LIFTOFF A BEBIDA ENERGÉTICA

Me ajudem com SYSTEM32!!!!?
NULLSH.com Jornal de Noticias Interessantes!
Disseram em uma resposta anterior que isso seria um vírus. Gostaria de mais pormenores, uma vez que, toda vez que ligo meu notebook, aparece uma pasta "system32" aberta. Dizer que é um vírus não basta. Gostaria de mais pormenores, como quais tipos de arquivo poderia excluir, ou qual anti-vírus é o mais recomendado para o meu caso,etc... Logfile of HijackThis v1.99.1 Scan saved at 00:02:13, on 10/10/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:WINDOWSSystem32smss.exe C:WINDOWSsystem32csrss.exe C:WINDOWSsystem32winlogon.exe C:WINDOWSsystem32services.exe C:WINDOWSsystem32lsass.exe C:WINDOWSsystem32svchost.exe C:WINDOWSsystem32svchost.exe C:WINDOWSSystem32svchost.exe C:WINDOWSSystem32S24EvMon.exe C:Arquivos de programasSygateSPFsmc.exe C:WINDOWSsystem32CfgSvc.exe C:WINDOWSSystem32svchost.exe C:WINDOWSExplorer.EXE C:WINDOWSSystem32svchost.exe C:ARQUIV~1GrisoftAVGFRE~1avgamsvr.... C:ARQUIV~1GrisoftAVGFRE~1avgupsvc.... C:ARQUIV~1GrisoftAVGFRE~1avgemc.ex... C:ARQUIV~1BorlandINTERB~1Binibgua... C:WINDOWSSystem32RegSrvc.exe C:WINDOWSSystem32RoamMgr.exe C:Arquivos de programasAnalog DevicesSoundMAXSMAgent.exe C:WINDOWSsystem32wdfmgr.exe C:WINDOWSSystem32wbemwmiprvse.exe C:WINDOWSSystem32alg.exe C:WINDOWSSystem32XConfig.exe C:ARQUIV~1BorlandINTERB~1Binibser... C:WINDOWSsystem32wuauclt.exe C:ARQUIV~1WinZipwinzip32.exe C:WINDOWSsystem32spoolsv.exe C:DOCUME~1MPSCONFIG~1TempHijackTh... R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = &http://home.microsoft.com/intl/br/access... R1 - HKCUSoftwareMicrosoftInternet Connection Wizard,ShellNext = http://www.nec-online.com/ O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Arquivos de programasAdobeAcrobat 7.0ActiveXAcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Arquivos de programasJavajre1.5.0_11inssv.dll O2 - BHO: G-Buster Browser Defense - {C41A1C0E-EA6C-11D4-B1B8-444553540000} - C:WINDOWSDownloaded Program Filesgbieh.dll O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:APPSMICROS~1OFFICE11EXCEL.EX... O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Arquivos de programasJavajre1.5.0_11inssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Arquivos de programasJavajre1.5.0_11inssv.dll O9 - Extra button: Pesquisar - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:APPSMICROS~1OFFICE11REFIEBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Arquivos de programasMessengermsmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:Arquivos de programasMessengermsmsgs.exe (file missing) O14 - IERESET.INF: SEARCH_PAGE_URL=&http://home.microsoft.c... O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Share... O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Share... O16 - DPF: {E37CB5F0-51F5-4395-A808-5FA49E399F83} (GbPluginObj Class) - https://www14.bancobrasil.com.br/plugin/... O20 - Winlogon Notify: igfxcui - C:WINDOWSSYSTEM32igfxsrvc.dll O20 - Winlogon Notify: Sebring - C:WINDOWSSystem32LgNotify.dll O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:ARQUIV~1GrisoftAVGFRE~1avgamsvr.ex... O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:ARQUIV~1GrisoftAVGFRE~1avgupsvc.ex... O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:ARQUIV~1GrisoftAVGFRE~1avgemc.exe O23 - Service: InterBaseGuardian - Inprise Corporation - C:ARQUIV~1BorlandINTERB~1Binibguard... O23 - Service: InterBaseServer - Inprise Corporation - C:ARQUIV~1BorlandINTERB~1Binibserve... O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:Arquivos de programasIntelNCSSyncNetSvc.exe O23 - Service: RegSrvc - Intel Corporation - C:WINDOWSSystem32RegSrvc.exe O23 - Service: RoamMgr - Intel Corporation - C:WINDOWSSystem32RoamMgr.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:WINDOWSSystem32S24EvMon.exe O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:Arquivos de programasSygateSPFsmc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:Arquivos de programasAnalog DevicesSoundMAXSMAgent.exe Obrigado

in forum.ipweb.pt

Pagina Principal do IPJornal.com
http://forum.inforpascoa.pt/seguran/1307
23-me-ajudem-com-system32.html
Publicado em 2008/10/10 na categoria Fórum Inforpáscoa