Aún así me gustaría que me echarais una mano, a ver si lo quito de una vez.
El spybot lo detecta una vez inicio IE o en su defecto Avant Browser, he intentado con hijack desde modo a prueba de fallos, spywareblaster, ad-aware,....y nada.
os pongo lo que me canta csh...:
WShredder v1.53.4 scan only report
Please understand that a CWShredder 'Scan only' report
might not be sufficient to troubleshoot an infected system.
You can use HijackThis for that:
Windows XP (5.01.2600 SP2)
Windows dir: C:\WINDOWS
Windows system dir: C:\WINDOWS\system32
AppData folder: C:\Documents and Settings\pc\Datos de programa
Username: pc
Found Hosts file: C:\WINDOWS\system32\drivers\etc\hosts (792 bytes, A)
Shell Registry value: HKLM\..\WinLogon [Shell] Explorer.exe
UserInit Registry value: HKLM\..\WinLogon [UserInit] C:\WINDOWS\system32\userinit.exe,
CWS.Oslogo (if value is 2) Registry value: Domains: *.coolwebsearch.com [*] dword:4
CWS.Oslogo (if value is 2) Registry value: Domains: *.coolwwwsearch.com [*] dword:4
CWS.Googlems.2 (if value is 2) Registry value: Domains: *.xxxtoolbar.com [*] dword:4
CWS.Googlems.4 (if value is 2) Registry value: Domains: *.teensguru.com [*] dword:4
Registry value: DefaultPrefix (should be http://) [] http://
Registry value: WWW Prefix (should be http://) [www] http://
Registry value: Mosaic Prefix (should be http://) [mosaic] http://
Registry value: Home Prefix (should be http://) [home] http://
Found Win.ini file: C:\WINDOWS\win.ini (810 bytes, A)
Found System.ini file: C:\WINDOWS\system.ini (231 bytes, A)
no entiendo que significa cada cosa....y ni mucho menos que c**o me puede hacer el cws.msconfig.
Por favor aqui os espero.