Ir ao conteúdo
  • Comunicados

    • diego_moicano

      Gostaria de se tornar um analista em Remoção de Malware?   07-12-2015

      Gostaria de se tornar um analista em Remoção de Malware? O Fórum Clube do Hardware deu início a um programa de treinamento em análises de log. Os interessados deverão enviar um email para aprendizes (arroba) clubedohardware (ponto) com (ponto) br respondendo as seguintes perguntas: Por que você gostaria de aprender a analisar logs? Possui tempo hábil para o treinamento? Tem conhecimentos em informática? Se sim descreva-os. Possui inglês para leitura? Qual seu objetivo após completar o treinamento?   Não se esqueça de incluir no e-mail o seu nome de usuário (fornecer o link também), idade e cidade onde vive. Adicione também qualquer experiência e/ou razão sobre o porquê você seria um bom Analista. É digno de nota que apenas os que forem selecionados receberão resposta por MP (Mensagem Pessoal), não existe um padrão na escolha dos futuros aprendizes, todos os e-mails serão lidos e serão analisados de forma imparcial, portanto não será permitido reclamações neste aspecto. O treinamento é dado no próprio fórum. Quando um aprendiz é selecionado ele é movido para um novo grupo, onde terá acesso a fóruns fechados para os demais usuários onde poderá dar inicio ao seu treinamento. Importante: A cada 30 dias os e-mails não selecionados serão apagados, portanto você pode enviar um novo e-mail após 1 mês, e-mails enviados antes serão desconsiderados.  
    • Gabriel Torres

      Seja um moderador do Clube do Hardware!   12-02-2016

      Prezados membros do Clube do Hardware, Está aberto o processo de seleção de novos moderadores para diversos setores ou áreas do Clube do Hardware. Os requisitos são:   Pelo menos 500 posts e um ano de cadastro; Boa frequência de participação; Ser respeitoso, cordial e educado com os demais membros; Ter bom nível de português; Ter razoável conhecimento da área em que pretende atuar; Saber trabalhar em equipe (com os moderadores, coordenadores e administradores).   Os interessados deverão enviar uma mensagem privada para o usuário @Equipe Clube do Hardware com o título "Candidato a moderador". A mensagem deverá conter respostas às perguntas abaixo:   Qual o seu nome completo? Qual sua data de nascimento? Qual sua formação/profissão? Já atuou como moderador em algo outro fórum, se sim, qual? De forma sucinta, explique o porquê de querer ser moderador do fórum e conte-nos um pouco sobre você.   OBS: Não se trata de função remunerada. Todos que fazem parte do staff são voluntários.
Entre para seguir isso  
L30N4RD0

eu to com problema i acho q pd ser virus

Recommended Posts

de uns tempos pra k quando eu abro alguns aplicativos de vez em quando 2 as vezes 6 não importa o numero u a tela começa a deformar a janela como c tivesse sobrecarregadu(a memoria fica em 60% o q é normal de uso i o processador num chega nem a 20% ou seja não tá sobrecarregado) 1 em cima da outra a tela fica qse td preta ai conforme tu vai passando o mouse vai aparecendo as janelas ate volta fica td preto i tipo q piscando eu to achando q pd ser virus como não entendo muito disso esse executei hijacthis deu isso aqui i deu também acesso megadu a 1 pasta em c:/windows/system32/drivers/etc/hosts i tem 1 outra pasta chamado log com 2 arquivos 1 de 50mb i outro 32mb de bloco de notas o q eu considero muito q também daum acesso negadu quando eu tento ler isso seria algum virus ou coisa do tipo

Logfile of HijackThis v1.99.1

Scan saved at 21:57:34, on 24/03/2008

Platform: Unknown Windows (WinNT 6.00.1904)

MSIE: Internet Explorer v7.00 (7.00.6000.16609)

Running processes:

C:\Windows\system32\taskeng.exe

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\ehome\ehtray.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Windows\system32\igfxsrvc.exe

C:\Windows\ehome\ehmsas.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\Internet Explorer\ieuser.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Windows\system32\Macromed\Flash\FlashUtil9e.exe

C:\Users\leonardo\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.positivoinformatica.com.br

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - (no file)

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll

O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [sMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe

O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/201

O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/204

O8 - Extra context menu item: Baixar com o FDM - file://C:\Program Files\Free Download Manager\dllink.htm

O8 - Extra context menu item: Baixar tudo com o FDM - file://C:\Program Files\Free Download Manager\dlall.htm

O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/203

O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files\Orbitdownloader\orbitmxt.dll/202

O8 - Extra context menu item: Download selecionado pelo FDM - file://C:\Program Files\Free Download Manager\dlselected.htm

O8 - Extra context menu item: Download video with Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm

O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000

O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL

O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O13 - Gopher Prefix:

O17 - HKLM\System\CCS\Services\Tcpip\..\{66B9F4B5-F2B1-43BF-B479-17FD2288D632}: NameServer = 192.169.9.1

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL

O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

Compartilhar este post


Link para o post
Compartilhar em outros sites
  • Autor do tópico
  • -------------------------------------------------------------------------------

    KASPERSKY ONLINE SCANNER REPORT

    Saturday, March 29, 2008 8:50:54 AM

    Operating System: Microsoft Windows Vista Home Edition, (Build 6000)

    Kaspersky Online Scanner version: 5.0.98.0

    Kaspersky Anti-Virus database last update: 29/03/2008

    Kaspersky Anti-Virus database records: 672073

    -------------------------------------------------------------------------------

    Scan Settings:

    Scan using the following antivirus database: extended

    Scan Archives: true

    Scan Mail Bases: true

    Scan Target - My Computer:

    C:\

    D:\

    E:\

    F:\

    G:\

    H:\

    I:\

    Scan Statistics:

    Total number of scanned objects: 82059

    Number of viruses found: 1

    Number of infected objects: 4

    Number of suspicious objects: 0

    Duration of the scan process: 00:33:39

    Infected Object Name / Virus Name / Last Action

    C:\Boot\BCD Object is locked skipped

    C:\Boot\BCD.LOG Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

    C:\Program Files\Alwil Software\Avast4\DATA\report\Proteção residente.txt Object is locked skipped

    C:\Program Files\DAEMON Tools Lite\SRSAI.exe Infected: not-a-virus:AdWare.Win32.Shopper.r skipped

    C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7143fdbd5658d064f6fdffbdf894499_ddaf90cd-8f61-4d42-ab87-18db755e1068 Object is locked skipped

    C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f686aace6942fb7f7ceb231212eef4a4_ddaf90cd-8f61-4d42-ab87-18db755e1068 Object is locked skipped

    C:\Users\leonardo\AppData\Local\Ahead\Nero Home\bl.db Object is locked skipped

    C:\Users\leonardo\AppData\Local\Ahead\Nero Home\is2.db Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Feeds Cache\index.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\History\Low\History.IE5\index.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\index.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\UsrClass.dat Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1 Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG2 Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\UsrClass.dat{a6337dfa-c139-11dc-94f4-001d6084d6ee}.TM.blf Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\UsrClass.dat{a6337dfa-c139-11dc-94f4-001d6084d6ee}.TMContainer00000000000000000001.regtrans-ms Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows\UsrClass.dat{a6337dfa-c139-11dc-94f4-001d6084d6ee}.TMContainer00000000000000000002.regtrans-ms Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows Defender\FileTracker\{BCFD0BAC-7EED-4B1B-B81E-8F65DFD11811} Object is locked skipped

    C:\Users\leonardo\AppData\Local\Microsoft\Windows Sidebar\Settings.ini Object is locked skipped

    C:\Users\leonardo\AppData\Local\Temp\Low\Free Download Manager\ticB1A4.tmp Object is locked skipped

    C:\Users\leonardo\AppData\Local\Temp\Low\Free Download Manager\ticE43A.tmp Object is locked skipped

    C:\Users\leonardo\AppData\Roaming\Microsoft\Windows\Cookies\index.dat Object is locked skipped

    C:\Users\leonardo\AppData\Roaming\Microsoft\Windows\Cookies\Low\index.dat Object is locked skipped

    C:\Users\leonardo\Downloads\daemon4121-lite.exe/stream/data0050 Infected: not-a-virus:AdWare.Win32.Shopper.r skipped

    C:\Users\leonardo\Downloads\daemon4121-lite.exe/stream Infected: not-a-virus:AdWare.Win32.Shopper.r skipped

    C:\Users\leonardo\Downloads\daemon4121-lite.exe NSIS: infected - 2 skipped

    C:\Users\leonardo\ntuser.dat Object is locked skipped

    C:\Users\leonardo\ntuser.dat.LOG1 Object is locked skipped

    C:\Users\leonardo\ntuser.dat.LOG2 Object is locked skipped

    C:\Users\leonardo\ntuser.dat{633e4187-e1a6-11dc-8d84-001d6084d6ee}.TM.blf Object is locked skipped

    C:\Users\leonardo\ntuser.dat{633e4187-e1a6-11dc-8d84-001d6084d6ee}.TMContainer00000000000000000001.regtrans-ms Object is locked skipped

    C:\Users\leonardo\ntuser.dat{633e4187-e1a6-11dc-8d84-001d6084d6ee}.TMContainer00000000000000000002.regtrans-ms Object is locked skipped

    C:\Windows\Debug\PASSWD.LOG Object is locked skipped

    C:\Windows\Debug\sam.log Object is locked skipped

    C:\Windows\Debug\WIA\wiatrace.log Object is locked skipped

    C:\Windows\Logs\CBS\CBS.log Object is locked skipped

    C:\Windows\Logs\CBS\CBS.persist.log Object is locked skipped

    C:\Windows\Logs\DPX\setupact.log Object is locked skipped

    C:\Windows\Logs\DPX\setuperr.log Object is locked skipped

    C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe.config Object is locked skipped

    C:\Windows\panther\UnattendGC\diagerr.xml Object is locked skipped

    C:\Windows\panther\UnattendGC\diagwrn.xml Object is locked skipped

    C:\Windows\panther\UnattendGC\setupact.log Object is locked skipped

    C:\Windows\panther\UnattendGC\setuperr.log Object is locked skipped

    C:\Windows\security\database\secedit.sdb Object is locked skipped

    C:\Windows\SoftwareDistribution\ReportingEvents.log Object is locked skipped

    C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 Object is locked skipped

    C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 Object is locked skipped

    C:\Windows\System32\catroot2\edb.log Object is locked skipped

    C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb Object is locked skipped

    C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb Object is locked skipped

    C:\Windows\System32\config\COMPONENTS Object is locked skipped

    C:\Windows\System32\config\COMPONENTS.LOG1 Object is locked skipped

    C:\Windows\System32\config\COMPONENTS.LOG2 Object is locked skipped

    C:\Windows\System32\config\DEFAULT Object is locked skipped

    C:\Windows\System32\config\DEFAULT.LOG1 Object is locked skipped

    C:\Windows\System32\config\DEFAULT.LOG2 Object is locked skipped

    C:\Windows\System32\config\SAM Object is locked skipped

    C:\Windows\System32\config\SAM.LOG1 Object is locked skipped

    C:\Windows\System32\config\SAM.LOG2 Object is locked skipped

    C:\Windows\System32\config\SECURITY Object is locked skipped

    C:\Windows\System32\config\SECURITY.LOG1 Object is locked skipped

    C:\Windows\System32\config\SECURITY.LOG2 Object is locked skipped

    C:\Windows\System32\config\SOFTWARE Object is locked skipped

    C:\Windows\System32\config\SOFTWARE.LOG1 Object is locked skipped

    C:\Windows\System32\config\SOFTWARE.LOG2 Object is locked skipped

    C:\Windows\System32\config\SYSTEM Object is locked skipped

    C:\Windows\System32\config\SYSTEM.LOG1 Object is locked skipped

    C:\Windows\System32\config\SYSTEM.LOG2 Object is locked skipped

    C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TM.blf Object is locked skipped

    C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000001.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000002.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000003.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000004.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{afaac5b9-e72d-11dc-ba31-001d6084d6ee}.TxR.0.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{afaac5b9-e72d-11dc-ba31-001d6084d6ee}.TxR.1.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{afaac5b9-e72d-11dc-ba31-001d6084d6ee}.TxR.2.regtrans-ms Object is locked skipped

    C:\Windows\System32\config\TxR\{afaac5b9-e72d-11dc-ba31-001d6084d6ee}.TxR.blf Object is locked skipped

    C:\Windows\System32\drivers\sptd.sys Object is locked skipped

    C:\Windows\System32\LogFiles\Scm\SCM.EVM Object is locked skipped

    C:\Windows\System32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped

    C:\Windows\System32\restore\MachineGuid.txt Object is locked skipped

    C:\Windows\System32\spool\SpoolerETW.etl Object is locked skipped

    C:\Windows\System32\sysprep\Panther\diagerr.xml Object is locked skipped

    C:\Windows\System32\sysprep\Panther\diagwrn.xml Object is locked skipped

    C:\Windows\System32\sysprep\Panther\setupact.log Object is locked skipped

    C:\Windows\System32\sysprep\Panther\setuperr.log Object is locked skipped

    C:\Windows\System32\wbem\AutoRecover\3460B7617E0429A960E481B197F238A3.mof Object is locked skipped

    C:\Windows\System32\wbem\AutoRecover\E478A5DB75C9721E744C05D78DBACFD3.mof Object is locked skipped

    C:\Windows\System32\wbem\Logs\WMITracing.log Object is locked skipped

    C:\Windows\System32\wbem\repository\INDEX.BTR Object is locked skipped

    C:\Windows\System32\wbem\repository\MAPPING1.MAP Object is locked skipped

    C:\Windows\System32\wbem\repository\MAPPING2.MAP Object is locked skipped

    C:\Windows\System32\wbem\repository\OBJECTS.DATA Object is locked skipped

    C:\Windows\System32\winevt\Logs\Antivirus.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Application.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\DFS Replication.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\HardwareEvents.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Internet Explorer.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Key Management Service.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Media Center.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Bits-Client%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-CodeIntegrity%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-CorruptedFileRecovery-Client%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-CorruptedFileRecovery-Server%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-DateTimeControlPanel%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-MSDT%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-PLA%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Networking%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnostic%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnosticDataCollector%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnosticResolver%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-DriverFrameworks-UserMode%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Forwarding%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-GroupPolicy%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Help%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-International%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WDI%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WHEA.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-LanguagePackSetup%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-MeetingSpace%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-MemoryDiagnostics-Results%4Debug.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-MUI%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-NetworkAccessProtection%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-ParentalControls%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Program-Compatibility-Assistant%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReadyBoost%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReliabilityAnalysisComponent%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-RemoteAssistance%4Admin.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-RemoteAssistance%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Resolver%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Leak-Diagnostic%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-RestartManager%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-TaskScheduler%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC-FileVirtualization%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-WindowsUpdateClient%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Winlogon%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Winsock-WS2HELP%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-Wired-AutoConfig%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Microsoft-Windows-WLAN-AutoConfig%4Operational.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\ODiag.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\OSession.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Security.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\Setup.evtx Object is locked skipped

    C:\Windows\System32\winevt\Logs\System.evtx Object is locked skipped

    C:\Windows\Tasks\SCHEDLGU.TXT Object is locked skipped

    C:\Windows\Temp\_avast4_\Webshlock.txt Object is locked skipped

    C:\Windows\WindowsUpdate.log Object is locked skipped

    C:\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.16386_none_cef7ceb03914a67f\dnary.xsd Object is locked skipped

    Scan process completed.

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites

    O problem está no Daemon Tools que tem o adware Shopper. Recomendo a sua desinstalação.

    No mais, o log está limpo.

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
  • Autor do tópico
  • valeu eu axava q era isso já desintalei

    Compartilhar este post


    Link para o post
    Compartilhar em outros sites
    Entre para seguir isso  





    Sobre o Clube do Hardware

    No ar desde 1996, o Clube do Hardware é uma das maiores, mais antigas e mais respeitadas publicações sobre tecnologia do Brasil. Leia mais

    Direitos autorais

    Não permitimos a cópia ou reprodução do conteúdo do nosso site, fórum, newsletters e redes sociais, mesmo citando-se a fonte. Leia mais

    ×