• Registrarse
  • Iniciar sesión


  • Resultados 1 al 4 de 4

    Virus eliminado?....y que mas puedo hacer?

    Resumen del tema: Virus eliminado?....y que mas puedo hacer? - Amigos, les comento que detecté algunas infecciones en el PC y parece ke ya las eliminé, aunque no estoy seguro si ya completamente limpio... Explico los pasos realizados y sus reportes: 1º Reporte de scaneo ...

      
    1. #1
      Usuario Avatar de bartolotomasolo
      Registrado
      feb 2009
      Ubicación
      Temuco, Chile
      Mensajes
      21

      Virus eliminado?....y que mas puedo hacer?

      Amigos, les comento que detecté algunas infecciones en el PC y parece ke ya las eliminé, aunque no estoy seguro si ya completamente limpio...

      Explico los pasos realizados y sus reportes:

      1º Reporte de scaneo con AVIRA en modo normal:

      Avira AntiVir Personal
      Report file date: Sábado, 24 de Septiembre de 2011 19:58

      Scanning for 3412251 virus strains and unwanted programs.

      The program is running as an unrestricted full version.
      Online services are available:

      Licensee : Avira AntiVir Personal - Free Antivirus
      Serial number : 0000149996-ADJIE-0000001
      Platform : Windows XP
      Windows version : (Service Pack 3) [5.1.2600]
      Boot mode : Normally booted
      Username : SYSTEM
      Computer name : VIVIANA

      Version information:
      BUILD.DAT : 10.2.0.700 35934 Bytes 21/07/2011 17:12:00
      AVSCAN.EXE : 10.3.0.7 484008 Bytes 28/06/2011 1411
      AVSCAN.DLL : 10.0.5.0 47464 Bytes 28/06/2011 1411
      LUKE.DLL : 10.3.0.5 45416 Bytes 28/06/2011 1412
      LUKERES.DLL : 10.0.0.1 12648 Bytes 11/02/2010 03:40:49
      AVSCPLR.DLL : 10.3.0.7 119656 Bytes 28/06/2011 1412
      AVREG.DLL : 10.3.0.9 88833 Bytes 13/07/2011 2112
      VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 02:13:07
      VBASE001.VDF : 7.11.0.0 13342208 Bytes 14/12/2010 13:49:56
      VBASE002.VDF : 7.11.3.0 1950720 Bytes 09/02/2011 00:45:56
      VBASE003.VDF : 7.11.5.225 1980416 Bytes 07/04/2011 22:14:57
      VBASE004.VDF : 7.11.8.178 2354176 Bytes 31/05/2011 00:39:58
      VBASE005.VDF : 7.11.10.251 1788416 Bytes 07/07/2011 15:45:14
      VBASE006.VDF : 7.11.13.60 6411776 Bytes 16/08/2011 13:35:13
      VBASE007.VDF : 7.11.13.61 2048 Bytes 16/08/2011 13:35:13
      VBASE008.VDF : 7.11.13.62 2048 Bytes 16/08/2011 13:35:13
      VBASE009.VDF : 7.11.13.63 2048 Bytes 16/08/2011 13:35:13
      VBASE010.VDF : 7.11.13.64 2048 Bytes 16/08/2011 13:35:13
      VBASE011.VDF : 7.11.13.65 2048 Bytes 16/08/2011 13:35:14
      VBASE012.VDF : 7.11.13.66 2048 Bytes 16/08/2011 13:35:14
      VBASE013.VDF : 7.11.13.95 166400 Bytes 17/08/2011 13:35:16
      VBASE014.VDF : 7.11.13.125 209920 Bytes 18/08/2011 02:09:17
      VBASE015.VDF : 7.11.13.157 184832 Bytes 22/08/2011 02:18:21
      VBASE016.VDF : 7.11.13.201 128000 Bytes 24/08/2011 00:34:16
      VBASE017.VDF : 7.11.13.234 160768 Bytes 25/08/2011 00:34:18
      VBASE018.VDF : 7.11.14.16 141312 Bytes 30/08/2011 02:34:08
      VBASE019.VDF : 7.11.14.48 133120 Bytes 31/08/2011 02:34:12
      VBASE020.VDF : 7.11.14.78 156160 Bytes 02/09/2011 02:21:37
      VBASE021.VDF : 7.11.14.109 126976 Bytes 06/09/2011 01:19:37
      VBASE022.VDF : 7.11.14.137 131584 Bytes 08/09/2011 01:36:49
      VBASE023.VDF : 7.11.14.166 196096 Bytes 12/09/2011 22:38:27
      VBASE024.VDF : 7.11.14.193 184832 Bytes 14/09/2011 22:38:30
      VBASE025.VDF : 7.11.14.215 125952 Bytes 16/09/2011 22:38:31
      VBASE026.VDF : 7.11.14.239 231936 Bytes 20/09/2011 02:27:47
      VBASE027.VDF : 7.11.15.22 203776 Bytes 23/09/2011 23:48:17
      VBASE028.VDF : 7.11.15.23 2048 Bytes 23/09/2011 23:48:18
      VBASE029.VDF : 7.11.15.24 2048 Bytes 23/09/2011 23:48:18
      VBASE030.VDF : 7.11.15.25 2048 Bytes 23/09/2011 23:48:18
      VBASE031.VDF : 7.11.15.29 35840 Bytes 23/09/2011 23:48:19
      Engineversion : 8.2.6.68
      AEVDF.DLL : 8.1.2.1 106868 Bytes 20/12/2010 02:13:09
      AESCRIPT.DLL : 8.1.3.76 1626490 Bytes 26/08/2011 00:39:18
      AESCN.DLL : 8.1.7.2 127349 Bytes 20/12/2010 02:13:09
      AESBX.DLL : 8.2.1.34 323957 Bytes 18/06/2011 00:42:00
      AERDL.DLL : 8.1.9.15 639348 Bytes 10/09/2011 01:37:09
      AEPACK.DLL : 8.2.10.11 684408 Bytes 24/09/2011 23:48:29
      AEOFFICE.DLL : 8.1.2.15 201083 Bytes 19/09/2011 22:38:52
      AEHEUR.DLL : 8.1.2.172 3711352 Bytes 24/09/2011 23:48:27
      AEHELP.DLL : 8.1.17.7 254327 Bytes 30/07/2011 02:09:39
      AEGEN.DLL : 8.1.5.9 401780 Bytes 26/08/2011 00:36:40
      AEEMU.DLL : 8.1.3.0 393589 Bytes 20/12/2010 02:13:09
      AECORE.DLL : 8.1.23.0 196983 Bytes 26/08/2011 00:36:28
      AEBB.DLL : 8.1.1.0 53618 Bytes 20/12/2010 02:13:09
      AVWINLL.DLL : 10.0.0.0 19304 Bytes 30/11/2010 22:13:17
      AVPREF.DLL : 10.0.3.2 44904 Bytes 28/06/2011 1411
      AVREP.DLL : 10.0.0.10 174120 Bytes 18/05/2011 22:14:58
      AVARKT.DLL : 10.0.26.1 255336 Bytes 28/06/2011 1411
      AVEVTLOG.DLL : 10.0.0.9 203112 Bytes 28/06/2011 1411
      SQLITE3.DLL : 3.6.19.0 355688 Bytes 17/06/2010 18:27:22
      AVSMTP.DLL : 10.0.0.17 63848 Bytes 30/11/2010 22:13:17
      NETNT.DLL : 10.0.0.0 11624 Bytes 17/06/2010 18:27:21
      RCIMAGE.DLL : 10.0.0.35 2589544 Bytes 28/06/2011 1410
      RCTEXT.DLL : 10.0.64.0 97640 Bytes 28/06/2011 1410

      Configuration settings for the scan:
      Jobname.............................: Complete system scan
      Configuration file..................: c:\archivos de programa\avira\antivir desktop\sysscan.avp
      Logging.............................: Default
      Primary action......................: interactive
      Secondary action....................: ignore
      Scan master boot sector.............: on
      Scan boot sector....................: on
      Boot sectors........................: C:,
      Process scan........................: on
      Extended process scan...............: on
      Scan registry.......................: on
      Search for rootkits.................: on
      Integrity checking of system files..: off
      Scan all files......................: All files
      Scan archives.......................: on
      Recursion depth.....................: 20
      Smart extensions....................: on
      Macro heuristic.....................: on
      File heuristic......................: Advanced
      Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+SPR,

      Start of the scan: Sábado, 24 de Septiembre de 2011 19:58

      Starting search for hidden objects.

      The scan of running processes will be started
      Scan process 'iexplore.exe' - '104' Module(s) have been scanned
      Scan process 'avscan.exe' - '69' Module(s) have been scanned
      Scan process 'msdtc.exe' - '42' Module(s) have been scanned
      Scan process 'dllhost.exe' - '62' Module(s) have been scanned
      Scan process 'dllhost.exe' - '47' Module(s) have been scanned
      Scan process 'vssvc.exe' - '50' Module(s) have been scanned
      Scan process 'avcenter.exe' - '65' Module(s) have been scanned
      Scan process 'CCleaner.exe' - '39' Module(s) have been scanned
      Scan process 'iexplore.exe' - '180' Module(s) have been scanned
      Scan process 'iexplore.exe' - '107' Module(s) have been scanned
      Scan process 'iexplore.exe' - '75' Module(s) have been scanned
      Scan process 'ONENOTEM.EXE' - '22' Module(s) have been scanned
      Scan process 'AcerVCM.exe' - '34' Module(s) have been scanned
      Scan process 'alg.exe' - '35' Module(s) have been scanned
      Scan process 'InstallIQUpdater.exe' - '49' Module(s) have been scanned
      Scan process 'Ares.exe' - '52' Module(s) have been scanned
      Scan process 'Banda Ancha Movil.exe' - '104' Module(s) have been scanned
      Scan process 'NPSAgent.exe' - '28' Module(s) have been scanned
      Scan process 'ctfmon.exe' - '27' Module(s) have been scanned
      Scan process 'avgnt.exe' - '53' Module(s) have been scanned
      Scan process 'PLFSetI.exe' - '34' Module(s) have been scanned
      Scan process 'PLFSetL.exe' - '20' Module(s) have been scanned
      Scan process 'LManager.exe' - '46' Module(s) have been scanned
      Scan process 'mwlDaemon.exe' - '52' Module(s) have been scanned
      Scan process 'EgisUpdate.exe' - '34' Module(s) have been scanned
      Scan process 'igfxsrvc.exe' - '25' Module(s) have been scanned
      Scan process 'RTHDCPL.EXE' - '39' Module(s) have been scanned
      Scan process 'igfxpers.exe' - '25' Module(s) have been scanned
      Scan process 'hkcmd.exe' - '28' Module(s) have been scanned
      Scan process 'iaanotif.exe' - '41' Module(s) have been scanned
      Scan process 'Explorer.EXE' - '135' Module(s) have been scanned
      Scan process 'UpdaterService.exe' - '28' Module(s) have been scanned
      Scan process 'wdfmgr.exe' - '17' Module(s) have been scanned
      Scan process 'svchost.exe' - '44' Module(s) have been scanned
      Scan process 'SeaPort.exe' - '45' Module(s) have been scanned
      Scan process 'RS_Service.exe' - '17' Module(s) have been scanned
      Scan process 'MWLService.exe' - '35' Module(s) have been scanned
      Scan process 'IAANTMon.exe' - '39' Module(s) have been scanned
      Scan process 'HWDeviceService.exe' - '25' Module(s) have been scanned
      Scan process 'FsUsbExService.Exe' - '23' Module(s) have been scanned
      Scan process 'ouc.exe' - '26' Module(s) have been scanned
      Scan process 'avshadow.exe' - '28' Module(s) have been scanned
      Scan process 'avguard.exe' - '56' Module(s) have been scanned
      Scan process 'svchost.exe' - '36' Module(s) have been scanned
      Scan process 'sched.exe' - '46' Module(s) have been scanned
      Scan process 'spoolsv.exe' - '60' Module(s) have been scanned
      Scan process 'svchost.exe' - '39' Module(s) have been scanned
      Scan process 'svchost.exe' - '34' Module(s) have been scanned
      Scan process 'svchost.exe' - '169' Module(s) have been scanned
      Scan process 'svchost.exe' - '41' Module(s) have been scanned
      Scan process 'svchost.exe' - '53' Module(s) have been scanned
      Scan process 'lsass.exe' - '60' Module(s) have been scanned
      Scan process 'services.exe' - '29' Module(s) have been scanned
      Scan process 'winlogon.exe' - '68' Module(s) have been scanned
      Scan process 'csrss.exe' - '16' Module(s) have been scanned
      Scan process 'smss.exe' - '2' Module(s) have been scanned

      Starting master boot sector scan:
      Master boot sector HD0
      [INFO] No virus was found!
      Master boot sector HD1
      [INFO] No virus was found!

      Start scanning boot sectors:
      Boot sector 'C:\'
      [INFO] No virus was found!

      Starting to scan executable files (registry).
      The registry was scanned ( '526' files ).


      Starting the file scan:

      Begin scan in 'C:\' <ACER>
      C:\System Volume Information\_restore{D7BB32A2-417A-4A7C-B85A-140EBE08CEEF}\RP64\A0043907.exe
      [0] Archive type: ZIP SFX (self extracting)
      --> mxone/archivos_intalacion/mxone.exe
      [DETECTION] Is the TR/Agent.245472 Trojan
      --> mxone/archivos_intalacion/mxoneguardian.exe
      [DETECTION] Contains recognition pattern of the DR/Agent.dusj dropper
      --> mxone/archivos_intalacion/mxoneinstalador.exe
      [DETECTION] Is the TR/VB.149504 Trojan
      --> mxone/Instalador Mx One.exe
      [DETECTION] Contains recognition pattern of the KIT/Joiner.HS construction kit
      C:\System Volume Information\_restore{D7BB32A2-417A-4A7C-B85A-140EBE08CEEF}\RP68\A0044591.exe
      [0] Archive type: ZIP SFX (self extracting)
      --> mxone/archivos_intalacion/mxone.exe
      [DETECTION] Is the TR/Agent.245472 Trojan
      --> mxone/archivos_intalacion/mxoneguardian.exe
      [DETECTION] Contains recognition pattern of the DR/Agent.dusj dropper
      --> mxone/archivos_intalacion/mxoneinstalador.exe
      [DETECTION] Is the TR/VB.149504 Trojan
      --> mxone/Instalador Mx One.exe
      [DETECTION] Contains recognition pattern of the KIT/Joiner.HS construction kit

      Beginning disinfection:
      C:\System Volume Information\_restore{D7BB32A2-417A-4A7C-B85A-140EBE08CEEF}\RP68\A0044591.exe
      [DETECTION] Contains recognition pattern of the KIT/Joiner.HS construction kit
      [NOTE] The file was moved to the quarantine directory under the name '446a00f7.qua'.
      C:\System Volume Information\_restore{D7BB32A2-417A-4A7C-B85A-140EBE08CEEF}\RP64\A0043907.exe
      [DETECTION] Contains recognition pattern of the KIT/Joiner.HS construction kit
      [NOTE] The file was moved to the quarantine directory under the name '5cfd2f50.qua'.


      End of the scan: Sábado, 24 de Septiembre de 2011 23:46
      Used time: 3:47:41 Hour(s)

      The scan has been done completely.

      6107 Scanned directories
      248368 Files were scanned
      8 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 files were deleted
      0 Viruses and unwanted programs were repaired
      2 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
      248360 Files not concerned
      7349 Archives were scanned
      0 Warnings
      2 Notes
      394462 Objects were scanned with rootkit scan
      0 Hidden objects were found

      ________________________________________________________________

      2º Reporte de Panda Online en modo normal:

      ;***********************************************************************************************************************************************************************************
      ANALYSIS: 2011-09-25 09:55:48
      PROTECTIONS: 1
      MALWARE: 2
      SUSPECTS: 0
      ;***********************************************************************************************************************************************************************************
      PROTECTIONS
      Description Version Active Updated
      ;===================================================================================================================================================================================
      AntiVir Desktop 10.0.1.59 Yes Yes
      ;===================================================================================================================================================================================
      MALWARE
      Id Description Type Active Severity Disinfectable Disinfected Location
      ;===================================================================================================================================================================================
      00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\documents and settings\viviana alejandra\cookies\5dvq1h27.txt
      06209953 BAT/Autorun.JWF Virus/Worm No 1 Yes No c:\documents and settings\viviana alejandra\autorun.inf
      ;===================================================================================================================================================================================
      SUSPECTS
      Sent Location
      ;===================================================================================================================================================================================
      ;===================================================================================================================================================================================
      VULNERABILITIES
      Id Severity Description
      ;===================================================================================================================================================================================
      224951 HIGH MS10-097
      224950 HIGH MS10-096
      ;===================================================================================================================================================================================
      _________________________________________________________________

      3º Descargue el Malwarebyts y realicé escaneo como Administrador en modo a prueba de fallos y luego Ccleaner:

      Malwarebytes' Anti-Malware 1.51.2.1300
      www.malwarebytes.org

      Versión de la Base de Datos: 7795

      Windows 5.1.2600 Service Pack 3 (Safe Mode)
      Internet Explorer 8.0.6001.18702

      25-09-2011 10:52:42
      mbam-log-2011-09-25 (10-52-35).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|E:\|)
      Objetos examinados: 238018
      Tiempo transcurrido: 19 minuto(s), 44 segundo(s)

      Procesos en Memoria Infectados: 0
      Módulos de Memoria Infectados: 0
      Claves del Registro Infectadas: 1
      Valores del Registro Infectados: 0
      Elementos de Datos del Registro Infectados: 0
      Carpetas Infectadas: 0
      Archivos Infectados: 0

      Procesos en Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Claves del Registro Infectadas:
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{36A5A0DB-297E-FDE2-0501-060104070800} (Trojan.Agent) -> No action taken.

      Valores del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Carpetas Infectadas:
      (No se han detectado elementos maliciosos)

      Archivos Infectados:
      (No se han detectado elementos maliciosos)
      _________________________________________________________________

      4º Otro escaneo con Malwarebyts (Administrador: modo a prueba de fallos), después de eliminación de algo...

      Malwarebytes' Anti-Malware 1.51.2.1300
      www.malwarebytes.org

      Versión de la Base de Datos: 7795

      Windows 5.1.2600 Service Pack 3 (Safe Mode)
      Internet Explorer 8.0.6001.18702

      25-09-2011 10:52:47
      mbam-log-2011-09-25 (10-52-47).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|E:\|)
      Objetos examinados: 238018
      Tiempo transcurrido: 19 minuto(s), 44 segundo(s)

      Procesos en Memoria Infectados: 0
      Módulos de Memoria Infectados: 0
      Claves del Registro Infectadas: 1
      Valores del Registro Infectados: 0
      Elementos de Datos del Registro Infectados: 0
      Carpetas Infectadas: 0
      Archivos Infectados: 0

      Procesos en Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Claves del Registro Infectadas:
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{36A5A0DB-297E-FDE2-0501-060104070800} (Trojan.Agent) -> Quarantined and deleted successfully.

      Valores del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Carpetas Infectadas:
      (No se han detectado elementos maliciosos)

      Archivos Infectados:
      (No se han detectado elementos maliciosos)

      _________________________________________________________________

      5º Un tercer escaneo con Malwarebyts (Administrador: modo a prueba de fallos)

      Malwarebytes' Anti-Malware 1.51.2.1300
      www.malwarebytes.org

      Versión de la Base de Datos: 7795

      Windows 5.1.2600 Service Pack 3 (Safe Mode)
      Internet Explorer 8.0.6001.18702

      25-09-2011 11:12:32
      mbam-log-2011-09-25 (11-12-32).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|E:\|)
      Objetos examinados: 238036
      Tiempo transcurrido: 19 minuto(s), 2 segundo(s)

      Procesos en Memoria Infectados: 0
      Módulos de Memoria Infectados: 0
      Claves del Registro Infectadas: 0
      Valores del Registro Infectados: 0
      Elementos de Datos del Registro Infectados: 0
      Carpetas Infectadas: 0
      Archivos Infectados: 0

      Procesos en Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Claves del Registro Infectadas:
      (No se han detectado elementos maliciosos)

      Valores del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Carpetas Infectadas:
      (No se han detectado elementos maliciosos)

      Archivos Infectados:
      (No se han detectado elementos maliciosos)
      _________________________________________________________________

      6º Escaneo con Avira (Administrador: modo a prueba de fallos)

      Avira AntiVir Personal
      Report file date: Domingo, 25 de Septiembre de 2011 11:37

      Scanning for 3412251 virus strains and unwanted programs.

      The program is running as an unrestricted full version.
      Online services are available:

      Licensee : Avira AntiVir Personal - Free Antivirus
      Serial number : 0000149996-ADJIE-0000001
      Platform : Windows XP
      Windows version : (Service Pack 3) [5.1.2600]
      Boot mode : Safe mode
      Username : Administrador
      Computer name : VIVIANA

      Version information:
      BUILD.DAT : 10.2.0.700 35934 Bytes 21/07/2011 17:12:00
      AVSCAN.EXE : 10.3.0.7 484008 Bytes 28/06/2011 1411
      AVSCAN.DLL : 10.0.5.0 47464 Bytes 28/06/2011 1411
      LUKE.DLL : 10.3.0.5 45416 Bytes 28/06/2011 1412
      LUKERES.DLL : 10.0.0.1 12648 Bytes 11/02/2010 03:40:49
      AVSCPLR.DLL : 10.3.0.7 119656 Bytes 28/06/2011 1412
      AVREG.DLL : 10.3.0.9 88833 Bytes 13/07/2011 2112
      VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 02:13:07
      VBASE001.VDF : 7.11.0.0 13342208 Bytes 14/12/2010 13:49:56
      VBASE002.VDF : 7.11.3.0 1950720 Bytes 09/02/2011 00:45:56
      VBASE003.VDF : 7.11.5.225 1980416 Bytes 07/04/2011 22:14:57
      VBASE004.VDF : 7.11.8.178 2354176 Bytes 31/05/2011 00:39:58
      VBASE005.VDF : 7.11.10.251 1788416 Bytes 07/07/2011 15:45:14
      VBASE006.VDF : 7.11.13.60 6411776 Bytes 16/08/2011 13:35:13
      VBASE007.VDF : 7.11.13.61 2048 Bytes 16/08/2011 13:35:13
      VBASE008.VDF : 7.11.13.62 2048 Bytes 16/08/2011 13:35:13
      VBASE009.VDF : 7.11.13.63 2048 Bytes 16/08/2011 13:35:13
      VBASE010.VDF : 7.11.13.64 2048 Bytes 16/08/2011 13:35:13
      VBASE011.VDF : 7.11.13.65 2048 Bytes 16/08/2011 13:35:14
      VBASE012.VDF : 7.11.13.66 2048 Bytes 16/08/2011 13:35:14
      VBASE013.VDF : 7.11.13.95 166400 Bytes 17/08/2011 13:35:16
      VBASE014.VDF : 7.11.13.125 209920 Bytes 18/08/2011 02:09:17
      VBASE015.VDF : 7.11.13.157 184832 Bytes 22/08/2011 02:18:21
      VBASE016.VDF : 7.11.13.201 128000 Bytes 24/08/2011 00:34:16
      VBASE017.VDF : 7.11.13.234 160768 Bytes 25/08/2011 00:34:18
      VBASE018.VDF : 7.11.14.16 141312 Bytes 30/08/2011 02:34:08
      VBASE019.VDF : 7.11.14.48 133120 Bytes 31/08/2011 02:34:12
      VBASE020.VDF : 7.11.14.78 156160 Bytes 02/09/2011 02:21:37
      VBASE021.VDF : 7.11.14.109 126976 Bytes 06/09/2011 01:19:37
      VBASE022.VDF : 7.11.14.137 131584 Bytes 08/09/2011 01:36:49
      VBASE023.VDF : 7.11.14.166 196096 Bytes 12/09/2011 22:38:27
      VBASE024.VDF : 7.11.14.193 184832 Bytes 14/09/2011 22:38:30
      VBASE025.VDF : 7.11.14.215 125952 Bytes 16/09/2011 22:38:31
      VBASE026.VDF : 7.11.14.239 231936 Bytes 20/09/2011 02:27:47
      VBASE027.VDF : 7.11.15.22 203776 Bytes 23/09/2011 23:48:17
      VBASE028.VDF : 7.11.15.23 2048 Bytes 23/09/2011 23:48:18
      VBASE029.VDF : 7.11.15.24 2048 Bytes 23/09/2011 23:48:18
      VBASE030.VDF : 7.11.15.25 2048 Bytes 23/09/2011 23:48:18
      VBASE031.VDF : 7.11.15.29 35840 Bytes 23/09/2011 23:48:19
      Engineversion : 8.2.6.68
      AEVDF.DLL : 8.1.2.1 106868 Bytes 20/12/2010 02:13:09
      AESCRIPT.DLL : 8.1.3.76 1626490 Bytes 26/08/2011 00:39:18
      AESCN.DLL : 8.1.7.2 127349 Bytes 20/12/2010 02:13:09
      AESBX.DLL : 8.2.1.34 323957 Bytes 18/06/2011 00:42:00
      AERDL.DLL : 8.1.9.15 639348 Bytes 10/09/2011 01:37:09
      AEPACK.DLL : 8.2.10.11 684408 Bytes 24/09/2011 23:48:29
      AEOFFICE.DLL : 8.1.2.15 201083 Bytes 19/09/2011 22:38:52
      AEHEUR.DLL : 8.1.2.172 3711352 Bytes 24/09/2011 23:48:27
      AEHELP.DLL : 8.1.17.7 254327 Bytes 30/07/2011 02:09:39
      AEGEN.DLL : 8.1.5.9 401780 Bytes 26/08/2011 00:36:40
      AEEMU.DLL : 8.1.3.0 393589 Bytes 20/12/2010 02:13:09
      AECORE.DLL : 8.1.23.0 196983 Bytes 26/08/2011 00:36:28
      AEBB.DLL : 8.1.1.0 53618 Bytes 20/12/2010 02:13:09
      AVWINLL.DLL : 10.0.0.0 19304 Bytes 30/11/2010 22:13:17
      AVPREF.DLL : 10.0.3.2 44904 Bytes 28/06/2011 1411
      AVREP.DLL : 10.0.0.10 174120 Bytes 18/05/2011 22:14:58
      AVARKT.DLL : 10.0.26.1 255336 Bytes 28/06/2011 1411
      AVEVTLOG.DLL : 10.0.0.9 203112 Bytes 28/06/2011 1411
      SQLITE3.DLL : 3.6.19.0 355688 Bytes 17/06/2010 18:27:22
      AVSMTP.DLL : 10.0.0.17 63848 Bytes 30/11/2010 22:13:17
      NETNT.DLL : 10.0.0.0 11624 Bytes 17/06/2010 18:27:21
      RCIMAGE.DLL : 10.0.0.35 2589544 Bytes 28/06/2011 1410
      RCTEXT.DLL : 10.0.64.0 97640 Bytes 28/06/2011 1410

      Configuration settings for the scan:
      Jobname.............................: Complete system scan
      Configuration file..................: C:\Archivos de programa\Avira\AntiVir Desktop\sysscan.avp
      Logging.............................: Default
      Primary action......................: interactive
      Secondary action....................: ignore
      Scan master boot sector.............: on
      Scan boot sector....................: on
      Boot sectors........................: C:,
      Process scan........................: on
      Extended process scan...............: on
      Scan registry.......................: on
      Search for rootkits.................: on
      Integrity checking of system files..: off
      Scan all files......................: All files
      Scan archives.......................: on
      Recursion depth.....................: 20
      Smart extensions....................: on
      Macro heuristic.....................: on
      File heuristic......................: Advanced
      Deviating risk categories...........: +APPL,+GAME,+JOKE,+PCK,+SPR,

      Start of the scan: Domingo, 25 de Septiembre de 2011 11:37

      Starting search for hidden objects.
      The driver could not be initialized.

      The scan of running processes will be started
      Scan process 'avscan.exe' - '62' Module(s) have been scanned
      Scan process 'avcenter.exe' - '64' Module(s) have been scanned
      Scan process 'Explorer.EXE' - '85' Module(s) have been scanned
      Scan process 'svchost.exe' - '68' Module(s) have been scanned
      Scan process 'svchost.exe' - '40' Module(s) have been scanned
      Scan process 'svchost.exe' - '34' Module(s) have been scanned
      Scan process 'lsass.exe' - '51' Module(s) have been scanned
      Scan process 'services.exe' - '29' Module(s) have been scanned
      Scan process 'winlogon.exe' - '60' Module(s) have been scanned
      Scan process 'csrss.exe' - '14' Module(s) have been scanned
      Scan process 'smss.exe' - '2' Module(s) have been scanned

      Starting master boot sector scan:
      Master boot sector HD0
      [INFO] No virus was found!
      Master boot sector HD1
      [INFO] No virus was found!

      Start scanning boot sectors:
      Boot sector 'C:\'
      [INFO] No virus was found!

      Starting to scan executable files (registry).
      The registry was scanned ( '521' files ).


      Starting the file scan:

      Begin scan in 'C:\' <ACER>


      End of the scan: Domingo, 25 de Septiembre de 2011 12:23
      Used time: 45:43 Minute(s)

      The scan has been done completely.

      6114 Scanned directories
      232925 Files were scanned
      0 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 files were deleted
      0 Viruses and unwanted programs were repaired
      0 Files were moved to quarantine
      0 Files were renamed
      0 Files cannot be scanned
      232925 Files not concerned
      7331 Archives were scanned
      0 Warnings
      0 Notes
      _________________________________________________________________

      7º Último escaneo con Malwarebyts (Usuario: modo a prueba de fallos) y repaso con Ccleaner:

      Malwarebytes' Anti-Malware 1.51.2.1300
      www.malwarebytes.org

      Versión de la Base de Datos: 7795

      Windows 5.1.2600 Service Pack 3 (Safe Mode)
      Internet Explorer 8.0.6001.18702

      25-09-2011 14:13:27
      mbam-log-2011-09-25 (14-13-26).txt

      Tipos de Análisis: Análisis Completo (C:\|D:\|E:\|)
      Objetos examinados: 237666
      Tiempo transcurrido: 19 minuto(s), 42 segundo(s)

      Procesos en Memoria Infectados: 0
      Módulos de Memoria Infectados: 0
      Claves del Registro Infectadas: 0
      Valores del Registro Infectados: 0
      Elementos de Datos del Registro Infectados: 0
      Carpetas Infectadas: 0
      Archivos Infectados: 0

      Procesos en Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Módulos de Memoria Infectados:
      (No se han detectado elementos maliciosos)

      Claves del Registro Infectadas:
      (No se han detectado elementos maliciosos)

      Valores del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Elementos de Datos del Registro Infectados:
      (No se han detectado elementos maliciosos)

      Carpetas Infectadas:
      (No se han detectado elementos maliciosos)

      Archivos Infectados:
      (No se han detectado elementos maliciosos)
      _________________________________________________________________


      Amigos, ustedes como entendidos en la materia me pueden indicar si ya esta mejorado mi PC o debo realizar alguna tarea adicional...

      Espero sus comentarios y gracias...

    2. #2
      Ex-Colaborador Avatar de RevesdeLiberte
      Registrado
      feb 2010
      Ubicación
      México
      Mensajes
      7.905

      Re: Virus eliminado?....y que mas puedo hacer?

      Buenas.


      Desactiva temporalmente Avira AntiVir. DescargaUSBFix al escritorio
      • En caso de que tengas dispositivos extraibles conectarlos.
      • Haces doble clic sobre el archivo USBFix.exe para ejecutarlo, en Windows Vista & 7 clic derecho y Ejecutar como administrador.
      • Pulsas el boton del programa Supresion, cuando finalice el analisis se abrirá un Bloc de notas con el reporte.




      Pegas el reporte para analizarlo y me comentas que problemas tienes en el ordenador.

    3. #3
      Usuario Avatar de bartolotomasolo
      Registrado
      feb 2009
      Ubicación
      Temuco, Chile
      Mensajes
      21

      Re: Virus eliminado?....y que mas puedo hacer?

      Cita Originalmente publicado por RevesdeLiberte Ver Mensaje
      Buenas.


      Desactiva temporalmente Avira AntiVir. DescargaUSBFix al escritorio
      • En caso de que tengas dispositivos extraibles conectarlos.
      • Haces doble clic sobre el archivo USBFix.exe para ejecutarlo, en Windows Vista & 7 clic derecho y Ejecutar como administrador.
      • Pulsas el boton del programa Supresion, cuando finalice el analisis se abrirá un Bloc de notas con el reporte.




      Pegas el reporte para analizarlo y me comentas que problemas tienes en el ordenador.
      Ya realice la limpieza en Administrador: modo a prueba de fallos:

      ############################## | UsbFix 7.060 | [Buscar]

      Usuario: Administrador (Administrador) # VIVIANA
      Actualizado el 22/09/2011 por El Desaparecido
      Comenzó a 15:13:28 | 25/09/2011

      Sitio web: http://eldesaparecido.com
      Archivo sospechoso ? : http://eldesaparecido.com/support.php
      Contacto: [email protected]

      PC: Acer (Aspire one ) (X86-based PC) # Notebook
      CPU: Intel(R) Atom(TM) CPU N270 @ 1.60GHz (1596)
      RAM -> [ Total : 1014 | Free : 775 ]
      BIOS: InsydeH2O Version V1.25
      BOOT: Fail-safe with network boot

      OS: Microsoft Windows XP Home Edition (5.1.2600 32-Bit) # Service Pack 3
      WB: Windows Internet Explorer 8.0.6001.18702

      SC: Security Center Service [ Enabled ]
      WU: Windows Update Service [ Enabled ]
      FW: Windows FireWall Service [ Enabled ]

      C:\ (%systemdrive%) -> Disco fijo # 139 Gb (110 Mb libre(s) - 79%) [ACER] # NTFS
      D:\ -> CD-ROM
      F:\ -> Disco extraíble # 4 Gb (3 Mb libre(s) - 92%) [VIVIANA CN] # FAT32

      ################## | Procesos Activos |

      C:\WINDOWS\System32\smss.exe (504)
      C:\WINDOWS\system32\winlogon.exe (772)
      C:\WINDOWS\system32\services.exe (816)
      C:\WINDOWS\system32\lsass.exe (828)
      C:\WINDOWS\system32\svchost.exe (976)
      C:\WINDOWS\system32\svchost.exe (1172)
      C:\WINDOWS\Explorer.EXE (1844)
      C:\WINDOWS\system32\winlogon.exe (1380)
      C:\WINDOWS\system32\igfxsrvc.exe (1768)
      C:\UsbFix\UsbFix.exe (364)

      ################## | Archivos # Carpetas infectadas |

      Encontrado ! F:\Recovery.exe*.LNk
      Encontrado ! F:\servicesOO*.lnk
      Encontrado ! F:\HAHAl*.lnK
      Encontrado ! F:\Recovery*.lNK
      Encontrado ! F:\VIF*.lNK
      Encontrado ! F:\VIF.exe*.lNk
      Encontrado ! F:\ACTAS*.lnK
      Encontrado ! F:\Viviana*.Lnk
      Encontrado ! F:\OFICIO REMITE ESPECIES.docx*.lnK
      Encontrado ! F:\CONSTANCIAS CHICAS.docx*.lNk
      Encontrado ! F:\CITACIONES.docx*.lNK
      Encontrado ! F:\CITACIONES FISCALIA.docx*.LnK
      Encontrado ! F:\SetupInstall.exe*.LNK
      Encontrado ! F:\CITACION JUZ.POL.LOCAL.xlsx*.lnk
      Encontrado ! F:\DAÑOS EN COLISION y LESIONES LEVES.docx*.lNK
      Encontrado ! F:\Santiago*.lNK
      Encontrado ! F:\OTROS PARTES*.lnk
      Encontrado ! F:\02_ACTA DE INFORMACION DERECHOS DEL DETENIDO Y APERCIBIMIE~1.doc*.LNK
      Encontrado ! F:\14_ACTA ACCIDENTE DE TRANSITO.doc*.Lnk
      Encontrado ! F:\05_ACTA DE ENTREGA DE DETENIDO POR CIVILES.doc*.Lnk
      Encontrado ! F:\03_ACTA ENTRADA REGISTRO E INCAUTACION 205-206.doc*.LnK
      Encontrado ! F:\01_ACTA DE REGISTRO DE IMPUTADOS.doc*.Lnk
      Encontrado ! F:\ACTA RECEPCION VEHICULO.doc*.LNK
      Encontrado ! F:\tarjeta_embarque.pdf*.LNK
      Encontrado ! F:\OTROS PARTES.exe*.LNK
      Encontrado ! F:\HPPDEVX.DLL.log*.LnK
      Encontrado ! F:\WMPInfo.xml*.lNK
      Encontrado ! F:\17-04-11*.lnk
      Encontrado ! F:\CITACIONES FISCALIAS.docx*.LNk
      Encontrado ! F:\17-04-11.exe*.Lnk
      Encontrado ! F:\ACTAS.exe*.lnk
      Encontrado ! F:\h3ojKiH9lvFefkO0mG6HlXplgLV3LYYJVfdZRr3dtLhEN80DnzEPQXQY2sziakx2axTnS4SA0447SPkbMnv4Qm\S-4-7-01-4639107501-4494491267-104133574-7046\o3mrVQz9rDByh9hfKJ9v01t5z3m0s5hP01.exe
      Encontrado ! D:\AUTORUN.INF
      Encontrado ! D:\autorun.exe
      Encontrado ! F:\autorun.inf
      Encontrado ! F:\h3ojKiH9lvFefkO0mG6HlXplgLV3LYYJVfdZRr3dtLhEN80DnzEPQXQY2sziakx2axTnS4SA0447SPkbMnv4Qm

      ################## | Registro |


      ################## | Mountpoints2 |

      HKCU\.\.\.\.\Explorer\MountPoints2\D
      Shell\AutoRun\Command = D:\AutoRun.exe


      ################## | Listing |

      [16/04/2010 - 16:31:13 | D ] C:\25f8653292a95ab3c9f675f516bd
      [04/04/2010 - 02:45:46 | HD ] C:\ACER
      [25/09/2011 - 11:32:29 | D ] C:\Archivos de programa
      [02/11/2009 - 18:16:35 | A | 0] C:\AUTOEXEC.BAT
      [03/11/2009 - 04:12:43 | D ] C:\Book
      [04/04/2010 - 02:43:26 | RASH | 211] C:\boot.ini
      [14/04/2008 - 08:00:00 | RASH | 4952] C:\Bootfont.bin
      [10/08/2011 - 21:55:06 | SHD ] C:\Config.Msi
      [02/11/2009 - 18:16:35 | A | 0] C:\CONFIG.SYS
      [08/02/2011 - 10:54:19 | A | 8617] C:\debug1214.txt
      [25/09/2011 - 10:27:57 | SHD ] C:\Documents and Settings
      [10/08/2011 - 21:49:58 | D ] C:\i386
      [02/11/2009 - 20:33:32 | D ] C:\Intel
      [02/11/2009 - 18:16:35 | RASH | 0] C:\IO.SYS
      [26/07/2009 - 04:50:52 | A | 2060] C:\MOD01SET0J00P2000X.enc
      [10/09/2008 - 22:20:06 | A | 2508] C:\MOD01WOS02ESP20001.enc
      [02/11/2009 - 18:16:35 | RASH | 0] C:\MSDOS.SYS
      [03/11/2009 - 03:33:57 | RHD ] C:\MSOCache
      [16/07/2011 - 22:49:21 | HD ] C:\MyWinLockerData
      [14/04/2008 - 08:00:00 | RASH | 47564] C:\NTDETECT.COM
      [14/04/2008 - 08:00:00 | RASH | 251168] C:\ntldr
      [04/04/2010 - 02:45:46 | HD ] C:\OEM
      [25/09/2011 - 15:09:46 | ASH | 1598029824] C:\pagefile.sys
      [25/09/2011 - 11:31:03 | SHD ] C:\RECYCLER
      [03/11/2009 - 03:21:48 | A | 2151] C:\RHDSetup.log
      [25/09/2011 - 13:16:55 | SHD ] C:\System Volume Information
      [25/09/2011 - 15:16:02 | D ] C:\UsbFix
      [25/09/2011 - 15:16:03 | A | 3207] C:\UsbFix.txt
      [08/10/2010 - 15:57:16 | D ] C:\VALUEADD
      [06/01/2010 - 00:50:20 | A | 189] C:\Webcam.log
      [25/09/2011 - 15:09:58 | D ] C:\WINDOWS
      [17/11/2010 - 09:37:38 | R | 142336] D:\AutoRun.exe
      [09/10/2008 - 05:12:34 | R | 45] D:\AUTORUN.INF
      [10/01/2011 - 08:18:12 | RD ] D:\Banda Ancha Movil
      [13/06/2010 - 15:27:04 | R | 363246] D:\Startup.ico
      [06/01/2011 - 06:26:10 | R | 1650] D:\SysConfig.dat
      [14/08/2011 - 11:09:32 | RASHD ] F:\17-04-11
      [12/08/2011 - 06:41:44 | RASH | 46844] F:\CITACIONES FISCALIAS.docx
      [22/08/2011 - 11:54:56 | N | 434176] F:\ACTAS.exe
      [14/07/2011 - 09:06:56 | RASHD ] F:\Recovery
      [09/09/2011 - 13:00:36 | RASH | 4161] F:\autorun.inf
      [31/08/2011 - 10:24:14 | RASHD ] F:\VIF
      [31/08/2011 - 10:24:16 | RASH | 434176] F:\VIF.exe
      [15/08/2011 - 05:24:50 | RASHD ] F:\ACTAS
      [26/07/2011 - 16:31:48 | RASHD ] F:\Viviana
      [06/09/2011 - 10:57:54 | RASH | 434176] F:\17-04-11.exe
      [29/07/2011 - 10:11:24 | RASH | 12830] F:\OFICIO REMITE ESPECIES.docx
      [02/09/2011 - 00:04:44 | RASH | 46287] F:\CONSTANCIAS CHICAS.docx
      [12/08/2011 - 03:39:36 | RASH | 92519] F:\CITACIONES.docx
      [12/08/2011 - 03:40:32 | N | 12605] F:\CITACIONES FISCALIA.docx
      [13/08/2011 - 19:41:04 | RASH | 434176] F:\SetupInstall.exe
      [12/08/2011 - 03:42:54 | RASH | 13290] F:\CITACION JUZ.POL.LOCAL.xlsx
      [13/08/2011 - 19:39:02 | RASH | 13413] F:\DAÑOS EN COLISION y LESIONES LEVES.docx
      [14/08/2011 - 11:02:44 | RASHD ] F:\Santiago
      [31/08/2011 - 18:01:26 | RASHD ] F:\OTROS PARTES
      [15/08/2011 - 05:00:24 | RASH | 36864] F:\02_ACTA DE INFORMACION DERECHOS DEL DETENIDO Y APERCIBIMIE~1.doc
      [15/08/2011 - 05:01:20 | RASH | 39936] F:\14_ACTA ACCIDENTE DE TRANSITO.doc
      [15/08/2011 - 05:02:14 | RASH | 42496] F:\05_ACTA DE ENTREGA DE DETENIDO POR CIVILES.doc
      [15/08/2011 - 05:02:40 | RASH | 53248] F:\03_ACTA ENTRADA REGISTRO E INCAUTACION 205-206.doc
      [15/08/2011 - 05:03:02 | RASH | 37376] F:\01_ACTA DE REGISTRO DE IMPUTADOS.doc
      [15/08/2011 - 05:03:58 | RASH | 174592] F:\ACTA RECEPCION VEHICULO.doc
      [22/08/2011 - 11:54:48 | RASHD ] F:\h3ojKiH9lvFefkO0mG6HlXplgLV3LYYJVfdZRr3dtLhEN80DnzEPQXQY2sziakx2axTnS4SA0447SPkbMnv4Qm
      [24/08/2011 - 00:30:36 | RASH | 31418] F:\tarjeta_embarque.pdf
      [31/08/2011 - 18:02:06 | RASH | 434176] F:\OTROS PARTES.exe
      [03/09/2011 - 10:13:28 | RASH | 1122] F:\HPPDEVX.DLL.log
      [12/09/2011 - 23:59:20 | R | 968] F:\Recovery.exe*.LNk
      [12/09/2011 - 23:59:22 | R | 964] F:\servicesOO*.lnk
      [12/09/2011 - 23:59:22 | R | 954] F:\HAHAl*.lnK
      [13/09/2011 - 00:00:28 | R | 960] F:\Recovery*.lNK
      [13/09/2011 - 00:00:30 | R | 950] F:\VIF*.lNK
      [13/09/2011 - 00:00:30 | R | 958] F:\VIF.exe*.lNk
      [13/09/2011 - 00:00:32 | R | 954] F:\ACTAS*.lnK
      [13/09/2011 - 00:00:32 | R | 958] F:\Viviana*.Lnk
      [13/09/2011 - 00:00:36 | R | 998] F:\OFICIO REMITE ESPECIES.docx*.lnK
      [13/09/2011 - 00:00:38 | R | 990] F:\CONSTANCIAS CHICAS.docx*.lNk
      [13/09/2011 - 00:00:38 | R | 974] F:\CITACIONES.docx*.lNK
      [12/09/2011 - 23:59:18 | N | 992] F:\CITACIONES FISCALIA.docx*.LnK
      [12/09/2011 - 23:59:18 | N | 976] F:\SetupInstall.exe*.LNK
      [12/09/2011 - 23:59:18 | N | 998] F:\CITACION JUZ.POL.LOCAL.xlsx*.lnk
      [12/09/2011 - 23:59:18 | N | 1024] F:\DAÑOS EN COLISION y LESIONES LEVES.docx*.lNK
      [12/09/2011 - 23:59:18 | N | 960] F:\Santiago*.lNK
      [12/09/2011 - 23:59:18 | N | 968] F:\OTROS PARTES*.lnk
      [12/09/2011 - 23:59:18 | N | 1072] F:\02_ACTA DE INFORMACION DERECHOS DEL DETENIDO Y APERCIBIMIE~1.doc*.LNK
      [12/09/2011 - 23:59:18 | N | 1010] F:\14_ACTA ACCIDENTE DE TRANSITO.doc*.Lnk
      [12/09/2011 - 23:59:18 | N | 1036] F:\05_ACTA DE ENTREGA DE DETENIDO POR CIVILES.doc*.Lnk
      [12/09/2011 - 23:59:18 | N | 1044] F:\03_ACTA ENTRADA REGISTRO E INCAUTACION 205-206.doc*.LnK
      [12/09/2011 - 23:59:20 | N | 1016] F:\01_ACTA DE REGISTRO DE IMPUTADOS.doc*.Lnk
      [12/09/2011 - 23:59:20 | N | 998] F:\ACTA RECEPCION VEHICULO.doc*.LNK
      [12/09/2011 - 23:59:20 | N | 984] F:\tarjeta_embarque.pdf*.LNK
      [12/09/2011 - 23:59:20 | N | 976] F:\OTROS PARTES.exe*.LNK
      [12/09/2011 - 23:59:20 | N | 974] F:\HPPDEVX.DLL.log*.LnK
      [12/09/2011 - 23:59:22 | R | 966] F:\WMPInfo.xml*.lNK
      [12/09/2011 - 23:59:50 | R | 960] F:\17-04-11*.lnk
      [03/09/2011 - 18:49:28 | RASH | 434176] F:\Recovery.exe
      [21/05/2011 - 18:51:00 | RASHD ] F:\servicesOO
      [21/05/2011 - 18:51:00 | RASHD ] F:\HAHAl
      [13/09/2011 - 00:00:26 | R | 994] F:\CITACIONES FISCALIAS.docx*.LNk
      [24/05/2011 - 16:04:42 | RASH | 296] F:\WMPInfo.xml
      [13/09/2011 - 00:00:34 | R | 968] F:\17-04-11.exe*.Lnk
      [13/09/2011 - 00:00:28 | R | 962] F:\ACTAS.exe*.lnk
      [14/09/2011 - 17:46:02 | A | 1884453] F:\Scanned-image.pdf

      ################## | Vaccin |

      (!) Este ordenador no está vacunado!

      ################## | E.O.F |


      Te comento que he visto una leve mejoría, seguiré viendo su se pone lento como estaba antes....

    4. #4
      Ex-Colaborador Avatar de RevesdeLiberte
      Registrado
      feb 2010
      Ubicación
      México
      Mensajes
      7.905

      Re: Virus eliminado?....y que mas puedo hacer?

      Hola. Lee bien mis instrucciones para que puedas limpiar el ordenador correctamente.


      1.- Ejecuta nuevamente UsbFix pero esta vez pulsa el botón de Supresión

      .



      2.- Descarga OTM by OldTimer al escritorio.
      • Haz doble clic sobre el archivo OTM.exe para ejecutarlo. (En Windows 7 & Vista haces clic derecho y "Ejecutar como administrador".)
      • Pega el siguiente codigo bajo el area Paste Instructions for items to be Moved. (Se exluye la palabra "Código:")
        Código:
        :Files
        c:\documents and settings\viviana alejandra\autorun.inf
        
        :Commands
        [EMPTYFLASH]
        [EMPTYTEMP]
        [REBOOT]
      • Presiona el boton rojo MoveIt!
      • Espera hasta que el resultado aparezca en el marco Results.
      • Permite que se Reinicie el equipo ya que esto es importante.






      3.- Envía el reporte de UsbFix & OTM situado sobre C: \ _ OTM\MovedFiles\.




      Comentas como el ordenador respecto al problema inicial.
      Última edición por RevesdeLiberte fecha: 25/09/11 a las 20:14:16