Ver la Versión Completa : AYUDA- Llenos de virus y windows shoutdown


paburones
12/07/07, 11:13:52
Hola, esta es mi primera ves en el foro, queria ver si podian ayudarme, tengo windows xp, panda antivirus y un problema que es que la maquina me pone un cartel de windows shoutdown initiated by NT AUTHORITY SYSTEM
message: the system process c:\windows\system32\service.exe terminated...status code 128...

Escanee la maquina con el kapersky online me encontro los virus backdoor win32, trojan win32 patched y trojan downloader win32 patched
les dejo parte d el informe por si les sirve de ayuda:
Scan Statistics
Total number of scanned objects 33945
Number of viruses found 6
Number of infected objects 6 / 0
Number of suspicious objects 0
Duration of the scan process 00:26:06

Infected Object Name Virus Name Last Action
C:\Documents and Settings\Administrator\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\MSHist012007071220070 713\index.dat Object is locked skipped

C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Administrator\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Administrator\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000633.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000634.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000635.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000636.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000637.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000638.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000639.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000640.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000641.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000642.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000643.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000644.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP15\A0000645.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000655.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000656.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000657.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000658.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000659.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000660.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000661.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP16\A0000662.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000670.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000671.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000672.sys Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000673.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000674.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000675.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000676.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000677.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP17\A0000678.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001355.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001356.tsp Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001357.TSP Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001358.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001359.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001360.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001361.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001362.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001363.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001364.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001365.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001366.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001367.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001368.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001369.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001370.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001371.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP37\A0001372.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001408.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001409.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001410.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001411.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001412.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001413.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001414.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001415.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001416.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001417.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001418.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001419.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001420.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001421.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001422.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001423.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001424.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001425.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001426.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001427.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001428.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001429.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP38\A0001430.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001486.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001487.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001488.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001489.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001490.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001491.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001492.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001493.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001494.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001495.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001496.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001497.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001498.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001499.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001500.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001501.inf Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001502.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001503.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001504.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001505.cat Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001506.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001507.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001508.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001509.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001510.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001511.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001512.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001513.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001514.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001515.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001516.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001517.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001518.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001519.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001520.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001521.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001522.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001523.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001524.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001525.ver Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001526.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001527.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001528.exe Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001529.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001530.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001531.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001532.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001533.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001534.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001535.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001536.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001537.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001538.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001539.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001540.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001541.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001542.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001543.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP39\A0001544.dll Object is locked skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP48\A0011317.dll Infected: Trojan-Spy.Win32.BZub.ip skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP51\A0013465.exe Infected: Rootkit.Win32.Agent.fb skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP56\A0018801.exe Infected: Trojan-Downloader.Win32.Agent.aii skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP71\A0031663.exe Infected: Trojan.Win32.Patched.af skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP73\A0033822.exe Infected: Backdoor.Win32.VB.kb skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP82\A0039145.exe Infected: Backdoor.Win32.Agent.alm skipped

C:\System Volume Information\_restore{D2712ED7-9F62-422D-B0E0-DE4A62378D7F}\RP82\change.log Object is locked skipped

C:\WINDOWS\$NtUninstallKB828035$\msgsvc.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comadmin.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comrepl.exe Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comsvcs.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\comuid.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\es.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\migregdb.exe Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\msdtcprx.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\msdtctm.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\msdtcuiu.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\mtxclu.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\mtxoci.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\ole32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\rpcrt4.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\rpcss.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB828741$\txflog.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB833987$\sxs.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\browser.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\callcont.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\cmdevtgprov.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\evtgprov.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\h323.tsp Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\h323msp.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\helpctr.exe Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\ipnathlp.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\lsasrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\msasn1.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\msgina.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\mst120.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\netapi32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\nmcom.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\rtcdll.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB835732$\schannel.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\dao360.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\expsrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msexch40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msexcl40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjet40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjetol1.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjetoledb40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjint40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjter40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msjtes40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msltus40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mspbde40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msrd2x40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msrd3x40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msrepl40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mstext40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mswdat10.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\mswstr10.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\msxbde40.dll Object is locked skipped

C:\WINDOWS\$NtUninstallKB837001$\vbajet32.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\dxmasf.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\httpod51.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\lsasrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\msdxm.ocx Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\sfcfiles.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\spuninst\spuninst. exe Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\spuninst\spuninst. inf Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\ssinc51.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\url.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ309521$\wininet.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ315000$\netsetup.exe Object is locked skipped

C:\WINDOWS\$NtUninstallQ315000$\spuninst\spuninst. exe Object is locked skipped

C:\WINDOWS\$NtUninstallQ315000$\spuninst\spuninst. inf Object is locked skipped

C:\WINDOWS\$NtUninstallQ315000$\ssdpapi.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ315000$\ssdpsrv.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ315000$\upnp.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ323172$\reg00003 Object is locked skipped

C:\WINDOWS\$NtUninstallQ323172$\reg00005 Object is locked skipped

C:\WINDOWS\$NtUninstallQ323172$\reg00008 Object is locked skipped

C:\WINDOWS\$NtUninstallQ323172$\reg00009 Object is locked skipped

C:\WINDOWS\$NtUninstallQ323172$\reg00010 Object is locked skipped

C:\WINDOWS\$NtUninstallQ323172$\reg00011 Object is locked skipped

C:\WINDOWS\$NtUninstallQ328940$\reg00003 Object is locked skipped

C:\WINDOWS\$NtUninstallQ828026$\msdxm.ocx Object is locked skipped

C:\WINDOWS\$NtUninstallQ828026$\msdxm.ocx.000 Object is locked skipped

C:\WINDOWS\$NtUninstallQ828026$\wmpcore.dll Object is locked skipped

C:\WINDOWS\$NtUninstallQ828026$\wmpcore.dll.000 Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped



GRACIAS POR LA PACIENCIA Y EL TRABAJO QUE SE TOMAN EN AYUDAR A LA GENTE

axl456
12/07/07, 11:35:37
hola..
realiza lo indicado en este tema (http://www.forospyware.com/t44.html)

paburones
12/07/07, 15:10:24
hola gracias por la rapida respuesta, segui los pasos , no me registro ninguno de los virus que me registra el kapersky online. es decir no pude eliminar nada, ahora tambien se me cierra el explorer de repente por error , aparte de lo que pasaba antes.
que mas puedo hacer?

axl456
12/07/07, 15:50:07
si te das cuenta el kaspersky reporta los virus en una carpeta llamada system_restore esa carpeta esta oculta y alli se guarda la informacion de los puntos de restauracion del sistema, desde alli los virus no pueden dañarte ya que esa carpeta esta protegida..
pero ese problema que indicas:
y un problema que es que la maquina me pone un cartel de windows shoutdown initiated by NT AUTHORITY SYSTEM
message: the system process c:\windows\system32\service.exe terminated...status code 128...

es de los gusanos sasser y blaster que explotan la vulmerabilidad LSASS del sistema..
todavia salen esos mensajes despues de seguir los pasos?'
para vaciar la carpeta system_restore solo debes hacer lo siguiente:

deshabilita la opcion restaurar sistema (http://www.forospyware.com/292280-post2.html)
reinicia la pc
habilita restaurar sistema
reinicica de nuevo la pc


cuentanos como esta el problema..

paburones
13/07/07, 07:02:04
Te agredezco mucho la ayuda, le pase de nuevo el kapersky y de los virus que tenia me quedo uno:
C:\WINDOWS\system32\o Infected: Trojan-Downloader.BAT.Ftp.ab skipped

borre el archivo manualmente , no se si hice bien.

la verdad que con lo del gusano me sorprendistes , se ve que sabes de esto jajaj :)

lo que queria saber es como hago para saber si tengo ese gusano, y en caso de que me pase de nuevo que se reinicie la maquina, que tengo que hacer.

Mil Gracias

axl456
13/07/07, 08:13:45
Te agredezco mucho la ayuda, le pase de nuevo el kapersky y de los virus que tenia me quedo uno:
C:\WINDOWS\system32\o Infected: Trojan-Downloader.BAT.Ftp.ab skipped

borre el archivo manualmente , no se si hice bien.


si hiciste bien :Bien:

lo que queria saber es como hago para saber si tengo ese gusano, y en caso de que me pase de nuevo que se reinicie la maquina, que tengo que hacer.

si no sigues teniendo el problema del mensaje de reinicio entonces ya no tienes el gusano ;)

paburones
14/07/07, 08:20:54
hola, mira hasta ayer estaba todo bien, se habia solucionado el problema, pero hoy volvio, ademas de que la maquina esta mas lenta de lo habitual, y por ejemplo el messenger se me abre dos vceces (no se si tiene relacion).

no se que mas puedo hacer ya que el antivirus panda no me reconoce virus (tengo que cambiar de antivirus), los programnas que baje para ver si estaba el gusano tampoco me reconoce que este presente.

Gracias

axl456
15/07/07, 17:41:10
hola..
has un analisis en panda (http://www.infospyware.com/Anti-Virus/Panda/) este es el manual (http://www.forospyware.com/t75446.html) y colocas el reporte aqui para revisarlo, antes de usar el panda usa el ccleaner para limpiar cookies y el registro..
tambien lee este tema (http://www.forospyware.com/t100056.html) ya que el problema es probable que sea del sistema..

© Copyright 2005 - 2008 InfoSpyware ® Todos los derechos reservados.
InfoSpyware Security Blog