error en registro de window

Responder
sackettxxx
Mensajes: 60
Registrado: 07 Abr 2007, 23:41

error en registro de window

Mensaje por sackettxxx » 18 Mar 2008, 00:38

les cuento mi problema ayer de la nada se apago mi pc y desde ay me comenzo a salir estos errores primero no me abria el office asi k tube k instalarlo de nuevo pero siempre k inicio me sale ese mensaje aki mi log ojala me puedan ayudar :cry:



gracias.





Logfile of HijackThis v1.99.1

Scan saved at 18:33:56, on 17/03/2008

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)



Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\SYSTEM32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\Archivos de programa\HyperTechnologies\Deep Freeze\DfServEx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\RunDll32.exe

C:\WINDOWS\system32\igfxtray.exe

C:\WINDOWS\system32\hkcmd.exe

C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe

C:\Archivos de programa\Winamp\winampa.exe

C:\WINDOWS\CameraFixer.exe

C:\WINDOWS\vsnpstd.exe

C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe

C:\Archivos de programa\iTunes\iTunesHelper.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Archivos de programa\MSN Messenger\MsnMsgr.Exe

C:\ARCHIV~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe

C:\Archivos de programa\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\ARCHIV~1\Yahoo!\MESSEN~1\ymsgr_tray.exe

C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

C:\Archivos de programa\Bonjour\mDNSResponder.exe

C:\WINDOWS\system32\svchost.exe

C:\Archivos de programa\HyperTechnologies\Deep Freeze\_$Df\FrzState.exe

C:\Archivos de programa\iPod\bin\iPodService.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Archivos de programa\Internet Explorer\iexplore.exe

C:\Archivos de programa\WinRAR\WinRAR.exe

C:\DOCUME~1\ADMINI~1\CONFIG~1\Temp\Rar$EX00.703\HijackThis.exe



R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://es.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://es.search.yahoo.com

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_03\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\archivos de programa\google\googletoolbar1.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Archivos de programa\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\archivos de programa\google\googletoolbar1.dll

O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd

O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe

O4 - HKLM\..\Run: [\\Pc-13\EPSON Stylus CX5400] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2G1.EXE /P27 "\\Pc-13\EPSON Stylus CX5400" /O6 "USB001" /M "Stylus CX5400"

O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE ZSMC USB PC Camera

O4 - HKLM\..\Run: [Detectando automáticamente EPSON Stylus CX5400 en PC-11] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2G1.EXE /P55 "Detectando automáticamente EPSON Stylus CX5400 en PC-11" /O16 "\\PC-11\EPSONSty" /M "Stylus CX5400"

O4 - HKLM\..\Run: [\\Pc-11\EPSON Stylus CX5400] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2G1.EXE /P27 "\\Pc-11\EPSON Stylus CX5400" /O6 "USB001" /M "Stylus CX5400"

O4 - HKLM\..\Run: [EPSON Stylus CX5400] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2G1.EXE /P19 "EPSON Stylus CX5400" /O6 "USB001" /M "Stylus CX5400"

O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe

O4 - HKLM\..\Run: [Ink Monitor] C:\Archivos de programa\EPSON\Ink Monitor\InkMonitor.exe

O4 - HKLM\..\Run: [WinampAgent] "C:\Archivos de programa\Winamp\winampa.exe"

O4 - HKLM\..\Run: [CameraFixer] C:\WINDOWS\CameraFixer.exe

O4 - HKLM\..\Run: [snpstd] C:\WINDOWS\vsnpstd.exe

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Archivos de programa\Java\jre1.6.0_03\bin\jusched.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [MsnMsgr] "C:\Archivos de programa\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [Yahoo! Pager] "C:\ARCHIV~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet

O4 - HKCU\..\Run: [swg] C:\Archivos de programa\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [amva] C:\WINDOWS\system32\amvo.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Archivos de programa\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: Add to AMV Converter... - C:\Archivos de programa\MP3 Player Utilities 4.03\AMVConverter\grab.html

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~2\Office10\EXCEL.EXE/3000

O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Archivos de programa\MP3 Player Utilities 4.03\MediaManager\grab.html

O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL (file missing)

O10 - Unknown file in Winsock LSP: c:\archivos de programa\bonjour\mdnsnsp.dll

O16 - DPF: {5F5F9FB8-878E-4455-95E0-F64B2314288A} (ijjiPlugin2 Class) - http://gamedownload.ijjimax.com/gamedownload/dist/hgstart/HGPlugin11USA.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1196040930875

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: DfLogon - C:\WINDOWS\SYSTEM32\LogonDll.dll

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll

O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Archivos de programa\Archivos comunes\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Archivos de programa\Ares\chatServer.exe

O23 - Service: Servicio Bonjour (Bonjour Service) - Apple Inc. - C:\Archivos de programa\Bonjour\mDNSResponder.exe

O23 - Service: DFServEx - Hyper Technologies Inc. - C:\Archivos de programa\HyperTechnologies\Deep Freeze\DfServEx.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Archivos de programa\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe
[attachment=1]error.JPG[/attachment][attachment=0]error2.JPG[/attachment]
Adjuntos
error2.JPG
error.JPG

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: error en registro de window

Mensaje por msc hotline sat » 18 Mar 2008, 06:55

Tienes un malware de la familia ONLINE GAMES en este ordenador:



C:\WINDOWS\system32\amvo.exe



Prueba el ELISTARA :


[quote="para DESCARGAR el ELISTARA, msc"] http://www.zonavirus.com/descargas/elistara.asp



Tras probarlo, reiniciar y postearnos el contenido de C:\infosat.txt para ver el resultado del proceso [/quote]


SALUDOS



MS, 18-03-2008

sackettxxx
Mensajes: 60
Registrado: 07 Abr 2007, 23:41

Re: error en registro de window

Mensaje por sackettxxx » 22 Mar 2008, 17:08

pase el elsitra me borro el anterior error pero aun sigue este k postare de imagen





Sat Mar 22 10:55:54 2008

EliStartPage v15.90 (c)2008 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Entrada Eliminada [HKCU\...\Run] "amva"="C:\WINDOWS\system32\amvo.exe"

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



Sat Mar 22 10:56:04 2008

EliStartPage v15.90 (c)2008 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando Unidad C:\

C:\3O.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\WINDOWS\system32\Tools\COUNTER.EXE --> Eliminado, Restart

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033837.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033838.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033846.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033847.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033848.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033849.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033891.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033894.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP224\A0033895.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP225\A0033898.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP225\A0033899.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP226\A0033913.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP226\A0033914.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP227\A0034345.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP227\A0034346.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP228\A0034350.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP228\A0034351.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP229\A0034358.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP229\A0034359.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP230\A0034365.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP230\A0034366.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP231\A0034369.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP231\A0034370.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP232\A0034374.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP232\A0034375.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP233\A0034380.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP233\A0034381.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP234\A0034572.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP234\A0034573.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP235\A0034577.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP235\A0034578.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP235\A0034585.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP235\A0034588.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP235\A0034589.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP235\A0034592.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP236\A0034595.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP236\A0034596.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP236\A0034665.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP236\A0034666.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP237\A0034673.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP237\A0034674.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP239\A0034681.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP239\A0034683.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP240\A0034690.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP240\A0034691.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP240\A0034701.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP240\A0034702.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP240\A0034703.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP241\A0034706.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP241\A0034707.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP242\A0034712.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP242\A0034713.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP243\A0034716.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP243\A0034717.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP244\A0034725.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP244\A0034726.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP244\A0034732.CMD --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP245\A0034734.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP245\A0034735.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP245\A0034900.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP245\A0034901.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP245\A0034902.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP246\A0034905.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP246\A0034906.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP247\A0034911.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP247\A0034912.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP248\A0034916.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP248\A0034917.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP249\A0034921.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP249\A0034922.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP250\A0034926.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP250\A0034927.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034931.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034932.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034941.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034942.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034943.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034961.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034962.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP251\A0034963.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP252\A0034986.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP252\A0034987.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP253\A0034991.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP253\A0034992.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP254\A0034996.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP254\A0034997.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP254\A0036014.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP254\A0036015.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP254\A0036016.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP255\A0036019.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP255\A0036020.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP256\A0036031.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP256\A0036032.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP256\A0036628.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP256\A0036629.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP256\A0036630.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP257\A0036635.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP257\A0036636.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0036640.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0036641.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0036666.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0036667.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0036668.DLL --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0036669.INF --> Eliminado, PWS-OnLineGames.AMVO(inf)

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0037663.EXE --> Eliminado, PWS-OnLineGames.AMVO

C:\System Volume Information\_restore{C965FB75-7AAE-4654-84A5-EA64F20D98AC}\RP258\A0037664.EXE --> Eliminado, Restart

C:\QooBox\Quarantine\C\WINDOWS\system32\AMVO.EXE.VIR --> Eliminado, PWS-OnLineGames.AMVO

C:\QooBox\Quarantine\C\WINDOWS\system32\AMVO0.DLL.VIR --> Eliminado, PWS-OnLineGames.AMVO

C:\QooBox\Quarantine\C\WINDOWS\system32\AMVO1.DLL.VIR --> Eliminado, PWS-OnLineGames.AMVO



Nº Total de Directorios: 3787

Nº Total de Ficheros: 54407

Nº de Ficheros Analizados: 10830

Nº de Ficheros Infectados: 111

Nº de Ficheros Limpiados: 111
Adjuntos
error.JPG

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: error en registro de window

Mensaje por msc hotline sat » 22 Mar 2008, 18:06

Pues vaya infeccion hizo esta variante del ONLINE GAME en tu ordenador !



Parece que ha acabado con ella, pero igual alguna aplicacion ha quedado dañada, en tal caso, si persiste el mensajito de marras, prueba de desinstalarla y luego vuelves a instalarla.



Por ptra parte, esta familia de virus se propaga por pendrives, asi que mejor vacune su ordenador contra la entrada de virus por dicho medio, asi como procese los pendrives con la misma utilidad al respecto:


[quote="para DESCARGAR el ELIPEN, msc"] http://www.zonavirus.com/descargas/elipen.asp



Tras probarlo, reiniciar y postearnos el contenido de C:\infosat.txt para ver el resultado del proceso [/quote]




saludos



ms, 22-03-2008

Responder

Volver a “Foro Virus - Cuentanos tu problema”