Bienvenido: ( Identificarse | Registrarse )      
Foros de Trucos Windows
 
Closed TopicStart new topicStart Poll

Outline · [ Estándar ] · Lineal+

> No puedo abrir paginas de hotmail y microsoft, asi como tampoco msn, aca esta mi log

a_ndre_s54
post Dec 11 2007, 11:35 PM
Publicado: #1


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 11-December 07
Miembro nº: 219.684



smile.gif Hola amigos de este foro, quiero pedirles ayuda con mi problema.

este es mi log, como antecedente les comento que compre un pc con windows vista hace unos dias y no he podido abrir windows live messenger, asi como tampoco algunas paginas, como hotmail.com ; microsoft.com etc.

sin embargo si puedo abrir paginas como gmail.com u otras y ademas puedo ocupar programas de intercambio de datos como "ares". esperando una respuesta y dejando mi log a continuacion me despido agradecido.

pd: cuando trato de abrir el windows live messenger, me da el siguiente error "81000306"

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:27:28, on 11-12-2007
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\RtHDVCpl.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Windows\system32\schtasks.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE
C:\hp\kbd\kbd.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\system32\Macromed\Flash\FlashUtil9c.exe
C:\Windows\system32\SearchFilterHost.exe
C:\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [DPService] "C:\Program Files\HP\DVDPlay\DPService.exe"
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Servicio de red')
O4 - Startup: Recorte de pantalla e Inicio rápido de OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{F2EB9925-8000-4771-973A-552F4611C4EA}: NameServer = 216.155.73.40 216.155.73.41
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 7046 bytes


User is offlineProfile CardPM
Go to the top of the page
+Quote Post
lobezzno
post Dec 12 2007, 01:49 AM
Publicado: #2


Ayudar para aprender, esa es la clave del éxito.
*********

Grupo: Expertos HijackThis
Mensajes: 2.538
Registrado: 30-August 06
Desde: (España)
Miembro nº: 179.327



Revisa este enlace del foro http://www.trucoswindows.net/foro/index.ph...ndpost&p=243731 y dinos si solucionaste el problema del msn.

En lo referente al log no veo nada destacable pero podemos mandarte una limpieza rutinaria por ver si ayudase con tu problema.

Realiza los siguientes pasos y nos pasas los resultados:

Actualiza tu sistema

Borra todas las cookies y el registro con CCleaner

Vete a Inicio- Panel de Control--> Java (si usas Java) y elimina todos los archivos temporales.

Pásale el AVG Antispyware. (Actualízalo antes y guarda el report)

Pásale también el ElistarA [Se descarga al final de esa página] (No necesita instalación, dile SI a todo) Los resultados aparecen en el archivo C:\Infosat.txt y también nos los tienes que pasar Cuando empiece el Scaneo, DESTILDAS la opcion de eliminar, a la izquierda de la ventana del programa, No te saltes este paso
imagen externa


Que no elimine nada


Vuelve a sacar un nuevo Log del Hijackthis y nos lo pegas junto con el Report del Ewido y del Elistara.

Un Saludo y comenta los problemas que tienes.


User is offlineProfile CardPM
Go to the top of the page
+Quote Post
a_ndre_s54
post Dec 12 2007, 06:41 PM
Publicado: #3


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 11-December 07
Miembro nº: 219.684



Hola amigos, nuevamente quiero agradecer por su ayuda.

Quiero contarles que no me fue bien con mi problema de abrir messenger y otras paginas como microsoft, u hotmail. Realize todas las acciones que me recomendaron de utilizar los programas limpiadores, etc, pero nada, sigo sin poder abrir windows live messenger 8.1 ( porque el 8.5 no lo pude instalar, no me dejo el computador), como antecedente deben saber que mi computador es nuevo, es un hp pavilion slimline de 2 gb ram procesador 64 athlon x2.

pd: en cuanto al messenger, y el error 81000306 , yo si tengo conexion a internet y de hecho ahora estoy escribiendo en esta pagina desde el computador afectado, pero solo que no puedo ingresar a paginas de microsoft, de hotmail, y no puedo abrir windows live messenger, porque si puedo abrir paginas como gmail, o abrir programas de intercambio como ares o kazaa.

pd2: yo tengo un notebook que le conecto el cable de internet y si funciona el messenger, y las paginas que no funcionan en este computador, eso quiere decir que no es un problema de mi conexion sino mas bien del sistema operativo que posee este computador (que es windows vista basic edicion).


Aca colocare los informes de los programas que utilize.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:32:59, on 12-12-2007
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\WINDOWS\RtHDVCpl.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Windows\system32\schtasks.exe
C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\hp\kbd\kbd.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [DPService] "C:\Program Files\HP\DVDPlay\DPService.exe"
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - Startup: Recorte de pantalla e Inicio rápido de OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F2EB9925-8000-4771-973A-552F4611C4EA}: NameServer = 216.155.73.40 216.155.73.41
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 6616 bytes



Wed Dec 12 14:20:15 2007
EliStartPage v15.23 ©2007 S.G.H. / Satinfo S.L.
--------------------------------------------------
Lista de Acciones (por Acción Directa):
D:\DESKTOP.INI --> Eliminado (Fichero Complementario).
No ha sido posible abrir IERESET.INF
Eliminadas las Paginas de Inicio y de Busqueda del IE
Eliminados Ficheros Temporales del IE
Detectado AUTORUN.INF en la Unidad (E)
OPEN=EE2AutoRun.exe
Si Desconoce la Aplicación, por favor envienosla
acompañada del AUTORUN.INF a "virus@satinfo.es". Gracias.

Wed Dec 12 14:21:59 2007
EliStartPage v15.23 ©2007 S.G.H. / Satinfo S.L.
--------------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
C:\Program Files\HP\DVDPlay\QT3SUPPORT4.DLL --> Infectado, ISTBar
C:\Program Files\Roxio\VideoCore 9\VCPTRANSANIMATED3D.DLL --> Infectado, AdClicker.BJ(BHO)

Nº Total de Directorios: 13834
Nº Total de Ficheros: 88950
Nº de Ficheros Analizados: 16891
Nº de Ficheros Infectados: 2
Nº de Ficheros Limpiados: 0


---------------------------------------------------------
AVG Anti-Spyware - Informe del análisis
---------------------------------------------------------

+ Creado en: 3:52:14 12-12-2007

+ Resultado del análisis:



C:\Users\Eduardo\AppData\Roaming\Microsoft\Windows\Cookies\Low\eduardo@doubleclick[1].txt -> TrackingCookie.Doubleclick : Limpios.
C:\Users\Eduardo\AppData\Roaming\Microsoft\Windows\Cookies\eduardo@doubleclick[1].txt -> TrackingCookie.Doubleclick : Limpios.
C:\Users\Eduardo\AppData\Roaming\Microsoft\Windows\Cookies\Low\eduardo@ssl-hints.netflame[2].txt -> TrackingCookie.Netflame : Limpios.
C:\Users\Eduardo\AppData\Roaming\Microsoft\Windows\Cookies\eduardo@real[1].txt -> TrackingCookie.Real : Limpios.
C:\Users\Casa\AppData\Roaming\Microsoft\Windows\Cookies\Low\casa@m.webtrends[2].txt -> TrackingCookie.Webtrends : Limpios.
C:\Users\Invitado\AppData\Roaming\Microsoft\Windows\Cookies\Low\invitado@m.webtrends[2].txt -> TrackingCookie.Webtrends : Limpios.


::Fin del informe



Muchas gracias nuevamente amigos, y espero poder solucionar mi problema y despues poder ayudar a otros.


User is offlineProfile CardPM
Go to the top of the page
+Quote Post
yosoydoug
post Dec 12 2007, 07:08 PM
Publicado: #4


AnTi_MaLwArE
Group Icon

Grupo: Moderadores
Mensajes: 4.394
Registrado: 11-January 07
Desde: Paraguay
Miembro nº: 190.609



Combo Fix
1. Descarga Combofix.exe en el escritorio
2. Haz Doble click en combofix.exe y lo ejecutas, sigues los avisos
3. Al finalizar la ejecuccion produce un log localizado en: (C:\ComboFix.txt).

pegas ese report y un nuevo log

Un saludo
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
lobezzno
post Dec 12 2007, 07:16 PM
Publicado: #5


Ayudar para aprender, esa es la clave del éxito.
*********

Grupo: Expertos HijackThis
Mensajes: 2.538
Registrado: 30-August 06
Desde: (España)
Miembro nº: 179.327



Prueba esta opción para intentar solucionar lo del MSN:

Pincha en el icono del messenger con botón derecho y elige "ejecutar como administrador".

Mete tu login y Password a ver si ya funciona.

2ª Opción:

- Pulsa a la vez las teclas "Windows" + R

- Escribe el comando netsh int tcp set global autotuninglevel=disabled

Si quieres volver a activar el AutoTunning, debes poner:
netsh int tcp set global autotuninglevel=normal


Un saludo y comenta si tuviste suerte.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
a_ndre_s54
post Dec 12 2007, 07:42 PM
Publicado: #6


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 11-December 07
Miembro nº: 219.684



Hola amigos, les quiero comentar que no he podido entrar a messenger ( aunque utilice el modo administrador desde el archivo exe, aun asi no puedo entrar, y tambien desactive eso que me dijiste pero no cambio nada) y tampoco a las paginas de microsoft, u hotmail, en resumen sigo igual y mas aun he ganado un problema aparente, esto debido a haber utilizado el prgrama combofix-

cry1at.gif

Este error aparece cuando abro internet explorer ( todo esto despues de ejecutar combofix

el error dice esto

"No se puede encontrar "::{2559A1F4-21D7-11D4-BDAF-00C04F60B9F0}".Compruebe que la ruta o direccion de internet sean correctos. "


Aca va el informe que produjo combofix

ComboFix 07-12-12.3 - Eduardo 2007-12-12 15:21:50.1 - NTFSx86
Microsoft® Windows Vista™ Home Basic 6.0.6000.0.1252.1.3082.18.1114 [GMT -3:00]
Se ejecuta desde: C:\Users\Eduardo\Downloads\ComboFix.exe
* Creado un nuevo punto de restauración
.

(((((((((((((((((((((((((((((((((((( Otras eliminaciones )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Windows\system32\jusched.exe

.
(((((((((((((((((( Archivos creados desde 2007-11-12 - 2007-12-12 )))))))))))))))))))))))))))))))))
.

2007-12-12 03:10 . 2007-12-12 03:10 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\Grisoft
2007-12-12 03:09 . 2007-12-12 03:09 <DIR> d-------- C:\Users\All Users\Grisoft
2007-12-12 03:09 . 2007-12-12 03:09 <DIR> d-------- C:\ProgramData\Grisoft
2007-12-12 03:09 . 2007-05-30 09:10 10,872 --a------ C:\WINDOWS\System32\drivers\AvgAsCln.sys
2007-12-12 03:07 . 2007-12-12 03:07 <DIR> d-------- C:\Program Files\Yahoo!
2007-12-12 03:07 . 2007-12-12 03:08 <DIR> d-------- C:\Program Files\CCleaner
2007-12-11 19:26 . 2007-12-12 14:32 <DIR> d-------- C:\HijackThis
2007-12-11 16:20 . 2007-12-11 16:20 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\Sierra
2007-12-11 16:01 . 2007-12-11 16:01 <DIR> d-------- C:\Users\All Users\Apple Computer
2007-12-11 16:01 . 2007-12-11 16:01 <DIR> d-------- C:\ProgramData\Apple Computer
2007-12-11 16:01 . 2007-12-11 16:01 <DIR> d-------- C:\Program Files\QuickTime Alternative
2007-12-11 16:01 . 2007-06-29 06:24 65,536 --a------ C:\WINDOWS\System32\QuickTimeVR.qtx
2007-12-11 16:01 . 2007-06-29 06:24 49,152 --a------ C:\WINDOWS\System32\QuickTime.qts
2007-12-11 15:39 . 2007-12-11 15:39 <DIR> d-------- C:\Users\Eduardo\Phone Browser
2007-12-11 15:39 . 2007-12-11 15:39 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\Datalayer
2007-12-11 15:38 . 2007-12-11 15:39 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\Nokia
2007-12-11 15:31 . 2007-12-11 15:33 <DIR> d-------- C:\WINDOWS\Downloaded Installations
2007-12-11 15:31 . 2007-12-11 15:31 <DIR> d-------- C:\Program Files\Common Files\Nokia
2007-12-11 15:30 . 2007-12-11 15:37 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\PC Suite
2007-12-11 15:30 . 2007-12-11 15:30 <DIR> d-------- C:\Users\All Users\PC Suite
2007-12-11 15:30 . 2007-12-11 15:30 <DIR> d-------- C:\ProgramData\PC Suite
2007-12-11 15:30 . 2007-12-11 15:33 <DIR> d-------- C:\Program Files\Nokia
2007-12-11 15:30 . 2007-12-11 15:31 <DIR> d-------- C:\Program Files\Common Files\PCSuite
2007-12-11 15:29 . 2007-12-11 15:29 <DIR> d-------- C:\Users\All Users\Downloaded Installations
2007-12-11 15:29 . 2007-12-11 15:29 <DIR> d-------- C:\ProgramData\Downloaded Installations
2007-12-10 21:17 . 2007-12-10 21:21 <DIR> d--hsc--- C:\Program Files\Common Files\WindowsLiveInstaller
2007-12-10 02:38 . 2007-12-10 02:38 <DIR> d-------- C:\Users\All Users\Arcade Lab
2007-12-10 02:38 . 2007-12-10 02:38 <DIR> d-------- C:\ProgramData\Arcade Lab
2007-12-10 01:35 . 2007-12-10 01:35 <DIR> d-------- C:\Users\All Users\Sandlot Games
2007-12-10 01:35 . 2007-12-10 01:35 <DIR> d-------- C:\ProgramData\Sandlot Games
2007-12-10 01:35 . 2007-12-10 01:35 <DIR> d-------- C:\Program Files\Common Files\Sandlot Shared
2007-12-10 00:18 . 2007-12-10 00:18 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\PlayFirst
2007-12-10 00:18 . 2007-12-10 00:18 <DIR> d-------- C:\Users\All Users\PlayFirst
2007-12-10 00:18 . 2007-12-10 00:18 <DIR> d-------- C:\ProgramData\PlayFirst
2007-12-09 22:27 . 2007-12-09 22:27 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\mIRC
2007-12-09 18:35 . 2007-12-09 18:35 <DIR> d-------- C:\Program Files\Real
2007-12-09 18:35 . 2007-12-09 18:35 <DIR> d-------- C:\Program Files\Common Files\xing shared
2007-12-09 18:35 . 2007-12-09 18:35 <DIR> d-------- C:\Program Files\Common Files\Real
2007-12-09 18:25 . 2007-12-09 18:25 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\CyberLink
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Videos
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Searches
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Saved Games
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Pictures
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Music
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Links
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Downloads
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Documents
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> dr------- C:\Users\Casa\Contacts
2007-12-09 18:15 . 2007-12-09 18:15 <DIR> d--h----- C:\Users\Casa\AppData
2007-12-09 15:59 . 2007-12-09 15:59 <DIR> d-------- C:\Users\Invitado\AppData\Roaming\WildTangent
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Videos
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Searches
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Saved Games
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Pictures
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Music
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Links
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Downloads
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Documents
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> dr------- C:\Users\Invitado\Contacts
2007-12-08 21:43 . 2007-12-08 21:43 <DIR> d--h----- C:\Users\Invitado\AppData
2007-12-08 05:12 . 2007-12-08 05:12 16 --a------ C:\WINDOWS\System32\coh.cache
2007-12-08 04:59 . 2006-10-26 19:56 32,592 --a------ C:\WINDOWS\System32\msonpmon.dll
2007-12-08 04:55 . 2007-12-08 04:55 <DIR> d-------- C:\Program Files\Microsoft.NET
2007-12-08 04:51 . 2007-12-08 04:51 <DIR> d-------- C:\Program Files\Microsoft Visual Studio 8
2007-12-08 04:50 . 2007-12-08 04:56 <DIR> d-------- C:\WINDOWS\SHELLNEW
2007-12-08 04:50 . 2007-12-08 04:59 <DIR> d-------- C:\Users\All Users\Microsoft Help
2007-12-08 04:50 . 2007-12-08 04:59 <DIR> d-------- C:\ProgramData\Microsoft Help
2007-12-08 04:49 . 2007-12-08 04:49 <DIR> dr-h----- C:\MSOCache
2007-12-08 04:17 . 2007-12-08 04:17 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\WildTangent
2007-12-08 00:24 . 2007-12-08 00:24 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\PeerNetworking
2007-12-08 00:04 . 2007-12-08 00:04 <DIR> d-------- C:\Program Files\Smart Projects
2007-12-07 23:49 . 2007-12-07 23:49 <DIR> d-------- C:\Program Files\WinISO
2007-12-07 23:32 . 2007-12-07 23:32 <DIR> d-------- C:\Users\Eduardo\Nueva carpeta
2007-12-07 22:20 . 2007-12-07 23:41 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\Roxio
2007-12-07 18:41 . 2007-12-10 21:17 <DIR> d-------- C:\Users\All Users\WLInstaller
2007-12-07 18:41 . 2007-12-10 21:17 <DIR> d-------- C:\ProgramData\WLInstaller
2007-12-07 18:41 . 2007-12-07 18:41 <DIR> d-------- C:\Program Files\Windows Live
2007-12-07 17:07 . 2007-12-07 17:07 <DIR> d-------- C:\Program Files\EA GAMES
2007-12-07 17:07 . 2004-08-18 05:34 442,368 -ra------ C:\WINDOWS\System32\vp6vfw.dll
2007-12-07 16:58 . 2007-12-07 17:15 <DIR> d-------- C:\Program Files\DAEMON Tools
2007-12-07 16:53 . 2007-12-07 16:53 685,816 --a------ C:\WINDOWS\System32\drivers\sptd.sys
2007-12-07 16:38 . 2007-12-07 16:38 <DIR> d-------- C:\Program Files\Sierra
2007-12-07 16:26 . 2007-12-07 16:26 <DIR> d-------- C:\Program Files\Ares
2007-12-07 16:24 . 2007-12-07 16:24 <DIR> d-------- C:\WINDOWS\PCHEALTH
2007-12-07 16:24 . 2007-12-10 21:14 <DIR> d-------- C:\Program Files\MSN Messenger
2007-12-07 16:08 . 2007-12-07 16:08 <DIR> dr------- C:\Users\Eduardo\Searches
2007-12-07 16:08 . 2007-12-07 16:25 <DIR> dr------- C:\Users\Eduardo\Contacts
2007-12-07 16:08 . 2007-12-07 16:08 44 --a------ C:\WINDOWS\system\hpsysdrv.dat
2007-12-07 16:07 . 2007-12-07 16:07 <DIR> d-------- C:\Users\Eduardo\AppData\Roaming\Hewlett-Packard
2007-12-07 16:05 . 2007-12-10 17:02 <DIR> dr------- C:\Users\Eduardo\Videos
2007-12-07 16:05 . 2007-12-08 02:16 <DIR> dr------- C:\Users\Eduardo\Saved Games
2007-12-07 16:05 . 2007-12-11 15:40 <DIR> dr------- C:\Users\Eduardo\Pictures
2007-12-07 16:05 . 2007-12-07 22:05 <DIR> dr------- C:\Users\Eduardo\Music
2007-12-07 16:05 . 2007-12-07 16:08 <DIR> dr------- C:\Users\Eduardo\Links
2007-12-07 16:05 . 2007-12-12 15:20 <DIR> dr------- C:\Users\Eduardo\Downloads
2007-12-07 16:05 . 2007-12-11 16:20 <DIR> dr------- C:\Users\Eduardo\Documents
2007-12-07 16:05 . 2007-12-07 16:05 <DIR> d--h----- C:\Users\Eduardo\AppData
2007-12-07 16:05 . 2007-12-07 16:06 1,848 -rahs---- C:\WINDOWS\System32\drivers\103C_HP_CPC_GQ431AA-ABM s3210la_YC_0Pavi_QCNH734_E74LAv3PrA1_49_IAcacia_SASUSTek Computer INC._V1.00_B5.04_T070810_WUH0_LC0A_M1919_J160_7AMD_8Athlon 64 X2 Dual Core_91.9_#071206_N10DE03EF_Z14F12F20_G10DE03D0.MRK
2007-12-07 16:01 . 2007-12-07 16:01 <DIR> dr------- C:\WINDOWS\System32\config\systemprofile\Contacts

.
(((((((((((((((((((((((((((((((((((((( Reporte Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-10 20:39 --------- d-----w C:\ProgramData\Roxio
2007-12-09 21:23 --------- d-----w C:\ProgramData\CyberLink
2007-12-08 17:07 --------- d-----w C:\ProgramData\Symantec
2007-12-08 08:15 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2007-12-08 07:56 --------- d-----w C:\Program Files\MSBuild
2007-12-08 07:56 --------- d-----w C:\Program Files\Microsoft Works
2007-12-08 07:17 --------- d-----w C:\ProgramData\WildTangent
2007-12-08 01:20 --------- d-----w C:\ProgramData\Sonic
2007-12-07 19:38 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-07 19:01 --------- d-sh--w C:\ProgramData\Plantillas
2007-12-07 19:01 --------- d-sh--w C:\ProgramData\Menú Inicio
2007-12-07 19:01 --------- d-sh--w C:\ProgramData\Favoritos
2007-12-07 19:01 --------- d-sh--w C:\ProgramData\Escritorio
2007-12-07 19:01 --------- d-sh--w C:\ProgramData\Documentos
2007-12-07 19:01 --------- d-sh--w C:\ProgramData\Datos de programa
2007-12-07 19:01 --------- d-sh--w C:\Program Files\Archivos comunes
2006-11-02 12:48 174 --sha-w C:\Program Files\desktop.ini
.

((((((((((((((((((((((((((((((((( Cargando Puntos Reg ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Nota* entradas vacías & entradas legítimas predeterminadas no son mostradas

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2006-11-02 09:34]
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2007-08-16 08:24]
"PcSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2006-04-11 17:52]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-08-11 11:47]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 12:01]
"KBD"="C:\HP\KBD\KbdStub.EXE" [2006-12-08 13:16]
"OsdMaestro"="C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [2007-02-15 08:59]
"NvSvc"="RUNDLL32.exe" [2006-11-02 06:45 C:\WINDOWS\System32\rundll32.exe]
"NvCplDaemon"="RUNDLL32.exe" [2006-11-02 06:45 C:\WINDOWS\System32\rundll32.exe]
"NvMediaCenter"="RUNDLL32.exe" [2006-11-02 06:45 C:\WINDOWS\System32\rundll32.exe]
"RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 08:06 C:\WINDOWS\RtHDVCpl.exe]
"HP Health Check Scheduler"="c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-05-24 08:13]
"DPService"="C:\Program Files\HP\DVDPlay\DPService.exe" [2007-07-03 14:19]
"SunJavaUpdateReg"="C:\Windows\system32\jureg.exe" [2007-04-06 21:56]
"HP Software Update"="c:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-02-16 18:11]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 00:47]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-12-09 18:35]
"PCSuiteTrayApplication"="C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.exe" [2006-04-26 08:29]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 06:25]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="%WINDIR%\SMINST\launcher.exe" []

C:\Users\Eduardo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Recorte de pantalla e Inicio r pido de OneNote 2007.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 20:24:54]

R0 nvstor32;nvstor32;C:\Windows\system32\drivers\nvstor32.sys
R2 XAudio;XAudio;C:\Windows\system32\DRIVERS\xaudio.sys
R3 nvlddmkm;nvlddmkm;C:\Windows\system32\DRIVERS\nvlddmkm.sys

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalService REG_MULTI_SZ nsi lltdsvc SSDPSRV upnphost SCardSvr w32time EventSystem RemoteRegistry WinHttpAutoProxySvc lanmanworkstation TBS SLUINotify THREADORDER fdrespub netprofm fdphost wcncsvc QWAVE WebClient
LocalSystemNetworkRestricted REG_MULTI_SZ hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc wlansvc EMDMgmt TabletInputService WPDBusEnum
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{4211827e-a4fe-11dc-9268-001d60420895}]
\shell\AutoRun\command - J:\Setup.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{42118280-a4fe-11dc-9268-001d60420895}]
\shell\AutoRun\command - K:\RunGame.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{42118282-a4fe-11dc-9268-001d60420895}]
\shell\AutoRun\command - L:\RunGame.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{42118284-a4fe-11dc-9268-001d60420895}]
\shell\AutoRun\command - M:\RunGame.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a172ca8d-a50e-11dc-b6f5-806e6f6e6963}]
\shell\AutoRun\command - E:\EE2AutoRun.exe

*Newly Created Service* - AVGASCLN
*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.
**************************************************************************

catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-12-12 15:25:51
Windows 6.0.6000 NTFS

escaneando procesos ocultos ...

escaneando entradas ocultas de autostart ...

escaneando archivos ocultos ...

el escaneo se completo con exito
archivos ocultos: 0

**************************************************************************
.
Tiempo completado: 2007-12-12 15:26:32
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
Caito
post Dec 13 2007, 04:46 AM
Publicado: #7


No Spiware
Group Icon

Grupo: Supervisor Global
Mensajes: 17.509
Registrado: 15-August 04
Desde: Argentina
Miembro nº: 13.043



Pon un nuevo log
salu2
caito
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
a_ndre_s54
post Dec 17 2007, 01:53 AM
Publicado: #8


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 11-December 07
Miembro nº: 219.684



Aca esta mi nuevo log

pd: formatie y reinstale windows vista.

Logfile of HijackThis v1.99.1
Scan saved at 21:49:19, on 16-12-2007
Platform: Unknown Windows (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\RtHDVCpl.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Windows\system32\schtasks.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hp\kbd\kbd.exe
C:\Windows\system32\Macromed\Flash\FlashUtil9c.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Azureus\Azureus.exe
C:\Users\Eduardo\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aplicación auxiliar de vínculos de Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [DPService] "C:\Program Files\HP\DVDPlay\DPService.exe"
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Enviar a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{01F95571-EC77-4A7A-B8CC-2E55227166C0}: NameServer = 216.155.73.40 216.155.73.41
O17 - HKLM\System\CS1\Services\Tcpip\..\{01F95571-EC77-4A7A-B8CC-2E55227166C0}: NameServer = 216.155.73.40 216.155.73.41
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8195 (NetMsmqActivator) - Unknown owner - C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe" -NetMsmqActivator (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30003 (W3SVC) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%windir%\system32\inetsrv\iisres.dll,-30001 (WAS) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
Caito
post Dec 17 2007, 11:06 AM
Publicado: #9


No Spiware
Group Icon

Grupo: Supervisor Global
Mensajes: 17.509
Registrado: 15-August 04
Desde: Argentina
Miembro nº: 13.043



Sigues con problemas ?
salu2
caito
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
a_ndre_s54
post Dec 18 2007, 05:44 AM
Publicado: #10


Newbie
*

Grupo: Members
Mensajes: 6
Registrado: 11-December 07
Miembro nº: 219.684



Efectivamente Caito, aun sigo con problemas.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
yosoydoug
post Dec 18 2007, 12:16 PM
Publicado: #11


AnTi_MaLwArE
Group Icon

Grupo: Moderadores
Mensajes: 4.394
Registrado: 11-January 07
Desde: Paraguay
Miembro nº: 190.609



Haz un scan on line acá:
http://www.nod32.com.uy/online-scanner/
Debes usar el Internet Explorer y aceptar los active x
Le pones que elimine lo que te detecte.
Nos copias ese reporte y un nuevo log
Salu2
User is offlineProfile CardPM
Go to the top of the page
+Quote Post

 
Closed TopicTopic OptionsStart new topic

Collapse

> Topicos similares

Tutorial: Cómo crear un disco de inicio MS-DOS JaCoBo 0 0 Hoy, 02:31 AM
By: vitrox2007
Tutorial: Cómo crear un disco de inicio MS-DOS JaCoBo 123 4 Hoy, 02:31 AM
By: vitrox2007
URGENTE! No puedo usar antivirus jorgearce321 206 11 Ayer, 11:02 PM
By: jorgearce321
NO puedo instalar Messenger jeniret 331 5 Ayer, 06:09 PM
By: Luis_Kano
hotmail no recuerda la contraseña crespen 813 5 Ayer, 06:04 PM
By: Luis_Kano