| YODA |
| Usuari@ |

 |
| |
| Registrado: Jun 12, 2003 |
| Mensajes: 5565 |
| Ubicación: Valencia |
|
|
 |
 |
 |
|
¿Alguien me puede explicar y comentar como se traduce este informe?
¿Hay algo raro?
El pasarlo ha sido por:
Relentización de la navegación, reinicio con pantalla azul, quedarse colgado el pc (emite un solo bip y o lo apagas y enciendes o no respodn a nada).
SDFix: Version 1.133
Run by ******* on 30/01/2008 at 17:28
Microsoft Windows ***** [Versi¢n **.**.***]
Running From: C:\DOCUME~1\**\ESCRIT~1\SDFIXD~1\SDFix\SDFix
Safe Mode:
Checking Services:
Restoring Windows Registry Values
Restoring Windows Default Hosts File
Rebooting...
Normal Mode:
Checking Files:
Trojan Files Found:
C:\Archivos de programa\Setup.exe - Deleted
Removing Temp Files...
ADS Check:
Final Check:
catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-30 17:32:39
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"p0"="C:\Alcohol 120\"
"h0"=dword:00000001
"ujdew"=hex:04,26,39,ad,07,d2,07,fe,10,0a,82,63,68,f5,92,4d,df,a2,e9,ca,94,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\DAEMON Tools\"
"h0"=dword:00000000
"khjeh"=hex:f7,9c,16,60,79,c9,93,50,2d,f0,6c,84,72,8d,e7,95,40,e4,1c,1f,22,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,81,10,49,fa,6e,72,ea,e7,21,c0,5c,ca,df,12,e2,31,c7,..
"khjeh"=hex:0a,22,b7,5e,86,8e,20,4f,45,9c,01,f4,db,64,00,f6,b8,8c,5a,28,2a,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:63,71,1b,0b,c1,5e,6f,d2,e8,b8,bb,1b,42,f3,fc,2d,a2,4e,2b,e0,b0,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41]
"khjeh"=hex:18,62,60,a5,77,c9,ed,35,19,a9,e2,19,86,34,fa,3c,99,1b,98,58,f9,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"p0"="C:\Alcohol 120\"
"h0"=dword:00000001
"ujdew"=hex:04,26,39,ad,07,d2,07,fe,10,0a,82,63,68,f5,92,4d,df,a2,e9,ca,94,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\DAEMON Tools\"
"h0"=dword:00000000
"khjeh"=hex:f7,9c,16,60,79,c9,93,50,2d,f0,6c,84,72,8d,e7,95,40,e4,1c,1f,22,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,81,10,49,fa,6e,72,ea,e7,21,c0,5c,ca,df,12,e2,31,c7,..
"khjeh"=hex:4a,09,44,d9,4f,0a,96,8e,c3,7e,74,34,a6,c6,73,81,93,2c,cc,d6,7e,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:d3,7b,2d,d8,2e,e4,92,64,00,44,9e,ed,e4,76,a4,2a,51,1b,50,52,7a,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41]
"khjeh"=hex:69,7d,b9,75,8a,7a,60,fc,52,25,fb,a6,36,4f,37,f3,a5,26,8e,a8,45,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04]
"p0"="C:\Alcohol 120\"
"h0"=dword:00000001
"ujdew"=hex:04,26,39,ad,07,d2,07,fe,10,0a,82,63,68,f5,92,4d,df,a2,e9,ca,94,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\DAEMON Tools\"
"h0"=dword:00000000
"khjeh"=hex:f7,9c,16,60,79,c9,93,50,2d,f0,6c,84,72,8d,e7,95,40,e4,1c,1f,22,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,81,10,49,fa,6e,72,ea,e7,21,c0,5c,ca,df,12,e2,31,c7,..
"khjeh"=hex:4a,09,44,d9,4f,0a,96,8e,c3,7e,74,34,a6,c6,73,81,93,2c,cc,d6,7e,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:d3,7b,2d,d8,2e,e4,92,64,00,44,9e,ed,e4,76,a4,2a,51,1b,50,52,7a,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41]
"khjeh"=hex:69,7d,b9,75,8a,7a,60,fc,52,25,fb,a6,36,4f,37,f3,a5,26,8e,a8,45,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
Remaining Services:
------------------
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe"="C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Archivos de programa\\MSN Messenger\\livecall.exe"="C:\\Archivos de programa\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\PPMate\\ppmate.exe"="C:\\PPMate\\ppmate.exe:*:Enabled:PPMate"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Archivos de programa\\iTunes\\iTunes.exe"="C:\\Archivos de programa\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="C:\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM)"
"C:\\FlashFXP\\FlashFXP.exe"="C:\\FlashFXP\\FlashFXP.exe:*:Enabled:FlashFXP v3"
"C:\\PowerDVD\\PowerDVD.exe"="C:\\PowerDVD\\PowerDVD.exe:*:Enabled:CyberLink PowerDVD"
"C:\\Gears of War\\Binaries\\WarGame-G4WLive.exe"="C:\\Gears of War\\Binaries\\WarGame-G4WLive.exe:*:Enabled:Gears of War"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe"="C:\\Archivos de programa\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Archivos de programa\\MSN Messenger\\livecall.exe"="C:\\Archivos de programa\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\FlashFXP\\FlashFXP.exe"="C:\\FlashFXP\\FlashFXP.exe:*:Enabled:FlashFXP v3"
Remaining Files:
---------------
File Backups: - C:\DOCUME~1\*****\ESCRIT~1\SDFIXD~1\SDFix\SDFix\backups\backups.zip
Files with Hidden Attributes:
Mon 3 Dec 2007 24 ..SH. --- "C:\WINDOWS\S4E523C3D.tmp"
Sat 24 Nov 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Finished!
P.D. Borré los temporales %temp% tras pasar el SDFIX |
|