Scripts para Erradicar los virus de tu PC

Empiezamos la recopilación de Scripts destinados a erradicar esos virus que afectan nuestro diario laborar en los PCs, tal como lo he mencionado en otro post !
Eliminando el Amvo By :: SmartGenius ::Para quitar el virus AMVO, con algunas de sus variantes, aunque se pueden agregar mas... (pa39xth.cmd, tio8x6.cmd, d.com, b.com, t.com v.cmd, 0hct8ybw.bat y otros)se puede modificar para adaptar a otra variante de virus ej : kavo.exeen cada parte donde diga amvo, lo cambian por kavo y listo...osea cambian las dos primeras letras am por ka...Saludos.

________________________________________________________________________________________________


@echo offtitle Malware Removal Tool ;) - By Smartgeniuscolor 0aif exist "%windir%\system32\amvo.exe" (goto main) else (goto nop):mainecho.echo.echo Se ha Detectado el Virus AMVO.EXEecho Se procedera a Eliminarlo del Sistema...echo.echo Deshabilitando el Sistema, por unos instantesecho mientras se realiza la desinfeccion...taskkill /f /im explorer.exereg add HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL /v CheckedValue /t REG_DWORD /d 1 /fcd %windir%\system32echo.echo Explorando la carpeta del sistema...attrib -r -s -hping -n 0,5 0.0.0.0 > nulreg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v amva /fdel /f amvo.exedel /f amvo0.dlldel /f amvo1.dlldel /f amvo2.dllcd\clsecho.echo Explorando el Disco Duro C:attrib -r -s -hping -n 0,5 0.0.0.0 > nuldel /f autorun.infdel /f 0hct8ybw.batdel /f v.cmddel /f d.comdel /f b.comecho.pauseif exist D: (goto next) else (goto next2):nextD:clsecho.echo Explorando el Disco Duro D:attrib -r -s -hping -n 0,5 0.0.0.0 > nuldel /f autorun.infdel /f 0hct8ybw.batdel /f v.cmddel /f d.comdel /f b.comecho.pauseif exist E: (goto next2) else (goto next3):next2E:clsecho.echo Explorando el Disco E:attrib -r -s -hping -n 0,5 0.0.0.0 > nuldel /f autorun.infdel /f 0hct8ybw.batdel /f v.cmddel /f d.comdel /f b.comecho.pauseif exist F: (goto next3) else (goto yap):next3F:clsecho.echo Explorando el Disco F:attrib -r -s -hping -n 0,5 0.0.0.0 > nuldel /f autorun.infdel /f 0hct8ybw.batdel /f v.cmddel /f d.comdel /f b.comgoto yap:yapclsecho.echo.echo El Virus ha sido Eliminado con Exito...echo.echo Se reestablecera el sistemaecho.pauseexplorermsg /w * Gracias por Usar este Softexit:nopecho.echo.echo No se ha Detectado el Virus AMVOecho.echo Gracias por Usar este Soft... ;)echo.pauseexitEliminando el troyano RECYCLER y algunas variantes... By Smartgenius
________________________________________________________________________________________________
@echo offtitle Malware Removal Tool ;) - By Smartgeniuscolor 0aif exist "C:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013" (goto main) else (goto nop):mainecho.echo.echo Se ha Detectado el Virus RECYCLER.EXEecho Para poder Eliminarlo debera Contar conecho privilegios de Administrador, de lo contrarioecho no se podra limpiar el sistema Satisfactoriamente...echo.pauseecho.echo Deshabilitando el Sistema, por unos instantesecho mientras se realiza la desinfeccion...taskkill /f /im explorer.exereg add HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL /v CheckedValue /t REG_DWORD /d 1 /fping -n 1 0.0.0.0 > nulcd\attrib -r -s -hcd RECYCLERattrib -r -s -hRMDIR /S /Q S-1-5-21-1482476501-1644491937-682003330-1013del /f %windir%\Prefetch\ISE32.EXE-34CFE4CB.pfdel /f %windir%\Prefetch\ISE32.EXE-273EA8B7.pfdel /f %windir%\Prefetch\ISEE.EXE-05DD3401.pfreg delete "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{28ABC5C0-4FCB-11CF-AAX5-81CX1C635612}" /v StubPath /freg delete "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{08B0E5C0-4FCB-11CF-AAX5-81C01C608512}" /v StubPath /freg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v Tester /fpauseif exist D: (goto next1) else goto (next2):next1echo.echo.echo Examinando Disco D:D:attrib -r -s -hdel /f autorun.infRMDIR /S /Q RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013pauseif exist E: (goto next2) else goto (next3):next2echo.echo.echo Examinando Disco E:E:attrib -r -s -hdel /f autorun.infRMDIR /S /Q RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013pauseif exist F: (goto next2) else goto (yap2):next3echo.echo.echo Examinando Disco F:F:attrib -r -s -hdel /f autorun.infRMDIR /S /Q RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013pausegoto yap2:yap2clsecho.echo.echo El Virus RECYCLER ha sido Eliminado con Exito...echo sin embargo, como la carpeta RECYCLER es del sistema,echo debera borrarla manualmente de los Discos USB.echo.echo Se reestablecera el sistemaecho.pauseexplorermsg /w * Gracias por Usar este Softexit:nopecho.echo.echo No se ha Detectado el Virus RECYCLERecho.echo Gracias por Usar este Soft... ;)echo.pauseexitEliminando el MSOCache (wscmgr.exe)... By Smartgenius

________________________________________________________________________________________________


@echo offtitle Malware Removal Tool ;) - By Smartgeniuscolor 0aif exist "C:\WINDOWS\wscmgr.exe" (goto main) else (goto nop):mainecho.echo.echo Se ha Detectado el Virus MSOCache - Variante WSCMGRecho Para poder Eliminarlo debera Contar conecho privilegios de Administrador, de lo contrarioecho no se podra limpiar el sistema Satisfactoriamente...echo.pauseecho.echo Deshabilitando el Sistema, por unos instantesecho mientras se realiza la desinfeccion...taskkill /f /im explorer.exetaskkill /f /im wscmgr.exereg add HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL /v CheckedValue /t REG_DWORD /d 1 /fping -n 1 0.0.0.0 > nulcd\attrib -r -s -hcd WINDOWSattrib -r -s -hdel /f %windir%\wscmgr.exedel /f %windir%\data7933.sysdel /f %windir%\data7933~.sysreg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v wscmgr /fpauseif exist D: (goto next1) else goto (next2):next1echo.echo.echo Examinando Disco D:D:attrib -r -s -hdel /f autorun.infRMDIR /S /Q MSOCachepauseif exist E: (goto next2) else goto (next3):next2echo.echo.echo Examinando Disco E:E:attrib -r -s -hdel /f autorun.infRMDIR /S /Q MSOCachepauseif exist F: (goto next2) else goto (yap2):next3echo.echo.echo Examinando Disco F:F:attrib -r -s -hdel /f autorun.infRMDIR /S /Q MSOCachepausegoto yap2:yap2clsecho.echo.echo El Virus MSOCache (wscmgr) ha sido Eliminado con Exito...echo sin embargo, es posible que la carpeta MSOCache,echo no funcione.echo.echo Nota: La carpeta MSOCache, se encuentra en el Disco Local C:echo y alli se guardan los archivos de instlacion del Office.echo.echo Se reestablecera el sistemaecho.pauseexplorermsg /w * Gracias por Usar este Softexit:nopecho.echo.echo No se ha Detectado el Virus MSOCacheecho.echo Gracias por Usar este Soft... ;)echo.pauseexitEliminando el SOUNDMIX... pero me falta terminarlo... By Smartgenius
________________________________________________________________________________________________
@echo offtitle Malware Removal Tool by :: SmartGenius ::color 0a:maintaskkill /f /im explorer.exeping -n 1 0.0.0.0 > nultaskkill /f /im soundmix.exetaskkill /f /im soundmix.exereg add HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL /v CheckedValue /t REG_DWORD /d 1 /fcd\cd windowscd system32attrib -r -s -h -adel soundmix.exeping -n 2 0.0.0.0 > nulreg add HKCR\exefile\shell\open\command /ve /d "%%1% %%*%" /fexplorermsg /w * El Virus se ha eliminado exitosamente...pauseExit
________________________________________________________________________________________________
1) tener cerrado ya el troyano con algun antiVB o antivirus para evitar el empty.pif(que reinicia el pc)2) ejecutar el script para borrar el troyano ya desactivado. o con el antivirus al lado3) se sugiere ademas pasar herramientas como antisxs
Eliminando el Worm.Brontok By Codebuser ( Descripcion )

________________________________________________________________________________________________
Código:

erase /f /s /q "C:\Documents and Settings\Luis\Configuración local\Datos de programa\*.*"attrib -s -h "C:\Documents and Settings\Luis\Configuración local\Datos de programa\br4281on.exe"erase /f /s /q "C:\Documents and Settings\Luis\Configuración local\Datos de programa\br4281on.exe"attrib -s -h "C:\WINDOWS\ShellNew\RakyatKelaparan.exe"erase /f /s /q "C:\WINDOWS\ShellNew\RakyatKelaparan.exe"erase /f /s /q "C:\Documents and Settings\Luis\Configuración local\Datos de programa\*.*"pause
________________________________________________________________________________________________
Nota: Despues solo queda borrar todos los ejecutables con el nombre de la carpeta contenedora ( ojo! estos ejecutables tienen el icono de la carpeta por defecto de Windows XP )
bueno, hace poco encontre un ordenador con amvo metido y encontre estos archivos:
________________________________________________________________________________________________
C:\mug0sd.cmd
C\Windows\system32\amvo.exe
C:\autorun.infD:\mug0sd.cmd
D:\autorun.infpero el batch se smart no elimina "mug0sd.cmd"
________________________________________________________________________________________________
Aqui traigo otros script, pero quisiera que fueran analizados y probado primero para saber que debemos optimizar...
AntiFOUND.EXE
________________________________________________________________________________________________
Código:
@echo offtitle Malware Removal Tool by :: SmartGenius ::color 0aif exist %windir%\system32\found.exe.exe (goto sip) else (goto nop):sipclsecho.echo Se ha detectado el Virus FOUND.EXEecho Se procedera a erradicarlo del sistema...echo.pauseecho.echo Deshabilitando el sistema mientras se realiza la desinfeccion...ping -n 1 0.0.0.0 > nultaskkill /f /im explorer.exetaskkill /f /im found.exe.exedel /f /q %windir%\system32\found.exe.exedel /f /q %windir%\system32\winsub.xmldel /f /q %windir%\system32\svcp.csvping -n 2 0.0.0.0 > nulexplorergoto nop:nopclsecho.echo El virus FOUND.EXE no se encuentra en el sistemaecho o ya ha sido eliminado exitosamente...echo.pauseexit
________________________________________________________________________________________________
AntiHERJEK

________________________________________________________________________________________________
Código:
@echo offtitle Malware Removal Tool by :: SmartGenius ::color 0aif exist %windir%\herjek.exe (goto sip) else (goto nop):sipclsecho.echo Se ha detectado el Virus HERJEKecho Se procedera a erradicarlo del sistema...echo.pauseecho.echo Deshabilitando el sistema mientras se realiza la desinfeccion...ping -n 1 0.0.0.0 > nultaskkill /f /im explorer.exetaskkill /f /im herjek.exedel /f /q %windir%\herjek.exedel /f /q %windir%\herjek.configreg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v herjek /freg delete HKU\S-1-5-21-1606980848-1757981266-682003330-500\Software\Microsoft\Windows\CurrentVersion\Run /v herjek /fping -n 2 0.0.0.0 > nulexplorergoto nop:nopclsecho.echo El virus HERJEK no se encuentra oecho ya ha sido eliminado exitosamenteecho.pauseexit
________________________________________________________________________________________________
Este otro script para eliminar el winlogon, un virus tiene el mismo nombre que el programa de inicio de sesion pero que el original esta es en system32...
AntiWINLOGON
________________________________________________________________________________________________
Código:
@echo offtitle Malware Removal Tool by :: SmartGenius ::color 0aif exist %windir%\winlogon.exe (goto sip) else (goto nop):sipclsecho.echo Se ha detectado el Virus WINLOGONecho Se procedera a erradicarlo del sistema, pero esteecho metodo debe hacerse en modo aprueba de errores yaecho que este proceso emula a otro que es del sistemaecho y no se dejara borrar tan facil.echo.pauseecho.echo Deshabilitando el sistema mientras se realiza la desinfeccion...ping -n 1 0.0.0.0 > nultaskkill /f /im explorer.exedel /f /q %windir%\winlogon.exereg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v runwinlogon /fping -n 2 0.0.0.0 > nulexplorergoto nop:nopclsecho.echo El virus WINLOGON no se encuentra oecho ya ha sido eliminado exitosamenteecho.pauseexit
________________________________________________________________________________________________
Tambien hay un nuevo virus repartiendose por ahi, llamado winnt32.dllMe hice un script como complemento a la restauracion del sistema,pues no se borra completamente si has restaurado el sistema...El scrip viene con una explicacion y es un poco mas complicado que otros script que haya hecho...tambien tiene algo de explicacion..
AntiWINNT32
________________________________________________________________________________________________
Código:
@echo offtitle Malware Removal Tool by :: SmartGenius ::color 0aif not exist %windir%\system32\WinNt32.dll goto nopif exist %windir%\system32\drivers\Euo83.sys (set var=Euo83 & goto sip)if exist %windir%\system32\drivers\Mvd37.sys (set var=Mvd37 & goto sip)if exist %windir%\system32\drivers\Irv31.sys (set var=Irv31 & goto sip) else (got nop):sipclsecho.echo Se ha detectado el Virus WinNt32.dllecho con la variante %var%.sysecho.echo Este malware carga con el sistema como un servicio y esecho protegido por el kernel de Windows por lo que es posibleecho que no sea eliminado en su totalidad o que esta herramientaecho presente errores...echo.echo Para hacerlo efectivo primero Restaure el sistema aun puntoecho anterior a la infeccion y luego ejecute esta herramienta deecho nuevo...echo.echo Para mas info visite:echo http://www.alertaantivirus.es/virus/detalle_virus.html?cod=7748echo. echo Desea visitar el Sitio Web ? Si (S) No (N)set /p opc="> "if %opc%==S (start http://www.alertaantivirus.es/virus/detalle_virus.html?cod=7748 & pause & exit)if %opc%==s (start http://www.alertaantivirus.es/virus/detalle_virus.html?cod=7748 & pause & exit)if %opc%==N goto elimif %opc%==n (goto elim) else (goto sip) :elimclsecho Se procedera a erradicarlo del sistema...echo.pauseecho.echo Deshabilitando el sistema mientras se realiza la desinfeccion...ping -n 1 0.0.0.0 > nultaskkill /f /im explorer.exedel /f /q %windir%\system32\WinNt32.dl_del /f /q %windir%\system32\WinNt32.dlldel /f /q %windir%\system32\WinCtrl32.dlldel /f /q %windir%\system32\WLCtrl32.dlldel /f /q %windir%\system32\drivers\%var%.sysreg delete HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Minimal\%var%.sys /freg delete HKLM\SYSTEM\ControlSet001\Control\SafeBoot\Network\%var%.sys /freg delete HKLM\SYSTEM\ControlSet001\Services\%var%reg delete HKLM\SYSTEM\ControlSet002\Control\SafeBoot\Minimal\%var%.sysreg delete HKLM\SYSTEM\ControlSet002\Control\SafeBoot\Network\%var%.sysreg delete HKLM\SYSTEM\ControlSet002\Services\%var%reg delete HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\%var%.sysreg delete HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\%var%.sysreg delete HKLM\SYSTEM\CurrentControlSet\Services\%var%ping -n 2 0.0.0.0 > nulexplorergoto nop:nopclsecho.echo El virus WinNt32.dll no se encuentra oecho ya ha sido eliminado exitosamente...echo.pauseexit
________________________________________________________________________________________________

33 comentarios:

Anónimo dijo...

Thanks a lot for sharing this with all folks you actually recognize
what you're speaking about! Bookmarked. Please additionally visit my site =). We will have a hyperlink exchange agreement between us
Here is my weblog ; private pflegeversicherung kosten

Anónimo dijo...

Pretty section of content. I just stumbled upon your blog and in accession capital to assert that I
acquire actually enjoyed account your blog posts. Anyway I'll be subscribing to your feeds and even I achievement you access consistently quickly.
Feel free to visit my web blog - google seo companies

Anónimo dijo...

Somebody essentially lend a hand to make significantly articles I would state.
This is the first time I frequented your web page and thus far?
I amazed with the research you made to make this actual post extraordinary.
Magnificent activity!
Also visit my web site ; bad credit lender mortgage

Anónimo dijo...

Keep this going please, great job!
My web-site : beitragsbemessungsgrenze private krankenversicherung 2011

Anónimo dijo...

Ridiculous quest there. What occurred after? Good luck!

Also visit my blog schufa
Feel free to visit my webpage :

Anónimo dijo...

I love reading an article that can make people think.
Also, thank you for allowing for me to comment!
Here is my blog post ... Business Idea Small

Anónimo dijo...

I always emailed this blog post page to all my associates, for the
reason that if like to read it after that my friends will too.



Here is my blog post :: wechsel in die private krankenversicherung
Look into my blog post

Anónimo dijo...

I just like the valuable info you supply on your articles.
I will bookmark your blog and check once more right here frequently.

I'm relatively sure I will be informed many new stuff right here! Best of luck for the following!
Feel free to visit my webpage : making money with affiliate

Anónimo dijo...

Good article! We will be linking to this great content on our site.
Keep up the good writing.
Also see my website :: home refinance for bad credit

Anónimo dijo...

This paragraph is actually a fastidious one it
assists new net viewers, who are wishing for blogging.
Also visit my web-site ... student loan consolidation lower interest rate

Anónimo dijo...

Hi there, just became alert to your blog through Google, and found that
it's really informative. I'm going to watch out for brussels.
I will be grateful if you continue this in future.
Numerous people will be benefited from your writing. Cheers!
My homepage ; designer outlet onlineshop

Anónimo dijo...

Thank you, I've just been searching for info about this topic for a long time and yours is the greatest I've came upon so far.
However, what concerning the conclusion? Are you certain in
regards to the supply?
Look into my weblog - beitragsbemessungsgrenze private krankenversicherung

Anónimo dijo...

Nice blog! Is your theme custom made or did you download it from somewhere?
A design like yours with a few simple tweeks would
really make my blog stand out. Please let me know where you got your theme.
Thanks a lot
Here is my web site - caribbean island vacation packages

Anónimo dijo...

Wonderful beat ! I wish to apprentice while you amend your site, how can
i subscribe for a blog web site? The account helped me a acceptable deal.
I had been tiny bit acquainted of this your broadcast provided
bright clear idea
Here is my web-site ; reseller hosting gratis

Anónimo dijo...

I simply could not go away your web site before suggesting
that I actually loved the standard info a person supply
on your guests? Is going to be again continuously in order to inspect new posts

Feel free to visit my web page: Going On this site
My web site ... best cpanel hosting

Anónimo dijo...

Woah! I'm really loving the template/theme of this blog. It's simple, yet
effective. A lot of times it's tough to get that "perfect balance" between usability and appearance. I must say that you've done a great job with this.
Also, the blog loads very fast for me on Opera.

Superb Blog!

Here is my site ... private versicherung vergleich

Anónimo dijo...

I simply could not go away your site before suggesting that I actually
enjoyed the usual info a person provide on your visitors?

Is going to be back incessantly in order to check up on new posts

Here is my site ... c Lickbank

Anónimo dijo...

Yes! Finally something about kredit ohne schufa für arbeitslose.



Feel free to surf to my weblog; sofortkredite für arbeitslose

Anónimo dijo...

Having read this I thought it was extremely enlightening.
I appreciate you taking the time and effort to put this
information together. I once again find myself personally spending way too much time both reading
and commenting. But so what, it was still worth it!


my weblog: seo experts india

Anónimo dijo...

Just wish to say your article is as astounding. The clarity in your post
is just cool and i could assume you are an expert on this
subject. Fine with your permission let me to grab your
RSS feed to keep up to date with forthcoming post. Thanks a million
and please keep up the enjoyable work.

Here is my page nachteile pkv
Also see my site: gesetzliche krankenversicherungen im vergleich

Anónimo dijo...

Hello, i think that i saw you visited my website so
i came to “return the favor”.I am attempting to find things to enhance my web site!

I suppose its ok to use some of your ideas!
!

Also visit my page; ideas for starting a business

Anónimo dijo...

I'm not certain the place you are getting your information, however great topic. I needs to spend some time finding out much more or understanding more. Thanks for magnificent information I was on the lookout for this information for my mission.

my homepage: free vacations
Also see my page :: Aruba all inclusive

Anónimo dijo...

I blog often and I really appreciate your content. This article
has truly peaked my interest. I will book mark your blog and keep checking for new information
about once per week. I subscribed to your RSS feed as well.


my webpage best seo company
my webpage :: what is seo company

Anónimo dijo...

Great blog here! Also your site loads up very fast!

What host are you using? Can I get your affiliate link to your host?
I wish my website loaded up as quickly as yours lol

My web-site :: private krankenversicherung berlin
Also see my page > private krankenversicherung referendariat

Anónimo dijo...

I seriously love your blog.. Excellent colors & theme.
Did you create this site yourself? Please reply back as I'm planning to create my very own site and want to find out where you got this from or just what the theme is named. Thanks!

Here is my page; online kredite ohne schufa auskunft

Anónimo dijo...

Do you have a spam issue on this site; I also am a blogger, and I was wanting to
know your situation; many of us have developed some nice
methods and we are looking to trade strategies with others,
be sure to shoot me an e-mail if interested.

my web-site part time at home jobs

Anónimo dijo...

I am really pleased to read this website posts which carries tons of
valuable facts, thanks for providing these kinds of statistics.


my homepage - Gesetzliche Krankenversicherung BeiträGe

Anónimo dijo...

When I initially commented I clicked the "Notify me when new comments are added" checkbox and now each
time a comment is added I get three e-mails with the same comment.
Is there any way you can remove me from that service?

Appreciate it!

Here is my weblog: private krankenversicherung rente

Anónimo dijo...

Excellent pieces. Keep posting such kind of information
on your blog. Im really impressed by it.
Hello there, You've done an incredible job. I'll definitely
digg it and personally recommend to my friends. I am sure they will be benefited from
this site.

Here is my blog post ... Private Krankenversicherung Wechsel Voraussetzungen

Anónimo dijo...

of course like your website but you need to test the spelling on quite a few of your posts.
Several of them are rife with spelling problems and I find it very troublesome to tell
the truth then again I will surely come again again.

My weblog ... legitimate work from home jobs
My webpage: beitrag private krankenversicherung

Anónimo dijo...

Hello there, just became alert to your blog through Google, and found that
it is truly informative. I'm going to watch out for brussels. I'll be grateful if you continue
this in future. A lot of people will be benefited from your writing.
Cheers!

my website; online shopping kleidung

Anónimo dijo...

Do you mind if I quote a couple of your articles as long as I provide credit and sources back to your
blog? My blog site is in the very same area of interest as yours
and my users would genuinely benefit from some of the information you provide here.
Please let me know if this ok with you. Regards!

Feel free to visit my homepage ... hosting a website

Anónimo dijo...

Hi, this weekend is good for me, because this occasion i am reading this enormous
educational article here at my residence.

Feel free to surf to my page :: BELCA: Blogs

Publicar un comentario