Blog Registrarse Manuales Programas Glosario

Regresar   Foro de Spyware » Spyware - Adware - Hijackers - Malwares » Foro de Virus y Spywares
 

Para evitar Virus, Spyware y otros Malwares, te recomendamos mantenerte informado en: InfoSpyware Blog


Foro de Virus y Spywares Ayuda con: Malwares - Virus - Spywares - Troyanos - Adwares - Worms - Hijackers - Dialers - Rootkits - Keylogger - etc.) Plantéanos tu problema en este sector.
No ponga su log de HijackThis aquí !!

Tema Cerrado
 
Enviar a: Herramientas
  post #1  
Antiguo 04/01/09, 06:55:22
Usuario
 
Registrado: sep 2006
Ubicación: España
Mensajes: 37
ayuda urgente, esto me trae loco... ayuda please

El NOD32 me detecta un Object: C:\windows\system32\rqRKEVNe.dll como Win32/Adware.Virtumonde application.

Me abre ventas de internet cada dos por tres...

no se como eliminarlo

alguien me podria ayudar, gracias
InfoSpyware

  post #2  
Antiguo 04/01/09, 08:23:11
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.079
Contactar con M@co a través de ICQ
Re: ayuda urgente, esto me trae loco... ayuda please

Hola santravis.

Realiza lo siguiente:
  1. Descarga, actualiza y ejecuta Malwarebytes’ Anti-Malware.
    • Realiza un examen completo del PC y elimina las infecciones que este detecte.
    • El reporte queda guardado en la pestaña "Logs" o "Registros" en español, abres el reporte y copias el contenido para pegarlo en este tema.

  2. Descarga y ejecuta CCleaner .
    • Usa la opción Limpiador para borrar cookies y temporales,
    • y la opción Registro para efectuar una limpieza del registro de Windows.

  3. Realiza un análisis completo del Pc con:
En tu proxima respuesta:
- Pega el reporte que genere Kaspersky, junto con el de Malwarebytes' Anti-Malware.
- Nos comenta los resultados.

Salu2!.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
  post #3  
Antiguo 04/01/09, 14:27:14
Usuario
 
Registrado: sep 2006
Ubicación: España
Mensajes: 37
Re: ayuda urgente, esto me trae loco... ayuda please

Malwarebytes’ Anti-Malware.

Malwarebytes' Anti-Malware 1.31
Versión de la Base de Datos: 1610
Windows 5.1.2600 Service Pack 2

04/01/2009 19:17:31
mbam-log-2009-01-04 (19-17-31).txt

Tipo de examen : Examen Completo (C:\|I:\|)
Objetos examinados: 259514
Tiempo transcurrido: 2 hour(s), 22 minute(s), 6 second(s)

Procesos en Memoria Infectados: 0
Módulos en Memoria Infectados: 10
Claves del Registro Infectadas: 16
Valores del Registro Infectados: 2
Elementos de Datos del Registro Infectados: 2
Carpetas Infectadas: 0
Ficheros Infectados: 78

Procesos en Memoria Infectados:
(No se han detectado elementos maliciosos)

Módulos en Memoria Infectados:
C:\WINDOWS\system32\fccywtuR.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\rqRKEVNe.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\tlneye.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\wzgpxq.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\tbfauw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\pilucm.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\weeerw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\rpjufw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\iaqrir.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\jwajbl.dll (Trojan.Vundo) -> Delete on reboot.

Claves del Registro Infectadas:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\rqrkevne (Trojan.Vundo.H) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{f7fd9268-a445-4b8f-8bfb-2d32860945cc} (Trojan.Vundo.H) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{f7fd9268-a445-4b8f-8bfb-2d32860945cc} (Trojan.Vundo.H) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{750ab662-9837-4168-8542-f3f883737362} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4468941b-7c5f-483a-a2b3-9d1445264ede} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8e821142-5e44-40cf-9c7b-21bb10a2ea54} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{016f5b7b-5b8a-4a96-bbfd-23f1c24028da} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{86d42e48-8b65-4658-90e6-d44b19b98bb0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{bdcd84e8-4e95-49df-8df3-58e659119964} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{bdcd84e8-4e95-49df-8df3-58e659119964} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{fdf1f6dc-ced7-4b99-bc15-519e11fe3164} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{52460e9e-ee84-4853-8000-c8bbb82b1774} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{f7fd9268-a445-4b8f-8bfb-2d32860945cc} (Trojan.Vundo) -> Quarantined and deleted successfully.

Valores del Registro Infectados:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\4835cc6d (Trojan.Vundo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\ShellExecuteHooks\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo) -> Delete on reboot.

Elementos de Datos del Registro Infectados:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\fccywtur -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\fccywtur -> Delete on reboot.

Carpetas Infectadas:
(No se han detectado elementos maliciosos)

Ficheros Infectados:
C:\WINDOWS\system32\rqRKEVNe.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\fccywtuR.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\WINDOWS\system32\Rutwyccf.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\Rutwyccf.ini2 (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\chijkjfp.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pfjkjihc.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\dcnknmyh.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\hymnkncd.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\hbklnvjl.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ljvnlkbh.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\isilyuve.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\evuylisi.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ivihkphr.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rhpkhivi.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ksisofjk.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\kjfosisk.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\mvafqivy.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\yviqfavm.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\tephyuyi.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\iyuyhpet.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\uhjocgbw.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\wbgcojhu.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ydrxukag.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\gakuxrdy.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\yjmexmmi.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\immxemjy.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\tlneye.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\wzgpxq.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\tbfauw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\pilucm.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\weeerw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\rpjufw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\iaqrir.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\jwajbl.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\aeiqhc.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ahynmj.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\apdduu.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\apdosnoq.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\fsmrejui.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\fuvyua.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\hhmyss.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\jmqwwpta.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\jvorxglw.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\midevebi.dll.tmp (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\mkbftu.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\nbqvhoam.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\osjhbdkp.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pslgkb.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\aypgemud.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\dmitovtk.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\dusatalo.dll.tmp (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lksgwnlt.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\mrdtyprb.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ngvwur.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\okvxurtl.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ruvaluno.dll.tmp (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\sykpihyg.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\tgxjqu.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\pvimep.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\gjvdhywf.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\gksimyid.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\wtkxitkc.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\qpdvfn.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\byyuqvsn.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\scjmxp.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\vbkdadpb.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rqgvxk.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rrblstgb.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\xemcfcwt.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ylmevipm.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\yrmwmpci.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\yubihimo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\fipuyuko.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\fjonrnyo.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lxcesluy.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\uabvvi.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ubzbne.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\tphwwdes.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
  post #4  
Antiguo 05/01/09, 10:57:47
Avatar de M@co
Warrior
 
Registrado: dic 2007
Ubicación: Guayana - Venezuela
Mensajes: 7.079
Contactar con M@co a través de ICQ
Re: ayuda urgente, esto me trae loco... ayuda please

Hola.

Falta el reporte de kaspersky online.

Salu2!.


Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Infórmate de las ultimas amenazas de la red desde: InfoSpyware Blog
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Tema Cerrado

Herramientas

Reglas del foro
No puedes crear nuevos temas
No puedes responder temas
No puedes subir adjuntos
No puedes editar tus mensajes

BB code is activado
Las caritas están activado
Código [IMG] está activado
Código HTML está desactivado
Trackbacks are desactivado
Pingbacks are activado
Refbacks are activado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
Necesito ayuda urgente (Tray App) Jackiep Foro de Virus y Spywares 1 07/06/06 23:54:27
ayuda urgente nector Foro de Virus y Spywares 7 05/06/06 20:10:20
Necesito ayuda urgente!!!!!!! VirginiaVJ Foro Oficial de HijackThis en español 1 18/05/06 17:45:54
un virus o problema con el router? necesito ayuda urgente... deniro Foro Oficial de HijackThis en español 8 30/04/05 15:58:06
Ayuda por favor, esto es insoportable torrest Foro Oficial de HijackThis en español 1 25/04/05 14:29:23




Todas las horas son GMT -4. La hora es 10:02:48.


 

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31