Avast WEBforum

Non-English Zone => Português => Topic started by: LucasHBV on December 08, 2011, 03:36:48 AM

Title: "Uma ameaça foi detectada" quinhentas vezes.
Post by: LucasHBV on December 08, 2011, 03:36:48 AM
Por favor, me ajudem.

Tudo começou quando eu recebi um email para atualizar o flash player.
Depois disso toda hora que eu entro no google chrome ou IE, sempre aparece uns 4
avisos de ameaça detectada, cavalo de troia, eu ja fiz a escaneamento completo do sistema uma vez
e achou o virus, eu deletei, fiz de novo, naum achou nada, mas ainda aparece o aviso.

Aparece que ta infectado o SYSTEM32 um arquivo SVCHOST um quase igual a esse no chrome.exe e internet.exe.

Ja naum aguento mais  >:(

Se alguem me ajudar eu ficaria muito grato.
Title: Re: "Uma ameaça foi detectada" quinhentas vezes.
Post by: Lisandro on December 08, 2011, 02:00:10 PM
Existe um vírus circulando com a atualização do flash.
Você pode me seguir em inglês?

1. Clean your temporary files.
2. Schedule a boot time scanning with avast with archive scanning turned on. If avast does not detect it, you can try DrWeb CureIT! (http://www.freedrweb.com/cureit/) instead.
3. Use Comodo Cleaning Essentials (CCE) (http://www.comodo.com/business-security/network-protection/cleaning_essentials.php), or MBAM (http://malwarebytes.org/mbam.php), or SUPERantispyware (http://www.superantispyware.com) to scan for spywares and trojans. If any infection is detected, it is better and safer to send the infected file(s) to quarantine (Chest), rather than simply deleting them.
4. Test your machine with anti-rootkit applications (http://www.antirootkit.com/software/index.htm). I suggest avast! antirootkit (http://files.avast.com/files/beta/aswar.exe) or Trend Micro RootkitBuster (http://www.trendmicro.com/download/rbuster.asp).
5. Read these instructions (http://forum.avast.com/index.php?topic=53253.msg451454#msg451454) and provide more info with the logs generated. But, please, do NOT post there, open a NEW thread for your specific problem and help us to help you.
6. Clean your Hosts file (replacing it) with HostsMan (http://www.abelhadigital.com) tool.
7. Disable System Restore and then reenable it again.
8. Immunize your system with SpywareBlaster (http://www.javacoolsoftware.com/spywareblaster.html).
9. Check if you have insecure applications with Secunia Software Inspector (http://secunia.com/software_inspector/).

If the infection avoids booting the computer, take a look here http://forum.avast.com/index.php?topic=79107.0
Title: Re: "Uma ameaça foi detectada" quinhentas vezes.
Post by: Lisandro on December 08, 2011, 02:20:25 PM
Talvez seja isto: https://forums.comodo.com/news-announcements-feedback-cis/allegation-of-comodo-defence-plus-byapssed-by-zeroaccess-rootkit-t79079.0.html;msg567345#msg567345