Oi baixei o arquivo dds e aqui estão os logs:
DDS (Ver_09-06-26.01) - NTFSx86
Run by Sky at 18:30:44,62 on seg 20/07/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_13
Microsoft Windows XP Professional 5.1.2600.3.1252.55.1046.18.2047.1112 [GMT -3:00]
AV: AntiVir Desktop *On-access scanning disabled* (Outdated) {AD166499-45F9-482A-A743-FDD3350758C7}
============== Running Processes ===============
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Arquivos de programas\Google\Google Desktop Search\GoogleDesktop.exe
C:\Arquivos de programas\Google\Google Talk\googletalk.exe
C:\Arquivos de programas\Microsoft Office\Office12\GrooveMonitor.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\Steam\Steam.exe
C:\Arquivos de programas\Microsoft Office\Office\1046\msoffice.exe
C:\Arquivos de programas\Microsoft Office\Office\OSA9.EXE
C:\Arquivos de programas\Mozilla Firefox\firefox.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Arquivos de programas\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\rundll32.exe
C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe
C:\Arquivos de programas\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\Sky\Meus documentos\CryptLoad_1.1.6\CryptLoad.exe
C:\Documents and Settings\Sky\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = about:blank
uInternet Settings,ProxyOverride = *.local
mWinlogon: SFCDisable=-99 (0xffffff9d)
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\arquivos de programas\arquivos comuns\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: BitComet Helper: {39f7e362-828a-4b5a-bcaf-5b79bfdfea60} - c:\arquivos de programas\bitcomet\tools\BitCometBHO_1.2.8.7.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\arquivos de programas\microsoft office\office12\GrooveShellExtensions.dll
BHO: Auxiliar de Conexão do Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\arquivos de programas\arquivos comuns\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: FDMIECookiesBHO Class: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - c:\arquivos de programas\free download manager\iefdm2.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\arquivos de programas\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\arquivos de programas\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: Kwyshell MidpX: {ebe9e2b5-b526-48bc-ad46-687263edcb0e} - c:\arquivos de programas\kwyshell\midpx\jadinvoker\MidpInvoker.dll
TB: Kwyshell MidpX: {ebe9e2b5-b526-48bc-ad46-687263edcb0e} - c:\arquivos de programas\kwyshell\midpx\jadinvoker\MidpInvoker.dll
TB: TextAloud: {f053c368-5458-45b2-9b4d-d8914bdddbff} - c:\arquiv~1\textal~1\TAForIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [AlcoholAutomount] "c:\arquivos de programas\alcohol soft\alcohol 120\axcmd.exe" /automount
uRun: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\arquivos de programas\arquivos comuns\nero\lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
uRun: [CoolSMS]
uRun: [Google Update] "c:\documents and settings\sky\configurações locais\dados de aplicativos\google\update\GoogleUpdate.exe" /c
uRun: [Steam] "c:\arquivos de programas\steam\Steam.exe" -silent
mRun: [Google Desktop Search] "c:\arquivos de programas\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [googletalk] c:\arquivos de programas\google\google talk\googletalk.exe /autostart
mRun: [GrooveMonitor] "c:\arquivos de programas\microsoft office\office12\GrooveMonitor.exe"
mRun: [NeroFilterCheck] c:\arquivos de programas\arquivos comuns\nero\lib\NeroCheck.exe
mRun: [NBKeyScan] "c:\arquivos de programas\nero\nero8\nero backitup\NBKeyScan.exe"
mRun: [Adobe Reader Speed Launcher] "c:\arquivos de programas\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [SunJavaUpdateSched] "c:\arquivos de programas\java\jre6\bin\jusched.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [avgnt] "c:\arquivos de programas\avira\antivir desktop\avgnt.exe" /min
mRun: [QuickTime Task] "c:\arquivos de programas\quicktime\qttask.exe" -atboottime
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\sky\menuin~1\progra~1\inicia~1\mozill~1.lnk - c:\arquivos de programas\mozilla firefox\firefox.exe
StartupFolder: c:\docume~1\alluse~1\menuin~1\progra~1\inicia~1\barrad~1.lnk - c:\windows\installer\{00000416-78e1-11d2-b60f-006097c998e7}\misc.exe
StartupFolder: c:\docume~1\alluse~1\menuin~1\progra~1\inicia~1\micros~1.lnk - c:\arquivos de programas\microsoft office\office\OSA9.EXE
dPolicies-system: DisableTaskMgr = 1 (0x1)
dPolicies-system: DisableRegistryTools = 1 (0x1)
IE: Baixar com o FDM - file://c:\arquivos de programas\free download manager\dllink.htm
IE: Baixar link usando &BitComet - c:\arquivos de programas\bitcomet\BitComet.exe/AddLink.htm
IE: Baixar todos os links usando BitComet - c:\arquivos de programas\bitcomet\BitComet.exe/AddAllLink.htm
IE: Baixar todos os vídeos usando BitComet - c:\arquivos de programas\bitcomet\BitComet.exe/AddVideo.htm
IE: Baixar tudo com o FDM - file://c:\arquivos de programas\free download manager\dlall.htm
IE: Download selecionado pelo FDM - file://c:\arquivos de programas\free download manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\arquivos de programas\free download manager\dlfvideo.htm
IE: E&xportar para o Microsoft Excel - c:\arquiv~1\micros~3\office12\EXCEL.EXE/3000
IE: Link to &MidpX - c:\arquivos de programas\kwyshell\midpx\jadinvoker\extent\jad_wrap.htm
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\arquivos de programas\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\sky\menu iniciar\programas\imvu\Run IMVU.lnk
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {E59EB121-F339-4851-A3BA-FE49C35617C2} - c:\arquivos de programas\icq6.5\ICQ.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\arquivos de programas\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\arquiv~1\micros~3\office11\REFIEBAR.DLL
DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://utilities.pcpitstop.com/da/PCPitStop.CAB
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.srtest.com/srl_bin/sysreqlab_srl.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1225330116359
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} - hxxp://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} - hxxp://simcity.ea.com/play/classic/SimCityX.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} - hxxp://icq.oberon-media.com/Gameshell/GameHost/1.0/OberonGameHost.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\arquivos de programas\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\arquiv~1\arquiv~1\skype\SKYPE4~1.DLL
Notify: !SASWinLogon - c:\arquivos de programas\superantispyware\SASWINLO.dll
AppInit_DLLs: c:\arquiv~1\google\google~1\GOEC62~1.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\arquivos de programas\microsoft office\office12\GrooveShellExtensions.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\arquivos de programas\superantispyware\SASSEH.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\sky\dadosd~1\mozilla\firefox\profiles\pleipi00.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - YouTube
FF - prefs.js: browser.startup.homepage - www.orkut.com
FF - component: c:\arquivos de programas\mozilla firefox\components\GoogleDesktopMozilla.dll
FF - plugin: c:\documents and settings\sky\configuraã§ãµes locais\dados de aplicativos\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\documents and settings\sky\dados de aplicativos\mozilla\firefox\profiles\pleipi00.default\extensions\battlefieldheroespatcher@ea.com\platform\winnt_x86-msvc\plugins\npBFHUpdater.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\arquivos de programas\mozilla firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".com.br");
============= SERVICES / DRIVERS ===============
R1 avgio;avgio;c:\arquivos de programas\avira\antivir desktop\avgio.sys [2009-5-16 11608]
R1 SASDIFSV;SASDIFSV;c:\arquivos de programas\superantispyware\sasdifsv.sys [2009-6-23 9968]
R1 SASKUTIL;SASKUTIL;c:\arquivos de programas\superantispyware\SASKUTIL.SYS [2009-6-23 72944]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\arquivos de programas\avira\antivir desktop\sched.exe [2009-5-16 108289]
R2 AntiVirService;Avira AntiVir Guard;c:\arquivos de programas\avira\antivir desktop\avguard.exe [2009-5-16 185089]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2009-5-16 55640]
S3 GoogleDesktopManager-092308-165331;Gerenciador do Google Desktop 5.8.809.23506;c:\arquivos de programas\google\google desktop search\GoogleDesktop.exe [2008-10-31 30192]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\arquivos de programas\sisoftware\sisoftware sandra lite 2009\RpcAgentSrv.exe [2009-2-3 98488]
S3 SASENUM;SASENUM;c:\arquivos de programas\superantispyware\SASENUM.SYS [2009-6-23 7408]
=============== Created Last 30 ================
2009-07-19 10:53 <DIR> --d----- c:\docume~1\sky\dadosd~1\Malwarebytes
2009-07-19 10:53 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-19 10:53 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-07-19 10:53 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\Malwarebytes
2009-07-19 10:53 <DIR> --d----- c:\arquivos de programas\Malwarebytes' Anti-Malware
2009-07-17 01:25 139,016 a------- c:\windows\system32\drivers\PnkBstrK.sys
2009-07-14 21:03 189,488 a------- c:\windows\system32\PnkBstrB.exe
2009-07-13 12:11 <DIR> --d----- c:\windows\system32\wbem\Repository
2009-07-13 12:11 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\SUPERAntiSpyware.com
2009-07-13 02:24 <DIR> --d----- c:\docume~1\sky\dadosd~1\SUPERAntiSpyware.com
2009-07-13 02:24 <DIR> --d----- c:\arquivos de programas\SUPERAntiSpyware
2009-07-03 13:15 <DIR> --d----- c:\docume~1\sky\dadosd~1\Activision
2009-07-03 13:15 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\Activision
2009-06-26 12:18 189,488 a------- c:\windows\system32\PnkBstrB.xtr
2009-06-26 06:13 139,152 a------- c:\docume~1\sky\dadosd~1\PnkBstrK.sys
2009-06-26 06:12 75,064 a------- c:\windows\system32\PnkBstrA.exe
2009-06-26 06:12 794,408 a------- c:\windows\system32\pbsvc.exe
2009-06-26 04:16 <DIR> --d----- c:\arquivos de programas\EA Games
2009-06-25 14:42 5,632 a------- c:\windows\system32\BReWErS.dll
2009-06-22 06:36 0 a------- c:\windows\graphedit.INI
==================== Find3M ====================
2009-06-19 01:04 106,496 a------- c:\windows\Cuninst.exe
2009-06-18 18:17 418,480 a------- c:\windows\system32\wrap_oal.dll
2009-06-18 18:17 115,432 a------- c:\windows\system32\OpenAL32.dll
2009-06-18 14:43 3,709 a------- c:\windows\system32\sdbackup.reg
2009-06-14 18:45 25,280 a------- c:\windows\system32\drivers\hamachi.sys
2009-05-10 02:47 737,280 a------- c:\windows\iun6002.exe
2009-05-01 00:31 1,657,376 a------- c:\windows\system32\nwiz.exe
2009-05-01 00:31 449,056 a------- c:\windows\system32\nvappbar.exe
2009-05-01 00:31 436,768 a------- c:\windows\system32\keystone.exe
2009-05-01 00:31 1,724,416 a------- c:\windows\system32\nvwdmcpl.dll
2009-05-01 00:31 1,507,328 a------- c:\windows\system32\nview.dll
2009-05-01 00:31 1,101,824 a------- c:\windows\system32\nvwimg.dll
2009-05-01 00:31 466,944 a------- c:\windows\system32\nvshell.dll
2009-04-30 22:02 9,994,240 a------- c:\windows\system32\nvoglnt.dll
2009-04-30 22:02 5,896,320 a------- c:\windows\system32\nv4_disp.dll
2009-04-30 22:02 1,720,320 a------- c:\windows\system32\nvcuda.dll
2009-04-30 22:02 1,579,630 a------- c:\windows\system32\nvdata.bin
2009-04-30 22:02 1,314,816 a------- c:\windows\system32\nvcuvenc.dll
2009-04-30 22:02 806,912 a------- c:\windows\system32\nvapi.dll
2009-04-30 22:02 663,552 a------- c:\windows\system32\nvcuvid.dll
2009-04-30 22:02 457,248 a------- c:\windows\system32\nvudisp.exe
2009-04-30 22:02 143,360 a------- c:\windows\system32\nvcodins.dll
2009-04-30 22:02 143,360 a------- c:\windows\system32\nvcod.dll
2009-04-27 00:42 457,248 a------- c:\windows\system32\NVUNINST.EXE
2009-02-03 11:48 87,608 a------- c:\docume~1\sky\dadosd~1\inst.exe
2009-02-03 11:48 47,360 a------- c:\docume~1\sky\dadosd~1\pcouffin.sys
============= FINISH: 18:31:11,31 ===============
E aqui está o outro
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-06-26.01)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 29/10/2008 22:06:12
System Uptime: 20/7/2009 15:31:43 (3 hours ago)
Motherboard: ASUSTeK Computer INC. | | P5WD2
Processor: Intel(R) Pentium(R) D CPU 3.40GHz | Socket 775 | 3412/200mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 112 GiB total, 0,337 GiB free.
D: is CDROM ()
E: is CDROM (CDFS)
F: is CDROM (CDFS)
G: is CDROM ()
H: is CDROM ()
I: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Controlador Ethernet
Device ID: PCI\VEN_13F0&DEV_0200&SUBSYS_020113F0&REV_31\4&CF81C54&0&00F0
Manufacturer:
Name: Controlador Ethernet
PNP Device ID: PCI\VEN_13F0&DEV_0200&SUBSYS_020113F0&REV_31\4&CF81C54&0&00F0
Service:
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Controlador de comunicação PCI simples
Device ID: PCI\VEN_E159&DEV_0001&SUBSYS_00038086&REV_00\4&CF81C54&0&08F0
Manufacturer:
Name: Controlador de comunicação PCI simples
PNP Device ID: PCI\VEN_E159&DEV_0001&SUBSYS_00038086&REV_00\4&CF81C54&0&08F0
Service:
==== System Restore Points ===================
RP311: 13/7/2009 02:24:22 - Installed SUPERAntiSpyware Free Edition
RP312: 13/7/2009 11:57:16 - Operação de restauração
RP313: 13/7/2009 12:11:03 - Operação de restauração
RP314: 14/7/2009 13:12:59 - Ponto de verificação do sistema
RP315: 15/7/2009 17:53:11 - Ponto de verificação do sistema
RP316: 16/7/2009 18:50:04 - Ponto de verificação do sistema
RP317: 18/7/2009 11:30:09 - Ponto de verificação do sistema
RP318: 19/7/2009 14:31:12 - Ponto de verificação do sistema
==== Installed Programs ======================
ABC 3GP/MP4 Converter 3.00
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Default Language CS3
Adobe ExtendScript Toolkit 2
Adobe Extension Manager CS3
Adobe Fireworks CS3
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Help Viewer CS3
Adobe PDF Library Files
Adobe Reader 9.1.2 - Português
Adobe Setup
Adobe Shockwave Player
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe XMP Panels CS3
ADPHONE3
Arquivo do WinRAR
Ask.com Search Assistant 1.0.1
Assistente de Conexão do Windows Live
Atualização de Segurança para o Windows Media Player (KB952069)
Atualização de Segurança para o Windows Media Player 11 (KB936782)
Atualização de Segurança para o Windows Media Player 11 (KB954154)
Atualização de Segurança para Windows Internet Explorer 7 (KB938127-v2)
Atualização de Segurança para Windows Internet Explorer 7 (KB956390)
Atualização de Segurança para Windows Internet Explorer 7 (KB958215)
Atualização de Segurança para Windows Internet Explorer 7 (KB960714)
Atualização de Segurança para Windows XP (KB938464)
Atualização de Segurança para Windows XP (KB941569)
Atualização de Segurança para Windows XP (KB946648)
Atualização de Segurança para Windows XP (KB950762)
Atualização de Segurança para Windows XP (KB950974)
Atualização de Segurança para Windows XP (KB951066)
Atualização de Segurança para Windows XP (KB951376-v2)
Atualização de Segurança para Windows XP (KB951698)
Atualização de Segurança para Windows XP (KB952954)
Atualização de Segurança para Windows XP (KB954211)
Atualização de Segurança para Windows XP (KB954459)
Atualização de Segurança para Windows XP (KB954600)
Atualização de Segurança para Windows XP (KB955069)
Atualização de Segurança para Windows XP (KB956391)
Atualização de Segurança para Windows XP (KB956802)
Atualização de Segurança para Windows XP (KB956803)
Atualização de Segurança para Windows XP (KB956841)
Atualização de Segurança para Windows XP (KB957095)
Atualização de Segurança para Windows XP (KB957097)
Atualização de Segurança para Windows XP (KB958644)
Atualização para Windows XP (KB898461)
Atualização para Windows XP (KB951072-v2)
Atualização para Windows XP (KB951978)
Atualização para Windows XP (KB955839)
aTube Catcher 1.0
Avira AntiVir Personal - Free Antivirus
Battlefield Heroes
Big Fish Games Client
BitComet 1.05
BS.Player
BS.Player PRO
Call of Duty(R) - World at War(TM)
CCleaner (remove only)
CDisplay 1.8
Choice Guard
Clean Virus MSN
CoolSMS 2.06 beta
Dead Space™
Descrambler
Dic Michaelis - UOL
Discador InteligWeb
Driver Detective
EasyCleaner
Fallout
Fallout 3
Fallout2
Ferramenta de Carregamento do Windows Live
Free Download Manager 2.5
GameHike
GameTap
Garena
Google Chrome
Google Desktop
Google Earth
Google Talk (remove only)
HijackThis 2.0.2
Hockey Elétrico
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix para o Windows Media Player 11 (KB939683)
Hotfix para Windows XP (KB942288-v3)
Hotfix para Windows XP (KB952287)
hp deskjet 3420 series
Huffyuv AVI lossless video codec (Remove Only)
ICQ6.5
ImgBurn
IMVU Avatar Chat Software
IncrediMail
IrfanView (remove only)
IRPF2009 - Declaração de Ajuste Anual e Final de Espólio
Java DB 10.4.1.3
Java(TM) 6 Update 13
Java(TM) 6 Update 3
Java(TM) 6 Update 7
Java(TM) SE Development Kit 6 Update 13
K-Lite Codec Pack 4.2.5 (Full)
Kwyshell MidpX Emulator Package 1.3.1
Malwarebytes' Anti-Malware
Mario Soccer Demo #7
Marvell Miniport Driver
Max Payne
Megacubo 6.0.3
Messenger Plus! Live
Microsoft .NET Framework 2.0 Service Pack 1
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PTB
Microsoft .NET Framework 3.0 Service Pack 1
Microsoft .NET Framework 3.5
Microsoft Application Error Reporting
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Games for Windows - LIVE Redistributable
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office 2000 Premium
Microsoft Office Access MUI (Portuguese (Brazil)) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Portuguese (Brazil)) 2007
Microsoft Office Groove MUI (Portuguese (Brazil)) 2007
Microsoft Office InfoPath MUI (Portuguese (Brazil)) 2007
Microsoft Office OneNote MUI (Portuguese (Brazil)) 2007
Microsoft Office Outlook MUI (Portuguese (Brazil)) 2007
Microsoft Office PowerPoint MUI (Portuguese (Brazil)) 2007
Microsoft Office Professional Edição 2003
Microsoft Office Proof (English) 2007
Microsoft Office Proof (Portuguese (Brazil)) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (Portuguese (Brazil)) 2007
Microsoft Office Publisher MUI (Portuguese (Brazil)) 2007
Microsoft Office Shared MUI (Portuguese (Brazil)) 2007
Microsoft Office Word MUI (Portuguese (Brazil)) 2007
Microsoft Software Update for Web Folders (Portuguese (Brazil)) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft XML Parser
Microsoft XNA Framework Redistributable 3.0
Miranda IM 0.7.17
Mozilla Firefox (3.0.11)
MSVCRT
MSXML 4.0 SP2 (KB954430)
nCleaner second 2.3.4.0
Nero 8
neroxml
NextUp-ScanSoft Raquel Brazilian Portuguese Voice
NVIDIA Drivers
NVIDIA PhysX
Nvu 1.0
OpenAL
PC Health Optimizer Free Edition
PC Pitstop Driver Alert 1.0.0.13
Peggle Extreme
PicaView
Plain Sight
PodProducer Beta v0.28
Power Card Maker 5.20
Quest for Glory V: Dragon Fire
Quick Menu Builder 1.2
QuickTime
QuickTime 3.0
Real Alternative 1.9.0 Lite
Realtek High Definition Audio Driver
Receitanet Java 2009.01
Requiem
River Past Screen Recorder Pro
River Past Video Cleaner
Segoe UI
Sierra Utilities
SiSoftware Sandra Lite 2009
Skype™ 4.0
SopCast 3.0.3
Spelling Dictionaries Support For Adobe Reader 9
Spider-Man(R) - Web of Shadows(TM) 1.1 Patch
Star Wars Jedi Knight Jedi Academy
Star Wars JK II Jedi Outcast
Steam
SUPERAntiSpyware Free Edition
System Requirements Lab
Team Fortress 2
TeamSpeak 2 RC2
TextAloud
Tradutor 2.5 (Beta)
Unlocker 1.8.7
Vampire - The Masquerade Bloodlines
VC 9.0 Runtime
VCRedistSetup
VisuAlg 2.0.0.12 (20/09/06)
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Internet Explorer 7
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Messenger
Windows Live OneCare safety scanner
Windows Media Format 11 runtime
Windows Media Player 11
XML Paper Specification Shared Components Pack 1.0
XviD MPEG-4 Codec
==== End Of File ===========================
Mais uma coisa eu to jogando battlfield heroes e ele tem um programinha anti-cheat la que toda vez que vou jogar o avira apita no jogo e fala que esse programinha que ta sendo detectado como virus ai tenho que mandar ignorar, é possivel que seja ele que esteja fazendo apitar? Porque creio que ele só é ativo quando abro o jogo.
DDS (Ver_09-06-26.01) - NTFSx86
Run by Sky at 18:30:44,62 on seg 20/07/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_13
Microsoft Windows XP Professional 5.1.2600.3.1252.55.1046.18.2047.1112 [GMT -3:00]
AV: AntiVir Desktop *On-access scanning disabled* (Outdated) {AD166499-45F9-482A-A743-FDD3350758C7}
============== Running Processes ===============
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Arquivos de programas\Google\Google Desktop Search\GoogleDesktop.exe
C:\Arquivos de programas\Google\Google Talk\googletalk.exe
C:\Arquivos de programas\Microsoft Office\Office12\GrooveMonitor.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\Steam\Steam.exe
C:\Arquivos de programas\Microsoft Office\Office\1046\msoffice.exe
C:\Arquivos de programas\Microsoft Office\Office\OSA9.EXE
C:\Arquivos de programas\Mozilla Firefox\firefox.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Arquivos de programas\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\rundll32.exe
C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe
C:\Arquivos de programas\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\Sky\Meus documentos\CryptLoad_1.1.6\CryptLoad.exe
C:\Documents and Settings\Sky\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = about:blank
uInternet Settings,ProxyOverride = *.local
mWinlogon: SFCDisable=-99 (0xffffff9d)
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\arquivos de programas\arquivos comuns\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: BitComet Helper: {39f7e362-828a-4b5a-bcaf-5b79bfdfea60} - c:\arquivos de programas\bitcomet\tools\BitCometBHO_1.2.8.7.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\arquivos de programas\microsoft office\office12\GrooveShellExtensions.dll
BHO: Auxiliar de Conexão do Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\arquivos de programas\arquivos comuns\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: FDMIECookiesBHO Class: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - c:\arquivos de programas\free download manager\iefdm2.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\arquivos de programas\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\arquivos de programas\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: Kwyshell MidpX: {ebe9e2b5-b526-48bc-ad46-687263edcb0e} - c:\arquivos de programas\kwyshell\midpx\jadinvoker\MidpInvoker.dll
TB: Kwyshell MidpX: {ebe9e2b5-b526-48bc-ad46-687263edcb0e} - c:\arquivos de programas\kwyshell\midpx\jadinvoker\MidpInvoker.dll
TB: TextAloud: {f053c368-5458-45b2-9b4d-d8914bdddbff} - c:\arquiv~1\textal~1\TAForIE.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [AlcoholAutomount] "c:\arquivos de programas\alcohol soft\alcohol 120\axcmd.exe" /automount
uRun: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\arquivos de programas\arquivos comuns\nero\lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
uRun: [CoolSMS]
uRun: [Google Update] "c:\documents and settings\sky\configurações locais\dados de aplicativos\google\update\GoogleUpdate.exe" /c
uRun: [Steam] "c:\arquivos de programas\steam\Steam.exe" -silent
mRun: [Google Desktop Search] "c:\arquivos de programas\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [googletalk] c:\arquivos de programas\google\google talk\googletalk.exe /autostart
mRun: [GrooveMonitor] "c:\arquivos de programas\microsoft office\office12\GrooveMonitor.exe"
mRun: [NeroFilterCheck] c:\arquivos de programas\arquivos comuns\nero\lib\NeroCheck.exe
mRun: [NBKeyScan] "c:\arquivos de programas\nero\nero8\nero backitup\NBKeyScan.exe"
mRun: [Adobe Reader Speed Launcher] "c:\arquivos de programas\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [SunJavaUpdateSched] "c:\arquivos de programas\java\jre6\bin\jusched.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [avgnt] "c:\arquivos de programas\avira\antivir desktop\avgnt.exe" /min
mRun: [QuickTime Task] "c:\arquivos de programas\quicktime\qttask.exe" -atboottime
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\sky\menuin~1\progra~1\inicia~1\mozill~1.lnk - c:\arquivos de programas\mozilla firefox\firefox.exe
StartupFolder: c:\docume~1\alluse~1\menuin~1\progra~1\inicia~1\barrad~1.lnk - c:\windows\installer\{00000416-78e1-11d2-b60f-006097c998e7}\misc.exe
StartupFolder: c:\docume~1\alluse~1\menuin~1\progra~1\inicia~1\micros~1.lnk - c:\arquivos de programas\microsoft office\office\OSA9.EXE
dPolicies-system: DisableTaskMgr = 1 (0x1)
dPolicies-system: DisableRegistryTools = 1 (0x1)
IE: Baixar com o FDM - file://c:\arquivos de programas\free download manager\dllink.htm
IE: Baixar link usando &BitComet - c:\arquivos de programas\bitcomet\BitComet.exe/AddLink.htm
IE: Baixar todos os links usando BitComet - c:\arquivos de programas\bitcomet\BitComet.exe/AddAllLink.htm
IE: Baixar todos os vídeos usando BitComet - c:\arquivos de programas\bitcomet\BitComet.exe/AddVideo.htm
IE: Baixar tudo com o FDM - file://c:\arquivos de programas\free download manager\dlall.htm
IE: Download selecionado pelo FDM - file://c:\arquivos de programas\free download manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\arquivos de programas\free download manager\dlfvideo.htm
IE: E&xportar para o Microsoft Excel - c:\arquiv~1\micros~3\office12\EXCEL.EXE/3000
IE: Link to &MidpX - c:\arquivos de programas\kwyshell\midpx\jadinvoker\extent\jad_wrap.htm
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\arquivos de programas\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\sky\menu iniciar\programas\imvu\Run IMVU.lnk
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {E59EB121-F339-4851-A3BA-FE49C35617C2} - c:\arquivos de programas\icq6.5\ICQ.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\arquivos de programas\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\arquiv~1\micros~3\office11\REFIEBAR.DLL
DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://utilities.pcpitstop.com/da/PCPitStop.CAB
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.srtest.com/srl_bin/sysreqlab_srl.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1225330116359
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} - hxxp://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
DPF: {BF985246-09BF-11D2-BE62-006097DF57F6} - hxxp://simcity.ea.com/play/classic/SimCityX.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} - hxxp://icq.oberon-media.com/Gameshell/GameHost/1.0/OberonGameHost.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\arquivos de programas\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\arquiv~1\arquiv~1\skype\SKYPE4~1.DLL
Notify: !SASWinLogon - c:\arquivos de programas\superantispyware\SASWINLO.dll
AppInit_DLLs: c:\arquiv~1\google\google~1\GOEC62~1.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\arquivos de programas\microsoft office\office12\GrooveShellExtensions.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\arquivos de programas\superantispyware\SASSEH.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\sky\dadosd~1\mozilla\firefox\profiles\pleipi00.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - YouTube
FF - prefs.js: browser.startup.homepage - www.orkut.com
FF - component: c:\arquivos de programas\mozilla firefox\components\GoogleDesktopMozilla.dll
FF - plugin: c:\documents and settings\sky\configuraã§ãµes locais\dados de aplicativos\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\documents and settings\sky\dados de aplicativos\mozilla\firefox\profiles\pleipi00.default\extensions\battlefieldheroespatcher@ea.com\platform\winnt_x86-msvc\plugins\npBFHUpdater.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\arquivos de programas\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\arquivos de programas\mozilla firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".com.br");
============= SERVICES / DRIVERS ===============
R1 avgio;avgio;c:\arquivos de programas\avira\antivir desktop\avgio.sys [2009-5-16 11608]
R1 SASDIFSV;SASDIFSV;c:\arquivos de programas\superantispyware\sasdifsv.sys [2009-6-23 9968]
R1 SASKUTIL;SASKUTIL;c:\arquivos de programas\superantispyware\SASKUTIL.SYS [2009-6-23 72944]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\arquivos de programas\avira\antivir desktop\sched.exe [2009-5-16 108289]
R2 AntiVirService;Avira AntiVir Guard;c:\arquivos de programas\avira\antivir desktop\avguard.exe [2009-5-16 185089]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2009-5-16 55640]
S3 GoogleDesktopManager-092308-165331;Gerenciador do Google Desktop 5.8.809.23506;c:\arquivos de programas\google\google desktop search\GoogleDesktop.exe [2008-10-31 30192]
S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\arquivos de programas\sisoftware\sisoftware sandra lite 2009\RpcAgentSrv.exe [2009-2-3 98488]
S3 SASENUM;SASENUM;c:\arquivos de programas\superantispyware\SASENUM.SYS [2009-6-23 7408]
=============== Created Last 30 ================
2009-07-19 10:53 <DIR> --d----- c:\docume~1\sky\dadosd~1\Malwarebytes
2009-07-19 10:53 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-19 10:53 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-07-19 10:53 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\Malwarebytes
2009-07-19 10:53 <DIR> --d----- c:\arquivos de programas\Malwarebytes' Anti-Malware
2009-07-17 01:25 139,016 a------- c:\windows\system32\drivers\PnkBstrK.sys
2009-07-14 21:03 189,488 a------- c:\windows\system32\PnkBstrB.exe
2009-07-13 12:11 <DIR> --d----- c:\windows\system32\wbem\Repository
2009-07-13 12:11 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\SUPERAntiSpyware.com
2009-07-13 02:24 <DIR> --d----- c:\docume~1\sky\dadosd~1\SUPERAntiSpyware.com
2009-07-13 02:24 <DIR> --d----- c:\arquivos de programas\SUPERAntiSpyware
2009-07-03 13:15 <DIR> --d----- c:\docume~1\sky\dadosd~1\Activision
2009-07-03 13:15 <DIR> --d----- c:\docume~1\alluse~1\dadosd~1\Activision
2009-06-26 12:18 189,488 a------- c:\windows\system32\PnkBstrB.xtr
2009-06-26 06:13 139,152 a------- c:\docume~1\sky\dadosd~1\PnkBstrK.sys
2009-06-26 06:12 75,064 a------- c:\windows\system32\PnkBstrA.exe
2009-06-26 06:12 794,408 a------- c:\windows\system32\pbsvc.exe
2009-06-26 04:16 <DIR> --d----- c:\arquivos de programas\EA Games
2009-06-25 14:42 5,632 a------- c:\windows\system32\BReWErS.dll
2009-06-22 06:36 0 a------- c:\windows\graphedit.INI
==================== Find3M ====================
2009-06-19 01:04 106,496 a------- c:\windows\Cuninst.exe
2009-06-18 18:17 418,480 a------- c:\windows\system32\wrap_oal.dll
2009-06-18 18:17 115,432 a------- c:\windows\system32\OpenAL32.dll
2009-06-18 14:43 3,709 a------- c:\windows\system32\sdbackup.reg
2009-06-14 18:45 25,280 a------- c:\windows\system32\drivers\hamachi.sys
2009-05-10 02:47 737,280 a------- c:\windows\iun6002.exe
2009-05-01 00:31 1,657,376 a------- c:\windows\system32\nwiz.exe
2009-05-01 00:31 449,056 a------- c:\windows\system32\nvappbar.exe
2009-05-01 00:31 436,768 a------- c:\windows\system32\keystone.exe
2009-05-01 00:31 1,724,416 a------- c:\windows\system32\nvwdmcpl.dll
2009-05-01 00:31 1,507,328 a------- c:\windows\system32\nview.dll
2009-05-01 00:31 1,101,824 a------- c:\windows\system32\nvwimg.dll
2009-05-01 00:31 466,944 a------- c:\windows\system32\nvshell.dll
2009-04-30 22:02 9,994,240 a------- c:\windows\system32\nvoglnt.dll
2009-04-30 22:02 5,896,320 a------- c:\windows\system32\nv4_disp.dll
2009-04-30 22:02 1,720,320 a------- c:\windows\system32\nvcuda.dll
2009-04-30 22:02 1,579,630 a------- c:\windows\system32\nvdata.bin
2009-04-30 22:02 1,314,816 a------- c:\windows\system32\nvcuvenc.dll
2009-04-30 22:02 806,912 a------- c:\windows\system32\nvapi.dll
2009-04-30 22:02 663,552 a------- c:\windows\system32\nvcuvid.dll
2009-04-30 22:02 457,248 a------- c:\windows\system32\nvudisp.exe
2009-04-30 22:02 143,360 a------- c:\windows\system32\nvcodins.dll
2009-04-30 22:02 143,360 a------- c:\windows\system32\nvcod.dll
2009-04-27 00:42 457,248 a------- c:\windows\system32\NVUNINST.EXE
2009-02-03 11:48 87,608 a------- c:\docume~1\sky\dadosd~1\inst.exe
2009-02-03 11:48 47,360 a------- c:\docume~1\sky\dadosd~1\pcouffin.sys
============= FINISH: 18:31:11,31 ===============
E aqui está o outro
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-06-26.01)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 29/10/2008 22:06:12
System Uptime: 20/7/2009 15:31:43 (3 hours ago)
Motherboard: ASUSTeK Computer INC. | | P5WD2
Processor: Intel(R) Pentium(R) D CPU 3.40GHz | Socket 775 | 3412/200mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 112 GiB total, 0,337 GiB free.
D: is CDROM ()
E: is CDROM (CDFS)
F: is CDROM (CDFS)
G: is CDROM ()
H: is CDROM ()
I: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Controlador Ethernet
Device ID: PCI\VEN_13F0&DEV_0200&SUBSYS_020113F0&REV_31\4&CF81C54&0&00F0
Manufacturer:
Name: Controlador Ethernet
PNP Device ID: PCI\VEN_13F0&DEV_0200&SUBSYS_020113F0&REV_31\4&CF81C54&0&00F0
Service:
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Controlador de comunicação PCI simples
Device ID: PCI\VEN_E159&DEV_0001&SUBSYS_00038086&REV_00\4&CF81C54&0&08F0
Manufacturer:
Name: Controlador de comunicação PCI simples
PNP Device ID: PCI\VEN_E159&DEV_0001&SUBSYS_00038086&REV_00\4&CF81C54&0&08F0
Service:
==== System Restore Points ===================
RP311: 13/7/2009 02:24:22 - Installed SUPERAntiSpyware Free Edition
RP312: 13/7/2009 11:57:16 - Operação de restauração
RP313: 13/7/2009 12:11:03 - Operação de restauração
RP314: 14/7/2009 13:12:59 - Ponto de verificação do sistema
RP315: 15/7/2009 17:53:11 - Ponto de verificação do sistema
RP316: 16/7/2009 18:50:04 - Ponto de verificação do sistema
RP317: 18/7/2009 11:30:09 - Ponto de verificação do sistema
RP318: 19/7/2009 14:31:12 - Ponto de verificação do sistema
==== Installed Programs ======================
ABC 3GP/MP4 Converter 3.00
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Default Language CS3
Adobe ExtendScript Toolkit 2
Adobe Extension Manager CS3
Adobe Fireworks CS3
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Help Viewer CS3
Adobe PDF Library Files
Adobe Reader 9.1.2 - Português
Adobe Setup
Adobe Shockwave Player
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe XMP Panels CS3
ADPHONE3
Arquivo do WinRAR
Ask.com Search Assistant 1.0.1
Assistente de Conexão do Windows Live
Atualização de Segurança para o Windows Media Player (KB952069)
Atualização de Segurança para o Windows Media Player 11 (KB936782)
Atualização de Segurança para o Windows Media Player 11 (KB954154)
Atualização de Segurança para Windows Internet Explorer 7 (KB938127-v2)
Atualização de Segurança para Windows Internet Explorer 7 (KB956390)
Atualização de Segurança para Windows Internet Explorer 7 (KB958215)
Atualização de Segurança para Windows Internet Explorer 7 (KB960714)
Atualização de Segurança para Windows XP (KB938464)
Atualização de Segurança para Windows XP (KB941569)
Atualização de Segurança para Windows XP (KB946648)
Atualização de Segurança para Windows XP (KB950762)
Atualização de Segurança para Windows XP (KB950974)
Atualização de Segurança para Windows XP (KB951066)
Atualização de Segurança para Windows XP (KB951376-v2)
Atualização de Segurança para Windows XP (KB951698)
Atualização de Segurança para Windows XP (KB952954)
Atualização de Segurança para Windows XP (KB954211)
Atualização de Segurança para Windows XP (KB954459)
Atualização de Segurança para Windows XP (KB954600)
Atualização de Segurança para Windows XP (KB955069)
Atualização de Segurança para Windows XP (KB956391)
Atualização de Segurança para Windows XP (KB956802)
Atualização de Segurança para Windows XP (KB956803)
Atualização de Segurança para Windows XP (KB956841)
Atualização de Segurança para Windows XP (KB957095)
Atualização de Segurança para Windows XP (KB957097)
Atualização de Segurança para Windows XP (KB958644)
Atualização para Windows XP (KB898461)
Atualização para Windows XP (KB951072-v2)
Atualização para Windows XP (KB951978)
Atualização para Windows XP (KB955839)
aTube Catcher 1.0
Avira AntiVir Personal - Free Antivirus
Battlefield Heroes
Big Fish Games Client
BitComet 1.05
BS.Player
BS.Player PRO
Call of Duty(R) - World at War(TM)
CCleaner (remove only)
CDisplay 1.8
Choice Guard
Clean Virus MSN
CoolSMS 2.06 beta
Dead Space™
Descrambler
Dic Michaelis - UOL
Discador InteligWeb
Driver Detective
EasyCleaner
Fallout
Fallout 3
Fallout2
Ferramenta de Carregamento do Windows Live
Free Download Manager 2.5
GameHike
GameTap
Garena
Google Chrome
Google Desktop
Google Earth
Google Talk (remove only)
HijackThis 2.0.2
Hockey Elétrico
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix para o Windows Media Player 11 (KB939683)
Hotfix para Windows XP (KB942288-v3)
Hotfix para Windows XP (KB952287)
hp deskjet 3420 series
Huffyuv AVI lossless video codec (Remove Only)
ICQ6.5
ImgBurn
IMVU Avatar Chat Software
IncrediMail
IrfanView (remove only)
IRPF2009 - Declaração de Ajuste Anual e Final de Espólio
Java DB 10.4.1.3
Java(TM) 6 Update 13
Java(TM) 6 Update 3
Java(TM) 6 Update 7
Java(TM) SE Development Kit 6 Update 13
K-Lite Codec Pack 4.2.5 (Full)
Kwyshell MidpX Emulator Package 1.3.1
Malwarebytes' Anti-Malware
Mario Soccer Demo #7
Marvell Miniport Driver
Max Payne
Megacubo 6.0.3
Messenger Plus! Live
Microsoft .NET Framework 2.0 Service Pack 1
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PTB
Microsoft .NET Framework 3.0 Service Pack 1
Microsoft .NET Framework 3.5
Microsoft Application Error Reporting
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Games for Windows - LIVE Redistributable
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office 2000 Premium
Microsoft Office Access MUI (Portuguese (Brazil)) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (Portuguese (Brazil)) 2007
Microsoft Office Groove MUI (Portuguese (Brazil)) 2007
Microsoft Office InfoPath MUI (Portuguese (Brazil)) 2007
Microsoft Office OneNote MUI (Portuguese (Brazil)) 2007
Microsoft Office Outlook MUI (Portuguese (Brazil)) 2007
Microsoft Office PowerPoint MUI (Portuguese (Brazil)) 2007
Microsoft Office Professional Edição 2003
Microsoft Office Proof (English) 2007
Microsoft Office Proof (Portuguese (Brazil)) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (Portuguese (Brazil)) 2007
Microsoft Office Publisher MUI (Portuguese (Brazil)) 2007
Microsoft Office Shared MUI (Portuguese (Brazil)) 2007
Microsoft Office Word MUI (Portuguese (Brazil)) 2007
Microsoft Software Update for Web Folders (Portuguese (Brazil)) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft XML Parser
Microsoft XNA Framework Redistributable 3.0
Miranda IM 0.7.17
Mozilla Firefox (3.0.11)
MSVCRT
MSXML 4.0 SP2 (KB954430)
nCleaner second 2.3.4.0
Nero 8
neroxml
NextUp-ScanSoft Raquel Brazilian Portuguese Voice
NVIDIA Drivers
NVIDIA PhysX
Nvu 1.0
OpenAL
PC Health Optimizer Free Edition
PC Pitstop Driver Alert 1.0.0.13
Peggle Extreme
PicaView
Plain Sight
PodProducer Beta v0.28
Power Card Maker 5.20
Quest for Glory V: Dragon Fire
Quick Menu Builder 1.2
QuickTime
QuickTime 3.0
Real Alternative 1.9.0 Lite
Realtek High Definition Audio Driver
Receitanet Java 2009.01
Requiem
River Past Screen Recorder Pro
River Past Video Cleaner
Segoe UI
Sierra Utilities
SiSoftware Sandra Lite 2009
Skype™ 4.0
SopCast 3.0.3
Spelling Dictionaries Support For Adobe Reader 9
Spider-Man(R) - Web of Shadows(TM) 1.1 Patch
Star Wars Jedi Knight Jedi Academy
Star Wars JK II Jedi Outcast
Steam
SUPERAntiSpyware Free Edition
System Requirements Lab
Team Fortress 2
TeamSpeak 2 RC2
TextAloud
Tradutor 2.5 (Beta)
Unlocker 1.8.7
Vampire - The Masquerade Bloodlines
VC 9.0 Runtime
VCRedistSetup
VisuAlg 2.0.0.12 (20/09/06)
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Internet Explorer 7
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Messenger
Windows Live OneCare safety scanner
Windows Media Format 11 runtime
Windows Media Player 11
XML Paper Specification Shared Components Pack 1.0
XviD MPEG-4 Codec
==== End Of File ===========================
Mais uma coisa eu to jogando battlfield heroes e ele tem um programinha anti-cheat la que toda vez que vou jogar o avira apita no jogo e fala que esse programinha que ta sendo detectado como virus ai tenho que mandar ignorar, é possivel que seja ele que esteja fazendo apitar? Porque creio que ele só é ativo quando abro o jogo.