Bienvenido: ( Identificarse | Registrarse )      
Foros de Trucos Windows
 
Closed TopicStart new topicStart Poll

Outline · [ Estándar ] · Lineal+

> log del hijack, addware?

wax388
post Jun 11 2005, 11:18 PM
Publicado: #1


Newbie
*

Grupo: Members
Mensajes: 4
Registrado: 11-June 05
Miembro nº: 139.965



Aca les dejo mi log.

Logfile of HijackThis v1.99.0
Scan saved at 오후 6:59:22, on 2005-06-11
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
D:\WINDOWS\system32\RunDll32.exe
D:\WINDOWS\system32\pctspk.exe
D:\Program Files\Common Files\Symantec Shared\ccApp.exe
D:\Program Files\TurboPlayer\TurboAgent.exe
D:\Program Files\MSN Apps\Updater\01.02.3000.1001\es\msnappau.exe
D:\Program Files\MessengerPlus! 3\MsgPlus.exe
D:\PROGRA~1\myLinker\myLinker.exe
D:\Program Files\CA-80U\ADSL\CnxDslTb1.exe
D:\WINDOWS\system32\dgtstart.exe
D:\Program Files\Save\Save.exe
D:\WINDOWS\system32\sistray.EXE
D:\Program Files\Internet Explorer\iexplore.exe
D:\WINDOWS\System32\DWDoumi.exe
D:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
D:\Program Files\Norton AntiVirus\navapsvc.exe
D:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
d:\progra~1\intern~1\iexplore.exe
D:\Program Files\MSN Messenger\msnmsgr.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
D:\WINDOWS\system32\wuauclt.exe
D:\WINDOWS\System32\svchost.exe
C:\Program files\NeoWiz\Tachy\tachy.exe
C:\KBS\PrcView\PrcView.exe
D:\Program Files\Messenger\msmsgs.exe
C:\KBS\HJT\HijackThis\HijackThis.exe

R3 - URLSearchHook: DNURLPlugIn Class - {183D5161-0C62-4295-896C-44E7442CD6F2} - D:\WINDOWS\system32\DIGITA~4.DLL
R3 - URLSearchHook: (no name) - ~{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - ~{0428FFC7-1931-45b7-95CB-3CBB919777E1} - (no file)
O2 - BHO: DNURLPlugIn Class - {183D5161-0C62-4295-896C-44E7442CD6F2} - D:\WINDOWS\system32\DIGITA~4.DLL
O2 - BHO: (no name) - ~{0428FFC7-1931-45b7-95CB-3CBB919777E1} - (no file)
O2 - BHO: (no name) - ~{0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - (no file)
O2 - BHO: (no name) - ~{09F93072-DE5E-4B5A-B347-F80FD7CB7309} - (no file)
O2 - BHO: (no name) - ~{183D5161-0C62-4295-896C-44E7442CD6F2} - (no file)
O2 - BHO: (no name) - ~{3ED8ACD1-583F-4ECE-B46F-FC4FA189E184} - (no file)
O2 - BHO: (no name) - ~{4F95E215-55B0-62CB-65FC-7D5C6B7734B8} - (no file)
O2 - BHO: (no name) - ~{9394EDE7-C8B5-483E-8773-474BF36AF6E4} - (no file)
O2 - BHO: (no name) - ~{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O2 - BHO: (no name) - ~{BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: 드림위즈 툴바 - {5258771B-ACBE-4974-8ABC-AE4969A2A5CD} - D:\WINDOWS\System32\dwtbar.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - D:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\es\msntb.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] D:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] D:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] D:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SiSUSBRG] D:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [CnxDslTaskBar] D:\Program Files\CA-80U\ADSL\CnxDslTb.exe
O4 - HKLM\..\Run: [ccApp] "D:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "D:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] D:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [Windows Automation] mslaugh.exe
O4 - HKLM\..\Run: [SiS KHooker] D:\WINDOWS\System32\khooker.exe
O4 - HKLM\..\Run: [SysConf] IEfdn.exe
O4 - HKLM\..\Run: [TurboAgent] D:\Program Files\TurboPlayer\TurboAgent.exe
O4 - HKLM\..\Run: [pDManager] D:\WINDOWS\system32\uppdmgr.exe
O4 - HKLM\..\Run: [Ink Monitor] D:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [viijzsvc] D:\WINDOWS\system32\viijzsvc.exe
O4 - HKLM\..\Run: [msnappau] "D:\Program Files\MSN Apps\Updater\01.02.3000.1001\es\msnappau.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "D:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [myLinker] D:\PROGRA~1\myLinker\myLinker.exe /B
O4 - HKLM\..\Run: [Plus user memo download] D:\Documents and Settings\All Users\Application Data\RemotePokePlusUser\16 chin.exe
O4 - HKLM\..\Run: [dgtstart] dgtstart.exe
O4 - HKLM\..\Run: [WhenUSave] "D:\Program Files\Save\Save.exe"
O4 - HKLM\..\Run: [SiS Tray] D:\WINDOWS\system32\sistray.EXE
O4 - HKCU\..\Run: [dwdoumi] D:\WINDOWS\System32\DWDoumi.exe
O4 - HKCU\..\Run: [netpiadw] D:\Program Files\DreamWiz\doumi\netpiadw.exe
O4 - HKCU\..\Run: [SayclubTachy] C:\Program files\NeoWiz\Tachy\TachyStart.exe
O4 - HKCU\..\Run: [1 RULE] D:\DOCUME~1\Kang\APPLIC~1\BROWSE~1\Bore plan.exe
O4 - HKCU\..\Run: [MessengerPlus3] "D:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: 드림위즈 검색 - http://search.dreamwiz.com/qsearch/qsearch.html
O8 - Extra context menu item: 드림위즈 메일로 보내기 - http://search.dreamwiz.com/qsearch/qmail.html
O8 - Extra context menu item: 드림위즈 북마크하기 - http://search.dreamwiz.com/qsearch/qbookmark.html
O8 - Extra context menu item: 드림위즈 스크랩하기 - http://search.dreamwiz.com/qsearch/qscrap.html
O8 - Extra context menu item: 드림위즈 실시간뉴스 검색 - http://search.dreamwiz.com/qsearch/qnews.html
O8 - Extra context menu item: 드림위즈 영한/한영사전 검색 - http://search.dreamwiz.com/qsearch/qengdic.html
O8 - Extra context menu item: 드림위즈 한국어사전 검색 - http://search.dreamwiz.com/qsearch/qdic.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: 컴내꺼 [넷하드] - javascript:window.open("http://www.com.ne.kr/", "_blank", "");
O9 - Extra button: 프린트 - {3B822005-F96F-4CC6-A8A8-64CC252E8F08} - D:\WINDOWS\System32\dwtbar.dll
O9 - Extra button: 새창 - {97AAD984-7BE9-409A-B1B7-DE2C3396F7A0} - D:\WINDOWS\System32\dwtbar.dll
O9 - Extra button: Juegos On Line - {AF0828BC-CB46-4C8D-95B6-8A7C4988F9FF} - c:\pspa-18primaveras\local.htm (file missing)
O9 - Extra button: 툴바 - {DAF5664C-72D2-432B-A5FD-F4EF445F5073} - D:\WINDOWS\System32\dwtbar.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.kcp.co.kr
O15 - Trusted Zone: http://*.telec.co.kr
O15 - Trusted Zone: http://*.vpay.co.kr
O16 - DPF: {00001015-A15C-11D4-97A4-0050BF0FBE67} (NetmarbleStarter15 Class) - http://www.netmarble.net/game/NMStarter15.cab
O16 - DPF: {0209E661-80E5-4F94-B479-F559721014DA} (Prjgame.GameExe) - http://www.skylove.com/skygame/download/skygame.CAB
O16 - DPF: {091CDD73-1401-4643-9B9C-65B091C88685} (MyLinker Control) - http://dizzo.contents.mylinker.co.kr/module/MyLinker.cab
O16 - DPF: {14ED0DC5-BC85-446A-87D4-657EAB3534C3} (Nshort Control) - http://www.gunghapclub.com/gunghapclub.cab
O16 - DPF: {1545689F-FB2C-4941-B7B5-FE21D1F789E7} (TrustSite 1.0 Control) - http://img.telec.co.kr/file/trustsitex/trustsitex.cab
O16 - DPF: {214554E7-6F11-4937-8F49-BB2ACC84CE4D} (CncYKChat Control) - http://kr.chat.yahoo.com/N/APP/CncYKChat.cab
O16 - DPF: {240F0899-15BB-49AE-B820-62CEB9116C0F} (SkyCom Control) - http://www.skylove.com/connect/skycom.cab
O16 - DPF: {2712EB12-3BD3-4003-8113-D23B30FACC62} (P3BugsLoad Class) - http://player.bugs.co.kr/player/cab/bugsLoader20040625.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
O16 - DPF: {2C197E55-080B-42A4-BFD0-9595B3534CF4} (KVPplugin00 Control) - https://www.vpay.co.kr/KVPplugin01.cab
O16 - DPF: {2D4A8ABA-90AF-4918-8AE2-A92D87348B03} (Prjgame.GameExe) - http://skygame.skylove.com/download/skygame.CAB
O16 - DPF: {2F0692E0-771E-41EE-8CC2-4A8D8CCA357F} (Checker Control) - http://connect1.skylove.com/connect/checker.cab
O16 - DPF: {328D92EB-15C7-4D08-826F-CF306417B232} (JoyIcon Control) - http://www.joyhunting.com/work/JoyIcon.cab
O16 - DPF: {37FC498F-6176-40B3-9421-D38FA01FA6AB} (XNMStarter Control) - http://ufile.mym.net/ActiveX/mymstarter/My...rterInstall.CAB
O16 - DPF: {5373CE59-8BB8-45DF-96FB-7DC2F668D674} (P3BugsCtrl Class) - http://player.bugs.co.kr/player/cab/bugsmedia.cab
O16 - DPF: {55CE0824-B8F3-4E6A-9797-17FDA555A8E5} (KvpTopd Control) - http://www.vpay.co.kr/KvpTPd.cab
O16 - DPF: {5AA3139C-2579-407E-B74D-742D709C16CE} (DaumGameStarter Control) - http://211.172.252.226/Launcher/DaumGameStarter.cab
O16 - DPF: {5F426A93-0821-47D2-A126-5A48A874B289} (DialerWeb Class) - http://212.145.159.194/251065/dialercab/WebRecomendada.cab
O16 - DPF: {60B33001-5F10-4A94-A7E4-77A3D8F5C78E} (OnAirClient Control) - http://ionair.sbs.co.kr/onair/OnAirClient.cab
O16 - DPF: {642BA26B-F76D-4E0D-8421-B24CA1A82EF0} (ChatClubYahoo Control) - http://kr.talk.club.yahoo.com/OPI/ChatClubYahoo.cab
O16 - DPF: {66B30EA0-C033-4D4B-9F90-EA0AF07363AF} (BugsMediaPlayer Control) - http://so.bugs.co.kr/BugsOggPlay_11.CAB
O16 - DPF: {68253470-5D4F-4CDF-8D9C-353C14A2F013} (SVPorsche Control) - http://www.seevideo.co.kr/pub/seevideo2003/svporsche.cab
O16 - DPF: {72ED8878-6E16-4EA1-BDD6-3B21EF676E45} (CVTrace Control) - http://www.seevideo.co.kr/pub/cvideox/trace/cvtrace.cab
O16 - DPF: {784B0583-ABC1-4D3B-9564-357AA32D007C} (TURBO PLAYER Setup Control) - http://down.hangame.com/vod/turbois9.cab
O16 - DPF: {7A43F370-05A1-40E3-8C2F-FF83D0768D46} (dmcco Class) - http://cafefiles2.hanmail.net/dmcc.cab
O16 - DPF: {7DC58032-60EE-41E0-84DA-77BFFE156B91} (KcpPayAtx Control) - https://secure.kcp.co.kr/webpay/ISP/KcpPayAtx.cab
O16 - DPF: {814F8226-7A77-4651-8026-B56F4DF13D2C} (SayClub & JukeOn Music Player Control) - http://dl.jukeon.com/jukeon2/p3ed.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...StatsClient.cab
O16 - DPF: {90231C0E-765E-4429-8F70-F4E9A0F8D358} (P3Maxmp3 Class) - http://www.maxmp3.co.kr/use/juke/p2p_playe...40524/p3max.cab
O16 - DPF: {92E82FBB-DA00-41E0-ABFE-95482E21A4F6} (NMTransX Module) - http://download.netmarble.com/NMChatX/NMTransX.cab
O16 - DPF: {938527D1-CDB7-4147-998A-B20FCA5CC976} (Cdmcco Class) - http://cafeimg.hanmail.net/cab9_1/dmcc2.cab
O16 - DPF: {97154128-DC4C-4D5B-AF7C-CA7356238EC9} (Hanmail FileUpload Control) - http://premium21.daum.net/hanmail-ax/HM_fileupload.cab
O16 - DPF: {97A54CA1-6034-4649-B845-588C00A3860A} (ScanExecute Control) - http://premium49.daum.net/kl/module/ScanExecute.cab
O16 - DPF: {98FBBB0F-9736-4B91-B926-31F4A5EE443C} (btpgClientCM Class) - https://pg.banktown.com/wallet/plugin/ibtpgClientCM.cab
O16 - DPF: {9A19966F-AE0E-4699-8CCE-9B6F5F1C352C} (NPKXSite Control) - http://download.netmarble.com/nProtect/npkx/npkxsite.cab
O16 - DPF: {9A583488-22F4-4DB2-B427-33A34B7C5D5F} (DaumVM Class) - http://alimiams.daum.net:8080/download/30/dmvm/dmvm.cab
O16 - DPF: {9BED3AC7-E6D4-43E7-B8A1-1FA502F639E1} (XTools Control) - http://player.bugs.co.kr/install/mv/XTools.cab
O16 - DPF: {9C23D13E-E310-4E25-A8FC-D704B833BB57} (SayClub Playroom Control) - http://dl.sayclub.com/sayclub/sayctl/PrCtl.cab
O16 - DPF: {A00B2A53-60D9-4477-ADA3-60490770C5E0} (UploadList Control) - http://premium49.daum.net/hanmail-ax/hanmail.cab
O16 - DPF: {A4508A45-F1C4-40F3-99B4-0CA08AC77E3B} (Kdfense8 Control) - http://kings.cachenet.com/kdf8106/kdfense8.cab
O16 - DPF: {A87AC5C4-E4A8-421E-84C8-12A5564EAF2B} (NAudioX Control) - http://download.netmarble.com/NAudioX/NAudioX.cab
O16 - DPF: {A977FF0C-8757-4E76-8533-482F91946233} (Pmang & SayClub Login Control) - http://dl.sayclub.com/sayclub/sayctl/sayax.cab
O16 - DPF: {AE4454BD-04EC-4DB0-9BBF-29B32255E69D} (XBugsChat Control) - http://chatbeta.bugs.co.kr/download/XBugsChat.cab
O16 - DPF: {B0A02AAB-94AB-4190-92E2-429B5AC75F50} (download Class) - http://dl.sayclub.com/tachy/dltachy.cab
O16 - DPF: {B27CD839-871B-404F-9AB3-68B942D11BF4} (Oi Control) - http://listen.daum.net/52st.cab
O16 - DPF: {BF7C5034-71DB-4335-9B93-F010EF9E97ED} (ScanVerify Control) - http://premium49.daum.net/kl/module/ScanVerify.cab
O16 - DPF: {C1DF3FF8-4DA4-4168-97BF-A706A5D51985} (SVJukeOn Control) - http://jukeon.dl.sayclub.co.kr/jukeon/svjukeon.cab
O16 - DPF: {CF362BDB-4EA2-11D5-AB47-000102913414} (SetGlb Control) - http://so.bugs.co.kr/SetGlb.cab
O16 - DPF: {CFCB7308-782F-11D4-BE27-000102598CE4} (NPX Control) - http://download.netmarble.com/nProtect/nprotect/npx.cab
O16 - DPF: {D40C2C27-C909-497E-A4FF-D46CCB3D9D55} (JoinsX Control) - http://news.joins.com/ui/shortcut/JoinsShortCut.cab
O16 - DPF: {D5D4E25D-544D-4E31-9C84-C97EED5F6900} (HMPaintingMailAX Class) - http://premium21.daum.net/hanmail-ax/HM_paintmail.cab
O16 - DPF: {D7F0CC2E-FB09-4B38-B9A7-6807CBCD4859} (NMChatX Control) - http://download.netmarble.com/NMChatX/NMChatX.cab
O16 - DPF: {D8F001C6-43B1-4CFD-9DAF-C8BEAE0E2B6D} (Touch Control) - http://touch.imbc.com/ocx/Online.cab
O16 - DPF: {DFB64246-00EA-4996-8C31-1F0855BECDDB} (P3WLoader Class) - http://player.bugs.co.kr/player/cab/bugsLoader.cab
O16 - DPF: {E08E0CF9-391D-420E-9B67-029DE4DF2DA8} (AOT.AlwaysOnTop) - http://www.ytn.co.kr/main/DigitalYTN.CAB
O16 - DPF: {E1CDC08F-F464-4682-AE6A-7689451387C0} (CAFE multiupload control) - http://cafeimg.hanmail.net/activex/dmcm.cab
O16 - DPF: {E4972AF4-E211-49B9-9267-C693E521AEF0} - http://211.172.252.226/launcher/DaumGame_Linkman.cab
O16 - DPF: {E8A22C88-4596-42EE-A8A6-BBD31EF01E5B} (MeinCam Control) - http://www.meincam.com/application/MeinCam.cab
O16 - DPF: {ED71FCB3-4074-40FA-A854-65F164EAC5C5} (SetWallpaper Class) - http://kids.daum.net/event/dkwp.cab
O16 - DPF: {ED9A7BAD-3BC6-4C4A-AB38-DF210C065482} (AtxCardKorea Class) - http://www.cardkorea.com/cardkorea.cab
O16 - DPF: {F2E25BCF-963E-4DEB-9688-D3D8C3FEDC1F} (DWReg Class) - http://dn.dreamwiz.com/ActiveX/dwdmi/DWDoumi_4.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{6012003C-1C5E-4383-8B8F-7636B9F02BA5}: NameServer = 200.45.191.35 200.45.191.40
O17 - HKLM\System\CS1\Services\Tcpip\..\{6012003C-1C5E-4383-8B8F-7636B9F02BA5}: NameServer = 200.45.191.35 200.45.191.40
O17 - HKLM\System\CS2\Services\Tcpip\..\{6012003C-1C5E-4383-8B8F-7636B9F02BA5}: NameServer = 200.45.191.35 200.45.191.40
O23 - Service: Symantec Event Manager - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Norton AntiVirus Auto Protect Service - Symantec Corporation - D:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection - Symantec Corporation - D:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: ScriptBlocking Service - Symantec Corporation - D:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SymWMI Service - Symantec Corporation - D:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe




User is offlineProfile CardPM
Go to the top of the page
+Quote Post
Caito
post Jun 12 2005, 12:50 AM
Publicado: #2


No Spiware
Group Icon

Grupo: Supervisor Global
Mensajes: 17.414
Registrado: 15-August 04
Desde: Argentina
Miembro nº: 13.043



Pasar un buen antivirus on line, luego ejecuta el AdAware Se o el Microsoft Antispyware (actualizados), para luego pegar un nuevo log.
Y el Disk Cleaner para borrar:
Archivos Temp. de Internet,Temp. de Sistema,cookies,historial , etc.
disk cleaner
http://www.xs4all.nl/~mp2004/
Antivirus on line:
http://www.bitdefender.com/scan8/
http://www.ravantivirus.com/scan/
http://www.windowsecurity.com/trojanscan/
Bajar AdAwareSe 1.06 :
http://fileforum.betanews.com/download/Ada...nal/965718306/1

Bajar Microsoft Antispyware:
http://microsoft-antispyware.uptodown.com/
Bajar trial ewido security suite:
http://www.ewido.net/en/download/
Actualizar el SO o el IE:
http://www.windowsupdate.com
La limpieza la tienes que realizar deshabilitando Restaurar sistema y en modo Seguro( si tienes XP o ME ) ( el scan on line "con funciones de red" en XP).
Si no sabes cómo hacer algunos de los procedimientos mira esto:
http://www.arwinianos.net/foro/index.php?topic=39
Luego de realizar esta limpieza comienza un nuevo post y pega el log del hijack acá :

http://www.trucoswindows.net/foro/index.php?act=SF&s=&f=31

Salu2
Caito




User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
Closed TopicTopic OptionsStart new topic

Collapse

> Topicos similares

Log de Hijack Tominho 94 6 Hoy, 04:53 PM
By: Tominho
mi log de hijack manu_222 35 1 Sep 21 2008, 05:31 AM
By: Caito
Mi hijack gnecco 98 7 Sep 12 2008, 10:49 PM
By: Caito
Mi hijack gnecco 0 0 Sep 11 2008, 09:07 PM
By: gnecco
Log de Hijack daggardj 59 3 Sep 7 2008, 11:37 PM
By: Caito