Blog Registrarse Manuales Programas Glosario

Regresar   Foro de Spyware » Spyware - Adware - Hijackers - Malwares » Foro de Virus y Spywares
 

Para evitar Virus, Spyware y otros Malwares, te recomendamos mantenerte informado en: InfoSpyware Blog


Foro de Virus y Spywares Ayuda con: Malwares - Virus - Spywares - Troyanos - Adwares - Worms - Hijackers - Dialers - Rootkits - Keylogger - etc.) Plantéanos tu problema en este sector.
No ponga su log de HijackThis aquí !!

Tema Cerrado
 
Enviar a: Herramientas
  post #1  
Antiguo 20/09/08, 15:53:05
Usuario
 
Registrado: sep 2008
Ubicación: bogota
Mensajes: 11
troyano del msn

Hola a todos.
Estoy intentando eliminar un virus de estos k se meten por medio del msn, el administrador de tareas esta deshabilitado(yo soy el administrador), no aparece ejecutar, ni puedo restaurar sistema, al reiniciar a prueba de fallos, no me lo permite, y cuando ejecuto el msncleaner, se cierra de inmediato.
Alguien me peude colaborar?
Gracias
InfoSpyware

  post #2  
Antiguo 20/09/08, 16:05:20
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.090
Contactar con M@co a través de ICQ
Re: troyano del msn

Hola andress00 bienvenid@ al Foro de Infospyware.

Realiza lo siguiente:

Paso 1.- Elimina cookies y temporales de internet.
  • Dale clic en Inicio ==> Panel de control ==> Conexiones de red e Internet > Opciones de Internet ==> General
  • En Historial de Exploracion pulsa en la opcion "Eliminar archivos" => Marca "Eliminar todo el contenido sin conexion".
  • En Archivos Temporales de Internet pulsa en "Eliminar archivos". En Cookies pulsa en "Eliminar cookies".
  • Clic en Aplicar ==> Aceptar.
Paso 2.- Descarga y/o actualiza; pero no ejecutes aun:Paso 3.- Reinicia en Modo Seguro (Si esta opción se encuentra bloqueda/dañada, omita el paso)

Paso 4.- Ejecuta de a uno a la vez:
  1. Malwarebytes' Anti-Malware (Realiza un examen completo y elimina lo que este encuentre).
  2. MSNCleaner.
    • Selecciona las opciones:
      • Eliminar Archivos Temporales.
      • Restaurar Archivo Host.
      • Desbloquear el Navegador Internet Explorer al analizar.
      • Habilitar el Administrador de Tareas, Panel de Control, Regedit,..... Entre otros al analizar.
    • Pulsa en Analizar.
  3. CCleaner, usa la opción Limpiador para borrar cookies y temporales, y la opción Registro para efectuar una limpieza del registro de Windows.
Paso 5.- Reinicia en Modo Normal y realiza un analisis completo con Panda Active Scan 2.0.

*Nota*
- Pega los reportes de MSNCleaner, Malwarebytes y Panda.
- Para mayor comodida imprime los pasos.

Salu2!.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
  post #3  
Antiguo 20/09/08, 17:31:12
Usuario
 
Registrado: sep 2008
Ubicación: bogota
Mensajes: 11
Re: troyano del msn

Hola
ya elimine cookies y archivos temporales, ya pase el Malwarebytes

Este es el reporte.

Malwarebytes' Anti-Malware 1.12
Versión de la Base de Datos: 783

Tipo de examen : Examen Completo (C:\|D:\|F:\|)
Objetos examinados: 208197
Tiempo transcurrido: 35 minute(s), 39 second(s)

Procesos en Memoria Infectados: 0
Módulos en Memoria Infectados: 0
Claves del Registro Infectadas: 0
Valores del Registro Infectados: 0
Elementos de Datos del Registro Infectados: 0
Carpetas Infectadas: 0
Ficheros Infectados: 1

Procesos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Módulos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Claves del Registro Infectadas:
(No se han detectado elementos maliciosos)

Valores del Registro Infectados:
(No se han detectado elementos maliciosos)

Elementos de Datos del Registro Infectados:
(No se han detectado elementos maliciosos)

Carpetas Infectadas:
(No se han detectado elementos maliciosos)

Ficheros Infectados:
C:\RECYCLER\S-1-5-21-1202660629-220523388-725345543-1003\Dc86\cr-wvc77\CORE10k.EXE (Trojan.Agent) -> Quarantined and deleted successfully.

Al ejecutar msncleaner o ccleaner este se cierra de inmediato, y no me permite reiniciar a prueba de fallos, y SIGO CON EL PROBLEMA que me recomiendan?
GRacias

Última edición por andress00 fecha: 20/09/08 a las 20:58:50.
  post #4  
Antiguo 20/09/08, 21:32:34
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.090
Contactar con M@co a través de ICQ
Re: troyano del msn

Hola.

Cita:
Originalmente publicado por andress00 Ver Mensaje
Hola

........ y SIGO CON EL PROBLEMA que me recomiendan?
GRacias
Que realices el análisis con Panda online y pegues su reporte.

Saludos.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
  post #5  
Antiguo 21/09/08, 14:13:31
Usuario
 
Registrado: sep 2008
Ubicación: bogota
Mensajes: 11
Re: troyano del msn

Este fue el resultado del PANDA ONLINE, el antivirus k tengo (NOD32)no me lo daja ejecutar.
;************************************************* ************************************************** ************************************************** ******************************
ANALYSIS: 2008-09-21 12:09:07
PROTECTIONS: 0
MALWARE: 31
SUSPECTS: 2
;************************************************* ************************************************** ************************************************** ******************************
PROTECTIONS
Description Version Active Updated
;================================================= ================================================== ================================================== ==============================
;================================================= ================================================== ================================================== ==============================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;================================================= ================================================== ================================================== ==============================
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\Familia Lugo Currea\Cookies\familia lugo currea@atdmt[1].txt
00139535 Application/Processor HackTools No 0 No No C:\Documents and Settings\Familia Lugo Currea\Escritorio\SDFix.exe[C:\Documents and Settings\Familia Lugo Currea\Escritorio\SDFix.exe][SDFix\apps\Process.exe]
00139535 Application/Processor HackTools No 0 Yes No C:\SDFix\apps\Process.exe
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002977.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002947.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002920.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002855.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003022.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003062.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003071.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003110.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003171.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003182.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002832.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003194.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003210.dll
00382334 Trj/Gamania.IM Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP7\A0003332.dll
02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes No C:\WINDOWS\system32\drivers\downld\52062.exe
02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes No C:\WINDOWS\system32\drivers\downld\64734.exe
02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes No C:\WINDOWS\system32\drivers\downld\81296.exe
02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes No C:\WINDOWS\system32\drivers\downld\92828.exe
02898934 W32/Bagle.RP.worm Virus/Worm No 0 Yes No C:\WINDOWS\system32\drivers\downld\92921.exe
02902839 W32/Archivarius.A.worm Virus/Worm No 0 No No C:\Documents and Settings\Familia Lugo Currea\Mis documentos\Nestor A\Software\Matlab 2008 Keygen.rar[Installer-Crack-Keygen.exe]
02913360 W32/Bagle.SP.worm Virus/Worm No 1 Yes No C:\WINDOWS\system32\drivers\downld\45578.exe
02913360 W32/Bagle.SP.worm Virus/Worm No 1 Yes No C:\WINDOWS\system32\drivers\downld\47890.exe
02913360 W32/Bagle.SP.worm Virus/Worm No 1 Yes No C:\WINDOWS\system32\drivers\downld\78031.exe
02913360 W32/Bagle.SP.worm Virus/Worm No 1 Yes No C:\WINDOWS\system32\drivers\downld\51656.exe
02927698 W32/Bagle.KV.worm Virus No 1 Yes No C:\WINDOWS\system32\drivers\downld\47968.exe
02994822 W32/Bagle.KV.worm HackTools No 0 Yes No C:\WINDOWS\system32\drivers\mdelk.exe
03093173 Trj/Agent.IZJ Virus/Trojan No 0 Yes No C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\spoolsv.exe
03508022 W32/Lineage.JNI Virus No 1 Yes No D:\83fgj.com
03508022 W32/Lineage.JNI Virus No 1 Yes No C:\83fgj.com
03590513 W32/Lineage.JPU.worm Virus No 0 Yes No D:\kk3.bat
03590513 W32/Lineage.JPU.worm Virus No 0 Yes No C:\kk3.bat
03590622 W32/Lineage.JQT Virus/Worm No 1 Yes No D:\f.bat
03590622 W32/Lineage.JQT Virus/Worm No 1 Yes No C:\f.bat
03610266 W32/Autorun.AEN.worm Virus/Trojan No 0 Yes No D:\ov.cmd
03610266 W32/Autorun.AEN.worm Virus/Trojan No 0 Yes No C:\ov.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000684.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\1t6yxlxx.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001016.exe
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000991.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001012.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000640.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000001.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000003.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000686.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000052.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000249.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000251.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\1t6yxlxx.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000638.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000961.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000054.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000993.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001014.cmd
03625300 W32/Lineage.JSE Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000959.cmd
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001013.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000992.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000960.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000685.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000639.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000250.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000004.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000053.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000055.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000252.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000002.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000641.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000687.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000962.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000994.inf
03625303 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001015.inf
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000989.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000243.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000955.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000636.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000046.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001039.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001017.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000682.dll
03625304 W32/Lineage.JSE.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001010.dll
03637614 W32/Lineage.JSQ Virus/Worm No 0 Yes No D:\r1y1.bat
03637614 W32/Lineage.JSQ Virus/Worm No 0 Yes No C:\r1y1.bat
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001090.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001041.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001043.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001088.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001108.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\39lpji.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001106.com
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001110.exe
03642558 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\39lpji.com
03642559 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001117.dll
03642559 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001111.dll
03642559 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001104.dll
03642559 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001086.dll
03642560 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001107.inf
03642560 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001091.inf
03642560 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001044.inf
03642560 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001109.inf
03642560 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001042.inf
03642560 W32/Lineage.JSS.worm Virus/Worm No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001089.inf
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001400.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\vxl.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001235.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001326.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001253.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001263.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001265.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001274.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001255.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001324.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\vxl.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001402.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001398.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001276.exe
03666042 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001237.exe
03666070 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001208.exe
03666070 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001210.exe
03666070 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001206.exe
03667189 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001178.dll
03667189 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001189.dll
03667189 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001149.dll
03667189 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001160.dll
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No D:\a1.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001184.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001162.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001151.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\a1.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001121.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001153.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001164.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001186.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001119.bat
03670749 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001188.exe
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003184.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001471.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003196.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001713.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001432.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003173.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001722.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003113.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001422.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003073.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001738.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003064.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001789.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003028.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002979.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002837.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002950.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003198.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002859.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002938.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002936.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001420.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002857.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002952.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002835.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001430.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002981.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003186.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001469.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001787.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003175.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003030.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001736.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003115.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001505.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001720.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003075.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003066.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001711.inf
03675510 W32/Autorun.AFL.worm Virus/Worm No 1 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001507.inf
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003065.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\1u0o8bnq.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003114.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003174.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003185.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003029.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003197.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002834.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002980.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002856.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002935.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003027.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002951.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\1u0o8bnq.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002937.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002949.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002858.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002978.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002836.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003063.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003072.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003112.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003172.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003183.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003209.exe
03680452 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003195.cmd
03680452 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003074.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001506.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001712.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001470.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001721.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001431.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001737.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001421.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001788.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001790.exe
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001786.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001735.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001719.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001710.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001504.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001468.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001429.cmd
03682265 Generic Malware Virus/Trojan No 0 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001419.cmd
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001417.dll
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001261.dll
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001403.dll
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001378.dll
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001272.dll
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001322.dll
03682918 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001251.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001734.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001466.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001785.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001708.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001718.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002785.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001791.dll
03691590 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001427.dll
03696819 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001211.dll
03696819 Trj/Lineage.BZE Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001233.dll
03708399 Trj/Buzus.AH Virus/Trojan No 1 Yes No C:\WINDOWS\system32\symlrsvc.exe
;================================================= ================================================== ================================================== ==============================
SUSPECTS
Sent Location 
;================================================= ================================================== ================================================== ==============================
No C:\WINDOWS\system32\ckvo.exe 
No D:\9yqusig.bat 
;================================================= ================================================== ================================================== ==============================
VULNERABILITIES
Id Severity Description 
;================================================= ================================================== ================================================== ==============================
;================================================= ================================================== ================================================== ==============================


y ahora que puedo hacer????

Gracias

Última edición por andress00 fecha: 21/09/08 a las 14:19:48.
  post #6  
Antiguo 21/09/08, 18:55:57
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.090
Contactar con M@co a través de ICQ
Re: troyano del msn

Hola.


Haz lo siguiente:
  • Descargue el archivo FS-AVFix (al final del mensaje)
    • Descomprimirlo en el escritorio de Windows.
    • Presionar el botón derecho del mouse y luego hacer clic en "instalar" (tal como lo muestra la imagen de abajo:)


  • Descarga OTMoveIt2 by OldTimer en el escritorio.
    1. Haz un doble clic sobre OTMoveIt.exe para ejecutarlo.
    2. Asegúrate que este marcado "Unregister Dll's and Ocx's".
    3. Copia el texto que se encuentra en el cuadrado más abajo, y pega el texto en el marco de izquierdo de OTMoveIt nombrado Paste Standar List of Files / Folders to be moved.
    Código HTML:
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002977.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002947.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002920.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002855.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003022.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003062.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003071.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003110.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003171.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003182.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002832.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003194.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003210.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP7\A0003332.dll
    C:\Documents and Settings\Familia Lugo Currea\Mis documentos\Nestor A\Software\Matlab 2008 Keygen.rar[Installer-Crack-Keygen.exe]
    C:\WINDOWS\system32\drivers\downld\
    C:\WINDOWS\system32\drivers\mdelk.exe
     C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\spoolsv.exe
    D:\83fgj.com
    C:\83fgj.com
    D:\kk3.bat
    C:\kk3.bat
    D:\f.bat
    C:\f.bat
    D:\ov.cmd
    C:\ov.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000684.cmd
    D:\1t6yxlxx.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001016.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000991.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001012.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000640.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000001.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000003.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000686.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000052.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000249.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000251.cmd
    C:\1t6yxlxx.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000638.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000961.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000054.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000993.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001014.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000959.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001013.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000992.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000960.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000685.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000639.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000250.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000004.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000053.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000055.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000252.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000002.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000641.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000687.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000962.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000994.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001015.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000989.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000243.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000955.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000636.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000046.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001039.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001017.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000682.dll
    D:\r1y1.bat
    C:\r1y1.bat
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001090.com
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001041.com
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001043.com
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001088.com
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001108.com
    C:\39lpji.com
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001106.com
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001110.exe
    D:\39lpji.com
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001117.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001111.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001104.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001086.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001107.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001091.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001044.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001109.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001042.inf
     C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001089.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001400.exe
    D:\vxl.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001235.exe
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001326.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001253.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001263.exe
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001265.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001274.exe
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001255.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001324.exe
    C:\vxl.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001402.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001398.exe
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001276.exe
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001237.exe
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001208.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001210.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001206.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001178.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001189.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001149.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001160.dll
    D:\a1.bat
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001184.bat
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001162.bat
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001151.bat
    C:\a1.bat
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001121.bat
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001153.bat
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001164.bat
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001186.bat
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001119.bat
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001188.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003184.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001471.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003196.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001713.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001432.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003173.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001722.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003113.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001422.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003073.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001738.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003064.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001789.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003028.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002979.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002837.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002950.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003198.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002859.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002938.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002936.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001420.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002857.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002952.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002835.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001430.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002981.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003186.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001469.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001787.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003175.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003030.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001736.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003115.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001505.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001720.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003075.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003066.inf
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001711.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001507.inf
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003065.cmd
    C:\1u0o8bnq.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003114.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003174.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003185.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003029.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003197.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002834.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002980.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002856.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002935.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003027.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002951.cmd
    D:\1u0o8bnq.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002937.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002949.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002858.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002978.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002836.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003063.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003072.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003112.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003172.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003183.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003209.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003195.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003074.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001506.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001712.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001470.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001721.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001431.cmd
    03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001737.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001421.cmd
    D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001788.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001790.exe
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001786.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001735.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001719.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001710.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001504.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001468.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001429.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001419.cmd
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001417.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001261.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001403.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001378.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001272.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001322.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001251.dll
     C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001734.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001466.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001785.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001708.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001718.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002785.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001791.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001427.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001211.dll
    C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001233.dll
    C:\WINDOWS\system32\symlrsvc.exe
    C:\WINDOWS\system32\ckvo.exe 
    EmptyTemp 
    purity 
    
    • Haz clic en el botón rojo MoveIt! para lanzar la supresión.
    • Cuando el resultado aparezca en el marco Results, haz clic en Exit.
    • Reinicia el PC (Este paso es muy importante)
    • Envía el informe (reporte) de OTMoveIt situado sobre C: \ _ OTMoveIt\MovedFiles.

  • Sube el siguiente archivo a virus total (está al final del tema) y pega el reporte que se genere:
    D:\9yqusig.bat

- Pega los reportes de OTMoveIt2 y virus total; nos comentas los resultados.

Saludos.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
  post #7  
Antiguo 22/09/08, 00:09:09
Usuario
 
Registrado: sep 2008
Ubicación: bogota
Mensajes: 11
Re: troyano del msn

Informe de OTMoveIt2

File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002977.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002947.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002920.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002855.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003022.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003062.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003071.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003110.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003171.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003182.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002832.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003194.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003210.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP7\A0003332.dll not found.
< C:\Documents and Settings\Familia Lugo Currea\Mis documentos\Nestor A\Software\Matlab 2008 Keygen.rar[Installer-Crack-Keygen.exe] >
File/Folder C:\Documents and Settings\Familia Lugo Currea\Mis documentos\Nestor A\Software\Matlab 2008 Keygen.rar[Installer-Crack-Keygen.exe] not found.
Folder C:\WINDOWS\system32\drivers\downld\ not found.
File/Folder C:\WINDOWS\system32\drivers\mdelk.exe not found.
File/Folder C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\spoolsv.exe not found.
File/Folder D:\83fgj.com not found.
File/Folder C:\83fgj.com not found.
File/Folder D:\kk3.bat not found.
File/Folder C:\kk3.bat not found.
File/Folder D:\f.bat not found.
File/Folder C:\f.bat not found.
File/Folder D:\ov.cmd not found.
File/Folder C:\ov.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000684.cmd not found.
File/Folder D:\1t6yxlxx.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001016.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000991.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001012.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000640.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000001.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000003.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000686.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000052.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000249.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000251.cmd not found.
File/Folder C:\1t6yxlxx.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000638.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000961.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000054.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000993.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001014.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000959.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001013.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000992.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000960.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000685.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000639.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000250.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000004.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000053.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000055.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000252.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1\A0000002.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000641.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000687.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000962.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000994.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001015.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000989.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3\A0000243.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0000955.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000636.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2\A0000046.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001039.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001017.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4\A0000682.dll not found.
File/Folder D:\r1y1.bat not found.
File/Folder C:\r1y1.bat not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001090.com not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001041.com not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001043.com not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001088.com not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001108.com not found.
File/Folder C:\39lpji.com not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001106.com not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001110.exe not found.
File/Folder D:\39lpji.com not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001117.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001111.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001104.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001086.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001107.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001091.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001044.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001109.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001042.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001089.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001400.exe not found.
File/Folder D:\vxl.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001235.exe not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001326.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001253.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001263.exe not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001265.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001274.exe not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001255.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001324.exe not found.
File/Folder C:\vxl.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001402.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001398.exe not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001276.exe not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001237.exe not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001208.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001210.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001206.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001178.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001189.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001149.dll not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001160.dll not found.
File/Folder D:\a1.bat not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001184.bat not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001162.bat not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001151.bat not found.
File/Folder C:\a1.bat not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001121.bat not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001153.bat not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001164.bat not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001186.bat not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001119.bat not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001188.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003184.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001471.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003196.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001713.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001432.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003173.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001722.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003113.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001422.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003073.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001738.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003064.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001789.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003028.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002979.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002837.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002950.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003198.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002859.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002938.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002936.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001420.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002857.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002952.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002835.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001430.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002981.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003186.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001469.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001787.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003175.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003030.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001736.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003115.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001505.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001720.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003075.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003066.inf not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001711.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001507.inf not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003065.cmd not found.
File/Folder C:\1u0o8bnq.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003114.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003174.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003185.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003029.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003197.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002834.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002980.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002856.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002935.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003027.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002951.cmd not found.
File/Folder D:\1u0o8bnq.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002937.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002949.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002858.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002978.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0002836.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003063.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003072.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003112.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003172.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003183.cmd not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003209.exe not found.
File/Folder C:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003195.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0003074.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001506.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001712.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001470.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001721.cmd not found.
File/Folder D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5\A0001431.cmd not found.
< 03682265 Generic Malware Virus/Trojan No 0 Yes No D:\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6\A0001737.cmd >


Informe del virustotal

Tamano archivo: 99969 bytes
MD5...: c2797e212a7a1fcf5b498a441d717b2e
SHA1..: b01010caf7a10ca003fba1d5073ee683bb14bb3c
SHA256: 8d55a68dbd92df4b7db98c54e8c634f99ce773b77ff7b9f23d 164e70ce80f118
SHA512: f7d6d135bffa39a40036ebaafb1bce79449e7c5523283bd5d1 8a6b7fefdc5f4b
f50f3b856145bb0ae0b295d9369468979f69361cef3eddd1b6 47dc765fde704b
PEiD..: -
TrID..: File type identification
Win32 Dynamic Link Library (generic) (65.4%)
Generic Win/DOS Executable (17.2%)
DOS Executable Generic (17.2%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x42e438
timedatestamp.....: 0x48c7d251 (Wed Sep 10 13:57:37 2008)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
4ja 0x1000 0x18000 0xc00 0.00 d2a70550489de356a2cd6bfc40711204
nai 0x19000 0x17000 0x16200 7.85 c0fc529c43c98a0b6c6069b52a15f1ff
bvfa4r 0x30000 0x1000 0x1481 0.07 733c5eb76b2b7c952fc255cfe9758a26

( 1 imports )
> KERNEL32.DLL: GetACP

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=E2C40F2F8155522E865801077 2989D0031D004CB
packers (Kaspersky): PE_Patch



Una cosita el virus total, no tenia link por lo tanto lo k hice fue entrar a esta pag http://www.virustotal.com/es/analisis/8c70376fca313c6f827f36b56d30593d y añadir el archivo.

El informe del OTmoveit2 no lo encontre porque en esa ubicación no hay ningun archivo txt, hay solo carpetas como unas 10 y en ninguna hay infromes. Por lo tanto volvi a ejecutarlo y pegue el informe que se genera en la parte derecha pero por lo menos ya deja entrar al admon de tareas, aunque no deja entrar a restaruar sistema ni ejecutar, sin embargo si deja ejecutar cclenar y msncelaner, no los ejecute solo verifique que se puedieran ejecutar.
Que debo hacer?? ejecutar estos dos programas?

MUCHISIMAS GRACIAS.

esta es una comunidad en realidad muy seria. GRACIAS
  post #8  
Antiguo 22/09/08, 09:20:55
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.090
Contactar con M@co a través de ICQ
Re: troyano del msn

Hola.

Realiza lo siguiente:
  • Elimina los archivos que señalo en rojo, si tienes algun problema ejecuta Malwarebytes y use FILEASSASSIN:
    Código:
    D:\9yqusig.bat 
  • Descarga y ejecuta : RegUnlocker.
    • Pulsa en la pestaña "Restricciones" y señala las opciones:
      • Eliminar las restricciones del Sistema
      • Eliminar las restricciones del Explorador
    • Pulsa en la pestaña "Reparadores" y señala las opciones:
      • Reparar el Modo Seguro (Modo a prueba de fallos)
    • Pulsa en la pestaña "Restaurar Sistema (Windows XP)" y señala las opciones:
      • Reparar el servicio de Restauración de Sistema
    • Dale clic en Aplicar para ejecutar la herramienta.

  • Haz doble clic en OTMoveIt2.exe para ejecutarlo.
    • Asegúrate de tener una conexión a Internet.
    • Haz clic en el botón verde CleanUp!.
      • Se descargará una lista de los componentes utilizados en la limpieza de malware.
      • Si el cortafuegos o protección en tiempo real intenta bloquear el acceso a Internet a OtMoveit2, por favor, permítele a la aplicación hacerlo.
      • Haz clic en "Yes" para iniciar el proceso de limpieza y eliminar estos componentes, entre ellos esta aplicación.
    • Se pedirá que reinicie la máquina para terminar el proceso de limpieza. Si se pide que reinicie la máquina elegir "Yes".
*Nota*
- Nos comentas los resultados.

Salu2!.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
  post #9  
Antiguo 22/09/08, 11:50:29
Usuario
 
Registrado: sep 2008
Ubicación: bogota
Mensajes: 11
Re: troyano del msn

Informe del malwarebytes

File/Folder avenger.zip not found.
File/Folder avenger.exe not found.
File/Folder Avenger not found.
File/Folder avenger.txt not found.
File/Folder bfu.zip not found.
File/Folder BFU not found.
File/Folder combofix.exe not found.
File/Folder Combo-Fix.sys not found.
File/Folder ComboFix not found.
File/Folder erdnt\subs not found.
File/Folder QooBox not found.
File/Folder ComboFix*.txt not found.
Service not present: catchme.
File/Folder catchme.exe not found.
File/Folder fdsv.exe not found.
File/Folder grep.exe not found.
File/Folder moveex.exe not found.
File/Folder nircmd.exe not found.
File/Folder sed.exe not found.
File/Folder swreg.exe not found.
File/Folder Swsc.exe not found.
File/Folder Swxcacls.exe not found.
File/Folder VFind.exe not found.
File/Folder WS2Fix.exe not found.
File/Folder zip.exe not found.
File/Folder tmp.reg not found.
File/Folder dss.exe not found.
File/Folder Deckard not found.
File/Folder deljob.exe not found.
File/Folder deljob not found.
File/Folder logit.txt not found.
File/Folder FindAWF.exe not found.
File/Folder AWF.txt not found.
File/Folder fixwareout.exe not found.
File/Folder fixwareout not found.
File/Folder fsbl.exe not found.
File/Folder fsbl*.log not found.
File/Folder gmer.exe not found.
File/Folder gmer.dll not found.
File/Folder gmer.ini not found.
File/Folder gmer.log not found.
File/Folder gmer_uninstall.cmd not found.
File/Folder gmer.sys not found.
Service not present: gmer.
File/Folder haxfix.exe not found.
File/Folder haxfix.txt not found.
File/Folder killbox.exe not found.
File/Folder !Killbox not found.
File/Folder NoLop.exe not found.
File/Folder NoLop.txt not found.
File/Folder NoLopOLD.txt not found.
File/Folder delete.bat not found.
File/Folder OTMoveIt.exe not found.
File delete failed. C:\Documents and Settings\Familia Lugo Currea\Escritorio\OTMoveIt2.exe scheduled to be deleted on reboot.
C:\_OTMoveIt\MovedFiles\09212008_204116 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\WINDOWS\sy stem32\drivers\downld folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\WINDOWS\sy stem32\drivers folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\WINDOWS\sy stem32 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\WINDOWS folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP7 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP6 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP5 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP4 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP3 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP2 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402}\RP1 folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information\_restore{F4A643F6-0773-4A68-84BF-EDAC5F621402} folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405\System Volume Information folder deleted successfully.
C:\_OTMoveIt\MovedFiles\09212008_203405 folder deleted successfully.
C:\_OTMoveIt\MovedFiles folder deleted successfully.
C:\_OTMoveIt folder deleted successfully.
C:\SDFix\apps\Replace\xp folder deleted successfully.
C:\SDFix\apps\Replace\w2k folder deleted successfully.
C:\SDFix\apps\Replace folder deleted successfully.
C:\SDFix\apps folder deleted successfully.
C:\SDFix folder deleted successfully.
File delete failed. C:\Documents and Settings\Familia Lugo Currea\Escritorio\OTMoveIt2.exe scheduled to be deleted on reboot.

__________________________________________________ ______________________

El regunlocker tambien lo ejecute y ya aparece ejecutar en el menu inicio pero no aparece habilitada restaurar sistema.

Ya se puede ejecutar ccleaner y msncleaner. Ahora que debo hacer?
GRACIAS
  post #10  
Antiguo 22/09/08, 11:53:37
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.090
Contactar con M@co a través de ICQ
Re: troyano del msn

Hola.

Abre la ventana de restaurar sistema y saca una imagen; la pegas siguiendo estos pasos:
Saludos.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Tema Cerrado

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are activado
Refbacks are activado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
Problemas con el bluetooth jocapapi Foro de Hardware 9 07/07/08 09:16:21
tengo un problema con la instalacion de xp....... paidos Foro de Hardware 13 17/05/08 08:30:34
no tengo sonio con windows xp (Solucionado) dori360 Foro de Hardware 16 26/03/08 06:18:25
problemas con los iconos (Solucionado) ivanabaslut Foro de Windows 14 22/01/08 19:39:04
Tengo problemas con el MSN.... maquina Foro Oficial de HijackThis en español 9 26/11/06 12:23:13




Todas las horas son GMT -4. La hora es 09:16:27.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31