Primero que nada le Pase el Antivirus que tengo Nativo, el NOD32 V.1
Le pase el disk cleaner y elimine practicamente todo.
Le pase el BitDefender en Linea y Nada.
Le pase el avast! Virus Cleaner y nada.
El Ad-Aware 1.06 Si me elimino 12 objetos criticos.
Pase el RegSeeker y suprimi 1189 elementos.
Nuevamente Pase el RegSeeker y suprimi otros 128 elementos.
El Reporte del eWIDO es como sigue:
---------------------------------------------------------
ewido security suite - Report de exploración
---------------------------------------------------------
+ Creado en: 05:49:27 p.m., 05/10/2005
+ Report-Checksum: 39FD185
+ Scan result:
:mozilla.65:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.66:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.67:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.68:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.69:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.76:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.77:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.78:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Falkag : Limpio con backup
:mozilla.100:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Statcounter : Limpio con backup
:mozilla.101:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Statcounter : Limpio con backup
:mozilla.102:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Statcounter : Limpio con backup
:mozilla.103:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Statcounter : Limpio con backup
:mozilla.154:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Burstnet : Limpio con backup
:mozilla.155:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Burstnet : Limpio con backup
:mozilla.248:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Yieldmanager : Limpio con backup
:mozilla.249:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Yieldmanager : Limpio con backup
:mozilla.257:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Com : Limpio con backup
:mozilla.258:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Com : Limpio con backup
:mozilla.271:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Onestat : Limpio con backup
:mozilla.272:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Onestat : Limpio con backup
:mozilla.273:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Onestat : Limpio con backup
:mozilla.313:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Casalemedia : Limpio con backup
:mozilla.314:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Casalemedia : Limpio con backup
:mozilla.315:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Casalemedia : Limpio con backup
:mozilla.358:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Revenue : Limpio con backup
:mozilla.396:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Belstat : Limpio con backup
:mozilla.397:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Belstat : Limpio con backup
:mozilla.429:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Liveperson : Limpio con backup
:mozilla.455:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Weborama : Limpio con backup
:mozilla.512:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Atdmt : Limpio con backup
:mozilla.513:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Tradedoubler : Limpio con backup
:mozilla.514:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Bluestreak : Limpio con backup
:mozilla.515:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Smartadserver : Limpio con backup
:mozilla.516:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Doubleclick : Limpio con backup
:mozilla.518:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.520:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.521:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.522:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.523:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.524:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.525:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.526:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.2o7 : Limpio con backup
:mozilla.527:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Fastclick : Limpio con backup
:mozilla.528:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Specificclick : Limpio con backup
:mozilla.533:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Advertising : Limpio con backup
:mozilla.537:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Targetnet : Limpio con backup
:mozilla.538:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Targetnet : Limpio con backup
:mozilla.540:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Bfast : Limpio con backup
:mozilla.548:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.549:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.550:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.551:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.553:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.556:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.573:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Tribalfusion : Limpio con backup
:mozilla.574:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Valueclick : Limpio con backup
:mozilla.584:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Centrport : Limpio con backup
:mozilla.586:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Webtrendslive : Limpio con backup
:mozilla.587:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Webtrendslive : Limpio con backup
:mozilla.588:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Webtrendslive : Limpio con backup
:mozilla.589:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Webtrendslive : Limpio con backup
:mozilla.590:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Webtrendslive : Limpio con backup
:mozilla.605:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Spylog : Limpio con backup
:mozilla.611:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Sexlist : Limpio con backup
:mozilla.612:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Masterstats : Limpio con backup
:mozilla.616:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Comclick : Limpio con backup
:mozilla.617:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Comclick : Limpio con backup
:mozilla.618:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Comclick : Limpio con backup
:mozilla.625:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Hitbox : Limpio con backup
:mozilla.635:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Adtech : Limpio con backup
:mozilla.636:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Adtech : Limpio con backup
:mozilla.639:C:\Documents and Settings\Monica\Datos de programa\Mozilla\Firefox\Profiles\3f6wymwv.IDEAL_Imp\cookies.txt -> Spyware.Cookie.Sitestat : Limpio con backup
HKU\S-1-5-21-1343024091-1409082233-725345543-1003\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{669695BC-A811-4A9D-8CDF-BA8C795F261C} -> Spyware.PowerStrip : Limpio con backup
HKU\S-1-5-21-1343024091-1409082233-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA2325ED-F9EB-4830-8FCE-0BC35B16969B} -> Spyware.SaveNow : Limpio con backup
::Fin Report
-----------------------------------------------------------------------------
y el Log del hijack es este:
Logfile of HijackThis v1.99.1
Scan saved at 06:11:12 p.m., on 05/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Archivos de programa\ewido\security suite\ewidoctrl.exe
C:\Archivos de programa\ewido\security suite\ewidoguard.exe
C:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7Debug\mdm.exe
C:\Archivos de programa\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DRIVERS\WtSrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Archivos de programa\ESET\nod32kui.exe
C:\HijackThis[www.trucoswindows.net].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Archivos de programa\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es-la\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\MSN Apps\MSN Toolbar\01.02.4000.1001\es-la\msntb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: Descargar con Free Download Manager - file://C:\Archivos de programa\Free Download Manager\dllink.htm
O8 - Extra context menu item: Descargar seleccionados con Free Download Manager - file://C:\Archivos de programa\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Descargar sitio web con Free Download Manager - file://C:\Archivos de programa\Free Download Manager\dlpage.htm
O8 - Extra context menu item: Descargar todo con Free Download Manager - file://C:\Archivos de programa\Free Download Manager\dlall.htm
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -
http://www.bitdefender.com/scan8/oscan8.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) -
http://messenger.msn.com/download/MsnMesse...pDownloader.cabO16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (ASquaredScanForm Element) -
http://www.windowsecurity.com/trojanscan/axscan.cabO18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\ARCHIV~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O23 - Service: ewido security suite control - ewido networks - C:\Archivos de programa\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Archivos de programa\ewido\security suite\ewidoguard.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Unknown owner - C:\Archivos de programa\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: WinTab Service (WinTabService) - Tablet Driver - C:\WINDOWS\system32\DRIVERS\WtSrv.exe
------------------------------------------------------------
Y FINALMENTE SIGUE LENTO... AHORA AUN MAS...
OTRA COSILLA, ES CONVENIENTE TENER INSTALADO EL NOD32, EL eWINDO SECURITY, EL AD-AWARE SE, TODOS JUNTOS?
GRACIAS.
JUAN PABLO