Re: Mi pc inicia lento igual q internet Gracias amigo por tomar mi caso tengo el windows xp y trabajo con el internet explorer ademas poseo el search & destroy y el spyware blaster. te dire q descargue el ewido y lo pase y me dejo este resultado:
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 01:25:44 p.m. 18/09/2006
+ Scan result:
C:\compaq\laisp\Terra\Instalar.exe -> Heuristic.Win32.Dialer : Ignored.
C:\Documents and Settings\Dora\Cookies\dora@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Dora\Cookies\dora@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Dora\Cookies\dora@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Dora\Cookies\dora@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Dora\Cookies\dora@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Dora\Cookies\dora@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\Dora\Cookies\dora@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Dora\Configuración local\Datos de programa\csrss.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Configuración local\Datos de programa\inetinfo.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Configuración local\Datos de programa\lsass.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Configuración local\Datos de programa\services.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Configuración local\Datos de programa\smss.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Configuración local\Datos de programa\winlogon.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Menú Inicio\Programas\Inicio\Empty.pif -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Boleros\Feliciano\Feliciano.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Boleros\Guiller\Guiller.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Boleros\Ivan Cruz\Ivan Cruz.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Boleros\Segundo Rosero\Segundo Rosero.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Clasicos de Siempre3\Clasicos de Siempre3.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Clasicos de Siempre3\Musica Relajante\Musica Relajante.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Clasicos de Siempre3\Musica\Musica.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Copia de seguridad de la licencia\Copia de seguridad de la licencia.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Mi música.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\Rocas\Rocas.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mi música\www.mobilehits.com - Hombres G\www.mobilehits.com - Hombres G`.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis Webs\_vti_pvt\_vti_pvt.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis archivos recibidos\Mis archivos recibidos.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis archivos recibidos\lila01293928920257\Historial\Historial.e xe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis documentos.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis imágenes\Camara Digital\Camara Digital.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis imágenes\Mis imágenes.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis vídeos\Google Videos\Google Videos.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\Mis vídeos\Mis vídeos.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Mis documentos\PcSetup\PcSetup.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\Documents and Settings\Dora\Plantillas\Brengkolang.com -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\WINDOWS\ShellNew\sempalong.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\WINDOWS\eksplorasi.exe -> Worm.Brontok.c : Cleaned with backup (quarantined).
C:\WINDOWS\system32\Dora's Setting.scr -> Worm.Brontok.c : Cleaned with backup (quarantined).
[192] C:\Documents and Settings\Dora\Configuración local\Datos de programa\winlogon.exe -> Worm.Brontok.c : Error during cleaning.
[272] C:\Documents and Settings\Dora\Configuración local\Datos de programa\services.exe -> Worm.Brontok.c : Error during cleaning.
[428] C:\Documents and Settings\Dora\Configuración local\Datos de programa\lsass.exe -> Worm.Brontok.c : Error during cleaning.
::Report end
y el reporte de mi hjt es:
Logfile of HijackThis v1.99.1
Scan saved at 12:52:47 a.m., on 19/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\Archivos comunes\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Archivos de programa\ewido anti-spyware 4.0\guard.exe
C:\MSSQL7\binn\sqlservr.exe
C:\WINDOWS\Explorer.EXE
C:\Archivos de programa\Persystems\Perav\PERVACNT.EXE
C:\WINDOWS\system32\pctspk.exe
C:\ARCHIV~1\THEHAC~1\THD32.EXE
C:\ARCHIV~1\THEHAC~1\THSM.EXE
C:\Archivos de programa\ewido anti-spyware 4.0\ewido.exe
C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe
C:\Archivos de programa\Messenger\msmsgs.exe
C:\WINDOWS\system32\WgaTray.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Archivos de programa\HJT\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O2 - BHO: (no name) - {012870F9-3B38-DFF7-356D-7C61193D4D02} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: Alexa - {3CEFF6CD-6F08-4e4d-BCCD-FF7415288C3B} - C:\WINDOWS\system32\SHDOCVW.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [!ewido] "C:\Archivos de programa\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKLM\..\Run: [TkBellExe] "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SpySweeper] "C:\Archivos de programa\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKLM\..\Run: [Bron-Spizaetus] "C:\WINDOWS\ShellNew\sempalong.exe"
O4 - HKCU\..\Run: [Tok-Cirrhatus] "C:\Documents and Settings\Dora\Configuración local\Datos de programa\smss.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Archivos de programa\Messenger\msmsgs.exe" /background
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Pol icies\System, DisableRegedit=1
O8 - Extra context menu item: Write a Review... - http://client.alexa.com/holiday/script/actions/review.htm
O9 - Extra button: Web Anti-Virus - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\WINDOWS\System32\shdocvw.dll
O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=48835
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://animea1000hora.spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1140500402971
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A3009861-330C-4E10-822B-39D16EC8829D} (CRAVOnline Object) - http://www.ravantivirus.com/scan/ravonline.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{10E6C2AC-51AC-47F3-AF36-944818EAE16A}: NameServer = 200.48.225.130,200.48.225.146
O18 - Protocol: dynascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\ARCHIV~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Archivos de programa\ewido anti-spyware 4.0\guard.exe
O23 - Service: LogoMedia TranslateDotNet Server - LogoMedia Corporation - C:\Archivos de programa\Power Translator\LogoMedia TranslateDotNet Server.exe
O23 - Service: PER Antivirus Security Service (pav_security) - PER SYSTEMS S.A. - C:\Archivos de programa\Persystems\Perav\PAVSS.EXE
O23 - Service: PER Antivirus (pav_service) - PER Systems S.A. - C:\Archivos de programa\Persystems\Perav\PERVACNT.EXE
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Archivos de programa\Archivos comunes\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: The Hacker Antivirus (The_Hacker_Antivirus) - Hacksoft s.r.l. - C:\ARCHIV~1\THEHAC~1\THD32.EXE
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Archivos de programa\TuneUp Utilities 2006\WinStylerThemeSvc.exe
O23 - Service: The Hacker Service Manager (T_H_S_M) - Hacksoft - C:\ARCHIV~1\THEHAC~1\THSM.EXE
ademas te dire q no puedo ver mis carpetas ocultas pues desaparecio del menu herramientas la opcion "opciones de carpetas" y no se como verlas y el pert antivirus me dice que el archivo httpx.dll del system32 esta dañado
la verdad no se q hacer
plis ayudenme |