fiz o que tu pediu mr wolf
e nao sei, baxei ums programas estranhos... creio que poderiam ter virus :SS
Logfile of random's system information tool 1.05 (written by random/random)
Run by cliente at 2008-12-25 16:28:51
Microsoft Windows XP Professional Service Pack 3
System drive C: has 11 GB (26%) free of 41 GB
Total RAM: 1535 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:29:06, on 25/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe
C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe
C:\Arquivos de programas\Analog Devices\SoundMAX\SMax4PNP.exe
C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\Arquivos de programas\Analog Devices\SoundMAX\smax4.exe
C:\Arquivos de programas\MSN Messenger\msnmsgr.exe
C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Arquivos de programas\DAEMON Tools Lite\daemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\Orbitdownloader\orbitdm.exe
C:\Arquivos de programas\Orbitdownloader\orbitnet.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Arquivos de programas\CyberLink\Shared files\RichVideo.exe
C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\Alwil Software\Avast4\ashMaiSv.exe
C:\Arquivos de programas\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\Arquivos de programas\MSN Messenger\usnsvc.exe
C:\Arquivos de programas\Mozilla Firefox\firefox.exe
C:\Arquivos de programas\Windows Media Player\wmplayer.exe
C:\Documents and Settings\cliente\Desktop\RSIT.exe
C:\Documents and Settings\cliente\Desktop\cliente.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.com
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Octh Class - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Arquivos de programas\Orbitdownloader\orbitcth.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\arquivos de programas\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\arquivos de programas\google\googletoolbar1.dll
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Arquivos de programas\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Arquivos de programas\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [avast!] C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [SoundMax] "C:\Arquivos de programas\Analog Devices\SoundMAX\smax4.exe" /tray
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Arquivos de programas\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Orbit.lnk = C:\Arquivos de programas\Orbitdownloader\orbitdm.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Arquivos de programas\Orbitdownloader\orbitmxt.dll/202
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&
http://home.microsoft.com/intl/br/access/allinone.asp
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) -
http://www.srtest.com/srl_bin/sysreqlab_srl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://gfx2.hotmail.com/mail/w3/pr01/resources/MSNPUpld.cab
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) -
http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) -
http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{7296DB95-F4EE-4D38-8465-5D3DCF50D247}: NameServer = 200.204.0.10 200.204.0.138
O20 - AppInit_DLLs:
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Arquivos de programas\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Arquivos de programas\CyberLink\Shared files\RichVideo.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 8714 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000123B4-9B42-4900-B3F7-F4B073EFC214}]
Octh Class - C:\Arquivos de programas\Orbitdownloader\orbitcth.dll [2008-06-10 187512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
Yahoo! Toolbar Helper - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Facilitador de Leitor de Link Adobe PDF - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Arquivos de programas\Java\jre6\bin\ssv.dll [2008-12-21 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\arquivos de programas\google\googletoolbar1.dll [2008-11-17 2403392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Arquivos de programas\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll [2008-11-25 737776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll [2008-12-21 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2008-12-21 73728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll [2006-10-26 440384]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\arquivos de programas\google\googletoolbar1.dll [2008-11-17 2403392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"LanguageShortcut"=C:\Arquivos de programas\CyberLink\PowerDVD\Language\Language.exe [2006-05-18 49152]
"SoundMAXPnP"=C:\Arquivos de programas\Analog Devices\SoundMAX\SMax4PNP.exe [2004-10-14 1388544]
"avast!"=C:\ARQUIV~1\ALWILS~1\Avast4\ashDisp.exe [2008-11-26 81000]
"SunJavaUpdateSched"=C:\Arquivos de programas\Java\jre6\bin\jusched.exe [2008-12-21 136600]
"SoundMax"=C:\Arquivos de programas\Analog Devices\SoundMAX\smax4.exe [2004-08-06 860160]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-05-02 13529088]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"=C:\Arquivos de programas\MSN Messenger\msnmsgr.exe [2007-01-19 5674352]
"swg"=C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-11-25 68856]
"DAEMON Tools Lite"=C:\Arquivos de programas\DAEMON Tools Lite\daemon.exe [2008-07-04 486856]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Arquivos de programas\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Arquivos de programas\DAEMON Tools Lite\daemon.exe [2008-07-04 486856]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Discador iG]
C:\Arquivos de programas\iGv6\Discador iG.exe [2005-07-25 1329152]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
C:\Arquivos de programas\Yahoo!\Messenger\YahooMessenger.exe [2008-09-19 4347120]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft App]
C:\WINDOWS\SYSTEM\spoolsv.exe [2008-12-16 40960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2008-05-02 13529088]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2008-05-02 86016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Arquivos de programas\CyberLink\PowerDVD\PDVDServ.exe [2005-12-07 30208]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\rpwin32]
C:/WINDOWS/system32/rpwin32.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\w3dr.exe]
C:\Arquivos de programas\Warcraft III\w3dr.exe [2008-08-03 61440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Iniciar^Programas^Inicializar^Orbit.lnk]
C:\ARQUIV~1\ORBITD~1\orbitdm.exe [2008-06-10 1690824]
C:\Documents and Settings\All Users\Menu Iniciar\Programas\Inicializar
Orbit.lnk - C:\Arquivos de programas\Orbitdownloader\orbitdm.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-09-05 267304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp2res.dll,-22019"
"C:\Arquivos de programas\Yahoo!\Messenger\YahooMessenger.exe"="C:\Arquivos de programas\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Arquivos de programas\FrostWire\FrostWire.exe"="C:\Arquivos de programas\FrostWire\FrostWire.exe:*:Enabled:FrostWire"
"C:\Documents and Settings\All Users\Dados de aplicativos\NexonUS\NGM\NGM.exe"="C:\Documents and Settings\All Users\Dados de aplicativos\NexonUS\NGM\NGM.exe:*:Enabled:Nexon Game Manager"
"C:\Nexon\Combat Arms\CombatArms.exe"="C:\Nexon\Combat Arms\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms\Engine.exe"="C:\Nexon\Combat Arms\Engine.exe:*Enabled:Engine.exe"
"C:\Nexon\Combat Arms\NMService.exe"="C:\Nexon\Combat Arms\NMService.exe:*:Enabled:Nexon Messenger Core"
"C:\Arquivos de programas\Ventrilo\Ventrilo.exe"="C:\Arquivos de programas\Ventrilo\Ventrilo.exe:*:Enabled:Ventrilo.exe"
"C:\Arquivos de programas\Orbitdownloader\orbitnet.exe"="C:\Arquivos de programas\Orbitdownloader\orbitnet.exe:*:Enabled
![Stick Out Tongue :p :p](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
2P service of Orbit Downloader"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp3res.dll,-20000"
"C:\Arquivos de programas\MSN Messenger\msnmsgr.exe"="C:\Arquivos de programas\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Arquivos de programas\MSN Messenger\livecall.exe"="C:\Arquivos de programas\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp2res.dll,-22019"
"C:\Nexon\Combat Arms\CombatArms.exe"="C:\Nexon\Combat Arms\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms\Engine.exe"="C:\Nexon\Combat Arms\Engine.exe:*Enabled:Engine.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled
![Mad :mad: :mad:](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
xpsp3res.dll,-20000"
"C:\Arquivos de programas\MSN Messenger\msnmsgr.exe"="C:\Arquivos de programas\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Arquivos de programas\MSN Messenger\livecall.exe"="C:\Arquivos de programas\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
======List of files/folders created in the last 2 months======
2008-12-25 16:28:51 ----D---- C:\rsit
2008-12-25 02:07:32 ----A---- C:\WINDOWS\system32\windll.exe
2008-12-25 02:07:32 ----A---- C:\WINDOWS\system32\rpwin32.exe
2008-12-23 22:27:41 ----D---- C:\Arquivos de programas\TibiaBot NG
2008-12-23 22:06:00 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\Tibia
2008-12-23 22:05:23 ----D---- C:\Arquivos de programas\Tibia 8.4
2008-12-21 20:42:17 ----D---- C:\GamersFirst
2008-12-21 13:13:09 ----A---- C:\WINDOWS\system32\deploytk.dll
2008-12-21 13:13:08 ----A---- C:\WINDOWS\system32\javaws.exe
2008-12-21 13:13:08 ----A---- C:\WINDOWS\system32\javaw.exe
2008-12-21 13:13:08 ----A---- C:\WINDOWS\system32\java.exe
2008-12-19 16:02:46 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-12-19 16:02:00 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
2008-12-19 12:11:13 ----D---- C:\Arquivos de programas\Mozilla Firefox
2008-12-19 11:57:34 ----D---- C:\Arquivos de programas\Esquadrimetal
2008-12-18 22:40:31 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\Mozilla
2008-12-18 20:57:49 ----A---- C:\WINDOWS\OEWABLog.txt
2008-12-18 20:57:18 ----D---- C:\WINDOWS\Prefetch
2008-12-18 20:52:27 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-12-18 20:52:05 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-12-18 20:51:43 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-12-18 20:51:18 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-12-18 20:50:56 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-12-18 20:50:31 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2008-12-18 20:50:06 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-12-18 20:49:44 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2008-12-18 20:49:22 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-12-18 20:49:00 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-12-18 20:48:37 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-12-18 20:48:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-12-18 20:47:51 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-12-18 20:47:28 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-12-18 20:47:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-12-18 20:46:42 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-12-18 20:46:20 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-12-18 20:45:54 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-12-18 20:44:44 ----A---- C:\WINDOWS\setuplog.txt
2008-12-18 20:44:08 ----D---- C:\WINDOWS\system32\bits
2008-12-18 20:44:08 ----D---- C:\WINDOWS\l2schemas
2008-12-18 20:42:22 ----D---- C:\WINDOWS\ServicePackFiles
2008-12-18 20:40:20 ----D---- C:\WINDOWS\network diagnostic
2008-12-18 20:36:53 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-12-18 20:27:13 ----A---- C:\WINDOWS\system32\MRT.exe
2008-12-18 20:26:02 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2008-12-17 15:16:32 ----D---- C:\Arquivos de programas\Hero Editor
2008-12-17 15:16:24 ----N---- C:\WINDOWS\Setup1.exe
2008-12-17 15:16:21 ----A---- C:\WINDOWS\ST6UNST.EXE
2008-12-17 15:05:33 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2008-12-17 15:05:09 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2008-12-17 15:05:04 ----HDC---- C:\WINDOWS\$NtUninstallKB951698_0$
2008-12-17 15:04:59 ----HDC---- C:\WINDOWS\$NtUninstallKB954211_0$
2008-12-17 15:04:51 ----D---- C:\WINDOWS\ie7updates
2008-12-17 15:04:43 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2008-12-17 14:17:34 ----SHD---- C:\RECYCLER
2008-12-17 14:13:30 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2008-12-17 14:13:26 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2008-12-17 14:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2008-12-17 14:13:15 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
2008-12-17 02:52:53 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2008-12-17 02:52:43 ----HDC---- C:\WINDOWS\$NtUninstallKB957095_0$
2008-12-17 02:20:25 ----HDC---- C:\WINDOWS\$NtUninstallKB956841_0$
2008-12-17 02:20:21 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-12-17 02:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2008-12-17 02:20:08 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
2008-12-17 02:20:03 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2008-12-17 02:18:07 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2008-12-17 02:15:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2008-12-17 02:12:29 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2008-12-17 02:10:37 ----HDC---- C:\WINDOWS\$NtUninstallKB954600_0$
2008-12-17 02:10:32 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2008-12-17 02:10:27 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2008-12-17 02:10:23 ----D---- C:\Arquivos de programas\MSXML 4.0
2008-12-17 02:10:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2008-12-17 02:08:18 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2008-12-17 01:50:27 ----D---- C:\WINDOWS\system32\PreInstall
2008-12-17 01:50:25 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-12-16 21:28:42 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2008-12-16 21:28:37 ----A---- C:\WINDOWS\imsins.BAK
2008-12-16 21:28:35 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-12-16 21:28:34 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2008-12-16 21:28:30 ----A---- C:\WINDOWS\system32\wmpns.dll
2008-12-16 21:28:26 ----D---- C:\Arquivos de programas\Windows Media Connect 2
2008-12-16 20:57:12 ----A---- C:\Boot.bak
2008-12-16 20:57:07 ----RASHD---- C:\cmdcons
2008-12-16 20:53:06 ----D---- C:\WINDOWS\ERDNT
2008-12-16 13:10:53 ----A---- C:\WINDOWS\XileROPatch Uninstall Log.txt
2008-12-16 02:10:34 ----D---- C:\WINDOWS\XileROPatch
2008-12-15 15:50:31 ----D---- C:\Arquivos de programas\Gravity
2008-12-15 15:50:25 ----A---- C:\WINDOWS\IFinst27.exe
2008-12-15 14:34:08 ----A---- C:\WINDOWS\DIIUnin.exe
2008-12-14 23:12:04 ----D---- C:\WINDOWS\Downloaded Installations
2008-12-14 16:16:09 ----ASH---- C:\WINDOWS\S2A2EC7F9.tmp
2008-12-14 16:15:24 ----D---- C:\Arquivos de programas\SlySoft
2008-12-14 15:59:04 ----A---- C:\WINDOWS\system32\CmdLineExt03.dll
2008-12-14 15:57:53 ----AT---- C:\WINDOWS\system32\SIntfNT.dll
2008-12-14 15:57:53 ----AT---- C:\WINDOWS\system32\SIntf32.dll
2008-12-14 15:57:53 ----AT---- C:\WINDOWS\system32\SIntf16.dll
2008-12-10 01:32:08 ----D---- C:\Arquivos de programas\AV Vcs 4.0 DIAMOND
2008-12-10 01:24:19 ----D---- C:\Arquivos de programas\Personal Voice Changer Driver
2008-12-10 01:23:06 ----D---- C:\Arquivos de programas\Fake Voice
2008-12-10 01:07:29 ----D---- C:\WINDOWS\system32\EXP
2008-12-09 18:36:46 ----D---- C:\Arquivos de programas\VirtualDJ
2008-12-08 11:50:53 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\Uniblue
2008-12-06 17:00:56 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-12-02 10:37:40 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\sqlitestudio
2008-11-30 02:26:12 ----D---- C:\Arquivos de programas\ElfBot NG
2008-11-28 16:36:08 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\Ventrilo
2008-11-28 16:35:56 ----D---- C:\Arquivos de programas\Ventrilo
2008-11-28 16:35:23 ----D---- C:\Arquivos de programas\Arquivos comuns\Wise Installation Wizard
2008-11-17 14:58:24 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\NOS
2008-11-16 11:39:05 ----D---- C:\Arquivos de programas\Adobe
2008-11-14 12:46:54 ----D---- C:\Nexon
2008-11-13 16:50:43 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2008-11-13 16:50:43 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2008-11-13 16:50:43 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2008-11-13 16:50:42 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2008-11-13 16:50:42 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2008-11-13 16:50:41 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2008-11-13 16:50:41 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2008-11-13 16:50:40 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2008-11-13 16:50:40 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2008-11-13 16:50:39 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2008-11-13 16:50:37 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2008-11-13 16:50:37 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2008-11-13 16:47:59 ----HD---- C:\WINDOWS\msdownld.tmp
2008-11-08 14:14:11 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\CyberLink
2008-11-06 13:11:09 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\VariCAD-Viewer.en
2008-11-06 13:10:25 ----D---- C:\Arquivos de programas\VariCADViewer
2008-11-03 18:40:44 ----D---- C:\WINDOWS\Eurobattle.net Installer
2008-11-02 23:55:01 ----D---- C:\Arquivos de programas\Garena
2008-10-31 11:24:32 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2008-10-28 17:03:12 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\NexonUS
======List of files/folders modified in the last 2 months======
2008-12-25 13:11:48 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\teamspeak2
2008-12-25 11:54:43 ----D---- C:\WINDOWS\Temp
2008-12-25 11:54:25 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\Orbit
2008-12-25 04:11:05 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-12-25 02:09:33 ----RASH---- C:\boot.ini
2008-12-25 02:09:33 ----A---- C:\WINDOWS\win.ini
2008-12-25 02:09:33 ----A---- C:\WINDOWS\system.ini
2008-12-25 02:07:48 ----AD---- C:\Documents and Settings\All Users\Dados de aplicativos\TEMP
2008-12-25 02:07:32 ----D---- C:\WINDOWS\system32
2008-12-24 20:20:55 ----D---- C:\WINDOWS\system
2008-12-24 03:28:54 ----D---- C:\WINDOWS\system32\CatRoot2
2008-12-23 22:59:36 ----D---- C:\WINDOWS\pss
2008-12-23 22:53:37 ----D---- C:\WINDOWS
2008-12-23 22:27:41 ----D---- C:\Arquivos de programas
2008-12-23 18:10:31 ----SHD---- C:\WINDOWS\Installer
2008-12-21 21:04:05 ----RSD---- C:\WINDOWS\Fonts
2008-12-21 15:52:50 ----D---- C:\downloads
2008-12-21 13:12:26 ----D---- C:\Arquivos de programas\Java
2008-12-19 16:03:10 ----HD---- C:\WINDOWS\inf
2008-12-19 16:02:54 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-12-19 16:02:42 ----HD---- C:\WINDOWS\$hf_mig$
2008-12-19 11:58:01 ----D---- C:\WINDOWS\system32\config
2008-12-19 11:57:46 ----D---- C:\WINDOWS\system32\wbem
2008-12-19 11:57:46 ----D---- C:\WINDOWS\Registration
2008-12-19 11:57:08 ----D---- C:\WINDOWS\system32\Restore
2008-12-18 21:02:45 ----D---- C:\Arquivos de programas\Valve
2008-12-18 21:01:45 ----D---- C:\Arquivos de programas\Arquivos comuns
2008-12-18 20:59:48 ----D---- C:\Arquivos de programas\MSN Messenger
2008-12-18 20:59:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-12-18 20:58:59 ----D---- C:\WINDOWS\Debug
2008-12-18 20:56:34 ----D---- C:\WINDOWS\system32\Setup
2008-12-18 20:56:34 ----D---- C:\WINDOWS\AppPatch
2008-12-18 20:56:26 ----D---- C:\WINDOWS\system32\drivers
2008-12-18 20:55:44 ----D---- C:\WINDOWS\security
2008-12-18 20:52:41 ----D---- C:\WINDOWS\system32\CatRoot
2008-12-18 20:46:34 ----D---- C:\Arquivos de programas\Messenger
2008-12-18 20:44:26 ----D---- C:\WINDOWS\WinSxS
2008-12-18 20:44:20 ----D---- C:\WINDOWS\ehome
2008-12-18 20:44:18 ----D---- C:\WINDOWS\system32\inetsrv
2008-12-18 20:44:18 ----D---- C:\WINDOWS\ime
2008-12-18 20:44:18 ----D---- C:\WINDOWS\Help
2008-12-18 20:44:09 ----D---- C:\WINDOWS\system32\usmt
2008-12-18 20:44:09 ----D---- C:\WINDOWS\system32\pt-br
2008-12-18 20:44:08 ----D---- C:\WINDOWS\PeerNet
2008-12-18 20:44:08 ----D---- C:\Arquivos de programas\Movie Maker
2008-12-18 20:42:13 ----D---- C:\WINDOWS\system32\npp
2008-12-18 20:42:12 ----D---- C:\WINDOWS\msagent
2008-12-18 20:42:11 ----D---- C:\WINDOWS\srchasst
2008-12-18 20:42:10 ----D---- C:\Arquivos de programas\NetMeeting
2008-12-18 20:42:09 ----D---- C:\WINDOWS\system32\Com
2008-12-18 20:42:07 ----D---- C:\Arquivos de programas\Windows NT
2008-12-18 20:42:07 ----D---- C:\Arquivos de programas\Windows Media Player
2008-12-18 20:42:07 ----D---- C:\Arquivos de programas\Outlook Express
2008-12-18 20:42:04 ----D---- C:\Arquivos de programas\Arquivos comuns\System
2008-12-18 20:41:47 ----D---- C:\WINDOWS\system32\oobe
2008-12-18 20:39:02 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-12-18 20:35:24 ----D---- C:\WINDOWS\system32\NtmsData
2008-12-18 02:55:48 ----SHD---- C:\System Volume Information
2008-12-17 15:05:26 ----D---- C:\Arquivos de programas\Internet Explorer
2008-12-16 13:52:36 ----D---- C:\Program Files
2008-12-15 16:06:50 ----D---- C:\Arquivos de programas\Asprate
2008-12-15 14:09:36 ----D---- C:\Arquivos de programas\Warcraft III
2008-12-15 01:50:36 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\Spybot - Search & Destroy
2008-12-14 01:21:20 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\FrostWire
2008-12-13 04:37:59 ----A---- C:\WINDOWS\system32\mshtml.dll
2008-12-09 18:19:57 ----D---- C:\Arquivos de programas\Phun
2008-12-06 00:52:44 ----SD---- C:\Documents and Settings\cliente\Dados de aplicativos\Microsoft
2008-12-05 00:19:40 ----D---- C:\Arquivos de programas\Remere's Map Editor
2008-12-01 23:49:04 ----SD---- C:\WINDOWS\Tasks
2008-11-26 15:21:30 ----A---- C:\WINDOWS\system32\aswBoot.exe
2008-11-22 19:22:39 ----D---- C:\Arquivos de programas\GameVicio
2008-11-21 22:16:51 ----D---- C:\Spybot - Search & Destroy
2008-11-18 20:44:50 ----HD---- C:\Arquivos de programas\InstallShield Installation Information
2008-11-17 15:03:47 ----D---- C:\Documents and Settings\cliente\Dados de aplicativos\Google
2008-11-17 15:00:26 ----D---- C:\Arquivos de programas\Google
2008-11-17 14:58:26 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-11-16 11:39:26 ----D---- C:\Arquivos de programas\Arquivos comuns\Adobe
2008-11-16 11:39:19 ----D---- C:\Documents and Settings\All Users\Dados de aplicativos\Adobe
2008-11-13 16:50:44 ----D---- C:\WINDOWS\system32\DirectX
2008-11-09 16:22:39 ----D---- C:\Arquivos de programas\SystemRequirementsLab
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2008-11-26 26944]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2008-11-26 111184]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2008-11-26 50864]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-11-26 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2008-11-26 94032]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2004-08-13 129408]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-01-25 1149888]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2008-11-26 23152]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 npkcrypt;npkcrypt; \??\C:\Arquivos de programas\Gravity\RagnaBR\npkcrypt.sys []
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-05-02 6554496]
R3 senfilt;senfilt; C:\WINDOWS\system32\drivers\senfilt.sys [2004-04-26 381056]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2005-02-01 260288]
R3 tenCapture;tenCapture; C:\WINDOWS\system32\DRIVERS\tenCapture.sys [2007-04-21 9344]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 Kel - Kiler Plung ...;Driver; \??\c:\windows\system32\PLUG.SYS []
S3 a0z138ju;a0z138ju; C:\WINDOWS\system32\drivers\a0z138ju.sys []
S3 catchme;catchme; \??\C:\ComboFix\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 DAEDriver54;DAEDriver54; C:\WINDOWS\system32\drivers\DAEDriver54.sys []
S3 EagleNT;EagleNT; C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 HidUsb;Driver de classe HID da Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 MidiSyn;MidiSyn; C:\WINDOWS\system32\drivers\MidiSyn.sys [2004-09-14 88960]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-09-06 12288]
S3 MRENDIS5;MRENDIS5 NDIS Protocol Driver; C:\WINDOWS\system32\drivers\MRENDIS5.sys []
S3 MSTEE;Conversor em T entre locais de fluxo contínuo Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Conexão de TV e vídeo da Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 QCDonner;Logitech QuickCam Express; C:\WINDOWS\system32\DRIVERS\OVCD.sys [2001-08-17 28032]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Sony USB Filter Driver (SONYPVU1); C:\WINDOWS\system32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 VIAudio;Vinyl AC'97 Audio Controller (WDM); C:\WINDOWS\system32\drivers\vinyl97.sys [2006-04-01 163712]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 XDva190;XDva190; C:\WINDOWS\system32\drivers\XDva190.sys []
S3 XDva195;XDva195; C:\WINDOWS\system32\drivers\XDva195.sys []
S3 XDva205;XDva205; C:\WINDOWS\system32\drivers\XDva205.sys []
S3 Xponaut_WBD;Xponaut WaveBridge Device (WDM); C:\WINDOWS\system32\drivers\xpntwbd.sys [2007-01-19 13184]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Arquivos de programas\Alwil Software\Avast4\aswUpdSv.exe [2008-11-26 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Arquivos de programas\Alwil Software\Avast4\ashServ.exe [2008-11-26 155160]
R2 JavaQuickStarterService;Java Quick Starter; C:\Arquivos de programas\Java\jre6\bin\jqs.exe [2008-12-21 152984]
R2 MDM;Machine Debug Manager; C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-05-02 159812]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Arquivos de programas\CyberLink\Shared files\RichVideo.exe [2005-08-08 167936]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Arquivos de programas\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Arquivos de programas\Alwil Software\Avast4\ashMaiSv.exe [2008-11-26 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Arquivos de programas\Alwil Software\Avast4\ashWebSv.exe [2008-11-26 352920]
R3 usnjsvc;Serviço de Compartilhamento de Pastas Messenger do USN Journal Reader; C:\Arquivos de programas\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S3 gusvc;Google Updater Service; C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-17 138168]
S3 ose;Office Source Engine; C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S3 WMPNetworkSvc;Serviço de Partilha de Rede do Windows Media Player; C:\Arquivos de programas\Windows Media Player\WMPNetwk.exe [2006-11-02 914944]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
-----------------EOF-----------------