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.sp/Garena.exe.sp.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.th/Garena.exe.th.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.tw/Garena.exe.tw.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\Garena.exe.vn/Garena.exe.vn.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.cn/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.cn/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.en/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.en/server.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.id/lang.xml password protected

13/4/2009 00:58:32 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.id/server.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.tw/lang.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\GarenaTV_UI.dll.tw/server.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\update.exe.cn/update.exe.cn.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\update.exe.tw/update.exe.tw.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\update2.exe.cn/update2.exe.cn.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\update2.exe.tw/update2.exe.tw.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\WC3Ass.dll.cn/lang.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\WC3Ass.dll.en/lang.xml password protected

13/4/2009 00:58:33 File: C:\Arquivos de programas\Garena\Languages\WC3Ass.dll.tw/lang.xml password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ScrollBarArrowsHBg.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ScrollNews.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/shop_gm.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/shop_gm_type.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/shop_magic_item.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Skin.xml password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/skinmsn.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/split_h.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/split_v.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/splitter_h.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Tab.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/TabBg.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ui.xml password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Window.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/0.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/1.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/100.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/11.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/2.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/3.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/4.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/5.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/6.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/usertype/Thumbs.db password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Arrow_Down.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Arrow_Up.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Button.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/comment_header.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/GameIconsBig.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/goldmem.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Header.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/login_gg_logo.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/login_header_bar.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Logo.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/menu.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/messagetab.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/Others.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/outbar_lab.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/panel.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ProgressBarBgH.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ProgressBarBgV.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ProgressBarH.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ProgressBarV.bmp password protected

13/4/2009 00:58:37 File: C:\Arquivos de programas\Garena\Skin\Skin.ggz/ScrollBarArrows.bmp password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\audio.isf/som_entrada.wav password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/barra_titulo_historia_biblica.JPG password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/barra_titulo_historia_universal.JPG password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/barra_titulo_personalidades.JPG password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/historia_biblica.hmp password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/historia_biblica.hmt password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/historia_biblica.JPG password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/historia_universal.hmp password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/historia_universal.hmt password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/historia_universal.JPG password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/personalidades.hmp password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/personalidades.hmt password protected

13/4/2009 01:07:59 File: C:\Arquivos de programas\MundoBiblico\mmi\cronologia.isf/personalidades.JPG password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/1.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/10.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/100.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/101.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/102.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/103.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/104.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/105.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/106.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/107.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/108.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/109.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/11.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/110.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/111.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/112.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/113.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/114.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/115.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/116.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/117.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/118.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/119.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/12.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/120.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/121.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/122.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/123.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/124.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/125.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/126.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/127.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/128.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/129.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/13.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/130.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/131.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/132.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/133.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/134.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/135.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/136.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/137.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/138.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/139.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/14.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/140.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/141.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/142.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/143.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/144.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/145.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/146.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/147.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/148.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/149.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/15.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/150.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/151.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/152.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/153.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/154.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/155.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/156.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/157.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/158.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/159.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/16.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/160.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/161.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/162.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/163.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/164.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/165.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/166.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/167.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/168.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/169.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/17.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/170.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/171.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/172.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/173.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/174.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/175.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/176.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/177.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/178.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/179.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/18.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/180.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/181.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/182.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/183.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/184.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/185.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/186.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/187.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/188.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/189.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/19.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/190.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/191.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/192.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/193.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/194.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/195.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/196.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/197.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/198.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/199.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/2.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/20.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/200.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/201.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/202.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/203.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/204.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/205.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/206.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/207.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/208.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/209.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/21.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/210.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/211.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/212.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/213.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/214.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/215.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/22.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/23.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/24.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/25.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/26.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/27.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/28.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/29.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/3.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/30.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/31.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/32.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/33.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/34.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/35.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/36.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/37.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/38.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/39.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/4.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/40.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/41.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/42.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/43.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/44.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/45.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/46.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/47.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/48.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/49.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/5.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/50.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/51.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/52.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/53.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/54.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/55.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/56.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/57.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/58.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/59.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/6.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/60.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/61.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/62.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/63.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/64.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/65.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/66.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/67.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/68.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/69.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/7.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/70.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/71.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/72.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/73.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/74.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/75.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/76.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/77.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/78.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/79.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/8.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/80.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/81.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/82.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/83.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/84.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/85.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/86.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/87.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/88.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/89.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/9.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/90.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/91.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/92.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/93.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/94.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/95.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/96.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/97.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/98.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_img_a.isf/99.jpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video1.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video10.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video11.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video12.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video14.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video15.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video16.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video18.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video19.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video2.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video20.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video22.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video23.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video24.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video25.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video26.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video27.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video28.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video29.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video3.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video4.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video5.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video6.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video7.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video8.mpg password protected

13/4/2009 01:08:00 File: C:\Arquivos de programas\MundoBiblico\mmi\mm_vid_a.isf/Video9.mpg password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide0.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide1.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide10.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide11.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide12.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide13.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide2.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide3.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide4.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide5.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide6.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide7.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide8.JPG password protected

13/4/2009 01:08:01 File: C:\Arquivos de programas\MundoBiblico\mmi\recursos.isf/slide9.JPG password protected

13/4/2009 01:24:20 File: C:\Documents and Settings\Proprietário\Dados de aplicativos\GlarySoft\Glary Utilities\Backups\39908,5201468403/glary.ini password protected

13/4/2009 01:33:00 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\Smart_Install_Maker_3.09.rar/Smart Install Maker 3.09\Smart Install Maker.exe password protected

13/4/2009 01:33:00 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\Smart_Install_Maker_3.09.rar/Smart Install Maker 3.09\www.CWER.ru.url password protected

13/4/2009 01:33:30 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\w175_w180(LOCOSTO FLASH INTERFACE USB DRIVER).rar/w175_w180\dmtoolusb.inf password protected

13/4/2009 01:33:30 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\w175_w180(LOCOSTO FLASH INTERFACE USB DRIVER).rar/w175_w180\dmtoolusb.sys password protected

13/4/2009 01:33:30 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\w175_w180(LOCOSTO FLASH INTERFACE USB DRIVER).rar/w175_w180\PhSerUsb.sys password protected

13/4/2009 01:33:30 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\w175_w180(LOCOSTO FLASH INTERFACE USB DRIVER).rar/w175_w180\PhSerUsbMdm.inf password protected

13/4/2009 01:33:30 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\w175_w180(LOCOSTO FLASH INTERFACE USB DRIVER).rar/w175_w180\PhSerUsbPort.inf password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file007 password protected

Compartilhar este post


Link para o post
Compartilhar em outros sites

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file008 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file009 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file010 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file011 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file012 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file013 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file014 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file015 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file016 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file018 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file019 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file020 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file021 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file022 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file023 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file024 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file025 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file026 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file027 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file028 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file029 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file030 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file031 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file032 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file033 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file034 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file035 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file036 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file037 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file038 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file039 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file040 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file041 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file042 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file043 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file044 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file045 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file046 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file047 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file048 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file049 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file050 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file051 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file052 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file053 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file054 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file055 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file056 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file057 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file058 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file059 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file060 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file061 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file062 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file063 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file064 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file065 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file066 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file067 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file068 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file069 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file070 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file071 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file072 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file073 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file074 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file075 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file076 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file077 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file078 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file079 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file080 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file081 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file082 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file083 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file084 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file085 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file086 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file087 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file088 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file089 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file090 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file091 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file092 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file093 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file094 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file095 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file096 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file097 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file098 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file099 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file100 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file101 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file102 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file103 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file104 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file105 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file106 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file107 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file108 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file109 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file110 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file111 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file112 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file113 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file114 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file115 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file116 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file117 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file118 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file119 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file120 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file121 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file122 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file123 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file124 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file125 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file126 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file127 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file128 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file129 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file130 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file131 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file132 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file133 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file134 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file135 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file136 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file137 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file138 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file139 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file140 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file141 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file142 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file143 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file144 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file145 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file146 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file147 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file148 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file149 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file150 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file151 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file152 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file153 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file154 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file155 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file156 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file157 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file158 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file159 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file160 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file161 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file162 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file163 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file164 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file165 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file166 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file167 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file168 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file169 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file170 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file171 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file172 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file173 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file174 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file175 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file176 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file177 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file178 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file179 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file180 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file181 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file182 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file183 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file184 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file185 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file186 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file187 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file188 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file189 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file190 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file191 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file192 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file193 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file194 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file195 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file196 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file197 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file198 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file199 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file200 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file201 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file202 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file203 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file204 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file205 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file206 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file207 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file208 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file209 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file210 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file211 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file212 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file213 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file214 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file215 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file216 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file217 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file218 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file219 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file220 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file221 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file222 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file223 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file224 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file225 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file226 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file227 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file228 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file229 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file230 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file231 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file232 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file233 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file234 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file235 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file236 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file237 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file238 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file239 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file240 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file241 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file242 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file243 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file244 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file245 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file246 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file247 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file248 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file249 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file250 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file251 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file252 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file253 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file254 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file255 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file256 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file257 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file258 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file259 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file260 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file261 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file262 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file263 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file264 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file265 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file266 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file267 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file268 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file269 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file270 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file271 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file272 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file273 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file274 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file275 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file276 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file277 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file278 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file279 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file280 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file281 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file282 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file283 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file284 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file285 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file286 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file287 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file288 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file289 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file290 password protected

13/4/2009 01:55:53 File: C:\Documents and Settings\Proprietário\desktop\Nova pasta\HD_Audio\klmcodec470.exe//file291 password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide0.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide1.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide10.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide11.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide12.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide13.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide2.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide3.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide4.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide5.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide6.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide7.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide8.JPG password protected

13/4/2009 02:44:07 File: C:\downloads\setup_mb.exe//data0008/slide9.JPG password protected

13/4/2009 02:44:10 File: C:\downloads\setup_mb.exe//data0009/som_entrada.wav password protected

Compartilhar este post


Link para o post
Compartilhar em outros sites

×

Informação importante

Ao usar o fórum, você concorda com nossos Termos e condições.