Ver Mensaje Individual
  post #6 (permalink)  
Antiguo 22/12/06, 14:05:50
mazh602 mazh602 está offline
Usuario
 
Registrado: dic 2006
Ubicación: Mexico
Mensajes: 4
Articulo No puedo ver mis archivos ocultos

Hola de nuevo gracias LeandroMed ya realice los analisis online y se detectaron en las siguienetes amenazas que se encuentran en el siguiente reporte:

-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Friday, December 22, 2006 9:14:33 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 23/12/2006
Kaspersky Anti-Virus database records: 253805
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\

Scan Statistics:
Total number of scanned objects: 40346
Number of viruses found: 2
Number of infected objects: 14 / 0
Number of suspicious objects: 0
Duration of the scan process: 02:46:28

Infected Object Name / Virus Name / Last Action
C:\Archivos de programa\Alcohol Soft\Alcohol 120\StarWind\logs\starwind.2006-12-22.17-44-08.log Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\00c5_pdm_eventcritlog.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\00c5_pdm_eventlog.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\00c7_File_Monitoring_eventlog.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\00cc_Web_Monitoring_eventlog.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\detected.idx Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\detected.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\eventlog.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Kaspersky Lab\AVP6\Report\report.rpt Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Datos de programa\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\LocalService\Configuración local\Archivos temporales de Internet\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Configuración local\Historial\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Archivos temporales de Internet\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Datos de programa\Ahead\Nero Home\bl.db Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Datos de programa\Ahead\Nero Home\bl.db-journal Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Datos de programa\Ahead\Nero Home\is2.db Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Datos de programa\Ahead\Nero Home\is2.db-journal Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Configuración local\Historial\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Marcos Saúl\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Marcos Saúl\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Marcos Saúl\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Inetpub\catalog.wci\00000002.ps1 Object is locked skipped
C:\Inetpub\catalog.wci\00000002.ps2 Object is locked skipped
C:\Inetpub\catalog.wci\cicat.fid Object is locked skipped
C:\Inetpub\catalog.wci\cicat.hsh Object is locked skipped
C:\Inetpub\catalog.wci\CiCL0001.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiP10000.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiP20000.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiPT0000.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiSL0001.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiSP0000.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiST0000.000 Object is locked skipped
C:\Inetpub\catalog.wci\CiVP0000.000 Object is locked skipped
C:\Inetpub\catalog.wci\INDEX.000 Object is locked skipped
C:\Inetpub\catalog.wci\propstor.bk1 Object is locked skipped
C:\Inetpub\catalog.wci\propstor.bk2 Object is locked skipped
C:\System Volume Information\catalog.wci\00000002.ps1 Object is locked skipped
C:\System Volume Information\catalog.wci\00000002.ps2 Object is locked skipped
C:\System Volume Information\catalog.wci\cicat.fid Object is locked skipped
C:\System Volume Information\catalog.wci\cicat.hsh Object is locked skipped
C:\System Volume Information\catalog.wci\CiCL0001.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiP10000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiP20000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiPT0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiSL0001.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiSP0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiST0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiVP0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\INDEX.000 Object is locked skipped
C:\System Volume Information\catalog.wci\propstor.bk1 Object is locked skipped
C:\System Volume Information\catalog.wci\propstor.bk2 Object is locked skipped
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\EventCache\{E6BF4D 12-8ECA-4B91-828D-E711B219E7CB}.bin Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.lo g Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edbtmp.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox.dat Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox.idx Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox2.dat Object is locked skipped
C:\WINDOWS\system32\drivers\fidbox2.idx Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\drivers\sptd4413.sys Object is locked skipped
C:\WINDOWS\system32\drivers\vaxscsi.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MA P Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MA P Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DAT A Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\Temp\cch~7cf77864d5.htp Object is locked skipped
C:\WINDOWS\Temp\cch~7cf79a0291.htp Object is locked skipped
C:\WINDOWS\Temp\cch~7f13d027d9.htp Object is locked skipped
C:\WINDOWS\Temp\cch~7f13ec0ffa.htp Object is locked skipped
C:\WINDOWS\Temp\cch~816cb1ede2f.htp Object is locked skipped
C:\WINDOWS\Temp\cch~816cb3e2a81.htp Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_2a4.dat Object is locked skipped
C:\WINDOWS\Temp\~DFF14D.tmp Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\respaldo\memoria\Raiz\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4A58D9B2EF6C42B69E89134389B756C3/index.mht/[From Smith Barney <identifdep_id646801313280@smithbarney.com>][Date Fri, 28 Jan 2005 17:58:51 -0100]/html Infected: Trojan-Spy.HTML.Smitfraud.c skipped
D:\respaldo\memoria\Raiz\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4A58D9B2EF6C42B69E89134389B756C3/index.mht Infected: Trojan-Spy.HTML.Smitfraud.c skipped
D:\respaldo\memoria\Raiz\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4E3C21BB5BBF4970B900B214E8009171/index.mht/[From Regions <support_id_8182@regions.com>][Date Tue, 01 Feb 2005 10:34:24 -0500]/html Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\respaldo\memoria\Raiz\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4E3C21BB5BBF4970B900B214E8009171/index.mht Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\respaldo\memoria\Raiz\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\respaldo\memoria\Raiz\basedemo.exe/AutoPlay/Files/Demo.exe Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\respaldo\memoria\Raiz\basedemo.exe ZIP: infected - 6 skipped
D:\software\software\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4A58D9B2EF6C42B69E89134389B756C3/index.mht/[From Smith Barney <identifdep_id646801313280@smithbarney.com>][Date Fri, 28 Jan 2005 17:58:51 -0100]/html Infected: Trojan-Spy.HTML.Smitfraud.c skipped
D:\software\software\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4A58D9B2EF6C42B69E89134389B756C3/index.mht Infected: Trojan-Spy.HTML.Smitfraud.c skipped
D:\software\software\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4E3C21BB5BBF4970B900B214E8009171/index.mht/[From Regions <support_id_8182@regions.com>][Date Tue, 01 Feb 2005 10:34:24 -0500]/html Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\software\software\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip/2005/Correos/4E3C21BB5BBF4970B900B214E8009171/index.mht Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\software\software\basedemo.exe/AutoPlay/Files/Demo.exe/2005 Compartida.zip Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\software\software\basedemo.exe/AutoPlay/Files/Demo.exe Infected: Trojan-Spy.HTML.Bankfraud.ci skipped
D:\software\software\basedemo.exe ZIP: infected - 6 skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

Scan process completed.

Epero y me puedan ayudar de antemano muchas Gracias.

Última edición por mazh602 fecha: 22/12/06 a las 22:18:07. Razón: Repote de analisis online