Pesquise no PCFórum - Digite sua dúvida aqui
Bem-vindo, Visitante. Por favor efetue Login ou Registre-se
PCFORUM.com.br

    
Notícias:
  Home Fórum Notícias Anuncie AjudaLoginCadastre-se  
 

Páginas: 1 2 
Explorer trava toda hora! Me ajudem! (Lido 4447 vezes)   
tici2009


Offline

Indique o PCFORUM
para seus amigos!

Postagens: 15

Explorer trava toda hora! Me ajudem!
30.11.2009 às 00:25:35
 
Gente, preciso de ajuda ... toda hora trava meu explorer e fica sem resposta. acho que deve ser virus ... Veja o log e me ajudem, por favor ...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:24:13, em 30/11/2009
Plataforma: Windows XP SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal

Running processes:
C: \ Windows \ system32 \ Dwm.exe
C: \ Windows \ system32 \ Taskeng.exe
C: \ Program Files \ Apoint \ SynTPEnh.exe
C: \ Program Files \ Windows Defender \ MSASCui.exe
C: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ QlbCtrl.exe
C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe
C: \ Program Files \ ATI Technologies \ ATI.ACE \ Core-Static \ MOM.exe
C: \ Program Files \ Hewlett-Packard \ HP MediaSmart \ SmartMenu.exe
C: \ Program Files \ IDT \ WDM \ sttray.exe
C: \ Program Files \ Hewlett-Packard \ Media \ DVD \ DVDAgent.exe
C: \ Program Files \ Alwil Software \ Avast4 \ ashDisp.exe
C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe
C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe
C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNotifier.exe
C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe
C: \ Program Files \ WIDCOMM \ Bluetooth Software \ BTTray.exe
C: \ Program Files \ WIDCOMM \ Bluetooth Software \ BtStackServer.exe
C: \ Program Files \ ATI Technologies \ ATI.ACE \ Core-Static \ CCC.exe
C: \ Windows \ system32 \ wbem \ unsecapp.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Program Files \ Google \ Google Toolbar \ GoogleToolbarUser_32.exe
C: \ Program Files \ Hewlett-Packard \ Shared \ hpqToaster.exe
C: \ Windows \ system32 \ Macromed \ Flash \ FlashUtil10c.exe
C: \ Windows \ system32 \ conime.exe
C: \ Windows \ Explorer.exe
C: \ Program Files \ Internet Explorer \ iexplore.exe
C: \ Users \ Ticiana \ Downloads \ HiJackThis \ HijackThis.exe

R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.terra.com.br/
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pt_br&c=91&bd=Pavilion...
R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Toolbar, LinksFolderName =
O1 - Hosts::: 1 localhost
O2 - BHO: AcroIEHelperStub - (18DF081C-E8AD-4283-A596-FA578C2EBDC3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Program Files \ Real \ RealPlayer \ rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S & D IE Protection - (53707962-6F74-2D53-2644-206D7942484F) - C: \ PROGRA ~ 1 \ SPYBOT ~ 1 \ SDHelper.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - 9030D464 (-4C02-4ABF-8ECC-5164760863C6) - C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - C: \ Program Files \ Google \ Google Toolbar \ GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C: \ Program Files \ Google \ GoogleToolbarNotifier \ 5.4.4525.1752 \ swg.dll
O2 - BHO: G-Buster Browser Defense - (C41A1C0E-EA6C-11D4-B1B8-444553540000) - C: \ Program Files \ GbPlugin \ gbieh.dll
O2 - BHO: FDMIECookiesBHO Class - (CC59E0F9-7E43-44FA-9FAA-8377850BF205) - C: \ Program Files \ Free Download Manager \ iefdm2.dll
O2 - BHO: Java (tm) Plug-In 2 SSV Helper - DBC80044 (-A445-435B-BC74-9C25C1C588A9) - C: \ Program Files \ Java \ jre6 \ bin \ jp2ssv.dll
O3 - Toolbar: Barra de Ferramentas Google - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - C: \ Program Files \ Google \ Google Toolbar \ GoogleToolbar_32.dll
O4 - HKLM \ .. \ Run: [CTFMON.EXE] C: \ Program Files \ ATI Technologies \ ATI.ACE \ Core-Static \ CLIStart.exe "MSRun
O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ Program Files \ Apoint \ SynTPEnh.exe
O4 - HKLM \ .. \ Run: [Windows Defender]% ProgramFiles% \ Windows Defender \ MSASCui.exe-hide
O4 - HKLM \ .. \ Run: [QlbCtrl.exe] C: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ QlbCtrl.exe / Start
O4 - HKLM \ .. \ Run: [HP Health Check Scheduler] C: \ Program Files \ Hewlett-Packard \ HP Health Check \ HPHC_Scheduler.exe
O4 - HKLM \ .. \ Run: [WirelessAssistant] C: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe
O4 - HKLM \ .. \ Run: [SmartMenu]% ProgramFiles% \ Hewlett-Packard \ HP MediaSmart \ SmartMenu.exe
O4 - HKLM \ .. \ Run: [SysTrayApp]% ProgramFiles% \ IDT \ WDM \ sttray.exe
O4 - HKLM \ .. \ Run: [DVDAgent] "C: \ Program Files \ Hewlett-Packard \ Media \ DVD \ DVDAgent.exe"
O4 - HKLM \ .. \ Run: [ARM] "C: \ Program Files \ Common Files \ Adobe \ ARM \ 1,0 \ AdobeARM.exe"
O4 - HKLM \ .. \ Run: [avast!] C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe
O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe"
O4 - HKLM \ .. \ Run: [Google Caixa de Pesquisa Rápida] "C: \ Program Files \ Google \ Caixa de Pesquisa Rápida \ GoogleQuickSearchBox.exe autorun" /
O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime atboottime \ qttask.exe"
O4 - HKLM \ .. \ Run: [CTFMON.EXE] C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe
O4 - HKLM \ .. \ Run: [swg] "C: \ Program Files \ Google \ Google Talk \ googletalk.exe"
O4 - HKLM \ .. \ Run: [msnmsgr] "C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe" / background
O4 - Startup: E-9RGPQ.lnk = C: \ Users \ Ticiana \ Desktop \ Virus Removal TOOL1 \ é-9RGPQ \ startup.exe
O4 - Global Startup: BTTray.lnk =?
O8 - Extra context menu item: Add to Google Photos Screensa & ver - res: / / C: \ Windows \ system32 \ GPhotos.scr/200
O8 - Extra context menu item: E & xportar para o Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 3 \ Office12 \ EXCEL.EXE/3000
O8 - Extra context menu item: Enviar imagem para Dispositivo & Bluetooth ... - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie_ctx.htm
O8 - Extra context menu item: Enviar página para Dispositivo & Bluetooth ... - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm
O8 - Extra context menu item: Google Sidewiki ... - Res: / / C: \ Program Files \ Google \ Google Toolbar \ Componente \ GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: Transferir com FDM - file: / / C: \ Program Files \ Free Download Manager \ dllink.htm
O8 - Extra context menu item: Transferir todos com FDM - file: / / C: \ Program Files \ Free Download Manager \ dlall.htm
O8 - Extra context menu item: Transferir vídeo com FDM - file: / / C: \ Program Files \ Free Download Manager \ dlfvideo.htm
O8 - Extra context menu item: Transferência seleccionada pelo FDM - file: / / C: \ Program Files \ Free Download Manager \ dlselected.htm
O9 - Extra button: Enviar para o OneNote - (2670000A-7350-4f3c-8081-5663EE0C6C49) - C: \ PROGRA ~ 1 \ MICROS ~ 3 \ Office12 \ Onbttnie.dll
O9 - Extra 'Tools': & Enviar para o OneNote - (2670000A-7350-4f3c-8081-5663EE0C6C49) - C: \ PROGRA ~ 1 \ MICROS ~ 3 \ Office12 \ Onbttnie.dll
O9 - Extra button: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ MICROS ~ 3 \ Office12 \ REFIEBAR.DLL
O9 - Extra button: @ btrez.dll, -4015 - (CCA281CA-C863-46EF-9331-5C8D4460577F) - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm
O9 - Extra 'Tools': @ btrez.dll, -12650 - (CCA281CA-C863-46EF-9331-5C8D4460577F) - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm
O9 - Extra button: (no name) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ SPYBOT ~ 1 \ SDHelper.dll
O9 - Extra 'Tools': Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ SPYBOT ~ 1 \ SDHelper.dll
O15 - Trusted Zone: http://tv-globo.blogspot.com
O15 - Trusted Zone: http://www.gmail.com
O15 - Trusted Zone: www.megacubo.net
O16 - DPF: (E2883E8F-472F-4FB0-9522-AC9BF37916A7) (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O20 - Winlogon Notify: GbPluginBb - C: \ Program Files \ GbPlugin \ gbieh.dll
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C: \ Windows \ system32 \ DriverStore \ stwrt.inf_805f33de FileRepository \ \ aestsrv.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C: \ Windows \ system32 \ agrsmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C: \ Windows \ system32 \ ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, LP - C: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ Com4QLBEx.exe
O23 - Service: @ C: \ Program Files \ DigitalPersona \ Bin \ DpHostW.exe, -128 (DpHost) - DigitalPersona, Inc. - C: \ Program Files \ DigitalPersona \ Bin \ DpHostW.exe
O23 - Service: Gbp Service (GbpSv) - - C: \ PROGRA ~ 1 \ GbPlugin \ GbpSv.exe
O23 - Service: Google Updater (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c: \ Program Files \ Hewlett-Packard \ HP Health Check \ hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, LP - C: \ Program Files \ Hewlett-Packard \ Shared \ hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - A Hewlett-Packard Corporation - C: \ Windows \ system32 \ Hpservice.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1050 \ Intel 32 \ IDriverT.exe
O23 - Service: NVSvc Direct Disc Labeling Service (NVSvc) - A Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe
O23 - Service: NMIndexingService - Unknown owner - C: \ Program Files \ Common Files \ Nero \ Lib \ NMIndexingService.exe (file missing)
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C: \ Windows \ system32 \ IoctlSvc.exe
O23 - Service: Serviço de Recuperação para Windows - Unknown owner - C: \ Program Files \ SMINST \ BLService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe
O23 - Service: Audio (STacSV) - IDT, Inc. - C: \ Windows \ system32 \ DriverStore \ stwrt.inf_805f33de FileRepository \ \ STacSV.exe
O23 - Service: Validade Fingerprint Service (vfsFPService) - Validade Sensors, Inc. - C: \ Windows \ system32 \ vfsFPService.exe

--
End of file - 10651 bytes
Voltar ao topo
 
 
Visualizar Perfil   IP registrado
PCRobô
Divulgador

Online

PCFórum, o mais completo fórum de informática do Brasil!

Postagens: 99999999
Brasil
Gênero: male
Anúncios

Voltar ao topo
Email Visualizar Perfil IP registrado
dommarco
Moderador desta área

Offline

Conhece-te a ti
mesmo. ( Sócrates)

Postagens: 4931
Divinópolis MG
Re: Explorer trava toda hora! Me ajudem!
Resposta #1 - 30.11.2009 às 09:14:29
 
Seu log me parece que não foi gerado corretamente e isso pode nos induzir à algum erro,por isso não pedirei pra que vc apague nada à partir deste log.

Faça uma verificação completa com o Dr Web Curelt!

Em seguida outra com o Malwarebytes(atualizado).

Baixe e execute o O23Fix 2.0.2.exe, click em Ejecutar, ok e Salir.

Faça uma correção de erros com o Advanced systemcare.

Desative todos os programas que estão iniciando sem necessidade com o Windows,exceto o seu anti-vírus, veja como fazer isso usando o Ccleaner aqui.

Vá em iniciar>configurações>painel de controle> duplo click em opções de pasta>modos de exibição e marque a opção mostrar pastas e arquivos ocultos, ok e aplicar.

Feitos estes procedimentos post um novo log do Hijackthis juntamente com os logs do Malwarebytes e do Dr Web Curelt! e relate se houve melhora no pc. Abçs e boa sorte!

Voltar ao topo
 
 
Visualizar Perfil WWW dommarco dommarco dommarco3 dommarco42   IP registrado
tici2009


Offline

Indique o PCFORUM
para seus amigos!

Postagens: 15

Re: Explorer trava toda hora! Me ajudem!
Resposta #2 - 30.11.2009 às 22:38:03
 
ok, mto obrigada. vou fazer os procedimentos e depois posto aqui.
Sorriso
Voltar ao topo
 
 
Visualizar Perfil   IP registrado
dommarco
Moderador desta área

Offline

Conhece-te a ti
mesmo. ( Sócrates)

Postagens: 4931
Divinópolis MG
Re: Explorer trava toda hora! Me ajudem!
Resposta #3 - 30.11.2009 às 23:00:39
 
tici2009 escreveu em 30.11.2009 às 22:38:03:
ok, mto obrigada. vou fazer os procedimentos e depois posto aqui.
Sorriso


Ficamos aguardando!
Voltar ao topo
 
 
Visualizar Perfil WWW dommarco dommarco dommarco3 dommarco42   IP registrado
tici2009


Offline

Indique o PCFORUM
para seus amigos!

Postagens: 15

Re: Explorer trava toda hora! Me ajudem!
Resposta #4 - 05.12.2009 às 22:19:55
 
Esse Dr. não consegui passar no pc, será que não roda em vista?
.
Veja o log do malwarebytes:
Malwarebytes' Anti-Malware 1.41
Versão do banco de dados: 3264
Windows 6.0.6002 Service Pack 2

01/12/2009 00:16:01
mbam-log-2009-12-01 (00-16-01).txt

Tipo de Verificação: Completa (C:\|D:\|)
Objetos verificados: 245053
Tempo decorrido: 1 hour(s), 4 minute(s), 3 second(s)

Processos da Memória infectados: 0
Módulos de Memória Infectados: 0
Chaves do Registro infectadas: 0
Valores do Registro infectados: 0
Ítens do Registro infectados: 0
Pastas infectadas: 0
Arquivos infectados: 1

Processos da Memória infectados:
(Nenhum ítem malicioso foi detectado)

Módulos de Memória Infectados:
(Nenhum ítem malicioso foi detectado)

Chaves do Registro infectadas:
(Nenhum ítem malicioso foi detectado)

Valores do Registro infectados:
(Nenhum ítem malicioso foi detectado)

Ítens do Registro infectados:
(Nenhum ítem malicioso foi detectado)

Pastas infectadas:
(Nenhum ítem malicioso foi detectado)

Arquivos infectados:
C:\Users\Ticiana\Downloads\In-Dow-Ma--5.17-Bui-5++Pat\Internet Download Manager Vs. 5.17.Build.5 + Crack\Patch 5.xx (2008-12-06).exe (Trojan.Agent) -> Quarantined and deleted successfully.
Voltar ao topo
 
 
Visualizar Perfil   IP registrado
PCRobô
Divulgador

Online

PCFórum, o mais completo fórum de informática do Brasil!

Postagens: 99999999
Brasil
Gênero: male
Anúncios

Voltar ao topo
Email Visualizar Perfil IP registrado
tici2009


Offline

Indique o PCFORUM
para seus amigos!

Postagens: 15

Re: Explorer trava toda hora! Me ajudem!
Resposta #5 - 05.12.2009 às 22:23:02
 
Passei o ComboFix, como não consegui passar o Dr. veja o log do ComboFix:
ComboFix 09-12-02.05 - Ticiana 02/12/2009 21:01.4.2 - 86
Microsoft ® Windows Vista ™ Home Basic 6.0.6002.2.1252.55.1046.18.1789.971 [GMT -2:00]
Executando de: C: \ Users \ Ticiana \ Downloads \ ComboFix.exe
SP: Spybot - Search and Destroy * deficiência * (Atualizado) (ED588FAF-1B8F-43B4-AcA8-8E3C85DADBE9)
SP: O Windows Defender habilitado * * (Atualizado) (D68DDC3A-831F-4FAE-9E44-DA132C1ACF46)
.
[i] ADS - motoristas: foi excluído 204 bytes in 1 streams. [/ i]

(((((((((((((((( Arquivos / Ficheiros criados de 2009/11/02 a 2009/12/02 )))))))))))))))))) ))))))))))
.

2009-12-02 23:19. 2009-12-02 23:19 -------- d ----- w-C: \ Users \ Public \ AppData \ Local \ Temp
2009-12-02 23:19. 2009-12-02 23:19 -------- d ----- w-C: \ Users \ Default \ AppData \ Local \ Temp
2009-12-02 22:39. 2009-12-02 22:39 1438704----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ SearchWithGoogleUpdate_C58171F2E8870EA4.exe
2009-12-02 22:39. 2009-12-02 22:39 1002096----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ GoogleToolbarManager_0E996B068B56FCA2.exe
2009-12-02 22:39. 2009-12-02 22:39 392704----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ GoogleToolbarDynamic_mui_pt-BR_324E45F73759905B.dll
2009-12-02 22:39. 2009-12-02 22:39 648192----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ GoogleToolbarDynamic_mui_en_60D6097707281E79.dll
2009-12-02 22:39. 2009-12-02 22:39 2726000----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ GoogleToolbarDynamic_32_E0B3D00E06C2FA01.dll
2009-12-02 22:37. 2009-12-02 22:37 1230960----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ GoogleCld_3F6C343113693CD9.dll
2009-12-02 22:37. 2009-12-02 22:37 390144----- aw C: \ ProgramData \ Google \ Google Toolbar \ Componente \ GoogleToolbarDynamic_mui_pt-BR_4484EF110BC303E9.dll
2009-12-02 22:36. 2009-12-02 22:36 33553----- aw C: \ ProgramData \ Google \ Google Toolbar para Firefox \ Firefox_Toolbar_Uninstaller.exe
2009-12-01 00:31. 2009-12-01 00:31 -------- d ----- w-C: \ Users \ Ticiana \ AppData \ Roaming \ Malwarebytes
2009-12-01 00:30. 2009-09-10 16:54 38224 ---- aw-c: \ windows \ system32 \ drivers \ mbamswissarmy.sys
2009-12-01 00:30. 2009-12-01 00:31 4096-d ----- w C: \ Program Files \ Malwarebytes 'Anti-Malware
2009-12-01 00:30. 2009-12-01 00:30 -------- d ----- w-C: \ ProgramData \ Malwarebytes
2009-12-01 00:30. 2009-09-10 16:53 19160 ---- aw-c: \ windows \ system32 \ drivers \ mbam.sys
2009-11-30 22:38. 2009-11-30 23:59 -------- d ----- w-C: \ Users \ Ticiana \ DoctorWeb
2009-11-30 00:17. 2009-11-30 00:17 318976 ---- aw-c: \ windows \ system32 \ CF13204.exe
2009-11-29 22:53. 2009-11-29 22:53 -------- d ----- w-C: \ ProgramData \ é-9RGPQ
2009-11-29 22:45. 2009-12-02 06:34 37578784 Sha --w-c: \ windows \ system32 \ drivers \ fidbox.dat
2009-11-29 22:35. 2008-07-08 15:54 148496 ---- aw-c: \ windows \ system32 \ drivers \ 21163858.sys
2009-11-29 22:28. 2009-11-29 22:28 673280----- aw C: \ WINDOWS \ is-618L6.exe
2009-11-25 22:17. 2009-10-29 09:17 2048 ---- aw-c: \ windows \ system32 \ Tzres.dll
2009-11-25 22:15. 2009-11-25 22:15 -------- d ----- w-c: \ Program Files \ MSXML 4.0
2009-11-24 23:04. 2009-08-11 16:44 1401856 ---- aw-c: \ windows \ system32 \ msxml6.dll
2009-11-24 23:04. 2009-08-11 16:44 1248768 ---- aw-c: \ windows \ system32 \ msxml3.dll
2009-11-19 00:14. 2009-11-19 00:14 180224 ---- aw-c: \ windows \ system32 \ pausep.exe
2009-11-18 00:17. 2009-09-15 09:54 23152 ---- aw-c: \ windows \ system32 \ drivers \ aswRdr.sys
2009-11-18 00:17. 2009-09-15 09:54 52368 ---- aw-c: \ windows \ system32 \ drivers \ aswTdi.sys
2009-11-18 00:17. 2009-09-15 09:53 97480 ---- aw-c: \ windows \ system32 \ AvastSS.scr
2009-11-18 00:17. 2009-09-15 09:55 114768 ---- aw-c: \ windows \ system32 \ drivers \ aswSP.sys
2009-11-18 00:17. 2009-09-15 09:55 20560 ---- aw-c: \ windows \ system32 \ drivers \ aswFsBlk.sys
2009-11-18 00:16. 2009-09-15 09:59 1279968 ---- aw-c: \ windows \ system32 \ aswBoot.exe
2009-11-18 00:16. 2009-09-15 09:55 53328 ---- aw-c: \ windows \ system32 \ drivers \ aswMonFlt.sys
2009-11-11 21:58. 2009-08-14 13:27 2036736 ---- aw-c: \ windows \ system32 \ win32k.sys
2009-11-11 21:58. 2009-08-10 12:35 355328 ---- aw-c: \ windows \ system32 \ Wsdapi.dll
2009-11-07 01:31. 2009/11/15 01:35 180,488 ---- aw-c: \ windows \ PSEXESVC.EXE
2009-11-04 00:18. 2009-11-04 00:41 -------- d ----- w-C: \ SMCLpav

.
((((((((((((((((((((((((((((((((((((( Relatório Find3M ))))))))))) )))))))))))))))))))))))))))))))))))))))))
.
2009-12-02 22:36. 2009-08-12 20:18 4096-d ----- w C: \ Program Files \ Google
2009-12-01 02:26. 2009-11-29 22:45 344288 Sha --w-c: \ windows \ system32 \ drivers \ fidbox.idx
2009-12-01 02:26. 2009-06-23 22:53 12 ---- aw-c: \ windows \ bthservsdp.dat
2009-11-29 23:43. 2009/06/24 02:57 634,222 ---- aw-c: \ windows \ system32 \ prfh0416.dat
2009-11-29 23:43. 2009/06/24 02:57 121,888 ---- aw-c: \ windows \ system32 \ prfc0416.dat
2009-11-29 22:45. 2009-08-18 19:06 20480 d ----- w-c: \ Program Files \ Glary Utilities
2009-11-29 22:42. 2009-09-12 16:57 4096-d ----- w C: \ Users \ Ticiana \ AppData \ Roaming \ Free Download Manager
2009-11-29 15:47. 2009-08-12 03:27 4096-d ----- w C: \ Program Files \ QuickTime
2009-11-25 22:12. 2009-08-18 19:29 7052----- aw C: \ Users \ Ticiana \ AppData \ Local \ d3d9caps.dat
2009-11-18 22:51. 2009-06-24 00:28 4096-d ----- w C: \ Program Files \ Java
2009-11-15 01:40. 2009-10-27 01:37 4096-d ----- w C: \ Program Files \ Megacubo
2009-11-14 22:38. 2009-08-13 23:45 8192-d ----- w C: \ Program Files \ Spybot - Search & Destroy
2009-11-14 02:27. 2009-08-13 23:45 4096-d ----- w C: \ ProgramData \ Spybot - Search & Destroy
2009-11-04 00:23. 2009-06-23 23:19 8192 d - h - w-c: \ Arquivos de programas \ InstallShield Installation Information
2009-11-04 00:22. 2009-10-13 04:24 4096-d ----- w C: \ Program Files \ Panda Security
2009-11-04 00:22. 2009-10-13 04:00 -------- d ----- w-c: \ Program Files \ Common Files \ Panda Security
2009-11-04 00:19. 2009-10-13 04:06 -------- d ----- w-C: \ ProgramData \ Panda Security
2009-11-02 22:42. 2009-10-12 17:00 195456 ------ w-c: \ windows \ system32 \ MpSigStub.exe
2009-11-02 03:39. 2009-11-02 03:39 -------- d ----- w-c: \ Arquivos de programas \ Alwil Software
2009-10-28 00:29. 2009-10-28 00:25 -------- d ----- w-C: \ Users \ Ticiana \ AppData \ Roaming \ PhotoFiltre Studio X
2009-10-28 00:24. 2009-10-28 00:24 4096-d ----- w C: \ Program Files \ PhotoFiltre Studio X
2009-10-28 00:23. 2009-10-28 00:23 -------- d ----- w-C: \ Users \ Ticiana \ AppData \ Roaming \ DivX
2009-10-26 14:06. 2009-10-26 14:06 79856----- aw C: \ ProgramData \ Google \ Google Toolbar para Firefox \ (3112ca9c-de6d-4884-a869-9855de68056c) \ uninstaller.exe
2009-10-26 01:21. 2009-10-26 00:41 -------- d ----- w-c: \ Arquivos de Programas \ backup
2009-10-24 17:16. 2006-11-02 12:35 4096-d ----- w C: \ Program Files \ Windows Sidebar
2009-10-23 23:07. 2009-09-12 16:57 8192-d ----- w C: \ Program Files \ Free Download Manager
2009-10-23 23:06. 2009-10-23 23:06 -------- d ----- w-c: ProgramData \ \ FreeDownloadManager.ORG
2009-10-23 03:40. 2009-10-23 02:36 4096-d ----- w C: \ Program Files \ Naevius USB Antivirus
2009-10-20 03:21. 2009-10-20 03:21 -------- d ----- w-c: ProgramData \ \ Macro
2009-10-19 21:30. 2009-10-19 21:30 872960----- aw C: \ ProgramData \ Google \ Google Toolbar para Firefox \ (3112ca9c-de6d-4884-a869-9855de68056c) \ components \ frozen.dll
2009-10-19 21:30. 2009-10-19 21:30 43008----- aw C: \ ProgramData \ Google \ Google Toolbar para Firefox \ (3112ca9c-de6d-4884-a869-9855de68056c) \ components \ googletoolbarloader.dll
2009-10-19 21:30. 2009-10-19 21:30 340480----- aw C: \ ProgramData \ Google \ Google Toolbar para Firefox \ (3112ca9c-de6d-4884-a869-9855de68056c) \ bibliotecas \ googletoolbar-ff2.dll
2009-10-19 21:30. 2009-10-19 21:30 346624----- aw C: \ ProgramData \ Google \ Google Toolbar para Firefox \ (3112ca9c-de6d-4884-a869-9855de68056c) \ bibliotecas \ googletoolbar-ff3.dll
2009-10-19 03:47. 2009-10-13 04:07 -------- d ----- w-c: ProgramData \ \ Backup
2009-10-18 23:19. 2009-08-29 19:40 4096-d ----- w C: \ Program Files \ GbPlugin
2009-10-18 23:19. 2009-06-24 00:13 4096-d ----- w C: \ Program Files \ Common Files \ Adobe
2009-10-18 16:22. 2009-08-29 19:40 -------- d ----- w-C: \ ProgramData \ GbPlugin
2009-10-15 16:48. 2009-08-29 19:40 30752 ---- aw-c: \ windows \ system32 \ drivers \ gbpkm.sys
2009-10-13 23:21. 2009-10-13 23:16 4096-d ----- w C: \ Program Files \ Common Files \ Real
2009-10-13 23:20. 2009-10-13 23:20 -------- d ----- w-c: \ Program Files \ Common Files \ xing compartilhada
2009-10-13 23:16. 2009-10-13 23:16 -------- d ----- w-c: \ Program Files \ Real
2009-10-13 03:55. 2009-06-23 23:21 -------- d ----- w-c: ProgramData \ \ Norton
2009-10-13 02:41. 2009-08-13 06:29 4096-d ----- w C: \ Program Files \ SopCast
2009-10-12 19:15. 2009-10-12 19:14 -------- d ----- w-C: \ Users \ Ticiana \ AppData \ Roaming \ TigerPlayer
2009-10-12 19:14. 2009-10-12 19:14 4096-d ----- w C: \ Arquivos de programas \ MpcStar
2009-10-12 18:15. 2009-10-12 18:15 232557 ---- aw-c: \ windows \ Cole2k_Media_Toolbar_Uninstaller_5596.exe
2009-10-12 17:50. 2009-10-12 17:50 36864----- aw C: \ ProgramData \ Temp \ (637CDC99-AEBB-4265-9C47-A3239C95937E) \ PostBuild.exe
2009-10-12 17:12. 2009-06-23 23:03 4096-d ----- w C: \ Program Files \ Hewlett-Packard
2009-10-12 17:11. 2009-06-24 02:36 36864----- aw C: \ ProgramData \ Temp \ (DCCAD079-F92C-44DA-B258-624FC6517A5A) \ PostBuild.exe
2009-10-12 03:56. 2009-06-23 23:19 4096-d ----- w C: \ ProgramData \ Hewlett-Packard
2009-10-11 06:21. 2009-09-27 00:24 -------- d ----- w-c: \ Program Files \ Ashampoo
2009-10-11 06:17. 2009-09-28 00:50 411368 ---- aw-c: \ windows \ system32 \ deploytk.dll
2009-10-10 17:46. 2009-08-22 06:48 -------- d ----- w-c: \ Program Files \ SharpSoft
2009-10-06 03:29. 2009-10-06 03:29 -------- d ----- w-C: \ Users \ Ticiana \ AppData \ Roaming \ vlc
2009-10-04 16:42. 2009-10-04 16:42 8192-d ----- w C: \ Program Files \ 'Full Speed' Internet Booster + Performance Tests
2009-10-04 14:56. 2009-10-04 14:56 4096-d ----- w C: \ Program Files \ Photo Studio Effects
2009-10-04 14:52. 2009-10-04 14:52 -------- d ----- w-C: \ Users \ Ticiana \ AppData \ Roaming \ Auslogics
2009-09-26 23:50. 2009-09-26 23:50 318976 ---- aw-c: \ windows \ system32 \ CF12858.exe
2009-09-20 21:44. 2006-11-02 10:25 665600 ---- aw-c: \ windows \ inf \ drvindex.dat
2009-09-17 23:27. 2009-09-17 23:26 2560 ---- aw-c: \ windows \ _Msrstrt.exe
2009-09-14 09:29. 2009-10-17 01:56 144896 ---- aw-c: \ windows \ system32 \ drivers \ Srv2.sys
2009-09-11 03:42. 2009-09-11 03:42 0 ---- aw-c: \ windows \ ativpsrm.bin
2009-09-10 16:48. 2009/10/17 02:02 218,624 ---- aw-c: \ windows \ system32 \ Msv1_0.dll
2009-09-10 03:29. 2009-08-11 22:25 92544----- aw C: \ Users \ Ticiana \ AppData \ Local \ GDIPFONTCACHEV1.DAT
2009-09-07 15:29. 2009-09-07 15:29 4455865 ---- aw-c: \ windows \ system32 \ libavcodec.dll
2009-09-06 14:52. 2009-09-06 14:52 828611 ---- aw-c: \ windows \ system32 \ ff_x264.dll
2009-09-06 07:00. 2009-06-24 02:53 36864----- aw C: \ ProgramData \ Temp \ (01FB4998-33C4-4431-85ED-079E3EEFE75D) \ PostBuild.exe
2009-09-06 06:58. 2009-06-24 02:49 36864----- aw C: \ ProgramData \ Temp \ (67626E09-5366-4480-8F1E-93FADF50CA15) \ PostBuild.exe
2009-09-06 06:55. 2009-06-24 02:39 36864----- aw C: \ ProgramData \ Temp \ (B2EE25B9-5B00-4ACF-94F0-92433C28C39E) \ PostBuild.exe
2009-09-04 11:41. 2009-10-17 01:56 60928 ---- aw-c: \ windows \ system32 \ msasn1.dll
2009-06-24 03:24. 2009-06-24 03:01 8192 Sha --w-c: \ windows \ Users \ Default \ NTUSER.DAT
.

(((((((((((((((((((((((((( Pontos de Carregamento do Registro ))))))))))))))))))) ))))))))))))))))))))
.
.
* Nota * entradas vazias e legítimas por defeito não são Mostradas.
REGEDIT4

[HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run]
"CTFMON.EXE" = "c: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe" [2009-03-05 2260480]
"msnmsgr" = "c: \ Program Files \ Windows Live \ Messenger \ MsnMsgr.Exe" [2009-07-26 3883840]
"swg" = "C: \ Arquivos de programas \ Google \ Google Talk \ googletalk.exe" [2009-12-02 39408]

[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Run]
"CTFMON.EXE" = "c: \ Program Files \ ATI Technologies \ ATI.ACE \ Core-Static \ CLIStart.exe MSRun" [X]
"O Google Caixa de pesquisa rápida" = "c: \ Program Files \ Google \ Caixa de pesquisa rápida \ GoogleQuickSearchBox.exe" [X]
"NeroFilterCheck" = "c: \ Program Files \ Apoint \ Apoint.exe" [2008-06-20 1316136]
"Windows Defender" = "c: \ Program Files \ Windows Defender \ MSASCui.exe" [2008-01-21 1008184]
"QlbCtrl.exe" = "c: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ QlbCtrl.exe" [2008-10-10 206128]
"HP Health Check Scheduler" = "c: \ Program Files \ Hewlett-Packard \ HP Health Check \ HPHC_Scheduler.exe" [2008-10-09 75008]
"WirelessAssistant" = "c: \ Program Files \ Hewlett-Packard \ HP Wireless Assistant \ HPWAMain.exe" [2008-12-08 432432]
"SmartMenu" = "c: \ Program Files \ Hewlett-Packard \ HP MediaSmart \ SmartMenu.exe" [2008-11-18 914224]
"SysTrayApp" = "C: \ Arquivos de programas \ IDT \ WDM \ sttray.exe" [2008-09-11 446556]
"DVDAgent" = "c: \ Program Files \ Hewlett-Packard \ Media \ DVD \ DVDAgent.exe" [2009-03-11 1148200]
"A Adobe ARM" = "c: \ Program Files \ Common Files \ Adobe \ ARM \ 1,0 \ AdobeARM.exe" [2009-09-04 935288]
"avast!" = "c: \ progra ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe" [2009-09-15 81000]
"SunJavaUpdateSched" = "C: \ Arquivos de programas \ Java \ jre6 \ bin \ jusched.exe" [2009-10-11 149280]
"QuickTime Task" = "c: \ Program Files \ QuickTime \ qttask.exe" [2007-06-29 286720]
"Malwarebytes Anti-Malware (reboot)" = "c: \ Program Files \ Malwarebytes 'Anti-Malware \ mbam.exe" [2009-09-10 1312080]

C: \ ProgramData \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \
BTTray.lnk - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ BTTray.exe [2008-6-19 727592]

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ CurrentVersion \ Policies \ System]
"EnableUIADesktopToggle" = 0 (0x0)

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ Winlogon \ Notify \ GbPluginBb]
2009-10-15 16:42 316192----- aw C: \ Program Files \ GbPlugin \ gbieh.dll

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ drivers32]
"mixer" = Wdmaud.drv

[HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Control \ Lsa]
Pacotes de notificação REG_MULTI_SZ SceCli DPPWDFLT

[HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Control \ SafeBoot \ Minimal \ Wdf01000.sys]
@ = "Driver"

[HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Control \ SafeBoot \ Minimal \ WinDefend]
@ = "Service"

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ CurrentVersion \ run-disabled]
"O Google Caixa de pesquisa rápida" = "c: \ Program Files \ Google \ Caixa de pesquisa rápida \ GoogleQuickSearchBox.exe" / autorun
"SmartMenu" =% ProgramFiles% \ Hewlett-Packard \ HP MediaSmart \ SmartMenu.exe
"UCam_Menu" = "c: \ Program Files \ Hewlett-Packard \ Media \ Webcam \ MUITransfer \ MUIStartMenu.exe" c: \ Program Files \ Hewlett-Packard \ Media \ Webcam "update" Software \ Hewlett-Packard \ Media \ Webcam "
"QuickTime Task" = "c: \ Program Files \ QuickTime \ qttask.exe"-atboottime
"SunJavaUpdateSched" = "C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe"-startup

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security Center \ Svc]
"AntiVirusOverride" = dword: 00000001
"VistaSp2" = hex (b): 2b, 8a, 19,12,3 d, 3a, CA, 01

R0 GbpKm; Gbp KernelMode; c: \ windows \ system32 \ drivers \ gbpkm.sys [29/08/2009 17:40 30752]
R1 aswSP; avast! Self Protection; c: \ windows \ system32 \ drivers \ aswSP.sys [17/11/2009 22:17 114768]
R1 is-STLMLdrv; é-STLMLdrv; c: \ windows \ system32 \ drivers \ 21163858.sys [29/11/2009 20:35 148496]
R2 AESTFilters; Andrea ST Filters Service; c: \ windows \ system32 \ DriverStore \ FileRepository stwrt.inf_805f33de \ \ AEstSrv.exe [23/06/2009 23:58 77824]
R2 aswFsBlk; aswFsBlk; c: \ windows \ system32 \ drivers \ aswFsBlk.sys [17/11/2009 22:17 20560]
AswMonFlt R2; aswMonFlt; c: \ windows \ system32 \ drivers \ aswMonFlt.sys [17/11/2009 22:16 53328]
R2 GbpSv; Gbp Service; c: \ progra ~ 1 \ GbPlugin \ GbpSv.exe [29/08/2009 17:40 54048]
R2 hpsrv, HP Service; c: \ windows \ system32 \ hpservice.exe [18/03/2008 17:24 19456]
R2 Recovery Service for Windows; Recovery Service for Windows, C: \ Program Files \ SMINST \ BLService.exe [23/06/2009 22:32 365952]
R2 SBSDWSCService; SBSD Security Center Service; C: \ Arquivos de Programas \ Spybot - Search & Destroy \ SDWinSec.exe [13/08/2009 21:45 1153368]
VfsFPService R2; Validade Fingerprint Serviço; c: \ windows \ system32 \ vfsFPService.exe [18/11/2008 07:09 599344]
R3 Com4QLBEx; Com4QLBEx C: \ Program Files \ Hewlett-Packard \ HP Quick Launch Buttons \ Com4QLBEx.exe [23/06/2009 21:35 222512]
Enecir R3; ENE CIR Receiver; c: \ windows \ system32 \ drivers \ enecir.sys [04/09/2008 15:47 54784]
Usbfilter R3; AMD USB Driver Filter; c: \ windows \ system32 \ drivers \ usbfilter.sys [24/06/2009 00:03 22072]
Gupdate S2; Google Update Service (gupdate); C: \ Program Files \ Google \ Update \ GoogleUpdate.exe [02/12/2009 20:31 135664]

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ Svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper

[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Active Setup \ Installed Components \ (10880D85-AAD9-4558-ABDC-2AB1552D831F)]
"c: \ Program Files \ Common Files \ LightScribe \ LSRunOnce.exe"
.
Conteúdo da pasta 'Tarefas AGENDADAS'

2009/12/02 c: \ windows \ Tasks \ GlaryInitialize.job
- C: \ Program Files \ Glary Utilities \ initialize.exe [2009-08-18 12:21]

2009/12/02 c: \ windows \ Tasks \ GoogleUpdateTaskMachineCore.job
- C: \ Program Files \ Google \ Update \ GoogleUpdate.exe [2009-12-02 22:30]

2009/12/02 c: \ windows \ Tasks \ GoogleUpdateTaskMachineUA.job
- C: \ Program Files \ Google \ Update \ GoogleUpdate.exe [2009-12-02 22:30]

2009/12/01 c: \ windows \ Tasks \ User_Feed_Synchronization-(648F99F2-089B-4D96-8FBC-A0423D2C8D15) emprego.
- C: \ windows \ system32 \ msfeedssync.exe [2009-10-21 03:41]
.
.
------- Scan Suplementar -------
.
uStart Page = hxxp: / / www.forospyware.com/
uDefault_Search_URL = hxxp: / / www.google.com / ie
mStart Page = hxxp: / / www.forospyware.com/
uSearchURL, (Default) = hxxp: / /% s = www.google.com/search?q
IE: Add to Google Photos Screensa & ver - c: \ windows \ system32 \ GPhotos.scr/200
IE: E & xportar para o Microsoft Excel - C: \ PROGRA ~ 1 \ MICROS ~ 3 \ Office12 \ EXCEL.EXE/3000
IE: Enviar imagem para Dispositivo & Bluetooth ... - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie_ctx.htm
IE: Enviar página para Dispositivo & Bluetooth ... - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm
IE: Google Sidewiki ... - C: \ Program Files \ Google \ Google Toolbar \ Componente \ GoogleToolbarDynamic_mui_en_803138DCE93649E4.dll/cmsidewiki.html
IE: Transferir com FDM - file: / / C: \ Program Files \ Free Download Manager \ dllink.htm
IE: Transferir todos com FDM - file: / / C: \ Arquivos de programas \ Free Download Manager \ dlall.htm
IE: Transferir vídeo com FDM - file: / / C: \ Program Files \ Free Download Manager \ dlfvideo.htm
IE: Transferência seleccionada pelo FDM - file: / / C: \ Program Files \ Free Download Manager \ dlselected.htm
Trusted Zone: bb.com.br \ www17
Trusted Zone: blogspot.com \ TV Globo
Trusted Zone: gmail.com \ www
Trusted Zone: megacubo.net \ www
.

************************************************** ************************

catchme 0.3.1398 W2K/XP/Vista - rootkit / stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-02 21:19
Windows 6.0.6002 Service Pack 2 NTFS

Procurando processos ocultos ...

Procurando entradas auto inicializáveis ocultas ...

Procurando ficheiros / arquivos ocultos ...


C: \ Users \ Ticiana \ AppData \ Local \ Temp \ catchme.dll 53248 bytes executável

Varredura completada com sucesso
Arquivos / Ficheiros ocultos: 1

************************************************** ************************
.
--------------------- CHAVES DO REGISTRO Bloqueadas ---------------------

[HKEY_LOCAL_MACHINE \ system \ ControlSet001 \ Control \ Class \ (4D36E96D-E325-11CE-BFC1-08002BE10318) \ 0000 \ AllUserSettings]
@ Negado: (A) (Usuários)
@ Negado: (A) (Everyone)
@ Permitidos: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial" = dword: 00000000
"MSCurrentCountry" = dword: 000000B5
.
--------------------- DLLs Carregadas Sob os Processos em Execução ---------------------

- - - - - - -> 'Lsass.exe' (628)
c: \ windows \ system32 \ DPPWDFLT.dll

- - - - - - -> 'Explorer.exe' (1996)
c: \ windows \ system32 \ btmmhook.dll
.
Tempo para conclusão: 2009-12-02 21:23
ComboFix-quarantined-files.txt 2009-12-02 23:23
ComboFix2.txt 2009-11-30 01:17

Pré-execução: 101.381.992.448 bytes disponíveis
Pós execução: 101.465.956.352 bytes disponíveis

- - End of file - - 18E8026C
Voltar ao topo
 
 
Visualizar Perfil   IP registrado
tici2009


Offline

Indique o PCFORUM
para seus amigos!

Postagens: 15

Re: Explorer trava toda hora! Me ajudem!
Resposta #6 - 05.12.2009 às 22:28:19
 
NOVO LOG hijack:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:38:43, on 05/12/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18828)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Windows\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10c.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Ticiana\Downloads\HiJackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.forospyware.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pt_br&c=91&bd=Pavilion...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.forospyware.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\Program Files\GbPlugin\gbieh.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SmartMenu] %ProgramFiles%\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [DVDAgent] "C:\Program Files\Hewlett-Packard\Media\DVD\DVDAgent.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe"  /autorun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Enviar imagem para Dispositivo &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Enviar página para Dispositivo &Bluetooth ... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.ht
ml
O8 - Extra context menu item: Transferir com FDM - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Transferir todos com FDM - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Transferir vídeo com FDM - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Transferência seleccionada pelo FDM - file://C:\Program Files\Free Download Manager\dlselected.htm
O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O20 - Winlogon Notify:  GbPluginBb - C:\Program Files\GbPlugin\gbieh.dll
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\aestsrv.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: Gbp Service (GbpSv) -   - C:\PROGRA~1\GbPlugin\GbpSv.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: HP Service (hpsrv) - Hewlett-Packard Corporation - C:\Windows\system32\Hpservice.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe (file missing)
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: Recovery Service for Windows - Unknown owner - C:\Program Files\SMINST\BLService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_805f33de\STacSV.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vfsFPService.exe

--
End of file - 10729 bytes
Voltar ao topo
 
 
Visualizar Perfil   IP registrado
tici2009


Offline

Indique o PCFORUM
para seus amigos!

Postagens: 15

Re: Explorer trava toda hora! Me ajudem!
Resposta #7 - 05.12.2009 às 22:30:19
 
E aí? ta limpo meu pc?
Voltar ao topo
 
 
Visualizar Perfil   IP registrado
Páginas: 1 2 



Visite nossa página inicial e veja mais dicas e conteúdos! Clique aqui!!