Blog Registrarse Manuales Programas Glosario

Regresar   Foro de Spyware » Spyware - Adware - Hijackers - Malwares » Temas Solucionados
 

Para evitar Virus, Spyware y otros Malwares, te recomendamos mantenerte informado en: InfoSpyware Blog


Temas Solucionados Casos de HijackThis y Malwares resueltos.
(Solo lectura)

Respuesta
 
Enviar a: Herramientas
  post #1  
Antiguo 25/10/05, 23:16:47
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Páginas que se abren solas - (Solucionado)

Tengo problema con las paginas que se abren solo ya use los programa de anti-spyware, spyware doctor y microsoft antispyware me brran par de cosas pero todavia me sale la pagina como a cada 4 minutos. Aqui esta mi log para que si pueden lo analisen plissssssss!!

Logfile of HijackThis v1.99.1
Scan saved at 1054 PM, on 10/25/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
C:\Program Files\2Wire\Gateway\2portalmon.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HJT\HijackThis.exe
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [inmmeo] C:\DOCUME~1\user\LOCALS~1\Temp\app6.tmp
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\Gateway\2portalmon.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\LaunchPd.exe"
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\Quicken\billmind.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\Quicken\QWDLLS.EXE
O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearc...p=ZBzeb032YYPR
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\tv\EXPLBAR.DLL
O9 - Extra button: Run DAP - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\PROGRA~1\DAP\DAP.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: Hints - C:\WINDOWS\system32\enr8l19u1.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)
Responder Con Cita
InfoSpyware

  post #2  
Antiguo 26/10/05, 04:07:12
Avatar de PatomaS
Colaborador
 
Registrado: ene 2005
Ubicación: Holanda
Mensajes: 6.089
Alegria Re: Páginas que se abren solas

Hola

Recuerda pasar por el windowsupdate.com regularmente y mantener tu sistema actualizado.

Bueno, veamos ese reporte.

Recuerda seguir estos pasos para la reparación.
  1. Ver los archivos ocultos de tu sistema
  2. Desactivar la restauración del sistema
  3. Iniciar el sistema en el modo «a prueba de fallos» o «modo seguro»
  4. Haz los pasos con todos los programas cerrados salvo el que estés usando para la reparación o limpieza.

Te recomiendo que desinstales el download acelerator plus y el flash get, si quieres seguir usando gestores de descargas, puedes usar, por ejemplo, el TrueDownloader.

Deberás marcar estas líneas en el Hijackthis para reparar:
  • R3 - Default URLSearchHook is missingR3 - Default URLSearchHook is missing
  • O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
  • O4 - HKLM\..\Run: [inmmeo] C:\DOCUME~1\user\LOCALS~1\Temp\app6.tmp
  • O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZBzeb032YYPR
  • O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
  • O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)
  • O20 - Winlogon Notify: Hints - C:\WINDOWS\system32\enr8l19u1.dll
  • O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing)
  • O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)

Si los encuentras, deberás borrar estos archivos y carpetas:
  • C:\Program Files\Viewpoint\ (desinstala la aplicación y borra la carpeta)
  • C:\DOCUME~1\user\LOCALS~1\Temp\ (borra todo lo que está en esta carpeta)
  • C:\WINDOWS\system32\enr8l19u1.dll

Después de haber hecho esas reparaciones, ejecuta estas otras aplicaciones por si se le ha pasado algo al HijackThis:
Tras estos pasos y reparaciones, cuéntanos como evoluciona el tema.

Felicidad


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Responder Con Cita
  post #3  
Antiguo 26/10/05, 20:14:49
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Re: Páginas que se abren solas

Hice todo lo que me dijistes pero sigue pasando lo mismo no se que pasa!! aqui esta mi nuevo log

Logfile of HijackThis v1.99.1
Scan saved at 7:11:40 PM, on 10/26/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
C:\Program Files\2Wire\Gateway\2portalmon.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HJT\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\Gateway\2portalmon.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\LaunchPd.exe"
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\Quicken\billmind.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\Quicken\QWDLLS.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\tv\EXPLBAR.DLL
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: ShellScrap - C:\WINDOWS\system32\k462lejo1hoc.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)
Responder Con Cita
  post #4  
Antiguo 26/10/05, 21:30:52
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Triste Páginas que se abren solas

son paginas que terminan en yyy34. aqui esta mi ultimo log despues de hacer todo lo que me dijeron.. thankssss!!

Logfile of HijackThis v1.99.1
Scan saved at 8:28:58 PM, on 10/26/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
C:\Program Files\2Wire\Gateway\2portalmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\Gateway\2portalmon.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\LaunchPd.exe"
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\Quicken\billmind.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\Quicken\QWDLLS.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\tv\EXPLBAR.DLL
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: App Management - C:\WINDOWS\system32\e4jmle111h.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)
Responder Con Cita
  post #5  
Antiguo 27/10/05, 03:52:55
Avatar de PatomaS
Colaborador
 
Registrado: ene 2005
Ubicación: Holanda
Mensajes: 6.089
Alegria Re: Páginas que se abren solas

Hola

Recuerda pasar por el windowsupdate.com regularmente y mantener tu sistema actualizado.

Bueno, veamos ese reporte.

Recuerda seguir estos pasos para la reparación.
  1. Ver los archivos ocultos de tu sistema
  2. Desactivar la restauración del sistema
  3. Iniciar el sistema en el modo «a prueba de fallos» o «modo seguro»
  4. Haz los pasos con todos los programas cerrados salvo el que estés usando para la reparación o limpieza.

Te recomiendo que desinstales el spyware doctor, teniendo el ad-aware y el spybot, el trabajo queda hecho de manera más eficiente.

Deberás marcar estas líneas en el Hijackthis para reparar:
  • O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
  • O20 - Winlogon Notify: App Management - C:\WINDOWS\system32\e4jmle111h.dll
  • O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing)
  • O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)

Si los encuentras, deberás borrar estos archivos y carpetas, si algún archivo te da problemas, puedes utilizar el KillBox.
  • C:\WINDOWS\system32\e4jmle111h.dll
  • C:\WINDOWS\dXNlcgAA\ (borra esta carpeta a menos que sepas que contiene y sepas que es seguro)

Después de haber hecho esas reparaciones, ejecuta estas otras aplicaciones por si se le ha pasado algo al HijackThis:
Si no me equivoco, el problema está con el archivo .dll que no has podido reparar aun, ya veremos como te va esta vez con el killbox.

Tras estos pasos y reparaciones, cuéntanos como evoluciona el tema.

Felicidad


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Responder Con Cita
  post #6  
Antiguo 27/10/05, 20:11:06
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Triste Sigue el problema Páginas que se abren solas

Estoy haciendo lo que me dicen pero estos file no se arreglan, por ejemplo el O20 - Winlogon Notify: Internet Settings - C:\WINDOWS\system32\ir4ol5h31.dll es la que sale ahora entes salia otro
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing) este sigue aqui no se arregla
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing) y este tambien aparece

tengo otro problemita cuando le doy shut down a la pc es un file que dice clonseng.exedll initialization failed eso es lo que dice

aqui esta mi log depues de hacer lo que me dijeron

Logfile of HijackThis v1.99.1
Scan saved at 7:02:03 PM, on 10/27/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
C:\Program Files\2Wire\Gateway\2portalmon.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HJT\HijackThis.exe
C:\Program Files\Internet Explorer\iexplore.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
O4 - HKLM\..\Run: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\Gateway\2portalmon.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\LaunchPd.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: ATI CATALYST System Tray.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\Quicken\billmind.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\Quicken\QWDLLS.EXE
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: ATI TV - {44226DFF-747E-4edc-B30C-78752E50CD0C} - C:\Program Files\ATI Multimedia\tv\EXPLBAR.DLL
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: Internet Settings - C:\WINDOWS\system32\ir4ol5h31.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\dXNlcgAA\command.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)
Responder Con Cita
  post #7  
Antiguo 29/10/05, 20:11:23
Avatar de PatomaS
Colaborador
 
Registrado: ene 2005
Ubicación: Holanda
Mensajes: 6.089
Alegria Re: Páginas que se abren solas

Hola

Ejecuta otra vez el hijackthis siguiendo los pasos que te indico, haz todas las reparaciones que te digo y ejecuta las herramientas que te menciono pero el archivo que has de eliminar, es el que aparezca en la línea O20. Si te da probleas, puedes utilizar el KillBox. Es importante que estés en el modo seguro.

Igualmente has de intentar borrar esta carpeta:
C:\WINDOWS\dXNlcgAA\

Si tras esto los problemas persisten, envíanos u nreporte generado con el Cwshredder y uno con el MWAV.exe. El segundo genera reportes muy extensos, pero solo nos interesan las líneas que digan "tagged" o "infected".

Seguiremos pendientes.

Felicidad


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Responder Con Cita
  post #8  
Antiguo 29/10/05, 22:55:43
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Triste reporte con CWShredder part 1 Páginas que se abren solas

Tuve que dividirlo en dos parte esta muy grande el reporte



Run Keys ****

RUN: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
RUN: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
RUN: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
RUN: [SoundMan] soundman.exe
RUN: [SMSERIAL] sm56hlpr.exe
RUN: [RaidTool] C:\Program Files\VIA\RAID\raid_tool.exe
RUN: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
RUN: [PCTVOICE] pctspk.exe
RUN: [nwiz] nwiz.exe /install
RUN: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
RUN: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
RUN: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
RUN: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
RUN: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb1 0.exe
RUN: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
RUN: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
RUN: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
RUN: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
RUN: [ccRegVfy] C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe
RUN: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
RUN: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime
RUN: [ATI DeviceDetect] C:\Program Files\ATI Multimedia\main\ATIDtct.EXE
RUN: [2wSysTray] C:\Program Files\2Wire\Gateway\2portalmon.exe
RUN: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
RUN: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
RUN: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
RUN: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\LaunchPd.exe"
RUN: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

**** Browser Helper Objects ****

**** IE Toolbars ****

TOOLBAR: [Norton AntiVirus] C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll

**** IE Extensions ****

IEExt: []
IEExt: [Create Mobile Favorite]
IEExt: [Create Mobile Favorite]
IEExt: [ATI TV]
IEExt: [Research]
IEExt: [Messenger] C:\Program Files\Messenger\msmsgs.exe


**** Hosts File Entries ****

HOSTS: 127.0.0.1 localhost
HOSTS: 127.0.0.1 desktop.kazaa.com
HOSTS: 127.0.0.1 www.altnetp2p.com
HOSTS: 127.0.0.1 alpha.kazaa.com
HOSTS: 127.0.0.1 shop.kazaa.com
HOSTS: 127.0.0.1 www.bonzi.com
HOSTS: 127.0.0.1 www.brilliantdigital.com
HOSTS: 127.0.0.1 www.b3d.com
HOSTS: 127.0.0.1 media.altnet.com
HOSTS: 127.0.0.1 www.altnet.com
HOSTS: 127.0.0.1 dev.bde.com.au
HOSTS: 127.0.0.1 update.kazaa.com
HOSTS: 127.0.0.1 bravo.kazaa.com
HOSTS: 216.239.37.101 www.kazaagold.com
HOSTS: 216.239.37.101 kazaagold.com
HOSTS: 216.239.37.101 www.k-lite.com
HOSTS: 216.239.37.101 www.kazaa-download.de
HOSTS: 216.239.37.101 www.mp3downloadhq.com
HOSTS: 216.239.37.101 www.easymusicdownload.com
HOSTS: 216.239.37.101 easymusicdownload.com
HOSTS: 216.239.37.101 www.mp3madeeasy.com
HOSTS: 216.239.37.101 www.monstershare.com
HOSTS: 216.239.37.101 www.kazaa-plus.net
HOSTS: 216.239.37.101 kazaa-plus.net
HOSTS: 216.239.37.101 www.kazaa-plus.com
HOSTS: 216.239.37.101 www.edonkey.com
HOSTS: 216.239.37.101 www.kazaa-file-sharing-downloads.com
HOSTS: 216.239.37.101 www.kazaaplatinum.com
HOSTS: 216.239.37.101 www.madeformusic.com
HOSTS: 216.239.37.101 ikazaa.net
HOSTS: 216.239.37.101 www.mp3u.com
HOSTS: 216.239.37.101 www.mp3specialty.com
HOSTS: 216.239.37.101 music-download-world.com
HOSTS: 216.239.37.101 song-download-world.com
HOSTS: 216.239.37.101 www.flixs.net
HOSTS: 216.239.37.101 www.ishareit.net
HOSTS: 216.239.37.101 www.ishareit.com
HOSTS: 216.239.37.101 www.download-doctor.com
HOSTS: 127.0.0.1 123banners.com
HOSTS: 127.0.0.1 ad.adsmart.net
HOSTS: 127.0.0.1 ad.ca.doubleclick.net
HOSTS: 127.0.0.1 ad.de.doubleclick.net
HOSTS: 127.0.0.1 ad.doubleclick.net
HOSTS: 127.0.0.1 ad.es.doubleclick.net
HOSTS: 127.0.0.1 ad.fr.doubleclick.net
HOSTS: 127.0.0.1 ad.free6.com
HOSTS: 127.0.0.1 ad.it.doubleclick.net
HOSTS: 127.0.0.1 ad.iwin.com
HOSTS: 127.0.0.1 ad.jp.doubleclick.net
HOSTS: 127.0.0.1 ad.kr.doubleclick.net
HOSTS: 127.0.0.1 ad.linkexchange.com
HOSTS: 127.0.0.1 ad.linksynergy.com
HOSTS: 127.0.0.1 ad.nl.doubleclick.net
HOSTS: 127.0.0.1 ad.no.doubleclick.net
HOSTS: 127.0.0.1 ad.preferences.com
HOSTS: 127.0.0.1 ad.se.doubleclick.net
HOSTS: 127.0.0.1 ad.sma.punto.net
HOSTS: 127.0.0.1 ad.trafficmp.com
HOSTS: 127.0.0.1 ad.uk.doubleclick.net
HOSTS: 127.0.0.1 ad.webprovider.com
HOSTS: 127.0.0.1 ad08.focalink.com
HOSTS: 127.0.0.1 ad1.adcept.net
HOSTS: 127.0.0.1 ad1.icorp.net
HOSTS: 127.0.0.1 ad1.looksmart.com
HOSTS: 127.0.0.1 ad1.peel.com
HOSTS: 127.0.0.1 ad2.adcept.net
HOSTS: 127.0.0.1 ad2.looksmart.com
HOSTS: 127.0.0.1 ad2.peel.com
HOSTS: 127.0.0.1 ad3.adcept.net
HOSTS: 127.0.0.1 ad3.peel.com
HOSTS: 127.0.0.1 ad4.peel.com
HOSTS: 127.0.0.1 ad-adex3.flycast.com
HOSTS: 127.0.0.1 adcontroller.unicast.com
HOSTS: 127.0.0.1 adcreatives.imaginemedia.com
HOSTS: 127.0.0.1 addb.looksmart.com
HOSTS: 127.0.0.1 adevents.msn.com
HOSTS: 127.0.0.1 adex3.flycast.com
HOSTS: 127.0.0.1 adfarm.mediaplex.com
HOSTS: 127.0.0.1 adforce.ads.imgis.com
HOSTS: 127.0.0.1 adforce.imgis.com
HOSTS: 127.0.0.1 adfu.blockstackers.com
HOSTS: 127.0.0.1 adimage.blm.net
HOSTS: 127.0.0.1 adimages.earthweb.com
HOSTS: 127.0.0.1 adimages.go.com
HOSTS: 127.0.0.1 adimages.imaginemedia.com
HOSTS: 127.0.0.1 adimg.egroups.com
HOSTS: 127.0.0.1 admedia.xoom.com
HOSTS: 127.0.0.1 admonitor.net
HOSTS: 127.0.0.1 adpick.switchboard.com
HOSTS: 127.0.0.1 adproject.net
HOSTS: 127.0.0.1 adremote.pathfinder.com
HOSTS: 127.0.0.1 adres.internet.com
HOSTS: 127.0.0.1 ads.adflight.com
HOSTS: 127.0.0.1 ads.ad-flow.com
HOSTS: 127.0.0.1 ads.admaximize.com
HOSTS: 127.0.0.1 ads.admonitor.net
HOSTS: 127.0.0.1 ads.adroar.com
HOSTS: 127.0.0.1 ads.astalavista.us
HOSTS: 127.0.0.1 ads.bfast.com
HOSTS: 127.0.0.1 ads.box.sk
HOSTS: 127.0.0.1 ads.burstnet.com
HOSTS: 127.0.0.1 ads.cdfreaks.com
HOSTS: 127.0.0.1 ads.chrbanner.com
HOSTS: 127.0.0.1 ads.clickagents.com
HOSTS: 127.0.0.1 ads.clickhouse.com
HOSTS: 127.0.0.1 ads.dai.net
HOSTS: 127.0.0.1 ads.datais.com
HOSTS: 127.0.0.1 ads.enliven.com
HOSTS: 127.0.0.1 ads.eu.msn.com
HOSTS: 127.0.0.1 ads.fairfax.com.au
HOSTS: 127.0.0.1 ads.fool.com
HOSTS: 127.0.0.1 ads.fortunecity.com
HOSTS: 127.0.0.1 ads.fortunecity.fr
HOSTS: 127.0.0.1 ads.freeze.com
HOSTS: 127.0.0.1 ads.freshmeat.net
HOSTS: 127.0.0.1 ads.god.co.uk
HOSTS: 127.0.0.1 ads.guardianunlimited.co.uk
HOSTS: 127.0.0.1 ads.hitcents.com
HOSTS: 127.0.0.1 ads.hollywood.com
HOSTS: 127.0.0.1 ads.i12.de
HOSTS: 127.0.0.1 ads.i33.com
HOSTS: 127.0.0.1 ads.ign.com
HOSTS: 127.0.0.1 ads.imaginemedia.com
HOSTS: 127.0.0.1 ads.indya.com
HOSTS: 127.0.0.1 ads.infi.net
HOSTS: 127.0.0.1 ads.irover.com
HOSTS: 127.0.0.1 ads.ixo.com
HOSTS: 127.0.0.1 ads.jpost.com
HOSTS: 127.0.0.1 ads.jwtt3.com
HOSTS: 127.0.0.1 ads.killerapp.com
HOSTS: 127.0.0.1 ads.link4ads.com
HOSTS: 127.0.0.1 ads.linksponsor.com
HOSTS: 127.0.0.1 ads.looksmart.com
HOSTS: 127.0.0.1 ads.lycos.com
HOSTS: 127.0.0.1 ads.lycos.de
HOSTS: 127.0.0.1 ads.madison.com
HOSTS: 127.0.0.1 ads.mediaodyssey.com
HOSTS: 127.0.0.1 ads.mediaturf.net
HOSTS: 127.0.0.1 ads.msn.com
HOSTS: 127.0.0.1 ads.musiccity.com
HOSTS: 127.0.0.1 ads.netomia.com
HOSTS: 127.0.0.1 ads.netpumper.com
HOSTS: 127.0.0.1 ads.newcity.com
HOSTS: 127.0.0.1 ads.newcitynet.com
HOSTS: 127.0.0.1 ads.ninemsn.com.au
HOSTS: 127.0.0.1 ads.rediff.com
HOSTS: 127.0.0.1 ads.satyamonline.com
HOSTS: 127.0.0.1 ads.seattletimes.com
HOSTS: 127.0.0.1 ads.smartclicks.com
HOSTS: 127.0.0.1 ads.smartclicks.net
HOSTS: 127.0.0.1 ads.sptimes.com
HOSTS: 127.0.0.1 ads.startpath.com
HOSTS: 127.0.0.1 ads.station.sony.com
HOSTS: 127.0.0.1 ads.tiscali.fr
HOSTS: 127.0.0.1 ads.tripod.com
HOSTS: 127.0.0.1 ads.tucows.com
HOSTS: 127.0.0.1 ads.vcommunities.com
HOSTS: 127.0.0.1 ads.web.aol.com
HOSTS: 127.0.0.1 ads.x10.com
HOSTS: 127.0.0.1 ads.xtra.co.nz
HOSTS: 127.0.0.1 ads.zdnet.com
HOSTS: 127.0.0.1 ads01.focalink.com
HOSTS: 127.0.0.1 ads02.focalink.com
HOSTS: 127.0.0.1 ads03.focalink.com
HOSTS: 127.0.0.1 ads04.focalink.com
HOSTS: 127.0.0.1 ads05.focalink.com
HOSTS: 127.0.0.1 ads06.focalink.com
HOSTS: 127.0.0.1 ads07.focalink.com
HOSTS: 127.0.0.1 ads08.focalink.com
HOSTS: 127.0.0.1 ads09.focalink.com
HOSTS: 127.0.0.1 ads1.activeagent.at
HOSTS: 127.0.0.1 ads1.ad-flow.com
HOSTS: 127.0.0.1 ads1.speedbit.com
HOSTS: 127.0.0.1 ads10.focalink.com
HOSTS: 127.0.0.1 ads11.focalink.com
HOSTS: 127.0.0.1 ads12.focalink.com
HOSTS: 127.0.0.1 ads13.focalink.com
HOSTS: 127.0.0.1 ads14.focalink.com
HOSTS: 127.0.0.1 ads15.focalink.com
HOSTS: 127.0.0.1 ads16.focalink.com
HOSTS: 127.0.0.1 ads17.focalink.com
HOSTS: 127.0.0.1 ads18.focalink.com
HOSTS: 127.0.0.1 ads19.focalink.com
HOSTS: 127.0.0.1 ads2.speedbit.com
HOSTS: 127.0.0.1 ads2.zdnet.com
HOSTS: 127.0.0.1 ads20.focalink.com
HOSTS: 127.0.0.1 ads21.focalink.com
HOSTS: 127.0.0.1 ads22.focalink.com
HOSTS: 127.0.0.1 ads23.focalink.com
HOSTS: 127.0.0.1 ads24.focalink.com
HOSTS: 127.0.0.1 ads25.focalink.com
HOSTS: 127.0.0.1 ads3.speedbit.com
HOSTS: 127.0.0.1 ads3.zdnet.com
HOSTS: 127.0.0.1 ads4.speedbit.com
HOSTS: 127.0.0.1 ads5.gamecity.net
HOSTS: 127.0.0.1 ads5.speedbit.com
HOSTS: 127.0.0.1 ads6.speedbit.com
HOSTS: 127.0.0.1 ads7.speedbit.com
HOSTS: 127.0.0.1 ads8.speedbit.com
HOSTS: 127.0.0.1 adserv.bravenet.com
HOSTS: 127.0.0.1 adserv.bravenet.com
HOSTS: 127.0.0.1 adserv.iafrica.com
HOSTS: 127.0.0.1 adserv.internetfuel.com
HOSTS: 127.0.0.1 adserv.quality-channel.de
HOSTS: 127.0.0.1 adserver.adtech.de
HOSTS: 127.0.0.1 adserver.affiliation.com
HOSTS: 127.0.0.1 adserver.akqa.net
HOSTS: 127.0.0.1 adserver.dbusiness.com
HOSTS: 127.0.0.1 adserver.directforce.net
HOSTS: 127.0.0.1 adserver.garden.com
HOSTS: 127.0.0.1 adserver.gorillanation.com
HOSTS: 127.0.0.1 adserver.humanux.com
HOSTS: 127.0.0.1 adserver.imaginemedia.com
HOSTS: 127.0.0.1 adserver.isonews.com
HOSTS: 127.0.0.1 adserver.janes.com
HOSTS: 127.0.0.1 adserver.lunarpages.com
HOSTS: 127.0.0.1 adserver.merc.com
HOSTS: 127.0.0.1 adserver.monster.com
HOSTS: 127.0.0.1 adserver.track-star.com
HOSTS: 127.0.0.1 adserver.tweakers.net
HOSTS: 127.0.0.1 adserver.ugo.com
HOSTS: 127.0.0.1 adserver.webads.nl
HOSTS: 127.0.0.1 adserver1.ogilvy-interactive.de
HOSTS: 127.0.0.1 adserver2.imaginemedia.com
HOSTS: 127.0.0.1 AdSubstract
HOSTS: 127.0.0.1 adsubstract
HOSTS: 127.0.0.1 ads-ussj1.focalink.com
HOSTS: 127.0.0.1 adtegrity.spinbox.net
HOSTS: 127.0.0.1 adulttds.com
HOSTS: 127.0.0.1 aglink.mircx.com
HOSTS: 127.0.0.1 antfarm-ad.flycast.com
HOSTS: 127.0.0.1 asm3.z1.adserver.com
HOSTS: 127.0.0.1 au.ads.link4ads.com
HOSTS: 127.0.0.1 bach.aureate.com
HOSTS: 127.0.0.1 badservant.guj.de
HOSTS: 127.0.0.1 banner.50megs.com
HOSTS: 127.0.0.1 banner.adverity.com
HOSTS: 127.0.0.1 banner.commissionpartner.com
HOSTS: 127.0.0.1 banner.de
HOSTS: 127.0.0.1 banner.easyspace.com
HOSTS: 127.0.0.1 banner.free6.com
HOSTS: 127.0.0.1 banner.i-3.de
HOSTS: 127.0.0.1 banner.media-system.de
HOSTS: 127.0.0.1 banner.orb.net
HOSTS: 127.0.0.1 banner.relcom.ru
HOSTS: 127.0.0.1 bannerad.ipgnet.com
HOSTS: 127.0.0.1 bannerads.de
HOSTS: 127.0.0.1 bannerfarm.ace.advertising.com
HOSTS: 127.0.0.1 bannerimages.0catch.com
HOSTS: 127.0.0.1 bannermaster.geektech.com
HOSTS: 127.0.0.1 banner-net.com
HOSTS: 127.0.0.1 bannerpower.com
HOSTS: 127.0.0.1 banners.adultfriendfinder.com
HOSTS: 127.0.0.1 banners.easydns.com
HOSTS: 127.0.0.1 banners.free6.com
HOSTS: 127.0.0.1 banners.hotlinks.net
HOSTS: 127.0.0.1 banners.looksmart.com
HOSTS: 127.0.0.1 banners.nextcard.com
HOSTS: 127.0.0.1 banners.pennyweb.com
HOSTS: 127.0.0.1 banners.valuead.com
HOSTS: 127.0.0.1 banners.webmasterplan.com
HOSTS: 127.0.0.1 banners.wunderground.com
HOSTS: 127.0.0.1 bannervip.webjump.com
HOSTS: 127.0.0.1 banzai.moodlogic.com
HOSTS: 127.0.0.1 barnesandnoble.bfast.com
HOSTS: 127.0.0.1 beseen.com
HOSTS: 127.0.0.1 beseen.looksmart.com
HOSTS: 127.0.0.1 beseen5.looksmart.com
HOSTS: 127.0.0.1 beseenad.looksmart.com
HOSTS: 127.0.0.1 beseenad1.looksmart.com
HOSTS: 127.0.0.1 beseenad2.looksmart.com
HOSTS: 127.0.0.1 beseenad3.looksmart.com
HOSTS: 127.0.0.1 beseenadx.looksmart.com
HOSTS: 127.0.0.1 bfast.com
HOSTS: 127.0.0.1 lop.com
HOSTS: 127.0.0.1 bizad.nikkeibp.co.jp
HOSTS: 127.0.0.1 bn.bfast.com
HOSTS: 127.0.0.1 botw.topbucks.com
HOSTS: 127.0.0.1 bsads.looksmart.com
HOSTS: 127.0.0.1 by.advertising.com
HOSTS: 127.0.0.1 c1.thecounter.com
HOSTS: 127.0.0.1 c2.thecounter.com
HOSTS: 127.0.0.1 c3.xxxcounter.com
HOSTS: 127.0.0.1 califia.imaginemedia.com
HOSTS: 127.0.0.1 cash4banner.com
HOSTS: 127.0.0.1 cash4banner.de
HOSTS: 127.0.0.1 cds.mediaplex.com
HOSTS: 127.0.0.1 cgi.sexlist.com
HOSTS: 127.0.0.1 click.avenuea.com
HOSTS: 127.0.0.1 click.go2net.com
HOSTS: 127.0.0.1 click.linksynergy.com
HOSTS: 127.0.0.1 clickagents.com
HOSTS: 127.0.0.1 clicks.about.com
HOSTS: 127.0.0.1 clicks.nastydollars.com
HOSTS: 127.0.0.1 clicks.oxcash.com
HOSTS: 127.0.0.1 clit5.sextracker.com
HOSTS: 127.0.0.1 code02.pbtech.net
HOSTS: 127.0.0.1 commonwealth.riddler.com
HOSTS: 127.0.0.1 connect.online-dialer.com
HOSTS: 127.0.0.1 cookies.cmpnet.com
HOSTS: 127.0.0.1 cornflakes.pathfinder.com
HOSTS: 127.0.0.1 counter.hitbox.com
HOSTS: 127.0.0.1 counter1.sextracker.com
HOSTS: 127.0.0.1 counter10.sextracker.com
HOSTS: 127.0.0.1 counter11.sextracker.com
HOSTS: 127.0.0.1 counter12.sextracker.com
HOSTS: 127.0.0.1 counter13.sextracker.com
HOSTS: 127.0.0.1 counter14.sextracker.com
HOSTS: 127.0.0.1 counter15.sextracker.com
HOSTS: 127.0.0.1 counter16.sextracker.com
HOSTS: 127.0.0.1 counter2.sextracker.com
HOSTS: 127.0.0.1 counter3.sextracker.com
HOSTS: 127.0.0.1 counter4.sextracker.com
HOSTS: 127.0.0.1 counter5.sextracker.com
HOSTS: 127.0.0.1 counter6.sextracker.com
HOSTS: 127.0.0.1 counter7.sextracker.com
HOSTS: 127.0.0.1 counter8.sextracker.com
HOSTS: 127.0.0.1 counter9.sextracker.com
HOSTS: 127.0.0.1 crs.akamai.com
HOSTS: 127.0.0.1 crux.songline.com
HOSTS: 127.0.0.1 ct.iac-online.de
HOSTS: 127.0.0.1 ctc.amateurpages.com
HOSTS: 127.0.0.1 de.netstatpro.net
HOSTS: 127.0.0.1 desktop.grokster.com
HOSTS: 127.0.0.1 dialer.offshoreclicks.com
HOSTS: 127.0.0.1 doubleclick.net
HOSTS: 127.0.0.1 download1.0190-dialer.com
HOSTS: 127.0.0.1 download1.libereco.net
HOSTS: 127.0.0.1 download2.0190-dialer.com
HOSTS: 127.0.0.1 econnect.libereco.net
HOSTS: 127.0.0.1 ehg.hitbox.com
HOSTS: 127.0.0.1 ehg-commjun.hitbox.com
HOSTS: 127.0.0.1 erie.smartage.com
HOSTS: 127.0.0.1 etad.telegraph.co.uk
HOSTS: 127.0.0.1 everyone.net
HOSTS: 127.0.0.1 exchange-it.com
HOSTS: 127.0.0.1 exitfuel.com
HOSTS: 127.0.0.1 exitmoney.com
HOSTS: 127.0.0.1 fast.mediacharger.com
HOSTS: 127.0.0.1 focalink.com
HOSTS: 127.0.0.1 fp.valueclick.com
HOSTS: 127.0.0.1 fragmentserv.iac-online.de
HOSTS: 127.0.0.1 free.fuck-portal.com
HOSTS: 127.0.0.1 freeadultlottery.com
HOSTS: 127.0.0.1 freeasiahardcore.com
HOSTS: 127.0.0.1 freebieclub.com
HOSTS: 127.0.0.1 freebigcocks.net
HOSTS: 127.0.0.1 freecelebnudity.com
HOSTS: 127.0.0.1 freefarmpics.com
HOSTS: 127.0.0.1 freegaybears.net
HOSTS: 127.0.0.1 freegaylottery.com
HOSTS: 127.0.0.1 freenaughtyteens.com
HOSTS: 127.0.0.1 freepass.elitecities.com
HOSTS: 127.0.0.1 fs.dai.net
HOSTS: 127.0.0.1 gadgeteer.pdamart.com
HOSTS: 127.0.0.1 global.msads.net
HOSTS: 127.0.0.1 gm.preferences.com
HOSTS: 127.0.0.1 go.ezgreen.com
HOSTS: 127.0.0.1 got2goshop.com
HOSTS: 127.0.0.1 goto.trafficmultiplier.com
HOSTS: 127.0.0.1 gp.dejanews.com
HOSTS: 127.0.0.1 hacker-spider.de
HOSTS: 127.0.0.1 hc2.humanclick.com
HOSTS: 127.0.0.1 hg1.hitbox.com
HOSTS: 127.0.0.1 hit.hotlog.ru
HOSTS: 127.0.0.1 hitbox.com
HOSTS: 127.0.0.1 hitmatic.com
HOSTS: 127.0.0.1 hitsfrom.popuprush.com
HOSTS: 127.0.0.1 hotfreewebcams.com
HOSTS: 127.0.0.1 hypercount.com
HOSTS: 127.0.0.1 ifcol.exitfuel.com
HOSTS: 127.0.0.1 image.click2net.com
HOSTS: 127.0.0.1 image.eimg.com
HOSTS: 127.0.0.1 images.sexlist.com
HOSTS: 127.0.0.1 images2.nytimes.com
HOSTS: 127.0.0.1 imageserv.adtech.de
HOSTS: 127.0.0.1 lop.com
HOSTS: 127.0.0.1 img.mediaplex.com
HOSTS: 127.0.0.1 impnl.tradedoubler.com
HOSTS: 127.0.0.1 internetfuel.com
HOSTS: 127.0.0.1 itn.adbureau.net
HOSTS: 127.0.0.1 jcms.cydoor.com
HOSTS: 127.0.0.1 jeeves.flycast.com
HOSTS: 127.0.0.1 jobkeys.ngadcenter.net
HOSTS: 127.0.0.1 kansas.valueclick.com
HOSTS: 127.0.0.1 leader.linkexchange.com
HOSTS: 127.0.0.1 linkbuddies.com
HOSTS: 127.0.0.1 liquidad.narrowcastmedia.com
HOSTS: 127.0.0.1 liveadvert.com
HOSTS: 127.0.0.1 ln.doubleclick.net
HOSTS: 127.0.0.1 looksmartclicks.com
HOSTS: 127.0.0.1 lop.com
HOSTS: 127.0.0.1 lsads.looksmart.com.au
HOSTS: 127.0.0.1 m.doubleclick.net
HOSTS: 127.0.0.1 macaddictads.snv.futurenet.com
HOSTS: 127.0.0.1 marketing-internet.com
HOSTS: 127.0.0.1 maxexp.com
HOSTS: 127.0.0.1 maximumcash.com
HOSTS: 127.0.0.1 maximumpcads.imaginemedia.com
HOSTS: 127.0.0.1 media.carpediem.fr
HOSTS: 127.0.0.1 media.expedia.com
HOSTS: 127.0.0.1 media.fastclick.net
HOSTS: 127.0.0.1 media.popuptraffic.com
HOSTS: 127.0.0.1 media.popuptraffic.com
HOSTS: 127.0.0.1 media.preferences.com
HOSTS: 127.0.0.1 media20.fastclick.net
HOSTS: 127.0.0.1 mediacharger.com
HOSTS: 127.0.0.1 mediamgr.ugo.com
HOSTS: 127.0.0.1 mediaplex.com
HOSTS: 127.0.0.1 megacash.de
HOSTS: 127.0.0.1 megawebcams.tv
HOSTS: 127.0.0.1 mercury.rmuk.co.uk
HOSTS: 127.0.0.1 millenium-hitz.com
HOSTS: 127.0.0.1 mjxads.internet.com
HOSTS: 127.0.0.1 mojofarm.sjc.mediaplex.com
HOSTS: 127.0.0.1 monitor.looksmart.com
HOSTS: 127.0.0.1 monsterhitz.to
HOSTS: 127.0.0.1 musiccity.streamcastnetwork.com
HOSTS: 127.0.0.1 n24.de
HOSTS: 127.0.0.1 nbc.adbureau.net
HOSTS: 127.0.0.1 network.realmedia.com
HOSTS: 127.0.0.1 newads.cmpnet.com
HOSTS: 127.0.0.1 newsticker.shortnews.de
HOSTS: 127.0.0.1 ng3.ads.warnerbros.com
HOSTS: 127.0.0.1 ngads.smartage.com
HOSTS: 127.0.0.1 nitrous.exitfuel.com
HOSTS: 127.0.0.1 nsads.hotwired.com
HOSTS: 127.0.0.1 ntbanner.digitalriver.com
HOSTS: 127.0.0.1 oad.realmedia.com
HOSTS: 127.0.0.1 oas.benchmark.fr
HOSTS: 127.0.0.1 onresponse.com
HOSTS: 127.0.0.1 onresponse.com
HOSTS: 127.0.0.1 oz.valueclick.com
HOSTS: 127.0.0.1 p.wtlive.com
HOSTS: 127.0.0.1 paycounter.com
HOSTS: 127.0.0.1 ph-ad04.focalink.com
HOSTS: 127.0.0.1 ph-ad05.focalink.com
HOSTS: 127.0.0.1 ph-ad07.focalink.com
HOSTS: 127.0.0.1 ph-ad16.focalink.com
HOSTS: 127.0.0.1 ph-ad17.focalink.com
HOSTS: 127.0.0.1 ph-ad18.focalink.com
HOSTS: 127.0.0.1 php.offshoreclicks.com
HOSTS: 127.0.0.1 pluto.beseen.com
HOSTS: 127.0.0.1 pop.mircx.com
HOSTS: 127.0.0.1 popup.found404.com
HOSTS: 127.0.0.1 porn-attack.com
HOSTS: 127.0.0.1 portal.hostultra.com
HOSTS: 127.0.0.1 proxy.ladot.com
HOSTS: 127.0.0.1 pub.epiknet.org
HOSTS: 127.0.0.1 pub.infiniland.com
HOSTS: 127.0.0.1 pub.ketix.com
HOSTS: 127.0.0.1 pub.telmedia.fr
HOSTS: 127.0.0.1 pub.weborama.fr
HOSTS: 127.0.0.1 publish.hometown.aol.co.uk
HOSTS: 127.0.0.1 realads.realmedia.com
HOSTS: 127.0.0.1 redherring.ngadcenter.net
HOSTS: 127.0.0.1 redirect.click2net.com
HOSTS: 127.0.0.1 redirect.iac-online.de
HOSTS: 127.0.0.1 regio.adlink.de
HOSTS: 127.0.0.1 ResponseMedia-ad.flycast.com
HOSTS: 127.0.0.1 retaildirect.realmedia.com
HOSTS: 127.0.0.1 rmads.eu.msn.com
HOSTS: 127.0.0.1 rs.webmasterplan.com
HOSTS: 127.0.0.1 s0.bluestreak.com
HOSTS: 127.0.0.1 s1.bluestreak.com
HOSTS: 127.0.0.1 s2.bluestreak.com
HOSTS: 127.0.0.1 s2.focalink.com
HOSTS: 127.0.0.1 s3.bluestreak.com
HOSTS: 127.0.0.1 s4.bluestreak.com
HOSTS: 127.0.0.1 s5.bluestreak.com
HOSTS: 127.0.0.1 s6.bluestreak.com
HOSTS: 127.0.0.1 s7.bluestreak.com
HOSTS: 127.0.0.1 s8.bluestreak.com
HOSTS: 127.0.0.1 sbee.com
HOSTS: 127.0.0.1 script.weborama.fr
HOSTS: 127.0.0.1 search.kazaa.com
HOSTS: 127.0.0.1 secserv.imgis.com
HOSTS: 127.0.0.1 servedby.advertising.com
HOSTS: 127.0.0.1 servedby.advertwizard.com
HOSTS: 127.0.0.1 server.hamster.com
HOSTS: 127.0.0.1 server-uk.imrworldwide.com
HOSTS: 127.0.0.1 sexpromote.com
HOSTS: 127.0.0.1 sexpromote.com
HOSTS: 127.0.0.1 sextracker.com
HOSTS: 127.0.0.1 sh4banner.de
HOSTS: 127.0.0.1 sh4sure-images.adbureau.net
HOSTS: 127.0.0.1 shop.freepush.com
HOSTS: 127.0.0.1 shortwin.de
HOSTS: 127.0.0.1 specialoffers.aol.com
HOSTS: 127.0.0.1 spezialreporte.de
HOSTS: 127.0.0.1 spin.spinbox.net
HOSTS: 127.0.0.1 sprinks-clicks.about.com
HOSTS: 127.0.0.1 spylog.com
HOSTS: 127.0.0.1 srv1.bannercommunity.de
HOSTS: 127.0.0.1 srv2.bannercommunity.de
HOSTS: 127.0.0.1 srv3.bannercommunity.de
HOSTS: 127.0.0.1 static.admaximize.com
HOSTS: 127.0.0.1 stats.superstats.com
HOSTS: 127.0.0.1 stats3.porntrack.com
HOSTS: 127.0.0.1 statse.webtrendslive.com
HOSTS: 127.0.0.1 Suissa-ad.flycast.com
HOSTS: 127.0.0.1 survey.proactive.nl
HOSTS: 127.0.0.1 sview.avenuea.com
HOSTS: 127.0.0.1 t0.extreme-dm.com
HOSTS: 127.0.0.1 thinknyc.eu-adcenter.net
HOSTS: 127.0.0.1 tour01.bangbus.com
HOSTS: 127.0.0.1 tpl1.realtracker.com
HOSTS: 127.0.0.1 tracker.clicktrade.com
HOSTS: 127.0.0.1 trinityacquisitions.com
HOSTS: 127.0.0.1 tsms-ad.tsms.com
HOSTS: 127.0.0.1 tuerck.de.counted.com
HOSTS: 127.0.0.1 twistedhumor.com
HOSTS: 127.0.0.1 ugo.eu-adcenter.net
HOSTS: 127.0.0.1 UGO.eu-adcenter.net
HOSTS: 127.0.0.1 uk1.linksynergy.com
HOSTS: 127.0.0.1 uk2.linksynergy.com
HOSTS: 127.0.0.1 uk3.linksynergy.com
HOSTS: 127.0.0.1 uk4.linksynergy.com
HOSTS: 127.0.0.1 uk5.linksynergy.com
HOSTS: 127.0.0.1 us.adserver.yahoo.com
HOSTS: 127.0.0.1 v0.extreme-dm.com
HOSTS: 127.0.0.1 v1.extreme-dm.com
HOSTS: 127.0.0.1 valueclick.com
HOSTS: 127.0.0.1 van.ads.link4ads.com
HOSTS: 127.0.0.1 vant.guj.de
HOSTS: 127.0.0.1 venus.goclick.com
HOSTS: 127.0.0.1 view.accendo.com
HOSTS: 127.0.0.1 view.avenuea.com
HOSTS: 127.0.0.1 vis1.sexlist.com
HOSTS: 127.0.0.1 vis2.sexlist.com
HOSTS: 127.0.0.1 vis3.sexlist.com
HOSTS: 127.0.0.1 vis4.sexlist.com
HOSTS: 127.0.0.1 vis5.sexlist.com
HOSTS: 127.0.0.1 visit.referralware.com
HOSTS: 127.0.0.1 visite.weborama.fr
HOSTS: 127.0.0.1 VNU.eu-adcenter.net
HOSTS: 127.0.0.1 w0.extreme-dm.com
HOSTS: 127.0.0.1 w113.hitbox.com
HOSTS: 127.0.0.1 w117.hitbox.com
HOSTS: 127.0.0.1 w25.hitbox.com
HOSTS: 127.0.0.1 web2.deja.com
HOSTS: 127.0.0.1 webads.bizservers.com
HOSTS: 127.0.0.1 weblist.de
HOSTS: 127.0.0.1 webpdp.gator.com
HOSTS: 127.0.0.1 webxprod.qualcomm.com
HOSTS: 127.0.0.1 www.0190-dialer.com
HOSTS: 127.0.0.1 www.12traffic.de
HOSTS: 127.0.0.1 www.1for1.com
HOSTS: 127.0.0.1 www.3turtles.com
HOSTS: 127.0.0.1 www.404errorpage.com
HOSTS: 127.0.0.1 www.7adpower.com
HOSTS: 127.0.0.1 www.7host.com
HOSTS: 127.0.0.1 www.activeannonce.com
HOSTS: 127.0.0.1 www.adbucks.com
HOSTS: 127.0.0.1 www.adexit.com
HOSTS: 127.0.0.1 www.adexit.de
HOSTS: 127.0.0.1 www.adforce.com
HOSTS: 127.0.0.1 www.admex.com
HOSTS: 127.0.0.1 www.adnetz.net
HOSTS: 127.0.0.1 www.adserver.com
HOSTS: 127.0.0.1 www.adserver.net
HOSTS: 127.0.0.1 www.adsmart.com
HOSTS: 127.0.0.1 www.adsmart.net
HOSTS: 127.0.0.1 www.adultbizvoice.com
HOSTS: 127.0.0.1 www.adultclicks.com
HOSTS: 127.0.0.1 www.ad-up.com
HOSTS: 127.0.0.1 www.adverity.com
HOSTS: 127.0.0.1 www.adverlead.com
HOSTS: 127.0.0.1 www.adverline.com
HOSTS: 127.0.0.1 www.adverline.fr
HOSTS: 127.0.0.1 www.advertising.com
HOSTS: 127.0.0.1 www.advertwizard.com
HOSTS: 127.0.0.1 www.adviews-sponsor.de
HOSTS: 127.0.0.1 www.alexchiu.com
HOSTS: 127.0.0.1 www.alladvantage.com
HOSTS: 127.0.0.1 www.allclicks.com
HOSTS: 127.0.0.1 www.amateur-galleries.com
HOSTS: 127.0.0.1 www.amazingpops.com
HOSTS: 127.0.0.1 www.at-nude-teens.net
HOSTS: 127.0.0.1 www.bannerads.de
HOSTS: 127.0.0.1 www.beseen.com
HOSTS: 127.0.0.1 www.bfast.com
HOSTS: 127.0.0.1 www.boonsolutions.com
HOSTS: 127.0.0.1 www.brutalextreme.com
HOSTS: 127.0.0.1 www.burstnet.com
HOSTS: 127.0.0.1 www.cash1x1.de
HOSTS: 127.0.0.1 www.cash2002.de
HOSTS: 127.0.0.1 www.cash4banner.com
HOSTS: 127.0.0.1 www.cash4banner.de
HOSTS: 127.0.0.1 www.cashcount.com
HOSTS: 127.0.0.1 www.cashfiesta.com
HOSTS: 127.0.0.1 www.cashradio.com
HOSTS: 127.0.0.1 www.cashsurfers.com
HOSTS: 127.0.0.1 www.casinoglamour.com
HOSTS: 127.0.0.1 www.cellularphones.com
HOSTS: 127.0.0.1 www.cibleclick.com
HOSTS: 127.0.0.1 www.cj.com
HOSTS: 127.0.0.1 www.click2sexy.com
HOSTS: 127.0.0.1 www.click-fr.com
HOSTS: 127.0.0.1 www.clickxchange.com
HOSTS: 127.0.0.1 www.clictrafic.com
HOSTS: 127.0.0.1 www.coinpromo.com
HOSTS: 127.0.0.1 www.cometcursor.com
HOSTS: 127.0.0.1 www.cometsystems.net
HOSTS: 127.0.0.1 www.commission-junction.com
HOSTS: 127.0.0.1 www.cr4.com
HOSTS: 127.0.0.1 www.crazypopups.com
HOSTS: 127.0.0.1 www.crxwarez.net
HOSTS: 127.0.0.1 www.cydoor.com
HOSTS: 127.0.0.1 www.daz.com
HOSTS: 127.0.0.1 www.dgm2.com
HOSTS: 127.0.0.1 www.directvalue.nl
HOSTS: 127.0.0.1 www.drawnsex.com
HOSTS: 127.0.0.1 www.eads.com
HOSTS: 127.0.0.1 www.e-bannerx.com
HOSTS: 127.0.0.1 www.eclic.net
HOSTS: 127.0.0.1 www.fastclick.net
HOSTS: 127.0.0.1 www.fastmetasearch.com
HOSTS: 127.0.0.1 www.flycast.co.uk
HOSTS: 127.0.0.1 www.flycast.com
HOSTS: 127.0.0.1 www.found404.com
HOSTS: 127.0.0.1 www.fpctraffic.com
HOSTS: 127.0.0.1 www.freeadultlottery.com
HOSTS: 127.0.0.1 www.freeasiahardcore.com
HOSTS: 127.0.0.1 www.free-banners.com
HOSTS: 127.0.0.1 www.freebigcocks.net
HOSTS: 127.0.0.1 www.freecelebnudity.com
HOSTS: 127.0.0.1 www.freefarmpics.com
HOSTS: 127.0.0.1 www.freegaybears.net
HOSTS: 127.0.0.1 www.freegaylottery.com
HOSTS: 127.0.0.1 www.freenaughtyteens.com
HOSTS: 127.0.0.1 www.freestats.com
HOSTS: 127.0.0.1 www.frontpagecash.com
HOSTS: 127.0.0.1 www.fuck-portal.com
HOSTS: 127.0.0.1 www.gamingclub.com
HOSTS: 127.0.0.1 www.gator.co.uk
HOSTS: 127.0.0.1 www.gator.com
HOSTS: 127.0.0.1 www.gator.net
HOSTS: 127.0.0.1 www.genhit.com
HOSTS: 127.0.0.1 www.getsearches.com
HOSTS: 127.0.0.1 www.gopopup.com
HOSTS: 127.0.0.1 www.greetingwishes.com
HOSTS: 127.0.0.1 www.grokster.com
HOSTS: 127.0.0.1 www.hardcorepornos.org
HOSTS: 127.0.0.1 www.hightrafficads.com
HOSTS: 127.0.0.1 www.hit-parade.com
HOSTS: 127.0.0.1 www.hitsme.com
HOSTS: 127.0.0.1 www.hotfreewebcams.com
HOSTS: 127.0.0.1 www.imaginemedia.com
HOSTS: 127.0.0.1 www.lastconsole.com
HOSTS: 127.0.0.1 www.linkshare.com
HOSTS: 127.0.0.1 www.liveadvert.com
HOSTS: 127.0.0.1 www.lo-litas.com
HOSTS: 127.0.0.1 www.looksmartclicks.com
HOSTS: 127.0.0.1 www.lop.com
HOSTS: 127.0.0.1 www.lottoforever.com
HOSTS: 127.0.0.1 www.mediaplex.com
HOSTS: 127.0.0.1 www.megacash.de
HOSTS: 127.0.0.1 www.megawebcams.tv
HOSTS: 127.0.0.1 www.milfhunter.com
HOSTS: 127.0.0.1 www.modchip.com
HOSTS: 127.0.0.1 www.mod-chip.com
HOSTS: 127.0.0.1 www.money4exit.de
HOSTS: 127.0.0.1 www.my-stats.com
HOSTS: 127.0.0.1 www.netbroadcaster.com
HOSTS: 127.0.0.1 www.netflip.com
HOSTS: 127.0.0.1 www.netgravity.com
HOSTS: 127.0.0.1 www.newtopsites.com
HOSTS: 127.0.0.1 www.nic.co.il
HOSTS: 127.0.0.1 www.nudelinkz.com
HOSTS: 127.0.0.1 www.oneandonlynetwork.com
HOSTS: 127.0.0.1 www.onresponse.com
HOSTS: 127.0.0.1 www.paidpopup.de
HOSTS: 127.0.0.1 www.paypopup.com
HOSTS: 127.0.0.1 www.piratos.de
HOSTS: 127.0.0.1 www.popdown.de
HOSTS: 127.0.0.1 www.popupad.net
HOSTS: 127.0.0.1 www.popuptraffic.com
HOSTS: 127.0.0.1 www.PostMasterBannerNet.com
HOSTS: 127.0.0.1 www.prepaidliving.com
HOSTS: 127.0.0.1 www.qksrv.net
HOSTS: 127.0.0.1 www.qualityhitz.com
HOSTS: 127.0.0.1 www.qualypromos.com
HOSTS: 127.0.0.1 www.radiate.com
HOSTS: 127.0.0.1 www.radiofreecash.com
HOSTS: 127.0.0.1 www.rankyou.com
HOSTS: 127.0.0.1 www.reference-sexe.com
HOSTS: 127.0.0.1 www.sbee.com
HOSTS: 127.0.0.1 www.sbvr.com
HOSTS: 127.0.0.1 www.searchtraffic.com
HOSTS: 127.0.0.1 www.service-url.de
HOSTS: 127.0.0.1 www.sexfranco.com
HOSTS: 127.0.0.1 www.sexfreelist.com
HOSTS: 127.0.0.1 www.sexlist.com
HOSTS: 127.0.0.1 www.sexpromote.com
HOSTS: 127.0.0.1 www.sexpromote.com
HOSTS: 127.0.0.1 www.sexspy.com
HOSTS: 127.0.0.1 www.sexstudio24.de
HOSTS: 127.0.0.1 www.sextracker.com
HOSTS: 127.0.0.1 www.sextraffic.org
HOSTS: 127.0.0.1 www.sexyfreehost.com
HOSTS: 127.0.0.1 www.sexyplugin.com
HOSTS: 127.0.0.1 www.simplecounter.net
HOSTS: 127.0.0.1 www.slutzoo.com
HOSTS: 127.0.0.1 www.sonixwarez.com
HOSTS: 127.0.0.1 www.sponsor2002.de
HOSTS: 127.0.0.1 www.targetshop.com
HOSTS: 127.0.0.1 www.techiwarehouse.com
HOSTS: 127.0.0.1 www.teknosurf.com
HOSTS: 127.0.0.1 www.teknosurf2.com
HOSTS: 127.0.0.1 www.teknosurf3.com
HOSTS: 127.0.0.1 www.theadultwire.com
HOSTS: 127.0.0.1 www.topwarez-fr.com
HOSTS: 127.0.0.1 www.toys-galleries.com
HOSTS: 127.0.0.1 www.trafficbox.net
HOSTS: 127.0.0.1 www.trafficmonetizer.com
HOSTS: 127.0.0.1 www.unionwarez.com
HOSTS: 127.0.0.1 www.valueclick.com
HOSTS: 127.0.0.1 www.valuesponsor.com
HOSTS: 127.0.0.1 www.warez33.com
HOSTS: 127.0.0.1 www.warezfield.com
HOSTS: 127.0.0.1 www.web3000.co.uk
HOSTS: 127.0.0.1 www.web3000.com
HOSTS: 127.0.0.1 www.webads.nl
HOSTS: 127.0.0.1 www.webferret.com
HOSTS: 127.0.0.1 www.webhancer.com
HOSTS: 127.0.0.1 www.webhancer.net
HOSTS: 127.0.0.1 www.weblist.de
HOSTS: 127.0.0.1 www.websitefinancing.com
HOSTS: 127.0.0.1 www.wedoo.com
HOSTS: 127.0.0.1 www.win24.de
HOSTS: 127.0.0.1 www.wingowin.com
HOSTS: 127.0.0.1 www.wtlive.com
HOSTS: 127.0.0.1 www.xiti.com
HOSTS: 127.0.0.1 www.xpostx.com
HOSTS: 127.0.0.1 www.xxxdisplay.com
HOSTS: 127.0.0.1 www.xxxfreeamateurs.com
HOSTS: 127.0.0.1 www.xxxteenclub.de
HOSTS: 127.0.0.1 www.youmakemoney.com
HOSTS: 127.0.0.1 www.zeloop.net
HOSTS: 127.0.0.1 www2.burstnet.com
HOSTS: 127.0.0.1 www2.consumercreditusa.com
HOSTS: 127.0.0.1 www3.netgravity.com
HOSTS: 127.0.0.1 www4.netgravity.com
HOSTS: 127.0.0.1 www4.trix.net
HOSTS: 127.0.0.1 www80.valueclick.com
HOSTS: 127.0.0.1 xads.infospace.com
HOSTS: 127.0.0.1 xads.zedo.com
HOSTS: 127.0.0.1 xxxfreeamateurs.com
HOSTS: 127.0.0.1 z.extreme-dm.com
HOSTS: 127.0.0.1 z0.extreme-dm.com
HOSTS: 127.0.0.1 z1.extreme-dm.com
HOSTS: 127.0.0.1 zac.netgravity.com
HOSTS: 127.0.0.1 img.thebugs.ws
HOSTS: 127.0.0.1 pet.thebugs.ws
HOSTS: 127.0.0.1 mt45.mtree.com
HOSTS: 127.0.0.1 www.porncow.com
HOSTS: 127.0.0.1 ads.peel.com
HOSTS: 127.0.0.1 download.alexa.com
HOSTS: 127.0.0.1 count.exit.exchange.com
HOSTS: 127.0.0.1 www.classmates.com
HOSTS: 127.0.0.1 bidclix.net
HOSTS: 127.0.0.1 www.media-ads.org
HOSTS: 127.0.0.1 www.aitsafe.com
HOSTS: 127.0.0.1 service.bfast.com
HOSTS: 127.0.0.1 spweb.whenu.com
HOSTS: 127.0.0.1 www.getweathercast.com
HOSTS: 127.0.0.1 www.clock-sync.com
HOSTS: 127.0.0.1 www.igetnet.com
HOSTS: 127.0.0.1 code.ignphrases.com
HOSTS: 127.0.0.1 clear-search.com
HOSTS: 127.0.0.1 r1.clrsch.com
HOSTS: 127.0.0.1 sds.clrsch.com
HOSTS: 127.0.0.1 status.clrsch.com
HOSTS: 127.0.0.1 www.clrsch.com
HOSTS: 127.0.0.1 clr-sch.com
HOSTS: 127.0.0.1 sds-qckads.com
HOSTS: 127.0.0.1 status.qckads.com
HOSTS: 127.0.0.1 www.qoolaid.com
HOSTS: 127.0.0.1 www.qoologic.com
HOSTS: 127.0.0.1 www.CLKPrecision.com
HOSTS: 127.0.0.1 www.urllogic.com
HOSTS: 127.0.0.1 www.clkoptimizer.com
HOSTS: 127.0.0.1 www.isearch.com
HOSTS: 127.0.0.1 isearch.com
HOSTS: 127.0.0.1 www.idownload.com
HOSTS: 127.0.0.1 idownload.com
HOSTS: 127.0.0.1 www.mytotalsearch.com
HOSTS: 127.0.0.1 mytotalsearch.com
HOSTS: 127.0.0.1 www.websearch.com
HOSTS: 127.0.0.1 websearch.com
HOSTS: 127.0.0.1 www.page-not-found.net
HOSTS: 127.0.0.1 page-not-found.net
HOSTS: 127.0.0.1 www.isearchhere.com
HOSTS: 127.0.0.1 isearchhere.com
HOSTS: 127.0.0.1 xads.offeroptimizer.comm
HOSTS: 127.0.0.1 search.offeroptimizer.com
HOSTS: 127.0.0.1 ximages.offeroptimizer.com
HOSTS: 127.0.0.1 xlime.offeroptimizer.com
HOSTS: 127.0.0.1 xadsj-o.offeroptimizer.com
HOSTS: 127.0.0.1 xadsj.offeroptimizer.com
HOSTS: 127.0.0.1 www.offeroptimizer.com
HOSTS: 127.0.0.1 as.adwave.com
HOSTS: 127.0.0.1 sr.adwave.com
HOSTS: 127.0.0.1 www.adwave.com
HOSTS: 127.0.0.1 adwave.com EVENT:HOST:127.0.0.1
HOSTS: 127.0.0.1 adwave.com EVENT:HOST:127.0.0.1
HOSTS: 127.0.0.1 adwave.com EVENT:HOST:127.0.0.1


**** IE Settings ****

Default Page: http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default Search: http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Local Page: C:\WINDOWS\system32\blank.htm
Search Page: http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch


**** IE Context Menu (Right click) ****

IEContext: [Download ALL with IDA]
IEContext: [Download with IDA]


**** Layered Service Providers ****

LSP: MSAFD Tcpip [TCP/IP]
LSP: MSAFD Tcpip [UDP/IP]
LSP: RSVP UDP Service Provider
LSP: RSVP TCP Service Provider
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{C61AB538-A13F-44F4-8654-210312B1B99A}] SEQPACKET 5
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{C61AB538-A13F-44F4-8654-210312B1B99A}] DATAGRAM 5
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{79378460-9891-4975-881B-CC1BE8B9F850}] SEQPACKET 4
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{79378460-9891-4975-881B-CC1BE8B9F850}] DATAGRAM 4
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{766B94BC-085A-4255-B036-AE853466BED9}] SEQPACKET 3
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{766B94BC-085A-4255-B036-AE853466BED9}] DATAGRAM 3
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{EB9D2EB6-0CD1-482E-82C8-B34325149610}] SEQPACKET 0
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{EB9D2EB6-0CD1-482E-82C8-B34325149610}] DATAGRAM 0
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{60F1EBFA-D6A5-450C-BBF3-CAC3D8C39D3E}] SEQPACKET 1
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{60F1EBFA-D6A5-450C-BBF3-CAC3D8C39D3E}] DATAGRAM 1
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{B90787E5-A186-4B8D-9902-987F7E0384ED}] SEQPACKET 2
LSP: MSAFD NetBIOS [\Device\NetBT_Tcpip_{B90787E5-A186-4B8D-9902-987F7E0384ED}] DATAGRAM 2
LSP: MSAFD Irda [IrDA]
Responder Con Cita
  post #9  
Antiguo 29/10/05, 22:57:09
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Triste Part 2 Páginas que se abren solas

**** Blocked Control Panel Items ****

BLOCKED: [ncpa.cpl] No
BLOCKED: [odbccp32.cpl] No


**** Downloaded Program Files ****

{04E214E5-63AF-4236-83C6-A7ADCBF9BD02} [http://housecall60.trendmicro.com/housecall/xscan60.cab] C:\WINDOWS\system32\msvcrt.dll C:\WINDOWS\system32\mfc42.dll C:\WINDOWS\system32\msvcp60.dll C:\WINDOWS\TSC.ini C:\WINDOWS\RMAgentOutput.dll C:\WINDOWS\dllTSCLIBMT.dll C:\WINDOWS\loadhttp.dll C:\WINDOWS\aucfg.ini C:\WINDOWS\tmupdate.ini C:\WINDOWS\runtsckl.exe C:\WINDOWS\patchw32.dll C:\WINDOWS\Downloaded Program Files\xscan60.ocx
{17492023-C23A-453E-A040-C7C580BBF700} [http://go.microsoft.com/fwlink/?linkid=39204]
{4B48D5DF-9021-45F7-A240-60304302A215} [http://download.microsoft.com/download/5/c/2/5c2fc4b7-3875-4eec-946b-ffe15472cabc/WebCleaner.cab]
{9A9307A0-7DA4-4DAF-B042-5009F29E09E1} [http://acs.pandasoftware.com/activescan/as5free/asinst.cab]
{D27CDB6E-AE6D-11CF-96B8-444553540000} [http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab]


**** Windows Services ****

[Alerter] %SystemRoot%\System32\svchost.exe -k LocalService
[ALG] %SystemRoot%\System32\alg.exe
[AppMgmt] %SystemRoot%\system32\svchost.exe -k netsvcs
[aspnet_state] %SystemRoot%\Microsoft.NET\Framework\v1.1.4322\asp net_state.exe
[Ati HotKey Poller] %SystemRoot%\system32\Ati2evxx.exe
[ATI Smart] C:\WINDOWS\system32\ati2sgag.exe
[AudioSrv] %SystemRoot%\System32\svchost.exe -k netsvcs
[BITS] %SystemRoot%\System32\svchost.exe -k netsvcs
[Browser] %SystemRoot%\System32\svchost.exe -k netsvcs
[ccEvtMgr] "C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe"
[ccPwdSvc] "C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe"
[cisvc] C:\WINDOWS\System32\cisvc.exe
[ClipSrv] %SystemRoot%\system32\clipsrv.exe
[cmdService] C:\WINDOWS\dXNlcgAA\command.exe
[COMSysApp] C:\WINDOWS\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235}
[CryptSvc] %SystemRoot%\system32\svchost.exe -k netsvcs
[DcomLaunch] %SystemRoot%\system32\svchost -k DcomLaunch
[Dhcp] %SystemRoot%\System32\svchost.exe -k netsvcs
[dmadmin] %SystemRoot%\System32\dmadmin.exe /com
[dmserver] %SystemRoot%\System32\svchost.exe -k netsvcs
[Dnscache] %SystemRoot%\System32\svchost.exe -k NetworkService
[ERSvc] %SystemRoot%\System32\svchost.exe -k netsvcs
[Eventlog] %SystemRoot%\system32\services.exe
[EventSystem] C:\WINDOWS\System32\svchost.exe -k netsvcs
[FastUserSwitchingCompatibility] %SystemRoot%\System32\svchost.exe -k netsvcs
[helpsvc] %SystemRoot%\System32\svchost.exe -k netsvcs
[HidServ] %SystemRoot%\System32\svchost.exe -k netsvcs
[HTTPFilter] %SystemRoot%\System32\svchost.exe -k HTTPFilter
[ImapiService] C:\WINDOWS\System32\imapi.exe
[Irmon] %SystemRoot%\system32\svchost.exe -k netsvcs
[lanmanserver] %SystemRoot%\System32\svchost.exe -k netsvcs
[lanmanworkstation] %SystemRoot%\System32\svchost.exe -k netsvcs
[LmHosts] %SystemRoot%\System32\svchost.exe -k LocalService
[MDM] "C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE"
[Messenger] %SystemRoot%\System32\svchost.exe -k netsvcs
[mnmsrvc] C:\WINDOWS\System32\mnmsrvc.exe
[MSDTC] C:\WINDOWS\System32\msdtc.exe
[MSIServer] C:\WINDOWS\system32\msiexec.exe /V
[navapsvc] "C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe"
[NetDDE] %SystemRoot%\system32\netdde.exe
[NetDDEdsdm] %SystemRoot%\system32\netdde.exe
[Netlogon] %SystemRoot%\System32\lsass.exe
[Netman] %SystemRoot%\System32\svchost.exe -k netsvcs
[Nla] %SystemRoot%\System32\svchost.exe -k netsvcs
[NProtectService] "C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE"
[NtLmSsp] %SystemRoot%\System32\lsass.exe
[NtmsSvc] %SystemRoot%\system32\svchost.exe -k netsvcs
[NVSvc] %SystemRoot%\system32\nvsvc32.exe
[ose] "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"
[PlugPlay] %SystemRoot%\system32\services.exe
[PolicyAgent] %SystemRoot%\System32\lsass.exe
[ProtectedStorage] %SystemRoot%\system32\lsass.exe
[RasAuto] %SystemRoot%\System32\svchost.exe -k netsvcs
[RasMan] %SystemRoot%\System32\svchost.exe -k netsvcs
[RDSessMgr] C:\WINDOWS\system32\sessmgr.exe
[RemoteAccess] %SystemRoot%\System32\svchost.exe -k netsvcs
[RemoteRegistry] %SystemRoot%\system32\svchost.exe -k LocalService
[RpcLocator] %SystemRoot%\System32\locator.exe
[RpcSs] %SystemRoot%\system32\svchost -k rpcss
[RSVP] %SystemRoot%\System32\rsvp.exe
[SamSs] %SystemRoot%\system32\lsass.exe
[SBService] C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
[SCardSvr] %SystemRoot%\System32\SCardSvr.exe
[Schedule] %SystemRoot%\System32\svchost.exe -k netsvcs
[seclogon] %SystemRoot%\System32\svchost.exe -k netsvcs
[SENS] %SystemRoot%\system32\svchost.exe -k netsvcs
[SharedAccess] %SystemRoot%\System32\svchost.exe -k netsvcs
[ShellHWDetection] %SystemRoot%\System32\svchost.exe -k netsvcs
[SNDSrvc] "C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe"
[Speed Disk service] C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
[Spooler] %SystemRoot%\system32\spoolsv.exe
[srservice] %SystemRoot%\System32\svchost.exe -k netsvcs
[SSDPSRV] %SystemRoot%\System32\svchost.exe -k LocalService
[stisvc] %SystemRoot%\System32\svchost.exe -k imgsvc
[StyleXPService] "C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe"
[SwPrv] C:\WINDOWS\System32\dllhost.exe /Processid:{2E1226CD-BFF2-42CD-BCE5-552EA0285B52}
[SymWSC] "C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe"
[SysmonLog] %SystemRoot%\system32\smlogsvc.exe
[TapiSrv] %SystemRoot%\System32\svchost.exe -k netsvcs
[TermService] %SystemRoot%\System32\svchost -k DComLaunch
[Themes] %SystemRoot%\System32\svchost.exe -k netsvcs
[TlntSvr] C:\WINDOWS\System32\tlntsvr.exe
[TrkWks] %SystemRoot%\system32\svchost.exe -k netsvcs
[UMWdf] C:\WINDOWS\system32\wdfmgr.exe
[upnphost] %SystemRoot%\System32\svchost.exe -k LocalService
[UPS] %SystemRoot%\System32\ups.exe
[VSS] %SystemRoot%\System32\vssvc.exe
[W32Time] %SystemRoot%\System32\svchost.exe -k netsvcs
[WebClient] %SystemRoot%\System32\svchost.exe -k LocalService
[winmgmt] %systemroot%\system32\svchost.exe -k netsvcs
[WmdmPmSN] %SystemRoot%\System32\svchost.exe -k netsvcs
[Wmi] %SystemRoot%\System32\svchost.exe -k netsvcs
[WmiApSrv] C:\WINDOWS\System32\wbem\wmiapsrv.exe
[wscsvc] %SystemRoot%\System32\svchost.exe -k netsvcs
[wuauserv] %systemroot%\system32\svchost.exe -k netsvcs
[WZCSVC] %SystemRoot%\System32\svchost.exe -k netsvcs
[x10nets] C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe
[xmlprov] %SystemRoot%\System32\svchost.exe -k netsvcs


**** Custom IE Search Items ****

SEARCH: [Start Page] about:blank
SEARCH: [SearchAssistant_bak] http://ie.search.msn.com
SEARCH: [CustomizeSearch] http://ie.search.msn.com/{sub_rfc1766}/srchasst/srchcust.htm
SEARCH: [SearchAssistant] http://ie.search.msn.com/{sub_rfc1766}/srchasst/srchasst.htm
SEARCH: [CustomizeSearch] http://ie.search.msn.com/{sub_rfc1766}/srchasst/srchcust.htm


**** Complete IE Options ****

IEOPT: [NoUpdateCheck]
IEOPT: [NoJITSetup]
IEOPT: [Disable Script Debugger] yes
IEOPT: [Show_ChannelBand] No
IEOPT: [Anchor Underline] yes
IEOPT: [Cache_Update_Frequency] Once_Per_Session
IEOPT: [Display Inline Images] yes
IEOPT: [Do404Search]
IEOPT: [Local Page] C:\WINDOWS\system32\blank.htm
IEOPT: [Save_Session_History_On_Exit] no
IEOPT: [Show_FullURL] no
IEOPT: [Show_StatusBar] yes
IEOPT: [Show_ToolBar] yes
IEOPT: [Show_URLinStatusBar] yes
IEOPT: [Show_URLToolBar] yes
IEOPT: [Start Page] http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IEOPT: [Use_DlgBox_Colors] yes
IEOPT: [Check_Associations] Yes
IEOPT: [FullScreen] no
IEOPT: [Window_Placement] ,
IEOPT: [Error Dlg Displayed On Every Error] no
IEOPT: [Error Dlg Details Pane Open] no
IEOPT: [NotifyDownloadComplete] yes
IEOPT: [Use FormSuggest] no
IEOPT: [AddToFavoritesExpanded]
IEOPT: [ShowedCheckBrowser] Yes
IEOPT: [FormSuggest PW Ask] no
IEOPT: [AutoSearch]
IEOPT: [Use Search Assistant] no
IEOPT: [Use Search Asst]
IEOPT: [ShowGoButton] yes
IEOPT: [Use Search Assistant_bak] no
IEOPT: [Search Page] http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IEOPT: [HistoryViewType]
IEOPT: [HistoryTopNSitesView]
IEOPT: [Expand Alt Text] no
IEOPT: [Move System Caret] no
IEOPT: [NscSingleExpand]
IEOPT: [DisableScriptDebuggerIE] yes
IEOPT: [NoWebJITSetup]
IEOPT: [Page_Transitions]
IEOPT: [FavIntelliMenus] no
IEOPT: [UseThemes]
IEOPT: [Force Offscreen Composition]
IEOPT: [AllowWindowReuse]
IEOPT: [Friendly http errors] yes
IEOPT: [SmoothScroll]
IEOPT: [Enable AutoImageResize] yes
IEOPT: [Enable_MyPics_Hoverbar] yes
IEOPT: [Play_Animations] yes
IEOPT: [Play_Background_Sounds] yes
IEOPT: [Display Inline Videos] yes
IEOPT: [Show image placeholders]
IEOPT: [Print_Background] no
IEOPT: [LastCheckedHi] tÌÅ
IEOPT: [FormSuggest Passwords] yes
IEOPT: [Default_Search_URL]
IEOPT: [Default_Page_URL]
IEOPT: [CustomizeSearch]
IEOPT: [SearchAssistant]
IEOPT: [SearchBar]
IEOPT: [ControlTooltipCount]
IEOPT: [Default_Page_URL] http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IEOPT: [Default_Search_URL] http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IEOPT: [Enable_Disk_Cache] yes
IEOPT: [Cache_Percent_of_Disk]
IEOPT: [Delete_Temp_Files_On_Exit] yes
IEOPT: [Local Page] C:\WINDOWS\system32\blank.htm
IEOPT: [Anchor_Visitation_Horizon]
IEOPT: [Use_Async_DNS] yes
IEOPT: [Placeholder_Width]
IEOPT: [Placeholder_Height]
IEOPT: [Start Page] http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
IEOPT: [CompanyName] Microsoft Corporation
IEOPT: [Custom_Key] MICROSO
IEOPT: [Wizard_Version] 6.0.2600.0000
IEOPT: [FullScreen] no
IEOPT: []
IEOPT: [Search Page] http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
IEOPT: [Search Bar] http://ie.search.msn.com/{sub_rfc1766}/srchasst/srchasst.htm
IEOPT: [SearchAssistant] http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IEOPT: [IEWatsonEnabled][/FONT]
Responder Con Cita
  post #10  
Antiguo 29/10/05, 23:33:02
Usuario
 
Registrado: oct 2005
Ubicación: Puerto Rico
Mensajes: 11
Re: Páginas que se abren solas

Como te puedo enviar el log de MWAV esta demasiado largo y aqui no me permite postearlo!!
Responder Con Cita
Respuesta

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are activado
Refbacks are activado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
problema se abren ventanas de publidad solas (solucionado) infomobi Temas Solucionados 3 31/10/05 15:05:14
Se me abren paginas de internet automaticas (Solucionado) rvidanar Temas Solucionados 6 21/10/05 12:04:16
Se abren paginas solas! R.F.T Foro Oficial de HijackThis en español 1 07/07/05 15:18:28
Se abren paginas como loks Ennia Foro Oficial de HijackThis en español 14 25/04/05 14:43:22
Se Me Abren Paginas De Internet Sin Que Yo Las Vea (solucionado) DACOT Temas Solucionados 6 21/04/05 12:20:11




Todas las horas son GMT -4. La hora es 08:33:15.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31