Logfile of random's system information tool 1.06 (written by random/random)
Run by CidinhaAlencar at 2010-04-26 18:25:54
Microsoft Windows XP Professional Service Pack 3
System drive C: has 26 GB (73%) free of 35 GB
Total RAM: 1247 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:25:57, on 26/4/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\ARQUIV~1\GbPlugin\GbpSv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe
C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\CCProxy\CCProxy.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Arquivos de programas\Internet Explorer\iexplore.exe
C:\Arquivos de programas\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\NOTEPAD.EXE
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Arquivos de programas\Internet Explorer\iexplore.exe
C:\Documents and Settings\CidinhaAlencar\Desktop\RSIT.exe
C:\Arquivos de programas\Trend Micro\HijackThis\CidinhaAlencar.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &
http://home.microsoft.com/intl/br/access/allinone.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.terra.com.br/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = ftp=192.168.0.123:2121;http=192.168.0.123:3128;https=192.168.0.123:3128;socks=192.168.0.123:1080
F2 - REG:system.ini: Shell=
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\Arquivos de programas\GbPlugin\gbieh.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [avgnt] "C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [CCProxy] C:\CCProxy\CCProxy.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&
http://home.microsoft.com/intl/br/access/allinone.asp
O15 - Trusted Zone:
www.bancobrasil.com.br
O15 - Trusted Zone:
www.bb.com.br
O15 - Trusted Zone: www14.bancobrasil.com.br
O15 - Trusted Zone: www2.bancobrasil.com.br
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1271467976062
O17 - HKLM\System\CCS\Services\Tcpip\..\{EE6EC8FF-9965-478E-9614-240478F2525A}: NameServer = 200.225.197.34,200.225.197.37
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\ARQUIV~1\ARQUIV~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: GbPluginBb - C:\Arquivos de programas\GbPlugin\gbieh.dll
O23 - Service: Avira AntiVir Programador (AntiVirSchedulerService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Gbp Service (GbpSv) - - C:\ARQUIV~1\GbPlugin\GbpSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Arquivos de programas\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
--
End of file - 6333 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\AWC AutoSweep.job
C:\WINDOWS\tasks\FRU Task #Hewlett-Packard#hp psc 1200 series#1264430792.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{AF33A137-14A7-4547-B35B-6AED88FF33DF}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-03-16 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Auxiliar de Conexão do Windows Live - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C41A1C0E-EA6C-11D4-B1B8-444553540000}]
GbIehObj Class - C:\Arquivos de programas\GbPlugin\gbieh.dll [2010-02-18 323360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll [2010-04-24 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-04-24 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SiSUSBRG"=C:\WINDOWS\SiSUSBrg.exe [2002-07-12 106496]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-07-27 68096]
"avgnt"=C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]
"SunJavaUpdateSched"=C:\Arquivos de programas\Arquivos comuns\Java\Java Update\jusched.exe [2010-02-18 248040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"CCProxy"=C:\CCProxy\CCProxy.exe [2009-10-30 1044480]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ GbPluginBb]
C:\Arquivos de programas\GbPlugin\gbieh.dll [2010-02-18 323360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{E37CB5F0-51F5-4395-A808-5FA49E399F83}"=C:\Arquivos de programas\GbPlugin\gbieh.dll [2010-02-18 323360]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveSearch"=
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp2res.dll,-22019"
"C:\Arquivos de programas\InterVideo\DVD7\WinDVD.exe"="C:\Arquivos de programas\InterVideo\DVD7\WinDVD.exe:*:Enabled:WinDVD"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp3res.dll,-20000"
"C:\Arquivos de programas\Messenger\msmsgs.exe"="C:\Arquivos de programas\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Arquivos de programas\Windows Live\Messenger\wlcsdk.exe"="C:\Arquivos de programas\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe"="C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Arquivos de programas\Skype\Phone\Skype.exe"="C:\Arquivos de programas\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\CCProxy\CCProxy.exe"="C:\CCProxy\CCProxy.exe:*:Enabled:CCProxy"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp3res.dll,-20000"
"C:\Arquivos de programas\Windows Live\Messenger\wlcsdk.exe"="C:\Arquivos de programas\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe"="C:\Arquivos de programas\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
======List of files/folders created in the last 1 months======
2010-04-26 18:25:54 ----D---- C:\rsit
2010-04-24 15:02:18 ----D---- C:\WINDOWS\Prefetch
2010-04-24 13:46:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-04-24 13:46:20 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-04-24 13:46:12 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-04-24 13:46:05 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-04-24 13:45:56 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-04-24 13:45:49 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-04-24 13:45:40 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-04-24 13:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-04-24 13:45:22 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-04-24 13:45:14 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-04-24 13:45:07 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-04-24 13:44:59 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-04-24 13:44:52 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-04-24 13:44:42 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-04-24 13:44:35 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-04-24 13:44:27 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-04-24 13:43:40 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-04-24 13:43:29 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-04-24 13:43:22 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-04-24 13:43:14 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-04-24 13:43:07 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-04-24 13:43:00 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-04-24 13:42:51 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-04-24 13:42:43 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-04-24 13:41:46 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-04-24 13:41:35 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-04-24 13:41:28 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-04-24 13:41:19 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-04-24 13:41:09 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-04-24 13:40:58 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-04-24 13:40:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2010-04-24 13:40:43 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-04-24 13:40:36 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-04-24 13:40:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-04-24 13:40:21 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-04-24 13:40:13 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-04-24 13:40:05 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-04-24 13:39:57 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-04-24 13:39:50 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-04-24 13:39:42 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-04-24 13:39:28 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-04-24 13:39:16 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-04-24 13:39:08 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-04-24 13:39:01 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-04-24 13:38:53 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-04-24 13:38:46 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-04-24 13:38:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-04-24 13:38:26 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-04-24 13:38:19 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-04-24 13:38:12 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-04-24 13:38:03 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-04-24 13:37:56 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-04-24 13:37:48 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-04-24 13:37:38 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-04-24 13:27:12 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-04-24 12:53:27 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-04-24 12:53:20 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-04-24 12:53:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-04-24 12:53:02 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-04-24 12:52:52 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-04-24 12:52:37 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-04-24 12:52:30 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-04-24 12:52:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971468_0$
2010-04-24 12:52:03 ----HDC---- C:\WINDOWS\$NtUninstallKB979683_0$
2010-04-24 12:51:55 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-04-24 12:51:46 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-04-24 12:51:32 ----HDC---- C:\WINDOWS\$NtUninstallKB980232_0$
2010-04-24 12:51:23 ----HDC---- C:\WINDOWS\$NtUninstallKB955759_0$
2010-04-24 12:51:14 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-04-24 12:51:03 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-04-24 12:50:55 ----HDC---- C:\WINDOWS\$NtUninstallKB981349$
2010-04-24 12:50:45 ----HDC---- C:\WINDOWS\$NtUninstallKB961503_0$
2010-04-24 12:50:05 ----D---- C:\WINDOWS\ie8updates
2010-04-24 12:48:57 ----HDC---- C:\WINDOWS\ie8
2010-04-24 12:43:33 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-04-24 12:43:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978037_0$
2010-04-24 12:43:18 ----HDC---- C:\WINDOWS\$NtUninstallKB975713_0$
2010-04-24 12:42:57 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-04-24 12:42:49 ----HDC---- C:\WINDOWS\$NtUninstallKB978338_0$
2010-04-24 12:42:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-04-24 12:42:33 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-04-24 12:42:27 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-04-24 12:42:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
2010-04-24 12:41:55 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-04-24 12:41:48 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-04-24 12:41:44 ----D---- C:\Arquivos de programas\MSXML 6.0
2010-04-24 12:41:34 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-04-24 12:41:28 ----HDC---- C:\WINDOWS\$NtUninstallKB975561_0$
2010-04-24 12:41:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-04-24 12:41:11 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-04-24 12:41:04 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-04-24 12:40:54 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-04-24 12:40:42 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-04-24 12:40:35 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-04-24 12:40:26 ----HDC---- C:\WINDOWS\$NtUninstallKB975560_0$
2010-04-24 12:40:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-04-24 12:40:04 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-04-24 12:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-04-24 12:39:25 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-04-24 12:39:15 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-04-24 12:33:01 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2010-04-24 12:32:34 ----HDC---- C:\WINDOWS\$NtUninstallKB978601_0$
2010-04-24 12:32:27 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2010-04-24 12:32:19 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-04-24 12:32:10 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-04-24 12:31:53 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-04-24 12:31:45 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-04-24 12:31:23 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-04-24 12:31:16 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-04-24 12:30:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2010-04-24 12:30:40 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-04-24 12:30:33 ----HDC---- C:\WINDOWS\$NtUninstallKB977914_0$
2010-04-24 12:30:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-04-24 12:30:03 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-04-24 12:29:55 ----HDC---- C:\WINDOWS\$NtUninstallKB979309_0$
2010-04-24 12:29:48 ----HDC---- C:\WINDOWS\$NtUninstallKB978706_0$
2010-04-24 12:29:33 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-04-24 12:29:24 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-04-24 12:29:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-04-24 12:29:05 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-04-24 12:28:56 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-04-24 12:28:48 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-04-24 12:28:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-04-24 12:27:58 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-04-24 12:27:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-04-24 12:27:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-04-24 12:27:38 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-04-24 12:27:14 ----D---- C:\WINDOWS\ie7updates
2010-04-24 12:27:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-04-24 12:26:50 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-04-24 12:26:36 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-04-24 11:29:30 ----D---- C:\CCProxy
2010-04-24 11:28:36 ----D---- C:\Arquivos de programas\Arquivos comuns\Java
2010-04-24 11:28:09 ----A---- C:\WINDOWS\system32\javaws.exe
2010-04-24 11:28:09 ----A---- C:\WINDOWS\system32\javaw.exe
2010-04-24 11:28:09 ----A---- C:\WINDOWS\system32\java.exe
2010-04-24 11:28:09 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-04-24 10:57:50 ----D---- C:\Arquivos de programas\Messenger Plus! Live
2010-04-16 23:06:21 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-04-16 22:35:10 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\Avira
2010-04-16 22:35:10 ----D---- C:\Arquivos de programas\Avira
2010-04-16 22:24:29 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2010-04-16 22:24:00 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-04-16 22:23:56 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-04-16 22:23:23 ----D---- C:\Arquivos de programas\Windows Media Connect 2
2010-04-16 22:23:14 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-04-16 22:22:01 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-04-16 22:21:29 ----D---- C:\WINDOWS\system32\LogFiles
2010-04-16 22:21:23 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-04-16 22:20:45 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\Windows Genuine Advantage
2010-04-16 21:29:50 ----D---- C:\Arquivos de programas\Trend Micro
2010-04-16 21:12:55 ----A---- C:\WINDOWS\system32\wmpns.dll
2010-04-16 21:11:48 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-04-16 21:00:52 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-04-16 21:00:52 ----A---- C:\WINDOWS\system32\irclass.dll
2010-04-16 21:00:34 ----RA---- C:\WINDOWS\SET41.tmp
2010-04-16 21:00:31 ----RA---- C:\WINDOWS\SET34.tmp
2010-04-16 21:00:29 ----RA---- C:\WINDOWS\SET31.tmp
2010-04-16 20:37:08 ----A---- C:\WINDOWS\system32\MRT.exe
2010-04-16 20:26:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-04-16 19:25:10 ----SHD---- C:\WINDOWS\CSC
======List of files/folders modified in the last 1 months======
2010-04-26 18:18:30 ----AD---- C:\WINDOWS
2010-04-26 18:18:19 ----HD---- C:\WINDOWS\inf
2010-04-26 18:18:06 ----D---- C:\WINDOWS\Temp
2010-04-26 18:18:03 ----D---- C:\WINDOWS\system32\CatRoot2
2010-04-26 18:17:08 ----AD---- C:\WINDOWS\system32\drivers
2010-04-24 16:23:32 ----D---- C:\Arquivos de programas\CCleaner
2010-04-24 16:19:31 ----D---- C:\WINDOWS\Debug
2010-04-24 15:04:46 ----AD---- C:\WINDOWS\system32
2010-04-24 15:04:46 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-04-24 15:01:51 ----RSD---- C:\WINDOWS\Fonts
2010-04-24 15:01:51 ----D---- C:\WINDOWS\system32\wbem
2010-04-24 15:01:51 ----D---- C:\WINDOWS\system32\Setup
2010-04-24 15:01:51 ----D---- C:\WINDOWS\AppPatch
2010-04-24 13:47:06 ----D---- C:\WINDOWS\system32\CatRoot
2010-04-24 13:46:37 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-04-24 13:45:16 ----D---- C:\Arquivos de programas\Movie Maker
2010-04-24 13:43:22 ----D---- C:\WINDOWS\security
2010-04-24 13:43:01 ----D---- C:\Arquivos de programas\Outlook Express
2010-04-24 13:37:49 ----D---- C:\Arquivos de programas\Messenger
2010-04-24 13:34:40 ----D---- C:\WINDOWS\system32\inetsrv
2010-04-24 13:34:39 ----D---- C:\WINDOWS\ime
2010-04-24 13:34:39 ----D---- C:\WINDOWS\Help
2010-04-24 13:34:31 ----D---- C:\WINDOWS\PeerNet
2010-04-24 13:31:53 ----D---- C:\WINDOWS\system32\Restore
2010-04-24 13:31:52 ----D---- C:\WINDOWS\system32\npp
2010-04-24 13:31:52 ----D---- C:\WINDOWS\msagent
2010-04-24 13:31:51 ----D---- C:\WINDOWS\srchasst
2010-04-24 13:31:50 ----D---- C:\Arquivos de programas\NetMeeting
2010-04-24 13:31:49 ----D---- C:\WINDOWS\system32\Com
2010-04-24 13:31:48 ----D---- C:\Arquivos de programas\Windows Media Player
2010-04-24 13:31:47 ----D---- C:\Arquivos de programas\Windows NT
2010-04-24 13:31:45 ----D---- C:\Arquivos de programas\Arquivos comuns\System
2010-04-24 13:31:31 ----D---- C:\WINDOWS\system32\oobe
2010-04-24 13:31:30 ----D---- C:\WINDOWS\system32\usmt
2010-04-24 13:31:29 ----D---- C:\WINDOWS\system
2010-04-24 13:29:05 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-04-24 13:27:12 ----D---- C:\WINDOWS\ehome
2010-04-24 13:18:46 ----SD---- C:\WINDOWS\Tasks
2010-04-24 13:15:20 ----D---- C:\WINDOWS\system32\pt-br
2010-04-24 13:15:20 ----D---- C:\WINDOWS\Media
2010-04-24 13:15:20 ----D---- C:\Arquivos de programas\Internet Explorer
2010-04-24 12:53:26 ----HD---- C:\WINDOWS\$hf_mig$
2010-04-24 12:51:55 ----D---- C:\WINDOWS\WinSxS
2010-04-24 12:51:45 ----SHD---- C:\WINDOWS\Installer
2010-04-24 12:41:44 ----RD---- C:\Arquivos de programas
2010-04-24 11:28:36 ----D---- C:\Arquivos de programas\Arquivos comuns
2010-04-24 11:02:21 ----D---- C:\Arquivos de programas\WinRAR
2010-04-16 22:46:20 ----D---- C:\WINDOWS\SoftwareDistribution
2010-04-16 22:33:19 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-04-16 22:29:33 ----HDC---- C:\WINDOWS\ie7
2010-04-16 22:28:21 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2010-04-16 22:24:08 ----D---- C:\Documents and Settings\CidinhaAlencar\Dados de aplicativos\Skype
2010-04-16 22:24:03 ----D---- C:\Documents and Settings\CidinhaAlencar\Dados de aplicativos\skypePM
2010-04-16 22:23:34 ----A---- C:\WINDOWS\win.ini
2010-04-16 22:19:06 ----D---- C:\Arquivos de programas\Arquivos comuns\Microsoft Shared
2010-04-16 22:00:29 ----HD---- C:\WINDOWS\system32\System32
2010-04-16 21:21:46 ----D---- C:\WINDOWS\Registration
2010-04-16 21:20:21 ----SHD---- C:\System Volume Information
2010-04-16 21:18:26 ----D---- C:\WINDOWS\system32\config
2010-04-16 21:12:39 ----A---- C:\WINDOWS\ODBCINST.INI
2010-04-16 21:12:18 ----D---- C:\WINDOWS\system32\ias
2010-04-16 21:11:51 ----RD---- C:\WINDOWS\Web
2010-04-16 21:11:41 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-04-16 21:07:55 ----SH---- C:\boot.ini
2010-04-16 21:01:00 ----A---- C:\WINDOWS\system.ini
2010-04-16 21:00:40 ----ASH---- C:\Documents and Settings\All Users\Dados de aplicativos\desktop.ini
2010-04-16 19:25:27 ----D---- C:\Documents and Settings
2010-04-16 17:57:19 ----D---- C:\WINDOWS\system32\1046
2010-04-16 17:54:16 ----D---- C:\WINDOWS\twain_32
2010-04-16 17:54:02 ----D---- C:\WINDOWS\system32\icsxml
2010-04-16 17:53:30 ----D---- C:\WINDOWS\system32\1033
2010-04-16 17:52:18 ----D---- C:\WINDOWS\Driver Cache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 AFS2K;AFS2k; C:\WINDOWS\system32\drivers\AFS2K.sys [2010-01-25 82380]
R1 avgio;avgio; \??\C:\Arquivos de programas\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-03-30 96104]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2008-07-21 24392]
R1 intelppm;Driver de Processador Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 40448]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14720]
R1 SiSkp;SiSkp; C:\WINDOWS\system32\DRIVERS\srvkp.sys [2004-08-05 12416]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-05-11 28520]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-11-25 56816]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-08-02 635281]
R3 AnyDVD;AnyDVD; C:\WINDOWS\System32\Drivers\AnyDVD.sys [2008-11-12 103360]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-15 34760]
R3 hidusb;Driver de classe HID da Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-28 12288]
R3 NuidFltr;NUID filter driver; C:\WINDOWS\system32\DRIVERS\NuidFltr.sys [2009-05-09 14736]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2010-01-25 47360]
R3 rtl8139;Realtek RTL8139/810x Family Fast Ethernet NIC NT Driver; C:\WINDOWS\system32\DRIVERS\R8139n51.SYS [2003-07-31 46976]
R3 SiS315;SiS315; C:\WINDOWS\system32\DRIVERS\sisgrp.sys [2004-08-05 220672]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2003-03-09 51024]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2003-03-09 16080]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2003-03-09 21456]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirSchedulerService;Avira AntiVir Programador; C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe [2009-05-13 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe [2009-07-21 185089]
R2 GbpSv;Gbp Service; C:\ARQUIV~1\GbPlugin\GbpSv.exe [2010-02-18 54048]
R2 JavaQuickStarterService;Java Quick Starter; C:\Arquivos de programas\Java\jre6\bin\jqs.exe [2010-04-24 153376]
S3 NBService;NBService; C:\Arquivos de programas\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 NMIndexingService;NMIndexingService; C:\Arquivos de programas\Arquivos comuns\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 ose;Office Source Engine; C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2003-03-09 65795]
S3 WMPNetworkSvc;Serviço de Compartilhamento de Rede do Windows Media Player; C:\Arquivos de programas\Windows Media Player\WMPNetwk.exe [2006-11-02 914944]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
-----------------EOF-----------------