Búsqueda personalizada
Regístrate gratis para participar de los foros, o si ya estás registrado haz login.
| comentario del autor | Lun Mar 10, 2008 5:43 am | |
|
|
||
| sin valorar | Lun Mar 10, 2008 8:42 am | |
|
Hijack http://www.trendsecure.com/portal/en-US/_download/HiJackThis.exe |
||
| comentario | Mie Oct 07, 2009 12:00 pm | |
|
Scan saved at 9:53:53 AM, on 9/7/2009 Platform: Windows 2003 SP2 (WinNT 5.02.3790) MSIE: Internet Explorer v6.00 SP2 (6.00.3790.3959) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\EPSON\eEBAPI\eEBSVC.exe C:\Program Files\Apache Group\Apache2\bin\Apache.exe C:\WINDOWS\system32\hasplms.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\WINDOWS\system32\sfmsvc.exe C:\WINDOWS\system32\sfmprint.exe C:\Program Files\MySQL\MySQL Server 4.1\bin\mysqld-nt.exe C:\WINDOWS\System32\snmp.exe C:\Program Files\Apache Group\Apache2\bin\Apache.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\Program Files\Apache Group\Apache2\bin\rotatelogs.exe C:\WINDOWS\Explorer.exe C:\WINDOWS\system32\iexplorer.exe C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe C:\WINDOWS\system32\SCVVHSOT.exe C:\WINDOWS\system32\SCVVHSOT.exe C:\Program Files\Apache Group\Apache2\bin\ApacheMonitor.exe C:\WINDOWS\system32\214DA2\BBEA8F.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe D:\Trueflow\sys\bin\PPP_Module\AutoFileTransBin\AutoFileTransfer.exe D:\Trueflow\sys\bin\tools\CpuMng.exe D:\Trueflow\bin\HFManager.exe D:\Trueflow\lib\jre\bin\java.exe D:\Trueflow\bin\ServiceWatcher.exe D:\Trueflow\sys\bin\RecCtrl\RecBufCtrl.exe C:\DOCUME~1\ORIS-S~1\LOCALS~1\Temp\atrf.exe C:\WINDOWS\system32\E1088E\Z4-56484.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Administrator\Desktop\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = res://shdoclc.dll/softAdmin.htm R3 - URLSearchHook: MP3 es Toolbar - {f6f53201-ac60-4790-b385-405df25c4335} - C:\Program Files\MP3_es\tbMP30.dll F2 - REG:system.ini: Shell=Explorer.exe SCVVHSOT.exe O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O2 - BHO: MP3 es Toolbar - {f6f53201-ac60-4790-b385-405df25c4335} - C:\Program Files\MP3_es\tbMP30.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll O3 - Toolbar: MP3 es Toolbar - {f6f53201-ac60-4790-b385-405df25c4335} - C:\Program Files\MP3_es\tbMP30.dll O4 - HKLM\..\Run: [BBEA8F] C:\WINDOWS\system32\214DA2\BBEA8F.EXE O4 - HKLM\..\Run: [IEXPLORER] C:\WINDOWS\system32\iexplorer.exe O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" O4 - HKCU\..\Run: [cdoosoft] C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\herss.exe O4 - HKCU\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\SCVVHSOT.exe O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-21-1947372739-504873761-1701554831-1003\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'dsadmin') O4 - HKUS\S-1-5-21-1947372739-504873761-1701554831-1008\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'ORIS-Service') O4 - HKUS\S-1-5-18\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\SCVVHSOT.exe (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Yahoo Messengger] C:\WINDOWS\system32\SCVVHSOT.exe (User 'Default user') O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user') O4 - Startup: BBEA8F.lnk = C:\WINDOWS\system32\214DA2\BBEA8F.EXE O4 - Global Startup: Monitor Apache Servers.lnk = C:\Program Files\Apache Group\Apache2\bin\ApacheMonitor.exe O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O8 - Extra context menu item: Anexar a PDF existente - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html O8 - Extra context menu item: Anexar destino de vínculo a PDF existente - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html O8 - Extra context menu item: Convertir a Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html O8 - Extra context menu item: Convertir destino de vínculo a Adobe PDF - res://C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html O8 - Extra context menu item: E&xportar a Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} (Performance Viewer Activex Control) - https://secure.logmein.com/activex/ractrl.cab?lmi=100 O17 - HKLM\System\CCS\Services\Tcpip\..\{D3A91985-E6F9-4267-B30D-FC7F2F105441}: NameServer = 200.48.225.130,200.48.225.146 O20 - AppInit_DLLs: acaptuser32.dll O23 - Service: Apache2 - Apache Software Foundation - C:\Program Files\Apache Group\Apache2\bin\Apache.exe O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\eEBAPI\eEBSVC.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe O23 - Service: FlowCenter Service - Unknown owner - D:\Trueflow\bin\ServiceCtrl.exe O23 - Service: HASP License Manager (hasplms) - Aladdin Knowledge Systems Ltd. - C:\WINDOWS\system32\hasplms.exe O23 - Service: MySQL - Unknown owner - C:\Program Files\MySQL\MySQL Server 4.1\bin\mysqld-nt.exe O23 - Service: ORIS Color Tuner Service (ORIS-COLORTUNER) - CGS Publishing Technologies International GmbH, Germany - C:\Program Files\CGS\ORIS COLOR TUNER WEB\ORIS Hotfolder Manager\winhot.exe -- End of file - 7302 bytes |
||
| comentario | Mie Oct 07, 2009 1:47 pm | |
|
Trata de que tenga un título descriptivo y comentanos cuál es el problema que presenta la pc. |
||