Ir para conteúdo
Fórum Script Brasil

MuniZ_

Membros
  • Total de itens

    9
  • Registro em

  • Última visita

Sobre MuniZ_

MuniZ_'s Achievements

0

Reputação

  1. Tem uns arquivos que na hora da verificação antes de iniciar o Windows tá dando Cannot Open
  2. Scan ---- Scanned: 7378 Detected: 5 Untreated: 5 Start time: 18/6/2009 14:01:08 Duration: 00:11:48 Finish time: 18/6/2009 14:12:56 Detected -------- Status Object ------ ------ detected: virus Virus.Win32.Sality.aa File: C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe detected: virus Virus.Win32.Sality.aa File: c:\arquiv~1\micros~3\office11\excel.exe detected: virus Virus.Win32.Sality.aa File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe detected: virus Virus.Win32.Sality.aa File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe detected: virus Virus.Win32.Sality.aa File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe Events ------ Time Name Status Reason ---- ---- ------ ------ 18/6/2009 14:01:41 File: C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:01:41 File: C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe not disinfected postponed 18/6/2009 14:02:24 File: c:\arquiv~1\micros~3\office11\excel.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:02:24 File: c:\arquiv~1\micros~3\office11\excel.exe not disinfected postponed 18/6/2009 14:02:24 File: c:\arquivos de programas\microsoft office\office11\excel.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:02:24 File: c:\arquivos de programas\microsoft office\office11\excel.exe not disinfected postponed 18/6/2009 14:02:41 File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:02:41 File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe not disinfected postponed 18/6/2009 14:02:41 File: c:\arquivos de programas\windows live\messenger\msnmsgr.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:02:41 File: c:\arquivos de programas\windows live\messenger\msnmsgr.exe not disinfected postponed 18/6/2009 14:03:41 File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:03:41 File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe not disinfected postponed 18/6/2009 14:03:50 File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:03:50 File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe not disinfected postponed 18/6/2009 14:04:20 File: C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:04:20 File: C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe not disinfected postponed 18/6/2009 14:04:39 File: c:\arquiv~1\micros~3\office11\excel.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:04:39 File: c:\arquiv~1\micros~3\office11\excel.exe not disinfected postponed 18/6/2009 14:04:40 File: c:\arquivos de programas\microsoft office\office11\excel.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:04:40 File: c:\arquivos de programas\microsoft office\office11\excel.exe not disinfected postponed 18/6/2009 14:04:59 File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:04:59 File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe not disinfected postponed 18/6/2009 14:04:59 File: c:\arquivos de programas\windows live\messenger\msnmsgr.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:04:59 File: c:\arquivos de programas\windows live\messenger\msnmsgr.exe not disinfected postponed 18/6/2009 14:05:53 File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:05:53 File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe not disinfected postponed 18/6/2009 14:06:02 File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:06:02 File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe not disinfected postponed 18/6/2009 14:06:11 File: c:\arquivos de programas\windows live\messenger\msnmsgr.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:12:52 File: c:\arquivos de programas\windows live\messenger\msnmsgr.exe not disinfected skipped by user 18/6/2009 14:12:52 File: c:\arquivos de programas\microsoft office\office11\excel.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:12:53 File: c:\arquivos de programas\microsoft office\office11\excel.exe not disinfected skipped by user 18/6/2009 14:12:53 File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:12:54 File: c:\arquivos de programas\adobe\reader 9.0\reader\reader_sl.exe not disinfected skipped by user 18/6/2009 14:12:54 File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:12:56 File: c:\arquivos de programas\adobe\reader 9.0\reader\acrord32.exe not disinfected skipped by user 18/6/2009 14:12:56 File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe detected virus 'Virus.Win32.Sality.aa' 18/6/2009 14:12:56 File: c:\arquivos de programas\real alternative\media player classic\mplayerc.exe not disinfected skipped by user Statistics ---------- Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted ------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ --------- Settings -------- Parameter Value --------- ----- Security Level Recommended Action Prompt for action when the scan is complete Run mode Manually File types Scan all files Scan only new and changed files No Scan archives All Scan embedded OLE objects All Skip if object is larger than No Skip if scan takes longer than No Parse email formats No Scan password-protected archives No Enable iChecker technology No Enable iSwift technology No Show detected threats on "Detected" tab Yes Rootkits search Yes Deep rootkits search No Use heuristic analyzer Yes Quarantine ---------- Status Object Size Added ------ ------ ---- ----- Backup ------ Status Object Size ------ ------ ---- Desculpem pela demora, eu estava sem monitor.
  3. Tipo.. eu reinicio pá.. Dai aperto F8 e seleciono modo seguro. Ele carrega e reinicia o PC na forma normal. o.o"
  4. Putz.. o PC tá rebelde, não quer iniciar no modo de segurança;
  5. Ta dando esse erro quando vou abrir o PenClean:
  6. Log do Kaspersky : Scan ---- Scanned: 215008 Detected: 4 Untreated: 4 Start time: 28/5/2009 16:53:09 Duration: 04:22:08 Finish time: 28/5/2009 21:15:17 Detected -------- Status Object ------ ------ detected: Trojan program Trojan-Spy.Win32.Ardamax.n File: D:\Fotos Celular\Meus arquivos recebidos\Vale tudo da bahia alan boa ventura.rar/Vale tudo da bahia alan boa ventura.exe detected: virus Virus.Win32.Sality.aa File: D:\RECYCLER\S-1-5-21-1645522239-1580818891-839522115-500\Dd4.tmp detected: Trojan program Trojan-Downloader.WMA.GetCodec.c File: D:\RECYCLER\S-1-5-21-448539723-606747145-725345543-1005\Dd3.mp3 detected: Trojan program Rootkit.Win32.Agent.ajn File: D:\RECYCLER\S-1-5-21-746137067-329068152-839522115-1003\Dd4.zip/22_gui_4.exe Events ------ Time Name Status Reason ---- ---- ------ ------ 28/5/2009 17:56:18 File: D:\Emule\Incoming\Bruno e Marrone - Acustico Ao Vivo (2008).rar/Bruno e Marrone - Acustico Ao Vivo (2007).avi processing error 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS0-chris_brown-chris_brown-2005.m3u password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS0-chris_brown-chris_brown-2005.nfo password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS1-chris_brown-intro.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS2-chris_brown-run_it_(feat_juelz_santana).mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS3-chris_brown-yo_(excuse_me_miss).mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS4-chris_brown-young_love.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS5-chris_brown-gimme_that.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS6-chris_brown-ya_man_aint_me.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS7-chris_brown-winner.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS8-chris_brown-aint_no_way_(you_wont_love_me).mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS9-chris_brown-whats_my_name_(feat_noah).mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\10-chris_brown-is_this_love.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\11-chris_brown-poppin.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\12-chris_brown-just_fine.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\13-chris_brown-say_goodbye.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\14-chris_brown-run_it_(remix)_(feat_bow_wow_and_jermaine_dupri).mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\15-chris_brown-thank_you.mp3 password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\Goldesel_-_Visit_us_for_more_brandnew_stuff.url password protected 28/5/2009 17:59:43 File: D:\Emule\Incoming\Chris_Brown-Chris_Brown-2005-RNS.rar/Chris_Brown-Chris_Brown-2005-RNS\Wichtig_Lesen_Goldesel_Adressen.txt password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/12 - Come Home.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/13 - Apologize (Remix).mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/01 - Say (All I Need).mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/02 - Mercy.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/03 - Stop And Stare.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/04 - Apologize.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/05 - Goodbye, Apathy.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/06 - All Fall Down.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/07 - Tyrant.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/08 - Prodigal.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/09 - Won't Stop.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/10 - All We Are.mp3 password protected 28/5/2009 18:15:54 File: D:\Emule\Incoming\One Republic - Dreaming Out Loud.(2007).rar/One Republic - Dreaming Out Loud (2007).rar/11 - Someone To Save You.mp3 password protected 28/5/2009 18:44:35 File: D:\Fotos Celular\Meus arquivos recebidos\Vale tudo da bahia alan boa ventura.rar/Vale tudo da bahia alan boa ventura.exe detected Trojan program 'Trojan-Spy.Win32.Ardamax.n' 28/5/2009 18:44:35 File: D:\Fotos Celular\Meus arquivos recebidos\Vale tudo da bahia alan boa ventura.rar/Vale tudo da bahia alan boa ventura.exe not disinfected postponed 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file005 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file006 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file007 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file008 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file009 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file010 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file011 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file012 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file013 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file014 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file015 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file016 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file017 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file018 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file019 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file020 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file021 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file022 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file023 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file024 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file025 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file026 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file027 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file028 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file029 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file030 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file031 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file032 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file033 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file034 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file035 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file036 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file037 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file038 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file039 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file040 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file041 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file042 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file043 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file044 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file045 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file046 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file047 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file048 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file049 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file050 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file051 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file052 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file053 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file054 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file055 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file056 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file057 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file058 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file059 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file060 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file061 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file062 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file063 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file064 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file065 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file066 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file067 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file068 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file069 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file070 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file071 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file072 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file073 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file074 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file075 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file076 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file077 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file078 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file079 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file080 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file081 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file082 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file083 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file084 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file085 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file086 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file087 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file088 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file089 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file090 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file091 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file092 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file093 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file094 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file095 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file096 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file097 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file098 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file099 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file100 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file101 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file102 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file103 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file104 password protected 28/5/2009 19:11:06 File: D:\LoLzZin\Instalações\realalt190.exe//file105 password protected 28/5/2009 19:39:59 File: D:\RECYCLER\S-1-5-21-1645522239-1580818891-839522115-500\Dd4.tmp detected virus 'Virus.Win32.Sality.aa' 28/5/2009 19:39:59 File: D:\RECYCLER\S-1-5-21-1645522239-1580818891-839522115-500\Dd4.tmp not disinfected postponed 28/5/2009 19:41:09 File: D:\RECYCLER\S-1-5-21-448539723-606747145-725345543-1005\Dd3.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 28/5/2009 19:41:09 File: D:\RECYCLER\S-1-5-21-448539723-606747145-725345543-1005\Dd3.mp3 not disinfected postponed 28/5/2009 19:41:16 File: D:\RECYCLER\S-1-5-21-746137067-329068152-839522115-1003\Dd3.zip password protected 28/5/2009 19:41:16 File: D:\RECYCLER\S-1-5-21-746137067-329068152-839522115-1003\Dd3.zip password protected 28/5/2009 19:41:16 File: D:\RECYCLER\S-1-5-21-746137067-329068152-839522115-1003\Dd4.zip/22_gui_4.exe detected Trojan program 'Rootkit.Win32.Agent.ajn' 28/5/2009 19:41:16 File: D:\RECYCLER\S-1-5-21-746137067-329068152-839522115-1003\Dd4.zip/22_gui_4.exe not disinfected postponed 28/5/2009 19:54:30 File: d:\fotos celular\meus arquivos recebidos\vale tudo da bahia alan boa ventura.rar/Vale tudo da bahia alan boa ventura.exe detected Trojan program 'Trojan-Spy.Win32.Ardamax.n' 28/5/2009 21:15:12 File: d:\fotos celular\meus arquivos recebidos\vale tudo da bahia alan boa ventura.rar/Vale tudo da bahia alan boa ventura.exe not disinfected skipped by user 28/5/2009 21:15:12 File: d:\recycler\s-1-5-21-1645522239-1580818891-839522115-500\dd4.tmp detected virus 'Virus.Win32.Sality.aa' 28/5/2009 21:15:14 File: d:\recycler\s-1-5-21-1645522239-1580818891-839522115-500\dd4.tmp not disinfected skipped by user 28/5/2009 21:15:14 File: d:\recycler\s-1-5-21-448539723-606747145-725345543-1005\dd3.mp3 detected Trojan program 'Trojan-Downloader.WMA.GetCodec.c' 28/5/2009 21:15:15 File: d:\recycler\s-1-5-21-448539723-606747145-725345543-1005\dd3.mp3 not disinfected skipped by user 28/5/2009 21:15:15 File: d:\recycler\s-1-5-21-746137067-329068152-839522115-1003\dd4.zip/22_gui_4.exe detected Trojan program 'Rootkit.Win32.Agent.ajn' 28/5/2009 21:15:16 File: d:\recycler\s-1-5-21-746137067-329068152-839522115-1003\dd4.zip/22_gui_4.exe not disinfected skipped by user Statistics ---------- Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted ------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ --------- Settings -------- Parameter Value --------- ----- Security Level Recommended Action Prompt for action when the scan is complete Run mode Manually File types Scan all files Scan only new and changed files No Scan archives All Scan embedded OLE objects All Skip if object is larger than No Skip if scan takes longer than No Parse email formats No Scan password-protected archives No Enable iChecker technology No Enable iSwift technology No Show detected threats on "Detected" tab Yes Rootkits search Yes Deep rootkits search No Use heuristic analyzer Yes Quarantine ---------- Status Object Size Added ------ ------ ---- ----- Backup ------ Status Object Size ------ ------ ----
  7. Log do Malware Malwarebytes' Anti-Malware 1.36 Versão do banco de dados: 2178 Windows 5.1.2600 Service Pack 2 25/5/2009 17:50:07 mbam-log-2009-05-25 (17-50-07).txt Tipo de Verificação: Rápida Objetos verificados: 69268 Tempo decorrido: 3 minute(s), 45 second(s) Processos da Memória infectados: 0 Módulos de Memória Infectados: 0 Chaves do Registro infectadas: 0 Valores do Registro infectados: 0 Ítens do Registro infectados: 0 Pastas infectadas: 0 Arquivos infectados: 0 Processos da Memória infectados: (Nenhum ítem malicioso foi detectado) Módulos de Memória Infectados: (Nenhum ítem malicioso foi detectado) Chaves do Registro infectadas: (Nenhum ítem malicioso foi detectado) Valores do Registro infectados: (Nenhum ítem malicioso foi detectado) Ítens do Registro infectados: (Nenhum ítem malicioso foi detectado) Pastas infectadas: (Nenhum ítem malicioso foi detectado) Arquivos infectados: (Nenhum ítem malicioso foi detectado) Log do HiJackThis Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:55:06, on 25/5/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0013) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\WINDOWS\system32\ctfmon.exe C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe C:\ARQUIV~1\AVG\AVG8\avgemc.exe C:\ARQUIV~1\AVG\AVG8\avgrsx.exe C:\ARQUIV~1\AVG\AVG8\avgnsx.exe C:\Arquivos de programas\AVG\AVG8\avgcsrvx.exe C:\Arquivos de programas\Windows Live\Contacts\wlcomm.exe C:\Arquivos de programas\Internet Explorer\iexplore.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\DOCUME~1\ADMINI~1\CONFIG~1\Temp\Rar$EX00.969\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Arquivos de programas\AVG\AVG8\avgssie.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [AVG8_TRAY] C:\ARQUIV~1\AVG\AVG8\avgtray.exe O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Arquivos de programas\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [DriverUpdaterPro] C:\Arquivos de programas\iXi Tools\Driver Updater Pro\DriverUpdaterPro.exe -t O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Arquivos de programas\AVG\AVG8\avgpp.dll O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgemc.exe O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe -- End of file - 3699 bytes
  8. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 18:04:35, on 24/5/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0013) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\system32\ctfmon.exe C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe C:\Arquivos de programas\Windows Live\Contacts\wlcomm.exe C:\WINDOWS\system32\igfxsrvc.exe C:\WINDOWS\system32\msiexec.exe C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe C:\ARQUIV~1\AVG\AVG8\avgrsx.exe C:\Arquivos de programas\AVG\AVG8\avgcsrvx.exe C:\ARQUIV~1\AVG\AVG8\avgnsx.exe C:\Arquivos de programas\Internet Explorer\iexplore.exe C:\DOCUME~1\ADMINI~1\CONFIG~1\Temp\Rar$EX00.234\HijackThis.exe C:\ARQUIV~1\AVG\AVG8\avgemc.exe C:\Arquivos de programas\AVG\AVG8\avgcsrvx.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Arquivos de programas\AVG\AVG8\avgssie.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [AVG8_TRAY] C:\ARQUIV~1\AVG\AVG8\avgtray.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MsnMsgr] "C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [DriverUpdaterPro] C:\Arquivos de programas\iXi Tools\Driver Updater Pro\DriverUpdaterPro.exe -t O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Arquivos de programas\AVG\AVG8\avgpp.dll O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgemc.exe O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\ARQUIV~1\AVG\AVG8\avgwdsvc.exe -- End of file - 3516 bytes
×
×
  • Criar Novo...