Jump to content
Fórum Script Brasil

junior.note

Membros
  • Content Count

    4
  • Joined

  • Last visited

Community Reputation

0 Neutro

About junior.note

Perfil

  • Gender
    Male
  1. OK, agora sim o computador está normal. Obrigado pela ajuda!!!
  2. Verificação automática: concluído 2 minutos atrás (eventos: 218778, objetos: 216267, hora: 01:09:08) Resultado: OK (eventos: 213493) Resultado: Detectados (eventos: 8) 18/12/2010 11:34:36 C:\Qoobox\Quarantine\C\Windows\Rwizoa.exe.vir Ação padrão selecionada 18/12/2010 11:34:36 C:\Qoobox\Quarantine\C\Windows\Rwizob.exe.vir Ação padrão selecionada 18/12/2010 11:34:37 C:\Qoobox\Quarantine\C\Program Files\QuestBrowser\questbrowser.dll.vir Ação padrão selecionada 18/12/2010 11:41:09 C:\Windows\System32\Revelation.exe Informações 18/12/2010 11:41:09 C:\Windows\System32\RevelationHelper.
  3. ComboFix 10-12-16.02 - Raphael 16/12/2010 21:35:53.1.2 - x86 Microsoft Windows 7 Ultimate 6.1.7600.0.1252.55.1046.18.1016.398 [GMT -2:00] Executando de: c:\users\Raphael\Pictures\Downloads\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308} SP: avast! Antivirus *Disabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Criado um novo ponto de restauração . ((((((((((((((((((((((((((((((((((((( Outras Exclusões ))))))))))))))))))))))))))))))))))))))))))))))))))) . c:
  4. Bom dia, como solicitado, seguem abaixo os resultados: DDS (Ver_10-11-27.01) - NTFSx86 Run by Raphael at 11:24:49,30 on 04/12/2010 Internet Explorer: 8.0.7600.16385 Microsoft Windows 7 Ultimate 6.1.7600.0.1252.55.1046.18.1016.387 [GMT -2:00] ============== Running Processes =============== C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\System32\svchost.exe -k LocalServic
  5. Boa noite gostarai que analisassem meu log, pois o PC e o PenDriver está com vírus: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:26:48, on 01/12/2010 Platform: Windows 7 (WinNT 6.00.3504) MSIE: Internet Explorer v8.00 (8.00.7600.16671) Boot mode: Normal Running processes: C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Windows\System32\igfxtray.exe C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Program Files\Alwil Software\Avast5\AvastUI.exe C:\Windows\system32\wuauclt.exe C:\Program Files\Mozi
  6. OK, PC em perfeitas condições. Agradeço a equipe Script Brasil!
  7. Autoscan: completed 14 minutes ago (events: 213144, objects: 208843, time: 02:31:50) Result: OK (events: 206925) Result: Detected (events: 3) 24/6/2010 12:05:12 C:\Arquivos de programas\MP3 Player Utilities 4.09\AMVConverter\amvtransform.exe 24/6/2010 12:38:49 C:\Documents and Settings\Júnior\Meus documentos\Downloads\Driver 4.09\MSI.CAB/_7B7DF61172EA4413A0E15037B773EF47 24/6/2010 13:12:43 C:\System Volume Information\_restore{41AABC92-DCA5-4409-AB86-3976EA578A40}\RP5\A0001432.exe Result: Archive (events: 5004) Result: Packed (events: 1186) Result: Corrupted (events: 10)
  8. Autoscan: completed 8 minutes ago (events: 222503, objects: 216322, time: 03:23:00) Result: OK (events: 214166) Result: Detected (events: 22) Result: Archive (events: 6672) Result: Packed (events: 1290) Result: Corrupted (events: 10) Result: Deleted (events: 22) 13/6/2010 19:07:22 C:\Documents and Settings\Júnior\link02.exe 13/6/2010 19:07:23 C:\Documents and Settings\Júnior\limsnet.exe 13/6/2010 19:07:24 C:\Documents and Settings\Júnior\mdl12pa.exe 13/6/2010 19:17:41 C:\Documents and Settings\Júnior\Dados de aplicativos\media_player3\swhost.exe 13/6/2010 19:17:48
  9. Tive um caso resolvido a quase 2 meses, porém um amigo ao usar o computador foi infectado novamente.
  10. OK, Renato me desculpe, é que loguei com junior.note, pois havia perdido a senha do orlando.junior, mas agora está tudo certo, o log do combo fix acima fui eu qu8em postei...
  11. OK, como solicitado segue os logs: DDS (Ver_10-03-17.01) - NTFSx86 Run by J£nior at 22:11:41,90 on seg 31/05/2010 Internet Explorer: 8.0.6001.18702 Microsoft Windows XP Professional 5.1.2600.3.1252.55.1046.18.511.225 [GMT -3:00] AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D} ============== Running Processes =============== C:\ARQUIV~1\GbPlugin\GbpSv.exe C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\WINDOWS\Explorer.EXE C:\Arquivos de programas\Alwil Softw
  12. Boa tarde pessoal, gostaria que analisassem meu log, o PC está com vírus com certeza. Abre o Internet explorer sozinho e o MSN também, matei alguns processos e os tirei da inicialização (wintalk, winmoto, etc) e mais uns 3 q num lembro. Abaixo segue meu log: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 17:30:41, on 30/5/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDO
  13. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:36:59, on 13/2/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe C:\WINDOWS\Explorer.EXE C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\ARQUIV~1\ALWILS~1\Avast4\
  14. Logfile of The Avenger Version 2.0, © by Swandog46 http://swandog46.geekstogo.com Platform: Windows XP ******************* Script file opened successfully. Script file read successfully. Backups directory opened successfully at C:\Avenger ******************* Beginning to process script file: Rootkit scan active. No rootkits found! Error: file "C:\WINDOWS\system32\olhrwef.exe" not found! Deletion of file "C:\WINDOWS\system32\olhrwef.exe" failed! Status: 0xc0000034 (STATUS_OBJECT_NAME_NOT_FOUND) --> the object does not exist Error: file "C:\WINDOWS\system32\unchsy.exe" not fou
×
×
  • Create New...