Logo Hardware.com.br
Fabicaio
Fabicaio Novo Membro Registrado
11 Mensagens 0 Curtidas

Erro ao iniciar windows

#1 Por Fabicaio 01/07/2010 - 10:24
Bom Dia! Tenho procurado como resolver o erro que aparece em janela dizendo: Erro ao abrir gbiehcef.dll Acesso Negado
Já vi um tópico relacionado com este mesmo arquivo só que no caso do tópico ele não encontrado, no meu caso ele está bloqueado. Como resolver? Alguem pode me ajudar?
Segue LOG:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:06:24, on 1/7/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\ARQUIV~1\GbPlugin\GbpSv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\Arquivos de programas\lg_fwupdate\fwupdate.exe
C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe
C:\Arquivos de programas\COMODO\COMODO Internet Security\cfp.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Arquivos de programas\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Arquivos de programas\McAfee\Common Framework\UdaterUI.exe
C:\Arquivos de programas\Ahead\InCD\InCD.exe
C:\Arquivos de programas\COMODO\livePCsupport\ELPS.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\McAfee\Common Framework\McTray.exe
C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\DOCUME~1\FABIOL~1\CONFIG~1\Temp\RtkBtMnt.exe
C:\Arquivos de programas\Windows Live\Messenger\MsnMsgr.Exe
C:\Arquivos de programas\Messenger\msmsgs.exe
C:\Arquivos de programas\IncrediMail\bin\IncMail.exe
C:\Arquivos de programas\IncrediMail\bin\IMApp.exe
C:\ARQUIV~1\WINZIP\winzip32.exe
C:\Documents and Settings\Fabiola Machado\Configurações locais\Temp\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com.br/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.ez-tracks.com/?fromOMB=1
R3 - URLSearchHook: Barra de Ferramentas do Yahoo! - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Arquivos de programas\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\ARQUIVOS DE PROGRAMAS\GBPLUGIN\gbieh.dll
O2 - BHO: G-Buster Browser Defense CEF - {C41A1C0E-EA6C-11D4-B1B8-444553540003} - C:\Arquivos de programas\GbPlugin\gbiehcef.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Arquivos de programas\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Arquivos de programas\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Barra de Ferramentas do Yahoo! - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: HopSurf toolbar - {E9FAB13D-4600-49E1-90D1-EE961C859D39} - C:\Arquivos de programas\Comodo\HopSurfToolbar\HopSurfToolbar_IE.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LGODDFU] "C:\Arquivos de programas\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [HP Software Update] C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Arquivos de programas\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [avgnt] "C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Arquivos de programas\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Arquivos de programas\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [InCD] C:\Arquivos de programas\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [COMODO livePCsupport] C:\Arquivos de programas\COMODO\livePCsupport\ELPS.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [B:\auto.exe] B:\auto.exe
O4 - HKCU\..\Run: [C:\Windows\system32\auto.exe] C:\Windows\system32\auto.exe
O4 - HKCU\..\Run: [swg] "C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Skype] "C:\Arquivos de programas\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Arquivos de programas\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [IncrediMail] C:\Arquivos de programas\IncrediMail\bin\IncMail.exe /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Incluir no Blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Arquivos de programas\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Incluir no Blog no Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Arquivos de programas\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Exibir ou ocultar HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: HopSurf - {ED98F8D1-09AC-4107-B2FF-91DBE011B0C5} - C:\Arquivos de programas\Comodo\HopSurfToolbar\HopSurfToolbar_IE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/MSNPUpld.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DB6BF2CD-4F59-4F1C-AA9C-D08C0B61A931} (GbpDistObj Class) - https://www14.bancobrasil.com.br/plugin/GbpDist.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\ARQUIV~1\ARQUIV~1\Skype\SKYPE4~1.DLL
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Arquivos de programas\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O20 - Winlogon Notify: GbPluginBb - C:\ARQUIVOS DE PROGRAMAS\GBPLUGIN\gbieh.dll
O20 - Winlogon Notify: GbPluginCef - C:\Arquivos de programas\GbPlugin\gbiehcef.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Arquivos de programas\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Gbp Service (GbpSv) - - C:\ARQUIV~1\GbPlugin\GbpSv.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Arquivos de programas\Ahead\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Arquivos de programas\McAfee\Common Framework\FrameworkService.exe
--
End of file - 11739 bytes
Wings
Wings Cyber Highlander Registrado
20.3K Mensagens 1.2K Curtidas
#5 Por Wings
01/07/2010 - 14:29
*Baixe o Bankerfix e salve-o no desktop
*Desative temporariamente seu antivírus

Clique com o botão direito do mouse no ícone do Avira ao lado do relógio > clique na opção "Avira Guard enable".

*Duplo clique em bankerfix.exe.
*Clique [OK] > [SIM] (se pedir alguma atualização) > [OK]
*Tecle [ENTER] e aguarde.
*Ao término tecle [ENTER]
*Cole o relatório criado em C:\LinhaDefensiva\relatorio.txt
Fabicaio
Fabicaio Novo Membro Registrado
11 Mensagens 0 Curtidas
#6 Por Fabicaio
01/07/2010 - 16:40
BankerFix 3.1 VALKYRIE - Removedor de Bankers
Linha Defensiva | http://www.linhadefensiva.org
http://www.linhadefensiva.org/bankerfix/
-------------------------------------------------------
Data: 2010-07-01 - 16:33
-------------------------------------------------------
Lista de Definição: 2010-03-28-1 | CORE: 2010-01-14-1
=======================================================
Arquivo infectado detectado: C:\WINDOWS\system32\autentic.dll
Arquivo infectado removido com sucesso!
Arquivo infectado detectado: C:\WINDOWS\system32\configex.dll
Arquivo infectado removido com sucesso!
Arquivo infectado detectado: C:\WINDOWS\system32\msghot.dll
Arquivo infectado removido com sucesso!

----- Fim -------------------------
igoreso
igoreso Super Participante Registrado
704 Mensagens 22 Curtidas
#7 Por igoreso
01/07/2010 - 16:42
Faça o download do DDS e salve no desktop.
Lembre-se que estiver executando Windows Vista ou 7 é necessário dar privilégio de administrador a ferramenta para isso:
Clique com o direito do mouse sobre o arquivo e depois clique em
17c004ff757474cda22635c154079dfa
Execute na conta administradora do computador, e com permissão de administrador (no caso Windows Vista e 7).
Temporariamente desative seus programas de proteção, (anti-vírus e anti-spyware).
Duplo clique em dds.scr.
Irá surgir uma tela preta com algumas informações. Não clique em nada, apenas aguarde!
Quando terminar, duas janelas abrirão: DDS.txt e Attach.txt.
Salve os resultados e cole-os na resposta.
observe.pngNão respondo duvidas por MP, e-mail e msn! Use o fórum!

Fabicaio
Fabicaio Novo Membro Registrado
11 Mensagens 0 Curtidas
#8 Por Fabicaio
01/07/2010 - 17:03
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:01:28, on 1/7/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\ARQUIV~1\GbPlugin\GbpSv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Arquivos de programas\Java\jre6\bin\jusched.exe
C:\Arquivos de programas\lg_fwupdate\fwupdate.exe
C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe
C:\Arquivos de programas\COMODO\COMODO Internet Security\cfp.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Arquivos de programas\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Arquivos de programas\McAfee\Common Framework\UdaterUI.exe
C:\Arquivos de programas\Ahead\InCD\InCD.exe
C:\Arquivos de programas\COMODO\livePCsupport\ELPS.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\svchost.exe
C:\Arquivos de programas\Java\jre6\bin\jqs.exe
C:\Arquivos de programas\McAfee\Common Framework\McTray.exe
C:\Arquivos de programas\Windows Live\Messenger\MsnMsgr.Exe
C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Arquivos de programas\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Arquivos de programas\Messenger\msmsgs.exe
C:\Arquivos de programas\IncrediMail\bin\IncMail.exe
C:\WINDOWS\system32\svchost.exe
C:\DOCUME~1\FABIOL~1\CONFIG~1\Temp\RtkBtMnt.exe
C:\Arquivos de programas\IncrediMail\bin\IMApp.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\alg.exe
C:\Arquivos de programas\LimeWire\LimeWire.exe
C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Arquivos de programas\Windows Live\Toolbar\wltuser.exe
C:\Arquivos de programas\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe
C:\Arquivos de programas\Windows Live\Contacts\wlcomm.exe
C:\Arquivos de programas\Internet Explorer\iexplore.exe
C:\Arquivos de programas\Internet Explorer\iexplore.exe
C:\Arquivos de programas\Internet Explorer\iexplore.exe
C:\ARQUIV~1\WINZIP\winzip32.exe
C:\Documents and Settings\Fabiola Machado\Configurações locais\Temp\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = &http://home.microsoft.com/intl/br/access/allinone.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com.br/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.ez-tracks.com/?fromOMB=1
R3 - URLSearchHook: Barra de Ferramentas do Yahoo! - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Arquivos de programas\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Arquivos de programas\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Auxiliar de Conexão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Arquivos de programas\Arquivos comuns\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Arquivos de programas\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Arquivos de programas\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:\ARQUIVOS DE PROGRAMAS\GBPLUGIN\gbieh.dll
O2 - BHO: G-Buster Browser Defense CEF - {C41A1C0E-EA6C-11D4-B1B8-444553540003} - C:\Arquivos de programas\GbPlugin\gbiehcef.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Arquivos de programas\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Arquivos de programas\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Arquivos de programas\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Arquivos de programas\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Arquivos de programas\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Barra de Ferramentas do Yahoo! - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Arquivos de programas\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: HopSurf toolbar - {E9FAB13D-4600-49E1-90D1-EE961C859D39} - C:\Arquivos de programas\Comodo\HopSurfToolbar\HopSurfToolbar_IE.dll
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Arquivos de programas\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [LGODDFU] "C:\Arquivos de programas\lg_fwupdate\fwupdate.exe" blrun
O4 - HKLM\..\Run: [HP Software Update] C:\Arquivos de programas\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Arquivos de programas\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [avgnt] "C:\Arquivos de programas\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Arquivos de programas\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Arquivos de programas\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [InCD] C:\Arquivos de programas\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [COMODO livePCsupport] C:\Arquivos de programas\COMODO\livePCsupport\ELPS.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [B:\auto.exe] B:\auto.exe
O4 - HKCU\..\Run: [C:\Windows\system32\auto.exe] C:\Windows\system32\auto.exe
O4 - HKCU\..\Run: [swg] "C:\Arquivos de programas\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Skype] "C:\Arquivos de programas\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Arquivos de programas\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Arquivos de programas\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [IncrediMail] C:\Arquivos de programas\IncrediMail\bin\IncMail.exe /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: Incluir no Blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Arquivos de programas\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Incluir no Blog no Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Arquivos de programas\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Arquivos de programas\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Exibir ou ocultar HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Arquivos de programas\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: HopSurf - {ED98F8D1-09AC-4107-B2FF-91DBE011B0C5} - C:\Arquivos de programas\Comodo\HopSurfToolbar\HopSurfToolbar_IE.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Arquivos de programas\Messenger\msmsgs.exe
O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.com/intl/br/access/allinone.asp
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/resources/MSNPUpld.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DB6BF2CD-4F59-4F1C-AA9C-D08C0B61A931} (GbpDistObj Class) - https://www14.bancobrasil.com.br/plugin/GbpDist.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\ARQUIV~1\ARQUIV~1\Skype\SKYPE4~1.DLL
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Arquivos de programas\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O20 - Winlogon Notify: GbPluginBb - C:\ARQUIVOS DE PROGRAMAS\GBPLUGIN\gbieh.dll
O20 - Winlogon Notify: GbPluginCef - C:\Arquivos de programas\GbPlugin\gbiehcef.dll
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Arquivos de programas\Avira\AntiVir Desktop\avguard.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Arquivos de programas\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Gbp Service (GbpSv) - - C:\ARQUIV~1\GbPlugin\GbpSv.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Arquivos de programas\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Arquivos de programas\Ahead\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Arquivos de programas\Java\jre6\bin\jqs.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - McAfee, Inc. - C:\Arquivos de programas\McAfee\Common Framework\FrameworkService.exe
--
End of file - 12241 bytes

E o tal do auto.exe
Wings
Wings Cyber Highlander Registrado
20.3K Mensagens 1.2K Curtidas
#9 Por Wings
01/07/2010 - 17:17
Continuando com seu caso....

1.
*Delete o Bankerfix e a pasta C:\LinhaDefensiva

2.
*Desative temporariamente seu antivírus
*Baixe o USBFix e salve-o no desktop

*Conecte o Pendrive no PC

*Duplo clique em UsbFix

*Clique em [Pesquisa] e aguarde o término
*Remova o Pendrive
*Cole o relatório criado em C:\UsbFix.txt
Fabicaio
Fabicaio Novo Membro Registrado
11 Mensagens 0 Curtidas
#10 Por Fabicaio
07/07/2010 - 18:14
############################## | UsbFix 7.016 | [Pesquisa]
Usuário: Fabiola Machado (Administrador) # FTC-NOT-05 [ ]
Atualizado em 05/07/10 por El Desaparecido / C_XX
Começou em 16:56:39 | 07/07/2010
Site: http://pagesperso-orange.fr/NosTools/index.html
Contato: [EMAIL="FindyKill.Contact@gmail.com"]FindyKill.Contact@gmail.com[/EMAIL]
CPU: Intel(R) Celeron(R) M CPU 420 @ 1.60GHz
Microsoft Windows XP Professional (5.1.2600 32-Bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall: Habilitado
Antivirus: AntiVir Desktop 9.0.1.32 [(!) Disabled | Updated]
Firewall: COMODO Firewall 3.9 [Enabled]
RAM -> 502 Mb
C:\ (%systemdrive%) -> Disco fixo # 22 Gb (2 Mb livre - 10%) [] # NTFS
D:\ -> Disco fixo # 29 Gb (6 Mb livre - 22%) [] # NTFS
F:\ -> CD-ROM
H:\ -> Disco removível # 4 Gb (1 Mb livre - 37%) [KINGSTON] # FAT32
################## | Ficheiros # pastas infeciosos |
Presente ! C:\Arquivos de programas\GbPlugin
################## | Registro |
Presente ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives
################## | Mountpoints2 |
HKCU\.\.\.\.\Explorer\MountPoints2\E
Shell\AutoRun\Command = E:\start.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{28d53b1a-0a12-11df-b725-0016d468bec5}
Shell\AutoRun\Command = E:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{28d53b1d-0a12-11df-b725-0016d468bec5}
Shell\AutoRun\Command = E:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{6a2244c4-1123-11df-b731-0016d468bec5}
Shell\AutoRun\Command = E:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{7c6cf762-0c61-11df-b728-0016d468bec5}
Shell\AutoRun\Command = E:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{81b4a815-08df-11dd-b0af-806d6172696f}
Shell\Setup\Command = setup.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{995d6a74-1061-11df-b730-0016d468bec5}
Shell\AutoRun\Command = E:\AutoRun.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{b30f856d-7d2b-11dd-b4a4-0016d468bec5}
Shell\AutoRun\Command = E:\setupSNK.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{c5640e61-ecb8-11de-b6e8-0016d468bec5}
Shell\AutoRun\Command = .\winvid\wwcodec.exe
Shell\exploRE\Command = .///winvid\\/wwcodec.exe
Shell\OPen\Command = .////\\\winvid\\\\/wwcodec.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{d62896a8-4629-11de-b5c2-0016d468bec5}
Shell\AutoRun\Command = E:\imagem.exe
Shell\open\Command = E:\imagem.exe
HKCU\.\.\.\.\Explorer\MountPoints2\{eff946a4-15dc-11dd-b3ef-0016d468bec5}
Shell\AutoRun\Command = wscript.exe .\.vbs
Shell\open\Command = wscript.exe .\.vbs
HKCU\.\.\.\.\Explorer\MountPoints2\{f5ba8ebb-57e8-11dd-b46c-0016d468bec5}
Shell\AutoRun\Command = E:\t.com
Shell\explore\Command = E:\t.com
Shell\open\Command = E:\t.com
HKCU\.\.\.\.\Explorer\MountPoints2\{f5ba8ebd-57e8-11dd-b46c-0016d468bec5}
Shell\AutoRun\Command = E:\t.com
Shell\explore\Command = E:\t.com
Shell\open\Command = E:\t.com

################## | Vaccin |
(!) Este computador não é vacinada!
################## | E.O.F |

________________________________________
Acho que agora achou! E aí como faço para corrigir?
Fabicaio
Fabicaio Novo Membro Registrado
11 Mensagens 0 Curtidas
#12 Por Fabicaio
08/07/2010 - 15:25
############################## | UsbFix 7.016 | [Supressão]
Usuário: Fabiola Machado (Administrador) # FTC-NOT-05 [ ]
Atualizado em 05/07/10 por El Desaparecido / C_XX
Começou em 15:00:39 | 08/07/2010
Site: http://pagesperso-orange.fr/NosTools/index.html
Contato: [EMAIL="FindyKill.Contact@gmail.com"]FindyKill.Contact@gmail.com[/EMAIL]
CPU: Intel(R) Celeron(R) M CPU 420 @ 1.60GHz
Microsoft Windows XP Professional (5.1.2600 32-Bit) # Service Pack 3
Internet Explorer 8.0.6001.18702
Windows Firewall: Habilitado
Antivirus: AntiVir Desktop 9.0.1.32 [(!) Disabled | Updated]
Firewall: COMODO Firewall 3.9 [Enabled]
RAM -> 502 Mb
C:\ (%systemdrive%) -> Disco fixo # 22 Gb (2 Mb livre - 8%) [] # NTFS
D:\ -> Disco fixo # 29 Gb (6 Mb livre - 22%) [] # NTFS
F:\ -> CD-ROM
H:\ -> Disco removível # 4 Gb (1 Mb livre - 37%) [KINGSTON] # FAT32
################## | Ficheiros # pastas infeciosos |
Não supprimido ! C:\Arquivos de programas\GbPlugin
################## | Registro |
Supprimido ! HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\explorer|NoDrives
################## | Mountpoints2 |
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\E
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{28d53b1a-0a12-11df-b725-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{6a2244c4-1123-11df-b731-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{7c6cf762-0c61-11df-b728-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{81b4a815-08df-11dd-b0af-806d6172696f}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{995d6a74-1061-11df-b730-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{b30f856d-7d2b-11dd-b4a4-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{c5640e61-ecb8-11de-b6e8-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{d62896a8-4629-11de-b5c2-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{eff946a4-15dc-11dd-b3ef-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{f5ba8ebb-57e8-11dd-b46c-0016d468bec5}
Supprimido ! HKCU\.\.\.\.\Explorer\MountPoints2\{f5ba8ebd-57e8-11dd-b46c-0016d468bec5}
################## | Listing |
[20/08/2009 - 23:40:53 | D ] C:\1616537e396b83a84317b7e70316f9
[07/07/2010 - 11:30:21 | RD ] C:\Arquivos de programas
[19/04/2010 - 15:47:59 | D ] C:\Arquivos de Programas RFB
[12/04/2008 - 22:52:01 | A | 0] C:\AUTOEXEC.BAT
[30/06/2010 - 09:52:06 | SH | 211] C:\boot.ini
[02/08/2007 - 09:00:00 | RASH | 4952] C:\Bootfont.bin
[07/07/2010 - 11:30:20 | HD ] C:\Config.Msi
[12/04/2008 - 22:52:01 | A | 0] C:\CONFIG.SYS
[12/04/2008 - 22:57:48 | D ] C:\Documents and Settings
[13/04/2008 - 00:59:06 | D ] C:\Intel
[12/04/2008 - 22:52:01 | RASH | 0] C:\IO.SYS
[25/04/2010 - 18:32:24 | A | 50] C:\Levels.mnu
[12/04/2008 - 22:52:01 | RASH | 0] C:\MSDOS.SYS
[12/03/2009 - 01:31:30 | RHD ] C:\MSOCache
[19/06/2010 - 22:36:26 | D ] C:\MyWorks
[02/08/2007 - 09:00:00 | RASH | 47564] C:\NTDETECT.COM
[27/09/2008 - 10:28:09 | RASH | 251696] C:\ntldr
[08/07/2010 - 13:34:58 | ASH | 792723456] C:\pagefile.sys
[05/07/2010 - 09:10:37 | D ] C:\Program Files
[20/12/2009 - 10:58:35 | D ] C:\QUARANTINE
[08/07/2010 - 15:04:17 | SHD ] C:\RECYCLER
[20/11/2009 - 19:14:23 | AH | 268] C:\sqmdata00.sqm
[20/11/2009 - 22:42:47 | AH | 268] C:\sqmdata01.sqm
[21/11/2009 - 10:12:05 | AH | 268] C:\sqmdata02.sqm
[21/11/2009 - 17:39:02 | AH | 268] C:\sqmdata03.sqm
[22/11/2009 - 17:12:52 | AH | 268] C:\sqmdata04.sqm
[22/11/2009 - 21:24:45 | AH | 268] C:\sqmdata05.sqm
[25/11/2009 - 21:56:57 | AH | 268] C:\sqmdata06.sqm
[26/11/2009 - 23:12:52 | AH | 268] C:\sqmdata07.sqm
[07/10/2009 - 00:23:07 | AH | 268] C:\sqmdata08.sqm
[08/10/2009 - 23:13:52 | AH | 268] C:\sqmdata09.sqm
[15/10/2009 - 08:13:44 | AH | 268] C:\sqmdata10.sqm
[15/10/2009 - 22:01:13 | AH | 268] C:\sqmdata11.sqm
[17/10/2009 - 20:06:10 | AH | 268] C:\sqmdata12.sqm
[18/10/2009 - 22:26:43 | AH | 268] C:\sqmdata13.sqm
[19/10/2009 - 22:45:08 | AH | 268] C:\sqmdata14.sqm
[22/10/2009 - 07:39:37 | AH | 268] C:\sqmdata15.sqm
[28/10/2009 - 00:33:20 | AH | 268] C:\sqmdata16.sqm
[16/11/2009 - 21:31:49 | AH | 268] C:\sqmdata17.sqm
[18/11/2009 - 01:28:19 | AH | 268] C:\sqmdata18.sqm
[19/11/2009 - 00:45:40 | AH | 268] C:\sqmdata19.sqm
[20/11/2009 - 19:14:23 | AH | 244] C:\sqmnoopt00.sqm
[20/11/2009 - 22:42:47 | AH | 244] C:\sqmnoopt01.sqm
[21/11/2009 - 10:12:05 | AH | 244] C:\sqmnoopt02.sqm
[21/11/2009 - 17:39:02 | AH | 244] C:\sqmnoopt03.sqm
[22/11/2009 - 17:12:51 | AH | 244] C:\sqmnoopt04.sqm
[22/11/2009 - 21:24:45 | AH | 244] C:\sqmnoopt05.sqm
[25/11/2009 - 21:56:57 | AH | 244] C:\sqmnoopt06.sqm
[26/11/2009 - 23:12:52 | AH | 244] C:\sqmnoopt07.sqm
[07/10/2009 - 00:23:07 | AH | 244] C:\sqmnoopt08.sqm
[08/10/2009 - 23:13:52 | AH | 244] C:\sqmnoopt09.sqm
[15/10/2009 - 08:13:44 | AH | 244] C:\sqmnoopt10.sqm
[15/10/2009 - 22:01:13 | AH | 244] C:\sqmnoopt11.sqm
[17/10/2009 - 20:06:10 | AH | 244] C:\sqmnoopt12.sqm
[18/10/2009 - 22:26:43 | AH | 244] C:\sqmnoopt13.sqm
[19/10/2009 - 22:45:08 | AH | 244] C:\sqmnoopt14.sqm
[22/10/2009 - 07:39:37 | AH | 244] C:\sqmnoopt15.sqm
[28/10/2009 - 00:33:20 | AH | 244] C:\sqmnoopt16.sqm
[16/11/2009 - 21:31:49 | AH | 244] C:\sqmnoopt17.sqm
[18/11/2009 - 01:28:19 | AH | 244] C:\sqmnoopt18.sqm
[19/11/2009 - 00:45:40 | AH | 244] C:\sqmnoopt19.sqm
[12/04/2008 - 22:56:43 | SHD ] C:\System Volume Information
[07/10/2009 - 00:14:43 | D ] C:\Temp
[08/07/2010 - 15:04:17 | D ] C:\UsbFix
[08/07/2010 - 15:04:23 | A | 1049] C:\UsbFix.txt
[07/07/2010 - 11:41:25 | D ] C:\WINDOWS
[09/06/2010 - 15:13:50 | D ] D:\Backup Fabiola
[25/04/2008 - 00:09:39 | D ] D:\Clássicos
[09/06/2010 - 18:19:41 | D ] D:\Meus Documentos
[14/04/2008 - 11:42:37 | D ] D:\PCMCIA and Card Reader
[14/04/2008 - 09:18:31 | D ] D:\Realtek High Definition Audio Driver 6.0.1.5350
[08/07/2010 - 15:04:17 | SHD ] D:\RECYCLER
[14/04/2008 - 06:04:48 | SHD ] D:\System Volume Information
[14/04/2008 - 06:02:51 | D ] D:\VGA_Intel_v6.14.10.4543
[14/04/2008 - 06:01:34 | D ] D:\Winzip 8.1
[11/02/2010 - 14:05:58 | A | 68096] H:\PLANO_DE_TRABALHO_Fabíola.doc
[09/03/2010 - 17:52:52 | D ] H:\FAPEMIG Final
[15/04/2010 - 14:23:14 | D ] H:\FEPALE
[18/01/2010 - 21:25:54 | D ] H:\VOTORANTIM
[16/04/2010 - 16:14:00 | D ] H:\FabíolaILCT
[18/01/2010 - 21:41:42 | D ] H:\Artigo Qualidade
[23/03/2010 - 13:49:48 | A | 747008] H:\RAC 428 Engequisa 20100310.doc
[21/01/2010 - 19:01:54 | A | 19456] H:\princípio do Kjedel.doc
[23/03/2010 - 14:32:18 | A | 842240] H:\PHNA298 01 RAC375 20091217.doc
[26/03/2010 - 17:29:40 | D ] H:\KIT antibióticos
[22/01/2010 - 15:48:04 | D ] H:\Editais
[02/05/2010 - 23:45:38 | D ] H:\FEHLING
[09/05/2010 - 08:44:34 | A | 1554] H:\BOOTEX.LOG
[22/01/2010 - 18:44:02 | A | 36352] H:\Nitrogênio.doc
[14/05/2010 - 15:07:08 | D ] H:\Sistema de Qualidade
[24/01/2010 - 12:11:46 | A | 19456] H:\Incerteza do HI VOL.doc
[18/01/2010 - 20:42:48 | D ] H:\Apresentações
[20/01/2010 - 21:10:38 | D ] H:\Fabíola
[20/01/2010 - 21:10:30 | D ] H:\ILCT
[20/01/2010 - 21:09:06 | D ] H:\Curso Incerteza
[20/01/2010 - 21:00:40 | D ] H:\Arquivos Validação
[18/01/2010 - 20:52:02 | D ] H:\para levar no pen drive
[18/01/2010 - 20:51:56 | D ] H:\Meus Documentos set2009
[18/01/2010 - 20:51:24 | D ] H:\Metrologia 2009
[18/01/2010 - 20:50:48 | D ] H:\Fotos Ap
[18/01/2010 - 20:43:22 | D ] H:\Curso Elaboração de projetos
[14/12/2009 - 20:55:58 | A | 186509] H:\inc curva queenie.pdf
[05/05/2010 - 22:01:04 | A | 15091] H:\casuabril2010.pdf
[28/01/2010 - 18:41:18 | A | 122980] H:\102_Artigo MagLab - site.pdf
[31/05/2010 - 14:53:44 | D ] H:\Aula Sistema de Gestão Mod1
[28/01/2010 - 19:02:14 | A | 92160] H:\Implantação de 17025 no LPLD.doc
[01/02/2010 - 23:08:58 | D ] H:\Segurança Química + Resíduos
[02/02/2010 - 10:43:20 | D ] H:\Aula Segurança
[03/02/2010 - 08:01:56 | RSHD ] H:\RECYCLER
[03/02/2010 - 08:01:58 | RSHD ] H:\OGa
[09/02/2010 - 18:05:04 | A | 1143742] H:\http___www.embrapa.br_publicacoes_institucionais_V PDE.pdf
[18/02/2010 - 16:22:46 | D ] H:\UFJF
[20/02/2010 - 13:13:58 | A | 83523] H:\CETRO - Boleto de Taxa de I...pdf
[26/02/2010 - 00:03:20 | D ] H:\M&G
[09/03/2010 - 17:49:56 | D ] H:\Especificação Paulo Henrique
################## | Vaccin |
C:\Autorun.inf -> Folder criado por UsbFix (El Desaparecido & C_XX)
D:\Autorun.inf -> Folder criado por UsbFix (El Desaparecido & C_XX)
H:\Autorun.inf -> Folder criado por UsbFix (El Desaparecido & C_XX)
© 1999-2025 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal