Fórum PC Brasil
Gostaria de reagir a esta mensagem? Crie uma conta em poucos cliques ou inicie sessão para continuar.
Flux RSS


Yahoo! 
MSN 
AOL 
Netvibes 
Bloglines 


Social bookmarking

Social bookmarking reddit      

Conservar e compartilhar o endereço de PC Seguro em seu site de social bookmarking

Conservar e compartilhar o endereço de Fórum PC Brasil em seu site de social bookmarking

Estatísticas
Temos 14810 usuários registrados
O último membro registrado é Josevinil

Os nossos membros postaram um total de 36047 mensagens em 3685 assuntos
Últimos assuntos
» Problema no disco rígido do Windows 11
por joram Seg 01 Abr 2024, 06:35

Quem está conectado?
19 usuários online :: 0 registrados, 0 invisíveis e 19 visitantes

Nenhum

O recorde de usuários online foi de 301 em Ter 26 Out 2021, 15:28
Procurar
 
 

Resultados por:
 


Rechercher Pesquisa avançada

abril 2024
SegTerQuaQuiSexSábDom
1234567
891011121314
15161718192021
22232425262728
2930     

Calendário Calendário


Log hijackthis

3 participantes

Ir para baixo

Log hijackthis Empty Log hijackthis

Mensagem por Bereja Sáb 28 Fev 2009, 15:26

Tenho de costume periodicamene passar o hijack no meu pc.
A algum tempo tem algo me encomodando:

Código:
O18 - Protocol: bw+0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
Porque tem varias assim.
É só isso que me encomoda.
Oque é e porque acusa no log?
Segue o log:
Código:

O18 - Protocol: bw+0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AutoMate 6 (AutoMate6) - Network Automation, Inc. - C:\Arquivos de programas\AutoMate 6\AMTS.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:\arquivos de programas\arquivos comuns\logicool\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Arquivos de programas\Arquivos comuns\Logicool\SrvLnch\SrvLnch.exe
O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Arquivos de programas\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Arquivos de programas\Spyware Doctor\pctsSvc.exe

--
End of file - 21170 bytes
Como podem ver uso o Spyware Doctor ativo direto e o avira!
Obrigado.
Bereja
Bereja
Membro
Membro

Mensagens : 79
Reputação : 6
Data de inscrição : 09/01/2009

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Bereja Sáb 28 Fev 2009, 15:28

Continuaçao
Código:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:21:44, on 28/2/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\arquivos de programas\arquivos comuns\logicool\lvmvfm\LVPrcSrv.exe
C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\sm56hlpr.exe
C:\Arquivos de programas\AutoMate 6\AMEM.exe
C:\Arquivos de programas\Lexmark 2300 Series\lxcgmon.exe
C:\Arquivos de programas\Lexmark 2300 Series\ezprint.exe
C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Arquivos de programas\Arquivos comuns\Logicool\LComMgr\Communications_Helper.exe
C:\Arquivos de programas\Logicool\Qcam10\Qcam.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\Arquivos de programas\Spyware Doctor\pctsTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\Messenger\msmsgs.exe
C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\LogicoolDesktopMessenger.exe
C:\Arquivos de programas\WinZip\WZQKPICK.EXE
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\Arquivos de programas\Arquivos comuns\Logicool\LComMgr\LVComSX.exe
C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Arquivos de programas\AutoMate 6\AMTS.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Arquivos de programas\Arquivos comuns\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Arquivos de programas\Spyware Doctor\pctsAuxs.exe
C:\Arquivos de programas\Spyware Doctor\pctsSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\lxcgcoms.exe
C:\WINDOWS\System32\alg.exe
C:\Arquivos de programas\MSN Messenger\usnsvc.exe
C:\Arquivos de programas\MSN Messenger\msnmsgr.exe
C:\Arquivos de programas\Mozilla Firefox\firefox.exe
C:\Arquivos de programas\Outlook Express\msimn.exe
C:\Arquivos de programas\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.uol.com.br/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [GBB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [AutoMate6] C:\Arquivos de programas\AutoMate 6\AMEM.exe
O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [lxcgmon.exe] "C:\Arquivos de programas\Lexmark 2300 Series\lxcgmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Arquivos de programas\Lexmark 2300 Series\ezprint.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Arquivos de programas\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [avgnt] "C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min /nosplash
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Arquivos de programas\Arquivos comuns\Logicool\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Arquivos de programas\Logicool\Qcam10\Qcam.exe" /hide
O4 - HKLM\..\Run: [LVCOMSX] "[#LVComSX.exe.19252E1F_84EC_457C_BCE0_94D3F9D96D4A]"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Arquivos de programas\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [msnmsgr] "C:\Arquivos de programas\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\LogicoolDesktopMessenger.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Arquivos de programas\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O17 - HKLM\System\CCS\Services\Tcpip\..\{04993F1F-8CB7-49CB-99DA-D48A939AAE5D}: NameServer = 201.10.120.2 201.10.128.3
O17 - HKLM\System\CCS\Services\Tcpip\..\{49A0275A-330A-4D1E-BD47-54B0A8340905}: NameServer = 201.10.120.2 201.10.128.3
O17 - HKLM\System\CS1\Services\Tcpip\..\{04993F1F-8CB7-49CB-99DA-D48A939AAE5D}: NameServer = 201.10.120.2 201.10.128.3
Bereja
Bereja
Membro
Membro

Mensagens : 79
Reputação : 6
Data de inscrição : 09/01/2009

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Amigo Brasileiro Dom 01 Mar 2009, 08:27

Smile Olá S_Positivo!

Log hijackthis 772309 Há programas desnecessários iniciando junto com o Windows, o que torna o seu PC mais lento. Para corrigir isto, siga as dicas deste tutorial:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

Dentre estes programas desnecessários que estão iniciando com o seu Windows, um deles é o Desktop Messenger.

Este programa não é necessário para iniciar automaticamente, e você pode executá-lo apenas quando você necessitar.

É aconselhável que você desative-o, para que ele não fique tomando recursos do sistema.

De preferência deixe apenas os programas de segurança (anti-vírus/anti-spywares/firewall) iniciarem junto com o Windows.

Use também o programa Ccleaner, indicado neste tutorial acima, para fazer uma limpeza e otimização do PC agora e de tempos em tempos.
___________________________________________________________________________________________

Log hijackthis 772309 Abra o HijackThis, clique em Do a system scan only, marque as entradas abaixo e clique em Fix checked:

O18 - Protocol: bw+0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {247E59F8-B2FC-4258-B1FD-21B6E32DF8CE} - C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll

Depois disto poste um novo log do Hijackthis e nos diga como está o seu PC após estes procedimentos.

Ficamos no aguardo.
Amigo Brasileiro
Amigo Brasileiro
Membro Pleno
Membro Pleno

Mensagens : 882
Reputação : 11
Data de inscrição : 16/12/2008

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Bereja Dom 01 Mar 2009, 14:31

Olá Alberto
Minha duvida é porque foi criada tanta entrada?
Mais já removi elas.
Código:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:22:14, on 1/3/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\arquivos de programas\arquivos comuns\logicool\lvmvfm\LVPrcSrv.exe
C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\sm56hlpr.exe
C:\Arquivos de programas\AutoMate 6\AMEM.exe
C:\Arquivos de programas\Lexmark 2300 Series\lxcgmon.exe
C:\Arquivos de programas\Lexmark 2300 Series\ezprint.exe
C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Arquivos de programas\Arquivos comuns\Logicool\LComMgr\Communications_Helper.exe
C:\Arquivos de programas\Logicool\Qcam10\Qcam.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\Arquivos de programas\Spyware Doctor\pctsTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\Messenger\msmsgs.exe
C:\Arquivos de programas\Logicool\Desktop Messenger\8876480\Program\LogicoolDesktopMessenger.exe
C:\Arquivos de programas\WinZip\WZQKPICK.EXE
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\Arquivos de programas\Arquivos comuns\Logicool\LComMgr\LVComSX.exe
C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Arquivos de programas\AutoMate 6\AMTS.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Arquivos de programas\Arquivos comuns\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Arquivos de programas\Spyware Doctor\pctsAuxs.exe
C:\Arquivos de programas\Spyware Doctor\pctsSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\lxcgcoms.exe
C:\WINDOWS\System32\alg.exe
C:\Arquivos de programas\MSN Messenger\usnsvc.exe
C:\Arquivos de programas\MSN Messenger\msnmsgr.exe
C:\Arquivos de programas\Mozilla Firefox\firefox.exe
C:\Arquivos de programas\Outlook Express\msimn.exe
C:\Arquivos de programas\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.uol.com.br/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Arquivos comuns\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Arquivos de programas\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [GBB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [AutoMate6] C:\Arquivos de programas\AutoMate 6\AMEM.exe
O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [avgnt] "C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min /nosplash
O4 - HKLM\..\Run: [LVCOMSX] "[#LVComSX.exe.19252E1F_84EC_457C_BCE0_94D3F9D96D4A]"
O4 - HKLM\..\Run: [ISTray] "C:\Arquivos de programas\Spyware Doctor\pctsTray.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\ARQUIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARQUIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O17 - HKLM\System\CCS\Services\Tcpip\..\{04993F1F-8CB7-49CB-99DA-D48A939AAE5D}: NameServer = 201.10.120.2 201.10.128.3
O17 - HKLM\System\CCS\Services\Tcpip\..\{49A0275A-330A-4D1E-BD47-54B0A8340905}: NameServer = 201.10.120.2 201.10.128.3
O17 - HKLM\System\CS1\Services\Tcpip\..\{04993F1F-8CB7-49CB-99DA-D48A939AAE5D}: NameServer = 201.10.120.2 201.10.128.3
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AutoMate 6 (AutoMate6) - Network Automation, Inc. - C:\Arquivos de programas\AutoMate 6\AMTS.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - c:\arquivos de programas\arquivos comuns\logicool\lvmvfm\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Arquivos de programas\Arquivos comuns\Logicool\SrvLnch\SrvLnch.exe
O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Arquivos de programas\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Arquivos de programas\Spyware Doctor\pctsSvc.exe

--
End of file - 7489 bytes

Tem uns arquivos em c:\ que gostaria de saber a origem
c:\sqmdata00.sqm
c:\sqmdata01.sqm
c:\sqmdata02.sqm
c:\sqmdata03.sqm
c:\sqmdata04.sqm
c:\sqmdata05.sqm
c:\sqmdata06.sqm
c:\sqmdata07.sqm
c:\sqmdata08.sqm
c:\sqmnoopt00.sqm
c:\sqmnoopt01.sqm
c:\sqmnoopt02.sqm
c:\sqmnoopt03.sqm
c:\sqmnoopt04.sqm
c:\sqmnoopt05.sqm
c:\sqmnoopt06.sqm
c:\sqmnoopt07.sqm
c:\sqmnoopt08.sqm
Todos com 1kb e estam oculto como arquivos de sistema.
Obrigado até agora isso aí!
Bereja
Bereja
Membro
Membro

Mensagens : 79
Reputação : 6
Data de inscrição : 09/01/2009

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Amigo Brasileiro Dom 01 Mar 2009, 16:18

S_Positivo escreveu:Olá Alberto
Minha duvida é porque foi criada tanta entrada?
Log hijackthis 772309 Estas entradas são criadas pelo Desktop Messenger.
________________________________________________________________________________________

S_Positivo escreveu:Tem uns arquivos em c:\ que gostaria de saber a origem
c:\sqmdata00.sqm
c:\sqmdata01.sqm
c:\sqmdata02.sqm
Log hijackthis 772309 Estes arquivos são criados pelo Messenger. Pode excluí-los tranquilamente.
________________________________________________________________________________________

Log hijackthis 772309 Instale estes programas e use-os agora e semanalmente para fazer uma limpeza do seu PC e para deixá-lo mais eficiente e otimizado:

[Tens de ter uma conta e sessão iniciada para poderes visualizar este link]

isso aí! No mais o seu log está limpo. Conte sempre conosco!
Amigo Brasileiro
Amigo Brasileiro
Membro Pleno
Membro Pleno

Mensagens : 882
Reputação : 11
Data de inscrição : 16/12/2008

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Bereja Dom 01 Mar 2009, 16:44

Duvida esclarecida com sucesso isso aí!
Gostaria de ter mais conhecimentos sobre os logs que são utilizado para remoção de pragas virtuais.
Mais enquando isso
Obrigado Nunes
Bereja
Bereja
Membro
Membro

Mensagens : 79
Reputação : 6
Data de inscrição : 09/01/2009

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Admin Dom 01 Mar 2009, 17:01

Caso Resolvido!

Caso o autor do tópico necessite, o mesmo será reaberto, para isso deverá entrar em contato com um dos membros da [Tens de ter uma conta e sessão iniciada para poderes visualizar este link] solicitando o desbloqueio.
Admin
Admin
Administrador Fundador
Administrador Fundador

Mensagens : 515
Reputação : 49
Data de inscrição : 26/05/2008
Idade : 46
Localização : Brasil

https://forumpcbrasil.forumeiros.com

Ir para o topo Ir para baixo

Log hijackthis Empty Re: Log hijackthis

Mensagem por Conteúdo patrocinado


Conteúdo patrocinado


Ir para o topo Ir para baixo

Ir para o topo

- Tópicos semelhantes

 
Permissões neste sub-fórum
Não podes responder a tópicos