| Re: propaganda coñazo hola! hay van los logs maco1128
;************************************************* ************************************************** ************************************************** ******************************
ANALYSIS: 2008-05-17 10:13:31
PROTECTIONS: 1
MALWARE: 3
SUSPECTS: 0
;************************************************* ************************************************** ************************************************** ******************************
PROTECTIONS
Description Version Active Updated
;================================================= ================================================== ================================================== ==============================
Panda Antivirus + Firewall 2008 7.01.00 Yes Yes
;================================================= ================================================== ================================================== ==============================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;================================================= ================================================== ================================================== ==============================
00139535 Application/Processor HackTools No 0 Yes No C:\Archivos de programa\Navilog1\Process.exe
02197130 Trj/Rebooter.J Virus/Trojan No 1 Yes No C:\Archivos de programa\Navilog1\reboot.exe
02905977 Bck/Ircbot.BVH Virus/Trojan No 0 No No C:\Documents and Settings\Jose\Configuración local\Datos de programa\Ares\My Shared Folder\manolo garcia - saldremos a la lluvia 2008 [www todocvcd com] por gamolama.rar[Manolo.scr]
;================================================= ================================================== ================================================== ==============================
SUSPECTS
Location
;================================================= ================================================== ================================================== ==============================
;================================================= ================================================== ================================================== ==============================
Malwarebytes' Anti-Malware 1.12
Versión de la Base de Datos: 722
Tipo de examen : Examen Completo (C:\|)
Objetos examinados: 135923
Tiempo transcurrido: 1 hour(s), 14 minute(s), 58 second(s)
Procesos en Memoria Infectados: 0
Módulos en Memoria Infectados: 0
Claves del Registro Infectadas: 0
Valores del Registro Infectados: 0
Elementos de Datos del Registro Infectados: 0
Carpetas Infectadas: 0
Ficheros Infectados: 0
Procesos en Memoria Infectados:
(No se han detectado elementos maliciosos)
Módulos en Memoria Infectados:
(No se han detectado elementos maliciosos)
Claves del Registro Infectadas:
(No se han detectado elementos maliciosos)
Valores del Registro Infectados:
(No se han detectado elementos maliciosos)
Elementos de Datos del Registro Infectados:
(No se han detectado elementos maliciosos)
Carpetas Infectadas:
(No se han detectado elementos maliciosos)
Ficheros Infectados:
(No se han detectado elementos maliciosos)
Search Navipromo version 3.5.7 began on 16/05/2008 at 19:45:21,90
!!! Warning, this report may include legitimate files/programs !!!
!!! Post this report on the forum you are being helped !!!
!!! Don't continue with removal unless instructed by an authorized helper !!!
Fix running from C:\Archivos de programa\navilog1
Actual User Account : "Jose"
Updated on 11.05.2008 at 18h00 by IL-MAFIOSO
Microsoft Windows XP [Versi¢n 5.1.2600]
Version Internet Explorer : 7.0.5730.11
Filesystem type : NTFS
Search done in safe mode
*** Search folders in "C:\WINDOWS" ***
*** Search folders in "C:\Archivos de programa" ***
*** Search folders in "c:\docume~1\alluse~1\datosd~1" ***
*** Search folders in "c:\docume~1\alluse~1\menini~1\progra~1" ***
*** Search folders in "C:\Documents and Settings\Jose\datosd~1" ***
*** Search folders in "C:\DOCUME~1\USUARIO\datosd~1" ***
*** Search folders in "C:\Documents and Settings\Jose\config~1\datosd~1" ***
*** Search folders in "C:\DOCUME~1\USUARIO\config~1\datosd~1" ***
*** Search folders in "C:\Documents and Settings\Jose\menini~1\progra~1" ***
*** Search folders in "C:\DOCUME~1\USUARIO\menini~1\progra~1" ***
*** Search with Catchme-rootkit/stealth malware detector by gmer ***
for more info : http://www.gmer.net
No file found
*** Search with GenericNaviSearch ***
!!! Possibility of legitimate files in the result !!!
!!! Must always be checked before manually deleting !!!
* Scan in "C:\WINDOWS\system32" *
* Scan in "C:\Documents and Settings\Jose\config~1\datosd~1" *
Files found :
vdqjdw.exe found !
vdqjdw.dat found !
vdqjdw_nav.dat found !
vdqjdw_navps.dat found !
* Scan in "C:\DOCUME~1\USUARIO\config~1\datosd~1" *
*** Search files ***
*** Search specific Registry keys ***
HKEY_CURRENT_USER\Software\Lanconfig found !
*** Complementary Search ***
(Search specific files)
1)Search new Instant Access files :
2)Heuristic Search :
* In "C:\WINDOWS\system32" :
* In "C:\Documents and Settings\Jose\config~1\datosd~1" :
vdqjdw.dat found !
vdqjdw_nav.dat found !
vdqjdw_navps.dat found !
* In "C:\DOCUME~1\USUARIO\config~1\datosd~1" :
3)Certificates Search :
Egroup certificate found !
Electronic-Group certificate found !
OOO-Favorit certificate found !
Sunny-Day-Design-Ltd certificate not found !
4)Search known files :
*** Search completed on 16/05/2008 at 19:55:09,14 ***
1 saludo |