![]() |
|
#1
| |||
| |||
| OK, então me parece ter pego algum tipo de malware que desativou a opção de alterar as atualizações automáticas, deixando-lhes permanantly desligado. Log do HJT: Logfile da Trend Micro HijackThis v2.0.2 Scan guardado em 18:45:43, em 31/03/2008 Plataforma: Windows XP SP2 (WinNT 5/01/2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Executando processos: C: \ WINDOWS.NEW \ System32 \ smss.exe C: \ WINDOWS.NEW \ system32 \ winlogon.exe C: \ WINDOWS.NEW \ system32 \ Services.exe C: \ WINDOWS.NEW \ system32 \ lsass.exe C: \ WINDOWS.NEW \ system32 \ svchost.exe C: \ Program Files \ Windows Defender \ MsMpEng.exe C: \ WINDOWS.NEW \ System32 \ svchost.exe C: \ Program Files \ ahead \ InCD \ InCD \ InCDsrv.exe C: \ WINDOWS.NEW \ system32 \ svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccProxy.exe C: \ Program Files \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe C: \ WINDOWS.NEW \ system32 \ spoolsv.exe C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Program Files \ Bonjour \ mDNSResponder.exe C: \ WINDOWS.NEW \ System32 \ svchost.exe C: \ Program Files \ Common Files \ Microsoft Shared \ VS7Debug \ Mdm.exe C: \ WINDOWS.NEW \ system32 \ nvsvc32.exe C: \ WINDOWS.NEW \ System32 \ HPZipm12.exe C: \ Program Files \ Dantz \ Retrospect \ retrorun.exe C: \ PROGRA ~ 1 \ Dantz \ RETROS ~ 1 \ wdsvc.exe C: \ WINDOWS.NEW \ System32 \ svchost.exe C: \ Program Files \ Microsoft \ UPHCS \ uphclean.exe C: \ WINDOWS.NEW \ System32 \ Ltmoh.exe C: \ WINDOWS.NEW \ system32 \ taskswitch.exe C: \ Program Files \ lg_fwupdate \ fwupdate.exe C: \ Program Files \ SiteAdvisor \ 6021 \ SiteAdv.exe C: \ Program Files \ Windows Defender \ MSASCui.exe C: \ Program Files \ ahead \ InCD \ InCD \ InCD.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe C: \ Program Files \ Java \ jre1.6.0_05 \ bin \ jusched.exe C: \ Program Files \ iTunes \ iTunesHelper.exe C: \ Program Files \ Unlocker \ UnlockerAssistant.exe C: \ WINDOWS.NEW \ system32 \ ctfmon.exe C: \ Arquivos de Programas \ Spybot - Search & Destroy \ TeaTimer.exe C: \ Program Files \ Windows Media Player \ WMPNSCFG.exe C: \ Program Files \ NETGEAR \ GA311 \ GA311.exe C: \ Program Files \ NETGEAR \ WPN111 \ wpn111.exe C: \ Program Files \ Nikon \ PictureProject \ NkbMonitor.exe C: \ Program Files \ iPod \ bin \ iPodService.exe C: \ WINDOWS.NEW \ explorer.exe C: \ Program Files \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe C: \ WINDOWS.NEW \ system32 \ wuauclt.exe C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WLLoginProxy.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.co.uk/ig?hl=en R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Local Page = R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet Settings, ProxyOverride = *. local O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Common Files \ Adobe \ Acrobat \ ActiveX \ AcroIEHelper.dll O2 - BHO: (no name) - (089FD14D-132B-48FC-8861-0048AE113215) - C: \ Program Files \ SiteAdvisor \ 6066 \ SiteAdv.dll O2 - BHO: RealPlayer Download e Record Plugin para o Internet Explorer - (3049C3E9-B461-4BC5-8870-4C09146192CA) - C: \ Program Files \ Real \ RealPlayer \ rpbrowserrecordplugin.dll O2 - BHO: Spybot-S & D IE Protection - (53707962-6F74-2D53-2644-206D7942484F) - C: \ PROGRA ~ 1 \ SpyBot ~ 1 \ SDHelper.dll O2 - BHO: NCO 2,0 IE BHO - (602ADB0E-4AFF-4217-8AA1-95DAC4DFA408) - C: \ Program Files \ Common Files \ Symantec Shared \ coShared \ Browser \ 2.0 \ coIEPlg.dll O2 - BHO: Symantec Intrusion Prevention - (6D53EC84-6AAE-4787-AEEE-F4628F01010C) - C: \ PROGRA ~ 1 \ common ~ 1 \ SYMANT ~ 1 \ IDS \ IPSBHO.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_05 \ bin \ ssv.dll O2 - BHO: FoxyTunes Toolbar Helper - (784D8FBC-4165-4D88-90FB-62907ACDD045) - C: \ Program Files \ FoxyTunes \ ForInternetExplorer \ componentes \ IE \ FoxyTunesForIE.dll O2 - BHO: Windows Live Sign-in Helper - (9030D464-4C02-4ABF-8ECC-5164760863C6) - C: \ Program Files \ Common Files \ Microsoft Shared \ Windows Live \ WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - c: \ arquivos de programas \ google \ googletoolbar3.dll O2 - BHO: Windows Live Toolbar Helper - (BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Program Files \ Windows Live Toolbar \ msntb.dll O3 - Toolbar: McAfee SiteAdvisor - (0BF43445-2F28-4351-9252-17FE6E806AA0) - C: \ Program Files \ SiteAdvisor \ 6066 \ SiteAdv.dll O3 - Toolbar: Gotuit Toolbar - (3f59a812-9c30-4ecd-938d-dd73e7c6497d) - (no arquivo) O3 - Toolbar: FoxyTunes Toolbar - (1D1901C3-F72A-46F3-9DBB-0AAA0DEEF6DF) - C: \ Program Files \ FoxyTunes \ ForInternetExplorer \ componentes \ IE \ FoxyTunesForIE.dll O3 - Toolbar: & Google - (2318C2B1-4965-11D4-9B18-009027A5CD4F) - c: \ arquivos de programas \ google \ googletoolbar3.dll O3 - Toolbar: Windows Live Toolbar - (BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0) - C: \ Program Files \ Windows Live Toolbar \ msntb.dll O3 - Toolbar: Show Norton Toolbar - (7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA) - C: \ Program Files \ Common Files \ Symantec Shared \ coShared \ Browser \ 2.0 \ CoIEPlg.dll O4 - HKLM \ .. \ Run: [LtMoh] C: \ WINDOWS.NEW \ System32 \ Ltmoh.exe O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ WINDOWS.NEW \ system32 \ NeroCheck.exe O4 - HKLM \ .. \ Run: [CoolSwitch] C: \ WINDOWS.NEW \ system32 \ taskswitch.exe O4 - HKLM \ .. \ Run: [LGODDFU] "C: \ Program Files \ lg_fwupdate \ fwupdate.exe" blrun O4 - HKLM \ .. \ Run: [SiteAdvisor] "C: \ Program Files \ SiteAdvisor \ 6021 \ SiteAdv.exe" O4 - HKLM \ .. \ Run: [Windows Defender] "C: \ Program Files \ Windows Defender \ MSASCui.exe"-hide O4 - HKLM \ .. \ Run: [InCD] "C: \ Program Files \ ahead \ InCD \ InCD \ InCD.exe" O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [osCheck] "C: \ Program Files \ Norton Internet Security \ osCheck.exe" O4 - HKLM \ .. \ Run: [NvCplDaemon] RUNDLL32.EXE C: \ WINDOWS.NEW \ system32 \ NvCpl.dll, NvStartup O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install O4 - HKLM \ .. \ Run: [NvMediaCenter] RUNDLL32.EXE C: \ WINDOWS.NEW \ system32 \ NvMcTray.dll, NvTaskbarInit O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre1.6.0_05 \ bin \ jusched.exe" O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ QTTask.exe"-atboottime O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe" O4 - HKLM \ .. \ Run: [UnlockerAssistant] "C: \ Program Files \ Unlocker \ UnlockerAssistant.exe" O4 - HKCU \ .. \ Run: [ctfmon.exe] C: \ WINDOWS.NEW \ system32 \ ctfmon.exe O4 - HKCU \ .. \ Run: [SpybotSD TeaTimer] C: \ Arquivos de Programas \ Spybot - Search & Destroy \ TeaTimer.exe O4 - HKCU \ .. \ Run: [WMPNSCFG] C: \ Arquivos de Programas \ Windows Media Player \ WMPNSCFG.exe O4 - HKUS \ S-1-5-19 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS.NEW \ System32 \ CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-20 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS.NEW \ System32 \ CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS \ S-1-5-18 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS.NEW \ System32 \ CTFMON.EXE (User 'SYSTEM') O4 - HKUS \ S-1-5-18 \ .. \ RunOnce: [RunNarrator] Narrator.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS.NEW \ System32 \ CTFMON.EXE (User 'Default user') O4 - HKUS \. DEFAULT \ .. \ RunOnce: [RunNarrator] Narrator.exe (User 'Default user') O4 - Global Startup: GA311 Smart Wizard Utility.lnk = C: \ Program Files \ NETGEAR \ GA311 \ GA311.exe O4 - Global Startup: hp instant support.lnk = C: \ Arquivos de Programas \ Hewlett-Packard \ HP Instant Support DI \ bin \ matcli.exe O4 - Global Startup: Microsoft Office.lnk = C: \ Arquivos de Programas \ Microsoft Office \ Office10 \ Osa.exe O4 - Global Startup: NETGEAR WPN111 Smart Wizard.lnk =? O4 - Global Startup: NkbMonitor.exe.lnk = C: \ Program Files \ Nikon \ PictureProject \ NkbMonitor.exe O8 - Extra context menu item: & ieSpell Opções - res: / / C: \ Program Files \ ieSpell \ iespell.dll / SPELLOPTION.HTM O8 - Extra context menu item: & Windows Live Search - res: / / C: \ Program Files \ Windows Live Toolbar \ msntb.dll / search.htm O8 - Extra context menu item: & Check Spelling - res: / / C: \ Program Files \ ieSpell \ iespell.dll / SPELLCHECK.HTM O8 - Extra context menu item: Baixar todos com Free Download Manager -- file: / / C: \ Program Files \ Free Download Manager \ dlall.htm O8 - Extra context menu item: Baixar selecionados com o Free Download Manager -- file: / / C: \ Program Files \ Free Download Manager \ dlselected.htm O8 - Extra context menu item: Baixar com Free Download Manager -- file: / / C: \ Program Files \ Free Download Manager \ dllink.htm O8 - Extra context menu item: E & xportar para o Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ MICROS ~ 2 \ Office10 \ EXCEL.EXE/3000 O8 - Extra context menu item: Lookup em Merriam Webster -- file: / / C: \ Program Files \ ieSpell \ Merriam Webster.HTM O8 - Extra context menu item: Busca na Wikipédia -- file: / / C: \ Program Files \ ieSpell \ wikipedia.HTM O9 - Extra button: Video Detect - (0028E570-E86D-4ceb-A108-76158C18DEF3) - C: \ Program Files \ videodetect \ videodetect.dll O9 - Extra 'Tools' menuitem: Video Detect - (0028E570-E86D-4ceb-A108-76158C18DEF3) - C: \ Program Files \ videodetect \ videodetect.dll O9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_05 \ bin \ ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_05 \ bin \ ssv.dll O9 - Extra button: ieSpell - (0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8) - C: \ Program Files \ ieSpell \ iespell.dll O9 - Extra 'Tools' menuitem: ieSpell - (0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8) - C: \ Program Files \ ieSpell \ iespell.dll O9 - Extra button: (no name) - (1606D6F9-9D3B-4aea-A025-ED5B2FD488E7) - C: \ Program Files \ ieSpell \ iespell.dll O9 - Extra 'Tools' menuitem: ieSpell Opções - (1606D6F9-9D3B-4aea-A025-ED5B2FD488E7) - C: \ Program Files \ ieSpell \ iespell.dll O9 - Extra button: ou seja, imagine downloader - (8F05069A-4BC5-4175-8B19-76A413464C90) - C: \ PROGRA ~ 1 \ IE_PIC ~ 1 \ \ iedownloader.exe O9 - Extra button: BitComet - (D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A) - res: / / C: \ Program Files \ BitComet \ tools \ BitCometBHO_1.2.1.2.dll/206 (arquivo ausente) O9 - Extra button: (no name) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ SpyBot ~ 1 \ SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ SpyBot ~ 1 \ SDHelper.dll O9 - Extra button: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS.NEW \ Network Diagnostic \ xpnetdiag.exe O9 - Extra 'Tools' menuitem: @ Xpsp3res.dll, -20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C: \ WINDOWS.NEW \ Network Diagnostic \ xpnetdiag.exe O9 - Extra button: @ C: \ Program Files \ Messenger \ Msgslang.dll, -61144 - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' menuitem: @ C: \ Program Files \ Messenger \ Msgslang.dll, -61144 - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O10 - Unknown file em Winsock LSP: c: \ windows.new \ system32 \ nwprovau.dll O16 - DPF: (01010E00-5E80-11D8-9E86-0007E96C65AE) (SupportSoft SmartIssue) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab O16 - DPF: (01012101-5E80-11D8-9E86-0007E96C65AE) (SupportSoft Script Runner Class) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab O16 - DPF: (05D44720-58E3-49E6-BDF6-D00330E511D3) (StagingUI Object) -- http://zone.msn.com/binFrameWork/v10...I.cab46479.cab O16 - DPF: (0742B9EF-8C83-41CA-BFBA-830A59E23533) (Microsoft Data Collection Control) -- https: / / support.microsoft.com / OAS / ActiveX / MSDcode.cab O16 - DPF: (1F2F4C9E-6F09-47BC-970D-3C54734667FE) -- http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab O16 - DPF: (2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B) (DownloadManager Controle) -- http://dlmanager.akamaitools.com.edg...ex-2.0.6.0.cab O16 - DPF: (2BC66F54-93A8-11D3-BEB6-00105AA9B6AE) (Symantec AntiVirus scanner) -- http://security.symantec.com/sscv6/S...in/AvSniff.cab O16 - DPF: (2ED9BC2B-4DF1-472E-9B5E-55477D2C97F5) (Microsoft Data Collection Control) -- https: / / support.microsoft.com / OAS / ActiveX / odc.cab O16 - DPF: (3451DEDE-631F-421C-8127-FD793AFC6CC8) (ActiveDataInfo Classe) -- http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab O16 - DPF: (34F12AFD-E9B5-492A-85D2-40FA4535BE83) (AxProdInfoCtl Classe) -- http://www.symantec.com/techsupp/act...a/nprdtinf.cab O16 - DPF: (3BB54395-5982-4788-8AF4-B5388FFDD0D8) -- http://zone.msn.com/BinFrameWork/v10...y.cab32846.cab O16 - DPF: (44990200-3C9D-426D-81DF-AAB636FA4345) (Symantec SmartIssue) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab O16 - DPF: (44990301-3C9D-426D-81DF-AAB636FA4345) (Symantec Script Runner Class) -- http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab O16 - DPF: (5736C456-EA94-4AAC-BB08-917ABDD035B3) -- http://zone.msn.com/binframework/v10...t.cab32846.cab O16 - DPF: (5ED80217-570B-4DA9-BF44-BE107C0EC166) (Windows Live Safety Center Base Module) -- http://cdn.scan.onecare.live.com/res...scbase8300.cab O16 - DPF: (644E432F-49D3-41A1-8DD5-E099162EEEC5) (Symantec RuFSI Utility Class) -- http://security.symantec.com/sscv6/S.../bin/cabsa.cab O16 - DPF: (67A5F8DC-1A4B-4D66-9F24-A704AD929EEE) (System Requirements Lab) -- http://www.nvidia.com/content/Driver...sysreqlab2.cab O16 - DPF: (6A344D34-5231-452A-8A57-D064AC9B7862) (Symantec Download Manager) -- https: / / webdl.symantec.com / ActiveX / symdlmgr.cab O16 - DPF: (6B75345B-AA36-438A-BBE6-4078B4C6984D) (HpProductDetection Classe) -- http://h20270.www2.hp.com/ediags/gmn...tDetection.cab O16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl Class) -- http://update.microsoft.com/microsof...?1125163370105 O16 - DPF: (AB86CE53-AC9F-449F-9399-D8ABCA09EC09) -- https: / / h17000.www1.hp.com/ewfrf-JAV...oadManager.ocx O16 - DPF: (B3E22EA2-A579-11D2-847A-00C04F7605B6) -- file: / / E: \ 0000C5DD \ wpxfp01a \ common \ e. .. código \ odweb.cab O16 - DPF: (B8BE5E93-A60C-4D26-A2DC-220313175592) (ZoneIntro Class) -- http://cdn2.zone.msn.com/binFramewor...o.cab34246.cab O16 - DPF: (C3F79A2B-B9B4-4A66-B012-3EE46475B072) (MessengerStatsClient Class) -- http://messenger.zone.msn.com/binary...t.cab56907.cab O16 - DPF: (CE28D5D2-60CF-4C7D-9FE8-0F47A3308078) (ActiveDataInfo Classe) -- http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab O16 - DPF: (D1E7CBDA-E60E-4970-A01C-37301EF7BF98) (Measurement Services Client v.3.11) -- http://advisor.futuremark.com/global/msc311.cab O16 - DPF: (DA2AA6CF-5C7A-4B71-BC3B-C771BB369937) (StadiumProxy Classe) -- http://zone.msn.com/binframework/v10...y.cab41227.cab O16 - DPF: (E7D2588A-7FB5-47DC-8830-832605661009) (Live Collaboration) -- http://livenj01.rightnowtech.com/556.../java/RntX.cab O16 - DPF: (E8F628B5-259A-4734-97EE-BA914D7BE941) (Driver Agent ActiveX Control) -- http://plugin.driveragent.com/files/driveragent.cab O16 - DPF: (EB387D2F-E27B-4D36-979E-847D1036C65D) (QDiagHUpdateObj Classe) -- http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326 O16 - DPF: (FFBB3F3B-0A5A-4106-BE53-DFE1E2340CB1) (DownloadManager Controle) -- http://dlm.tools.akamai.com/dlmanage...ex-2.2.1.6.cab O18 - Protocol: skype4com - (FFC8B962-9B40-4DFF-9458-1830C7DD7F5D) - C: \ PROGRA ~ 1 \ common ~ 1 \ Skype \ SKYPE4 ~ 1.DLL O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C: \ Program Files \ Lavasoft \ Ad-Aware 2007 \ aawservice.exe O23 - Service: Apple Mobile Device - Apple, Inc. - C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe O23 - Service: Bonjour Service - Apple Inc. - C: \ Program Files \ Bonjour \ mDNSResponder.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe O23 - Service: Symantec Network Proxy (CCProxy) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ VAScanner \ comHost.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1150 \ Intel 32 \ IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C: \ Program Files \ ahead \ InCD \ InCD \ InCDsrv.exe O23 - Service: iPod Service - Apple Inc. - C: \ Program Files \ iPod \ bin \ iPodService.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ LuComServer_3_4.EXE O23 - Service: LiveUpdate Notice - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSvcHst.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C: \ WINDOWS.NEW \ system32 \ nvsvc32.exe O23 - Service: PML Driver HPZ12 - HP - C: \ WINDOWS.NEW \ System32 \ HPZipm12.exe O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - C: \ Program Files \ Dantz \ Retrospect \ retrorun.exe O23 - Service: Retrospect WD (Serviço RetroWDSvc) - Dantz Development Corporation - C: \ PROGRA ~ 1 \ Dantz \ RETROS ~ 1 \ wdsvc.exe O23 - Service: Symantec Core LC - Unknown owner - C: \ Program Files \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe -- Fim do arquivo - 17835 bytes |
|
#2
| ||||||||||||
| ||||||||||||
WAW agora thats um tijolo de texto Meu Sistema: Mean Machine!
|
|
#3
| |||
| |||
| Não vejo qualquer malware no log. Já HijackThis corrigir estas entradas.
Deixe-me saber como chegar lá, podemos sempre correr mais varreduras para ter certeza. |
|
#4
| |||
| |||
| Não consegui encontrar nada há que ajudar ... graças à ligação embora. I've anexada uma imagem mostrando apenas o que eu quero dizer - espero que este seja de uso. |
|
#5
| |||
| |||
| Você está conectado como um administrador? |
|
#6
| |||
| |||
| Yup .. essa foi a primeira coisa que eu chequei, pensando que tinha tenho mudado. É o mesmo na outra conta admin também. |
|
#7
| |||
| |||
| Você tem algum programas de segurança instalados que podem tê-lo desativado. xp-Antispy? Você pode ir para a chave de registo e altere o valor padrão e reativá-los manualmente. Vá para Iniciar> Executar digite regedit e clique em OK Localizar a chave: HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ au No painel da direita, procure por uma chave chamada NoAutoUpdate Altere o valor de um 1 a um 0 Reinicie e veja se ele mudou. |
|
#8
| |||
| |||
| Desculpe, apenas correu em toda esta situação. Ir para http://www.kellys-korner-xp.com/xp.htm vá para a seção tweaks e obter o tweak chamado "Windows Update cinzento - Restaurar". |
|
#9
| |||
| |||
| Isso é ótimo, graças evilfantasy um milhão! Parece que a menor infecção que tive foi alheia a este facto. Mais uma vez, cheers. |
|
#10
| |||
| |||
| Não tem problema. |
![]() |
|
| Marcadores |
Similar Threads | ||||
| Fio | Thread Starter | Fórum | Respostas | Última postagem |
| Vírus Pergunta - Alguém pode me dizer se eu possa ter um vírus | billozz | Vírus, spyware e Segurança | 1 | 2. De abril de 2009 13:58 |
| Meus amigos MAC tem um vírus ... umm ... sim ... um vírus ... | cheesepuff | Vírus, spyware e Segurança | 3 | 29. De outubro de 2008 12:58 |
| Vírus ajudar | jam90 | Vírus, spyware e Segurança | 1 | 28. De julho de 2008 07:26 |
| Vírus | lolli_pop | Vírus, spyware e Segurança | 13 | 17. De novembro de 2007 09:42 |
| Vírus? | carpious | Vírus, spyware e Segurança | 12 | 6. De maio de 2007 09:49 |
| Thread Tools | |
| |