Regresar   Foro de Spyware » Spyware - Adware - Hijackers - Malwares » Foro Oficial de HijackThis en español

         

InfoSpyware sortea una T-Shirts
Participa en el sorteo por una "Camiseta Oficial de InfoSpyware" gracias al amigo Enjuto Mojamuto

Para evitar Virus, Spyware y ventanas emergentes, en InfoSpyware recomendamos navegar con: FIREFOX

Foro Oficial de HijackThis en español Analizamos tu log de HijackThis para eliminar Hijackers, Spyware, Adware, ToolBars, Virus, Troyanos y Malwares en gral. Antes lea las Políticas del Foro de HijackThis.

Tema Cerrado
 
Herramientas
  post #1 (permalink)  
Antiguo 05/02/05, 17:10:16
Usuario
 
Registrado: feb 2005
Ubicación: españa
Mensajes: 3
internet muy lento aqui va mi log

Tengo un problema con internet y es que me va muy lento, tanto con IE como con firefox, no se a que se puede deber le he pasado del hihack y este es el log, como no se que es lo que se puede borrar aqui os lo mando, tambien os puedo decir que el firewall me canta intentos de conexion de programas que no me suenan de na tambien he pasao el ad-aware y el spy-bot.

Edit. Falto encabezado del log
Add Post to del.icio.usBookmark Post in TechnoratiMeneame
  post #2 (permalink)  
Antiguo 05/02/05, 18:13:23
Avatar de AngeduCiel
Colaborador
 
Registrado: ene 2005
Ubicación: México D.F.
Mensajes: 516
Hola, Porfavor pega el log completo

Saludos
Add Post to del.icio.usBookmark Post in TechnoratiMeneame
  post #3 (permalink)  
Antiguo 05/02/05, 19:29:14
Usuario
 
Registrado: feb 2005
Ubicación: españa
Mensajes: 3
encabezado dle log

Running Processes:
-----------------

#:1 [smss.exe]
File Path: C:\WINDOWS\System32\smss.exe
ProcessID: 728
Threads: 3
Priority: Normal
File Size: 44 KB
Version: 5.1.2600.1106
File Version: 5.1.2600.1106 (xpsp1.020828-1920)
Product Version: 5.1.2600.1106
Copyright: © Microsoft Corporation. All rights reserved.
Company Name: Microsoft Corporation
File Description: Windows NT Session Manager
Internal Name: smss.exe
Original Filename: smss.exe
Product Name: Microsoft® Windows® Operating System
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 22:41:17
Last modified: 24/04/2003 13:00:00

#:2 [winlogon.exe]
File Path: C:\WINDOWS\SYSTEM32\winlogon.exe
ProcessID: 804
Threads: 27
Priority: High
File Size: 475 KB
Version: 5.1.2600.1557
File Version: 5.1.2600.1557 (xpsp2_gdr.040517-1325)
Product Version: 5.1.2600.1557
Copyright: © Microsoft Corporation. Reservados todos los derechos.
Company Name: Microsoft Corporation
File Description: Aplicación de inicio de sesión de Windows NT
Internal Name: winlogon
Original Filename: WINLOGON.EXE
Product Name: Sistema operativo Microsoft® Windows®
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 22:57:18
Last modified: 17/06/2004 18:42:01

#:3 [services.exe]
File Path: C:\WINDOWS\system32\services.exe
ProcessID: 848
Threads: 21
Priority: Normal
File Size: 99 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: Copyright (C) Microsoft Corporation. Reservados todos los derechos.
Company Name: Microsoft Corporation
File Description: Aplicación de servicios y controlador
Internal Name: services.exe
Original Filename: services.exe
Product Name: Sistema operativo Microsoft® Windows®
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 21:41:01
Last modified: 24/04/2003 13:00:00

#:4 [lsass.exe]
File Path: C:\WINDOWS\system32\lsass.exe
ProcessID: 860
Threads: 27
Priority: Normal
File Size: 11 KB
Version: 5.1.2600.1106
File Version: 5.1.2600.1106 (xpsp1.020828-1920)
Product Version: 5.1.2600.1106
Copyright: © Microsoft Corporation. All rights reserved.
Company Name: Microsoft Corporation
File Description: LSA Shell (Export Version)
Internal Name: lsass.exe
Original Filename: lsass.exe
Product Name: Microsoft® Windows® Operating System
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 21:41:01
Last modified: 24/04/2003 13:00:00

#:5 [svchost.exe]
File Path: C:\WINDOWS\system32\svchost.exe
ProcessID: 1048
Threads: 10
Priority: Normal
File Size: 12 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. All rights reserved.
Company Name: Microsoft Corporation
File Description: Generic Host Process for Win32 Services
Internal Name: svchost.exe
Original Filename: svchost.exe
Product Name: Microsoft® Windows® Operating System
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 21:41:01
Last modified: 24/04/2003 13:00:00

#:6 [svchost.exe]
File Path: C:\WINDOWS\System32\svchost.exe
ProcessID: 1072
Threads: 80
Priority: Normal
File Size: 12 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. All rights reserved.
Company Name: Microsoft Corporation
File Description: Generic Host Process for Win32 Services
Internal Name: svchost.exe
Original Filename: svchost.exe
Product Name: Microsoft® Windows® Operating System
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 22:57:34
Last modified: 24/04/2003 13:00:00

#:7 [CCSETMGR.EXE]
File Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\ccSetMgr.exe
ProcessID: 1320
Threads: 6
Priority: Normal
File Size: 229 KB
Version: 2.1.3.4
File Version: 2.1.3.4
Product Version: 2.1.3.4
Copyright: Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
Company Name: Symantec Corporation
File Description: Common Client Settings Manager Service
Internal Name: ccSetMgr
Original Filename: ccSetMgr.exe
Product Name: Common Client
Created on: 08/10/2004 23:39:44
Last accessed: 05/02/2005 22:44:22
Last modified: 14/09/2004 20:02:26

#:8 [CCEVTMGR.EXE]
File Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\ccEvtMgr.exe
ProcessID: 1432
Threads: 21
Priority: Normal
File Size: 249 KB
Version: 2.1.3.4
File Version: 2.1.3.4
Product Version: 2.1.3.4
Copyright: Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
Company Name: Symantec Corporation
File Description: Common Client Event Manager Service
Internal Name: ccEvtMgr
Original Filename: ccEvtMgr.exe
Product Name: Common Client
Created on: 08/10/2004 23:39:44
Last accessed: 05/02/2005 22:55:32
Last modified: 14/09/2004 20:02:20

#:9 [spoolsv.exe]
File Path: C:\WINDOWS\system32\spoolsv.exe
ProcessID: 1576
Threads: 13
Priority: Normal
File Size: 50 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (XPClient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. All rights reserved.
Company Name: Microsoft Corporation
File Description: Spooler SubSystem App
Internal Name: spoolsv.exe
Original Filename: spoolsv.exe
Product Name: Microsoft® Windows® Operating System
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 21:41:01
Last modified: 24/04/2003 13:00:00

#:10 [Apache.exe]
File Path: C:\AppServ\Apache\Apache.exe
ProcessID: 1736
Threads: 3
Priority: Normal
File Size: 20 KB
Created on: 12/11/2003 8:58:25
Last accessed: 05/02/2005 21:41:01
Last modified: 29/10/2003 7:39:10

#:11 [CCPROXY.EXE]
File Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\ccProxy.exe
ProcessID: 1756
Threads: 14
Priority: Normal
File Size: 213 KB
Version: 2.1.3.4
File Version: 2.1.3.4
Product Version: 2.1.3.4
Copyright: Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
Company Name: Symantec Corporation
File Description: Common Client Network Proxy Service
Internal Name: ccProxy
Original Filename: ccProxy.exe
Product Name: Common Client
Created on: 08/10/2004 23:40:02
Last accessed: 05/02/2005 21:41:01
Last modified: 14/09/2004 20:02:22

#:12 [Crypserv.exe]
File Path: C:\WINDOWS\system32\crypserv.exe
ProcessID: 1768
Threads: 3
Priority: High
File Size: 51 KB
Version: 5.4.0.0
File Version: 5.4.0
Product Version: 5.4
Copyright: Copyright © 2000
Company Name: Kenonic Controls Ltd.
File Description: CrypKey NT Service
Internal Name: crypserv
Original Filename: crypserv.exe
Product Name: CrypKey Software Licensing System
Created on: 12/01/2005 21:03:39
Last accessed: 05/02/2005 21:41:01
Last modified: 29/06/2000 9:45:10

#:13 [GhostStartService.exe]
File Path: C:\ARCHIV~1\NORTON~1\NORTON~3\GHOSTS~2.EXE
ProcessID: 1828
Threads: 3
Priority: Normal
File Size: 196 KB
Version: 2003.0.0.789
File Version: 2003.789
Product Version: 2003.789
Copyright: Copyright (C) 1998-2003 Symantec Corp. All rights reserved.
Company Name: Symantec Corporation
File Description: Norton Ghost Start
Internal Name: GhostStartService
Original Filename: GhostStartService.exe
Product Name: Norton Ghost Start Service
Created on: 28/05/2003 18:11:02
Last accessed: 05/02/2005 21:41:01
Last modified: 28/05/2003 18:11:02

#:14 [mysqld-nt.exe]
File Path: C:\AppServ\mysql\bin\mysqld-nt.exe
ProcessID: 1876
Threads: 13
Priority: Normal
File Size: 2196 KB
Created on: 12/11/2003 15:59:37
Last accessed: 05/02/2005 21:41:01
Last modified: 20/10/2003 19:43:10

#:15 [Pavfires.exe]
File Path: C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\Firewall\PavFires.exe
ProcessID: 1916
Threads: 17
Priority: Normal
File Size: 148 KB
Version: 1.3.2.1
File Version: 1, 3, 2, 1
Product Version: 7, 6, 2, 0
Copyright: Panda Software Copyright © 2004
Company Name: Panda Software
File Description: Personal Firewall Service
Internal Name: Pavfires
Original Filename: Pavfires.exe
Product Name: Platinum 7 Pavfires
Created on: 09/10/2004 2:09:12
Last accessed: 05/02/2005 21:41:01
Last modified: 05/04/2004 12:08:48

#:16 [Apache.exe]
File Path: C:\AppServ\Apache\Apache.exe
ProcessID: 1936
Threads: 51
Priority: Normal
File Size: 20 KB
Created on: 12/11/2003 8:58:25
Last accessed: 05/02/2005 22:57:34
Last modified: 29/10/2003 7:39:10

#:17 [Pavsrv51.exe]
File Path: C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\pavsrv51.exe
ProcessID: 1992
Threads: 28
Priority: High
File Size: 264 KB
Version: 6.3.0.530
File Version: 6, 3, 0, 530
Product Version: 6.3
Copyright: Copyright © Panda Software 2003
Company Name: Panda Software
File Description: Panda Antivirus Service for Windows NT/2000
Internal Name: pavsrv
Original Filename: pavsrv.exe
Product Name: Panda Antivirus
Created on: 09/10/2004 2:09:12
Last accessed: 05/02/2005 21:41:01
Last modified: 02/04/2003 14:38:18

#:18 [SNDSrvc.exe]
File Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\SNDSrvc.exe
ProcessID: 492
Threads: 7
Priority: Normal
File Size: 189 KB
Version: 5.3.2.67
File Version: 5.3.2.67
Product Version: 5.3
Copyright: Copyright 2002, 2003 Symantec Corporation
Company Name: Symantec Corporation
File Description: Network Driver Service
Internal Name: SndSrvc
Original Filename: SndSrvc.exe
Product Name: Symantec Security Drivers
Created on: 29/06/2004 15:14:38
Last accessed: 05/02/2005 21:41:01
Last modified: 29/06/2004 15:14:38

#:19 [Avengine.exe]
File Path: C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\AVENGINE.EXE
ProcessID: 552
Threads: 6
Priority: Normal
File Size: 100 KB
Version: 6.3.0.492
File Version: 6, 3, 0, 492
Product Version: 6.3
Copyright: Copyright © Panda Software 1990-2002
Company Name: Panda Software
File Description: Proceso análisis independiente
Internal Name: avengine
Original Filename: avengine.exe
Product Name: Panda Antivirus Windows NT/2000
Created on: 09/10/2004 2:09:12
Last accessed: 05/02/2005 21:41:01
Last modified: 08/04/2003 16:51:34

#:20 [NOPDB.exe]
File Path: C:\ARCHIV~1\NORTON~1\NORTON~1\SPEEDD~1\NOPDB.EXE
ProcessID: 588
Threads: 3
Priority: Normal
File Size: 172 KB
Version: 17.0.0.82
File Version: 7.00.0.24
Product Version: 7.00.0.24
Copyright: Copyright (c) 1997-2003 Symantec Corporation
Company Name: Symantec Corporation
File Description: NOPDB
Internal Name: NOPDB
Original Filename: NOPDB.dll
Product Name: Norton Speed Disk
Created on: 16/09/2003 15:45:08
Last accessed: 05/02/2005 21:41:01
Last modified: 16/09/2003 15:45:08

#:21 [svchost.exe]
File Path: C:\WINDOWS\System32\svchost.exe
ProcessID: 668
Threads: 7
Priority: Normal
File Size: 12 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. All rights reserved.
Company Name: Microsoft Corporation
File Description: Generic Host Process for Win32 Services
Internal Name: svchost.exe
Original Filename: svchost.exe
Product Name: Microsoft® Windows® Operating System
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 22:57:34
Last modified: 24/04/2003 13:00:00

#:22 [symlcsvc.exe]
File Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\CCPD-LC\symlcsvc.exe
ProcessID: 692
Threads: 4
Priority: Normal
File Size: 572 KB
Version: 1.8.48.77
File Version: 1, 8, 48, 77
Product Version: 1, 8, 48, 77
Copyright: Copyright (C) 2003
Company Name: Symantec Corporation
File Description: Symantec Core Component
Internal Name: symlcsvc
Original Filename: symlcsvc.exe
Product Name: Symantec Core Component
Created on: 08/10/2004 21:25:08
Last accessed: 05/02/2005 21:41:01
Last modified: 08/10/2004 21:25:08

#:23 [UPServ.exe]
File Path: C:\Archivos de programa\Commander Pro\UPServ.exe
ProcessID: 2296
Threads: 2
Priority: Normal
File Size: 60 KB
Version: 1.0.0.1
File Version: 1, 0, 0, 1
Product Version: 1, 0, 0, 1
Copyright: Copyright 1999
Company Name:
File Description: UPSmart Module
Internal Name: UPSmart
Original Filename: UPSmart.EXE
Product Name: UPSmart Module
Created on: 30/09/2004 22:14:39
Last accessed: 05/02/2005 21:41:01
Last modified: 01/11/1999 14:02:00

#:24 [WROS.exe]
File Path: C:\Archivos de programa\WinPoET Broadband Connection\WrOS.EXE
ProcessID: 2372
Threads: 2
Priority: Normal
File Size: 80 KB
Version: 1.1.2.0
File Version: 1, 1, 2, 0
Product Version: 1, 1, 2, 0
Copyright: Copyright © 1997-1999
Company Name: iVasion, a Routerware Company
File Description: WrOS
Internal Name: WrOS
Original Filename: WrOS.exe
Product Name: WinRouter Operating System
Created on: 03/02/2005 22:06:15
Last accessed: 05/02/2005 21:41:01
Last modified: 10/04/2000 15:41:48

#:25 [UPS.exe]
File Path: C:\Archivos de programa\Commander Pro\UPS.EXE
ProcessID: 2760
Threads: 3
Priority: Normal
File Size: 228 KB
Version: 1.0.0.1
File Version: 1, 0, 0, 1
Product Version: 1, 0, 0, 1
Copyright: Copyright (C) 1999
Company Name:
File Description: UPS2000 MFC Application
Internal Name: UPS2000
Original Filename: UPS2000.EXE
Product Name: UPS2000 Application
Created on: 30/09/2004 22:14:39
Last accessed: 05/02/2005 21:41:01
Last modified: 09/10/2001 13:11:48

#:26 [rundll32.exe]
File Path: C:\WINDOWS\SYSTEM32\rundll32.exe
ProcessID: 2868
Threads: 4
Priority: Normal
File Size: 31 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. Reservados todos los derechos.
Company Name: Microsoft Corporation
File Description: Ejecutar un archivo DLL como una aplicación
Internal Name: rundll
Original Filename: RUNDLL.EXE
Product Name: Sistema operativo Microsoft® Windows®
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 21:43:54
Last modified: 24/04/2003 13:00:00

#:27 [devldr32.exe]
File Path: C:\WINDOWS\System32\devldr32.exe
ProcessID: 3016
Threads: 4
Priority: Normal
File Size: 25 KB
Version: 1.0.0.22
File Version: 1, 0, 0, 22
Product Version: 1, 0, 0, 22
Copyright: Copyright © 1997-2001 Creative Technology Ltd.
Company Name: Creative Technology Ltd.
File Description: DevLdr32
Internal Name: DevLdr
Original Filename: DevLdr32.exe
Product Name: Creative Ring3 NT Inteface
Created on: 30/09/2004 21:36:28
Last accessed: 05/02/2005 21:41:01
Last modified: 31/08/2001 14:44:30

#:28 [explorer.exe]
File Path: C:\WINDOWS\Explorer.EXE
ProcessID: 3272
Threads: 14
Priority: Normal
File Size: 983 KB
Version: 6.0.2800.1106
File Version: 6.00.2800.1106 (xpsp1.020828-1920)
Product Version: 6.00.2800.1106
Copyright: © Microsoft Corporation. Reservados todos los derechos.
Company Name: Microsoft Corporation
File Description: Explorador de Windows
Internal Name: explorer
Original Filename: EXPLORER.EXE
Product Name: Sistema operativo Microsoft® Windows®
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 21:41:02
Last modified: 24/04/2003 13:00:00

#:29 [usrmlnka.exe]
File Path: C:\WINDOWS\SYSTEM32\USRmlnkA.exe
ProcessID: 3460
Threads: 10
Priority: Real Time
File Size: 76 KB
Version: 4.11.21.0
File Version: 4. 11. 21
Product Version: 4. 11. 21
Copyright: Copyright (C) © 2000 U.S. Robotics Corporation
Company Name: U.S. Robotics Corporation
File Description: U.S. Robotics driver interface
Internal Name: 3cmlink.exe
Original Filename: 3cmlink.exe
Product Name: U.S. Robotics Modem Driver
Created on: 22/08/2001 23:15:42
Last accessed: 05/02/2005 21:41:02
Last modified: 24/04/2003 13:00:00

#:30 [usrshuta.exe]
File Path: C:\WINDOWS\SYSTEM32\USRshutA.exe
ProcessID: 3484
Threads: 2
Priority: Normal
File Size: 68 KB
Version: 4.11.21.0
File Version: 4. 11. 21
Product Version: 4. 11. 21
Copyright: Copyright (C) © 2000 U.S. Robotics Corporation
Company Name: U.S. Robotics Corporation
File Description: U.S. Robotics shutdown helper
Internal Name: 3cshtdwn.exe
Original Filename: 3cshtdwn.exe
Product Name: U.S. Robotics Modem Driver
Created on: 22/08/2001 23:15:42
Last accessed: 05/02/2005 21:41:02
Last modified: 24/04/2003 13:00:00

#:31 [usrmlnka.exe]
File Path: C:\WINDOWS\SYSTEM32\USRmlnkA.exe
ProcessID: 3496
Threads: 1
Priority: Normal
File Size: 76 KB
Version: 4.11.21.0
File Version: 4. 11. 21
Product Version: 4. 11. 21
Copyright: Copyright (C) © 2000 U.S. Robotics Corporation
Company Name: U.S. Robotics Corporation
File Description: U.S. Robotics driver interface
Internal Name: 3cmlink.exe
Original Filename: 3cmlink.exe
Product Name: U.S. Robotics Modem Driver
Created on: 22/08/2001 23:15:42
Last accessed: 05/02/2005 22:57:34
Last modified: 24/04/2003 13:00:00

#:32 [rundll32.exe]
File Path: C:\WINDOWS\System32\rundll32.exe
ProcessID: 3648
Threads: 3
Priority: Normal
File Size: 31 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. Reservados todos los derechos.
Company Name: Microsoft Corporation
File Description: Ejecutar un archivo DLL como una aplicación
Internal Name: rundll
Original Filename: RUNDLL.EXE
Product Name: Sistema operativo Microsoft® Windows®
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 22:57:34
Last modified: 24/04/2003 13:00:00

#:33 [GhostStartTrayApp.exe]
File Path: C:\Archivos de programa\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
ProcessID: 3656
Threads: 1
Priority: Normal
File Size: 92 KB
Version: 2003.0.0.789
File Version: 2003.789
Product Version: 2003.789
Copyright: Copyright (C) 1998-2003 Symantec Corp. All rights reserved.
Company Name: Symantec Corporation
File Description: Norton Ghost Start
Internal Name: GhostStartTrayApp
Original Filename: GhostStartTrayApp.exe
Product Name: Norton Ghost Start
Created on: 10/06/2003 17:02:32
Last accessed: 05/02/2005 21:41:02
Last modified: 10/06/2003 17:02:32

#:34 [CCAPP.EXE]
File Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe
ProcessID: 3664
Threads: 26
Priority: Normal
File Size: 69 KB
Version: 2.1.3.4
File Version: 2.1.3.4
Product Version: 2.1.3.4
Copyright: Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
Company Name: Symantec Corporation
File Description: Common Client User Session
Internal Name: ccApp
Original Filename: ccApp.exe
Product Name: Common Client
Created on: 08/10/2004 23:39:44
Last accessed: 05/02/2005 21:41:02
Last modified: 14/09/2004 20:02:18

#:35 [apvxdwin.exe]
File Path: C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE
ProcessID: 3716
Threads: 8
Priority: Normal
File Size: 292 KB
Version: 2.14.3.0
File Version: 2, 14, 3, 0
Product Version: 7.07
Copyright: Panda Software. 2003 All rights reserved
Company Name: Panda Software International
File Description: Platinum permanent protection
Internal Name: Apvxdwin.exe
Original Filename:
Product Name: Panda Antivirus Platinum
Created on: 09/10/2004 2:09:10
Last accessed: 05/02/2005 21:41:02
Last modified: 29/04/2004 14:59:02

#:36 [ezSP_Px.exe]
File Path: C:\WINDOWS\System32\ezSP_Px.exe
ProcessID: 3724
Threads: 1
Priority: Normal
File Size: 40 KB
Version: 1.0.0.0
File Version: 1, 0, 0, 0
Product Version: 1, 0, 0, 0
Copyright: Copyright (C) 2002 Easy Systems Japan Ltd.
Company Name: Easy Systems Japan Ltd.
File Description: ezSP_Px MFC Application
Internal Name: ezSP_Px
Original Filename: ezSP_Px.EXE
Product Name: ezSP_Px Application
Created on: 04/11/2004 1:09:01
Last accessed: 05/02/2005 21:41:02
Last modified: 20/08/2002 10:29:26

#:37 [mdhvb.exe]
File Path: C:\WINDOWS\System32\mdhvb.exe
ProcessID: 3740
Threads: 1
Priority: Normal
File Size: 240 KB
Created on: 25/01/2005 12:09:58
Last accessed: 05/02/2005 21:41:02
Last modified: 25/01/2005 12:09:56

#:38 [E_S10IC2.EXE]
File Path: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC 2.EXE
ProcessID: 3748
Threads: 1
Priority: Normal
File Size: 74 KB
Version: 3.0.6.0
File Version: 3.06
Product Version: 3.06
Copyright: Copyright (C) SEIKO EPSON CORP. 2002
Company Name: SEIKO EPSON CORPORATION
File Description: EPSON Status Monitor 3
Internal Name: E_S10IC2
Original Filename: E_S10IC2.EXE
Product Name: EPSON Status Monitor 3
Created on: 29/01/2005 21:04:04
Last accessed: 05/02/2005 21:41:02
Last modified: 10/12/2002 3:06:00

#:39 [DSLMON.exe]
File Path: C:\Archivos de programa\Telefonica\Kit ADSL USB\DSLMON.exe
ProcessID: 3820
Threads: 2
Priority: Normal
File Size: 872 KB
Version: 1.0.0.1
File Version: 1, 0, 0, 1
Product Version: 1, 0, 0, 1
Copyright: Copyright (C) 2000
Company Name:
File Description: ADIMON MFC Application
Internal Name: DSLMON
Original Filename: ADIMON.EXE
Product Name: DSLMON Application
Created on: 03/02/2005 22:04:51
Last accessed: 05/02/2005 21:41:02
Last modified: 15/08/2002 20:42:44

#:40 [Pavproxy.exe]
File Path: C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\pavProxy.exe
ProcessID: 1944
Threads: 6
Priority: Normal
File Size: 144 KB
Version: 3.6.10.24
File Version: 3, 6, 10, 24
Product Version: 3, 6, 10, 24
Copyright: Copyright © 2002
Company Name: Panda Software
File Description: PavProxy
Internal Name: PavProxy
Original Filename: PavProxy.exe
Product Name: Mail Resident
Created on: 09/10/2004 2:09:12
Last accessed: 05/02/2005 21:41:02
Last modified: 12/06/2003 12:44:32

#:41 [emule.exe]
File Path: C:\Archivos de programa\eMule\emule.exe
ProcessID: 3868
Threads: 11
Priority: Normal
File Size: 4968 KB
Version: 0.44.3.44
File Version: 0.44.3 Unicode
Product Version: 0.44.3 Unicode
Copyright: Copyright © 2002-2004 Merkur - read license.txt for more infos
Company Name: http://www.emule-project.net
File Description: eMule
Internal Name: emule.exe
Original Filename: emule.exe
Product Name: eMule
Created on: 14/11/2004 19:23:05
Last accessed: 05/02/2005 22:02:38
Last modified: 06/01/2005 20:41:22

#:42 [msnmsgr.exe]
File Path: C:\Archivos de programa\MSN Messenger\msnmsgr.exe
ProcessID: 1172
Threads: 13
Priority: Normal
File Size: 4768 KB
Version: 6.2.0.137
File Version: 6.2.0137
Product Version: Version 6.2
Copyright: Copyright (c) Microsoft Corporation 1997-2004
Company Name: Microsoft Corporation
File Description: MSN Messenger
Internal Name: msnmsgr
Original Filename: msnmsgr.exe
Product Name: MSN Messenger
Created on: 28/05/2004 22:22:04
Last accessed: 05/02/2005 22:02:13
Last modified: 28/05/2004 22:22:04
Add Post to del.icio.usBookmark Post in TechnoratiMeneame
  post #4 (permalink)  
Antiguo 05/02/05, 19:30:20
Usuario
 
Registrado: feb 2005
Ubicación: españa
Mensajes: 3
y sigue ya que no me deja pegarlo completo

#:43 [E_S10MT2.EXE]
File Path: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10MT 2.EXE
ProcessID: 3892
Threads: 2
Priority: Normal
File Size: 99 KB
Version: 3.0.4.0
File Version: 3.04
Product Version: 3.04
Copyright: Copyright (C) SEIKO EPSON CORP. 2002
Company Name: SEIKO EPSON CORPORATION
File Description: EPSON Status Monitor 3
Internal Name: E_S10MT2
Original Filename: E_S10MT2.EXE
Product Name: EPSON Status Monitor 3
Created on: 29/01/2005 21:04:04
Last accessed: 05/02/2005 21:41:02
Last modified: 02/10/2002 3:04:00

#:44 [rundll32.exe]
File Path: C:\WINDOWS\system32\rundll32.exe
ProcessID: 1956
Threads: 3
Priority: Normal
File Size: 31 KB
Version: 5.1.2600.0
File Version: 5.1.2600.0 (xpclient.010817-1148)
Product Version: 5.1.2600.0
Copyright: © Microsoft Corporation. Reservados todos los derechos.
Company Name: Microsoft Corporation
File Description: Ejecutar un archivo DLL como una aplicación
Internal Name: rundll
Original Filename: RUNDLL.EXE
Product Name: Sistema operativo Microsoft® Windows®
Created on: 24/04/2003 13:00:00
Last accessed: 05/02/2005 22:57:34
Last modified: 24/04/2003 13:00:00

#:45 [HiJack.exe]
File Path: C:\Archivos de programa\BulletProofSoft.com\SpywareRemover\HS\HiJ ack.exe
ProcessID: 1596
Threads: 7
Priority: Normal
File Size: 404 KB
Version: 1.0.0.1
File Version: 1, 0, 0, 1
Product Version: 1, 0, 0, 1
Copyright: Copyright (C) 2003
Company Name:
File Description: HiJack MFC Application
Internal Name: System Hijack Scanner
Original Filename: HiJackNT.EXE
Product Name: System Hijack Scanner
Created on: 14/05/2003 20:19:48
Last accessed: 05/02/2005 21:50:55
Last modified: 14/05/2003 20:19:48

#:46 [WISPTIS.EXE]
File Path: C:\WINDOWS\System32\WISPTIS.EXE
ProcessID: 3400
Threads: 3
Priority: High
File Size: 185 KB
Version: 1.0.2201.0
File Version: 1.0.2201.0 (xpsp1.020820-1800)
Product Version: 1.0.2201.0
Copyright: Copyright © 1998-2002 Microsoft Corporation.
Company Name: Microsoft Corporation
File Description: Microsoft Tablet PC Platform Component
Internal Name: WISPTIS.EXE
Original Filename: WISPTIS.EXE
Product Name: Microsoft® Windows® Operating System
Created on: 21/08/2002 4:13:12
Last accessed: 05/02/2005 22:34:44
Last modified: 21/08/2002 4:13:12

#:47 [firefox.exe]
File Path: C:\ARCHIV~1\MOZILL~1\FIREFOX.EXE
ProcessID: 2972
Threads: 11
Priority: Normal
File Size: 6592 KB
Version: 0.8.0.0
File Version: 0.8
Product Version: Personal
Copyright: Mozilla
Company Name: Mozilla
File Description: Firefox
Internal Name: Firefox
Original Filename: firefox.exe
Product Name: Firefox
Created on: 07/10/2004 0:06:12
Last accessed: 05/02/2005 22:56:49
Last modified: 07/02/2004 11:12:00



System Hijack Scanner Entries:
---------------

R0 - HKCU\Software\Microsoft\Internet Explorer\Main, Start Page=http://www.acacta.org/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main, Local Page=C:\WINDOWS\System32\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main, Local Page=C:\WINDOWS\system32\blank.htm
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search, SearchAssistant=http://search.search-exe.com/nph-search.cgi?tcode=exesrch1&look=stmpl1&fw=
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar, LinksFolderName=Vínculos
R1 - HKLM\Software\Microsoft\Internet Explorer\Main, Default_page_url=http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
R1 - HKLM\Software\Microsoft\Internet Explorer\Main, Default_search_url=http://search.search-exe.com/nph-search.cgi?tcode=exesrch1&look=stmpl1&fw=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main, search bar=http://search.search-exe.com/nph-search.cgi?tcode=exebar1&look=sbar1_srchbtn
R1 - HKLM\Software\Microsoft\Internet Explorer\Main, search bar=http://search.search-exe.com/nph-search.cgi?tcode=exebar1&look=sbar1_srchbtn
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search, SearchAssistant=http://search.search-exe.com/nph-search.cgi?tcode=exesrch1&look=stmpl1&fw=
R2 - HKCU\Software\Microsoft\Internet Explorer\SearchURL, Default=http://search.search-exe.com/nph-search.cgi?tcode=exesrch1&look=stmpl1&fw=
R2 - HKLM\Software\Microsoft\Internet Explorer\SearchURL, Default=http://search.search-exe.com/nph-search.cgi?tcode=exesrch1&look=stmpl1&fw=
R3 - URLSearchHook: WebSearch Class - {9368D063-44BE-49B9-BD14-BB9663FD38FC} - C:\Archivos de programa\se\v11\se.DLL
R3 - URLSearchHook: WebSearch Class - {9368D063-44BE-49B9-BD14-BB9663FD38FC} - C:\Archivos de programa\se\v11\se.DLL
O2 - BHO: (no name) - {00041A26-7033-432C-94C7-6371DE343822} - C:\Archivos de programa\se\v11\se.DLL
O3 - ToolBar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Archivos de programa\Archivos comunes\Symantec Shared\AdBlocking\NISShExt.dll
O3 - ToolBar: (no name) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [USRpdA] C:\WINDOWS\SYSTEM32\USRmlnkA.exe RunServices \Device\3cpipe-USRpdA (file missing)
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe -CheckReg (file missing)
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install (file missing)
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit (file missing)
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\Updreg.exe
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Archivos de programa\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [ccApp] "C:\Archivos de programa\Archivos comunes\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Archivos de programa\Norton Internet Security Professional\UrlLstCk.exe
O4 - HKLM\..\Run: [SCANINICIO] "C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\Inicio.exe"
O4 - HKLM\..\Run: [APVXDWIN] "C:\Archivos de programa\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [u73g3nR] mdhvb.exe (file missing)
O4 - HKLM\..\Run: [EPSON Stylus C44 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC 2.EXE /P23 "EPSON Stylus C44 Series" /O6 "USB001" /M "Stylus C44" (file missing)
O4 - HKCU\..\Run: [EPSON Stylus C44 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC 2.EXE /P23 "EPSON Stylus C44 Series" /M "Stylus C44" (file missing)
O4 - HKLM\..\RunServices: [Windows Registry Scan] regscan32.exe (file missing)
O4 - Start Up: C:\Documents and Settings\Miguel\Menú Inicio\Programas\Inicio\desktop.ini
O4 - User Start Up: C:\Documents and Settings\Miguel\Menú Inicio\Programas\Inicio\desktop.ini
O4 - Global Start Up: C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\Consola KIT ADSL.lnk
O4 - Global Start Up: C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\desktop.ini
O4 - Global User Start Up: C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\Consola KIT ADSL.lnk
O4 - Global User Start Up: C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio\desktop.ini
O5 - HKCU\control panel\don't load: ncpa.cpl = No
O5 - HKCU\control panel\don't load: odbccp32.cpl = No
O8 - Extra Context Menu Items: E&xportar a Microsoft Excel - res://C:\ARCHIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra Context Menu Items: Open PDF in Word - res://C:\Archivos de programa\ScanSoft\OmniPagePro14.0\PdfCnv\IEShellEx t.dll /100
O11 - Options Group: [JAVA_SUN] Java (Sun)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
O16 - DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} (Office Update Installation Engine) - http://office.microsoft.com/officeupdate/content/opuc.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Plug-in 1.4.2_05) - http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF} ((no name)) - http://www.mt-download.com/MediaTicketsInstaller.cab
O16 - DPF: {CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA} (Java Plug-in 1.4.2_05) - http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKEY_LOCAL_MACHINE\System\CurrentControlSet\Servic es\TCPIP\Parameters\Interfaces\{4FD4FBD4-CD1D-4D59-BBDE-D9A4CE088E65}, NameServer=80.58.0.33,80.58.32.97
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\System32\inetcomm.dll
O18 - Protocol: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\System32\itss.dll
O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Information Retrieval\MSITSS.DLL
O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\10\OWC10.DL L
O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\ARCHIV~1\ARCHIV~1\MICROS~1\WEBCOM~1\11\OWC11.DL L
O18 - Protocol: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: sysimage - {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\System32\msvidctl.dll
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\System32\mshtml.dll
O18 - Protocol: vnd.ms.radio - {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\WINDOWS\System32\msdxm.ocx
O18 - Protocol: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\System32\wiascr.dll
Add Post to del.icio.usBookmark Post in TechnoratiMeneame
  post #5 (permalink)  
Antiguo 05/02/05, 20:06:29
Avatar de AngeduCiel
Colaborador
 
Registrado: ene 2005
Ubicación: México D.F.
Mensajes: 516
Pregunta

Hola, no sé que programa utilizaste para tomar el log, porque los encabezados que yo conosco son como este:

Logfile of HijackThis v1.99.0
Scan saved at 3:45:11, on 05/02/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

asi que si no lo tomaste con el HijackThis no te puedo ayudar ::confundi

-> Descarga el HijackThis 1.99 (en mi firma tienes el link)
-> Crea una carpeta para el solo (C:/HijackThis/HijackThis.exe)
-> Ejecútalo y dale click al botón "Do a system scan and save a logfile"
-> El Scan empezara, posteriormente te pedira el nombre de archivo y su ubicación, lo guardas.
-> Se abrirá el Bloc de Notas, copias todo el contenido y lo pegas aqui para poder ayudarte.

Saludos
Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Tema Cerrado

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are desactivado
Refbacks are desactivado
Ir a




Todas las horas son GMT -4. La hora es 06:47:54.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322 323 324 325 326 327 328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356 357 358 359 360 361 362 363 364 365 366 367 368 369 370 371 372 373 374 375 376 377 378 379 380 381 382 383 384 385 386 387 388 389 390 391 392 393 394 395