Blog Registrarse Manuales Programas Glosario

Regresar   Foro de Spyware » Spyware - Adware - Hijackers - Malwares » Foro de Virus y Spywares
 

Para evitar Virus, Spyware y otros Malwares, te recomendamos mantenerte informado en: InfoSpyware Blog


Foro de Virus y Spywares Ayuda con: Malwares - Virus - Spywares - Troyanos - Adwares - Worms - Hijackers - Dialers - Rootkits - Keylogger - etc.) Plantéanos tu problema en este sector.
No ponga su log de HijackThis aquí !!

Respuesta
 
Enviar a: Herramientas
  post #11  
Antiguo 05/11/09, 22:44:38
Usuario
 
Registrado: dic 2008
Ubicación: valladolid
Mensajes: 18
Re: Beagle: utilizo combofix?

Ya está terminado el análisis. 1 hora, y mogollón de archivos tocados:


Malwarebytes' Anti-Malware 1.41
Versión de la Base de Datos: 3109
Windows 6.1.7600

06/11/2009 3:39:03
mbam-log-2009-11-06 (03-38-54).txt

Tipo de examen : Examen Completo (C:\|D:\|)
Objetos examinados: 364088
Tiempo transcurrido: 58 minute(s), 37 second(s)

Procesos en Memoria Infectados: 2
Módulos en Memoria Infectados: 0
Claves del Registro Infectadas: 2
Valores del Registro Infectados: 3
Elementos de Datos del Registro Infectados: 1
Carpetas Infectadas: 11
Ficheros Infectados: 308

Procesos en Memoria Infectados:
D:\Users\Hector\AppData\Roaming\hidires\flec003.ex e (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\flec006.exe (Worm.Bagle) -> No action taken.

Módulos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Claves del Registro Infectadas:
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\sK9Ou0s (Worm.Bagle) -> No action taken.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\srosa (Worm.Bagle) -> No action taken.

Valores del Registro Infectados:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\flec003.exe (Email.Worm) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\mule_st_key (Worm.Bagle) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\drvsyskit (Trojan.Agent) -> No action taken.

Elementos de Datos del Registro Infectados:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Policies\Explorer\NoActiveDesktopChange s (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.

Carpetas Infectadas:
D:\Users\Hector\AppData\Roaming\drivers\downld (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\config (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\Incoming (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\lang (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\skins (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\Temp (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\WDIR (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\webserver (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\m (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared (Trojan.Agent) -> No action taken.

Ficheros Infectados:
D:\Users\Hector\AppData\Roaming\hidires\flec003.ex e (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\flec006.exe (Worm.Bagle) -> No action taken.
C:\Program Files (x86)\Adobe\Adobe Premiere Pro CS4\adobe.premiere.pro.cs4.4.0.0.0-nope.exe (Trojan.Downloader) -> No action taken.
C:\Windows\System32\mdelk.exe (Email.Worm) -> No action taken.
C:\Windows\System32\wintems.exe (Email.Worm) -> No action taken.
C:\Windows\SysWOW64\mdelk.exe (Email.Worm) -> No action taken.
C:\Windows\SysWOW64\wintems.exe (Email.Worm) -> No action taken.
D:\Archivos de programa\Adobe\Adobe Premiere Pro CS4\adobe.premiere.pro.cs4.4.0.0.0-nope.exe (Trojan.Downloader) -> No action taken.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\1O0Z25PG\b64[1].jpg (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\1O0Z25PG\b64[2].jpg (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\K25ZT0GC\b64_3[2].jpg (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\K25ZT0GC\b64_3[3].jpg (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\POO2JZLK\b64[2].jpg (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\POO2JZLK\b64_4[1].jpg (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\129 468.exe (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\134 078.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\140 265.exe (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\151 062.exe (Email.Worm) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\156 968.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\161 093.exe (Email.Worm) -> No action taken.
D:\Users\Hector\Mis programas\sin comprobar\Adobe Premiere CS4\Parche\adobe.premiere.pro.cs4.4.0.0.0-nope.exe (Trojan.Downloader) -> No action taken.
D:\Users\Hector\Mis programas\sin comprobar\Cracks\Adobe Creative Suite CS4\adobe-master-cs4-keygen.exe (Trojan.Downloader) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\121 828.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\124 078.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\129 984.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\141 906.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\150 73593.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\155 781.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\156 343.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\160 671.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\161 453.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\161 625.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\171 781.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\172 406.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\179 968.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\180 218.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\185 046.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\185 812.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\186 000.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\200 875.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\202 312.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\203 078.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\203 609.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\233 796.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 250.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 671.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 750.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 796.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\235 187.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\235 375.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\235 546.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\236 296.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\236 453.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\240 593.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\241 062.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\241 265.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\251 703.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\252 250.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\252 484.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\271 140.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\271 640.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\271 703.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\272 062.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\272 328.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\272 343.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\278 281.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\279 468.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\280 125.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\311 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\311 984.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\312 046.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\312 359.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\312 578.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\314 937.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\315 312.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\315 375.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\326 921.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\329 281.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\329 828.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\344 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\345 453.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\345 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\346 171.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\346 593.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\373 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\375 109.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\375 718.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\378 750.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\379 281.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\379 328.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\389 046.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\394 390.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\394 937.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\401 984.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\406 578.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\408 031.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\408 500.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\409 765.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\409 921.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\410 421.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\412 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\412 687.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\416 765.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\421 421.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\421 859.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\422 546.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\423 531.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\423 750.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\427 37031.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 47406.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 47531.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 51421.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 51890.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 52234.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 63015.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 63625.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 90515.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 91546.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 92203.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 22312.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 22984.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 23031.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 23406.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 23437.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 00578.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 00875.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 00937.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 09156.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 14578.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 16375.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 46562.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 46984.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 47156.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 47718.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 47890.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 74656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 75906.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 76921.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 03968.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 08296.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 09500.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 17234.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 18890.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 19531.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 20234.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 24218.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 24562.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\442 671.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\444 406.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\445 203.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\470 171.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\470 562.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\470 625.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\475 625.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\480 343.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\481 906.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\492 156.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\493 984.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\494 343.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\495 031.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\496 250.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\496 484.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\562 500.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\565 000.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\565 171.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\565 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\566 078.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\595 812.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\597 296.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\597 921.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\627 187.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\630 578.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\631 250.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\639 656.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\641 359.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\downld\641 718.exe (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\names.txt (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\hidires\config\pre ferences.ini (Worm.Bagle) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\data.oct (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\list.oct (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\srvlist.oct (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\3D_Dia_de _los_Muertos_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\4Musics MPC to MP3 Converter 4.5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\A-Converter_1.0SR1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\A123 Flash to AVI WMV DVD MPEG Converter 5.2.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Aare_MP3_ Sound_Recorder_3.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Accurate Printer Monitor 4.0.2 Build 507.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Advanced_ System_Cleaner_1.8.0_[KeyGen].zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Advox_Omn igate_6_-_SMS_Server_6.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Agile Video Splitter 3.3.5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Alytrk_1. 2.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Angel Writer 3.2 Build 400.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Antivir.P e.Premium.Hbedv.Key.Lizenz.6.30.Deutsch.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Aquanox_1 12_to_114_English_patch.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\ArcSoft Panorama Maker 4.1.9.30.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Ashampoo AntiSpyWare 2.05.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Ask Oscar 1.1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\ASP 2 VB Converter 1.00.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Audiobaba _1.5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Avex Video Converter Platinum 4 build 02.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\AVG.Anti-Virus.v7.0.338.With.Keygen.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\BaSoMail 1.24.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\BookmarkR eviewer_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Boris_Con tinuum_Complete_3.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\CalcuWage _2.61.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Call_Xent ra_1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Cellulate _1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Check Disk and Format Disk Component 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Click2Sig n_1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\ClipBooke r_2.1_[Serial].zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\ConQuery 1.7.3.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Crawler 3D Fireplace Screensaver 4.2.5.63.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Crystal_M etronome_1.4.5_(Key).zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\CyberLink _PowerDirector_Premium_5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Cyclope Employee Surveillance Solution 4.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\DBDiff for Oracle 3.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Digital Hamster 1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\DirectSBA _1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Downloads _in_Tab_0.0.5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Dracula_T wins_demo.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\DripDrop_ 1.2.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\DTMF_Dial _1.0.0.14.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Dynamic Noise Reduction.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Easy SpeakerPhone 1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Empire State Deco 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\EraseDrop _1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\EZNote_1. 0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Far_Cry_H ighcal_mod.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Fast Multimedia MP3 Converter 2.00.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\FLV Player 2008 1.2.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Fortibus_ CMS_4.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Free Notes 3.02 (Serial).zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\G6 AutoZip 0.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Get Keywords 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Godsw iPhone Converter 2.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Great Artist - Nudes 1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\GuitarTM 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Gypsee_PR O_1.9.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Hello, World! 1.8.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\HID.net 0.1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\High--Low_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Instan-t_Enterprise_Messenger_Server_4.6.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Kernel_Wo rd_4.03_Cracked.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Labels2Ma il_1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Large Pores Remedies 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\LizardWor ks_Hot_Air_Balloons_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\MacLocksm ith_2.4.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Mail Password Recovery Key 8.0 build 2514.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Maven Wizard 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Message_S erver_Communication_Suite_6.2.0.0_Serial.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\MIDI to WAV Converter 6.0 Build 50.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Mild Winter 3D Screensaver 1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Model_Col lector_1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Mp3_Tag_A ssistant_Professional_2.85_build_201_(With_Crack). zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\My Faster PC 4.0.2.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\MyUninsta ller 1.39.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\NCN_Calcu lator_1.0.1014.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Neoconver t DVD To HTC Touch HD 4.0.0.1087.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Network Clipboard 0.1.49.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\NOD32.v2. 50.16.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\notGNU 2.11.7.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\NT Meter 1.42.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Octopus_M icro_Finance_Suite_1.0.13a.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Playtoniu m_Jigsaw_-_Atlantic_Lighthouses_1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\PNGOUTWin 1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Pop-Down 2.0.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Portable. Kaspersky.Anti-Virus.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Porto_Ale gre_Cams_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Power_Aud io_CD_Grabber_1.00.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\PrintStat ion 2.04 D.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\ProShow Standard 3.0.1967 Serial.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Quick Resolution Changer 0.1.0.25.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Registrar for the Command Line 2.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\RendClk_1 .0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Resolve for BagleDl-AA 1.07.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Robosoft_ 3.0.531_(With_Crack).zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\SaveIt_3. zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Securiboo k_1.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Sequencer _1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Smart_Rem ote_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Smoker's Calc 1.10.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\SMS XL 1.5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Spyfighte r_Cleaner_Pro_3.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\SQL_DB_Va lidator_1.2.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\StarTap_( CE_Handheld)_4.92.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Star_EZ_I nventory_1.12.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Stock Alert 1.0.0.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Ston3D Web Player 1.6.0.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Supervers ion Portuguese PalmOS 2.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\SWAMP COOLER MAINTENANCE & REPAIR 4.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\TagUtil 0.5.1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Tanbee PSP Converter Lite 2.8.32.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Techno_In ventory_2.0.0.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\The_Free_ Dictionary_1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Tiny_Drag on_screen_saver_1.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\ToCA_Race _Driver_2_The_Ultimate_Racing_Simulator_multiplaye r_demo.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Total Game Control 3.5.2.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\TrayDay 7.02 [Key].zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Unreal_To urnament_2003_-_Twenty-three-ninety_B1_CTF_map.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Usability Expo 4.1.5.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\USB_Shado w_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Viewfolde rsize 5.00.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Waterfall _Beauty_Screen_Saver_1.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Western Digital Icon Pack.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\WinEdit ProPack 2001a.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\WinSell_P ro_2.2.828.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\m\shared\Xito Application Manager 1.0.0.zip (Trojan.Agent) -> No action taken.
D:\Users\Hector\AppData\Roaming\drivers\winupgro.e xe (Trojan.Agent) -> No action taken.

Un poquito largo, pero espero que sirva...
Thanx.
Responder Con Cita
InfoSpyware

  post #12  
Antiguo 05/11/09, 23:15:04
Avatar de Anleg_30
Warrior
 
Registrado: dic 2007
Ubicación: B@rc3l0n@ - Venezuela
Mensajes: 5.755
Re: Beagle: utilizo combofix?

Usastes la opcción de "Quitar lo Seleccionado" al finalizar el Scan ¿?
Comenta como va todo porque sino entonces se tendra que hacer uso del Live Cd como indicó GuillermoTell


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Responder Con Cita
  post #13  
Antiguo 05/11/09, 23:17:02
Usuario
 
Registrado: dic 2008
Ubicación: valladolid
Mensajes: 18
Re: Beagle: utilizo combofix?

No me he atrevido a hacerlo sin que me lo dijerais, pero lo he hecho ya. Este es el log:

Malwarebytes' Anti-Malware 1.41
Versión de la Base de Datos: 3109
Windows 6.1.7600

06/11/2009 4:16:02
mbam-log-2009-11-06 (04-16-02).txt

Tipo de examen : Examen Completo (C:\|D:\|)
Objetos examinados: 364088
Tiempo transcurrido: 58 minute(s), 37 second(s)

Procesos en Memoria Infectados: 2
Módulos en Memoria Infectados: 0
Claves del Registro Infectadas: 2
Valores del Registro Infectados: 3
Elementos de Datos del Registro Infectados: 1
Carpetas Infectadas: 11
Ficheros Infectados: 308

Procesos en Memoria Infectados:
D:\Users\Hector\AppData\Roaming\hidires\flec003.ex e (Email.Worm) -> Unloaded process successfully.
D:\Users\Hector\AppData\Roaming\m\flec006.exe (Worm.Bagle) -> Unloaded process successfully.

Módulos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Claves del Registro Infectadas:
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\sK9Ou0s (Worm.Bagle) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\srosa (Worm.Bagle) -> Quarantined and deleted successfully.

Valores del Registro Infectados:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\flec003.exe (Email.Worm) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\mule_st_key (Worm.Bagle) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run\drvsyskit (Trojan.Agent) -> Quarantined and deleted successfully.

Elementos de Datos del Registro Infectados:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Policies\Explorer\NoActiveDesktopChange s (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Carpetas Infectadas:
D:\Users\Hector\AppData\Roaming\drivers\downld (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\config (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\Incoming (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\lang (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\skins (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\Temp (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\WDIR (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\webserver (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared (Trojan.Agent) -> Quarantined and deleted successfully.

Ficheros Infectados:
D:\Users\Hector\AppData\Roaming\hidires\flec003.ex e (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\flec006.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Program Files (x86)\Adobe\Adobe Premiere Pro CS4\adobe.premiere.pro.cs4.4.0.0.0-nope.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Windows\System32\mdelk.exe (Email.Worm) -> Quarantined and deleted successfully.
C:\Windows\System32\wintems.exe (Email.Worm) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\mdelk.exe (Email.Worm) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\wintems.exe (Email.Worm) -> Quarantined and deleted successfully.
D:\Archivos de programa\Adobe\Adobe Premiere Pro CS4\adobe.premiere.pro.cs4.4.0.0.0-nope.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\1O0Z25PG\b64[1].jpg (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\1O0Z25PG\b64[2].jpg (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\K25ZT0GC\b64_3[2].jpg (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\K25ZT0GC\b64_3[3].jpg (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\POO2JZLK\b64[2].jpg (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Local\Microsoft\Windows\Te mporary Internet Files\Content.IE5\POO2JZLK\b64_4[1].jpg (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\129 468.exe (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\134 078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\140 265.exe (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\151 062.exe (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\156 968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\161 093.exe (Email.Worm) -> Quarantined and deleted successfully.
D:\Users\Hector\Mis programas\sin comprobar\Adobe Premiere CS4\Parche\adobe.premiere.pro.cs4.4.0.0.0-nope.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
D:\Users\Hector\Mis programas\sin comprobar\Cracks\Adobe Creative Suite CS4\adobe-master-cs4-keygen.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\121 828.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\124 078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\129 984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\141 906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\150 73593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\155 781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\156 343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\160 671.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\161 453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\161 625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\171 781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\172 406.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\179 968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\180 218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\185 046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\185 812.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\186 000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\200 875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\202 312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\203 078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\203 609.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\233 796.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 671.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\234 796.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\235 187.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\235 375.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\235 546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\236 296.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\236 453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\240 593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\241 062.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\241 265.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\251 703.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\252 250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\252 484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\271 140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\271 640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\271 703.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\272 062.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\272 328.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\272 343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\278 281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\279 468.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\280 125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\311 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\311 984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\312 046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\312 359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\312 578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\314 937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\315 312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\315 375.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\326 921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\329 281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\329 828.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\344 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\345 453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\345 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\346 171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\346 593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\373 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\375 109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\375 718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\378 750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\379 281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\379 328.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\389 046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\394 390.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\394 937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\401 984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\406 578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\408 031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\408 500.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\409 765.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\409 921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\410 421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\412 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\412 687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\416 765.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\421 421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\421 859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\422 546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\423 531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\423 750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\427 37031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 47406.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 47531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 51421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 51890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 52234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 63015.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 63625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 90515.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 91546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\430 92203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 22312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 22984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 23031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 23406.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\431 23437.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 00578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 00875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 00937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 09156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 14578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 16375.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 46562.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 46984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 47156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 47718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 47890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 74656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 75906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\432 76921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 03968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 08296.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 09500.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 17234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 18890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 19531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 20234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 24218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\433 24562.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\442 671.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\444 406.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\445 203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\470 171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\470 562.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\470 625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\475 625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\480 343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\481 906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\492 156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\493 984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\494 343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\495 031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\496 250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\496 484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\562 500.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\565 000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\565 171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\565 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\566 078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\595 812.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\597 296.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\597 921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\627 187.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\630 578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\631 250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\639 656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\641 359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\downld\641 718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\names.txt (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\hidires\config\pre ferences.ini (Worm.Bagle) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\data.oct (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\list.oct (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\srvlist.oct (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\3D_Dia_de _los_Muertos_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\4Musics MPC to MP3 Converter 4.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\A-Converter_1.0SR1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\A123 Flash to AVI WMV DVD MPEG Converter 5.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Aare_MP3_ Sound_Recorder_3.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Accurate Printer Monitor 4.0.2 Build 507.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Advanced_ System_Cleaner_1.8.0_[KeyGen].zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Advox_Omn igate_6_-_SMS_Server_6.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Agile Video Splitter 3.3.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Alytrk_1. 2.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Angel Writer 3.2 Build 400.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Antivir.P e.Premium.Hbedv.Key.Lizenz.6.30.Deutsch.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Aquanox_1 12_to_114_English_patch.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\ArcSoft Panorama Maker 4.1.9.30.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Ashampoo AntiSpyWare 2.05.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Ask Oscar 1.1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\ASP 2 VB Converter 1.00.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Audiobaba _1.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Avex Video Converter Platinum 4 build 02.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\AVG.Anti-Virus.v7.0.338.With.Keygen.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\BaSoMail 1.24.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\BookmarkR eviewer_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Boris_Con tinuum_Complete_3.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\CalcuWage _2.61.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Call_Xent ra_1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Cellulate _1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Check Disk and Format Disk Component 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Click2Sig n_1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\ClipBooke r_2.1_[Serial].zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\ConQuery 1.7.3.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Crawler 3D Fireplace Screensaver 4.2.5.63.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Crystal_M etronome_1.4.5_(Key).zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\CyberLink _PowerDirector_Premium_5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Cyclope Employee Surveillance Solution 4.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\DBDiff for Oracle 3.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Digital Hamster 1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\DirectSBA _1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Downloads _in_Tab_0.0.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Dracula_T wins_demo.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\DripDrop_ 1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\DTMF_Dial _1.0.0.14.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Dynamic Noise Reduction.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Easy SpeakerPhone 1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Empire State Deco 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\EraseDrop _1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\EZNote_1. 0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Far_Cry_H ighcal_mod.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Fast Multimedia MP3 Converter 2.00.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\FLV Player 2008 1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Fortibus_ CMS_4.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Free Notes 3.02 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\G6 AutoZip 0.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Get Keywords 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Godsw iPhone Converter 2.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Great Artist - Nudes 1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\GuitarTM 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Gypsee_PR O_1.9.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Hello, World! 1.8.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\HID.net 0.1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\High--Low_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Instan-t_Enterprise_Messenger_Server_4.6.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Kernel_Wo rd_4.03_Cracked.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Labels2Ma il_1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Large Pores Remedies 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\LizardWor ks_Hot_Air_Balloons_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\MacLocksm ith_2.4.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Mail Password Recovery Key 8.0 build 2514.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Maven Wizard 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Message_S erver_Communication_Suite_6.2.0.0_Serial.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\MIDI to WAV Converter 6.0 Build 50.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Mild Winter 3D Screensaver 1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Model_Col lector_1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Mp3_Tag_A ssistant_Professional_2.85_build_201_(With_Crack). zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\My Faster PC 4.0.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\MyUninsta ller 1.39.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\NCN_Calcu lator_1.0.1014.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Neoconver t DVD To HTC Touch HD 4.0.0.1087.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Network Clipboard 0.1.49.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\NOD32.v2. 50.16.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\notGNU 2.11.7.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\NT Meter 1.42.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Octopus_M icro_Finance_Suite_1.0.13a.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Playtoniu m_Jigsaw_-_Atlantic_Lighthouses_1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\PNGOUTWin 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Pop-Down 2.0.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Portable. Kaspersky.Anti-Virus.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Porto_Ale gre_Cams_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Power_Aud io_CD_Grabber_1.00.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\PrintStat ion 2.04 D.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\ProShow Standard 3.0.1967 Serial.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Quick Resolution Changer 0.1.0.25.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Registrar for the Command Line 2.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\RendClk_1 .0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Resolve for BagleDl-AA 1.07.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Robosoft_ 3.0.531_(With_Crack).zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\SaveIt_3. zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Securiboo k_1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Sequencer _1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Smart_Rem ote_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Smoker's Calc 1.10.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\SMS XL 1.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Spyfighte r_Cleaner_Pro_3.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\SQL_DB_Va lidator_1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\StarTap_( CE_Handheld)_4.92.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Star_EZ_I nventory_1.12.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Stock Alert 1.0.0.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Ston3D Web Player 1.6.0.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Supervers ion Portuguese PalmOS 2.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\SWAMP COOLER MAINTENANCE & REPAIR 4.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\TagUtil 0.5.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Tanbee PSP Converter Lite 2.8.32.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Techno_In ventory_2.0.0.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\The_Free_ Dictionary_1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Tiny_Drag on_screen_saver_1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\ToCA_Race _Driver_2_The_Ultimate_Racing_Simulator_multiplaye r_demo.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Total Game Control 3.5.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\TrayDay 7.02 [Key].zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Unreal_To urnament_2003_-_Twenty-three-ninety_B1_CTF_map.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Usability Expo 4.1.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\USB_Shado w_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Viewfolde rsize 5.00.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Waterfall _Beauty_Screen_Saver_1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Western Digital Icon Pack.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\WinEdit ProPack 2001a.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\WinSell_P ro_2.2.828.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\m\shared\Xito Application Manager 1.0.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Users\Hector\AppData\Roaming\drivers\winupgro.e xe (Trojan.Agent) -> Quarantined and deleted successfully.
Responder Con Cita
  post #14  
Antiguo 05/11/09, 23:20:35
Usuario
 
Registrado: dic 2008
Ubicación: valladolid
Mensajes: 18
Re: Beagle: utilizo combofix?

Por lo que se ve, parece que se ha eliminado. De todos modos, me he descargado y grabado la iso del drweb livecd, por si las moscas.

Tengo que hacer algo mas ahora?
Responder Con Cita
  post #15  
Antiguo 05/11/09, 23:27:18
Avatar de GuillermoTell
Moderador Gral.
 
Registrado: abr 2006
Ubicación: Colombia
Mensajes: 7.912
Articulo Re: Beagle: utilizo combofix?

Hola rebel69, lo que se debe hacer para erradicar esa infección que es de las que más archivos infecta es arrancar desde el Live CD y ejecutarlo como esta indicado en ese enlace y cuano termine de desinfectar el equipo reinicias y realizas un escaneo completo de tu maquina en modo seguro con el malwarebytes para sacar cualquier resto que haya quedado.

Por cierto el escaneo con el Live CD puede ser algo demorado dependiendo de la cantidad de archivos y la cantidad de memoria RAM de tu PC.

Saludos.

ForoSpyware lo mantenemos voluntarios que tenemos nuestros trabajos y obligaciones fuera, por lo que no estamos 24/7, a lo que te pedimos paciencia en el análisis y respuesta de tu caso.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Responder Con Cita
  post #16  
Antiguo 06/11/09, 06:48:10
Usuario
 
Registrado: dic 2008
Ubicación: valladolid
Mensajes: 18
Re: Beagle: utilizo combofix?

Ya he hecho lo del livecd, pero el malwarebytes no puedo ejecutarlo en modo a prueba de errores, me da un error :
Run-time error "481":
Invalid picture


Qué hago? Si lo inicio en modo normal se extenderá la infección otra vez?
Responder Con Cita
  post #17  
Antiguo 06/11/09, 08:03:37
Usuario
 
Registrado: dic 2008
Ubicación: valladolid
Mensajes: 18
Re: Beagle: utilizo combofix?

He reiniciado en modo normal, y al intentar pasar el antimalwarebytes, no me ha dejado, se ve que el virus sigue ahi, y ha encontrado el programa. Vuelvo a arrancar desde el liveCD, y a ver que pasa. Si asi no funciona, pasaré el Avira.

Por cierto, hay mas posibilidades de eliminar el virus si uno cree haberse infectado y pasa el antimalwarebytes antes de reiniciar una sola vez? Supongo que al reiniciar se activan mas "funciones malvadas" del virus, lo digo xq el fallo en el antivirus me lo dió despues de reiniciar. Podria haberme evitado tantos problemas haciendo un analisis preventivo?
Responder Con Cita
  post #18  
Antiguo 06/11/09, 10:32:36
Avatar de GuillermoTell
Moderador Gral.
 
Registrado: abr 2006
Ubicación: Colombia
Mensajes: 7.912
Idea Re: Beagle: utilizo combofix?

Por favor realiza el siguiente procedimiento en modo normal y al pie de la letra:


Paso 1

Descarga RKill by Grinler del siguiente enlace: Download Link # 1.
* Guárdelo en su escritorio.
* Haga doble clic en el icono del escritorio RKill.
Si está utilizando Vista, haga clic derecho y ejecutar como Administrador!
* Una pantalla en negro se iluminará brevemente en lo que indica una ejecución exitosa.
* Si esto no ocurre por favor elimine la aplicación y descarguela nuevamente desde el enlace de descarga # 2.
* Continuar el proceso hasta que la herramienta se ejecute.
* Si la herramienta no se ejecuta desde cualquiera de los enlaces informar al respecto.

Paso 2
Ejecuta Malwarebytes y elimina las infecciones que encuentre e instala un Antivirus con soporte para 64 bit que te permita realizar un escaneo completo del equipo y terminar de sacar los restos de la infección.

El Avast tiene soporte para 64 Bit y luego de instalado puedes lanzar un escaneo completo del sistema antes de que arranque Windows para facilitar la desinfección y recuerda que si tienes problemas para ejecutar algún programa antes realizas el paso 1 para detener los procesos malware.

El Eset Online Scaner te desinfecta los archivos que detecte con malware y puede usarse ene ste caso.

Saludos.

ForoSpyware lo mantenemos voluntarios que tenemos nuestros trabajos y obligaciones fuera, por lo que no estamos 24/7, a lo que te pedimos paciencia en el análisis y respuesta de tu caso.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Responder Con Cita
  post #19  
Antiguo 06/11/09, 20:07:49
Usuario
 
Registrado: dic 2008
Ubicación: valladolid
Mensajes: 18
Re: Beagle: utilizo combofix?

No sé si funciona el Rkill. Aparece una ventana de MS-DOS en la que pone:

Terminating known malware processes.
Please be patient.

Y luego se cierra. Y sigue sin dejarme instalar el Malwarebytes. Tiene solucion?
Responder Con Cita
Respuesta

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are activado
Refbacks are activado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
CKVO, ComboFix, dudas...(Solucionado) Dragnar. Temas Solucionados 8 10/10/08 02:31:56
No conecta internet, ya le pase el combofix (Formateo) faceya Temas Solucionados 6 16/08/08 19:16:48
no he podido remover search-daily, dejo Log de hjt y Log de combofix, por favor neolink18 Foro Oficial de HijackThis en español 3 04/01/08 17:27:57




Todas las horas son GMT -4. La hora es 05:37:30.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31