jeacelo | |
| 2011-06-21 13:18 - Respuestas: 0 - Tema nº: 2800267
Windows XP
buenas, os comento:
lleva ya un tiempo mi pendrive (sandisk cruzer micro 8gb) que no funciona.
el pc lo reconoce bien, lo abro y todo bien pero a la hora de copiar algo al pendrive la luz del mismo se apaga y aparece un error de escritura demorada o algo así. siempre. esto no me pasa con otro pendrive que tengo de 1gb y solo me pasa en mi pc.
he analizado con superantispyware y este es el reporte:
superantispyware scan log
http://www.superantispyware.com
generated 06/20/2011 at 12:19 pm
application version : 4.54.1000
core rules database version : 7288
trace rules database version: 5100
scan type : complete scan
total scan time : 01:00:10
memory items scanned : 233
memory threats detected : 0
registry items scanned : 7216
registry threats detected : 31
file items scanned : 13276
file threats detected : 13
application.oreans32
hklm\system\controlset001\services\oreans32
c:\windows\system32\drivers\oreans32.sys
hklm\system\controlset001\enum\root\legacy_oreans32
hklm\system\controlset002\services\oreans32
hklm\system\controlset002\enum\root\legacy_oreans32
hklm\system\controlset003\services\oreans32
hklm\system\controlset003\enum\root\legacy_oreans32
hklm\system\currentcontrolset\services\oreans32
hklm\system\currentcontrolset\enum\root\legacy_oreans32
adware.tracking cookie
c:\documents and settings\usuario\cookies\usuario@weborama[1].txt
c:\documents and settings\usuario\cookies\(prohibido poner emails)tion.weborama[2].txt
c:\documents and settings\usuario\cookies\usuario@atdmt[2].txt
c:\documents and settings\usuario\cookies\usuario@media6degrees[2].txt
c:\documents and settings\usuario\cookies\(prohibido poner emails)ceforge[1].txt
c:\documents and settings\usuario\cookies\(prohibido poner emails)ing[2].txt
content.oddcast.com [ c:\documents and settings\usuario\datos de programa\macromedia\flash player\#sharedobjects\hb9jdb2w ]
macromedia.com [ c:\documents and settings\usuario\datos de programa\macromedia\flash player\#sharedobjects\hb9jdb2w ]
s0.2mdn.net [ c:\documents and settings\usuario\datos de programa\macromedia\flash player\#sharedobjects\hb9jdb2w ]
www.99counters.com [ c:\documents and settings\usuario\datos de programa\macromedia\flash player\#sharedobjects\hb9jdb2w ]
www.sports-tracker.com [ c:\documents and settings\usuario\datos de programa\macromedia\flash player\#sharedobjects\hb9jdb2w ]
www.ultimedia.com [ c:\documents and settings\usuario\datos de programa\macromedia\flash player\#sharedobjects\hb9jdb2w ]
unclassified.oreans32
hklm\system\currentcontrolset\enum\root\legacy_oreans32#nextinstance
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#service
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#legacy
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#configflags
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#class
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#classguid
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#devicedesc
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#capabilities
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000#driver
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000\logconf
hklm\system\currentcontrolset\enum\root\legacy_oreans32\0000\control
hklm\system\currentcontrolset\services\oreans32#type
hklm\system\currentcontrolset\services\oreans32#start
hklm\system\currentcontrolset\services\oreans32#errorcontrol
hklm\system\currentcontrolset\services\oreans32#imagepath
hklm\system\currentcontrolset\services\oreans32#displayname
hklm\system\currentcontrolset\services\oreans32\security
hklm\system\currentcontrolset\services\oreans32\security#security
hklm\system\currentcontrolset\services\oreans32\enum
hklm\system\currentcontrolset\services\oreans32\enum#0
hklm\system\currentcontrolset\services\oreans32\enum#count
hklm\system\currentcontrolset\services\oreans32\enum#nextinstance
he analizado con panda online y este es el reporte:
;***********************************************************************************************************************************************************************************
analysis: 2011-06-20 16:25:32
protections: 1
malware: 7
suspects: 0
;***********************************************************************************************************************************************************************************
protections
des-c-r-i-p-tion version active updated
;=================
avast! internet security 5.0.100664296 yes yes
;=================
malware
id des-c-r-i-p-tion type active severity disinfectable disinfected location
;=================
00139064 cookie/atlas dmt trackingcookie no 0 yes no c:\documents and settings\usuario\cookies\usuario@atdmt[2].txt
00702605 w32/lineage.ksz virus no 0 yes no c:\archivos de programa\mx one antivirus\cuarentena\f;-ej10fkdo.bat-07-06-2011.mxonevirus
03974728 w32/autorun.jjt virus no 1 yes no c:\archivos de programa\mx one antivirus\cuarentena\f;-rg9g9bgq.exe-07-06-2011.mxonevirus
04008939 generic trojan virus/trojan no 0 yes no c:\documents and settings\usuario\mis documentos\descargas\xiliulti\xilisoft ultimate\keygen\xilisoftvideoconverterltimatekeygen.exe
05142396 generic trojan virus/trojan no 0 yes no c:\documents and settings\usuario\mis documentos\nokia 5800\hack\jaf___key_emulator_0\jaf + key emulator\jaf pkey emulator.exe
05747599 w32/lineage.lfs virus no 0 yes no c:\archivos de programa\mx one antivirus\cuarentena\f;-mbvd.exe-07-06-2011.mxonevirus
05922823 w32/lineage.lhj virus no 1 yes no c:\archivos de programa\mx one antivirus\cuarentena\f;-9d6tpg.exe-07-06-2011.mxonevirus
;=================
suspects
sent location
;=================
;=================
vulnerabilities
id severity des-c-r-i-p-tion
;=================
1000576 high ms11-012
1000573 high ms11-007
224952 high ms10-098
223906 high ms10-073
223353 high ms10-067
222627 high ms10-054
222621 high ms10-048
221289 high ms10-034
221287 high ms10-032
219821 high ms10-020
217839 high ms10-012
217834 high ms10-008
217832 high ms10-006
215048 high ms09-065
214072 high ms09-055
211784 high ms09-032
210624 high ms09-025
194862 high ms08-032
;=================
¿que me deciis?
un saludo y muchas gracias!
| |
|
|