Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14810 usuários registrados
O último membro registrado é Josevinil

Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por joram Seg 01 Abr 2024, 06:35

Quem está conectado?
12 usuários online :: 0 registrados, 0 invisíveis e 12 visitantes :: 1 motor de busca

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

maio 2024
SegTerQuaQuiSexSábDom
  12345
6789101112
13141516171819
20212223242526
2728293031  

Calendário Calendário


Oi pessoal, necessito de ajuda. O antivirus não funciona.

2 participantes

Ir para baixo

Oi pessoal, necessito de ajuda. O antivirus não funciona. Empty Oi pessoal, necessito de ajuda. O antivirus não funciona.

Mensagem por kamsklik Sex 04 Abr 2014, 08:00

Bom dia,
meu note foi infectado por um vírus que não deixa executar nenhum antivírus. De início aparecia esta mensagem "não é um aplicativo Win32 válido",
quando tentei executar o antivírus. Tentei baixar o avira free diferente do que o que uso (kaspersky) e deu a mesma mensagem.
Ai passei um removedor de vírus e não detectou nada, porém o windows defender também estava bloqueado e eu não estava conseguindo atualizar nada.
Utilizei o Eliblaga e não detectou nada. Ai utilizei o Combofix e o windows defender e as atualizações do sistema voltaram a funcionar. Mas quando tento executar o antivírus ainda não funciona. Tentei novamente baixar o avira e não conseguiu instalar, tentei ainda atualizar o kaspersky e também não conseguiu instalar.
O que faço? Será que podem me ajudar?

Segue o log do Combofix:
ComboFix 14-04-03.01 - Kamila 04/04/2014   7:18.5.2 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.55.1046.18.3796.1741 [GMT -3:00]
Executando de: d:\dados\Desktop\ace.exe
AV: Kaspersky Anti-Virus *Disabled/Outdated* {179979E8-273D-D14E-0543-2861940E4886}
SP: Kaspersky Anti-Virus *Disabled/Updated* {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((   Outras Exclusões   )))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\InfoSat.txt
.
.
((((((((((((((((   Arquivos/Ficheiros criados de 2014-03-04 to 2014-04-04  ))))))))))))))))))))))))))))
.
.
2014-04-04 10:30 . 2014-04-04 10:30 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp
2014-04-04 10:30 . 2014-04-04 10:30 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-04-04 04:45 . 2014-04-04 10:13 -------- d-----w- c:\programdata\Kaspersky Lab Setup Files
2014-04-04 02:36 . 2014-04-04 02:36 79064 ----a-w- c:\windows\system32\drivers\ctyor.sys
2014-04-04 02:02 . 2014-04-04 02:02 -------- d-----w- c:\programdata\Licenses
2014-04-04 02:02 . 2014-04-04 02:15 -------- d-----w- c:\program files (x86)\SpywareBlaster
2014-04-04 02:02 . 2009-03-24 15:52 129872 ----a-w- c:\windows\SysWow64\MSSTDFMT.DLL
2014-04-04 01:28 . 2014-04-04 06:09 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-04-04 01:27 . 2014-04-04 01:27 -------- d-----w- c:\program files (x86)\Malwarebytes Anti-Malware
2014-04-04 01:27 . 2014-04-04 01:27 -------- d-----w- c:\programdata\Malwarebytes
2014-04-04 01:27 . 2014-03-05 12:26 63192 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-04-04 01:27 . 2014-03-05 12:26 88280 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-04-04 01:27 . 2014-03-05 12:26 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-04-03 23:48 . 2014-04-03 23:48 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{33F49A6C-D73C-4269-B85D-1445DBE99517}\offreg.dll
2014-04-03 23:42 . 2014-03-17 13:16 10521840 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{33F49A6C-D73C-4269-B85D-1445DBE99517}\mpengine.dll
2014-04-03 17:02 . 2014-04-03 17:02 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2014-04-03 16:04 . 2014-01-21 14:14 34624 ----a-w- c:\windows\system32\drivers\Bfmon.sys
2014-04-03 16:04 . 2014-01-21 14:14 52032 ----a-w- c:\windows\system32\drivers\Bfilter.sys
2014-04-03 16:04 . 2014-01-21 10:01 128992 ----a-w- c:\windows\system32\drivers\Bprotect.sys
2014-04-03 15:51 . 2014-04-04 02:36 -------- d-----w- c:\users\Kamila\AppData\Roaming\SupTab
2014-04-03 15:51 . 2014-04-03 16:02 -------- d-----w- c:\programdata\WPM
2014-04-03 14:36 . 2014-04-03 00:55 460888 ----a-w- c:\windows\system32\drivers\67500424.sys
2014-04-03 07:38 . 2014-04-03 07:39 -------- d-----w- C:\cae
2014-04-02 22:12 . 2014-04-02 22:12 -------- d-----w- c:\users\Kamila\AppData\Roaming\Baidu Security
2014-04-02 22:11 . 2014-04-02 22:11 -------- d-----w- c:\programdata\Log
2014-04-02 19:08 . 2014-04-04 02:36 -------- d-----w- C:\temp
2014-04-02 19:05 . 2014-04-03 16:04 -------- d-----w- c:\programdata\Baidu Security
2014-04-02 19:05 . 2014-04-02 19:06 -------- d-----w- c:\program files\003
2014-04-02 18:36 . 2014-04-02 18:36 -------- d-----w- c:\programdata\AVAST Software
2014-04-02 18:24 . 2014-04-03 12:12 -------- d-----w- c:\users\Kamila\AppData\Local\ElevatedDiagnostics
2014-04-02 13:57 . 2014-04-02 13:57 -------- d-----w- c:\users\Kamila\AppData\Roaming\Solvusoft
2014-04-02 13:54 . 2014-04-02 13:54 -------- d-----w- C:\Spacekace
2014-04-02 13:41 . 2014-04-02 13:41 -------- d-----w- c:\users\Kamila\AppData\Local\SearchProtect
2014-03-17 19:35 . 2014-03-17 19:35 -------- d-----w- c:\program files\Microsoft Silverlight
2014-03-17 19:35 . 2014-03-17 19:35 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2014-03-14 12:07 . 2014-03-14 12:07 -------- d-----w- c:\program files\CCleaner
2014-03-12 10:55 . 2014-02-04 02:32 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll
2014-03-12 10:55 . 2014-02-04 02:32 624128 ----a-w- c:\windows\system32\qedit.dll
2014-03-12 10:55 . 2014-02-04 02:04 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll
2014-03-12 10:55 . 2014-02-04 02:04 509440 ----a-w- c:\windows\SysWow64\qedit.dll
.
.
.
(((((((((((((((((((((((((((((((((((((   Relatório Find3M   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-03-14 11:41 . 2013-12-09 14:57 31088 ----a-w- c:\windows\SysWow64\drivers\gbpndisrd.sys
2014-03-11 22:59 . 2013-12-09 15:42 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-03-11 22:59 . 2013-12-09 15:42 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-03-02 17:05 . 2013-12-07 22:39 90015360 ----a-w- c:\windows\system32\MRT.exe
2014-02-18 20:49 . 2013-05-06 00:42 29280 ----a-w- c:\windows\system32\drivers\klkbdflt.sys
2014-02-18 20:49 . 2013-12-08 16:44 624224 ----a-w- c:\windows\system32\drivers\klif.sys
2014-02-18 20:49 . 2013-12-08 16:44 115296 ----a-w- c:\windows\system32\drivers\klflt.sys
2014-01-15 05:15 . 2014-01-15 05:15 167784 ----a-w- c:\programdata\FileSplitUpLoad.dll
2014-01-08 17:55 . 2012-07-17 16:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-12-08 11:31 . 2013-12-08 11:29 50053120 ----a-w- c:\program files (x86)\GUTA4A3.tmp
2013-12-08 01:06 . 2013-12-08 00:58 50053120 ----a-w- c:\program files (x86)\GUTD212.tmp
.
.
((((((((((((((((((((((((((   Pontos de Carregamento do Registro   )))))))))))))))))))))))))))))))))))))))
.
.
*Nota* entradas vazias e legítimas por padrão não são apresentadas.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2013-12-23 12:11 220632 ----a-w- c:\users\Kamila\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2013-12-23 12:11 220632 ----a-w- c:\users\Kamila\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2013-12-23 12:11 220632 ----a-w- c:\users\Kamila\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HW_OPENEYE_OUC_VIVO INTERNET"="c:\program files (x86)\VIVO INTERNET\UpdateDog\ouc.exe" [2009-07-27 110592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="c:\program files (x86)\Real\RealPlayer\update\realsched.exe" [2013-12-08 295072]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2012-11-05 89184]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"="grpconv -o" [X]
"Malwarebytes Anti-Malware (cleanup)"="c:\programdata\Malwarebytes\Malwarebytes Anti-Malware\mbamdor.exe" [2014-03-05 54072]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ GbPluginBb]
2014-02-21 19:13 1582632 ----a-w- c:\program files (x86)\GbPlugin\gbieh.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AutoUpdateDisableNotify"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 BprotectEx;Baidu ProtectEx;c:\windows\System32\drivers\BprotectEx.sys;c:\windows\SYSNATIVE\drivers\BprotectEx.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
S0 67500424;67500424;c:\windows\system32\DRIVERS\67500424.sys;c:\windows\SYSNATIVE\DRIVERS\67500424.sys [x]
S2 Easy Launcher;Easy Launcher;c:\program files (x86)\Samsung\Easy Settings\CmdServer\EasyLauncher.exe;c:\program files (x86)\Samsung\Easy Settings\CmdServer\EasyLauncher.exe [x]
S2 GbpSv;Gbp Service;c:\progra~2\GbPlugin\GbpSv.exe;c:\progra~2\GbPlugin\GbpSv.exe [x]
S2 HWDeviceService64.exe;HWDeviceService64.exe;c:\programdata\DatacardService\HWDeviceService64.exe;c:\programdata\DatacardService\HWDeviceService64.exe [x]
S3 huawei_cdcacm;huawei_cdcacm;c:\windows\system32\DRIVERS\ew_jucdcacm.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jucdcacm.sys [x]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
.
.
--- =Outros Serviços/Drivers Na Memória ---
.
*NewlyCreated* - 54695635
*NewlyCreated* - BAVR3BASE
*NewlyCreated* - BDAPIUTIL
*NewlyCreated* - BDCAMERAPROTECT
*NewlyCreated* - BFILTER
*NewlyCreated* - BFMON
*NewlyCreated* - BPROTECT
*NewlyCreated* - MBAMPROTECTOR
*NewlyCreated* - MBAMSWISSARMY
*NewlyCreated* - MBAMWEBACCESSCONTROL
*Deregistered* - BavR3base
*Deregistered* - BdApiUtil
*Deregistered* - BdCameraProtect
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
iissvcs REG_MULTI_SZ   w3svc was
apphost REG_MULTI_SZ   apphostsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-04-03 19:05 1150280 ----a-w- c:\program files (x86)\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe
.
Conteúdo da pasta 'Tarefas Agendadas'
.
2014-04-04 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-09 22:59]
.
2014-04-03 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-612754059-1867740611-2245675567-1000Core.job
- c:\users\Kamila\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-23 15:39]
.
2014-04-04 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-612754059-1867740611-2245675567-1000UA.job
- c:\users\Kamila\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-23 15:39]
.
2014-04-04 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-12-08 00:57]
.
2014-04-04 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-12-08 00:57]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2013-12-23 12:11 244696 ----a-w- c:\users\Kamila\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2013-12-23 12:11 244696 ----a-w- c:\users\Kamila\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2013-12-23 12:11 244696 ----a-w- c:\users\Kamila\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-11-19 13260944]
.
------- Scan Suplementar -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
mDefault_Search_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
mDefault_Page_URL = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
mStart Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
IE: E&xportar para o Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
Trusted Zone: bancobrasil.com.br\www
Trusted Zone: bancobrasil.com.br\www14
Trusted Zone: bancobrasil.com.br\www2
Trusted Zone: bb.com.br\www
FF - ProfilePath - c:\users\Kamila\AppData\Roaming\Mozilla\Firefox\Profiles\54xupw0k.default\
FF - prefs.js: browser.startup.homepage - [Tens de ter uma conta e sessão iniciada para poderes visualizar este link]
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\{1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl"
.
--------------------- CHAVES DO REGISTRO BLOQUEADAS ---------------------
.
[HKEY_USERS\S-1-5-21-612754059-1867740611-2245675567-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-612754059-1867740611-2245675567-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.12"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Tempo para conclusão: 2014-04-04  07:36:08
ComboFix-quarantined-files.txt  2014-04-04 10:36
ComboFix2.txt  2014-04-03 18:31
ComboFix3.txt  2014-04-03 08:04
ComboFix4.txt  2014-04-02 19:46
.
Pré-execução: 62.335.840.256 bytes disponíveis
Pós execução: 62.269.206.528 bytes disponíveis
.
- - End Of File - - 8EB60EBC301FFF7DE10949C2601C3762



Desde já agradeço.
Kamila
kamsklik
kamsklik
Iniciante
Iniciante

Mensagens : 12
Reputação : 0
Data de inscrição : 04/04/2014

Ir para o topo Ir para baixo

Oi pessoal, necessito de ajuda. O antivirus não funciona. Empty Re: Oi pessoal, necessito de ajuda. O antivirus não funciona.

Mensagem por Power Max Sex 04 Abr 2014, 18:54

Oi pessoal, necessito de ajuda. O antivirus não funciona. 648673379  Oi Kamila. Seja bem vinda ao Fórum PC Brasil.

Oi pessoal, necessito de ajuda. O antivirus não funciona. 772309 Crie, por gentileza, um novo tópico na área de Remoção de Malwares no endereço abaixo e poste lá este relatório do Combofix:
[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Lá te serão passadas as dicas para resolver estes problemas. Ficamos no aguardo de seu tópico.
Power Max
Power Max
Colaborador
Colaborador

Mensagens : 9086
Reputação : 1499
Data de inscrição : 14/04/2009

Ir para o topo Ir para baixo

Ir para o topo


 
Permissões neste sub-fórum
Não podes responder a tópicos