Autor Tema: troyano en mi pc? pongo log, me ayudais?  (Leído 6985 veces)

Desconectado rivera

  • Member
  • ***
  • Mensajes: 189
Re: troyano en mi pc? pongo log, me ayudais?
« Respuesta #10 en: 28 de Junio de 2008, 06:08:47 pm »
hola mr_x, pasé mi antivirus en modo seguro, aqui dejo el reporte :



Avira AntiVir Personal
Report file date: lunes, 23 de junio de 2008  15:25

Scanning for 1355690 virus strains and unwanted programs.

Licensed to:      Avira AntiVir PersonalEdition Classic
Serial number:    0000149996-ADJIE-0001
Platform:         Windows XP
Windows version:  (Service Pack 2)  [5.1.2600]
Boot mode:        Save mode
Username:         alfredo
Computer name:    SOFIA-6E9EB9525

Version information:
BUILD.DAT     : 8.1.0.308       16478 Bytes  28/05/2008 17:03:00
AVSCAN.EXE    : 8.1.2.12       311553 Bytes  17/04/2008 08:33:05
AVSCAN.DLL    : 8.1.1.0         53505 Bytes  17/04/2008 08:33:05
LUKE.DLL      : 8.1.2.9        151809 Bytes  17/04/2008 08:33:07
LUKERES.DLL   : 8.1.2.1         12033 Bytes  17/04/2008 08:33:07
ANTIVIR0.VDF  : 6.40.0.0     11030528 Bytes  18/07/2007 14:27:15
ANTIVIR1.VDF  : 7.0.3.2       5447168 Bytes  07/03/2008 08:15:54
ANTIVIR2.VDF  : 7.0.4.195     2546176 Bytes  14/06/2008 08:41:37
ANTIVIR3.VDF  : 7.0.4.240      328192 Bytes  23/06/2008 13:13:31
Engineversion : 8.1.0.59 
AEVDF.DLL     : 8.1.0.5        102772 Bytes  17/04/2008 08:33:08
AESCRIPT.DLL  : 8.1.0.44       278907 Bytes  20/06/2008 13:40:36
AESCN.DLL     : 8.1.0.22       119157 Bytes  20/06/2008 13:40:35
AERDL.DLL     : 8.1.0.20       418165 Bytes  25/04/2008 14:21:23
AEPACK.DLL    : 8.1.1.6        364918 Bytes  20/06/2008 13:40:34
AEOFFICE.DLL  : 8.1.0.20       192891 Bytes  20/06/2008 13:40:33
AEHEUR.DLL    : 8.1.0.32      1274231 Bytes  20/06/2008 13:40:33
AEHELP.DLL    : 8.1.0.15       115063 Bytes  29/05/2008 13:44:05
AEGEN.DLL     : 8.1.0.29       307573 Bytes  20/06/2008 13:40:30
AEEMU.DLL     : 8.1.0.6        430451 Bytes  08/05/2008 08:52:46
AECORE.DLL    : 8.1.0.31       168310 Bytes  06/06/2008 18:38:38
AVWINLL.DLL   : 1.0.0.7         14593 Bytes  17/04/2008 08:33:05
AVPREF.DLL    : 8.0.0.1         25857 Bytes  17/04/2008 08:33:05
AVREP.DLL     : 7.0.0.1        155688 Bytes  16/04/2007 13:16:24
AVREG.DLL     : 8.0.0.0         30977 Bytes  17/04/2008 08:33:05
AVARKT.DLL    : 1.0.0.23       307457 Bytes  17/04/2008 08:33:05
AVEVTLOG.DLL  : 8.0.0.11       114945 Bytes  17/04/2008 08:33:05
SQLITE3.DLL   : 3.3.17.1       339968 Bytes  17/04/2008 08:33:07
SMTPLIB.DLL   : 1.2.0.19        28929 Bytes  17/04/2008 08:33:07
NETNT.DLL     : 8.0.0.1          7937 Bytes  17/04/2008 08:33:07
RCIMAGE.DLL   : 8.0.0.35      2371841 Bytes  17/04/2008 08:33:00
RCTEXT.DLL    : 8.0.32.0        86273 Bytes  17/04/2008 08:33:00

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\archivos de programa\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:, E:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: lunes, 23 de junio de 2008  15:25

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
11 processes with 11 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
      [INFO]      No virus was found!
Master boot sector HD1
      [INFO]      No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
      [INFO]      No virus was found!
Boot sector 'D:\'
      [INFO]      No virus was found!
Boot sector 'E:\'
      [INFO]      No virus was found!

Starting to scan the registry.
The registry was scanned ( '48' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
      [WARNING]   The file could not be opened!
C:\WINDOWS\system32\drivers\sptd.sys
      [WARNING]   The file could not be opened!
Begin scan in 'D:\' <HP_PAVILION>
Begin scan in 'E:\'


End of the scan: lunes, 23 de junio de 2008  16:34
Used time:  1:09:39 min

The scan has been done completely.

  11529 Scanning directories
 412032 Files were scanned
      0 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      0 files were deleted
      0 files were repaired
      0 files were moved to quarantine
      0 files were renamed
      2 Files cannot be scanned
 412032 Files not concerned
   2080 Archives were scanned
      2 Warnings
      0 Notes

Y aqui con antivirus en linea kapersky:


--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7 REPORT
 Tuesday, June 24, 2008
 Operating System: Microsoft Windows XP Professional Service Pack 2 (build 2600)
 Kaspersky Online Scanner 7 version: 7.0.25.0
 Program database last update: Tuesday, June 24, 2008 10:09:33
 Records in database: 881246
--------------------------------------------------------------------------------

Scan settings:
   Scan using the following database: extended
   Scan archives: yes
   Scan mail databases: yes

Scan area - My Computer:
   A:\
   C:\
   D:\
   E:\
   F:\
   G:\
   H:\

Scan statistics:
   Files scanned: 128509
   Threat name: 3
   Infected objects: 3
   Suspicious objects: 0
   Duration of the scan: 04:34:58


File name / Threat name / Threats count
C:\Documents and Settings\alfredo\.housecall6.6\Quarantine\SetupDTSB.exe.bac_a03480   Infected: not-a-virus:AdTool.Win32.WhenU.a   1
C:\Documents and Settings\alfredo\Escritorio\parches de fifa\FIFA Manager 08 v1.0 [MULTI6] No-DVD Fixed EXE.rar   Infected: Trojan-Dropper.Win32.Delf.ahn   1
C:\WINDOWS\system32\MSWINSCK.OCX   Infected: Backdoor.Win32.VB.ecr   1

The selected area was scanned.






 :???: :???:

Desconectado Mr_X

  • Moderador
  • ******
  • Mensajes: 2635
Re: troyano en mi pc? pongo log, me ayudais?
« Respuesta #11 en: 28 de Junio de 2008, 08:10:09 pm »
Si tú usas el FIFA, borra tu archivo para 'cr..kearlo' que te indica Kaspersky, así como el archivo MSWINSCK.OCX...
El otro archivo que te detecta está en la cuarentena del McAfee que veo que ya no usas... Borra ese directorio completamente...
"... I'll wait I sow the seed, I set the scene and I watch the world go by..."

Desconectado rivera

  • Member
  • ***
  • Mensajes: 189
Re: troyano en mi pc? pongo log, me ayudais?
« Respuesta #12 en: 01 de Julio de 2008, 09:44:12 am »
hola, ya he eliminado esas entradas que comentas, a ver que tal. un saludo y gracias!

 

Aviso Legal | Política de Privacidad | Política de Cookies

el contenido de la web se rige bajo licencia
Creative Commons License