Blog Registrarse Manuales Programas Glosario

Regresar   Foro de Spyware » Spyware - Adware - Hijackers - Malwares » Foro de Virus y Spywares
 

Para evitar Virus, Spyware y otros Malwares, te recomendamos mantenerte informado en: InfoSpyware Blog


Foro de Virus y Spywares Ayuda con: Malwares - Virus - Spywares - Troyanos - Adwares - Worms - Hijackers - Dialers - Rootkits - Keylogger - etc.) Plantéanos tu problema en este sector.
No ponga su log de HijackThis aquí !!

Tema Cerrado
 
Enviar a: Herramientas
  post #1  
Antiguo 18/06/09, 13:10:25
Usuario
 
Registrado: oct 2008
Ubicación: LOS GUADALPERALES
Mensajes: 3
Antivirus y ccleaner bloqueados

El antivirus Norton Internet Security y el programa Ccleaner no se cargan al iniciar y tampoco me deja ejecutarlos.

He usado varias herramientas para intentar solucionarlo como: Antimalware y Combofix, y tengo los logs que me han reportado.

Que hago?
InfoSpyware

  post #2  
Antiguo 18/06/09, 13:18:39
Avatar de The_Bad_Boy
Usuario Habitual
 
Registrado: abr 2007
Ubicación: Usa
Mensajes: 1.708
Sonrisa Re: Antivirus y ccleaner bloqueados

Hola candialmo1979 por favor pega el reporte que te genero el Malwarebyte,s , el del comofox NO lo pongas aqui por favor , solamente el que te e mencionado , tambien realizate lo siguiente


pasa Kaspersky Online Scanner(

Pegas su reporte que genere aqui mismo )






Saludos

Linux user # 498783.
  post #3  
Antiguo 18/06/09, 14:42:28
Usuario
 
Registrado: oct 2008
Ubicación: LOS GUADALPERALES
Mensajes: 3
Re: Antivirus y ccleaner bloqueados

Malwarebytes' Anti-Malware 1.38
Versión de la Base de Datos: 2304
Windows 5.1.2600 Service Pack 3

18/06/2009 17:22:24
mbam-log-2009-06-18 (17-22-24).txt

Tipo de examen : Examen Completo (C:\|)
Objetos examinados: 179024
Tiempo transcurrido: 48 minute(s), 40 second(s)

Procesos en Memoria Infectados: 0
Módulos en Memoria Infectados: 0
Claves del Registro Infectadas: 6
Valores del Registro Infectados: 3
Elementos de Datos del Registro Infectados: 0
Carpetas Infectadas: 3
Ficheros Infectados: 58

Procesos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Módulos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Claves del Registro Infectadas:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\s k9ou0s (Rootkit.Bagle) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\s k9ou0s (Rootkit.Bagle) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\sk9ou0s (Rootkit.Bagle) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\111111s1ro1s1a (Rootkit.Bagle) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\1 11111s1ro1s1a (Rootkit.Bagle) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\1 11111s1ro1s1a (Rootkit.Bagle) -> Quarantined and deleted successfully.

Valores del Registro Infectados:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\german.exe (Rootkit.Bagle) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\drvsyskit (Rootkit.Bagle) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\mule_st_key (Rootkit.Bagle) -> Delete on reboot.

Elementos de Datos del Registro Infectados:
(No se han detectado elementos maliciosos)

Carpetas Infectadas:
C:\WINDOWS\system32\drivers\down (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\Datos de programa\m (Trojan.Agent) -> Delete on reboot.
c:\documents and settings\CANDI\Datos de programa\drivers\downld (Worm.Bagle) -> Quarantined and deleted successfully.

Ficheros Infectados:
c:\documents and settings\CANDI\datos de programa\drivers\11s11ro1s1a2.sys (Rootkit.Bagle) -> Quarantined and deleted successfully.
c:\system volume information\_restore{2e9b387f-3ca4-4f09-ac27-649fe180fb57}\RP263\A0034162.sys (Rootkit.Bagle) -> Quarantined and deleted successfully.
c:\system volume information\_restore{2e9b387f-3ca4-4f09-ac27-649fe180fb57}\RP264\A0034197.sys (Rootkit.Bagle) -> Quarantined and deleted successfully.
c:\system volume information\_restore{2e9b387f-3ca4-4f09-ac27-649fe180fb57}\RP264\A0035219.sys (Rootkit.Bagle) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\drivers\down\272511.exe (Trojan.Packed) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\drivers\down\257139.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\m\data.oct (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\m\list.oct (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\m\srvlist.oct (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\116317.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\136075.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\141884.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\143536.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\144688.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\147341.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\148403.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\190133.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\192456.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\246804.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\248156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\248867.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\257159.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\258121.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\259022.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\259873.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\261135.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\261516.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\266383.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\267644.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\271260.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\294193.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\300391.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\301173.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\301333.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\317746.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\319679.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\390561.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\392554.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\393365.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\397151.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\398933.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\399013.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\405463.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\407746.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\408917.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\414115.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\425421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\447944.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\453612.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\454513.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\454854.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\77932.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\datos de programa\drivers\downld\95887.exe (Worm.Bagle) -> Quarantined and deleted successfully.
c:\documents and settings\CANDI\Datos de programa\drivers\winupgro.exe (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\mdelk.exe (Trojan.Spammer) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\wintems.exe (Trojan.Spammer) -> Delete on reboot.
c:\documents and settings\CANDI\Datos de programa\m\flec006.exe (Trojan.Agent) -> Delete on reboot.
c:\documents and settings\CANDI\Datos de programa\drivers\111wfs1intwq.sys (Rootkit.Bagle) -> Quarantined and deleted successfully.
  post #4  
Antiguo 18/06/09, 18:38:55
Avatar de The_Bad_Boy
Usuario Habitual
 
Registrado: abr 2007
Ubicación: Usa
Mensajes: 1.708
Sonrisa Re: Antivirus y ccleaner bloqueados

Hola , Gracias por el reporte del Malwarebyte,s , puedo obcervar que el causante de que no pueda ejecutar ningun programa es acausa del Bagle , este gusano es el causante de esa clase de problemas , por favor pega el reporte de kaspersky y asi poder basarnos desde alli , asi podremos saber si el Malwarebytes no a eliminado todos los archivos infectados , saludos

Linux user # 498783.
  post #5  
Antiguo 26/06/09, 07:45:37
Avatar de Norton-Forum-As
Norton Forum Assist Team
 
Registrado: jul 2008
Ubicación: Alemania
Mensajes: 83
Re: Antivirus y ccleaner bloqueados

Hola candialmo1979,

Mi nombre es Daniel y trabajo en un equipo de soporte externo para Symantec.

Te sugiero que te pongas en contacto con el servicio de asistencia técnica de Norton en http://www.symantec.com/es/es/norton/support/productdetail/contact_ts.jsp?pvid=nis_2009

Saludos, Daniel
Norton Forum Assist Team
Tema Cerrado

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are activado
Refbacks are activado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
No se q pasa con mi PC nicoduran Ayuda General 48 24/08/08 21:37:24
mi pc está lentísima. fíjense este log heindke Foro de Virus y Spywares 6 05/08/08 03:15:57
Virus.VBS.Small.a no puedo eliminarlo hergfmemez Foro de Virus y Spywares 2 21/07/08 18:57:32
btask.dll sahogu Foro de Virus y Spywares 20 23/05/08 09:26:29
Problemas con spywares y demas (formateado) RoblesN70 Temas Solucionados 5 26/10/06 09:00:34




Todas las horas son GMT -4. La hora es 18:35:58.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31