altitdb 0 Denunciar post Postado Dezembro 21, 2009 Bom dia galera, estou com um problema em um dos servidores aqui da empresa. Utilizo windows 2000 server e quando estou fazendo copia do bkp ele da um erro igual este: Device\LanmanRedirector\bkp\BACKUP\publico.bks Esse erro toda vez que faço a copia dos arquivos. Aproveite e fiz o Scan com o HijackThis como vi pedido nos outros topicos. Gostaria que alguem analizasse e me passasse alguma dica de como resolver. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:14:58, on 12/21/2009 Platform: Windows 2000 SP4 (WinNT 5.00.2195) MSIE: Internet Explorer v5.00 SP4 (5.00.2920.0000) Boot mode: Normal Running processes: C:\Documents and Settings\administrador.FRANGODM\WINDOWS\System32\smss.exe C:\WINNT\system32\winlogon.exe C:\WINNT\system32\services.exe C:\WINNT\system32\lsass.exe C:\WINNT\system32\Ati2evxx.exe C:\WINNT\system32\svchost.exe C:\WINNT\system32\spoolsv.exe C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccSetMgr.exe C:\Arquivos de programas\IBM\Director\cimom\bin\cimlistener.exe C:\Arquivos de programas\Symantec AntiVirus\DefWatch.exe C:\WINNT\system32\Dfssvc.exe C:\WINNT\system32\svchost.exe C:\Arquivos de programas\GbPlugin\GbpSv.exe C:\WINNT\system32\hidserv.exe C:\Arquivos de programas\IBM\Director\bin\IBMSA.exe C:\Arquivos de programas\IBM\Director\bin\slp_srvreg.exe C:\WINNT\System32\llssrv.exe C:\WINNT\system32\ntfrs.exe C:\WINNT\system32\regsvc.exe C:\WINNT\system32\locator.exe C:\Arquivos de programas\Symantec AntiVirus\SavRoam.exe C:\WINNT\System32\mstask.exe C:\Arquivos de programas\Arquivos comuns\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Arquivos de programas\Symantec AntiVirus\Rtvscan.exe C:\WINNT\system32\lserver.exe C:\Arquivos de programas\IBM\Director\cimom\bin\tier1slp.exe C:\Arquivos de programas\IBM\Director\bin\twgipcsv.exe C:\WINNT\System32\WBEM\WinMgmt.exe C:\Arquivos de programas\IBM\Director\bin\twgipc.exe C:\Arquivos de programas\UltraVNC\WinVNC.exe C:\Arquivos de programas\IBM\Director\cimom\bin\wmicimserver.exe C:\WINNT\system32\svchost.exe C:\WINNT\system32\svchost.exe C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccEvtMgr.exe C:\WINNT\System32\dns.exe C:\WINNT\System32\ismserv.exe C:\WINNT\system32\msdtc.exe C:\WINNT\system32\Ati2evxx.exe C:\WINNT\Explorer.EXE C:\WINNT\System32\svchost.exe C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccApp.exe C:\ARQUIV~1\SYMANT~1\VPTray.exe C:\WINNT\System32\rundll32.exe \altieres\c$\Documents and Settings\altieres\Desktop\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = &http://home.microsoft.com/intl/br/access/allinone.asp R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINNT\system32\blank.htm R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 192.168.10.254:3128 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 201.15.243.202:61080;192.168.10.15:1158;<local> F2 - REG:system.ini: UserInit=C:\WINNT\system32\userinit.exe, O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file) O2 - BHO: G-Buster Browser Defense CEF - {C41A1C0E-EA6C-11D4-B1B8-444553540003} - C:\Arquivos de programas\GbPlugin\gbiehCef.dll O3 - Toolbar: @msdxmLC.dll,-1@1033,&Rádio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx O4 - HKLM\..\Run: [ccApp] "C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [vptray] C:\ARQUIV~1\SYMANT~1\VPTray.exe O4 - HKLM\..\Run: [MsmqIntCert] regsvr32 /s mqrt.dll O4 - HKLM\..\Run: [WinVNC] "C:\Arquivos de programas\UltraVNC\WinVNC.exe" -servicehelper O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Arquivos de programas\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user') O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~3\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~3\OFFICE11\REFIEBAR.DLL O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Documents and Settings\administrador.FRANGODM\WINDOWS\web\related.htm (file missing) O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Documents and Settings\administrador.FRANGODM\WINDOWS\web\related.htm (file missing) O10 - Broken Internet access because of LSP provider 'c:\documents and settings\administrador.frangodm\windows\system32\rnr20.dll' missing O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1228917572328 O16 - DPF: {DB6BF2CD-4F59-4F1C-AA9C-D08C0B61A931} (GbpDistObj Class) - https://imagem.caixa.gov.br/cab/gbpdist.cab O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = frangodm O17 - HKLM\System\CCS\Services\Tcpip\..\{4DD2AD7C-37D3-4471-AA5A-DF272F05BB73}: NameServer = 192.168.10.9 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = frangodm O17 - HKLM\System\CS1\Services\Tcpip\..\{4DD2AD7C-37D3-4471-AA5A-DF272F05BB73}: NameServer = 192.168.10.9 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = frangodm O17 - HKLM\System\CS2\Services\Tcpip\..\{4DD2AD7C-37D3-4471-AA5A-DF272F05BB73}: NameServer = 192.168.10.9 O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Arquivos de programas\Arquivos comuns\Symantec Shared\ccSetMgr.exe O23 - Service: IBM Director CIM Listener (cimlistener) - OpenSource Pegasus - C:\Arquivos de programas\IBM\Director\cimom\bin\cimlistener.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Arquivos de programas\Symantec AntiVirus\DefWatch.exe O23 - Service: Serviço administrativo do gerenciador de disco lógico (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe O23 - Service: Gbp Service (GbpSv) - Unknown owner - C:\Arquivos de programas\GbPlugin\GbpSv.exe O23 - Service: IBM SLP SA (ibmsa) - IBM Corporation - C:\Arquivos de programas\IBM\Director\bin\IBMSA.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\ARQUIV~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: OracleClientCache80 - Unknown owner - C:\orant\BIN\ONRSD80.EXE (file missing) O23 - Service: SAVRoam (SavRoam) - symantec - C:\Arquivos de programas\Symantec AntiVirus\SavRoam.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Arquivos de programas\Arquivos comuns\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Arquivos de programas\Symantec AntiVirus\Rtvscan.exe O23 - Service: IBM Director Agent SLP Attributes (tier1slp) - IBM Corporation - C:\Arquivos de programas\IBM\Director\cimom\bin\tier1slp.exe O23 - Service: IBM Director Support Program (TWGIPC) - IBM Corporation - C:\Arquivos de programas\IBM\Director\bin\twgipcsv.exe O23 - Service: VNC Server (winvnc) - UltraVNC - C:\Arquivos de programas\UltraVNC\WinVNC.exe O23 - Service: IBM Director Agent WMI CIM Server (wmicimserver) - IBM Corporation - C:\Arquivos de programas\IBM\Director\cimom\bin\wmicimserver.exe -- End of file - 7352 bytes Desde já um muito obrigado. Compartilhar este post Link para o post Compartilhar em outros sites
Mário Monteiro 179 Denunciar post Postado Janeiro 21, 2010 Tópico Arquivado Como o autor não respondeu por mais de 30 dias, o tópico foi arquivado. Caso você seja o autor do tópico e quer reabrir, envie uma mensagem privada para um moderador da área juntamente com o link para este tópico e explique o motivo da reabertura. Compartilhar este post Link para o post Compartilhar em outros sites