virus en mis documentos

Responder
ELHESUS
Mensajes: 10
Registrado: 02 Abr 2007, 03:47
Ubicación: TIJUANA
Contactar:

virus en mis documentos

Mensaje por ELHESUS » 28 Abr 2007, 23:07

hola amigos ,el problema que tengo es de la carpeta de mis documentos no la puedo abrir, al parecer descarge un virus ahi.cuando le hago clik a mis documentos la pantalla se reinicia y no entra



ya Pase estos 2 antivirus online



AV Online:

https://www.eset.es/analisis-online/

dio lo siguiente :

(en este no detecto nada)(Scan Completed. 49573 files scanned. No viruses found.)





NanoScan:

https://www.pandasecurity.com/spain/homeusers/solutions/online-antivirus//

dio lo siguiente:

desinfecte unos adware

Cookie/Go Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...ult\cookies.txt[.go.com/]

Cookie/Casalem... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...es.txt[.casalemedia.com/]

C:\Documents and Settings...es.txt[.casalemedia.com/]

C:\Documents and Settings...es.txt[.casalemedia.com/]

C:\Documents and Settings...es.txt[.casalemedia.com/]

Cookie/cs.sexc... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

C:\Documents and Settings....txt[.cs.sexcounter.com/]

Cookie/SexList Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...ookies.txt[.sexlist.com/]

C:\Documents and Settings...ookies.txt[.sexlist.com/]

Cookie/onestat... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...es.txt[stat.onestat.com/]

C:\Documents and Settings...es.txt[stat.onestat.com/]

Cookie/Doublec... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...es.txt[.doubleclick.net/]

adware/savenow Adware Latente Ver + Info No desinfectable

hkey_local_machine\software\classes\wusn.1

Cookie/HotLog Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...\cookies.txt[.hotlog.ru/]

Cookie/PointRo... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings....txt[.ads.pointroll.com/]

C:\Documents and Settings....txt[.ads.pointroll.com/]

C:\Documents and Settings....txt[.ads.pointroll.com/]

C:\Documents and Settings....txt[.ads.pointroll.com/]

Cookie/Overtur... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings....txt[.perf.overture.com/]

Cookie/adultfr... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...[.adultfriendfinder.com/]

C:\Documents and Settings...[.adultfriendfinder.com/]

Cookie/ademail... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...s.txt[.www.ademails.com/]

Cookie/Fortune... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...es.txt[.fortunecity.com/]

Cookie/Com.com Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...lt\cookies.txt[.com.com/]

Cookie/FastCli... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...kies.txt[.fastclick.net/]

C:\Documents and Settings...kies.txt[.fastclick.net/]

Cookie/Tribalf... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...s.txt[.tribalfusion.com/]

Cookie/Azjmp Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...\cookies.txt[.azjmp.com/]

Cookie/2o7 Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

C:\Documents and Settings...lt\cookies.txt[.2o7.net/]

Cookie/SpyLog Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...cookies.txt[.spylog.com/]

Cookie/Tradedo... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...s.txt[.tradedoubler.com/]

Cookie/Weboram... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...ookies.txt[.weborama.fr/]

C:\Documents and Settings...ookies.txt[.weborama.fr/]

C:\Documents and Settings...ookies.txt[.weborama.fr/]

Cookie/Questio... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...txt[.questionmarket.com/]

C:\Documents and Settings...txt[.questionmarket.com/]

Cookie/Yadro Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...t\cookies.txt[.yadro.ru/]

Cookie/Overtur... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...okies.txt[.overture.com/]

C:\Documents and Settings...okies.txt[.overture.com/]

C:\Documents and Settings...okies.txt[.overture.com/]

adware/statbla... Adware Latente Ver + Info No desinfectable

hkey_classes_root\clsid\{...9-4ddc-b661-c1afb9f5ae53}

Cookie/Zedo Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...t\cookies.txt[.zedo.com/]

C:\Documents and Settings...t\cookies.txt[.zedo.com/]

C:\Documents and Settings...t\cookies.txt[.zedo.com/]

Cookie/YieldMa... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...txt[ad.yieldmanager.com/]

C:\Documents and Settings...txt[ad.yieldmanager.com/]

C:\Documents and Settings...txt[ad.yieldmanager.com/]

C:\Documents and Settings...txt[ad.yieldmanager.com/]

C:\Documents and Settings...txt[ad.yieldmanager.com/]

Cookie/RealMed... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...kies.txt[.realmedia.com/]

C:\Documents and Settings...kies.txt[.realmedia.com/]

Cookie/Server.... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...rver.iad.liveperson.net/]

C:\Documents and Settings...veperson.net/hc/18766632]

Cookie/Statcou... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...es.txt[.statcounter.com/]

C:\Documents and Settings...es.txt[.statcounter.com/]

C:\Documents and Settings...es.txt[.statcounter.com/]

C:\Documents and Settings...es.txt[.statcounter.com/]

C:\Documents and Settings...es.txt[.statcounter.com/]

C:\Documents and Settings...es.txt[.statcounter.com/]

Cookie/bravene... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...okies.txt[.bravenet.com/]

Cookie/Traffic... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...kies.txt[.trafficmp.com/]

C:\Documents and Settings...kies.txt[.trafficmp.com/]

Cookie/Atwola Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...cookies.txt[.atwola.com/]

Cookie/fe.lea.... Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...ies.txt[fe.lea.lycos.es/]

Cookie/888 Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...lt\cookies.txt[.888.com/]

C:\Documents and Settings...lt\cookies.txt[.888.com/]

Cookie/Xiti Cookie espía Latente Ver + Info Desinfectado

C:\Documents and Settings...t\cookies.txt[.xiti.com/]

adware/sbsoft Adware Latente Ver + Info No desinfecta









HijackThis:



http://www.zonavirus.com/descargas/trendmicro-hijackthis.asp

dio lo siguiente.

Logfile of HijackThis v1.99.1

Scan saved at 12:44:11, on 28/04/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)



Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\csrss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Archivos de programa\McAfee\MBK\MBackMonitor.exe

C:\Archivos de programa\Archivos comunes\McAfee\HackerWatch\HWAPI.exe

C:\ARCHIV~1\McAfee\MSC\mcmscsvc.exe

c:\archivos de programa\archivos comunes\mcafee\mna\mcnasvc.exe

C:\ARCHIV~1\McAfee\VIRUSS~1\mcods.exe

C:\ARCHIV~1\McAfee\MSC\mcpromgr.exe

c:\ARCHIV~1\ARCHIV~1\mcafee\mcproxy\mcproxy.exe

c:\ARCHIV~1\ARCHIV~1\mcafee\redirsvc\redirsvc.exe

C:\ARCHIV~1\McAfee\VIRUSS~1\mcshield.exe

C:\ARCHIV~1\McAfee\VIRUSS~1\mcsysmon.exe

C:\Archivos de programa\McAfee\MPF\MPFSrv.exe

C:\ARCHIV~1\McAfee\MPS\mps.exe

C:\Archivos de programa\McAfee\MSK\MskSrver.exe

C:\Archivos de programa\SiteAdvisor\6066\SAService.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\alg.exe

C:\ARCHIV~1\mcafee.com\agent\mcagent.exe

C:\Archivos de programa\McAfee\MPS\mpsevh.exe

C:\WINDOWS\stsystra.exe

C:\Archivos de programa\Mcafee\MWL\MWLGui.exe

C:\Archivos de programa\SiteAdvisor\6066\SiteAdv.exe

C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe

C:\Archivos de programa\McAfee\MBK\McAfeeDataBackup.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Archivos de programa\MSN Messenger\msnmsgr.exe

C:\Archivos de programa\Mcafee\MWL\MwlSvc.exe

C:\Archivos de programa\MSN Messenger\usnsvc.exe

C:\Archivos de programa\Ares\Ares.exe

C:\Archivos de programa\Mozilla Firefox\firefox.exe

C:\WINDOWS\explorer.exe

C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Archivos de programa\Internet Explorer\IEXPLORE.EXE

C:\Archivos de programa\Windows Live Toolbar\msn_sl.exe

C:\Documents and Settings\Administrador\Escritorio\HijackThis.exe



R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.t1msn.com.mx/0SEESMX/SAOS01?FORM=TOOLBR

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.t1msn.com.mx/0SEESMX/SAOS01?FORM=TOOLBR

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.windowsue.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.windowsue.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.windowsue.com

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.t1msn.com.mx/0SEESMX/SAOS01?FORM=TOOLBR

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer proporcionado por Windows uE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Archivos de programa\SiteAdvisor\6066\SiteAdv.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\ARCHIV~1\MICROS~1\Office12\GRA8E1~1.DLL

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0\bin\ssv.dll

O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\ARCHIV~1\mcafee\VIRUSS~1\scriptcl.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\Windows Live Toolbar\msntb.dll

O2 - BHO: McAfee Popup Blocker - {C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53} - c:\archivos de programa\mcafee\mps\mcpopup.dll

O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\Windows Live Toolbar\msntb.dll

O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Archivos de programa\SiteAdvisor\6066\SiteAdv.dll

O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe

O4 - HKLM\..\Run: [MWLExe] C:\Archivos de programa\Mcafee\MWL\MWLGui.exe /Start

O4 - HKLM\..\Run: [SiteAdvisor] C:\Archivos de programa\SiteAdvisor\6066\SiteAdv.exe

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [McAfee Backup] C:\Archivos de programa\McAfee\MBK\McAfeeDataBackup.exe

O4 - HKLM\..\Run: [MBkLogOnHook] C:\Archivos de programa\McAfee\MBK\LogOnHook.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [msnmsgr] "C:\Archivos de programa\MSN Messenger\msnmsgr.exe" /background

O4 - Startup: Recorte de pantalla e Inicio rápido de OneNote 2007.lnk = C:\Archivos de programa\Microsoft Office\Office12\ONENOTEM.EXE

O8 - Extra context menu item: &Windows Live Search - res://C:\Archivos de programa\Windows Live Toolbar\msntb.dll/search.htm

O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~1\Office12\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.6.0\bin\ssv.dll

O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\ARCHIV~1\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\ARCHIV~1\MICROS~1\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~1\Office12\REFIEBAR.DLL

O9 - Extra button: Barra de búsqueda de Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O11 - Options group: [INTERNATIONAL] International*

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.mail.live.com/mail/w1/resources/MSNPUpld.cab

O16 - DPF: {512FC5A1-7DE1-43F1-BC0C-371622FCB409} (Installer Class) - https://www.pandasecurity.com/spain/homeusers/solutions/online-antivirus//as/v1/cabs/ascinstie.cab

O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab

O16 - DPF: {8436FE12-31DB-48BF-83BF-FE682F9160B4} (NanoInstaller Class) - https://www.pandasecurity.com/spain/homeusers/solutions/online-antivirus//cabs/nanoinst.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\ARCHIV~1\MICROS~1\Office12\GR99D3~1.DLL

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Help\hxds.dll

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\ARCHIV~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Archivos de programa\SiteAdvisor\6066\SiteAdv.dll

O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Archivos de programa\Ares\chatServer.exe

O23 - Service: Autodesk Licensing Service - Autodesk - C:\Archivos de programa\Archivos comunes\Autodesk Shared\Service\AdskScSrv.exe

O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\ARCHIV~1\ARCHIV~1\McAfee\EmProxy\emproxy.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Archivos de programa\Archivos comunes\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: MBackMonitor - McAfee - C:\Archivos de programa\McAfee\MBK\MBackMonitor.exe

O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Archivos de programa\Archivos comunes\McAfee\HackerWatch\HWAPI.exe

O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\ARCHIV~1\McAfee\MSC\mcupdmgr.exe

O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\ARCHIV~1\McAfee\MSC\mcmscsvc.exe

O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\archivos de programa\archivos comunes\mcafee\mna\mcnasvc.exe

O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\ARCHIV~1\McAfee\VIRUSS~1\mcods.exe

O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\ARCHIV~1\McAfee\MSC\mcpromgr.exe

O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\ARCHIV~1\ARCHIV~1\mcafee\mcproxy\mcproxy.exe

O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\ARCHIV~1\ARCHIV~1\mcafee\redirsvc\redirsvc.exe

O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\ARCHIV~1\McAfee\VIRUSS~1\mcshield.exe

O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\ARCHIV~1\McAfee\VIRUSS~1\mcsysmon.exe

O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Archivos de programa\McAfee\MPF\MPFSrv.exe

O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\ARCHIV~1\McAfee\MPS\mps.exe

O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Archivos de programa\McAfee\MSK\MskSrver.exe

O23 - Service: McAfee Wireless Network Security Service (MWLSvc) - McAfee, Inc. - C:\Archivos de programa\Mcafee\MWL\MwlSvc.exe

O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Archivos de programa\Archivos comunes\Sonic Shared\RoxioUPnPRenderer9.exe

O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Archivos de programa\Archivos comunes\Sonic Shared\RoxioUpnpService9.exe

O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Archivos de programa\Archivos comunes\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe

O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Archivos de programa\SiteAdvisor\6066\SAService.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Archivos de programa\Archivos comunes\SureThing Shared\stllssvr.exe

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Mensaje por msc hotline sat » 29 Abr 2007, 09:20

Pues pruebe el ELISTARA y acepte si le pregunta eliminar temporales de internet:





ELISTARA:

http://www.zonavirus.com/descargas/elistara.asp



Tras probarlo, reiniciar y postearnos el contenido de C:\infosat.txt para ver el resultado del proceso





saludos



ms, 29-04-2007

ELHESUS
Mensajes: 10
Registrado: 02 Abr 2007, 03:47
Ubicación: TIJUANA
Contactar:

esto me dio

Mensaje por ELHESUS » 30 Abr 2007, 04:40

Sun Apr 29 17:46:22 2007

EliStartPage v13.86 (c)2007 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Linea Eliminada del HOSTS --> 127.0.0.1 bin.errorprotector.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 br.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 br.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 br.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 cdn.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 cdn.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 cdn.winsoftware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 de.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 de.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.cdn.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.cdn.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.cdn.winsoftware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.systemdoctor.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.winantispyware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.windrivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 download.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 dynamique.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 errorprotector.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 es.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 fr.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 fr.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 go.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 go.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 go.winantispyware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 go.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 hk.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 instlog.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 instlog.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 instlog.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 jsp.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 kb.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 kb.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 nl.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 se.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 secure.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 secure.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 secure.winantispam.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 secure.winantispy.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 secure.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 support.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 trial.updates.winsoftware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 ulog.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 utils.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 utils.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 utils.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 winantispyware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 winfixer2006.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 winsoftware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.drivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.errorprotector.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.errorsafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.systemdoctor.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.utils.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.win-anti-virus-pro.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.win-virus-pro.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winantispam.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winantispy.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winantispyware.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winantivirus.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winantiviruspro.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.windrivecleaner.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.windrivesafe.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winfixer.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winfixer2006.com ## added by CiD

Linea Eliminada del HOSTS --> 127.0.0.1 http://www.winsoftware.com ## added by CiD

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



Sun Apr 29 18:23:33 2007

EliStartPage v13.86 (c)2007 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



Sun Apr 29 18:23:56 2007

EliStartPage v13.86 (c)2007 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando Unidad C:\



Sun Apr 29 18:30:47 2007

EliStartPage v13.86 (c)2007 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



Sun Apr 29 18:30:55 2007

EliStartPage v13.86 (c)2007 S.G.H. / Satinfo S.L.

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando Unidad C:\

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Mensaje por msc hotline sat » 30 Abr 2007, 07:36

Correcto, ahora vea si persiste alguna anomalia y nos lo indica en cualquier caso para proceder en consecuencia



saludos



ms, 30-04-2007

ELHESUS
Mensajes: 10
Registrado: 02 Abr 2007, 03:47
Ubicación: TIJUANA
Contactar:

todavia no se puede

Mensaje por ELHESUS » 30 Abr 2007, 10:21

el problema no quedo solucionado, todavia no puedo abrir mis documentos , no se que paso . el virus sigue alojado en mis documentos, que mas se puede hacer.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Mensaje por msc hotline sat » 30 Abr 2007, 11:50

Y cual es este virus que indica ???



"el virus sigue alojado en mis documentos"



Indiquenos nombre del virus, fichero y ruta donde lo detecta y antivirus que lo detecta.



saludos



ms, 30.04.2007

Responder

Volver a “Foro Virus - Cuentanos tu problema”