virus

Responder
dervilove
Mensajes: 4
Registrado: 10 Ago 2010, 17:42

virus

Mensaje por dervilove » 11 Ago 2010, 01:26

hola ,amigos mucho gusto soy dervilove

tengo problemas con estos virus q no dejan entrar al administrador de tareas,al cmd para eliminar los

virus q crean carpetas como si fueran accesos directos.

de antomano muchas gracias por la ayuda.

Avatar de Usuario
lucl
Mensajes: 6324
Registrado: 17 Ene 2006, 18:09
Ubicación: España
Contactar:

Re: virus

Mensaje por lucl » 11 Ago 2010, 23:12

Prueba elistara y peganos el log que te dejara en C infosat.txt , asi podremos tener mas información de los virus en cuestion. Saludos.





http://www.zonavirus.com/descargas/descargar-elistara.asp

dervilove
Mensajes: 4
Registrado: 10 Ago 2010, 17:42

Re: virus

Mensaje por dervilove » 12 Ago 2010, 19:54

hola, disculpen la demora aqui le dejo el log



(9-8-2010 23:16:05)

EliPen v2.1 (c)2010 S.G.H. / Satinfo S.L.

------------------------------------------



Unidad C:\ Protegida



Error Creando TEST2.SAT

Unidad D:\ No se Pudo Proteger



Unidad F:\ NO Protegida



Error Creando TEST2.SAT

Unidad I:\ No se Pudo Proteger



Error Creando TEST2.SAT

Unidad J:\ No se Pudo Proteger



Error Creando TEST2.SAT

Unidad J:\ No se Pudo Proteger



Error Creando TEST2.SAT

Unidad J:\ No se Pudo Proteger

(12-8-2010 17:17:36 (GMT))

EliStartPage v21.44 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 23 de Julio del 2010)

--------------------------------------------------

Lista de Acciones (por Acción Directa):

Por favor, envienos una muestra del fichero

C:\Muestras\WINLOGON.EXE.Muestra EliStartPage v21.44

a "virus@satinfo.es". Gracias.

C:\DOCUMENTS AND SETTINGS\SECRETARIA\SECRETARIA1\WINLOGON.EXE --> Eliminado

C:\DOCUME~2\SECRET~1\CONFIG~1\TEMP\\DSOQQ.EXE --> Eliminado

Por favor, envienos una muestra del fichero

C:\Muestras\GENERICASKTOOLBAR.DLL.Muestra EliStartPage v21.44

a "virus@satinfo.es". Gracias.

C:\ARCHIVOS DE PROGRAMA\ASK.COM\GENERICASKTOOLBAR.DLL --> Eliminado

D:\DESKTOP.INI --> Eliminado (Fichero Complementario).

Entrada Eliminada [HKCU\...\Run] "Dso32"="C:\DOCUME~2\SECRET~1\CONFIG~1\Temp\dsoqq.exe"

Entrada Eliminada [HKCU\...\Run] "NVIDIA Media Center Library"="C:\Documents and Settings\secretaria\secretaria1\winlogon.exe"

Entrada Eliminada [HKLM\...\Run] "NVIDIA Media Center Library"="C:\Documents and Settings\secretaria\secretaria1\winlogon.exe"

Eliminada Class, "{D4027C7F-154A-4066-A1AD-4243D8127440}" -> C:\Archivos de programa\Ask.com\GenericAskToolbar.dll

Sospechosa Clave "HKLM\...\Image File Execution Options\ACKWIN32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ADVXDWIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AGENTSVR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AGENTW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AHNSD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ALERTER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ALERTSVC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ALOGSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AMON9X.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ANTI-TROJAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ANTIVIRUS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ANTS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\APIMONITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\APLICA32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\APVXDWIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ATCON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ATGUARD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ATRO55EN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ATUPDATER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ATWATCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AUPDATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AUTODOWN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AUTOTRACE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AUTOUPDATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVCONSOL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVE32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVGCC32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVGCTRL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVGSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVGSERV9.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVGW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVKPOP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVKSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVKSERVICE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVKWCL9.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVKWCTL9.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVP32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPCC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPDOS32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPEXEC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPINST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPTC32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVPUPD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVRESCUE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVSCHED32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVSYNMGR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVWIN95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVWINNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVWUPD32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVXMONITOR9X.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVXMONITORNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVXQUAR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AVXW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\AZONEALARM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BD_PROFESSIONAL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BIDEF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BIDSERVER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BIPCP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BIPCPEVALSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BISP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BLACKD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BLACKICE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BOOT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BOOTWARN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BORG2.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\BS120.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CALLMSI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CCAPP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CCEVTMGR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CCLAW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CCPXYSVC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CCSETMGR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CCSHTDWN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CDP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CFGWIZ.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CFIADMIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CFIAUDIT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CFIND.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CFINET.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CFINET32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Eliminada Clave "HKLM\...\Image File Execution Options\CHROME.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CHROMESETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLAW95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLAW95CF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLAW95CT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLEAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLEANER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLEANER3.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CLEANPC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CMD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CMGRDIAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CMON016.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CONNECTIONMONITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CPD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CPDCLNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CPF9X206.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CPFNT206.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CRASHREPORTER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CSINJECT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CSINSM32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CSS1631.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CTRL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CWNB181.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\CWNTDWMO.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DEFALERT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DEFSCANGUI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DEFWATCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DEPUTY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DISKMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DOORS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DPF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DRVINS32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DRWATSON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DRWEB32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DUMPHIVE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DV95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DV95_O.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DVP95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\DVP95_0.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ECENGINE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ECLS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ECMD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EDI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EFINET32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EFPEADM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EGUI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EHTTPSRV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EKRN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ENT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ESAFE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ESCANH95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ESCANHNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ESCANV95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ESPWATCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ETRUSTCIPE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EVPN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXANTIVIRUS-CNET.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXIT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXPERT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\EXPLORED.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\F-AGNT95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\F-PROT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\F-PROT95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\F-STOPW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FA-SETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FAMEH32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FAST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FCH32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FIH32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FILEMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FINDVIRU.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FIREFOX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FIREWALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FIREWALLCONTROLPANEL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FIREWALLSETTINGS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FIX-IT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FLOWPROTECTOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FNRB32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FP-WIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FP-WIN_TRIAL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FPROT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FPROT95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FRW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAA.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAV32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAV530STBYB.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAV530WTBYB.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAV95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSAVE32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSGK32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSLAUNCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSM32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSMA32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSMB32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FSSM32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FWENC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\FWINSTALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GBMENU.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GBPOLL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GENERICRENOSFIX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GENERICS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GIBE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GOOGLETOOLBARINSTALLER_DOWNLOAD_SIGNED.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GPEDIT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GUARD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\GUARDDOG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\HACKTRACERSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\HELPER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\HJTINSTALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\HOSTSCHK.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\HTLOG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\HWPE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IAMAPP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IAMSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IAMSTATS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IBMASN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IBMAVSP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICLOAD95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICLOADNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICMOON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICSSUPPNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICSUPP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICSUPP95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ICSUPPNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IEDFIX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IFACE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IFW2000.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IOMON98.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IPARMOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\IRIS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ISRV95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\JAMMER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\JED.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\JEDI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KAV8.0.0.357ES.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KAVLITE40ENG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KAVPERS40ENG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KERIO-PF-213-EN-WIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KERIO-WRL-421-EN-WIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KERIO-WRP-421-EN-WIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KILLPROCESSSETUP161.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KIS8.0.0.506LATAM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KPF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\KPFW32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LDNETMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LDPRO.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LDPROMENU.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LDSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LOCALNET.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LOCKDOWN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LOCKDOWN2000.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LOOKOUT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LUALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LUAU.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LUCOMSERVER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LUINIT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\LUSPT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCAGENT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCMNHDLR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCSHIELD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCTOOL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCUPDATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCVSRTE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MCVSSHLD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MDLL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MFW2EN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MFWENG3.02D30.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MGAVRTCL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MGAVRTE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MGHTML.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MGUI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MINILOG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MONITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MONSYS32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MONSYSNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MONWOW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MOOLIVE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MPFAGENT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MPFSERVICE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MPFTRAY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MRFLUX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSBLAST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSCONFIG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSINFO32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSPATCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MSSMMC32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MU0311AD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MWATCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\MXTASK.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\N32SCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\N32SCANW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAI_VS_STAT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAV32_LOADER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAV80TRY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVAP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVAPSVC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVAPW32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVAUTO-PROTECT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVDX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVENG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVENGNAVEX15.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVEX15.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVLU32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVRUNR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVSCHED.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVSTUB.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVW32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NAVWNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NC2000.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NCINST4.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ND98SPST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NDD32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NDNTSPST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NEOMONITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NEOWATCHLOG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETARMOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETCFG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETINFO.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETSCANPRO.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETSCAPE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETSPYHUNTER-1.2.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETSTAT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NETUTILS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NISSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NISUM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NMAIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NOD32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NORMIST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NORTON_INTERNET_SECU_3.0_407.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NOTSTART.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NPF40_TW_98_NT_ME_2K.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NPFMESSENGER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NPROTECT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NPSCHECK.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NPSSVC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NSCHED32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NTDETECT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NTRTSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NTXCONFIG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NUI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NUPDATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NUPGRADE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NVAPSVC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NVARCH16.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NVC95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NVLAUNCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NVSVC32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NWINST4.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NWSERVICE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\NWTOOL16.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OFFGUARD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OGRC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Eliminada Clave "HKLM\...\Image File Execution Options\OPERA.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OPERA_964_INT_SETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OSTRONET.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTPOST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTPOSTINSTALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\OUTPOSTPROINSTALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PADMIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PANIXK.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PATHPING.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PAVCL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PAVPROXY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PAVSCHED.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PAVW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCC2002S902.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCC2K_76_1436.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCCLIENT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCGUIDE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCIOMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCMAIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCNTMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCPFW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCWIN97.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCCWIN98.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCDSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCFWALLICON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCIP10117_0.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PCSCANPDSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PENIS32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PERISCOPE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PERSFW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PERSWF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PF2.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PFWADMIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PING.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PINGSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PLATIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POP3TRAP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POPROXY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\POPSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PORTDETECTIVE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PORTMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PORTMONITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PPINUPDT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PPTBC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PPVSTOP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PRCKILLER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROCESS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROCESSMONITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROCEXP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROCEXPLORERV1.0.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROCMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROGRAMAUDITOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROPORT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PROTECTX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PSPF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PURGE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PVIEW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\PVIEW95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\QCONSOLE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\QSERVER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RAPAPP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RAV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RAV7.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RAV7WIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RAV8WIN32ENG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\REALMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\REGEDIT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\REGEDT32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\REGMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RESCUE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RESCUE32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RESTART.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ROUTE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ROUTEMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RRGUARD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RSHELL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RSTRUI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RTVSCN95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\RULAUNCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Eliminada Clave "HKLM\...\Image File Execution Options\SAFARI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SAFEWEB.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SBSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SCAN32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SCAN95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SCANPM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SCHEDAPP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SCRSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SCVHOSL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SDCLT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SERV95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUPVAMEEVAL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SETUP_FLOWPROTECTOR_US.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SGSSFW32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SHAREDACCESS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SHELLSPYINSTALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SHN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SMC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SMITFRAUDFIX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SOFI.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SPF.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SPHINX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SPIDER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SPYXX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SRCHSTS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SRWATCH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SS3EDIT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ST2.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SUPFTRL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SUPPORTER5.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWEEP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWEEP95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWEEPNET.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWEEPSRV.SYS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWNETSUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWSC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SWXCACLS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SYMPROXYSVC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SYMTRAY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SYSDOC32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\SYSHELP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TASKKILL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TASKLIST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TASKMGR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TASKMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TAUMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TAUSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TBSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TCA.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TCM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TCPSVS32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TDS-3.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TDS2-98.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TDS2-NT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TDS2.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TFAK.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TFAK5.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TFTPD.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TGBOB.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TITANIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TITANINXP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TMNTSRV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TRACERPT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TRACERT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TRJSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TRJSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\TROJANTRAP3.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UCCLSID.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNDOBOOT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UNZIP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UPDATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\UPDATER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VACFIX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VBCMSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VBCONS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VBUST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VBWIN9X.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VBWINNTW.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VCCMSERV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VCLEANER.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VCONTROL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VCSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VET32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VET95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VET98.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VETTRAY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VFSETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VIR-HELP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VIRUSMDPERSONALFIREWALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VNLAN300.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VNPC3000.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VPC32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VPC42.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VPFW30S.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VPTRAY.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSCAN40.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSCENU6.02D30.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSCHED.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSECOMR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSHWIN32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSISETUP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSMAIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSMON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSSCAN40.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSSTAT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSWIN9XE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSWINNTSE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VSWINPERSE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\VVSTAT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\W32DSM89.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\W9X.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WATCHDOG.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WEBSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WEBSCANX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WEBTRAP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WFINDV32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WGFE95.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WHOSWATCHINGME.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WIMMUN32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINGATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINHLPP32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINK.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINMGM32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINPPR32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINRECON.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINROUTE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINSERVICES.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WINSFCM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WMIAS.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WMIAV.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WNT.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WRADMIN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WRCTRL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WS2FIX.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WSBGATE.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\WYVERNWORKSFIREWALL.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\XPF202EN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\XSCAN.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZAPRO.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZAPSETUP3001.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZATUTOR.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZATUTORZAUINST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZAUINST.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZLH.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZONALARM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZONALM2601.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\ZONEALARM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\_AVP.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\_AVP32.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\_AVPCC.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\_AVPM.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Sospechosa Clave "HKLM\...\Image File Execution Options\_FINDVIRU.EXE"

"Debugger"=""C:\WINDOWS\TWUNK_16.EXE""

Linea Eliminada del HOSTS --> 127.0.0.1 .com

Linea Eliminada del HOSTS --> 127.0.0.1 promotions.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 network.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 customers.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 store.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 company.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 training.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 license.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 cureit.ru

Linea Eliminada del HOSTS --> 127.0.0.1 free.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 info.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 new-partners.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 drweb.net

Linea Eliminada del HOSTS --> 127.0.0.1 new-company.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 new-beta.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 new-forum.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 secure.av-desk.com

Linea Eliminada del HOSTS --> 127.0.0.1 www.av-desk.com

Linea Eliminada del HOSTS --> 127.0.0.1 new-solutions.drweb.com

Linea Eliminada del HOSTS --> 127.0.0.1 new-www.drweb.com

...

Eliminadas las Paginas de Inicio y de Busqueda del IE

Eliminados Ficheros Temporales del IE



(12-8-2010 17:39:23 (GMT))

EliStartPage v21.44 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 23 de Julio del 2010)

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando "C:\"

C:\DRIVER COMPAQ\SR1722X\Sonido\Realtek_HD\Source\WDM\ALCMTR.EXE --> Eliminado, SpyRealtek

C:\WINDOWS\ALCMTR.EXE --> Eliminado, SpyRealtek



Nº Total de Directorios: 3946

Nº Total de Ficheros: 53805

Nº de Ficheros Analizados: 16149

Nº de Ficheros Infectados: 2

Nº de Ficheros Limpiados: 2



(12-8-2010 17:42:53 (GMT))

EliStartPage v21.44 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 23 de Julio del 2010)

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando "C:\"



Nº Total de Directorios: 62

Nº Total de Ficheros: 1824

Nº de Ficheros Analizados: 72

Nº de Ficheros Infectados: 0

Nº de Ficheros Limpiados: 0

Exploración Detenida por el Usuario.



(12-8-2010 17:43:20 (GMT))

EliStartPage v21.44 (c)2010 S.G.H. / Satinfo S.L. (Actualizado el 23 de Julio del 2010)

--------------------------------------------------

Lista de Acciones (por Exploración):

Explorando "D:\"



Nº Total de Directorios: 88

Nº Total de Ficheros: 2213

Nº de Ficheros Analizados: 182

Nº de Ficheros Infectados: 0

Nº de Ficheros Limpiados: 0



saludos.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: virus

Mensaje por msc hotline sat » 12 Ago 2010, 21:58

Pues de momento ha quedado aparcado el problema. Ahora tienes que enviarnos estos ficheros que se te piden para analizarlos y tras elo poder implementar su control y eliminacion en proximas versiones del ELISTARA>



Por favor, envienos una muestra del fichero

C:\Muestras\WINLOGON.EXE.Muestra EliStartPage v21.44

a "virus@satinfo.es". Gracias.



Por favor, envienos una muestra del fichero

C:\Muestras\GENERICASKTOOLBAR.DLL.Muestra EliStartPage v21.44

a "virus@satinfo.es". Gracias.



saludos

ms, 12/8/2010

dervilove
Mensajes: 4
Registrado: 10 Ago 2010, 17:42

Re: virus

Mensaje por dervilove » 12 Ago 2010, 23:53

hola . ya envie los archivos de muestra.

en todo caso mantenme informado mi correo es perceo22_13@hotmail.com ó ya sea por el foro

gracias...saludos.

Avatar de Usuario
lucl
Mensajes: 6324
Registrado: 17 Ene 2006, 18:09
Ubicación: España
Contactar:

Re: virus

Mensaje por lucl » 13 Ago 2010, 08:31

Por favor quita las muestras del foro y envialas con la pestaña envio muestras que tienes arriba a la derecha!!!! Gracias. Saludos.

dervilove
Mensajes: 4
Registrado: 10 Ago 2010, 17:42

Re: virus

Mensaje por dervilove » 13 Ago 2010, 16:49

disculpe la imnoracia pero es q quiero saber resultados .....

ya los mande por envio de muestras ..gracias

saludos.

Avatar de Usuario
msc hotline sat
Mensajes: 93500
Registrado: 09 Mar 2004, 20:39
Ubicación: BARCELONA (ESPAÑA)
Contactar:

Re: virus

Mensaje por msc hotline sat » 13 Ago 2010, 21:36

Como se te ha dicho el problema ya esta aparcado y debes pode trabajar normalmente hasta que volvamos de vacaciones, a partir del 23 y analicemos las muestras e implementemos su control y elimincion en nuestras utilidades, de lo cual informaremos en el foro.



saludos



ms, 13/8/2010

Responder

Volver a “Foro Virus - Cuentanos tu problema”