Thank you for your help.
I attach the report files.
The computer seems to be a little more stable and quicker.
Happy new year!
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Monday, December 31, 2007 8:18:25 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 30/12/2007
Kaspersky Anti-Virus database records: 500302
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
Scan Statistics:
Total number of scanned objects: 91480
Number of viruses found: 28
Number of infected objects: 44
Number of suspicious objects: 0
Duration of the scan process: 02:01:30
Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-03092007-181316.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Works\Portfolio\Exemplo.wsb Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20071231_Time-143042882_EnterceptExceptions.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\BOPDATA\_Date-20071231_Time-143042882_EnterceptRules.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\Agent_ARTALOYTIA.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\Common Framework\Db\PrdMgr_ARTALOYTIA.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\AccessProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\BufferOverflowProtectionLog.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Network Associates\VirusScan\OnAccessScanLog.txt Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\ApplicationHistory\hpqimzone.exe.7a91f615.ini.inuse Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbc2e.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbdam Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbdao Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbeam Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbeao Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbm Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbu2d.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbvm.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\dbvmh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\fii.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\fiih.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\hp Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\hpt2i.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\rpm.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\rpm1m.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\rpm1mh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\rpmh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-black-enchashm.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-black-enchashmh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-black-urlm.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-black-urlmh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-malware-domainm.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-malware-domainmh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-white-domainm.cf1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Google\Google Desktop\c3c873dd0359\safeweb\goog-white-domainmh.ht1 Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\administrativeInfo.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\albumImagesTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\albumImagesTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\albumTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\albumTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\CB_Server_Errors.txt Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\EXIFTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\EXIFTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\imageTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\imageTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\imageTable.fpt Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\keywordImagesTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\keywordImagesTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\keywordTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\keywordTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\managedFolderTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\pathnameTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\pathnameTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\propertiesTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\propertiesTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\ROFImagesTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\ROFImagesTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\ROFTable.cdx Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\HP\Digital Imaging\db\ROFTable.dbf Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Histórico\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Temp\ mon006.log Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Temp\hpodvd09.log Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Temp\~DF79C8.tmp Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Temp\~DF9513.tmp Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Definições locais\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\Internet Optimizer\update\actalert.exe Infected: Trojan-Downloader.Win32.Dyfuca.ez skipped
C:\Documents and Settings\Augusto Artaloytia\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Augusto Artaloytia\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Definições locais\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Definições locais\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Definições locais\Histórico\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Definições locais\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Definições locais\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Definições locais\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Programas\HP\hpcoretech\hpcmerr.log Object is locked skipped
C:\Programas\Norton AntiVirus\Quarantine\0AE75EBB.exe Infected: Net-Worm.Win32.Padobot.n skipped
C:\Programas\Norton AntiVirus\Quarantine\0D6703FA.exe Infected: Net-Worm.Win32.Padobot.m skipped
C:\Programas\Norton AntiVirus\Quarantine\10DB34A9 Infected: Net-Worm.Win32.Padobot.m skipped
C:\Programas\Norton AntiVirus\Quarantine\3BD07A86 Infected: Trojan-Downloader.BAT.Ftp.c skipped
C:\Programas\Norton AntiVirus\Quarantine\4F0E2D3C Infected: Trojan-Downloader.Win32.IstBar.gen skipped
C:\Programas\Norton AntiVirus\Quarantine\522627F2.dat Infected: Net-Worm.Win32.Padobot.r skipped
C:\Programas\Norton AntiVirus\Quarantine\58A00E3C Infected: Net-Worm.Win32.Padobot.r skipped
C:\Programas\Norton AntiVirus\Quarantine\625838B1 Infected: Net-Worm.Win32.Padobot.n skipped
C:\Programas\Norton AntiVirus\Quarantine\66F43C78 Infected: Trojan-Downloader.BAT.Ftp.c skipped
C:\Programas\Norton AntiVirus\Quarantine\691A2541 Infected: not-a-virus:AdWare.Win32.180Solutions skipped
C:\Programas\Norton AntiVirus\Quarantine\691E4F3D Infected: Trojan-Downloader.Win32.Dyfuca.gen skipped
C:\Programas\Norton AntiVirus\Quarantine\69274D32 Infected: Trojan-Downloader.Win32.IstBar.gen skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\01073440.dll Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.2006 skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\04513EB9.exe Infected: Trojan-Proxy.Win32.Ranky.aw skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\05F012F1.bat Infected: Trojan-Proxy.Win32.Ranky.aw skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\088A0813.bat Infected: Trojan-Proxy.Win32.Ranky.aw skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\08BE27DA.exe Infected: Trojan-Downloader.Win32.IstBar.kp skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\08BE27DA.ocx Infected: not-a-virus:Porn-Dialer.Win32.Creazione.w skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\08C151D6.exe Infected: Trojan-Downloader.Win32.Dyfuca.ei skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\08C151D6.tmp Infected: Trojan.Win32.Small.cy skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\2E170345.exe Infected: Trojan-Downloader.Win32.VB.ft skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\322D63B0.exe Infected: Backdoor.Win32.Rbot.aeu skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\37F07A2F.exe Infected: Trojan-Dropper.Win32.WinAD.c skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\4EE80E73.exe Infected: Trojan-Downloader.Win32.VB.ft skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5015285A.exe Infected: Trojan-Proxy.Win32.Ranky.aw skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\50195257.EXE Infected: Backdoor.Win32.IRCBot.az skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\50C51E98.exe Infected: Backdoor.Win32.Rbot.adf skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\50C84894.exe Infected: Backdoor.Win32.Wootbot.u skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5E734864.exe Infected: Trojan-Downloader.Win32.IstBar.gen skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5E767261.exe Infected: Trojan-Downloader.Win32.IstBar.go skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5E7A1C5D.exe Infected: Trojan-Downloader.Win32.IstBar.gm skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5E7D465A.dll Infected: Trojan-Downloader.Win32.Dyfuca.gen skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5E7D465A.exe Infected: Trojan-Downloader.Win32.Dyfuca.du skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\5E807056.dll Infected: not-a-virus:AdWare.Win32.SideFind skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\63E9765C.exe Infected: Trojan-Downloader.Win32.IstBar.gen skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\63E9765C.ocx Infected: not-a-virus:Porn-Dialer.Win32.Creazione.l skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\649927B0.exe Infected: Trojan-Downloader.Win32.IstBar.ij skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\7DB8582E.dll Infected: not-a-virus:AdWare.Win32.SideFind skipped
C:\Programas\Norton SystemWorks\Norton AntiVirus\Quarantine\7DB8582E.exe Infected: Trojan-Downloader.Win32.Dyfuca.du skipped
C:\qoobox\Quarantine\catchme2007-12-19_181717.23.zip/qopqo.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dhc skipped
C:\qoobox\Quarantine\catchme2007-12-19_181717.23.zip ZIP: infected - 1 skipped
C:\QUARANTINE\index[1].htm.Vir Infected: Exploit.HTML.IESlice.aj skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{92A0214A-739A-4C8D-83A2-6846DA8A132B}\RP386\A0074510.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.dhc skipped
C:\System Volume Information\_restore{92A0214A-739A-4C8D-83A2-6846DA8A132B}\RP401\change.log Object is locked skipped
C:\WINDOWS\$NtUninstallKB824141$\user32.dll Object is locked skipped
C:\WINDOWS\$NtUninstallKB824141$\win32k.sys Object is locked skipped
C:\WINDOWS\$NtUninstallKB828035$\msgsvc.dll Object is locked skipped
C:\WINDOWS\$NtUninstallKB828035$\wkssvc.dll Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{CA9D1A55-FBA9-42ED-9DFC-07645E0B8E6D}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
Scan process completed.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:22:25, on 31-12-2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Programas\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Programas\Ficheiros comuns\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Programas\Software WIDCOMM\Bluetooth\bin\btwdins.exe
C:\Programas\Network Associates\Common Framework\FrameworkService.exe
C:\Programas\Network Associates\VirusScan\Mcshield.exe
C:\Programas\Network Associates\VirusScan\VsTskMgr.exe
C:\Programas\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Programas\Java\j2re1.4.2_03\bin\jusched.exe
C:\Programas\Synaptics\SynTP\SynTPLpr.exe
C:\Programas\Synaptics\SynTP\SynTPEnh.exe
C:\Programas\Microsoft Works\WksSb.exe
C:\Programas\HP\Digital Imaging\Unload\hpqcmon.exe
C:\Programas\HP\HP Share-to-Web\hpgs2wnd.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
C:\Programas\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\System32\hphmon05.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Programas\Google\Google Desktop Search\GoogleDesktop.exe
C:\Programas\Network Associates\VirusScan\SHSTAT.EXE
C:\Programas\HP\HP Share-to-Web\hpgs2wnf.exe
C:\Programas\Network Associates\Common Framework\UpdaterUI.exe
C:\Programas\Ficheiros comuns\Network Associates\TalkBack\TBMon.exe
C:\Programas\Windows Defender\MSASCui.exe
C:\Programas\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Programas\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programas\Google\Google Desktop Search\GoogleDesktop.exe
C:\Programas\Software WIDCOMM\Bluetooth\BTTray.exe
C:\Programas\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Programas\Ficheiros comuns\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Programas\iPod\bin\iPodService.exe
C:\Programas\Hewlett-Packard\Digital Imaging\bin\hpqimzone.exe
C:\WINDOWS\system32\notepad.exe
C:\Programas\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Programas\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.pt/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hiperligações
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programas\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Programas\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Programas\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Programas\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Programas\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Programas\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [WorksFUD] C:\Programas\Microsoft Works\wkfud.exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Programas\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Programas\Microsoft Works\WkDetect.exe
O4 - HKLM\..\Run: [CamMonitor] C:\Programas\HP\Digital Imaging\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Programas\HP\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
O4 - HKLM\..\Run: [HPHUPD05] C:\Programas\Hewlett-Packard\{D946675D-1D6C-4dc8-9E0D-B4B8EAA30EAA}\hphupd05.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Programas\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Programas\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ShStatEXE] "C:\Programas\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Programas\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Programas\Ficheiros comuns\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Programas\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [HP Software Update] C:\Programas\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Programas\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Programas\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [VoipBuster] "C:\Programas\VoipBuster.com\VoipBuster\VoipBuster.exe" -nosplash -minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVIÇO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Serviço de rede')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHEI~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHEI~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Programas\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Programas\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Inicialização rápida do HP Image Zone.lnk = C:\Programas\Hewlett-Packard\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Lembretes do calendário do Microsoft Works.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Programas\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Programas\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Enviar para &Bluetooth - C:\Programas\Software WIDCOMM\Bluetooth\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programas\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programas\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programas\Software WIDCOMM\Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Programas\Software WIDCOMM\Bluetooth\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: PokerStars.net - {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Programas\PokerStars.NET\PokerStarsUpdate.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programas\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programas\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.hp.com
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) -
http://zone.msn.com/binFrameWork/v10...I.cab55579.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/eng/par...an_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) -
http://zone.msn.com/BinFrameWork/v10...y.cab55579.cab
O16 - DPF: {3DC2E31C-371A-4BD3-9A27-CDF57CE604CF} -
http://moneycentral.msn.com/cabs/pmupd806.exe
O16 - DPF: {410A8B3C-7CCB-40E8-8B11-28B099E5C488} (Trend Micro Security Services Control) -
http://tmss.trendmicro.com/Dashboard...MSSReportW.CAB
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) -
http://zone.msn.com/binframework/v10...t.cab55579.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupdate.microsoft.co...?1110715811535
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) -
http://download.divx.com/webplayer/s...wserPlugin.cab
O16 - DPF: {95B5D20C-BD31-4489-8ABF-F8C8BE748463} (MSN Games – Hearts) -
http://zone.msn.com/bingame/zpagames...z.cab67031.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} (MSN Games – Texas Holdem Poker) -
http://zone.msn.com/bingame/zpagames...e.cab60231.cab
O16 - DPF: {9E98E84C-79E1-49C3-82EB-798FCD552EFB} -
http://advnt01.com/dialer/internazionale_ver4.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com/download/Ms...Downloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) -
http://cdn2.zone.msn.com/binFramewor...o.cab56649.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) -
http://zone.msn.com/binframework/v10...y.cab55579.cab
O16 - DPF: {FF3C5A9F-5A91-4930-80E8-4709194C2AD3} (CheckersZPA Object) -
http://zone.msn.com/bingame/zpagames...A.cab55579.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHEI~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Programas\Ficheiros comuns\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Programas\Software WIDCOMM\Bluetooth\bin\btwdins.exe
O23 - Service: GoogleDesktopManager - Google - C:\Programas\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: iPod Service - Apple Inc. - C:\Programas\iPod\bin\iPodService.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Programas\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Programas\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Programas\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Programas\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 11747 bytes